Infectado por mail.ru

Hola

Si tienes Chrome en el móvil o cualquier otro dispositivo con el mismo perfil que tenías en el equipo, revisa que no esté sincronizado antes de realizar lo siguiente.

:arrow_forward: MUY Importante :arrow_backward: Realiza una copia de seguridad del registro :

  • Para hacerlo descarga :arrow_forward: DelFix.exe( en tu escritorio).

  • Doble clic para ejecutarlo.(Si usas Windows Vista/7/8 o 10 presiona clic derecho y selecciona -Ejecutar como Administrador-).

  • Atención, ahora marca/selecciona únicamente la casilla "Create registry backup", las demás NO.

  • Pulsar en Run.

Se abrirá el informe (DelFix.txt), guárdalo por si fuera necesario y cierra la herramienta.

A continuación inicia tu equipo desde el Modo Seguro de Windows sin función de red

:warning: Con los demás programas cerrados ve a :arrow_forward: Inicio :arrow_forward: Ejecutar :arrow_forward: y escribe Notepad.exe.

  • Ahora debes copiar y pegar los códigos/líneas que están en el interior del recuadro de más abajo, dentro del Notepad.
START
CREATERESTOREPOINT:
CLOSEPROCESSES:
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-09-01] (Advanced Micro Devices, Inc.) [File not signed]
HKLM\...\Run: [] => [X]
HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
HKLM\...\Drivers32: [VIDC.LAGS] => C:\windows\system32\lagarith.dll [216064 2011-12-07] ( ) [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\windows\system32\x264vfw.dll [3613696 2016-05-08] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\windows\system32\xvidvfw.dll [180224 2009-06-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\windows\system32\ff_vfw.dll [112128 2015-10-24] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\windows\system32\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{90EF4A5E-85DB-4825-96F5-1AB93C2A8EEB}] -> C:\Program Files\Mindjet\MindManager 18\sys\MmInternetExplorerActiveSetup.vbs [2016-02-25] () [File not signed]
Task: {1493DAD3-A907-4D3F-B011-8D88A126E820} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [342016 2009-08-01] (SAMSUNG Electronics co., LTD.) [File not signed]
Task: {1C632F72-12F8-483B-92C6-FE19350280A0} - System32\Tasks\BatteryLifeExtender => C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [562176 2009-09-21] (Samsung Electronics. Co. Ltd.) [File not signed]
Task: {2DA7F283-D48F-482D-9B75-EDDC32FB5273} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [834560 2009-09-12] (Samsung Electronics Co., Ltd.) [File not signed]
Task: {3033BA49-FA11-4373-BF13-B97226D3ECE1} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648 2016-08-01] () [File not signed]
Task: {336A6B9A-83FB-4C4A-8799-D3FD66B01B2B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: {3C43F1DA-9B66-4AF6-9061-90041BCD65A0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: {6D5B184F-40A1-4D0A-AD22-8089179F8801} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [716800 2009-08-23] (Samsung Electronics Co., Ltd.) [File not signed]
Task: {AE32CA0C-3A88-4700-8CC1-3EF5C43776C0} - System32\Tasks\advSRS4 => C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2242048 2009-08-06] (SEC) [File not signed]
Task: {C120FB33-E0D5-421A-B349-3DF06B106CCE} - System32\Tasks\SamsungSupportCenter => C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe [93184 2009-09-07] (SAMSUNG Electronics) [File not signed]
SearchScopes: HKLM -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKU\S-1-5-21-604524677-2708395862-3557633927-1000 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = 
SearchScopes: HKU\S-1-5-21-604524677-2708395862-3557633927-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = 
BHO: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO: CmjBrowserHelperObject Object -> {6FE6A929-59D1-4763-91AD-29B61CFFB35B} -> No File
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-604524677-2708395862-3557633927-1000 -> Adobe Acrobat Create 
FF Extension: (Adblocker for Youtube™) - C:\Program Files\Mozilla Firefox\browser\features\{E55C9A17-39B3-4F0A-9546-2E85FE620BE8}.xpi [2019-07-16] [Legacy] [not signed]
FF Plugin: @photodex.com/PhotodexPresenter -> C:\Program Files\Photodex Presenter\npPxPlay.dll [2016-09-04] ( ) [File not signed]
CHR HomePage: Default -> inline.go.mail.ru
CHR StartupUrls: Default -> "hxxps://mail.ru/cnt/10445?gp=811570"
CHR DefaultSearchURL: Default -> hxxps://go.mail.ru/distib/ep/?q={searchTerms}&fr=ntg&product_id=%7B3C6A8B7A-CDE0-46F1-9FBB-292C21A38327%7D&gp=811570
CHR DefaultSearchKeyword: Default -> go.mail.ru
CHR DefaultSuggestURL: Default -> hxxps://suggests.go.mail.ru/chrome?q={searchTerms}
CHR Profile: C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default [2019-07-17]
CHR Extension: (Presentaciones) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]
CHR Extension: (Documentos) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-16]
CHR Extension: (Google Drive) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-19]
CHR Extension: (Video Downloader professional) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\bacakpdjpomjaelpkpkabmedhkoongbi [2019-06-10]
CHR Extension: (YouTube) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-15]
CHR Extension: (Video Downloader professional) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2019-04-12]
CHR Extension: (MyJDownloader Browser Extension) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2018-11-08]
CHR Extension: (Hojas de cálculo) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16]
CHR Extension: (Audio Downloader Prime) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\flainkeonkoanoijnkojmiiihnfdhipd [2019-04-28]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-17]
CHR Extension: (AdBlock) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-07-08]
CHR Extension: (Copy Link Address) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdejdkdjdoabfihpcjmgjebcpfbhepmh [2017-12-07]
CHR Extension: (Screencastify - Screen Video Recorder) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2019-07-08]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-16]
CHR Extension: (Chrome Media Router) - C:\Users\Daniel Pérez\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-20]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
S3 ALSysIO; \??\C:\Users\DANIEL~1\AppData\Local\Temp\ALSysIO.sys [X] <==== ATTENTION
2019-07-16 18:49 - 2019-07-16 18:55 - 000000000 ____D C:\Users\Daniel Pérez\AppData\Roaming\Snetchball
2019-07-16 18:49 - 2019-07-16 18:49 - 000000000 ____D C:\ProgramData\Mail.Ru
2019-06-19 13:43 - 2019-06-19 13:43 - 000000000 ____D C:\ProgramData\{95D98EBF-3B15-8CA4-B706-46E2245F305F}
2019-06-19 13:40 - 2019-06-19 13:40 - 000000000 ____D C:\ProgramData\SystemAcCrux
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{2B663ECE-5770-491c-A474-F98603C40681}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{2B93DB32-8D98-4438-93B5-5C2CC3441999}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{6813A122-4BBF-4408-8C87-07176246B992}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{697DE5F4-0D13-4608-9728-7539F704E51C}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{70A294B3-FE6F-4af9-9395-CFC58FC07C30}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{74562BED-63D6-4234-A386-937DB6FA38AE}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{7C90F737-950A-49eb-B6C1-EE1744C75E97}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{868D9612-74A1-405b-9758-369138103193}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{BB9F1D04-94AB-40b7-ABAE-33D2637F6340}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{CC3BE603-926A-40ae-9570-4258474F0364}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc -> Autodesk, Inc.) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{DD0B2199-F2FD-41eb-B744-B06B100B9A43}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{DFAB83E9-EBA6-4425-928B-B15A57F39469}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{E27473C6-A63D-4b85-95FC-C7DE20306C0D}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{F5756047-E218-465a-AC4C-FD04238C4896}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{F9748CB6-1CCB-4557-905E-8D42C83AAEB6}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
CustomCLSID: HKU\S-1-5-21-604524677-2708395862-3557633927-1000_Classes\CLSID\{FC072C1A-25CB-49e7-8F79-F2A8B8C3289D}\InprocServer32 -> C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\AutoCAD\2010\32\AcrobatAcadIC.dbx (Adobe Systems Incorporated) [File not signed]
ShellIconOverlayIdentifiers: [Identificador de icono superpuesto para firmas digitales de AutoCAD] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\windows\system32\AcSignIcon.dll [2009-02-09] (Autodesk, Inc -> Autodesk, Inc.) [File not signed]
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2010-04-19] (Autodesk, Inc -> Autodesk) [File not signed]
ContextMenuHandlers1: [iSkysoftVideoConverterFileOpreation] -> {B5FA2AE6-7A94-4382-8EA9-58C725AAB854} => C:\Windows\System32\ISCM32.dll [2015-02-27] () [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll [2009-09-01] (Advanced Micro Devices, Inc.) [File not signed]
ContextMenuHandlers1_S-1-5-21-604524677-2708395862-3557633927-1000: [VIDEOTRANS] -> {C8CA0A66-AF32-4D5E-879E-F0809ACEDC55} => C:\Program Files\Media Player Utilities 4.45\AMVConverter\AmvTransform.dll [2007-06-16] () [File not signed]
FirewallRules: [TCP Query User{73EC6DDA-3FD6-4631-AD21-7556910DE4A1}C:\cype ingenieros\versión 2012\programas\arquímedes..exe] => (Allow) C:\cype ingenieros\versión 2012\programas\arquímedes..exe () [File not signed]
FirewallRules: [UDP Query User{018E1F34-7432-48E5-A35C-1272CB2C9498}C:\cype ingenieros\versión 2012\programas\arquímedes..exe] => (Allow) C:\cype ingenieros\versión 2012\programas\arquímedes..exe () [File not signed]
FirewallRules: [TCP Query User{9DFE90FB-482D-466C-98DA-5F82A4F183E2}C:\apl\ive\catalogo_03_60\catalogo_v03_60.exe] => (Allow) C:\apl\ive\catalogo_03_60\catalogo_v03_60.exe () [File not signed]
FirewallRules: [UDP Query User{4162860C-198A-4D58-AC8B-83CF136AF1B6}C:\apl\ive\catalogo_03_60\catalogo_v03_60.exe] => (Allow) C:\apl\ive\catalogo_03_60\catalogo_v03_60.exe () [File not signed]
FirewallRules: [TCP Query User{9049C1E9-3C35-41D5-BF41-B2F7C527C6B5}C:\apl\ive\pliego15\pliego.exe] => (Allow) C:\apl\ive\pliego15\pliego.exe (IVE) [File not signed]
FirewallRules: [UDP Query User{CA9DF1F9-AABD-4422-91D2-17C19E06C9D8}C:\apl\ive\pliego15\pliego.exe] => (Allow) C:\apl\ive\pliego15\pliego.exe (IVE) [File not signed]
FirewallRules: [TCP Query User{D5B55676-AC4A-4C2D-8B9C-8F223E633083}C:\apl\ive\le\libroedif.exe] => (Allow) C:\apl\ive\le\libroedif.exe () [File not signed]
FirewallRules: [UDP Query User{6B834C36-B94E-4FD1-8D06-51643BD6AEAB}C:\apl\ive\le\libroedif.exe] => (Allow) C:\apl\ive\le\libroedif.exe () [File not signed]
FirewallRules: [TCP Query User{C76C0B04-5624-4213-9818-98BD8F44317E}E:\powerline utility\powerline scan.exe] => (Allow) E:\powerline utility\powerline scan.exe No File
FirewallRules: [UDP Query User{9F1497D4-D2E1-48CC-8B1B-C3D5EB6D8146}E:\powerline utility\powerline scan.exe] => (Allow) E:\powerline utility\powerline scan.exe No File
FirewallRules: [TCP Query User{E0E25CD0-D2C9-4D71-8714-ED8E85BE6874}C:\apl\ive\pavimento_hormig\pavim_hormig.exe] => (Allow) C:\apl\ive\pavimento_hormig\pavim_hormig.exe () [File not signed]
FirewallRules: [UDP Query User{61D2331A-339C-4339-9832-A19D065E3E62}C:\apl\ive\pavimento_hormig\pavim_hormig.exe] => (Allow) C:\apl\ive\pavimento_hormig\pavim_hormig.exe () [File not signed]
FirewallRules: [TCP Query User{22A4E079-3360-4E55-9295-420320879499}C:\program files\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [File not signed]
FirewallRules: [UDP Query User{6274BED8-EFDD-4CC4-A51A-7A406C05E953}C:\program files\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [File not signed]
FirewallRules: [TCP Query User{3454ADA5-67BC-48EE-BE40-33F0A1F5EBE0}C:\program files\tp-link\tp-link plc utility\tpplc.exe] => (Block) C:\program files\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [File not signed]
FirewallRules: [UDP Query User{D1F0EA83-9196-472B-A7F8-4A527C951D79}C:\program files\tp-link\tp-link plc utility\tpplc.exe] => (Block) C:\program files\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [File not signed]

HOSTS:
REMOVEPROXY:
EMPTYTEMP:
CMD: netsh winsock reset
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
END

Guárdalo bajo el nombre de FIXLIST.TXT en el escritorio :arrow_backward: Esto es muy importante.

:o: Nota :o: Es importante que la herramienta FRST.exe (Farbar Recovery Scanner Tool) y FIXLIST.TXT se encuentren en la misma ubicación (escritorio) o si no, no trabajara.


  • Ejecuta FRST.exe.(Si usas Windows Vista/7/8 o 10, presiona clic derecho y seleccionas -Ejecutar como Administrador-).
  • Presionar el botón FIX y aguardar a que termine.
  • La Herramienta guardara el reporte de reparación en el escritorio (FIXLOG.TXT).

Pega el contenido de este fichero en tu próxima respuesta.

Reiniciar el equipo y comprobar su funcionamiento en relación al problema planteado y comentarlo.

Después de reiniciar, ejecuta malwarebytes para ver si ya no detecta nada. Instalas Chrome y vuelves a pasar Malwarebytes.

Nos comentas como fue todo.

Un saludo