Esperando haberlo hecho bien. Agradecido
# -------------------------------
# Malwarebytes AdwCleaner 7.2.7.0
# -------------------------------
# Build: 01-30-2019
# Database: 2019-01-25.2 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-04-2019
# Duration: 00:00:06
# OS: Windows 7 Ultimate
# Cleaned: 56
# Failed: 0
***** [ Services ] *****
Deleted tscmon
Deleted ReimageRealTimeProtector
***** [ Folders ] *****
Deleted C:\ProgramData\IObit\Advanced SystemCare V7
Deleted C:\Users\Carlos\AppData\Roaming\IObit\Advanced SystemCare V7
Deleted C:\ProgramData\IObit\Advanced SystemCare V8
Deleted C:\Program Files\Common Files\IObit\Advanced SystemCare V8
Deleted C:\Windows\System32\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V8
Deleted C:\Users\Carlos\AppData\LocalLow\IObit\Advanced SystemCare V8
Deleted C:\Users\Carlos\AppData\Roaming\IObit\Advanced SystemCare V8
Deleted C:\Users\Carlos\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\ProgramData\Reimage Protector
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Protector
Deleted C:\Program Files\Reimage
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\asrdmon.sys
Deleted C:\Windows\Temp\reimage.log
Deleted C:\Users\Carlos\AppData\Local\Temp\reimage.log
Deleted C:\Windows\Reimage.ini
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\Driver Booster Scheduler
Deleted C:\Windows\System32\Tasks\ReimageUpdater
***** [ Registry ] *****
Deleted HKLM\Software\IObit\RealTimeProtector
Deleted HKLM\Software\IOBIT\ASC
Deleted HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.ascplugin.protect
Deleted HKLM\SOFTWARE\CLASSES\LNKFILE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\SOFTWARE\CLASSES\DRIVE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\SOFTWARE\CLASSES\DIRECTORY\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\Software\Classes\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}
Deleted HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}
Deleted HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted HKCU\Software\drpsu
Deleted HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Deleted HKLM\Software\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
Deleted HKLM\Software\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
Deleted HKLM\Software\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
Deleted HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Deleted HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Deleted HKLM\Software\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Deleted HKLM\Software\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF7F3AB5-27DA-4981-AA26-F6D8F4F596BB}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Protector
Deleted HKCU\Software\Reimage
Deleted HKLM\Software\Reimage
Deleted HKLM\Software\Classes\REI_AxControl.ReiEngine.1
Deleted HKLM\Software\Classes\REI_AxControl.ReiEngine
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31A8A94E-C9C0-4310-BEC2-89A7B89733EF}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ReimageUpdater
Deleted HKLM\Software\Classes\AppID\{A245B088-41FA-478E-8DEA-86177F1394BB}
***** [ Chromium (and derivatives) ] *****
Deleted mnanplinmmnjhobaliikmelmmjpoogkb
Deleted pelmeidfhdlhlbjimpabfcbnnojbboma
***** [ Chromium URLs ] *****
Deleted istartsurf
Deleted iZito.com
Deleted Softonic ES
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [6009 octets] - [04/02/2019 18:54:43]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Malwarebytes
www.malwarebytes.com
-Detalles del registro-
Fecha del análisis: 5/2/19
Hora del análisis: 16:08
Archivo de registro: c3cb38ca-2981-11e9-87b9-bc5ff440f1e3.json
-Información del software-
Versión: 3.6.1.2711
Versión de los componentes: 1.0.527
Versión del paquete de actualización: 1.0.9132
Licencia: Prueba
-Información del sistema-
SO: Windows 7 Service Pack 1
CPU: x86
Sistema de archivos: NTFS
Usuario: Carlos-PC\Carlos
-Resumen del análisis-
Tipo de análisis: Análisis personalizado
Análisis iniciado por:: Manual
Resultado: Completado
Objetos analizados: 257789
Amenazas detectadas: 51
Amenazas en cuarentena: 51
Tiempo transcurrido: 2 hr, 35 min, 37 seg
-Opciones de análisis-
Memoria: Activado
Inicio: Activado
Sistema de archivos: Activado
Archivo: Activado
Rootkits: Activado
Heurística: Activado
PUP: Detectar
PUM: Detectar
-Detalles del análisis-
Proceso: 0
(No hay elementos maliciosos detectados)
Módulo: 0
(No hay elementos maliciosos detectados)
Clave del registro: 8
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASC8_SkipUac_Carlos, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BF5181E3-8D37-441B-94B3-8495F97350DD}, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{BF5181E3-8D37-441B-94B3-8495F97350DD}, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.InstallCore.Generic, HKLM\SOFTWARE\CLASSES\TYPELIB\{B0407D14-269B-4E52-893C-440DA17813C3}, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, HKLM\SOFTWARE\CLASSES\INTERFACE\{21A9C99D-CCD8-42BD-AFC9-B074ABCA319F}, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, HKLM\SOFTWARE\CLASSES\INTERFACE\{40BD26C6-3139-47F3-84E6-E33B002ED5DE}, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, HKLM\SOFTWARE\CLASSES\INTERFACE\{70AF754A-8580-4C00-B2BA-857037BE831F}, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, HKLM\SOFTWARE\CLASSES\INTERFACE\{963D710B-65FA-4C8F-A0F8-D1D6D7E39037}, En cuarentena, [532], [621110],1.0.9132
Valor del registro: 0
(No hay elementos maliciosos detectados)
Datos del registro: 0
(No hay elementos maliciosos detectados)
Secuencia de datos: 0
(No hay elementos maliciosos detectados)
Carpeta: 0
(No hay elementos maliciosos detectados)
Archivo: 43
PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\TASKS\ASC8_SkipUac_Carlos, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\ASC.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\PROTECTORUPDATER.EXE#DF592EDC48F9D90B, En cuarentena, [334], [388085],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\REIGUARD.EXE#A609E9ADB746846F, En cuarentena, [334], [327181],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\REIPROTECTORM.EXE#30E6C24838A506F9, En cuarentena, [334], [327181],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\REISYSTEM.EXE#4AC4EF6BB53A8F21, En cuarentena, [334], [327181],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\REI_AVIRA.EXE#04D8644FB7EE7B36, En cuarentena, [334], [327181],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\REISCANNER.EXE#F151B34C3698635E, En cuarentena, [334], [327181],1.0.9132
PUP.Optional.Reimage, C:\ADWCLEANER\QUARANTINE\V1\20190204.185737\33\REIMAGE\REIMAGE PROTECTOR\UNINST.EXE#91A072017D7C9386, En cuarentena, [334], [388085],1.0.9132
PUP.Optional.InstallCore.Generic, C:\DOCUMENTS AND SETTINGS\PUBLIC\Desktop\Music Search MP3.lnk, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, C:\USERS\PUBLIC\DESKTOP\Music Search MP3.lnk, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, C:\PROGRAM FILES\DSNET CORP\ATUBE CATCHER 2.0\YCT.EXE, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.InstallCore.Generic, C:\PROGRAM FILES\DSNET CORP\ATUBE CATCHER 2.0\EWORKER.EXE, En cuarentena, [532], [621110],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WIN7_AMD64\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WIN7_X86\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WLH_AMD64\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WLH_X86\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WNET_AMD64\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WNET_X86\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WXP_AMD64\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DRIVERS\WXP_X86\REGISTRYDEFRAGBOOTTIME.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\ASCDOWNLOAD.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\ASCINIT.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\ASCUPGRADE.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\AUTOCARE.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\AUTOSWEEP.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\BROWSERCLEANER.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DISKDEFRAG.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\DISPLAY.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\OFCOMMON.DLL, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\PERFORMUPDATE.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\REGISTER.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\REPORT.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\REPROCESS.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\RESCUECENTER.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\AUTOUPDATE.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\NFEATURES.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\TASKHELPER.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\MONITORDISK.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.AdvancedSystemCare, C:\PROGRAM FILES\IOBIT\ADVANCED SYSTEMCARE 8\WIZARD.EXE, En cuarentena, [3814], [396386],1.0.9132
PUP.Optional.Reimage, C:\USERS\CARLOS\DESKTOP\VISUAL C++\REIMAGEREPAIR.EXE, En cuarentena, [334], [331559],1.0.9132
RiskWare.RevealerKeylogger, C:\USERS\CARLOS\DOCUMENTS\MEGASYNC\SETUP_RK_FREE_229_S.EXE, En cuarentena, [9256], [580659],1.0.9132
PUP.Optional.SlimCleanerPlus, G:\PROGRAMAS\SLIMDRIVERS-SETUP.EXE, En cuarentena, [1486], [472306],1.0.9132
Sector físico: 0
(No hay elementos maliciosos detectados)
WMI: 0
(No hay elementos maliciosos detectados)
(end)