Trojano

Program : RogueKiller Anti-Malware Version : 15.5.3.0 x64 : Yes Program Date : Jun 13 2022 Location : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : Support Form | Contact • Adlice Software Website : Free Virus Cleaner | RogueKiller Anti Malware • Adlice Software Operating System : Windows 10 (10.0.19044) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : yolanda User is Admin : Yes Date : 2022/07/10 17:51:22 Type : Scan Aborted : No Scan Mode : Standard Duration : 820 Found items : 0 Total scanned : 62840 Signatures Version : 20220704_072526 Truesight Driver : Yes Updates Count : 3

************************* Warnings *************************

************************* Updates ************************* VLC media player (64-bit), version 3.0.16 [+] Available Version : 3.0.17.4 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0 [+] Available Version : 6.11 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7 [+] Available Version : 15.31.5 [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\TeamViewer

************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

************************* WMI *************************

************************* Hosts File ************************* is_too_big : No hosts_file_path : C:\Windows\System32\drivers\etc\hosts

************************* Filesystem *************************

************************* Web Browsers *************************

************************* Antirootkit *************************

Program : RogueKiller Anti-Malware Version : 15.5.3.0 x64 : Yes Program Date : Jun 13 2022 Location : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : Support Form | Contact • Adlice Software Website : Free Virus Cleaner | RogueKiller AntiMalware • Adlice Software Operating System : Windows 10 (10.0.19044) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : yolanda User is Admin : Yes Date : 2022/07/10 17:17:13 Type : Scan Aborted : No Scan Mode : Standard Duration : 874 Found items : 7 Total scanned : 62850 Signatures Version : 20220704_072526 Truesight Driver : Yes Updates Count : 3

************************* Warnings *************************

************************* Updates ************************* VLC media player (64-bit), version 3.0.16 [+] Available Version : 3.0.17.4 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0 [+] Available Version : 6.11 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7 [+] Available Version : 15.31.5 [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\TeamViewer

************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

XX - Software └── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter – N/A → Encontrado O87 - Firewall ├── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe – v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe|Name=gamecenter.exe|Desc=gamecenter.exe|Defer=User| (missing) → Encontrado └── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe – v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe|Name=gamecenter.exe|Desc=gamecenter.exe|Defer=User| (missing) → Encontrado

************************* WMI *************************

************************* Hosts File ************************* is_too_big : No hosts_file_path : C:\Windows\System32\drivers\etc\hosts

************************* Filesystem ************************* [PUP.InstallCore (Potencialmente Malicioso)] (shortcut) aTube Catcher.lnk – C:\Users\Public\Desktop\aTube Catcher.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe → Encontrado [PUP.InstallCore (Potencialmente Malicioso)] (shortcut) Music Search MP3.lnk – C:\Users\Public\Desktop\Music Search MP3.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe → Encontrado [PUP.InstallCore (Potencialmente Malicioso)] (shortcut) aTube Catcher.lnk – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe → Encontrado [PUP.InstallCore (Potencialmente Malicioso)] (folder) DsNET Corp – C:\Program Files (x86)\DsNET Corp → Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************

Program : RogueKiller Anti-Malware Version : 15.5.3.0 x64 : Yes Program Date : Jun 13 2022 Location : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : Support Form | Contact • Adlice Software Website : Free Virus Cleaner | RogueKiller Anti Malware • Adlice Software Operating System : Windows 10 (10.0.19044) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : yolanda User is Admin : Yes Date : 2022/07/10 17:34:34 Type : Removal Aborted : No Scan Mode : Standard Duration : 874 Found items : 7 Total scanned : 62850 Signatures Version : 20220704_072526 Truesight Driver : Yes Updates Count : 3

************************* Warnings *************************

************************* Removal ************************* [PUP.MailRU (Potencialmente Malicioso)] HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter – → Borrado [+] scan_what : 2 [+] vendors : PUP.MailRU [+] Name : HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 0 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.MailRU (Potencialmente Malicioso)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe – [%localappdata%\gamecenter\gamecenter.exe] → Borrado [+] scan_what : 1 [+] vendors : PUP.MailRU [+] Name : HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe [+] value : [%localappdata%\gamecenter\gamecenter.exe] [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 1 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.MailRU (Potencialmente Malicioso)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe – [%localappdata%\gamecenter\gamecenter.exe] → Borrado [+] scan_what : 1 [+] vendors : PUP.MailRU [+] Name : HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe [+] value : [%localappdata%\gamecenter\gamecenter.exe] [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 2 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.InstallCore (Potencialmente Malicioso)] aTube Catcher.lnk – %SystemDrive%\Users\Public\Desktop\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) → Borrado [+] scan_what : 1 [+] vendors : PUP.InstallCore [+] Name : aTube Catcher.lnk [+] value : %SystemDrive%\Users\Public\Desktop\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 3 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.InstallCore (Potencialmente Malicioso)] Music Search MP3.lnk – %SystemDrive%\Users\Public\Desktop\Music Search MP3.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [/MP3DOWNLOADER]) → Borrado [+] scan_what : 1 [+] vendors : PUP.InstallCore [+] Name : Music Search MP3.lnk [+] value : %SystemDrive%\Users\Public\Desktop\Music Search MP3.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [/MP3DOWNLOADER]) [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 4 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.InstallCore (Potencialmente Malicioso)] aTube Catcher.lnk – %programdata%\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) → Borrado [+] scan_what : 1 [+] vendors : PUP.InstallCore [+] Name : aTube Catcher.lnk [+] value : %programdata%\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 5 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

[PUP.InstallCore (Potencialmente Malicioso)] DsNET Corp – %programfiles(x86)%\DsNET Corp → Borrado [+] scan_what : 1 [+] vendors : PUP.InstallCore [+] Name : DsNET Corp [+] value : %programfiles(x86)%\DsNET Corp [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 6 [+] status : 3 [+] status_str : Borrado [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0

Buenas @aranzazul, considero que usted NO me ha entendido cuando le he comentado que me debe de mandar el Informe y/o Reporte que ha generado el programa: RogueKiller ya que usted NO me ha mandado correctamente el dicho Informe y/o Reporte que le he solicitado del dicho programa que le he comentado ya que si usted no me manda correctamente el dicho Informe y/o Reporte no podré seguir con la reparación de su ordenador.

Realice el siguiente procedimiento que le indico a continuación para poder mandarme correctamente el dicho Informe y/o Reporte que le he solicitado: Realice usted los siguientes pasos para poder enviarme el dicho Informe y/o Reporte correctamente el cual, le indico a usted a continuación:

Método Nº 2:

Etiqueta Texto Preformateado: y realice los siguientes pasos para que me pueda usted enviar el dicho Informe y/o Reporte del dicho programa que le ha generado el programa: RogueKiller que le solicito a continuación:

Preformateado

Pegue el contenido de su reporte en su tema >> Seleccione “todo” el texto >> Presione la etiqueta “Texto Preformateado” tal y como se muestra en la imagen anterior.

Seguidamente, presione “Responder”

Quedo a la espera de su respuesta!

1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/16 22:39:44
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 811
Found items        : 15
Total scanned      : 64154
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.18
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.37.3
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************
[Adw.Dealply (Malicioso)] PlariumPlay.exe (9120) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (4976) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (6820) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (7048) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (7708) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (8396) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlayInfo.exe (8860) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlayInfo.exe -> Encontrado
└── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9572) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado

************************* Modules *************************

************************* Services *************************
[Adw.Dealply (Malicioso)] Plarium Play Client Service (2916) -- (Plarium Global LTD) "C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe"  -displayname "Plarium Play Client Service" -servicename "Plarium Play Client Service" -> Encontrado

************************* Scheduled Tasks *************************

************************* Registry *************************
>>>>>> O4 - Run
└── [Adw.Dealply (Malicioso)] (X64) HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\Microsoft\Windows\CurrentVersion\Run|PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay\PlariumPlay --args -run-with-os (missing) -> Encontrado
>>>>>> O23 - Services
└── [Adw.Dealply (Malicioso)] (X64) (Plarium Global LTD) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Plarium Play Client Service -- N/A -> Encontrado

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\AppData\Roaming\Microsoft\Windows\Start Menu\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado
[Adw.Dealply (Malicioso)] (folder) PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\Desktop\asistencia remota\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************
1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\pc\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/16 23:03:39
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 812
Found items        : 2
Total scanned      : 64139
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.18
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.37.3
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************
[Adw.Dealply (Malicioso)] (folder) PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\Desktop\asistencia remota\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************
1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.5.3.0
x64                : Yes
Program Date       : Jun 13 2022
Location           : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/07/10 17:51:22
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 820
Found items        : 0
Total scanned      : 62840
Signatures Version : 20220704_072526
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.17.4
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.31.5
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************

************************* Web Browsers *************************

************************* Antirootkit *************************
escribe o pega el código aquí
1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.5.3.0
x64                : Yes
Program Date       : Jun 13 2022
Location           : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/07/10 17:34:34
Type               : Removal
Aborted            : No
Scan Mode          : Standard
Duration           : 874
Found items        : 7
Total scanned      : 62850
Signatures Version : 20220704_072526
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Removal *************************
[PUP.MailRU (Potencialmente Malicioso)] HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter --  -> Borrado
  [+] scan_what       : 2
  [+] vendors         : PUP.MailRU
  [+] Name            : HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter
  [+] Type            : Registry
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 0
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.MailRU (Potencialmente Malicioso)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe -- [%localappdata%\gamecenter\gamecenter.exe] -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.MailRU
  [+] Name            : HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe
  [+] value           : [%localappdata%\gamecenter\gamecenter.exe]
  [+] Type            : Registry
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 1
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.MailRU (Potencialmente Malicioso)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe -- [%localappdata%\gamecenter\gamecenter.exe] -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.MailRU
  [+] Name            : HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe
  [+] value           : [%localappdata%\gamecenter\gamecenter.exe]
  [+] Type            : Registry
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 2
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.InstallCore (Potencialmente Malicioso)] aTube Catcher.lnk -- %SystemDrive%\Users\Public\Desktop\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.InstallCore
  [+] Name            : aTube Catcher.lnk
  [+] value           : %SystemDrive%\Users\Public\Desktop\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [])
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 3
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.InstallCore (Potencialmente Malicioso)] Music Search MP3.lnk -- %SystemDrive%\Users\Public\Desktop\Music Search MP3.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [/MP3DOWNLOADER]) -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.InstallCore
  [+] Name            : Music Search MP3.lnk
  [+] value           : %SystemDrive%\Users\Public\Desktop\Music Search MP3.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [/MP3DOWNLOADER])
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 4
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.InstallCore (Potencialmente Malicioso)] aTube Catcher.lnk -- %programdata%\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe []) -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.InstallCore
  [+] Name            : aTube Catcher.lnk
  [+] value           : %programdata%\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk (lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe [])
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 5
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[PUP.InstallCore (Potencialmente Malicioso)] DsNET Corp -- %programfiles(x86)%\DsNET Corp -> Borrado
  [+] scan_what       : 1
  [+] vendors         : PUP.InstallCore
  [+] Name            : DsNET Corp
  [+] value           : %programfiles(x86)%\DsNET Corp
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 3
  [+] id              : 6
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0
Program            : RogueKiller Anti-Malware
Version            : 15.5.3.0
x64                : Yes
Program Date       : Jun 13 2022
Location           : C:\Users\yolanda\Pictures\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/07/10 17:17:13
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 874
Found items        : 7
Total scanned      : 62850
Signatures Version : 20220704_072526
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.17.4
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.31.5
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************
>>>>>> XX - Software
└── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\GameCenter -- N/A -> Encontrado
>>>>>> O87 - Firewall
├── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3F04186C-4EAA-47F4-817F-43A838078726}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe|Name=gamecenter.exe|Desc=gamecenter.exe|Defer=User| (missing) -> Encontrado
└── [PUP.MailRU (Potencialmente Malicioso)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4145BE15-E5DD-49E3-ADC7-336DC082ECCE}C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\yolanda\appdata\local\gamecenter\gamecenter.exe|Name=gamecenter.exe|Desc=gamecenter.exe|Defer=User| (missing) -> Encontrado

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************
[PUP.InstallCore (Potencialmente Malicioso)] (shortcut) aTube Catcher.lnk -- C:\Users\Public\Desktop\aTube Catcher.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe -> Encontrado
[PUP.InstallCore (Potencialmente Malicioso)] (shortcut) Music Search MP3.lnk -- C:\Users\Public\Desktop\Music Search MP3.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe -> Encontrado
[PUP.InstallCore (Potencialmente Malicioso)] (shortcut) aTube Catcher.lnk -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk => C:\PROGRA~2\DSNETC~1\ATUBEC~1.0\yct.exe -> Encontrado
[PUP.InstallCore (Potencialmente Malicioso)] (folder) DsNET Corp -- C:\Program Files (x86)\DsNET Corp -> Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************
1 me gusta

perdon por al torpeza u.u

1 me gusta

No se preocupe @aranzazul, es porque muchas veces el Sistema no identifica correctamente el: Informe y/o Reporte si no se envía correctamente por lo tanto no se puede interpretar correctamente el Informe y/o Reporte y puede dar lugar a una mala interpretación del dicho Informe y/o Reporte por mi parte por ello es el que se debe de poner el dicho: Informe y/o Reporte que le solicito correctamente.

Ahora usted me ha enviado correctamente el dicho Informe y/o Reporte y acabo de revisar el dicho Informe y/o Reporte y el dicho programa: RogueKiller, ha eliminado todas las infecciones que ha encontrado el dicho programa pero se puede observa en el dicho: Informe y/o Reporte que no ha eliminado algunas infecciones y virus el dicho programa: RogueKiller por lo que si es usted tan amable para poder garantizar que se eliminen todas las infecciones y virus de su ordenador que usted le vuelva a repetir el mismo proceso de análisis con el dicho programa: RogueKiller para poder garantizar que se puedan eliminar todas las infecciones y virus con garantías de éxitos en su ordenador.

Me manda de nuevo usted el dicho Informe y/o Reporte como me lo acaba de enviar de nuevo correctamente de nuevo cuando finalice el proceso completo de análisis siguiendo las indicaciones del dicho programa: RogueKiller que le he dejado en el Manual del dicho programa y eliminando todas las infecciones y virus que encuentre el dicho programa.

Quedo a la espera de su respuesta!

1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\pc\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/17 14:27:53
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 806
Found items        : 17
Total scanned      : 64418
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.18
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.37.3
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************
[Adw.Dealply (Malicioso)] PlariumPlay.exe (8424) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlayInfo.exe (8700) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlayInfo.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9180) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9556) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9564) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9668) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
└── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9676) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado

************************* Modules *************************

************************* Services *************************
[Adw.Dealply (Malicioso)] Plarium Play Client Service (2888) -- (Plarium Global LTD) "C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe"  -displayname "Plarium Play Client Service" -servicename "Plarium Play Client Service" -> Encontrado

************************* Scheduled Tasks *************************

************************* Registry *************************
>>>>>> O4 - Run
└── [Adw.Dealply (Malicioso)] (X64) HKEY_USERS\S-1-5-21-3284419310-3972424465-897184092-1001\Software\Microsoft\Windows\CurrentVersion\Run|PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay\PlariumPlay --args -run-with-os (missing) -> Encontrado
>>>>>> O23 - Services
└── [Adw.Dealply (Malicioso)] (X64) (Plarium Global LTD) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Plarium Play Client Service -- N/A -> Encontrado

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\Desktop\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Raid Shadow Legends.lnk -- C:\Users\yolanda\Desktop\Raid Shadow Legends.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\AppData\Roaming\Microsoft\Windows\Start Menu\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado
[Adw.Dealply (Malicioso)] (folder) PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Plarium Play.lnk -- C:\Users\yolanda\Desktop\Plarium Play.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado
[Adw.Dealply (Malicioso)] (shortcut) Raid Shadow Legends.lnk -- C:\Users\yolanda\Desktop\Raid Shadow Legends.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE -> Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************
escribe o pega el código aquí
1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\pc\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/17 00:02:27
Type               : Removal
Aborted            : No
Scan Mode          : Standard
Duration           : 812
Found items        : 2
Total scanned      : 64139
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Removal *************************
[Adw.Dealply (Malicioso)] PlariumPlay -- %localappdata%\PlariumPlay -> Borrado
  [+] scan_what       : 1
  [+] vendors         : Adw.Dealply
  [+] Name            : PlariumPlay
  [+] value           : %localappdata%\PlariumPlay
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 2
  [+] id              : 0
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0

[Adw.Dealply (Malicioso)] Plarium Play.lnk -- %USERPROFILE%\Desktop\asistencia remota\Plarium Play.lnk (lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE []) -> Borrado
  [+] scan_what       : 1
  [+] vendors         : Adw.Dealply
  [+] Name            : Plarium Play.lnk
  [+] value           : %USERPROFILE%\Desktop\asistencia remota\Plarium Play.lnk (lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE [])
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 2
  [+] id              : 1
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0
1 me gusta

Buenas @aranzazul, el programa: RogueKiller ha realizado correctamente su función y ha eliminado las infecciones que ha encontrado en su ordenador lo que puedo observar en el Informe que me acaba de enviar es que el dicho programa: RogueKiller ha encontrado las siguientes infecciones y virus y no las ha eliminado por lo tanto las dichas infecciones siguen activas en su ordenador.

Las infecciones que refleja el Informe que ha encontrado y NO se han eliminado son las siguientes:

:one: [Adw.Dealply (Malicioso)] (shortcut) Raid Shadow Legends.lnk – C:\Users\yolanda\Desktop\Raid Shadow Legends.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE → Encontrado

:two: [Adw.Dealply (Malicioso)] (shortcut) Raid Shadow Legends.lnk – C:\Users\yolanda\Desktop\Raid Shadow Legends.lnk => C:\Users\yolanda\AppData\Local\PLARIU~1\PLARIU~1.EXE → Encontrado

Para poder eliminar las dichas infecciones que ha encontrado el: RogueKiller realice de nuevo un proceso de análisis con el dicho programa, siguiendo las indicaciones dadas y su manual y me manda de nuevo los informes que generen en dicho programa: RogueKiller para que pueda revisar de nuevo si ha eliminado correctamente las infecciones de su ordenador.

Quedo a la espera de su respuesta!

1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\pc\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/17 22:57:28
Type               : Scan
Aborted            : No
Scan Mode          : Standard
Duration           : 861
Found items        : 8
Total scanned      : 64939
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Updates *************************
VLC media player (64-bit), version 3.0.16
  [+] Available Version        : 3.0.18
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\VideoLAN\VLC

WinRAR 5.90 (64-bit) (64-bit), version 5.90.0
  [+] Available Version        : 6.11
  [+] Wow6432                  : No
  [+] Portable                 : No
  [+] update_location          : C:\Program Files\WinRAR\

TeamViewer (32-bit), version 15.6.7
  [+] Available Version        : 15.37.3
  [+] Wow6432                  : Yes
  [+] Portable                 : No
  [+] update_location          : C:\Program Files (x86)\TeamViewer


************************* Processes *************************
[Adw.Dealply (Malicioso)] PlariumPlay.exe (4292) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlayInfo.exe (3880) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlayInfo.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (4528) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (8616) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (8636) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
├── [Adw.Dealply (Malicioso)] PlariumPlay.exe (8700) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado
└── [Adw.Dealply (Malicioso)] PlariumPlay.exe (9056) -- (Plarium Global LTD) C:\Users\yolanda\AppData\Local\PlariumPlay\8.1.0-0.0.1\PlariumPlay.exe -> Encontrado

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

************************* WMI *************************

************************* Hosts File *************************
is_too_big      : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts


************************* Filesystem *************************
[Adw.Dealply (Malicioso)] (folder) PlariumPlay -- C:\Users\yolanda\AppData\Local\PlariumPlay -> Encontrado

************************* Web Browsers *************************

************************* Antirootkit *************************
1 me gusta

pero hay algo que no entiendo, hago el proceso tal y como me dices y luego no me deja cerrar el programa dice quesigue el analisis, pero yo cuando miro antes pone que ya ha finalizado

1 me gusta

Buenas @aranzazul en respuesta a su pregunta, cuando el programa: RogueKiller ha finalizado completamente te tiene que salir una pantalla similar a esta:

También fíjese que cuando finaliza el proceso de análisis el: RogueKiller debe de reflejar el dicho programa la siguiente información que se refleja a continuación:

capturada17

Si a usted no le sale dicha información en el programa del: RogueKiller que se muestra a continuación es porque el dicho programa no ha terminado de finalizar completamente el proceso de análisis:

capturada17

Repita usted de nuevo el proceso de análisis del: RogueKiller teniendo en cuenta lo que le he comentado y elimine todas las infecciones y virus que encuentre el dicho programa siguiendo el manual y las indicaciones dadas y usted no interrumpa, no finalice usted el dicho programa hasta que el dicho programa finalice completamente.

Me manda de nuevo el informe y/o Reporte que genere el dicho programa reflejando las infecciones y virus que haya eliminado el dicho programa: RogueKiller

Quedo a la espera de su respuesta!

1 me gusta

mira me pasa esto yo paso el antivirus que me dijistes y pasa que lo veo finalizado le doy a resultados y luego lo que esta maracado le doy a eliminacion y una vez hago eso le doy a la principal y resultados y sigue saliendo y ahi es cuadno lo intento cerrar y no me deja tal y como lo pongo ahora

1 me gusta

1 me gusta
Program            : RogueKiller Anti-Malware
Version            : 15.6.4.0
x64                : Yes
Program Date       : Dec 15 2022
Location           : C:\Users\yolanda\Downloads\pc\RogueKiller_portable64.exe
Premium            : No
Company            : Adlice Software
Website            : https://www.adlice.com/
Contact            : https://adlice.com/contact/
Website            : https://adlice.com/download/roguekiller/
Operating System   : Windows 10 (10.0.19044) 64-bit
64-bit OS          : Yes
Startup            : 0
WindowsPE          : No
User               : yolanda
User is Admin      : Yes
Date               : 2022/12/18 18:28:38
Type               : Removal
Aborted            : No
Scan Mode          : Standard
Duration           : 851
Found items        : 1
Total scanned      : 64991
Signatures Version : 20221215_093220
Truesight Driver   : Yes
Updates Count      : 3

************************* Warnings *************************

************************* Removal *************************
[Adw.Dealply (Malicioso)] PlariumPlay -- %localappdata%\PlariumPlay -> Borrado
  [+] scan_what       : 1
  [+] vendors         : Adw.Dealply
  [+] Name            : PlariumPlay
  [+] value           : %localappdata%\PlariumPlay
  [+] Type            : File/Folder
  [+] file_vtscore    : 0
  [+] file_vttotal    : 0
  [+] is_malicious    : Yes
  [+] detection_level : 2
  [+] id              : 0
  [+] status          : 3
  [+] status_str      : Borrado
  [+] removed         : Yes
  [+] status_choice   : 2
  [+] malpe_score     : 0
1 me gusta