Panda Global Protection no podía actualizarse

Cerrado
klaus25
Usuario registrado
Usuario registrado
Mensajes: 18
Registrado: Mar, 15 Sep 2015, 22:31

Panda Global Protection no podía actualizarse

Mensaje por klaus25 » Jue, 18 Ene 2018, 10:31

Hola.
Panda Global Protection no podía actualizarse. Entonces miré en Configuración -> Firewall y descubrí cientos de reglas de usuario que yo no he metido. Hice clic en Restaurar y desaparecieron todas. Entonces pude actualizar el Antivirus. ¿Quién me ha podido establecer estas reglas? No tenía protegida la consola del Panda mediante contraseña lo que hice en seguida. Con esta protección, ¿me pueden volver a crear reglas? Además he notado que de repente aparece una ventana negra del CMD que dura menos de un segundo. ¿Tengo Spyware? El análisis en profundidad del Panda Global Protection no me acusa problema alguno.
¿Me puede ayudar alguien?

Darth Panda
Moderador Oficial
Moderador Oficial
Mensajes: 913
Registrado: Jue, 27 Sep 2012, 10:33

Re: Panda Global Protection no podía actualizarse

Mensaje por Darth Panda » Jue, 18 Ene 2018, 14:00

¿tanto como cientos de reglas de usuario?
normalmente, cuando en fw encuentra un bloqueo, pregunta al usuario si se quiere permitir tal o tal excepción.

En un principio, si se te vuelven a crear, antes de borrarlas, recoge unos pantallazos, para que veamos que tipo de excepciones se te han creado.

Si el residente no localiza nada, prueba a pasar Panda cloud cleaner por el equipo.

https://www.pandasecurity.com/spain/sup ... rd?id=1674

saludos
Dpto. Soporte Técnico

Panda Security
The Cloud Security Company

klaus25
Usuario registrado
Usuario registrado
Mensajes: 18
Registrado: Mar, 15 Sep 2015, 22:31

Re: Panda Global Protection no podía actualizarse

Mensaje por klaus25 » Jue, 18 Ene 2018, 23:19

Muchas gracias por las indicaciones. Si, han sido muchísimas las reglas de usuario. Le envío una lista de las reglas de usuario que se han vuelto a crear. Todavía no he pasado el Cloud Cleaner pero lo haré.
Un saludo

Darth Panda
Moderador Oficial
Moderador Oficial
Mensajes: 913
Registrado: Jue, 27 Sep 2012, 10:33

Re: Panda Global Protection no podía actualizarse

Mensaje por Darth Panda » Vie, 19 Ene 2018, 10:22

no hemos recibido la lista

saludos
Dpto. Soporte Técnico

Panda Security
The Cloud Security Company

klaus25
Usuario registrado
Usuario registrado
Mensajes: 18
Registrado: Mar, 15 Sep 2015, 22:31

Re: Panda Global Protection no podía actualizarse

Mensaje por klaus25 » Vie, 19 Ene 2018, 10:37

La mandé como archivo adjunto o por lo menos lo intenté. Parece que no funciona o lo hice mal. Aquí va la última lista de esta mañana:
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Block Distributed Transaction Coordinator network conections on public networks";
RuleGuid == "002DFDF5-9BDE-4C51-8027-5C80776AAF9F";
GroupId == 1000;
Footprint == "1.0";
Priority == 50250;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP) and
DestinationPort in (3372) and
CommDirection == INCOMING;
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Youcam6_webcam_camera_video.exe (Allow outgoing)";
RuleGuid == "02967d56-77db-4149-954c-d51460fb3eed";
GroupId == 2000;
Footprint == "1.0";
Priority == 152;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\CyberLink\YouCam6\Youcam6_webcam_camera_video.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "HPWarrantyChecker.exe (Allow outgoing)";
RuleGuid == "0592dc5c-f3ba-478b-aa89-12eb72a233a6";
GroupId == 2000;
Footprint == "1.0";
Priority == 144;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "pingsender.exe (Allow outgoing)";
RuleGuid == "0761b3a5-3ce6-4e40-a3f1-fc665dee7f23";
GroupId == 2000;
Footprint == "1.0";
Priority == 145;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Mozilla Firefox\pingsender.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "CompatTelRunner.exe (Allow outgoing)";
RuleGuid == "0e95de0c-442e-4547-8f5b-abd1cba36680";
GroupId == 2000;
Footprint == "1.0";
Priority == 131;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\system32\CompatTelRunner.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "EMMSN.exe (Allow outgoing)";
RuleGuid == "10f85e25-6cbc-46c8-bf89-ca122a5214fc";
GroupId == 2000;
Footprint == "1.0";
Priority == 151;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Movistar\Escritorio Movistar\EMMSN.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PSDevice.exe (Allow outgoing)";
RuleGuid == "13a5066d-02f3-4177-8287-40d92dea0990";
GroupId == 2000;
Footprint == "1.0";
Priority == 157;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\ProgramData\Panda Security\Panda Devices Agent\Downloads\b8d88c019f8c0d008d4109ded893d60f\PSDevice.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Microsoft.Photos.exe (Allow outgoing)";
RuleGuid == "13fe056f-890f-4a27-85c5-be8cbb93d9d6";
GroupId == 2000;
Footprint == "1.0";
Priority == 143;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "SkypeHost.exe (Allow outgoing)";
RuleGuid == "28b01845-1738-45c7-a79d-2747e591761b";
GroupId == 2000;
Footprint == "1.0";
Priority == 134;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PCloudCleaner.exe (Allow outgoing)";
RuleGuid == "2f299498-056f-4285-98f1-766d75b70f71";
GroupId == 2000;
Footprint == "1.0";
Priority == 159;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\PCloudCleaner.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "svchost.exe (Allow incoming)";
RuleGuid == "40189822-5310-4e36-add6-c134dda33629";
GroupId == 2000;
Footprint == "1.0";
Priority == 126;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\windows\system32\svchost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == INCOMING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PSProfiler.exe (Allow outgoing)";
RuleGuid == "420bddca-ace2-4f4b-84de-5bff0896ab51";
GroupId == 2000;
Footprint == "1.0";
Priority == 150;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\ProgramData\Panda Security\Panda Devices Agent\Downloads\b823d8c34f5d5d4949aef7a8d909ae04\PSProfiler.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Deny NetBIOS (UDP) over public networks (NT platform). Incoming connections";
RuleGuid == "4A47E5FD-8247-484B-A007-D65961885483";
GroupId == 1000;
Footprint == "1.0";
Priority == 50200;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
TargetInfo NETWORK_PACKET
{
IpProtocol in (UDP) and
DestinationPort in (135, 137 - 139, 445) and
CommDirection == INCOMING;
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "browser_broker.exe (Allow outgoing)";
RuleGuid == "4cdbf932-da8b-4d7c-bdd9-45e0b2dfc0f2";
GroupId == 2000;
Footprint == "1.0";
Priority == 139;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\system32\browser_broker.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "svchost.exe (Allow outgoing)";
RuleGuid == "523b91b5-1348-44f4-9eef-4ee9b0589cf7";
GroupId == 2000;
Footprint == "1.0";
Priority == 121;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\windows\system32\svchost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "BackgroundTransferHost.exe (Allow outgoing)";
RuleGuid == "5f3f8f20-e5b1-4652-9aa9-86e709202ef7";
GroupId == 2000;
Footprint == "1.0";
Priority == 162;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\system32\BackgroundTransferHost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "TouchpointAnalyticsClient.exe (Allow outgoing)";
RuleGuid == "620c63cc-4137-4f70-b25b-ecb9f28e5360";
GroupId == 2000;
Footprint == "1.0";
Priority == 154;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClient.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Remote Desktop";
RuleGuid == "6D688448-5DBF-481A-852B-555CEFCCF7CF";
GroupId == 1000;
Footprint == "1.0";
Priority == 50300;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
ApplicationInfo
{
Path in ("%WINDIR%\system32\svchost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP) and
DestinationPort in (3389) and
CommDirection == INCOMING;
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "MicrosoftEdge.exe (Allow outgoing)";
RuleGuid == "6bfbcdc6-a267-41c5-8754-5cd3c9d7d397";
GroupId == 2000;
Footprint == "1.0";
Priority == 138;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PSExpCampaign.exe (Allow outgoing)";
RuleGuid == "6ff30cf0-c2ac-409f-bdc2-8f5aaeb9aff3";
GroupId == 2000;
Footprint == "1.0";
Priority == 147;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\ProgramData\Panda Security\Panda Devices Agent\Downloads\6569f4a17eccbb65f73cd1b414ee6f22\PSExpCampaign.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "wermgr.exe (Allow outgoing)";
RuleGuid == "75579be1-c1de-40a8-86b7-0a711fed2d94";
GroupId == 2000;
Footprint == "1.0";
Priority == 129;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\system32\wermgr.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "System (Allow outgoing)";
RuleGuid == "756a6865-3829-4f2d-ab20-b444acaa2f01";
GroupId == 2000;
Footprint == "1.0";
Priority == 124;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("System");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "HxTsr.exe (Allow outgoing)";
RuleGuid == "767f5f9c-fe38-42a9-aea0-47be925bc16d";
GroupId == 2000;
Footprint == "1.0";
Priority == 127;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8218.40507.0_x64__8wekyb3d8bbwe\HxTsr.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Internet Information Server (Remote Administration)";
RuleGuid == "8A1C3893-B2A0-4A86-8B4F-C2C307CE1CC7";
GroupId == 1000;
Footprint == "1.0";
Priority == 50350;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
ApplicationInfo
{
Path in ("%WINDIR%\system32\inetsrv\inetinfo.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP) and
DestinationPort in (5324) and
CommDirection == INCOMING;
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "DropboxUpdate.exe (Allow outgoing)";
RuleGuid == "90cab3a9-a0c1-4182-b8a4-7a3c7a9664dc";
GroupId == 2000;
Footprint == "1.0";
Priority == 142;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "MicrosoftEdgeCP.exe (Allow outgoing)";
RuleGuid == "97e6bed5-3611-49b2-8f3a-57c3f8162349";
GroupId == 2000;
Footprint == "1.0";
Priority == 137;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "taskhostw.exe (Allow outgoing)";
RuleGuid == "9d69413d-ce04-4313-93cb-8a03b6f414af";
GroupId == 2000;
Footprint == "1.0";
Priority == 128;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\windows\system32\taskhostw.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "AcroRd32.exe (Allow outgoing)";
RuleGuid == "9e7e05b6-d2f9-40a9-aa56-3b4009180690";
GroupId == 2000;
Footprint == "1.0";
Priority == 149;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Deny NETBIOS over public networks";
RuleGuid == "A1245486-E8D1-4CD9-8F3D-64A74A9F4A24";
GroupId == 1000;
Footprint == "1.0";
Priority == 50150;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP) and
DestinationPort in (135, 139, 445, 593) and
CommDirection == INCOMING;
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Deny INCOMING ICMP communications over public networks";
RuleGuid == "EA8328C6-BA0F-4FA8-84A0-EDEE923EE3C7";
GroupId == 1000;
Footprint == "1.0";
Priority == 50100;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_PANDA);
Zone in ("PUBLIC");
}

Check
{
TargetInfo NETWORK_PACKET
{
IpProtocol in (ICMP) and
CommDirection == INCOMING and
IcmpType in (8);
}
}

Actions
{
DENY;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "VpnSvc.exe (Allow outgoing)";
RuleGuid == "a74736ff-a12b-46f2-919c-9d7da5441541";
GroupId == 2000;
Footprint == "1.0";
Priority == 130;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "WiFiTask.exe (Allow outgoing)";
RuleGuid == "a818cf94-6be9-40f1-b6ac-33c206a885e5";
GroupId == 2000;
Footprint == "1.0";
Priority == 161;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\System32\WiFiTask.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "smartscreen.exe (Allow outgoing)";
RuleGuid == "aba81877-48bd-46f5-9887-756858fe959f";
GroupId == 2000;
Footprint == "1.0";
Priority == 148;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Windows\System32\smartscreen.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PSUAMain.exe (Allow outgoing)";
RuleGuid == "adf2ec68-1a1e-4d76-a3fd-3f38289a3bae";
GroupId == 2000;
Footprint == "1.0";
Priority == 123;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "HPCEE.exe (Allow outgoing)";
RuleGuid == "bbffbc90-b374-489f-88b8-56c2bb4fed2c";
GroupId == 2000;
Footprint == "1.0";
Priority == 160;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "PSANCU.exe (Allow outgoing)";
RuleGuid == "c0f4251b-b130-4407-9c77-74e847217f34";
GroupId == 2000;
Footprint == "1.0";
Priority == 125;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\TEMP\RarSFX0\PSANCU.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "TAInstaller.exe (Allow outgoing)";
RuleGuid == "c852b59d-6ace-4955-806f-427378d0cc23";
GroupId == 2000;
Footprint == "1.0";
Priority == 155;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\HP\HP Touchpoint Analytics Client\TAInstaller.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "UNPCampaignManager.exe (Allow outgoing)";
RuleGuid == "c94c615f-24f0-491d-80a3-fafc9fdfb8dc";
GroupId == 2000;
Footprint == "1.0";
Priority == 156;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\System32\UNP\UNPCampaignManager.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "AgentSvc.exe (Allow outgoing)";
RuleGuid == "ce6d5563-5213-42f1-bcc6-bdf738c97596";
GroupId == 2000;
Footprint == "1.0";
Priority == 122;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "OfficeHubTaskHost.exe (Allow outgoing)";
RuleGuid == "d1e2bd73-d968-46a4-9b6d-fe65866283a7";
GroupId == 2000;
Footprint == "1.0";
Priority == 133;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.8414.5925.0_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "sihclient.exe (Allow outgoing)";
RuleGuid == "d802f840-a8e1-44ca-983a-3cb0bed747b6";
GroupId == 2000;
Footprint == "1.0";
Priority == 153;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\System32\sihclient.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "backgroundTaskHost.exe (Allow outgoing)";
RuleGuid == "d8a42838-1a6a-48cd-8146-e63a8bea726a";
GroupId == 2000;
Footprint == "1.0";
Priority == 132;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\WINDOWS\system32\backgroundTaskHost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "Panda_URL_Filteringb.exe (Allow outgoing)";
RuleGuid == "dc6ca550-9c86-4ff9-8a63-830fab196273";
GroupId == 2000;
Footprint == "1.0";
Priority == 140;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "maintenanceservice.exe (Allow outgoing)";
RuleGuid == "e394c4a7-03ad-4ab2-b354-f3ced083d41c";
GroupId == 2000;
Footprint == "1.0";
Priority == 146;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "SearchUI.exe (Allow outgoing)";
RuleGuid == "eaaa1309-94fa-457a-b03a-21fde0360112";
GroupId == 2000;
Footprint == "1.0";
Priority == 136;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "firefox.exe (Allow outgoing)";
RuleGuid == "ee3af42a-c6ca-4db9-8d46-e263fdf8c722";
GroupId == 2000;
Footprint == "1.0";
Priority == 141;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files (x86)\Mozilla Firefox\firefox.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "SkypeHost.exe (Allow incoming)";
RuleGuid == "ee5cddec-37eb-4b87-a74c-0d8162e17471";
GroupId == 2000;
Footprint == "1.0";
Priority == 135;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == INCOMING;
}
}

Actions
{
ALLOW;
}
}
Rule
{
Header
{
Version == "1.0.0.0";
Description == "msfeedssync.exe (Allow outgoing)";
RuleGuid == "ef62b29d-2fa3-4e0b-8b54-3c25fe73a34d";
GroupId == 2000;
Footprint == "1.0";
Priority == 158;
State == ENABLED;
Stateful == TRUE;
Severity == CRITICAL;
Categories in (FIREWALL_USER);
}

Check
{
ApplicationInfo
{
Path in ("\\?\C:\windows\system32\msfeedssync.exe");
}
TargetInfo NETWORK_PACKET
{
IpProtocol in (TCP, UDP) and
CommDirection == OUTGOING;
}
}

Actions
{
ALLOW;
}
}

Darth Panda
Moderador Oficial
Moderador Oficial
Mensajes: 913
Registrado: Jue, 27 Sep 2012, 10:33

Re: Panda Global Protection no podía actualizarse

Mensaje por Darth Panda » Vie, 19 Ene 2018, 13:34

pero estas excepciones son necesarias, si quieres que tanto el antivirus, como el sistema operativo y todos los programas que se conectan a internet que tienes instalados, funcionen. son reglas autogeneradas, y son correctas.

pasa panda cloud cleaner, para ver si hay malware, y si da limpio, no creo que tengas que preocuparte
Dpto. Soporte Técnico

Panda Security
The Cloud Security Company

klaus25
Usuario registrado
Usuario registrado
Mensajes: 18
Registrado: Mar, 15 Sep 2015, 22:31

Re: Panda Global Protection no podía actualizarse

Mensaje por klaus25 » Vie, 19 Ene 2018, 22:05

Al pasar el Panda Cloud Cleaner parece que hubo algo malo - al final dice: Equipo desinfectado correctamente. Entradas de registro desinfectadas: 1.
Y me sigue apareciendo la ventana negra del CMD de vez en cuando.
¿Qué puedo hacer? ¿Está ahora todo en orden?

Darth Panda
Moderador Oficial
Moderador Oficial
Mensajes: 913
Registrado: Jue, 27 Sep 2012, 10:33

Re: Panda Global Protection no podía actualizarse

Mensaje por Darth Panda » Lun, 22 Ene 2018, 10:19

si dudas o estas inseguro sobre si hay un malware en tu equipo, contacta con el dpto de soporte de tu area, e informa del mismo.
Para saber si tu equipo tiene algún malware, o simplemente es un proceso de sistema operativo (pero al ser tu equipo tan bajo en recursos, ves el proceso de abrir y cerrar el cmd).
Dpto. Soporte Técnico

Panda Security
The Cloud Security Company

klaus25
Usuario registrado
Usuario registrado
Mensajes: 18
Registrado: Mar, 15 Sep 2015, 22:31

Re: Panda Global Protection no podía actualizarse

Mensaje por klaus25 » Lun, 22 Ene 2018, 23:01

Muchas gracias por el consejo. Ya me he puesto en contacto con el soporte técnico. Pueden cerrar este hilo.
Un saludo

Darth Panda
Moderador Oficial
Moderador Oficial
Mensajes: 913
Registrado: Jue, 27 Sep 2012, 10:33

Re: Panda Global Protection no podía actualizarse

Mensaje por Darth Panda » Mié, 24 Ene 2018, 16:14

Gracias a ti. Saludos
Dpto. Soporte Técnico

Panda Security
The Cloud Security Company

Cerrado

Volver a “Archivo”