Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

i'm infected with torn tv...how do i remove this?..


  • Please log in to reply
9 replies to this topic

#1 swathi2772

swathi2772

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 19 June 2013 - 01:24 AM

i scanned my computer using spyhunter and it gives me 1741 threats but when i scan it using avg or malware bytes i get only 10 or 15 threats and they are not from torn tv...and i'm not able to fix the threats using spyhunter as i'm not a registered user...is there any free software to remove all the malwares?



BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

    Aussie Addict


  • Members
  • 8,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Victoria Australia
  • Local time:03:06 PM

Posted 19 June 2013 - 07:46 AM

Hello swathi2772 -
TornTV is a free software that let's it's users watch TV using their computers. On it's own this program is not a virus or malware, however it's developers are using deceptive monetization methods - They bundle their free software with various browser plug-ins which changes user's Internet browsers settings and causes redirect problems. Majority of free software developers bundle their programs with one toolbar or pug-in, but TornTV developers have bundled their software with several. When computer users install TornTV on their computers they will also install Babylon toolbar and Yontoo adware on their machines.

 

Note : If you have any of these listed programs already installed, always check for Updates prior to any scan.

 

Download Security Check by Screen317 from Here
* Save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Note: If a security program requests permission to access, allow it to do so.

The program is 100% safe and used on all forum areas every day.

 

Next : Download Malwarebytes' Anti-Malware Free (aka MBAM)
* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Scan, then click Perform quick scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.
Be sure to reboot the computer after you post the log.

 

Next : Download SUPERAntiSpyware Free (aka SAS)
* Double-click SAS -setup.exe and follow the prompts to install the program.
* At the end, Check for Updates to be sure it is current
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, you can then view the results.
* Be sure that everything is checked, and click Remove.
* When completed, a log will open in Notepad.
* Post the log back here.
Be sure to reboot the computer after you post the log.

 

Next : Please download Rkill (courtesy of BleepingComputer.com) to your desktop.
There are 2 different versions. If one of them won't run then download and try to run the other one.
You only need to get one of these to run, not all of them.
NOTE : You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.
rKill.exe: http://www.bleepingcomputer.com/download/rkill/dl/10/
iExplore.exe (renamed rKill.exe): http://www.bleepingcomputer.com/download/rkill/dl/11/

  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista or Windows 7 right-click on it and choose Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • Do not reboot until instructed.
  • If the tool does not run from any of the links provided, please let me know.

If normal mode still doesn't work, run the tool from safe mode.
When the scan is done Notepad will open with rKill log.
Post it in your next reply.
NOTE. rKill.txt log will also be present on your desktop.
NOTE Do NOT wrap your logs in "quote" or "code" brackets.

 

Next : We would like to run an Online scan with ESET Scanner - Directions -
1. Hold down Control and click on This Link to open ESET OnlineScan in a new window.
2. Click the ESET Online Scanner button.
3. For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)1. Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
2. Double click on the ESET icon on your desktop.4. Check "YES, I accept the Terms of Use."
5. Click the Start button.
6. Accept any security warnings from your browser, and disable your Antivirus if requested.
7. Under scan settings, check "Scan Archives" and "Remove found threats"
8. Click Advanced settings and select the following:
* Scan potentially unwanted applications
* Scan for potentially unsafe applications
* Enable Anti-Stealth technology

9. ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this will take quite some time.
10. When the scan completes, click List Threats
11. Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
12. Click the Back button.
13. Click the Finish button.
NOTE:Sometimes if ESET finds no infections it will not create a log.

 

Next : Please download AdwCleaner by Xplode onto your desktop.
* Close all open programs and internet browsers.
* Double click on adwcleaner.exe to run the tool.
* Click on Delete.
* Confirm each time with Ok.
* NOTE : Your computer will be rebooted automatically. A text file will open after the restart.
* Please post the contents of that logfile with your next reply.
* You can find the logfile at C:\AdwCleaner[S1].txt as well.

 

 

Finally : Download TFC by OldTimer to your desktop

  • Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two.  Let it run uninterrupted to completion.
  • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.

 

Thank You -


Thank You -

 

 - Windows 7 SP1 Home Premium Toshiba Laptop - Avant and user of Internet Explorer Browsers  - And I Use GOOGLE-

~ Remember to Press F5 as you may already have an answer waiting for you ..... If not .....The answer is always 42, or Reboot ~


#3 swathi2772

swathi2772
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 19 June 2013 - 09:10 AM

contents of checkup.txt

 Results of screen317's Security Check version 0.99.66  
 Windows XP Service Pack 3 x86   
 Internet Explorer 6 Out of date!
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Disabled!  
AVG Internet Security 2013   
 Antivirus out of date!  
`````````Anti-malware/Other Utilities Check:`````````
 SpyHunter     
 Java™ 6 Update 24  
 Java 7 Update 13  
 Java SE Development Kit 7 Update 13
 Java version out of Date!
 Adobe Flash Player 10 Flash Player out of Date!
 Adobe Flash Player     11.7.700.224  
 Mozilla Firefox (21.0)
 Google Chrome 27.0.1453.110  
 Google Chrome 27.0.1453.116  
````````Process Check: objlist.exe by Laurent````````  
 AVG avgwdsvc.exe
 AVG avgrsx.exe
 AVG avgnsx.exe
 AVG avgemc.exe
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:: 23% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````
 



#4 swathi2772

swathi2772
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 19 June 2013 - 11:01 AM

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 08/21/2013 at 09:18 PM

Application Version : 5.6.1020

Core Rules Database Version : 10547
Trace Rules Database Version: 8359

Scan type       : Quick Scan
Total Scan Time : 00:28:44

Operating System Information
Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator

Memory items scanned      : 604
Memory threats detected   : 0
Registry items scanned    : 33115
Registry threats detected : 2
File items scanned        : 23934
File threats detected     : 102

Adware.IWantSearchBar
    HKU\S-1-5-21-1177238915-1060284298-682003330-1004\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser#{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}
    HKCR\CLSID\{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}

Adware.Tracking Cookie
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    C:\Documents and Settings\swathi\Cookies\[email protected][2].txt [ /accounts.google ]
    C:\Documents and Settings\swathi\Cookies\swathi@accounts[2].txt [ /accounts ]
    C:\Documents and Settings\swathi\Cookies\swathi@accounts[3].txt [ /accounts ]
    ads1.solocpm.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .histats.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .histats.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    ads1.solocpm.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    ads1.solocpm.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .leadformix.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    C:\DOCUMENTS AND SETTINGS\USER\Cookies\user@google[3].txt [ Cookie:[email protected]/accounts/ ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    ads1.solocpm.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    C:\DOCUMENTS AND SETTINGS\USER\Cookies\[email protected][4].txt [ Cookie:[email protected]/ ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .peopleclick.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .peopleclick.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    ads1.solocpm.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .careers.peopleclick.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .tracking.olx.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .tracking.olx.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .tracking.olx.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .api31.thetrafficstat.net [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .api31.thetrafficstat.net [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .api31.thetrafficstat.net [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    www.mmtracking.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    www.mmtracking.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    serve.bannersdontwork.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .ozonemedia.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\8LZXOIRD.DEFAULT-1377130377125\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .ozonemedia.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    serve.bannersdontwork.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\SWATHI\LOCAL SETTINGS\APPLICATION DATA\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]

Heur.Agent/Gen-WhiteBox
    C:\DOCUMENTS AND SETTINGS\USER\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\O1UZODYZ\GRABOIDVIDEOSETUP[1].EXE
 



#5 swathi2772

swathi2772
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 19 June 2013 - 11:56 AM

Rkill 2.5.3 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 08/21/2013 10:29:50 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (PID: 1188) [WD-HEUR]
 * C:\WINDOWS\System32\alg.exe (PID: 3760) [WD-HEUR]
 * C:\WINDOWS\RTHDCPL.EXE (PID: 2860) [WD-HEUR]

3 proccesses terminated!

Possibly Patched Files.

 * C:\WINDOWS\system32\lsass.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\System32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\spoolsv.exe
 * C:\WINDOWS\Explorer.EXE
 * C:\WINDOWS\system32\svchost.exe
 * C:\WINDOWS\system32\ctfmon.exe
 * C:\WINDOWS\System32\svchost.exe

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Firewall Disabled

   [HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
   "EnableFirewall" = dword:00000000

 * Reparse Point/Junctions Found (Most likely legitimate)!

     * C:\WINDOWS\assembly\GAC_MSIL\WcfSvcHost\9.0.0.0__31bf3856ad364e35 => C:\WINDOWS\WinSxS\MSIL_WcfSvcHost_31bf3856ad364e35_9.0.0.0_x-ww_e0abf5ea [Dir]
     * C:\WINDOWS\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a => C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_4.0.0.0_x-ww_29b51492 [Dir]
     * C:\WINDOWS\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Workflow.Compiler\v4.0_4.0.0.0__31bf3856ad364e35 => C:\WINDOWS\WinSxS\MSIL_Microsoft.Workflow.Compiler_31bf3856ad364e35_4.0.0.0_x-ww_97359ba5 [Dir]

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * C:\WINDOWS\System32\browser.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\browser.dll : 77,824 : 04/14/2008 00:41 AM : a06ce3399d16db864f55faeb1f1927a9 [Pos Repl]

 * C:\WINDOWS\System32\comres.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\comres.dll : 792,064 : 04/14/2008 00:41 AM : 1280a158c722fa95a80fb7aebe78fa7d [Pos Repl]

 * C:\WINDOWS\System32\cryptsvc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll : 62,464 : 04/14/2008 00:41 AM : 3d4e199942e29207970e04315d02ad3b [Pos Repl]

 * C:\WINDOWS\System32\csrss.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\csrss.exe : 6,144 : 04/14/2008 00:42 AM : 44f275c64738ea2056e3d9580c23b60f [Pos Repl]

 * C:\WINDOWS\System32\ctfmon.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe : 15,360 : 04/14/2008 00:42 AM : 5f1d5f88303d4a4dbc8e5f97ba967cc3 [Pos Repl]

 * C:\WINDOWS\System32\d3d8thk.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d8thk.dll : 8,192 : 04/14/2008 00:41 AM : 31b067c412fa1a9bad3ca2a63d7da440 [Pos Repl]

 * C:\WINDOWS\System32\d3d9.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\d3d9.dll : 1,689,088 : 04/14/2008 00:41 AM : 0607cbc6fa20114cb491efe4b2f9efad [Pos Repl]

 * C:\WINDOWS\System32\ddraw.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ddraw.dll : 279,552 : 04/14/2008 00:41 AM : a340cd71eb535a3dd751b5f28723e50c [Pos Repl]

 * C:\WINDOWS\System32\dsound.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\dsound.dll : 367,616 : 04/14/2008 00:41 AM : 4d83ed8bddec431fc8ad907b47cfb6e3 [Pos Repl]

 * C:\WINDOWS\System32\dssenh.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\dssenh.dll : 138,752 : 04/14/2008 00:07 AM : fede68bf80052bad393afd5c2e60dcb0 [Pos Repl]

 * C:\WINDOWS\System32\es.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\es.dll : 253,952 : 07/07/2008 01:06 PM : a4ab3dca4a383f0df4988abdeb84f9a4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\es.dll : 253,952 : 07/07/2008 01:26 PM : d4991d98f2db73c60d042f1aef79efae [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\es.dll : 253,952 : 07/07/2008 01:23 PM : f17f6226bdc0cd5f0bef0daf84d29bec [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\es.dll : 246,272 : 04/14/2008 00:41 AM : 19a799805b24990867b00c120d300c3a [Pos Repl]

 * C:\WINDOWS\System32\eventlog.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\eventlog.dll : 56,320 : 04/14/2008 00:41 AM : 6d4feb43ee538fc5428cc7f0565aa656 [Pos Repl]

 * C:\WINDOWS\System32\hnetcfg.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll : 344,064 : 04/14/2008 00:41 AM : 3cb32d3b8cbe79899d63280bb7a83cd9 [Pos Repl]

 * C:\WINDOWS\System32\imm32.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\imm32.dll : 110,080 : 04/14/2008 00:41 AM : 0da85218e92526972a821587e6a8bf8f [Pos Repl]

 * C:\WINDOWS\System32\ksuser.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ksuser.dll : 4,096 : 04/14/2008 00:41 AM : 9b9f1c38d559047b8ac0dba2d5febde9 [Pos Repl]

 * C:\WINDOWS\System32\linkinfo.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\linkinfo.dll : 19,968 : 04/14/2008 00:41 AM : 2dc5a8019e2387987905f77c664e4be2 [Pos Repl]

 * C:\WINDOWS\System32\lsass.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\lsass.exe : 13,312 : 04/14/2008 00:42 AM : bf2466b3e18e970d8a976fb95fc1ca85 [Pos Repl]

 * C:\WINDOWS\System32\midimap.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\midimap.dll : 18,944 : 04/14/2008 00:41 AM : 5c12660a97822f6e61576943b49aaad6 [Pos Repl]

 * C:\WINDOWS\System32\mshtml.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP2QFE\mshtml.dll : 3,073,024 : 04/16/2010 01:20 AM : 149f37c9702f24a50741e56fbc7ae56b [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3GDR\mshtml.dll : 3,073,024 : 04/16/2010 01:09 AM : 6b930309a4a246d133a49eade11e5773 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3QFE\mshtml.dll : 3,073,536 : 04/16/2010 01:00 AM : 9574d5b0c784da0fd8f6a9bb37936a52 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mshtml.dll : 3,066,880 : 04/14/2008 00:42 AM : a706e122b398fe1ab85cb9b75d044223 [Pos Repl]

 * C:\WINDOWS\System32\msimg32.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\msimg32.dll : 4,608 : 04/14/2008 00:42 AM : affc87e2501fce8f09d4c10ba6421ccf [Pos Repl]

 * C:\WINDOWS\System32\msprivs.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\msprivs.dll : 48,128 : 04/13/2008 10:53 PM : c6bb1d1500db4a0e224cb65e6c7e8a80 [Pos Repl]

 * C:\WINDOWS\System32\msvcrt.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\msvcrt.dll : 343,040 : 04/14/2008 10:42 AM : 355edbb4d412b01f1740c17e3f50fa00 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll : 322,560 : 08/23/2001 10:00 AM : 4200be3808f6406dbe45a7b88dae5035 [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll : 343,040 : 08/03/2004 10:27 AM : 98ec447e00229afd88d5161a25d065da [Pos Repl]
 +-> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll : 343,040 : 04/14/2008 10:42 AM : d7075e95aa599ee77b7a89d39296bd3d [Pos Repl]

 * C:\WINDOWS\System32\mswsock.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\mswsock.dll : 245,248 : 06/20/2008 01:36 AM : 1dfca7713ea5a70d5d93b436aea0317a [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\mswsock.dll : 245,248 : 06/20/2008 01:46 AM : 832e4dd8964ab7acc880b2837cb1ed20 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\mswsock.dll : 245,248 : 06/20/2008 01:43 AM : fcee5fcb99f7c724593365c706d28388 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\mswsock.dll : 245,248 : 04/14/2008 10:42 AM : b4138e99236f0f57d4cf49bae98a0746 [Pos Repl]

 * C:\WINDOWS\System32\netlogon.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll : 408,064 : 02/06/2009 01:46 AM : 6c476d33d82f1054849790181e8f7772 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll : 408,064 : 02/06/2009 01:46 AM : 6c476d33d82f1054849790181e8f7772 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\netlogon.dll : 407,040 : 04/14/2008 10:42 AM : 1b7f071c51b77c272875c3a23e1e4550 [Pos Repl]

 * C:\WINDOWS\System32\netman.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\netman.dll : 198,144 : 04/14/2008 10:42 AM : 13e67b55b3abd7bf3fe7aae5a0f9a9de [Pos Repl]

 * C:\WINDOWS\System32\ole32.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ole32.dll : 1,287,168 : 04/14/2008 10:42 AM : ecce74bc6168375016450a86a164d976 [Pos Repl]

 * C:\WINDOWS\System32\powrprof.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\powrprof.dll : 17,408 : 04/14/2008 10:42 AM : 50a166237a0fa771261275a405646cc0 [Pos Repl]

 * C:\WINDOWS\System32\psbase.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\psbase.dll : 96,768 : 04/14/2008 10:42 AM : 22d89d84e8e081cda529dbf8c0255a38 [Pos Repl]

 * C:\WINDOWS\System32\pstorsvc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\pstorsvc.dll : 34,304 : 04/14/2008 10:42 AM : 853d0d0c6f02d7bfdf1cf99dd7553732 [Pos Repl]

 * C:\WINDOWS\System32\rasadhlp.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\rasadhlp.dll : 7,680 : 04/14/2008 10:42 AM : 6f9bef24c578d5d6740e080bedd6a448 [Pos Repl]

 * C:\WINDOWS\System32\regsvc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\regsvc.dll : 59,904 : 04/14/2008 10:42 AM : 5b19b557b0c188210a56a6b699d90b8f [Pos Repl]

 * C:\WINDOWS\System32\rpcss.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\rpcss.dll : 401,408 : 02/09/2009 01:01 AM : 24b5d53b9accc1e2edcf0a878d6659d4 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\rpcss.dll : 401,408 : 02/09/2009 01:10 AM : 6b27a5c03dfb94b4245739065431322c [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\rpcss.dll : 401,408 : 02/09/2009 01:56 AM : 9222562d44021b988b9f9f62207fb6f2 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\rpcss.dll : 399,360 : 04/14/2008 10:42 AM : 2589fe6015a316c0f5d5112b4da7b509 [Pos Repl]

 * C:\WINDOWS\System32\scecli.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\scecli.dll : 181,248 : 04/14/2008 10:42 AM : a86bb5e61bf3e39b62ab4c7e7085a084 [Pos Repl]

 * C:\WINDOWS\System32\schedsvc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\schedsvc.dll : 192,512 : 04/14/2008 10:42 AM : 0a9a7365a1ca4319aa7c1d6cd8e4eafa [Pos Repl]

 * C:\WINDOWS\System32\sfc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\sfc.dll : 5,120 : 04/14/2008 10:42 AM : 96e1c926f22ee1bfbae82901a35f6bf3 [Pos Repl]

 * C:\WINDOWS\System32\shsvcs.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\shsvcs.dll : 135,168 : 04/14/2008 10:42 AM : 1926899bf9ffe2602b63074971700412 [Pos Repl]

 * C:\WINDOWS\System32\spoolsv.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe : 57,856 : 04/14/2008 10:42 AM : d8e14a61acc1d4a6cd0d38aebac7fa3b [Pos Repl]

 * C:\WINDOWS\System32\srsvc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\srsvc.dll : 171,008 : 04/14/2008 10:42 AM : 3805df0ac4296a34ba4bf93b346cc378 [Pos Repl]

 * C:\WINDOWS\System32\ssdpsrv.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ssdpsrv.dll : 71,680 : 04/14/2008 10:42 AM : 0a5679b3714edab99e357057ee88fca6 [Pos Repl]

 * C:\WINDOWS\System32\svchost.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\svchost.exe : 14,336 : 04/14/2008 10:42 AM : 27c6d03bcdb8cfeb96b716f3d8be3e18 [Pos Repl]

 * C:\WINDOWS\System32\tapisrv.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\tapisrv.dll : 249,856 : 04/14/2008 10:42 AM : 3cb78c17bb664637787c9a1c98f79c38 [Pos Repl]

 * C:\WINDOWS\System32\termsrv.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\termsrv.dll : 295,424 : 04/14/2008 10:42 AM : ff3477c03be7201c294c35f684b3479f [Pos Repl]

 * C:\WINDOWS\System32\upnphost.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\upnphost.dll : 185,856 : 04/14/2008 10:42 AM : 1ebafeb9a3fbdc41b8d9c7f0f687ad91 [Pos Repl]

 * C:\WINDOWS\System32\user32.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\user32.dll : 578,560 : 04/14/2008 10:42 AM : b26b135ff1b9f60c9388b4a7d16f600b [Pos Repl]

 * C:\WINDOWS\System32\usp10.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\usp10.dll : 406,016 : 04/14/2008 10:42 AM : 7d7d8501f3cb45d0408cdefa08cdaeff [Pos Repl]

 * C:\WINDOWS\System32\UxTheme.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\uxtheme.dll : 218,624 : 04/14/2008 10:42 AM : 7a2cc3719b255e6b5d74396183b7715b [Pos Repl]

 * C:\WINDOWS\System32\version.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\version.dll : 18,944 : 04/14/2008 10:42 AM : c7ce131408739b0b3a318be2d0032719 [Pos Repl]

 * C:\WINDOWS\System32\w32time.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\w32time.dll : 175,104 : 04/14/2008 10:42 AM : 54af4b1d5459500ef0937f6d33b1914f [Pos Repl]

 * C:\WINDOWS\System32\wbem\wmiprvse.exe [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\wmiprvse.exe : 227,840 : 02/06/2009 01:41 AM : 51a548a604aec2c362ca503b0cb03831 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\wmiprvse.exe : 227,840 : 02/06/2009 01:10 AM : 798a9e6828997eef4517ada8a2259831 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe : 227,840 : 02/06/2009 01:15 AM : f520ab392d58c0a1070268032d809382 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe : 218,112 : 04/14/2008 10:42 AM : 0ffae66e6d5b1c87cbd22d1f3b6079fd [Pos Repl]

 * C:\WINDOWS\System32\wdigest.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\wdigest.dll : 59,392 : 06/25/2009 01:17 AM : 6e2aba80e627a6b2caccc6d0c60874b1 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3GDR\wdigest.dll : 54,272 : 06/25/2009 01:25 AM : 3aaf9b35939ff9e58ccd18d41655c2fc [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\wdigest.dll : 54,272 : 06/25/2009 01:41 AM : d9dcec3fa1b27689fc56e34c38d3f148 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wdigest.dll : 49,152 : 04/14/2008 10:42 AM : cefcc6a64983eb8119f3a07a0c1ede30 [Pos Repl]

 * C:\WINDOWS\System32\wiaservc.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\wiaservc.dll : 333,824 : 04/14/2008 10:42 AM : 8bad69cbac032d4bbacfce0306174c30 [Pos Repl]

 * C:\WINDOWS\System32\wininet.dll [NoSig]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP2QFE\wininet.dll : 668,672 : 04/16/2010 01:20 AM : 9ce5def97e55e52c23201098db755280 [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3GDR\wininet.dll : 667,136 : 04/16/2010 01:09 AM : b43b18fb0eb577856883e5a0708ab9ef [Pos Repl]
 +-> C:\WINDOWS\$hf_mig$\KB982381\SP3QFE\wininet.dll : 668,672 : 04/16/2010 01:01 AM : c3052a99a24f462b418632a05328bb38 [Pos Repl]
 +-> C:\WINDOWS\ServicePackFiles\i386\wininet.dll : 666,112 : 04/14/2008 10:42 AM : 7a4f775abb2f1c97def3e73afa2faedd [Pos Repl]

 * C:\WINDOWS\System32\winlogon.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\winlogon.exe : 507,904 : 04/14/2008 10:42 AM : ed0ef0a136dec83df69f04118870003e [Pos Repl]

 * C:\WINDOWS\System32\ws2_32.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll : 82,432 : 04/14/2008 10:42 AM : 2ccc474eb85ceaa3e1fa1726580a3e5a [Pos Repl]

 * C:\WINDOWS\System32\ws2help.dll [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\ws2help.dll : 19,968 : 04/14/2008 10:42 AM : 9789e95e1d88eeb4b922bf3ea7779c28 [Pos Repl]

 * C:\WINDOWS\explorer.exe [NoSig]
 +-> C:\WINDOWS\ServicePackFiles\i386\explorer.exe : 1,033,728 : 04/14/2008 10:42 AM : 12896823fb95bfb3dc9b46bcaedc9923 [Pos Repl]

Checking HOSTS File:

 * No issues found.

Program finished at: 08/21/2013 10:32:29 PM
Execution time: 0 hours(s), 2 minute(s), and 38 seconds(s)
 



#6 noknojon

noknojon

    Aussie Addict


  • Members
  • 8,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Victoria Australia
  • Local time:03:06 PM

Posted 19 June 2013 - 07:05 PM

Current Update on your scans -

 

Internet Explorer 6 Out of date!
Do you have Windows Updates turned on, or do you check each month ? You need IE 8 even if you rarely use it - Many other security updates are also included for your computer -

Some errors seem to indicate that you do not use this.

 

Windows Firewall Disabled! <- Make sure your Antivirus has a Firewall included, or start Windows Firewall
AVG Internet Security 2013 <- Antivirus out of date! <- Check for current updates
Java™ 6 Update 24 
Java 7 Update 13  <- Java version out of Date! <- Delete all old versions in Control Panel > Add / Remove - Java 7 Update 25 is now current
Java SE Development Kit 7 Update 13
Oracle released three updates to Java since April. It is important to note that they contain several security related changes.
Free Java Update page is HERE

 

Adobe Flash Player 10 Flash Player out of Date! <- Delete old versions

 

Total Fragmentation on Drive C:: 23% <- Defragment your hard drive soon! (Do NOT defrag if SSD!)

 

Currently removed items related to your problem.
Adware.IWantSearchBar
Explorer\Toolbar\ShellBrowser
Heur.Agent/Gen-WhiteBox

 

You would be better loading the Free version of Win Patrol rather than Spyhunter that removes nothing.
This detects attempts to redirect your Home Pages and Settings, and gives you options to prevent this.

 

If nothing is found in your next Malwarebytes' Anti-Malware scan, please post the last scan that found infections -

Open MBAM program > Click Logs > Select the dated scan that showed the infections, and post that also.

 

Please tell me how your problems are when finished.

 

Thank You -


Thank You -

 

 - Windows 7 SP1 Home Premium Toshiba Laptop - Avant and user of Internet Explorer Browsers  - And I Use GOOGLE-

~ Remember to Press F5 as you may already have an answer waiting for you ..... If not .....The answer is always 42, or Reboot ~


#7 swathi2772

swathi2772
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 20 June 2013 - 01:29 AM

Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org

Database version: v2013.06.18.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
swathi :: MOHANA [limited]

Protection: Enabled

8/20/2013 7:29:04 PM
mbam-log-2013-08-20 (19-29-04).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 400330
Time elapsed: 21 minute(s), 50 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 6
HKCU\Software\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj (PUP.FunMoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj (PUP.FunMoods) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MRXCLS (Rootkit.TmpHider) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MRXNET (Rootkit.TmpHider) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\MRxCls (Rootkit.TmpHider) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\MRxNet (Rootkit.TmpHider) -> Quarantined and deleted successfully.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 1
C:\Program Files\TSearch (Adware.TSearch) -> Quarantined and deleted successfully.

Files Detected: 2
C:\Documents and Settings\swathi\Local Settings\Temp\7zSAE.tmp\5130b444700ac.dll (PUP.Adware.MultiPlug) -> Quarantined and deleted successfully.
C:\Documents and Settings\swathi\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cjpglkicenollcignonpgiafdgfeehoj_0.localstorage (PUP.FunMoods) -> Quarantined and deleted successfully.

(end)
 



#8 noknojon

noknojon

    Aussie Addict


  • Members
  • 8,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Victoria Australia
  • Local time:03:06 PM

Posted 20 June 2013 - 01:46 AM

Hi -

Did you Update Malwarebytes prior to this scan, or is this the older scan that showed the infections ?

 

Database Version v2013.06.20 is the current version -

 

Internet Explorer 6.0. MUST be updated to Internet Explorer 8 and all Windows Updates MUST be installed ! !

 

Have your problems improved yet ??


Thank You -

 

 - Windows 7 SP1 Home Premium Toshiba Laptop - Avant and user of Internet Explorer Browsers  - And I Use GOOGLE-

~ Remember to Press F5 as you may already have an answer waiting for you ..... If not .....The answer is always 42, or Reboot ~


#9 marcarjo23

marcarjo23

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 18 March 2014 - 07:26 AM

HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinGuard (Rogue.WinGuard) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Software.Updater) -> Quarantined and deleted successfully.
HKLM\Software\awesomehpSoftware (PUP.Optional.Awesomehp.A) -> Quarantined and deleted successfully.
 
Registry Values Detected: 2
HKCU\Software\Somoto\SDP|affid (PUP.Optional.Somoto.A) -> Data: file_installer1 -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\Wpm|ImagePath (PUP.Optional.WpManager.A) -> Data: C:\ProgramData\WPM\wprotectmanager.exe -service -> Quarantined and deleted successfully.
 
Registry Data Items Detected: 8
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Conduit.A) -> Bad: (http://search.conduit.com/?ctid=CT3325388&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP2C28C8F0-F425-40C1-977C-A1D674E8A611&SSPV=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command| (PUP.Optional.Awesomehp.A) -> Bad: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.awesomehp.com/?type=sc&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (firefox.exe) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command| (PUP.Optional.Awesomehp.A) -> Bad: (C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com/?type=sc&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (iexplore.exe) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/web/?type=ds&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432&q={searchTerms}) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|DefaultScope (PUP.Optional.Qone8) -> Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}) Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}) -> Quarantined and repaired successfully.
HKLM\Software\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
 
Folders Detected: 50
C:\Program Files (x86)\SupTab (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\en-US (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-419 (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-ES (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-BE (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CA (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CH (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-FR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-LU (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-CH (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-IT (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pl (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pt-BR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru-MO (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\tr-TR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\vi-VI (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-CN (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-TW (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\Logs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\Logs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\dialogs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\YoutubeAdblocker (PUP.Optional.Multiplug) -> Quarantined and deleted successfully.
C:\ProgramData\IePluginService (PUP.Optional.IePluginService.A) -> Delete on reboot.
C:\ProgramData\IePluginService\update (PUP.Optional.IePluginService.A) -> Quarantined and deleted successfully.
C:\ProgramData\YoutubeAdblocker (PUP.Optional.YoutubeAdblocker.A) -> Quarantined and deleted successfully.
 
Files Detected: 177
C:\ProgramData\IePluginService\PluginService.exe (PUP.Optional.IePluginService.A) -> Delete on reboot.
C:\ProgramData\WPM\wprotectmanager.exe (PUP.Optional.WpManager) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SupTab\SupTab.dll (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\SupTab\SupTab.dll (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\uninstall40186031.exe (PUP.Optional.YourFileDownloader) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\package1.zip (PUP.Optional.SkyTech.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\QQBrowserFrame.dll (PUP.Optional.SkyTech.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\tmp\SupTab.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\tmp\wpm.exe (PUP.Optional.WpManager) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\file_installer_downloader-66r1YJI8.exe (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\file_installer_downloader-beNmTl2G.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\Need+For+Speed+Most+Wanted+2005.exe_downloader.exe (PUP.Optional.YourFileDownloader) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\FilesFrog Update Checker\uninstall.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\User\Local Settings\Temporary Internet Files\IE\K5E2BQ3J\Setup[1].exe (PUP.Optional.PacFunction.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx (PUP.Optional.NewTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\awesomehp.xml (PUP.Optional.Awesomehp.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\install.data (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\BHOEnabler.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\uninstall.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\indexIE.html (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\indexIE8.html (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\style.css (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\ver.txt (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\default_logo.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon128.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon16.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon48.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\loading.gif (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\0.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\1.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\10.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\11.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\12.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\13.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\14.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\15.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\16.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\17.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\18.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\19.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\2.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\20.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\21.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\22.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\23.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\24.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\25.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\26.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\27.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\28.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\29.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\3.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\30.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\31.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\32.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\33.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\34.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\35.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\36.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\37.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\38.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\39.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\4.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\40.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\41.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\42.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\43.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\44.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\45.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\46.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\47.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\5.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\6.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\7.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\8.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\9.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\background.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\ga.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\jquery-base.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\js.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\xagainit.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\EULA.txt (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\rep\SystemRepository.dat (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\style.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-default.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-onclick.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-Rollover.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-with-logo.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgNotif.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettings.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgUninstall.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnBlue.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnClose.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnSilver.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_checked.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-over-click.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\gray-bg.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\icon-win.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\info-icon.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-rollover.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button2.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Settings-icon.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\text-field.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\v.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\x.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\dialogUtils.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\json2.min.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\main.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\SPDialogAPI.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\sweet-page.xml (PUP.Optional.SweetPage.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Uninstall.lnk (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\ProgramData\YoutubeAdblocker\wQQfv8L.dat (PUP.Optional.YoutubeAdblocker.A) -> Quarantined and deleted successfully.
 
(end)
 


#10 marcarjo23

marcarjo23

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:10:06 PM

Posted 18 March 2014 - 07:29 AM

Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org
 
Database version: v2014.03.17.07
 
Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16521
User :: PERSONAL [administrator]
 
Protection: Enabled
 
3/18/2014 8:08:05 PM
mbam-log-2014-03-18 (20-08-05).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 241816
Time elapsed: 5 minute(s), 51 second(s)
 
Memory Processes Detected: 5
C:\ProgramData\IePluginService\PluginService.exe (PUP.Optional.IePluginService.A) -> 1696 -> Delete on reboot.
C:\ProgramData\WPM\wprotectmanager.exe (PUP.Optional.WpManager) -> 1856 -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (PUP.Optional.Conduit.A) -> 2684 -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> 3368 -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (PUP.Optional.Conduit.A) -> 5688 -> Delete on reboot.
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 24
HKLM\SYSTEM\CurrentControlSet\Services\IePluginService (PUP.Optional.IePluginService.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IePlugins (PUP.Optional.IePluginService.A) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\Wpm (PUP.Optional.WpManager) -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKCR\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SupTab (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Quarantined and deleted successfully.
HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> Quarantined and deleted successfully.
HKCU\Software\AppDataLow\Software\Crossrider (PUP.Optional.CrossRider.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\SOMOTO\SDP (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\sweet-pageSoftware (PUP.Optional.SweetPage.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo (PUP.Optional.Elex.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinGuard (Rogue.WinGuard) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Software.Updater) -> Quarantined and deleted successfully.
HKLM\Software\awesomehpSoftware (PUP.Optional.Awesomehp.A) -> Quarantined and deleted successfully.
 
Registry Values Detected: 2
HKCU\Software\Somoto\SDP|affid (PUP.Optional.Somoto.A) -> Data: file_installer1 -> Quarantined and deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\Wpm|ImagePath (PUP.Optional.WpManager.A) -> Data: C:\ProgramData\WPM\wprotectmanager.exe -service -> Quarantined and deleted successfully.
 
Registry Data Items Detected: 8
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Conduit.A) -> Bad: (http://search.conduit.com/?ctid=CT3325388&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP2C28C8F0-F425-40C1-977C-A1D674E8A611&SSPV=) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command| (PUP.Optional.Awesomehp.A) -> Bad: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.awesomehp.com/?type=sc&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (firefox.exe) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command| (PUP.Optional.Awesomehp.A) -> Bad: (C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com/?type=sc&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (iexplore.exe) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Search_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/web/?type=ds&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432&q={searchTerms}) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|DefaultScope (PUP.Optional.Qone8) -> Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}) Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}) -> Quarantined and repaired successfully.
HKLM\Software\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Bad: (http://www.awesomehp.com/?type=hp&ts=1394978638&from=ild&uid=ST1000LM024XHN-M101MBB_S2SMJ9CD805432) Good: (http://www.google.com) -> Quarantined and repaired successfully.
 
Folders Detected: 50
C:\Program Files (x86)\SupTab (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\en-US (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-419 (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-ES (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-BE (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CA (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CH (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-FR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-LU (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-CH (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-IT (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pl (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pt-BR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru-MO (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\tr-TR (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\vi-VI (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-CN (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-TW (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\Logs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\Logs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\bin (PUP.Optional.SearchProtect.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\dialogs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\rep (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\YoutubeAdblocker (PUP.Optional.Multiplug) -> Quarantined and deleted successfully.
C:\ProgramData\IePluginService (PUP.Optional.IePluginService.A) -> Delete on reboot.
C:\ProgramData\IePluginService\update (PUP.Optional.IePluginService.A) -> Quarantined and deleted successfully.
C:\ProgramData\YoutubeAdblocker (PUP.Optional.YoutubeAdblocker.A) -> Quarantined and deleted successfully.
 
Files Detected: 177
C:\ProgramData\IePluginService\PluginService.exe (PUP.Optional.IePluginService.A) -> Delete on reboot.
C:\ProgramData\WPM\wprotectmanager.exe (PUP.Optional.WpManager) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (PUP.Optional.Conduit.A) -> Delete on reboot.
C:\Program Files (x86)\SupTab\SupTab.dll (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\SupTab\SupTab.dll (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\uninstall40186031.exe (PUP.Optional.YourFileDownloader) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\package1.zip (PUP.Optional.SkyTech.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\QQBrowserFrame.dll (PUP.Optional.SkyTech.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\tmp\SupTab.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Temp\fullpackage_temp1394978390\tmp\wpm.exe (PUP.Optional.WpManager) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\file_installer_downloader-66r1YJI8.exe (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\file_installer_downloader-beNmTl2G.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\Need+For+Speed+Most+Wanted+2005.exe_downloader.exe (PUP.Optional.YourFileDownloader) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\FilesFrog Update Checker\uninstall.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\User\Local Settings\Temporary Internet Files\IE\K5E2BQ3J\Setup[1].exe (PUP.Optional.PacFunction.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx (PUP.Optional.NewTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\awesomehp.xml (PUP.Optional.Awesomehp.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\install.data (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\BHOEnabler.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\uninstall.exe (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\indexIE.html (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\indexIE8.html (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\style.css (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\ver.txt (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\default_logo.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon128.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon16.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\icon48.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\loading.gif (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\0.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\1.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\10.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\11.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\12.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\13.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\14.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\15.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\16.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\17.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\18.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\19.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\2.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\20.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\21.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\22.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\23.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\24.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\25.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\26.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\27.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\28.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\29.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\3.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\30.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\31.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\32.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\33.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\34.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\35.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\36.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\37.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\38.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\39.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\4.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\40.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\41.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\42.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\43.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\44.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\45.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\46.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\47.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\5.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\6.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\7.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\8.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\img\weather\9.png (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\background.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\ga.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\jquery-base.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\js.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\js\xagainit.js (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json (PUP.Optional.SupTab.A) -> Quarantined and deleted successfully.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\EULA.txt (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\Main\rep\SystemRepository.dat (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\style.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-default.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-onclick.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-Rollover.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-with-logo.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgNotif.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettings.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgUninstall.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnBlue.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnClose.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnSilver.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_checked.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-over-click.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\gray-bg.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\icon-win.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\info-icon.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-rollover.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-def.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-selected.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button2.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Settings-icon.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\text-field.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\v.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\x.png (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\dialogUtils.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\json2.min.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\main.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\SPDialogAPI.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\defaults.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.css (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.html (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.js (PUP.Optional.SearchProtect.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\sweet-page.xml (PUP.Optional.SweetPage.A) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Uninstall.lnk (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\ProgramData\YoutubeAdblocker\wQQfv8L.dat (PUP.Optional.YoutubeAdblocker.A) -> Quarantined and deleted successfully.
 
(end)





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users