Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

****!!! Hacked Email! (I think)


  • Please log in to reply
9 replies to this topic

#1 SailplaneNZ

SailplaneNZ

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 11 May 2014 - 03:55 AM

Hi all

Anyone having the following issue...?:

I've got a whole bunch of emails saying "Mail Delivery Failure, Returned to Sender" for emails I haven't sent. And they look like spam to me. They're to completely random people I've never met and with content like "Here, Thrax has shut down, try this anti-depression drug" and bleep like that. I'm not a paranoid guy but now I'm worried because there's nothing in the "Sent" box of either my Outlook outbox or my server's outbox. So who knows how many have actually succeeded in sending? And if they know my email password, because I'm an idiot they also know most of my other passcodes, although most of my monetary ones have a different one thank god. 

 

AVG's running a full pc scan as I speak...but getting quite concerned. Any ideas?

 

PS my 'infected' email is also my forum one so...damn i dunno.

 

I use my email for loads of websites, mostly legitimate. All legitimate, I think.


Edited by hamluis, 11 May 2014 - 02:27 PM.
Moved from Win 8 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 11 May 2014 - 04:00 AM

And btw where these "Mail Delivery Failure" emails are coming from are definitely legit as I've gotten emails from it before about emaisl that actually failed to send that I did try to send...just checked.

 

PC scan at 77% no threats found apparently...



#3 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 11 May 2014 - 02:16 PM

Happened again overnight another hundred odd emails. Antivirus aint done nuffink



#4 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,803 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:09:24 AM

Posted 11 May 2014 - 03:07 PM

An antivirus and firewale go a good ways toward keeping your computer clean, but there are nasties out there which can still get by.

Please run the ESET OnlineScan

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

 

 
Please download Malwarebytes Anti-Malware.
 
1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.
 
2)  Malwarebytes will automatically open.  If this is the first time you have run this version of Malwarbytes you will see an image like the one below.
 
mbam1_zps95cc812c.png
 
Click on Update Now, after Malwarebytes is updated click on Scan.
 
If this isn't the first time you have run this version, then you will see an image like the one below.  Click on Scan
 
mbam1_zps98e7fba9.png
 
You will be prompted to update Malwarebytes, to do so click on Update Now.
 
 mbam2_zps85f38f0c.png
 
3)  The scan will automatically run now.
 
mbamreplace_zps3ead4824.png
 
 
4)  When the scan is complete the results will be displayed.  Click on Quarantine All, then click on Apply Actions
 
mbam4_zps23e52ad4.png
 
 
5)  To complete any actions taken you will be asked if you want to restart your computer, click on Yes
 
 mbam4_zps490948cc.png
 
6)  Please post the Malwarebytes log.
 
To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  When the log opens, scroll down toward the bottom of the log to Quarantined Items.  Copy and paste this in your next post.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#5 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 11 May 2014 - 11:15 PM

Ok running those programs now


This might be another issue...password to my email has been changed. I can't access it any more. 

 

bleep.

 

Might have to ring vodafone.



#6 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 11 May 2014 - 11:39 PM

Cheers for that it found about 300 things to "clean". Have also rung vodafone and changed email password, coincidentally they found the ip address of the guy who'd been accessing it who happens to be one of their customers. Dunno what's gonna happen but now I know his IP and also email I can think of some fun stuff to do...sonovableep. 

 

Cheers for the help.

 

lol it changed bleep to "bleep" in the last post.



#7 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 12 May 2014 - 03:37 AM

Okay...bigger problems. Might need a white-hat's advice here but I need to find the root of something. I rang Vodafone and they've locked me out of sending emails from my Outlook because my PC has something thats automatically sending these emails. I need to work out how to find the root of an auto-mailer, which as a novice techie will be an executable probably on my pc somewhere.

 

Also btw the emails I'm SENDING to look like they're both based in the exact same location near Wichita...is there a data centre here or something? 

 

Otherwise, just need some better (preferably free :-) anti-malware software. Or whatever. 



#8 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,803 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:09:24 AM

Posted 12 May 2014 - 09:00 AM

Post the logs.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#9 SailplaneNZ

SailplaneNZ
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:06:24 AM

Posted 13 May 2014 - 12:10 AM

 Malwarebytes Anti-Malware

www.malwarebytes.org
 
Scan Date: 12/05/2014
Scan Time: 4:36:11 p.m.
Logfile: log1.txt
Administrator: Yes
 
Version: 2.00.1.1004
Malware Database: v2014.03.04.09
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled
 
OS: Windows 8.1
CPU: x64
File System: NTFS
User: Tim
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 329640
Time Elapsed: 19 min, 43 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 67
PUP.Optional.SpeedAnalysis3.A, HKLM\SOFTWARE\CLASSES\APPID\{562B9316-C08A-444A-9482-62080DD851AE}, , [1930639c8af0c0764b333440f01217e9], 
PUP.Optional.SpeedAnalysis3.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{562B9316-C08A-444A-9482-62080DD851AE}, , [1930639c8af0c0764b333440f01217e9], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, , [97b2728de793ab8b10fee98b41c1ab55], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, , [97b2728de793ab8b10fee98b41c1ab55], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd.1, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd.1, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{BEAA0C04-ED15-4C17-800B-28716025A4E4}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{65B07D06-95A1-409D-93FF-8CB14E1EC86A}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{65B07D06-95A1-409D-93FF-8CB14E1EC86A}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{BEAA0C04-ED15-4C17-800B-28716025A4E4}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.BetterSurf.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}, , [b495807f136791a50bc072cc847e9769], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}, , [12379e61f08ad6607798ef852ad88878], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\esrv.mysearchdialESrvc.1, , [12379e61f08ad6607798ef852ad88878], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\esrv.mysearchdialESrvc, , [12379e61f08ad6607798ef852ad88878], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.mysearchdialESrvc, , [12379e61f08ad6607798ef852ad88878], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.mysearchdialESrvc.1, , [12379e61f08ad6607798ef852ad88878], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}, , [66e3b748eb8fac8ab70e5a19f90952ae], 
PUP.Optional.SilentInstall.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{088DF54D-6FFC-8C91-02D5-A461DCC2E652}, , [5cedd926007a44f220aa75d56a97a15f], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pflphaooapbgpeakohlggbpidpppgdff, , [42075aa5b0ca72c4b34b7521a65cfd03], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha320, , [6cddc13eb0cae056db346a22cf33f20e], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pflphaooapbgpeakohlggbpidpppgdff, , [6fdaca35007a2016926cb5e18979738d], 
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLCORE\mysearchdial, , [ca7f35caacce32041c088e1cfb08da26], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM, , [8bbe99660674c472e0de3f6cb35030d0], 
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [96b3a25d2e4c69cd74b579334fb4b24e], 
PUP.Optional.BabylonToolBar.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BabylonToolbar, , [a0a933cca6d4d75fb6ce2f7f1fe406fa], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DataMngr, , [67e2de2181f93204436414967a890df3], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DataMngr_Toolbar, , [d673ae51b8c274c2891dbaf00af9df21], 
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\mysearchdial, , [d277d32c6119bd793d97beede71c7a86], 
PUP.Optional.Babylon.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BABSOLUTION\Updater, , [a4a5e718ec8e91a5bbf79a11a95a629e], 
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pflphaooapbgpeakohlggbpidpppgdff, , [69e0af50e09a78be22db2a6c38ca40c0], 
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [d3762ad5daa074c2ec8c5b3904fe768a], 
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\mysearchdial, , [3712f50a621877bfe5aae4cb9a6905fb], 
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [85c436c90f6bca6cdfef21890af9f30d], 
PUP.Optional.SweetIM.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, , [fb4e0cf31961979f6b522b80ef14d030], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1824FF90-C98E-48A6-838F-E3B6572B0C77}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\CLASSES\TYPELIB\{DD3A66B9-8A7C-4C3C-8D60-DB225A60D69C}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\CLASSES\INTERFACE\{881E49A1-8325-4B19-AE6F-B889A40D073A}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{881E49A1-8325-4B19-AE6F-B889A40D073A}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{DD3A66B9-8A7C-4C3C-8D60-DB225A60D69C}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{1824FF90-C98E-48A6-838F-E3B6572B0C77}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{1824FF90-C98E-48A6-838F-E3B6572B0C77}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{1824FF90-C98E-48A6-838F-E3B6572B0C77}, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewV1alpha320, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{fa170866-9632-449b-aa39-264f8dd770cd}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{b1eaeb50-f2f4-43f7-8ac3-242f37b73a99}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A646C32D-98BF-4CD3-B345-104E80F2A1BC}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A646C32D-98BF-4CD3-B345-104E80F2A1BC}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{b1eaeb50-f2f4-43f7-8ac3-242f37b73a99}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{FA170866-9632-449B-AA39-264F8DD770CD}, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{8f291d1b-0f03-4e7f-9b04-9292811c92e8}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8F291D1B-0F03-4E7F-9B04-9292811C92E8}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{6ee7a8ff-e0a4-4bef-917c-a930ab19e358}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F4F2D0B6-C9C9-4DEC-8ADF-F7C718DA93E5}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F4F2D0B6-C9C9-4DEC-8ADF-F7C718DA93E5}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{6ee7a8ff-e0a4-4bef-917c-a930ab19e358}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{8F291D1B-0F03-4E7F-9B04-9292811C92E8}, , [63e6e619b7c378be5285300255afdb25], 
PUP.Optional.WebExpEnhanced.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{8F291D1B-0F03-4E7F-9B04-9292811C92E8}, , [63e6e619b7c378be5285300255afdb25], 
 
Registry Values: 7
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@bettersurfplus.com, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff, , [84c52ed1db9f79bdee97533908fa3fc1]
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@WebexpEnhancedV1alpha705.net, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha705\ff, , [58f17c8354262610b79120719c66a759]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha320.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff, , [cf7a37c8a5d5ec4a0b05dab29a6812ee]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha4768.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff, , [63e64bb46911a78f19f7b3d97989847c]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM|simapp_id, {3AA75DAE-590B-11E2-BE84-689423B78D14}, , [8bbe99660674c472e0de3f6cb35030d0]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0J1B2U2R1Z1R1S2Z, , [85c436c90f6bca6cdfef21890af9f30d]
PUP.Optional.SweetIM.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {3AA75DAE-590B-11E2-BE84-689423B78D14}, , [fb4e0cf31961979f6b522b80ef14d030]
 
Registry Data: 2
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://start.mysearchdial.com/?f=1&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyE0BtDtAyDtDtDtD0A0AtN0D0Tzu0CyDyEtCtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1498410779&ir=, Good: (http://www.google.com), Bad: (http://start.mysearchdial.com/?f=1&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyE0BtDtAyDtDtDtD0A0AtN0D0Tzu0CyDyEtCtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1498410779&ir=),,[a1a8ee116b0f37ffa80485a9768e11ef]
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-1544596644-3314440580-1103906376-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://start.mysearchdial.com/?f=1&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyE0BtDtAyDtDtDtD0A0AtN0D0Tzu0CyDyEtCtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1498410779&ir=, Good: (http://www.google.com), Bad: (http://start.mysearchdial.com/?f=1&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0AtD0BtA0C0CyE0BtDtAyDtDtDtD0A0AtN0D0Tzu0CyDyEtCtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1498410779&ir=),,[4cfd43bc344688ae8c1f33fbfd076997]
 
Folders: 43
PUP.Optional.SearchNewTab, C:\ProgramData\Search-NewTab, , [cd7c0ff072083402b7ba790da35f3bc5], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial\icons_2.2.4.731, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial\UpdateProc, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ch, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\icons, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\icons\default, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ie, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ch, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome\content, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ie, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ch, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome\content, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ie, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.NextLive.A, C:\Users\Tim\AppData\Roaming\newnext.me, , [bf8a21dec6b44aecf055800841c123dd], 
PUP.Optional.NextLive.A, C:\Users\Tim\AppData\Roaming\newnext.me\cache, , [bf8a21dec6b44aecf055800841c123dd], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ch, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\icons, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\icons\default, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ie, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ch, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\icons, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\icons\default, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ie, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
 
Files: 90
PUP.Optional.SoftwareUpdater, C:\Users\Tim\AppData\Local\SwvUpdater\Updater.exe, , [dc6d21ded5a585b1c6f347ff20e28c74], 
PUP.Optional.SilentInstall.A, C:\ProgramData\wxDownload\uninstall.exe, , [5cedd926007a44f220aa75d56a97a15f], 
PUP.Optional.Spigot.A, C:\ProgramData\YTD Video Downloader\ytd_installer.exe, , [85c42bd4fe7c52e45c08afc522de5ea2], 
Adware.BetterSurf, C:\Users\Tim\AppData\Local\Temp\BetterSurf.exe, , [55f4887718628fa70c26f48e6899a25e], 
PUP.Optional.Greygray.A, C:\Users\Tim\AppData\Local\Temp\GreyGraySetup.exe, , [a1a8bb442357cb6be3888f3dfc0715eb], 
PUP.Optional.Amonetize.A, C:\Users\Tim\AppData\Local\Temp\Setup-a.exe, , [3e0b6b94403ae353e6c1e33e7094d927], 
Adware.BetterSurf, C:\Users\Tim\AppData\Local\Temp\Setup1.exe, , [06432fd0f4861b1b88da91fc50b1dc24], 
PUP.Optional.MediaPlayerAlpha.A, C:\Users\Tim\AppData\Local\Temp\Setup2.exe, , [f45559a6b4c60c2a3234742289789e62], 
PUP.Optional.Somoto, C:\Users\Tim\Downloads\VLCMediaPlayerSetup-6pdOZ9Z.exe, , [ab9e12edd2a85bdb1707db7639cb0000], 
PUP.BundleInstaller.DW, C:\Users\Tim\Downloads\Borat[2006]DvDrip_AC3[Eng]-aXXo.exe, , [91b8f20da7d37fb72b5e9aac22df08f8], 
PUP.Optional.Installex, C:\Users\Tim\Downloads\The Dark Knight[2008]DvDrip[Eng]-FXG.exe, , [3415f30ce29841f595f6af989d645ea2], 
PUP.Optional.Somoto, C:\Users\Tim\Downloads\FreeYouTubeDownloaderInstaller.exe, , [0b3e59a6c4b69f979985c09144c09b65], 
PUP.Optional.YourfileDownloader, C:\Users\Tim\Downloads\free_motocross_madness_full_version_downloader_nz_99028.exe, , [a7a2629dc9b1aa8caea56c0420e0718f], 
PUP.Optional.Freemium.A, C:\Users\Tim\Downloads\sort-pictures-on-pc-camera-memory-card_setup.exe, , [64e524dbf189c2742b98e6823ec3ce32], 
PUP.Optional.Bandoo, C:\Users\Tim\Downloads\iLividSetup (1).exe, , [c683d629bfbbaf87832061ea956cbf41], 
PUP.Optional.Bandoo, C:\Users\Tim\Downloads\iLividSetup.exe, , [74d59768d6a48aacd4cf68e3ea17f60a], 
PUP.Optional.OneClickDownloader.A, C:\Users\Tim\Downloads\3_Xtremeprototypes.exe, , [d574e01f166446f03ad0542a3cc5bf41], 
PUP.Optional.Amonetize.AS, C:\Users\Tim\Downloads\7Zip__2994_il1096239 (1).exe, , [0544a6591b5ff244d326de78e918b64a], 
PUP.Optional.Amonetize.AS, C:\Users\Tim\Downloads\7Zip__2994_il1096239.exe, , [e96007f8a2d87eb887721b3b3cc5e020], 
PUP.Optional.Topmedia, C:\Users\Tim\Downloads\Iron_Man_3_(2013)_HDSCR_720p_x264_[Dual_Audio]_[Hindi+English]_secure.exe, , [311823dcb5c52c0a411025eec83ca858], 
PUP.BundleInstaller.DW, C:\Users\Tim\Downloads\Iron_Man_3_2013_DvDrip_Non_Retail_720p_x264_AC3_5_1_Hon3y (1).exe, , [35147b844b2fbb7b2d5c82c452affb05], 
PUP.BundleInstaller.DW, C:\Users\Tim\Downloads\Iron_Man_3_2013_DvDrip_Non_Retail_720p_x264_AC3_5_1_Hon3y (2).exe, , [e069827dc8b26bcbd5b4fe484bb6718f], 
PUP.BundleInstaller.DW, C:\Users\Tim\Downloads\Iron_Man_3_2013_DvDrip_Non_Retail_720p_x264_AC3_5_1_Hon3y.exe, , [65e405fa6515a690b8d1370fd031e11f], 
PUP.Optional.OpenCandy, C:\Users\Tim\Downloads\MyPhoneExplorer_Setup_1.8.4.exe, , [cc7d58a7a0daf14502e41b3644c0649c], 
PUP.Optional.Spigot.A, C:\Users\Tim\Downloads\YTDSetup.exe, , [4efbff00e4962c0aa6be393b20e09a66], 
PUP.Optional.Topmedia, C:\Users\Tim\Downloads\[FSX]_Aerosim_787_secure.exe, , [0544e718a2d8ac8af8595fb423e1ee12], 
PUP.Optional.Softonic, C:\Users\Tim\Downloads\SoftonicDownloader_for_amnesia-the-dark-descent.exe, , [1534c738c4b65ed88320ab9b31d016ea], 
PUP.Optional.Somoto.A, C:\Users\Tim\AppData\Local\Bundled software uninstaller\biclient.exe, , [3a0f37c8ec8e6bcbaa1bbb9e43be9868], 
PUP.Optional.SweetIM, C:\Windows\Installer\134dd67c.msi, , [67e2bd42f981f541adcaa0b1ce36ee12], 
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, , [ab9e0af58eec58dea274fe90738fb24e], 
PUP.Software.Updater, C:\Windows\Tasks\AmiUpdXp.job, , [ba8f56a94f2bca6ca66f782415ed52ae], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Local\mysearchdial_speedial_v9.0.2.crx, , [19304ab51b5f68ceb2949714e1225fa1], 
PUP.Optional.SearchNewTab, C:\ProgramData\Search-NewTab\510842895b62a.tlb, , [cd7c0ff072083402b7ba790da35f3bc5], 
PUP.Optional.SearchNewTab, C:\ProgramData\Search-NewTab\settings.ini, , [cd7c0ff072083402b7ba790da35f3bc5], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial\icons_2.2.4.731\magnifying.ico, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial\icons_2.2.4.731\star2.ico, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.MySearchDial.A, C:\Users\Tim\AppData\Roaming\mysearchdial\UpdateProc\config.dat, , [b09934cb84f60432334ab4d249b9916f], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ch\BetterSurfPlus.crx, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome.manifest, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\install.rdf, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\better-surf.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\firefox.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\overlay.xul, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\icons\Thumbs.db, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\icons\default\star1_32.png, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\amiextension.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\amihelper.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\amilocal.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\chaddon.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\chback.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\ffaddon.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\hostutils.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff\chrome\content\utils\ieaddon.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ie\BetterSrf.dll, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ch\Chrome.crx, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\BetterSurf.xpi, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\build.cmd, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome.manifest, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\install.rdf, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome\content\firefox.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome\content\inject.js, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\BetterSurf\ff\chrome\content\overlay.xul, , [ad9cfb047efc2f078f6352350002966a], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ch\Chrome.crx, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\Better-Surf.xpi, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\build.cmd, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome.manifest, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\install.rdf, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome\content\better-surf.js, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome\content\firefox.js, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.BetterSurf, C:\Program Files (x86)\Better-Surf\ff\chrome\content\overlay.xul, , [86c3d22d6119063045f5bacea85a6b95], 
PUP.Optional.NextLive.A, C:\Users\Tim\AppData\Roaming\newnext.me\nengine.cookie, , [bf8a21dec6b44aecf055800841c123dd], 
PUP.Optional.NextLive.A, C:\Users\Tim\AppData\Roaming\newnext.me\cache\spark.bin, , [bf8a21dec6b44aecf055800841c123dd], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\uninstall.exe, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ch\MediaViewV1alpha320.crx, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome.manifest, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\install.rdf, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\ffMediaViewV1alpha320.js, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\ffMediaViewV1alpha320ffaction.js, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\overlay.xul, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\icons\Thumbs.db, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ff\chrome\content\icons\default\MediaViewV1alpha320_32.png, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha320\ie\MediaViewV1alpha320.dll, , [62e78e71fb7fb482aea063282ed4c23e], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ch\MediaViewV1alpha4768.crx, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome.manifest, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\install.rdf, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\ffMediaViewV1alpha4768.js, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\ffMediaViewV1alpha4768ffaction.js, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\overlay.xul, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\icons\Thumbs.db, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha4768\ff\chrome\content\icons\default\MediaViewV1alpha4768_32.png, , [a0a9cf304238ec4a8ac4e2a9c9391de3], 
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)
 
Couldn't just put the txt file for some reason


#10 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,803 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:09:24 AM

Posted 13 May 2014 - 09:11 AM

You need to post the log for the Eset online scanner.

 

Please refrain from making any changes for the time being as this may conflict with what is being suggested.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users