Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

FreeFileViewer, unable to install/uninstall certain programs, etc.


  • Please log in to reply
9 replies to this topic

#1 Ryan55

Ryan55

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 09 September 2014 - 01:19 PM

Malware? Virus? I don't know yet. Though I do know something is up.

 

1. Programs with the file extension .MSI are now associated with a program called FreeFileViewer, among other files that I've seen, not sure if they're all MSI.

 

2. FreeFileViewer is not in my install registry, and can't find its folders anywhere in my program files. Yet there are files still associated with it, instead of the defualt windows setup/install program.

 

3. Can't install files associated with the MSI extention.

 

4. Other programs, such as Advanced System Care, can't be uninstalled anymore, even with Revo uninstaller. The error message says the unins000.msg is missing.

 

I don't really know where to start with all this. mostly just want some advice on what to do, and some suggestions on how tp go about sweeping my computer for other hidden problems that I might not have noticed.



BC AdBot (Login to Remove)

 


m

#2 Kirbyofdeath

Kirbyofdeath

  • Members
  • 459 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Somewhere on Earth
  • Local time:03:41 AM

Posted 09 September 2014 - 02:50 PM

Try http://www.revouninstaller.com/. This program (If ran as administator) can uninstall almost anything.

 

EDIT: just saw you already used it.

 

Please download Malwarebytes Anti-Malware.

 
1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.
 
2)  Malwarebytes will automatically open.  If this is the first time you have run this version of Malwarbytes you will see an image like the one below.
 
mbam1_zps95cc812c.png
 
Click on Update Now, after Malwarebytes is updated click on Scan.
 
If this isn't the first time you have run this version, then you will see an image like the one below.  Click on Scan
 
mbam1_zps98e7fba9.png
 
You will be prompted to update Malwarebytes, to do so click on Update Now.
 
 mbam2_zps85f38f0c.png
 
3)  The scan will automatically run now.
 
mbamreplace_zps3ead4824.png
 
 
4)  When the scan is complete the results will be displayed.  Click on Quarantine All, then click on Apply Actions
 
mbam4_zps23e52ad4.png
 
 
5)  To complete any actions taken you will be asked if you want to restart your computer, click on Yes
 
 mbam4_zps490948cc.png
 
6)  Please post the Malwarebytes log.
 
To find your Malwarebytes log, download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  When the log opens, scroll down toward the bottom of the log to Quarantined Items.  Copy and paste this in your next post.

Edited by Kirbyofdeath, 09 September 2014 - 02:52 PM.


#3 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 11 September 2014 - 02:16 AM

Thanks. I'll try this a let you know if it works.



#4 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 12 September 2014 - 12:06 PM

Here you go:

 

Quarantined Items:
===================
Vendor: PUP.Optional.ConduitSearchProtect, Date: 2014/08/30 02:09:08, Type: Registry Value, Location: HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|SearchProtect
Vendor: PUP.Optional.CalcIt.A, Date: 2014/08/30 02:09:08, Type: Registry Value, Location: HKU\S-1-5-21-43994927-2801798098-1555099715-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page
Vendor: PUP.Optional.Managera.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\cs.js
Vendor: PUP.Optional.Managera.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\manifest.json
Vendor: PUP.Optional.uTorrentTB.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pacgpkgadgmibnhpdidcnfafllnmeomc
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nsoC01C.exe
Vendor: PUP.Optional.InternetHelper.A, Date: 2014/09/12 08:36:53, Type: Registry Key, Location: HKU\S-1-5-21-43994927-2801798098-1555099715-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{1930e38a-deef-4cf4-9bfb-9c4ea3689a9d}
Vendor: PUP.Optional.BProtector.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\BPROTECTSETTINGS
Vendor: PUP.Optional.MixiDJToolbar.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\LocalLow\MixiDJ_V1
Vendor: PUP.Optional.MixiDJToolbar.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\LocalLow\MixiDJ_V1\Logs
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nsz449B.exe
Vendor: PUP.Optional.InstallCore, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\Flash_setup.exe
Vendor: PUP.Optional.SearchProtect.A, Date: 2014/07/08 22:15:18, Type: File, Location: C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Blasteroids\data2.dat
Vendor: PUP.Optional.InternetHelper.A, Date: 2014/09/12 08:36:53, Type: Registry Key, Location: HKU\S-1-5-21-43994927-2801798098-1555099715-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\fgkbmedckhcibhkdhaokebnllokeokek
Vendor: PUP.Optional.MixiDJToolbar.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\LocalLow\MixiDJ_V1\ldrtbMixi.dll
Vendor: PUP.Optional.MixiDJToolbar.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\LocalLow\MixiDJ_V1\toolbar.cfg
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\ProgramData\QvdNQU\dat\xOHFOsGxNw.exe
Vendor: PUP.Optional.Extutil.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\manifest.json
Vendor: PUP.Optional.Managera.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42
Vendor: PUP.Optional.SearchProtect.A, Date: 2014/07/08 22:16:38, Type: File, Location: C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
Vendor: PUP.Optional.MediaBuzz.A, Date: 2014/08/30 02:09:08, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaBuzzV1mode6343.net
Vendor: PUP.Optional.Trovi.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\preferences
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\ProgramData\QvdNQU\HGnufQVWTaW.exe
Vendor: PUP.Optional.Extutil.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\bk.js
Vendor: PUP.Optional.SearchProtect.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKU\S-1-5-21-43994927-2801798098-1555099715-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\HGnufQVWTaW
Vendor: PUP.Optional.FastFreeConverter.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKLM\SOFTWARE\WOW6432NODE\ZUPDATER\FastFreeConverterUpdt.exe
Vendor: PUP.Optional.Conduit, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\preferences
Vendor: PUP.Optional.SkyMonk, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\2013PurplePuppyvid.rar_19512525_50_p9ef.exe
Vendor: PUP.Optional.BetterSurf.A, Date: 2014/08/30 02:09:08, Type: Registry Key, Location: HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mmifolfpllfdhilecpdpmemhelmanajl
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nso4C97.exe
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nsjBA32.exe
Vendor: PUP.Optional.SolidSavings.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\Local\Solid Savings
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\Local\Blasteroids
Vendor: PUP.Optional.Extutil.A, Date: 2014/08/30 02:09:08, Type: Folder, Location: C:\Users\Jim\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B
Vendor: PUP.Optional.ClientConnect, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\Firefox_TSV1A5GVF.exe
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nstB5DD.exe
Vendor: PUP.Optional.SquareNet.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\java_installer.exe
Vendor: PUP.Optional.MixiDJToolbar.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\LocalLow\MixiDJ_V1\tbMixi.dll
Vendor: PUP.Optional.DownloadAdmin, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\adblockplus-setup.exe
Vendor: PUP.Optional.InternetHelper.A, Date: 2014/09/12 08:36:53, Type: Registry Key, Location: HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\fgkbmedckhcibhkdhaokebnllokeokek
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nsj53C9.exe
Vendor: PUP.Optional.ClientConnect, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\Downloads\Firefox_TSV3AMVIJ.exe
Vendor: PUP.Optional.FastFreeConverter.A, Date: 2014/08/30 02:09:08, Type: Registry Value, Location: HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|extension@Fast_Free_Converter.com
Vendor: PUP.Optional.Blasteroids.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\ProgramData\QvdNQU\dat\tXExSq.exe
Vendor: PUP.Optional.Extutil.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\cs.js
Vendor: PUP.Optional.RocketFind.A, Date: 2014/07/08 23:04:02, Type: File, Location: C:\Users\Jim\AppData\Roaming\RocketUpdater\UpdateProc\UpdateTask.exe
Vendor: PUP.Optional.Conduit.A, Date: 2014/09/12 08:36:53, Type: File, Location: C:\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_klibnahbojhkanfgaglnlalfkgpcppfi_0.localstorage
Vendor: PUP.Optional.Conduit.A, Date: 2014/08/30 02:09:08, Type: File, Location: C:\Users\Jim\AppData\Local\Temp\nso763E.exe
===============================================================
END OF FILE
 



#5 Kirbyofdeath

Kirbyofdeath

  • Members
  • 459 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Somewhere on Earth
  • Local time:03:41 AM

Posted 12 September 2014 - 03:49 PM

Please scan your computer with ESET OnlineScan

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  •  
  • Click the esetonlinebtn.png button.
  •  
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    •  
    • Double click on the esetsmartinstaller_enu.png icon on your desktop.
    •  
  •  
  • Check "YES, I accept the Terms of Use."
  •  
  • Click the Start button.
  •  
  • Accept any security warnings from your browser.
  •  
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  •  
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    •  
    • Scan for potentially unsafe applications
    •  
    • Enable Anti-Stealth technology
    •  
  •  
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  •  
  • When the scan completes, click List Threats
  •  
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  •  
  • Click the Back button.
  •  
  • Click the Finish button.


#6 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 13 September 2014 - 09:46 PM

C:\Users\All Users\QvdNQU\dat\XPelIIrSZOG.dll    a variant of MSIL/Adware.PullUpdate.C application    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEBA.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEBC.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEC.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEC9.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFED7.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFED8.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEDC.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEE1.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEE2.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEE5.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEE6.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEEA.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEEB.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEF1.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEFE.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF05.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF09.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF0A.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF0B.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF10.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF14.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF17.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF1C.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF1D.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF25.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF33.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF35.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF38.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF3A.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF3F.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF4.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF41.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF42.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF47.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF53.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF58.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF59.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF5D.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF6B.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF6D.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF7F.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF85.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF91.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF99.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF9B.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFF9E.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFA7.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFAB.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFAE.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFBE.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFBF.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFC1.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFCA.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFD0.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFD5.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFD8.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFDD.tmp    a variant of Win64/Sirefef.BK trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFE5.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFE7.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFE9.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFEA.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFF1.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFF3.tmp    Win32/Sirefef.FD trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFFC.tmp    Win64/Sirefef.AW trojan    
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFFFE.tmp    Win64/Sirefef.AW trojan    
C:\AdwCleaner\Quarantine\C\Program Files\DomaIQ Uninstaller\DomaIQUninstall.exe.vir    probably a variant of MSIL/DomaIQ.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\Uninstaller\Uninstall.exe.vir    a variant of MSIL/DomaIQ.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\File Type Helper\FileTypeHelper.exe.vir    MSIL/FileTypeHelper.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\File Type Helper\FileTypeHelper_assoc.exe.vir    MSIL/FileTypeHelper.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6343\uninstall.exe.vir    a variant of Win32/Amonetize.X potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll.vir    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\ProgramData\SaverAddon\Wqtk4gih1.exe.vir    a variant of Win32/AdWare.MultiPlug.BN application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll.vir    a variant of Win32/Adware.Yontoo.B application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\klibnahbojhkanfgaglnlalfkgpcppfi\10.31.4.510_0\APISupport\APISupport.dll.vir    a variant of Win32/Conduit.SearchProtect.P potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\klibnahbojhkanfgaglnlalfkgpcppfi\10.31.4.510_0\nativeMessaging\TBMessagingHost.exe.vir    a variant of Win32/Toolbar.Conduit.AH potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\klibnahbojhkanfgaglnlalfkgpcppfi\10.31.4.510_0\plugins\ChromeApiPlugin.dll.vir    a variant of Win32/Conduit.SearchProtect.N potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\DaemonProcess.exe.vir    a variant of Win32/Mobogenie.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\Mobogenie.exe.vir    a variant of Win32/Mobogenie.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll.vir    Win32/NextLive.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\New_UpdateMoboGenie.exe.vir    a variant of Win32/Mobogenie.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Jim\AppData\Roaming\Systweak\ssd\SSDPTstub.exe.vir    Win32/Systweak.G potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir    a variant of Win64/Systweak.A potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Windows\System32\sasnative64.exe.vir    Win64/AdvancedSystemProtector.A potentially unwanted application    deleted - quarantined
C:\Nexon\Library\dirtybomb\appdata\Binaries\Win32\ShooterGame-Win32-Shipping.exe    a variant of Win32/Packed.VMProtect.ABJ trojan    cleaned by deleting - quarantined
C:\Program Files (x86)\Mozilla Firefox\components\sprotector.js    Win32/Conduit.SearchProtect.A potentially unwanted application    deleted - quarantined
C:\Program Files (x86)\sweetpacks bundle uninstaller_Firefox_1636489\uninstaller.exe    a variant of Win32/ClientConnect.A potentially unwanted application    deleted - quarantined
C:\ProgramData\QvdNQU\dat\XPelIIrSZOG.dll    a variant of MSIL/Adware.PullUpdate.C application    cleaned by deleting - quarantined
C:\Users\Jim\Downloads\asc-setup(1).exe    a variant of Win32/Toolbar.Widgi.B potentially unwanted application    deleted - quarantined
C:\Users\Jim\Downloads\asc-setup.exe    a variant of Win32/Toolbar.Widgi.B potentially unwanted application    deleted - quarantined
C:\Users\Jim\Downloads\PDFCreatorSetup.exe    a variant of Win32/InstallCore.IX potentially unwanted application    deleted - quarantined
C:\Users\Jim\Downloads\TeamSpeak_v.3.0.9.2.exe    Win32/DomaIQ.C potentially unwanted application    deleted - quarantined
C:\Users\Jim\Downloads\ZipSetup.exe    a variant of Win32/InstallCore.IX potentially unwanted application    deleted - quarantined
C:\Users\Jim\Downloads\Desktop\Old Firefox Data\97w8r8m6.default-1363625263218\extensions\{739df940-c5ee-4bab-9d7e-270894ae687a}\Plugins\npConduitFirefoxPlugin.dll    a variant of Win32/Conduit.SearchProtect.N potentially unwanted application    deleted - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD27.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD29.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD32.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD4.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD4C.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD4F.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD52.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD54.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD57.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD5E.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD63.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD68.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD76.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD79.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD7D.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD7E.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD8.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD81.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD84.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD89.tmp    a variant of Win64/Sirefef.BK trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD8A.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD99.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFD9A.tmp    a variant of Win64/Sirefef.BK trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDA0.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDA8.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDB2.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDC4.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDCB.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDCD.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDD.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDD5.tmp    a variant of Win64/Sirefef.BK trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDD6.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDD9.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDDE.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDE.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDE2.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDE4.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDE5.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDEB.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDEC.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFDF1.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE0.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE08.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE0F.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE1.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE11.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE15.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE1A.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE1C.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE1E.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE23.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE2A.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE3D.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE43.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE44.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE45.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE48.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE4C.tmp    a variant of Win64/Sirefef.BK trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE4F.tmp    a variant of Win64/Sirefef.BK trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE50.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE53.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE54.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE61.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE65.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE79.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE8.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE8B.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE8F.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE99.tmp    Win32/Sirefef.FD trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFE9C.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEA.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEA8.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEAA.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
C:\Windows\Installer\{b4a47f27-f245-57a0-0da4-aeb99c56c623}\U\trzFEAD.tmp    Win64/Sirefef.AW trojan    cleaned by deleting - quarantined
 

 

Here you go.



#7 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 13 September 2014 - 09:48 PM

Sigh.... I need to get my own computer. I hate dealing with this stuff -.-

 

If I had my own rig this simply wouldn't happen... no wait, actually they wouldn't be my problem anymore, rather.



#8 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 15 September 2014 - 10:15 AM

Bump



#9 Kirbyofdeath

Kirbyofdeath

  • Members
  • 459 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Somewhere on Earth
  • Local time:03:41 AM

Posted 15 September 2014 - 11:15 AM

Sorry I took so long to reply. It looks like your computer is clean.

 

http://www.thewindowsclub.com/how-to-delete-all-system-restore-points-and-previous-versions-of-files-in-windows-7: Deletes old restore points that may hold the virus.



#10 Ryan55

Ryan55
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:41 AM

Posted 23 September 2014 - 12:04 PM

Ah, then it seems to be another issue. I'm gonna toy around with some stuff and see if I can delete AdvSC7 from my computer, and use .MSI files again. Otherwise I'll just post here again or make a new topic in a more appropriate section.

 

Thanks a bunch :)


Edited by Ryan55, 23 September 2014 - 12:05 PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users