Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

browser jumping


  • Please log in to reply
17 replies to this topic

#1 wickerman

wickerman

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 06 November 2014 - 04:06 AM

can anybody help me  ,my computer is going haywire, no matter what browser i use adverts appear or adobe flash player wants updating.

or pc cleanup.if i open chrome from desktop,there are at least 5 tabs open at top of the page .every time i click on something another ad appears.i went on task manager and there where 15 internet explorers' running. i cant' do anything  when i click something the page starts jumping all over ads coming and going until it stops on one.when i red cross it there is another underneath,i red cross that and there is another.

it goes on and on as many as a dozen .i am really getting fed up.

 

i am running windows' 7.    please help.


Edited by hamluis, 06 November 2014 - 07:53 AM.
Moved from Win 7 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 06 November 2014 - 10:17 AM

Please run AdwCleaner
 
Please download AdwCleaner and install it.
 
When AdwCleaner opens you will see an image like the one below.
 
adwcleaner11_zps48314883.png
 
Click on Scan to start the scan.
 
Once the search is complete a list of the pending items will be displayed.  If you see any which you do not want removed, remove the check mark next to it.  
 
Click on Clean to remove the selected items.  If you have any questions about any items in the list please copy and paste the list in your topic so we can review it.  
 
You will receive a message telling you that all programs will be closed so that the infections can be removed.  Click on OK.  The computer will be restarted to complete the cleaning process.
 
When the cleaning process is complete a log of what was removed will be presented.  Please copy and the paste this log in your topic.
 
 

Please run Malwarebytes AntiMalware
 
Please download Malwarebytes Anti-Malware.  After clicking on the link the download will start automatically.
 
1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.
 
2)  Malwarebytes will automatically open.  If this is the first time you have run this version of Malwarbytes you will see an image like the one below.
 
mbam1_zps95cc812c.png
 
Click on Update Now, after Malwarebytes is updated click on Scan.
 
If this isn't the first time you have run this version, then you will see an image like the one below.  Click on Scan
 
mbam1_zps98e7fba9.png
 
You will be prompted to update Malwarebytes, to do so click on Update Now.
 
 mbam2_zps85f38f0c.png
 
3)  The scan will automatically run now.
 
malwarerun_zps9abd4ef1.png
 
 
4)  When the scan is complete the results will be displayed.  Click on Quarantine All, then click on Apply Actions
 
mbam4_zps23e52ad4.png
 
 
5)  To complete any actions taken you will be asked if you want to restart your computer, click on Yes
 
 mbam4_zps490948cc.png
 
6)  Please post the Malwarebytes log.
 
To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  When the log opens, scroll down toward the bottom of the log to Quarantined Items.  Copy and paste this in your next post.
 
 
 

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#3 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 07 November 2014 - 04:46 AM

i have been trying all morning to get this to you .this is the best i can do .i hav'nt got a clue how to send the
the logs.help.

#4 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 07 November 2014 - 11:19 AM

Did you use the instructions in step 6?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#5 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 08 November 2014 - 04:18 AM

Hope this it from smbam-check result log version: 2.1.1.1001
========================================

User Account type: Administrator
OS: Windows 7 Service Pack 1 Service Pack 1 64 bit Operating System
Current Version and Build: 6.1.7601.0
Malwarebytes Anti-Malware: 2.0.3.1025
Installed On: 2014/11/06
Malware Database: 2014.11.08.02
Rootkit Database: 2014.11.01.02
Remediation Database: 2013.10.16.01
IP Database: 0000.00.00.00
Domain Database: 0000.00.00.00
License: Trial
Malware Protection: 4 (The service is running.)
Malicious Website Protection: 4 (The service is running.)
Chameleon: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
Log Created: 2014/11/08 09:10:11
Compatibility Flag Settings:
=================================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers


Malwarebytes Anti-Malware Shell Extension Block Check:
======================================================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:

MBAM Startup Entries:
=====================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Malwarebytes Anti-Malware Service and Driver Status:
=======================================================

--------------Driver File Info:--------------
C:\Windows\system32\drivers\mbam.sys
File Size: 25816 BYTES FileVersion: 0.1.15.0 MD5: [5c3669b71657f22e67a1d4bd49d2cbe7]
C:\Windows\system32\drivers\mwac.sys
File Size: 63704 BYTES FileVersion: 1.0.6.0 MD5: [95ef63a7827d4e3a229cbbcb42619e93]
C:\Windows\system32\drivers\mbamswissarmy.sys
File Size: 129752 BYTES FileVersion: 0.2.13.0 MD5: [26c43960c99ee861a5d0edc4dcf3b1c3]
C:\Windows\system32\drivers\mbamchameleon.sys
File Size: 93400 BYTES FileVersion: 1.1.4.0 MD5: [d3311b31c470e7681b14d9b014cbf9ed]

--------------MBAMProtector:--------------
Type: 2
State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


--------------MBAMService:--------------
Type: 16
State: 4 (The service is running.)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


--------------MBAMScheduler:--------------
Type: 16
State: 4 (The service is running.)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


--------------MBAMChameleon:--------------
Type: N/A
State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
WIN32_EXIT_CODE: N/A
SERVICE_EXIT_CODE: N/A
CHECKPOINT: N/A
WAIT_HINT: N/A


--------------MBAMWebAccessControl:--------------
Type: 2
State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


Required Dependencies:
======================

--------------BFE:--------------
Type: 32
State: 4 (The service is running.)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
DisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001
Group REG_SZ NetworkProvider
ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
Description REG_SZ @%SystemRoot%\system32\bfe.dll,-1002
ObjectName REG_SZ NT AUTHORITY\LocalService
ErrorControl REG_DWORD 1
Start REG_DWORD 2
Type REG_DWORD 32
DependOnService REG_MULTI_SZ RpcSs

ServiceSidType REG_DWORD 3
RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege

FailureActions REG_BINARY Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
ServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dll
ServiceDllUnloadOnStop REG_DWORD 1
ServiceMain REG_SZ BfeServiceMain
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime\Filter
{dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY Binary Data

{0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY Binary Data

{12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY Binary Data

{c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY Binary Data

{0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY Binary Data

{074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY Binary Data

{c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY Binary Data

{a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY Binary Data

{0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY Binary Data

{2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY Binary Data

{2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY Binary Data

{c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY Binary Data

{935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY Binary Data

{941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Callout
{22001ee0-8e87-4f75-ba58-248f5918a63a}REG_BINARY Binary Data

{79f2a265-b693-4cc9-b480-cbcd87bd4747}REG_BINARY Binary Data

{c4b50f21-503e-4d7a-abd4-ed0a823a2453}REG_BINARY Binary Data

{91e902db-2cef-4040-b8e2-02fe4fd49c25}REG_BINARY Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Filter
{b02a4013-b6b5-4859-9168-1e3299e43b24}REG_BINARY Binary Data

{d870c96c-75ee-46a6-8a02-8e4401a73423}REG_BINARY Binary Data

{8b50e2ec-7cf0-4b71-b42e-5b0536f6cab8}REG_BINARY Binary Data

{4137b143-2770-43d4-91a2-55bb0a069830}REG_BINARY Binary Data

{3180114b-8338-4740-9a16-444134ad62f4}REG_BINARY Binary Data

{17043d46-fac2-4561-bca1-0c7a05e95f5f}REG_BINARY Binary Data

{567d3836-3f5b-4067-b9c4-952f677010a2}REG_BINARY Binary Data

{4e718c57-c397-4221-9fbb-14fd51701d6a}REG_BINARY Binary Data

{3a90a266-1519-4d23-911b-e84cd0f02ab8}REG_BINARY Binary Data

{dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY Binary Data

{f444c576-6e60-4ea2-9faa-80d57ed12cd2}REG_BINARY Binary Data

{0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY Binary Data

{12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY Binary Data

{c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY Binary Data

{0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY Binary Data

{4d9581d2-aef8-4993-84cd-b986ced80d42}REG_BINARY Binary Data

{be7cbdf4-b192-4aa5-94f8-1fb5c5ee07bc}REG_BINARY Binary Data

{716b48eb-0a35-4a76-92ab-1d987230d288}REG_BINARY Binary Data

{1165065e-4996-4338-abaf-4b8556b4d431}REG_BINARY Binary Data

{07a24961-a760-4e80-b263-6d275e1b09cb}REG_BINARY Binary Data

{5b0cb2e2-ab87-4974-9f1c-2f22a654eeb9}REG_BINARY Binary Data

{b6b2ca61-fb98-4422-adc2-e7cf56b3680c}REG_BINARY Binary Data

{0aa7fff8-919f-453c-928c-28a12122ba38}REG_BINARY Binary Data

{074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY Binary Data

{c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY Binary Data

{a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY Binary Data

{0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY Binary Data

{91ffecf0-0a9e-4572-95f1-a7111af86967}REG_BINARY Binary Data

{64e55933-15a5-495d-a928-ccca43d44875}REG_BINARY Binary Data

{13bfd422-6f75-4408-8924-9400ec0cb19c}REG_BINARY Binary Data

{cbfb56db-3c85-4543-9bc2-76ea28cdd74e}REG_BINARY Binary Data

{2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY Binary Data

{375fb39b-08c6-40f2-bdf2-08fa63f970a2}REG_BINARY Binary Data

{2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY Binary Data

{c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY Binary Data

{b6fdab6b-dcc6-43e3-99ce-7aeca65063a4}REG_BINARY Binary Data

{3697a558-3ed3-49be-a4c1-c1a4448653b4}REG_BINARY Binary Data

{935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY Binary Data

{941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY Binary Data

{56b4fdc4-bb4e-4c42-a9d8-f627ee15ac21}REG_BINARY Binary Data

{1ba41ed8-151d-4577-9272-317856bc637c}REG_BINARY Binary Data

{9248d57e-f843-4159-807d-3813173e2096}REG_BINARY Binary Data

{4658cd86-525d-44ed-98a5-791a7b8655f1}REG_BINARY Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Provider
{decc16ca-3f33-4346-be1e-8fb4ae0f3d62}REG_BINARY Binary Data

{4b153735-1049-4480-aab4-d1b9bdc03710}REG_BINARY Binary Data

{1bebc969-61a5-4732-a177-847a0817862a}REG_BINARY Binary Data

{91842344-b99c-4dcb-afce-fb6f7462f55b}REG_BINARY Binary Data

{aa6a7d87-7f8f-4d2a-be53-fda555cd5fe3}REG_BINARY Binary Data

{839cd73f-1907-49ea-9aa5-0e6be9048087}REG_BINARY Binary Data

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\SubLayer
{b3cdd441-af90-41ba-a745-7c6008ff2300}REG_BINARY Binary Data

{b3cdd441-af90-41ba-a745-7c6008ff2301}REG_BINARY Binary Data

{b3cdd441-af90-41ba-a745-7c6008ff2302}REG_BINARY Binary Data

{9ba30013-c84e-47e5-ac6e-1e1aed72fa69}REG_BINARY Binary Data

{8c36b346-4e0c-4049-8b55-5295ac35567c}REG_BINARY Binary Data

--------------fltmgr:--------------
Type: 2
State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
WIN32_EXIT_CODE: 0
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
AttachWhenLoaded REG_DWORD 1
DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001
Group REG_SZ FSFilter Infrastructure
ImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sys
Description REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000
ErrorControl REG_DWORD 3
Start REG_DWORD 0
Tag REG_DWORD 1
Type REG_DWORD 2
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum
0 REG_SZ Root\LEGACY_FLTMGR\0000
Count REG_DWORD 1
NextInstance REG_DWORD 1


C:\Windows\system32\drivers\fltmgr.sys
File Size: 289664 BYTES FileVersion: 6.1.7601.17514 MD5: [da6b67270fd9db3697b20fce94950741]
C:\Windows\SysWOW64\olepro32.dll
File Size: 90112 BYTES FileVersion: 6.1.7601.17514 MD5: [703ffd301ab900b047337c5d40fd6f96]


MBAM Registry Settings and License Info:
========================================
--------------Settings:--------------
Advanced:
AutomaticQuarantine: true
AutostartProtection: true
LimitedMode: false
StartSilentMode: false
StartupDelay: 0
ApplicationState:
First-Run-After-Installation: false
General:
DaysUntilNotifyExpiration: 5
Language: en
RightClickAccess: false
SilentErrors: false
Logging:
ExportLog: true
Notification:
ProtectionTray:
DisplayMilliseconds: 7000
ScanHistory:
Duration_Complete: 474785
Duration_Driver: 0
Duration_Filesystem: 318
Duration_Heuristics: 311268
Duration_Loading: 0
Duration_MasterBootRecord: 0
Duration_Memory: 40000
Duration_PreScan: 29636
Duration_Registry: 26356
Duration_Sector: 0
Duration_Startup: 9259
ItemCount_Complete: 324954
ItemCount_Driver: 0
ItemCount_Filesystem: 34859
ItemCount_Heuristics: 8449
ItemCount_Loading: 0
ItemCount_MasterBootRecord: 0
ItemCount_Memory: 2797
ItemCount_PreScan: 29500
ItemCount_Registry: 560
ItemCount_Sector: 0
ItemCount_Startup: 987
LastScanDateEpoch: 1415430337424
LastScanType: 1 (Threat Scan)
Update:
LastUpdate: 2014-11-08T07:05:36
NotifyInstallReady: true
NotifyOutdatedDatabase: 7
ProxyPassword:
ProxyPort: 0
ProxyServer:
ProxyUsername:
UseProxy: false
UseProxyAuthentication: false
--------------Account:--------------
Account Status: Trial
Expiration Time: 2014/11/20 16:29:46
Activation Time: 2014/11/06 16:29:46
Trial Used: true
--------------Access Policies:--------------

Scheduler Queue:
================

tasks:
1f492386-313c-46b6-a9d6-fe1958079329:
parameters:
AutoDelete: false
CheckForUpdatesBeforeScanStart: true
ProcessLaunchedFromScheduler: true
ScanConfig:
ExitWhenQuarantineCompletes: false
ExportLog: true
FileSystemOption: true
Quarantine: Prompt
RebootSystemWhenMalwareDetected: false
ScanArchives: true
ScanExtra: true
ScanHeuristic: true
ScanMemoryObjects: true
ScanPUM: 2
ScanPUP: 2
ScanRegistry: true
ScanRootkits: false
ScanStartup: true
ScanTargets:
ScanType: 1 (Threat Scan)
Silent: true
StartTaskFromSystemAccount: false
TaskType: 0
triggers:
96c9e067-d81d-48e8-b3a4-c212a682a4c5:
dateinterval: 1:0:0
lastscheduled: Sat, 08 Nov 2014 07:04:34.371200 +0000
lasttriggered: Sat, 08 Nov 2014 07:04:34.371200 +0000
nextscheduled: Sun, 09 Nov 2014 02:59:25 +0000
recovery: 23:00:00
start: Fri, 07 Nov 2014 03:01:24 +0000
timeinterval: 00:00:00
type: 4
uuid: 96c9e067-d81d-48e8-b3a4-c212a682a4c5
type: scan
uuid: 1f492386-313c-46b6-a9d6-fe1958079329
2bb9e487-b812-4c00-8de4-a35c8dce820a:
parameters:
NotifyWhenUpdateCompletes: true
TaskType: 3
triggers:
db61a293-8a28-4ac1-9541-661cc12160a2:
dateinterval: 0:0:0
lastscheduled: Sat, 08 Nov 2014 09:03:45.624800 +0000
lasttriggered: Sat, 08 Nov 2014 09:03:45.624800 +0000
nextscheduled: Sat, 08 Nov 2014 09:47:52.997000 +0000
recovery: 00:00:00
start: Thu, 06 Nov 2014 16:48:43.997000 +0000
timeinterval: 01:00:00
type: 3
uuid: db61a293-8a28-4ac1-9541-661cc12160a2
type: update
uuid: 2bb9e487-b812-4c00-8de4-a35c8dce820a

Pending File Rename Operations:
================================
If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.

MBAMProtector Registry Values:
==============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector
Type REG_DWORD 2
Start REG_DWORD 3
ErrorControl REG_DWORD 1
ImagePath REG_EXPAND_SZ \??\C:\Windows\system32\drivers\mbam.sys
Group REG_SZ FSFilter Anti-Virus
DependOnService REG_MULTI_SZ FltMgr

WOW64 REG_DWORD 1
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances
DefaultInstance REG_SZ MBAMProtector Instance
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector Instance
Altitude REG_SZ 328800
Flags REG_DWORD 0
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Parameters
PassThruFile REG_SZ mbampt.exe
ProductPath REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Enum
0 REG_SZ Root\LEGACY_MBAMPROTECTOR\0000
Count REG_DWORD 1
NextInstance REG_DWORD 1

MBAMService Registry Values:
============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
Type REG_DWORD 16
Start REG_DWORD 2
ErrorControl REG_DWORD 1
ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
DependOnService REG_MULTI_SZ MBAMProtector

WOW64 REG_DWORD 1
ObjectName REG_SZ LocalSystem
Description REG_SZ Malwarebytes Anti-Malware service
DelayedAutostart REG_DWORD 0

MBAMScheduler Registry Values:
==============================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMScheduler
Type REG_DWORD 16
Start REG_DWORD 2
ErrorControl REG_DWORD 1
ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
WOW64 REG_DWORD 1
ObjectName REG_SZ LocalSystem
Description REG_SZ Malwarebytes Anti-Malware scheduler

Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
===============================================================================

--------------TERMService:--------------
Type: 32
State: 1 (The service is not running.) (State is stopped)
WIN32_EXIT_CODE: 1077
SERVICE_EXIT_CODE: 0
CHECKPOINT: 0
WAIT_HINT: 0


TermService Start is set to: 3 (Manual Startup)

Proxy Status: No proxy is Set

LAN Settings:
=============

only 'Automatically detect settings' is selected

SystemPartition:
================

HKEY_LOCAL_MACHINE\SYSTEM\Setup\
SystemPartition REG_SZ \Device\HarddiskVolume1

Balloon Tips Status:
====================

Enabled

Time Format Settings:
=====================

Should be:
h:mm:ss tt
AM
PM
:

Currently:
REG_SZ h:mm:ss tt
REG_SZ AM
REG_SZ PM
REG_SZ :

Language and Regional Settings:
===============================

ACP: Language is English (United States)
MACCP: Language is English (United States)
OEMCP: Language is English (United States)

Startup Folders for Error_Expanding_Variables Check:
====================================================

All Users Startup Folder Exists.
Current User's Startup Folder Exists.


Context Menu Entries:
=====================
















List of MBAM Related Directories:
=================================

C:\Program Files (x86)\Malwarebytes Anti-Malware\
7z.dll File Size: 920888 BYTES FileVersion: 9.20.0.0 MD5: [ce5bab535bfa98530ddac4661a751dfe]
changes.txt File Size: 3104 BYTES FileVersion: N/A MD5: [3ac874d1e1bfd50e4ceb220f5dd73f67]
license.rtf File Size: 39478 BYTES FileVersion: N/A MD5: [8627b31943a534aad30d154c2b2c1aaf]
master.conf File Size: 1258 BYTES FileVersion: N/A MD5: [9702ca5e82d3756c6d8af34a2ababaea]
mbam.dll File Size: 579896 BYTES FileVersion: 1.0.16.0 MD5: [59569d4be0d79a2b8c3241c6dcea0034]
mbam.exe File Size: 7229752 BYTES FileVersion: 1.0.1.711 MD5: [f89773dfa9b8c95a3ac2af1e7d99e483]
mbamcore.dll File Size: 1829176 BYTES FileVersion: 1.1.20.0 MD5: [a8d4b1d04a5fcd862321ce106da7ce4e]
mbamdor.exe File Size: 54072 BYTES FileVersion: 1.0.1.0 MD5: [842c198bb5fb3a051c34d493f3a7dff4]
mbamext.dll File Size: 310584 BYTES FileVersion: 3.0.6.0 MD5: [c49fe57cfa679dc1427fd6737bdce551]
mbampt.exe File Size: 39736 BYTES FileVersion: 1.0.0.0 MD5: [03cfd2a07ddf755aafac6e459d2d855a]
mbamscheduler.exe File Size: 1871160 BYTES FileVersion: 3.1.1.0 MD5: [6d8a2ee4244630b290a837e79c0f37a1]
mbamservice.exe File Size: 968504 BYTES FileVersion: 3.0.8.0 MD5: [09d4503cbb6adb3a54e7c7a75090b728]
mbamsrv.dll File Size: 4463928 BYTES FileVersion: 1.2.0.0 MD5: [a422816a15cfac50567fd0f6582fd2cf]
msvcp100.dll File Size: 421688 BYTES FileVersion: 10.0.40219.325 MD5: [ca55500e2e0515fcc888c4a5e01e64b7]
msvcr100.dll File Size: 774456 BYTES FileVersion: 10.0.40219.325 MD5: [4c539e592e50633b21ab1e1fda40a32a]
QtCore4.dll File Size: 2732856 BYTES FileVersion: 4.8.4.0 MD5: [61af7614418ba5b9e8b4eb82e459be53]
QtGui4.dll File Size: 8575288 BYTES FileVersion: 4.8.4.0 MD5: [2954dc080087cf73818f959cb3ed9c13]
QtNetwork4.dll File Size: 909112 BYTES FileVersion: 4.8.4.0 MD5: [d36b759179ddd214743dcfb8ed791fa2]
unins000.dat File Size: 26001 BYTES FileVersion: N/A MD5: [54ba1e860d09110ffca1a409395e4faf]
unins000.exe File Size: 718037 BYTES FileVersion: 51.52.0.0 MD5: [d2796ecf50731e696f0c065d24c0827a]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\accessible
qtaccessiblewidgets4.dll File Size: 198968 BYTES FileVersion: 4.8.4.0 MD5: [ac1481e30e75034928f50923c42a530d]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon\Windows
chameleon.chm File Size: 235882 BYTES FileVersion: N/A MD5: [c4190b71f037714aa77aba294434ba5b]
firefox.com File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
firefox.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
firefox.pif File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
firefox.scr File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
iexplore.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
mbam-chameleon.com File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
mbam-chameleon.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
mbam-chameleon.pif File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
mbam-chameleon.scr File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
mbam-killer.exe File Size: 1188664 BYTES FileVersion: 3.0.2.0 MD5: [311251e69b0db0562be1a2d6b556e552]
rundll32.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
svchost.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
windows.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]
winlogon.exe File Size: 761656 BYTES FileVersion: 3.1.7.0 MD5: [c0afb3c7e6c7ca3f6e42ff242bbbcb1f]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\imageformats
qgif4.dll File Size: 32568 BYTES FileVersion: 4.8.4.0 MD5: [ff014ac49ac32e5f1c7d6e271b320893]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Languages
lang_ar.qm File Size: 139423 BYTES FileVersion: N/A MD5: [9771d098e918204a99fa0068f431e6ba]
lang_bg.qm File Size: 147865 BYTES FileVersion: N/A MD5: [d250b37179f313e58267f7946e0522d4]
lang_ca.qm File Size: 149256 BYTES FileVersion: N/A MD5: [0cc2735ee2f231ea5d964c323ca73e08]
lang_cs.qm File Size: 142601 BYTES FileVersion: N/A MD5: [8426f7126d2851a1e6ca1f1f7e45d2ec]
lang_da.qm File Size: 143131 BYTES FileVersion: N/A MD5: [6fe13d4a5a44a3390bf9940404eeb6c7]
lang_de.qm File Size: 151959 BYTES FileVersion: N/A MD5: [9517c7c9865b5641c5c250c84b51a6d1]
lang_el.qm File Size: 152327 BYTES FileVersion: N/A MD5: [4cd483236d99cf40e9d8cf534bac05e7]
lang_en.qm File Size: 137689 BYTES FileVersion: N/A MD5: [d34a8afc30bb472c443f7f088513ff04]
lang_es.qm File Size: 149211 BYTES FileVersion: N/A MD5: [1ee5f6535d02c94812e54e3ed65de6ac]
lang_et.qm File Size: 141939 BYTES FileVersion: N/A MD5: [f6faee4a33654bb27dcf2f9d4cf955ef]
lang_fi.qm File Size: 145730 BYTES FileVersion: N/A MD5: [9f4ff431ec70747591ef0e0eaf3ed2cb]
lang_fr.qm File Size: 153965 BYTES FileVersion: N/A MD5: [8dd69dd62ee617dc3ca4f25ab2c70af8]
lang_he.qm File Size: 134117 BYTES FileVersion: N/A MD5: [3ad149f1778e6e8f8f89ecfe67a1e62e]
lang_hu.qm File Size: 147806 BYTES FileVersion: N/A MD5: [7c3ae4dde80fa8759968b218a03a7a73]
lang_id.qm File Size: 145710 BYTES FileVersion: N/A MD5: [c2a0325d9dfb5c5fce7a4832837896e7]
lang_it.qm File Size: 148249 BYTES FileVersion: N/A MD5: [4766a519a653d8e6f6ad32094a2a059b]
lang_ja.qm File Size: 122782 BYTES FileVersion: N/A MD5: [339134f906b770b833653682264bdc23]
lang_ko.qm File Size: 119240 BYTES FileVersion: N/A MD5: [5042df441910dfe9f6a55d3c005b00c7]
lang_lt.qm File Size: 146950 BYTES FileVersion: N/A MD5: [5c0fca31ff0a6d2b3f6d1722940a2dc6]
lang_lv.qm File Size: 146072 BYTES FileVersion: N/A MD5: [8623ed6977cd81c0d520f5fd84788d93]
lang_nl.qm File Size: 147725 BYTES FileVersion: N/A MD5: [1b391d5599be4724018624a27014eb75]
lang_no.qm File Size: 144153 BYTES FileVersion: N/A MD5: [2d53348f8e74f26f065e0c83e8fff7fe]
lang_pl.qm File Size: 147483 BYTES FileVersion: N/A MD5: [ce39bae20f8a2b42f93f2f5a5c6dd63e]
lang_pt_BR.qm File Size: 146906 BYTES FileVersion: N/A MD5: [b337c75fa23ba36176719d54c0269560]
lang_pt_PT.qm File Size: 144956 BYTES FileVersion: N/A MD5: [b41016907930a96a11aadb348fd9a1b6]
lang_ro.qm File Size: 146821 BYTES FileVersion: N/A MD5: [69c447559268a873808d5ae48b425ad9]
lang_ru.qm File Size: 148179 BYTES FileVersion: N/A MD5: [51d4d0c155de54f24b09be7040a7ff15]
lang_sk.qm File Size: 144330 BYTES FileVersion: N/A MD5: [3a00a97315c24e6820f8939920ef14b4]
lang_sl.qm File Size: 144582 BYTES FileVersion: N/A MD5: [47db99ccdd98936e6a38957321c71317]
lang_sv.qm File Size: 145435 BYTES FileVersion: N/A MD5: [a2b33c0364aad3e9d7daafdd4f286ee1]
lang_th.qm File Size: 137957 BYTES FileVersion: N/A MD5: [6a24ece552172d805cd428853255d294]
lang_tr.qm File Size: 144262 BYTES FileVersion: N/A MD5: [18b7fec7611c038780ee77044e523f70]
lang_vi.qm File Size: 144480 BYTES FileVersion: N/A MD5: [708062759498e791186bbe64b7246d0c]

C:\Program Files (x86)\Malwarebytes Anti-Malware\\Plugins
fixdamage.exe File Size: 821560 BYTES FileVersion: 1.1.0.1010 MD5: [0d7dd0e7f98a4f414fed44af0b50128b]

C:\Users\frank-pc\AppData\Roaming\Malwarebytes\Malwarebytes Anti-Malware

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware
actions.ref File Size: 314 BYTES FileVersion: N/A MD5: [b26a36c0696e299fdfebe180c09c2737]
domains.ref File Size: 38 BYTES FileVersion: N/A MD5: [8c30b536b67543eb68e68b9640d4d498]
exclusions.dat File Size: 0 BYTES FileVersion: N/A MD5: [d41d8cd98f00b204e9800998ecf8427e]
ips.ref File Size: 33 BYTES FileVersion: N/A MD5: [8a1c580788ea8de3f32862c2c1cf373c]
rules.ref File Size: 10092819 BYTES FileVersion: N/A MD5: [39e215e7c3c236ba093d09ceea5e002d]
S-1-5-18-0-ntuser.dat S-1-5-18-0-ntuser.dat.LOG1 S-1-5-18-0-ntuser.dat.LOG2 S-1-5-18-0-ntuser.dat{72b8b855-6715-11e4-ab94-e0cb4e4e05b4}.TM.blfS-1-5-18-0-ntuser.dat{72b8b855-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000001.regtrans-msS-1-5-18-0-ntuser.dat{72b8b855-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000002.regtrans-msS-1-5-19-0-ntuser.dat S-1-5-19-0-ntuser.dat.LOG1 S-1-5-19-0-ntuser.dat.LOG2 S-1-5-19-0-ntuser.dat{72b8b85b-6715-11e4-ab94-e0cb4e4e05b4}.TM.blfS-1-5-19-0-ntuser.dat{72b8b85b-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000001.regtrans-msS-1-5-19-0-ntuser.dat{72b8b85b-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000002.regtrans-msS-1-5-20-0-ntuser.dat S-1-5-20-0-ntuser.dat.LOG1 S-1-5-20-0-ntuser.dat.LOG2 S-1-5-20-0-ntuser.dat{72b8b861-6715-11e4-ab94-e0cb4e4e05b4}.TM.blfS-1-5-20-0-ntuser.dat{72b8b861-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000001.regtrans-msS-1-5-20-0-ntuser.dat{72b8b861-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000002.regtrans-msS-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.datS-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.dat.LOG1S-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.dat.LOG2S-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.dat{72b8b867-6715-11e4-ab94-e0cb4e4e05b4}.TM.blfS-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.dat{72b8b867-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000001.regtrans-msS-1-5-21-3943245492-3380732680-3856856115-1000-0-ntuser.dat{72b8b867-6715-11e4-ab94-e0cb4e4e05b4}.TMContainer00000000000000000002.regtrans-msS-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.datS-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.dat.LOG1S-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.dat.LOG2S-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.dat{865fd904-61b6-11e4-b370-e0cb4e4e05b4}.TM.blfS-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.dat{865fd904-61b6-11e4-b370-e0cb4e4e05b4}.TMContainer00000000000000000001.regtrans-msS-1-5-21-3943245492-3380732680-3856856115-1001-0-ntuser.dat{865fd904-61b6-11e4-b370-e0cb4e4e05b4}.TMContainer00000000000000000002.regtrans-msswissarmy.ref File Size: 23050 BYTES FileVersion: N/A MD5: [6bf3ce9f1d236c2196a8a61bdc078d62]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration
build.conf File Size: 4574 BYTES FileVersion: N/A MD5: [fd708cb988715acd000a7a59c9a40ce8]
database.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
gatekeeper.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
license.conf File Size: 465 BYTES FileVersion: N/A MD5: [beddb6c7a21bbc3d477ef89269f9d6ca]
manifest.conf File Size: 1715 BYTES FileVersion: N/A MD5: [1655ecaf26f5c7fc77fa66d487e7402e]
marketing.conf File Size: 1434 BYTES FileVersion: N/A MD5: [19533c40d9c9778b2ab423dbcf063d80]
net.conf File Size: 6071 BYTES FileVersion: N/A MD5: [b758f788d747800673f171bd8c8102a1]
notifications.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
scheduler.conf File Size: 2180 BYTES FileVersion: N/A MD5: [7564cc87560d4dba06245ef9910e5b6a]
settings.conf File Size: 1995 BYTES FileVersion: N/A MD5: [cff49bdffa19f7e91013109552282e1a]
statistics.conf File Size: 597 BYTES FileVersion: N/A MD5: [8da5bf79e3f5a62ca63ac6cd07b577c2]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration\Restore
build.conf File Size: 4155 BYTES FileVersion: N/A MD5: [287475cbeda24d01fe8d34660bc35e1c]
database.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
gatekeeper.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
license.conf File Size: 23 BYTES FileVersion: N/A MD5: [0ec01df616b565180556881d8042255b]
manifest.conf File Size: 1566 BYTES FileVersion: N/A MD5: [29b928c33aec22293649d003ea4ef224]
marketing.conf File Size: 1434 BYTES FileVersion: N/A MD5: [19533c40d9c9778b2ab423dbcf063d80]
net.conf File Size: 5344 BYTES FileVersion: N/A MD5: [973e9c5714cc0c56a7b9c83d876754dd]
notifications.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
scheduler.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
settings.conf File Size: 1725 BYTES FileVersion: N/A MD5: [06c52d7137dac16e1661f7cf004f2e4d]
statistics.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs
mbam-log-2014-11-06 (16-30-34).xml File Size: 55678 BYTES FileVersion: N/A MD5: [80df24619f224b858d4619b173033bb8]
mbam-log-2014-11-07 (08-54-59).xml File Size: 6522 BYTES FileVersion: N/A MD5: [31ecc05ef77af04e1906e9a6554e5ad5]
protection-log-2014-11-06.xml File Size: 4243 BYTES FileVersion: N/A MD5: [d4ca942ed4477d9230779d136ee52e11]
protection-log-2014-11-07.xml File Size: 7785 BYTES FileVersion: N/A MD5: [0c6d6e5f730c11d9c90c2e0bc361ae3d]
protection-log-2014-11-08.xml File Size: 3736 BYTES FileVersion: N/A MD5: [e370d782420b6f1f4b8d89034def6a7d]

C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine
0047090761.data File Size: 798 BYTES FileVersion: N/A MD5: [09f62d054f0859bc5c011b989ab02853]
0047090761.quar File Size: 174 BYTES FileVersion: N/A MD5: [de65ab35e8d6ff83f8fa904733e5637f]
0103677346.data File Size: 697 BYTES FileVersion: N/A MD5: [1b23b017128279ebdaf6aa34305931a2]
0103677346.quar File Size: 948184 BYTES FileVersion: N/A MD5: [ba36fcdde90f79a07bf620355fce407e]
0148443105.data File Size: 800 BYTES FileVersion: N/A MD5: [4c4f2d087110f0c3656982e772361532]
0148443105.quar File Size: 3261 BYTES FileVersion: N/A MD5: [bb5743ecd622e2303b7e2fc7bb47502d]
0215031677.data File Size: 701 BYTES FileVersion: N/A MD5: [b39dddf36892eec72670d95b0b1e4374]
0215031677.quar File Size: 948168 BYTES FileVersion: N/A MD5: [a21016cadafafa86a7da06a016018aa5]
0348724022.data File Size: 828 BYTES FileVersion: N/A MD5: [915ed33a6feb7d9bfafc5ecdb9dc443b]
0348724022.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
0416212318.data File Size: 794 BYTES FileVersion: N/A MD5: [57f8e24b94b007921461e8d9a83bbb1d]
0416212318.quar File Size: 139 BYTES FileVersion: N/A MD5: [d9d0a2f4247a188498ff9daa54eba474]
0449781367.data File Size: 797 BYTES FileVersion: N/A MD5: [a52dc8582d58d0504f33f890701a5972]
0452492545.data File Size: 825 BYTES FileVersion: N/A MD5: [1633055d77450d43fcc3fa9546ed5684]
0452492545.quar File Size: 935 BYTES FileVersion: N/A MD5: [88efb56c67c302acac9dc1302fddfd61]
0479044692.data File Size: 827 BYTES FileVersion: N/A MD5: [1ee6f7ec52bb640ecbfa207c4ee55ace]
0479044692.quar File Size: 1463 BYTES FileVersion: N/A MD5: [5cd5d42fee3a9e5a1e85c2d1cf1b858b]
0656542859.data File Size: 725 BYTES FileVersion: N/A MD5: [2fba127f243227a5e59bb014cac917c3]
0656542859.quar File Size: 729 BYTES FileVersion: N/A MD5: [f9f1d1430c4821bdaf89387d0797b2b7]
0709918995.data File Size: 800 BYTES FileVersion: N/A MD5: [2d080d3640a2aa234c0dd9811b2fd53e]
0709918995.quar File Size: 1463 BYTES FileVersion: N/A MD5: [5cd5d42fee3a9e5a1e85c2d1cf1b858b]
0729460852.data File Size: 823 BYTES FileVersion: N/A MD5: [3a3dab7aec73e92021230afe83e92346]
0729460852.quar File Size: 1317 BYTES FileVersion: N/A MD5: [10b8dcd2fca35f139ecfe83316c7e22f]
0764942614.data File Size: 827 BYTES FileVersion: N/A MD5: [e4ba1a7888c2146568f0b6c172fb6d28]
0764942614.quar File Size: 349 BYTES FileVersion: N/A MD5: [d14048e64d646adf49438295c30de1bc]
0870598657.data File Size: 773 BYTES FileVersion: N/A MD5: [4c681edc38294c242e6b7d8bd316d0f0]
0887062950.data File Size: 808 BYTES FileVersion: N/A MD5: [364f2b6280f081c788a8f4f37d5ccc56]
0887062950.quar File Size: 1324684 BYTES FileVersion: N/A MD5: [73d86ce0226ef99b016c435d8c267f60]
1072932847.data File Size: 828 BYTES FileVersion: N/A MD5: [cf4398f5028e9f235b129cc1a41d3871]
1072932847.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
1103606032.data File Size: 701 BYTES FileVersion: N/A MD5: [617daa96a0fcbcc9bcc1f89d9bf79f51]
1103606032.quar File Size: 948176 BYTES FileVersion: N/A MD5: [bd00b5b709f8851240d1dec33b0877cc]
1714456309.data File Size: 810 BYTES FileVersion: N/A MD5: [e205193b0d9693398538afe48f22aa72]
1714456309.quar File Size: 1716 BYTES FileVersion: N/A MD5: [06778d9a63fc8d1366ba42b3e3e053d7]
2268487311.data File Size: 726 BYTES FileVersion: N/A MD5: [0805d5cfb9ebe581bddf358949bbf5bb]
2268487311.quar File Size: 81208 BYTES FileVersion: N/A MD5: [8a3476185ddd15d6487e4fdec63d5246]
2421820438.data File Size: 701 BYTES FileVersion: N/A MD5: [cf85f730f1591bec786e6404a0c38e2a]
2421820438.quar File Size: 887776 BYTES FileVersion: N/A MD5: [d591075324e030a6cbd53c1baa2bcdb0]
2452241175.data File Size: 811 BYTES FileVersion: N/A MD5: [a582883dd0ddd4a72dacd0374f956b7f]
2652310856.data File Size: 841 BYTES FileVersion: N/A MD5: [168b1a7e683e663e7b294890a16c1d20]
2652310856.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
2654238416.data File Size: 790 BYTES FileVersion: N/A MD5: [89c6bcbbe7fbcace4039549a91eea167]
2661488875.data File Size: 824 BYTES FileVersion: N/A MD5: [f8f1c8c2a57f9d1d1cd51f560978fd51]
2761175706.data File Size: 783 BYTES FileVersion: N/A MD5: [583d6a08fac9b80b9c73f0f2addef23e]
2787152204.data File Size: 808 BYTES FileVersion: N/A MD5: [b080f07cae19c6da4862cc830e940022]
2787152204.quar File Size: 3072 BYTES FileVersion: N/A MD5: [dffa24c762ac0131bcf980e6eaebd1a9]
2885799615.data File Size: 800 BYTES FileVersion: N/A MD5: [7e055688de1cd4fba19ca30fd2eef8bb]
2885799615.quar File Size: 1463 BYTES FileVersion: N/A MD5: [c32c2c47a8d0d525dca8c1d6ff94f71b]
2956162471.data File Size: 787 BYTES FileVersion: N/A MD5: [363e9055843bbe84c07fb14ebc14c15f]
3090005501.data File Size: 797 BYTES FileVersion: N/A MD5: [bd8df72bc696dcc30ba0fc731d28fd47]
3090005501.quar File Size: 579 BYTES FileVersion: N/A MD5: [c374f0d9480637edc5fb4563b37c7a0c]
3148040037.data File Size: 710 BYTES FileVersion: N/A MD5: [13d9d6441d61b7acc6c40fc2a79f5cfd]
3148040037.quar File Size: 1487280 BYTES FileVersion: N/A MD5: [b78f5f2c40648b68ad932ef45ca68a74]
3229161263.data File Size: 701 BYTES FileVersion: N/A MD5: [4aa2abd8bfd090645e57263abdf3141c]
3229161263.quar File Size: 887752 BYTES FileVersion: N/A MD5: [d88a6e0a9d2a9ca9d63990a90b2be2fb]
3327178853.data File Size: 706 BYTES FileVersion: N/A MD5: [2b37c842afa328496d22de9d699c3959]
3327178853.quar File Size: 764856 BYTES FileVersion: N/A MD5: [0df7de847ab52d297a39a6aa1743de11]
3361294160.data File Size: 701 BYTES FileVersion: N/A MD5: [f81eb934db58d76ae9d248aabab1cacd]
3361294160.quar File Size: 887776 BYTES FileVersion: N/A MD5: [7e799b820041dd49f8e1abeef2050022]
3402298774.data File Size: 697 BYTES FileVersion: N/A MD5: [28e0ed6e75daa8bc49ecf8d288858308]
3402298774.quar File Size: 3268 BYTES FileVersion: N/A MD5: [8510d37ed3687ba44e5077aea84cec05]
3674561866.data File Size: 797 BYTES FileVersion: N/A MD5: [5c65823dcbcf02fb3a541f6c0dc49be3]
3674561866.quar File Size: 1272 BYTES FileVersion: N/A MD5: [5afb5f5e50133c6b9511f47e9836d03a]
3828181442.data File Size: 816 BYTES FileVersion: N/A MD5: [02b396f85d107c1baf92d030363234e8]
3828181442.quar File Size: 3608 BYTES FileVersion: N/A MD5: [b59aa6ac4b74688006d27ccf75de9e5e]
3829933901.data File Size: 803 BYTES FileVersion: N/A MD5: [cc32534d9b7455b69ed8a2ff6e51272c]
3829933901.quar File Size: 197 BYTES FileVersion: N/A MD5: [84dc2a0e7eb03f6677c3fdf46c107bdd]
3863745237.data File Size: 799 BYTES FileVersion: N/A MD5: [94b915dfbc22b646dafdb64f9152f04e]
3863745237.quar File Size: 2183 BYTES FileVersion: N/A MD5: [67a8f494594f0b7be4a102ddd1be0f1b]
3974938192.data File Size: 826 BYTES FileVersion: N/A MD5: [aee6cc974384b5b7332f39edb6dbff5d]
4160774487.data File Size: 797 BYTES FileVersion: N/A MD5: [1481de7f040aa45711722c7ad47f9dca]
4192350713.data File Size: 825 BYTES FileVersion: N/A MD5: [468eb0c76423e2ae9cb757cf6666b316]
4255625027.data File Size: 810 BYTES FileVersion: N/A MD5: [953bbc51fa44dfa3ab26808784224ea1]
4255625027.quar File Size: 11313 BYTES FileVersion: N/A MD5: [00a675a653c1cf1e2984fd3fdde3c077]
4365564791.data File Size: 797 BYTES FileVersion: N/A MD5: [4e2471a6db78b9285c8d707b49e4a2a8]
4365564791.quar File Size: 579 BYTES FileVersion: N/A MD5: [0ffcf90e597e9a5a3d17c543b0c603c6]
4439410037.data File Size: 797 BYTES FileVersion: N/A MD5: [c0e077b6c4c5650cdac669940d6d6543]
4776809786.data File Size: 801 BYTES FileVersion: N/A MD5: [e2e15bbe9baeb62fef0f5c3dc739abc6]
4776809786.quar File Size: 11257 BYTES FileVersion: N/A MD5: [c2ada1689531cc09a546afd2d8c45058]
4854947493.data File Size: 701 BYTES FileVersion: N/A MD5: [10fbe5c36ce8d3c20526cd2e5ee207e8]
4854947493.quar File Size: 887768 BYTES FileVersion: N/A MD5: [2c448e812f6036a6f855028e58637bf2]
4869650513.data File Size: 709 BYTES FileVersion: N/A MD5: [7043c0653aa861414479ff7d1831a6a6]
4892153663.data File Size: 708 BYTES FileVersion: N/A MD5: [593bbcd68ff047f266d51893f7ccb047]
4892153663.quar File Size: 1969072 BYTES FileVersion: N/A MD5: [e9db90ff64a287c6908690b3422892ad]
5037576049.data File Size: 750 BYTES FileVersion: N/A MD5: [45c195727ef7cce7094da6ad3c9aebbc]
5037576049.quar File Size: 310291 BYTES FileVersion: N/A MD5: [ab5c5817d5e192e244b5ad1e7be79515]
5128304733.data File Size: 721 BYTES FileVersion: N/A MD5: [26b3b8bda513e85daca94161e6c9742d]
5128304733.quar File Size: 729 BYTES FileVersion: N/A MD5: [f9f1d1430c4821bdaf89387d0797b2b7]
5136437040.data File Size: 804 BYTES FileVersion: N/A MD5: [fbb79bc3e9ac03eb8dd8ecfa08159178]
5242923030.data File Size: 797 BYTES FileVersion: N/A MD5: [17a90e64f3efd73047bdac620eca6915]
5390338663.data File Size: 789 BYTES FileVersion: N/A MD5: [0bbf42dac9bbd607e0f8db74880a359d]
5408551236.data File Size: 818 BYTES FileVersion: N/A MD5: [53a06dccceeb341470774b146b9f1fdc]
5498604831.data File Size: 844 BYTES FileVersion: N/A MD5: [72ebd7eed1e8c180e9c98345c7eb4eaf]
5498604831.quar File Size: 2446 BYTES FileVersion: N/A MD5: [02b7f9b10b6d78aa3e2dae6d382ac044]
5521824801.data File Size: 716 BYTES FileVersion: N/A MD5: [c88fef68db6750f6118da75a6a32982f]
5521824801.quar File Size: 805990 BYTES FileVersion: N/A MD5: [e80e9d8b36b5f5b2cb02ed6ad50a3ae8]
5827824829.data File Size: 801 BYTES FileVersion: N/A MD5: [716aaede729585f2b0ccbb158567bf0e]
5827824829.quar File Size: 11257 BYTES FileVersion: N/A MD5: [c2ada1689531cc09a546afd2d8c45058]
5906268565.data File Size: 704 BYTES FileVersion: N/A MD5: [2c118d464e54c52b87c6a91cd83a4339]
5906268565.quar File Size: 358 BYTES FileVersion: N/A MD5: [dd5abee45486766a47f116703a02f60c]
5963766254.data File Size: 810 BYTES FileVersion: N/A MD5: [d2e41f776139f3eb1c4b36fbaf726ec0]
5963766254.quar File Size: 1710 BYTES FileVersion: N/A MD5: [5b1102b77d3fb97c8c4192d606172098]
5969183151.data File Size: 789 BYTES FileVersion: N/A MD5: [d4502641fcb63a0be7366b39f14647fa]
5999708400.data File Size: 827 BYTES FileVersion: N/A MD5: [a49c9e590b5c60792bb8a47a41456d63]
5999708400.quar File Size: 2081 BYTES FileVersion: N/A MD5: [77c60798d4689f5c45351d23b6c5b85a]
6077553806.data File Size: 786 BYTES FileVersion: N/A MD5: [2ebc765973e8047cb3be9d1aaf204bff]
6174322049.data File Size: 834 BYTES FileVersion: N/A MD5: [c66486158d4a89405d18071653fd8b17]
6174322049.quar File Size: 917 BYTES FileVersion: N/A MD5: [848f3134c18b30531ff9830f14b28742]
6181425314.data File Size: 808 BYTES FileVersion: N/A MD5: [bc8fe18c9152963a478a9933adbc781c]
6181425314.quar File Size: 812 BYTES FileVersion: N/A MD5: [ca63b178baf37d8c1bb03a7eef4b7b71]
6357256320.data File Size: 838 BYTES FileVersion: N/A MD5: [0e61d480bb2183f8ef6967ccd5c7f75f]
6357256320.quar File Size: 5579 BYTES FileVersion: N/A MD5: [82c4c15a694759111810623c7e4d1933]
6446641708.data File Size: 750 BYTES FileVersion: N/A MD5: [51c88001442914d45d2ee4d09e1553c1]
6446641708.quar File Size: 268020 BYTES FileVersion: N/A MD5: [39764705e2bdf28ef0a0db70f843af9d]
6582293144.data File Size: 838 BYTES FileVersion: N/A MD5: [d87da3ae4f8763a0f9b40c9067f049cd]
6582293144.quar File Size: 10865 BYTES FileVersion: N/A MD5: [afd6a58410ebdb3d3753790c24bba3df]
6660643486.data File Size: 798 BYTES FileVersion: N/A MD5: [1e79b621b548d5263c5486aabd1bdf24]
6660643486.quar File Size: 38 BYTES FileVersion: N/A MD5: [bbdc483b6ae4201320a23ef8811440ac]
6680264181.data File Size: 797 BYTES FileVersion: N/A MD5: [15dae7758a36408f7d9522f48a6e1539]
6680264181.quar File Size: 1273 BYTES FileVersion: N/A MD5: [bef9dfb1a07c64404da746a747d123bd]
6682545580.data File Size: 808 BYTES FileVersion: N/A MD5: [5ca6a9427f0f799d29b8f037b0ebb612]
6682545580.quar File Size: 812 BYTES FileVersion: N/A MD5: [ca63b178baf37d8c1bb03a7eef4b7b71]
6743675006.data File Size: 791 BYTES FileVersion: N/A MD5: [8be7d9cb52fbd2880f06811fb80754d0]
6746080741.data File Size: 770 BYTES FileVersion: N/A MD5: [2364256b6afc154ecbecff6799f604f0]
6746080741.quar File Size: 234 BYTES FileVersion: N/A MD5: [519168d2efc0ee4d83db178d50531deb]
6849263465.data File Size: 810 BYTES FileVersion: N/A MD5: [516a5f4592baef806a64f5e4b3c6e134]
6849263465.quar File Size: 11328 BYTES FileVersion: N/A MD5: [77580df3fc8e9d32374b1489cdfef35b]
6850492011.data File Size: 750 BYTES FileVersion: N/A MD5: [ea2ca9d215f517be53c7ddc60bfc9236]
6850492011.quar File Size: 269208 BYTES FileVersion: N/A MD5: [b67ce5f862bf46db09ad7cb215cd7a05]
6925367723.data File Size: 794 BYTES FileVersion: N/A MD5: [d25c08f04c8713fd78ddd9f3e3d75e1f]
6925367723.quar File Size: 139 BYTES FileVersion: N/A MD5: [d9d0a2f4247a188498ff9daa54eba474]
7652217123.data File Size: 838 BYTES FileVersion: N/A MD5: [bc2cf95c2da043a194e4b942d8847239]
7652217123.quar File Size: 1710 BYTES FileVersion: N/A MD5: [40d1d8d1dfff902b981ca8f45104ef75]
7677205122.data File Size: 793 BYTES FileVersion: N/A MD5: [d11ae990197cebf53624e482403227bb]
7677205122.quar File Size: 49152 BYTES FileVersion: N/A MD5: [e7a18b6f2b00c6b050b5960d305d8c54]
7710186320.data File Size: 800 BYTES FileVersion: N/A MD5: [ac0e5fc87a15f2b3e0a4ce55531dd9d6]
7710186320.quar File Size: 3261 BYTES FileVersion: N/A MD5: [5e87220ff7c6a4e88526ae44c0594b54]
7765565238.data File Size: 847 BYTES FileVersion: N/A MD5: [3607cc1f56e630b308f45b4be808cbf3]
7765565238.quar File Size: 1894 BYTES FileVersion: N/A MD5: [b1274c32326fab794ec2df077e63f27a]
7913924764.data File Size: 841 BYTES FileVersion: N/A MD5: [4344c25ba747470129ea37ae79ffe619]
7913924764.quar File Size: 425 BYTES FileVersion: N/A MD5: [2976110fdc6a80860e7e337d25f5a93b]
8038154292.data File Size: 803 BYTES FileVersion: N/A MD5: [5d7b9778c161eafc05be20ed610cdead]
8038154292.quar File Size: 1223 BYTES FileVersion: N/A MD5: [7b7d9c4fd3a5306a33408fc60832a256]
8048067147.data File Size: 798 BYTES FileVersion: N/A MD5: [1ec871c4cabada348439c2523176cfdf]
8048067147.quar File Size: 202 BYTES FileVersion: N/A MD5: [8f0c0c70ada9118bb2a1395e4277e4ce]
8078515214.data File Size: 701 BYTES FileVersion: N/A MD5: [09c5ec9b7e12d65307b709328d62bc0b]
8078515214.quar File Size: 887752 BYTES FileVersion: N/A MD5: [ba74674bf49d422492801221c5e578e2]
8161025406.data File Size: 816 BYTES FileVersion: N/A MD5: [bc58185e5c438e6e47966edd2f0dcf62]
8283039926.data File Size: 828 BYTES FileVersion: N/A MD5: [383812fbc97e0a73344d10d0b8191d0d]
8283039926.quar File Size: 11257 BYTES FileVersion: N/A MD5: [c2ada1689531cc09a546afd2d8c45058]
8350935790.data File Size: 828 BYTES FileVersion: N/A MD5: [fec44539acef0a5531301c80c065ba77]
8350935790.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
8535397780.data File Size: 827 BYTES FileVersion: N/A MD5: [5e93b92598435c62d2cdf6e24018e52d]
8535397780.quar File Size: 3261 BYTES FileVersion: N/A MD5: [5e87220ff7c6a4e88526ae44c0594b54]
8756063051.data File Size: 701 BYTES FileVersion: N/A MD5: [7938f0b692db002d47723848a0e5ebb8]
8756063051.quar File Size: 948176 BYTES FileVersion: N/A MD5: [aaa4141f683f4ed4ba9c921683426d93]
8944899705.data File Size: 828 BYTES FileVersion: N/A MD5: [5ec39f3d03a2f84920fba134fd127ac2]
8944899705.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
8950740744.data File Size: 838 BYTES FileVersion: N/A MD5: [6a7a03cfb1564782367dfea39460a593]
8950740744.quar File Size: 1960 BYTES FileVersion: N/A MD5: [c6314f392a4a5694c9d191a7d2c760d1]
9004427554.data File Size: 728 BYTES FileVersion: N/A MD5: [9440fb9d1f0a46886f3533825c49d795]
9004427554.quar File Size: 45407 BYTES FileVersion: N/A MD5: [5754d8ca31efa7f9bcfa9d2db8c28b66]
9100690796.data File Size: 842 BYTES FileVersion: N/A MD5: [a0ab84fd262fee87ea22f6d50f47fc9f]
9100690796.quar File Size: 2001 BYTES FileVersion: N/A MD5: [6a53fb669c56726d812b173934fb57d7]
9258914767.data File Size: 828 BYTES FileVersion: N/A MD5: [64d202ee6392853ca821131b9242f2f7]
9258914767.quar File Size: 1361 BYTES FileVersion: N/A MD5: [e0ff3122707f1dda4bd35c99c391ecd4]
9336617562.data File Size: 803 BYTES FileVersion: N/A MD5: [5de6770ae5dcd941a2f0a5b00216d19f]
9336617562.quar File Size: 1223 BYTES FileVersion: N/A MD5: [7b7d9c4fd3a5306a33408fc60832a256]
9458442597.data File Size: 827 BYTES FileVersion: N/A MD5: [878b04b941c5fde6873011514843df8b]
9458442597.quar File Size: 140 BYTES FileVersion: N/A MD5: [3f50867938dc0c8c66ff5a6f650def7e]
9463228100.data File Size: 798 BYTES FileVersion: N/A MD5: [cbc2fcd195e8dd070a9cbffb825181ca]
9463228100.quar File Size: 296484 BYTES FileVersion: N/A MD5: [b46bf5de951c186f1e9b9b8bf7d7bf8d]
9531194558.data File Size: 799 BYTES FileVersion: N/A MD5: [d7dd4eba010ae7114e329024998d13fc]
9531194558.quar File Size: 2183 BYTES FileVersion: N/A MD5: [7b289c737936a7be0794e01114aa3dd2]
9534623949.data File Size: 791 BYTES FileVersion: N/A MD5: [53df64e40b2193106b447c2eea2bdbad]
9534623949.quar File Size: 262 BYTES FileVersion: N/A MD5: [0c913dea6756c603c9b77dd909451c01]
9642345696.data File Size: 795 BYTES FileVersion: N/A MD5: [a6972af7c9008ba6790b99f0804f3ecb]
9642345696.quar File Size: 16 BYTES FileVersion: N/A MD5: [5602dabf807868c9a8ade87f6ea57750]
9767836592.data File Size: 750 BYTES FileVersion: N/A MD5: [8c4c000ca302ef6e176edd2fb808b756]
9767836592.quar File Size: 268020 BYTES FileVersion: N/A MD5: [39764705e2bdf28ef0a0db70f843af9d]
9792467496.data File Size: 783 BYTES FileVersion: N/A MD5: [ab5ff9a047b53c65a22746e49f9f094e]
9820376421.data File Size: 701 BYTES FileVersion: N/A MD5: [ac839cb152d0356eb96b338634cd7198]
9820376421.quar File Size: 948184 BYTES FileVersion: N/A MD5: [5f295919304d73333bc9059bb22dbc3c]
9971901205.data File Size: 818 BYTES FileVersion: N/A MD5: [d495b1ea5f333d1046dad25221cc10c8]

Malware Exclusions:
===================
Web Exclusions:
================
Quarantined Items:
===================
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000017.ldb
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\Setup.exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons\icon48.png
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (4).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\button4.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\popup.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\extensionData
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\skin.css
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\icon16.png
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\background.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons\icon16.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\install.rdf
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\popup.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Registry Key, Location: HKU\S-1-5-21-3943245492-3380732680-3856856115-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TotalPlusHD-3.1V31.10
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\button5.png
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (3).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\extensionData\manifest.xml
Vendor: PUP.Optional.Fusion.A, Date: 2014/11/08 09:09:38, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (2).exe
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/07 08:54:59, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (7).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\crossrider_statusbar.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\js\lib
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\locale\en-US
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons\icon16.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\Settings.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\CWJWYZ.exe
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/07 08:54:59, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (9).exe
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\driver_updater.exe
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/07 08:54:59, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (6).exe
Vendor: PUP.Optional.GetPrivateVPN, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Windows\System32\Tasks\GPUP
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\manifest.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage-journal
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\MANIFEST-000019
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\background.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons\actions
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\extensionData
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\extensionData\plugins.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\Settings.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\extensionData
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons\icon128.png
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/07 08:54:59, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (5).exe
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\RPEO.exe
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\c2f008d1-c191-4b80-8ff6-491c94d4514e.xpi
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\bgNova.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\js\lib\popupResource
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons\actions
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\locale
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content\search_dialog.xul
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Registry Key, Location: HKLM\SOFTWARE\WOW6432NODE\TotalPlusHD-3.1V31.10-nv
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons\icon128.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Registry Key, Location: HKLM\SOFTWARE\TotalPlusHD-3.1V31.10-nv
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\extensionData\manifest.xml
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\icon24.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\js
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\panelarrow-up.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\chromeCoreFilesIndex.txt
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content\browser.xul
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\c2f008d1-c191-4b80-8ff6-491c94d4514e.crx
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\extensionData\plugins.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000021.log
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\manifest.json
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\chromeCoreFilesIndex.txt
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Registry Key, Location: HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TotalPlusHD-3.1V31.10
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\extensionData\plugins.json
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\fcbd0fbf-b0a2-4bfc-9c0f-c80721b57b91.crx
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\popup.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\extensionData\manifest.xml
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0\5
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons\icon48.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content\ffCoreFilesIndex.txt
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\locale\en-US\translations.dtd
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0\icons\actions\1.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000011.ldb
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/07 08:54:59, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (8).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\icon128.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\button1.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\icon48.png
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (2).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\button2.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content\options.xul
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\1293297481.mxaddon
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome\content\background.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\button3.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\icons\actions\1.png
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\skin\update.css
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000005.ldb
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.48_0\background.html
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOG
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\CURRENT
Vendor: PUP.Optional.CinemaXPro.A, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Program Files (x86)\CinemaXPro 1.4V20.10\6a6d276d-6aba-4673-9104-f9f19aaaaf01.crx
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkbffhpdalaceholagpcomhnigjjdfdb\1.26.17_0
Vendor: PUP.Optional.DomaIQ, Date: 2014/11/06 16:30:36, Type: File, Location: C:\Users\frank-pc\Downloads\Setup (1).exe
Vendor: PUP.Optional.CrossRider.A, Date: 2014/11/06 16:30:36, Type: Folder, Location: C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\extensions\172cfb0d00604ca2807d96193776c@90fc73dda8c44c58a81f097d.com\chrome
===============================================================
END OF FILE
tep 6.will send another one with the other log.

#6 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 08 November 2014 - 04:26 AM

# AdwCleaner v3.207 - Report created 11/05/2014 at 05:51:35
# Updated 05/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Frank - FRANK-PC
# Running from : C:\Users\Frank\Documents\calibre - E-book Management\Calibre Library\Calibre Library\Downloads\AdwCleaner(2).exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7601.17514


-\\ Mozilla Firefox v29.0 (en-US)

[ File : C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\mn2x57v8.default\prefs.js ]


-\\ Google Chrome v

[ File : C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [9026 octets] - [30/04/2014 13:40:26]
AdwCleaner[R1].txt - [17540 octets] - [06/05/2014 11:00:10]
AdwCleaner[R2].txt - [4377 octets] - [07/05/2014 14:32:57]
AdwCleaner[R3].txt - [1504 octets] - [10/05/2014 10:33:00]
AdwCleaner[R4].txt - [1454 octets] - [11/05/2014 05:49:38]
AdwCleaner[S0].txt - [9767 octets] - [30/04/2014 13:47:07]
AdwCleaner[S1].txt - [14020 octets] - [06/05/2014 11:01:14]
AdwCleaner[S2].txt - [3161 octets] - [07/05/2014 14:33:30]
AdwCleaner[S3].txt - [1508 octets] - [10/05/2014 10:37:18]
AdwCleaner[S4].txt - [1362 octets] - [11/05/2014 05:51:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1422 octets] ##########
# AdwCleaner v3.311 - Report created 06/11/2014 at 16:23:28
# Updated 30/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : frank-pc - FRANK-PC-PC
# Running from : C:\Users\frank-pc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4LYG0ITN\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

[x] Not Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
[x] Not Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17344


-\\ Mozilla Firefox v32.0.3 (x86 en-US)

[ File : C:\Users\frank-pc\AppData\Roaming\Mozilla\Firefox\Profiles\7ju0byij.default\prefs.js ]


-\\ Google Chrome v38.0.2125.111

[ File : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3331316&octid=EB_ORIGINAL_CTID&ISID=M94F67E8A-643D-4FFD-ACB2-D2C9A9BCCFF6&SearchSource=58&CUI=&UM=6&UP=SP26CA52B0-A7A5-4C44-A883-CCF42A83643A&q={searchTerms}&SSPV=
Deleted [Search Provider] : hxxp://search.certified-toolbar.com?si=77302&st=bs&tid=18145&ver=5.7&ts=&tguid=&q={searchTerms}
Deleted [Search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=md0202ie&cd=2XzuyEtN2Y1L1Qzu0EtD0C0ByE0EyE0EtDyD0ByE0CtA0FtDtN0D0Tzu0SyBzytBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=1280985741&ir=
Deleted [Search Provider] : hxxp://www.default-search.net/search?sid=476&aid=100&itype=a&ver=11471&tm=250&src=ds&p={searchTerms}
Deleted [Search Provider] : hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=e23fb83b-6cdd-15c2-9ce5-dce92d8cd88b&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?ctid=CT3314759&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBC3C5B47-6C96-4B91-8B46-855D15542D22&q={searchTerms}&SSPV=
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Search Provider] : hxxp://native-search.com/search.php?channel=eng&q={searchTerms}
Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
Deleted [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=102&systemid=2&v=n9639-148&apn_uid=7435128071434038&apn_dtid=IME002&o=APN10641&apn_ptnrs=AG2&q={searchTerms}
Deleted [Search Provider] : hxxp://start.iminent.com/?appId=40851C90-E057-408B-9725-A4EBC3CA349A&ref=toolbox&q={searchTerms}
Deleted [Search Provider] : hxxp://www.default-search.net/search?sid=476&aid=100&itype=n&ver=11111&tm=250&src=ds&p={searchTerms}

*************************

AdwCleaner[R0].txt - [24375 octets] - [30/04/2014 12:40:26]
AdwCleaner[R10].txt - [2241 octets] - [23/05/2014 07:03:33]
AdwCleaner[R1].txt - [26211 octets] - [06/05/2014 10:00:10]
AdwCleaner[R2].txt - [7118 octets] - [07/05/2014 13:32:57]
AdwCleaner[R3].txt - [4309 octets] - [10/05/2014 09:33:00]
AdwCleaner[R4].txt - [3953 octets] - [11/05/2014 04:49:38]
AdwCleaner[R5].txt - [1822 octets] - [11/05/2014 05:22:24]
AdwCleaner[R6].txt - [3817 octets] - [12/05/2014 06:24:35]
AdwCleaner[R7].txt - [4875 octets] - [20/05/2014 14:53:00]
AdwCleaner[R8].txt - [1997 octets] - [23/05/2014 06:34:05]
AdwCleaner[R9].txt - [2120 octets] - [23/05/2014 06:56:07]
AdwCleaner[S0].txt - [23131 octets] - [30/04/2014 12:47:07]
AdwCleaner[S1].txt - [24577 octets] - [06/05/2014 10:01:14]
AdwCleaner[S2].txt - [7824 octets] - [07/05/2014 13:33:30]
AdwCleaner[S3].txt - [6235 octets] - [10/05/2014 09:37:18]
AdwCleaner[S4].txt - [5485 octets] - [11/05/2014 04:51:35]
AdwCleaner[S5].txt - [1878 octets] - [11/05/2014 05:22:59]
AdwCleaner[S6].txt - [3846 octets] - [12/05/2014 06:34:55]
AdwCleaner[S7].txt - [4584 octets] - [20/05/2014 14:55:08]
AdwCleaner[S8].txt - [2051 octets] - [23/05/2014 06:34:57]
AdwCleaner[S9].txt - [2174 octets] - [23/05/2014 06:58:04]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [5845 octets] ##########

#7 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 08 November 2014 - 09:05 AM

How is the computer running now?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#8 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 09 November 2014 - 01:32 AM

a Little better but still far from right. should run them again.???



#9 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 09 November 2014 - 01:34 AM

a little better but still far from right.  



#10 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 09 November 2014 - 03:45 PM

Please download and install Emsisoft.
 
1.  When Emsisoft opens click on Update.
 
emsisoft6_zpsace019ac.png
 
2.  Click on Full Scan.
 
emsisoft7_zps9186dacd.png
 
3.  After the scan has completed the results will be displayed.  Make sure there is a check in the box of each item found, then click on Quarantine.
 
emsisoft9_zpsf493a30a.png
 
4.  After the items have been quarantined click on OK.
 
emsisoft10_zpscd89d5de.png
 
5.  After the quarantine has been completed click on Logs.
 
emsisoft11_zps7f976399.png
 
6.  Click on Export and save the log to a location which you will be able to find and open.  Open the log, copy and then paste the log in your topic.
 

 

emsisoft12_zpsb7365391.png

 

 

 

Please run the ESET OnlineScan

This scan takes quite a long time to run, so be prepared to have the time to allow this to run till it is completed.

***Please note. If you run this scan using Internet Explorer you won't need to download the Eset Smartinstaller.***

  • Click on this link to open ESET OnlineScan in a new window.
  • The ESET Online Scanner page will open, click on Yes, I agree to the trems of use, then click on Start, the scan will now begine.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#11 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 11 November 2014 - 04:53 AM


i am sorry but i have spent 20 mins' trying to post this log .i can;t do it.i have downloaded and run Emisoft.
i have got the log, i copy it then go back to your post and right click to paste it but the paste option is not there.i have tried it as many ways' as i know and it wont' let me paste it.

#12 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 11 November 2014 - 11:42 AM

Did you highlight the log before copying it?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#13 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 12 November 2014 - 01:52 AM

Emsisoft Emergency Kit - Version 9.0
Quarantine log
 
Date Source Event Infection/PUP
11/10/2014 1:59:05 PM Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Moved to quarantine Setting.DisableRegistryTools (A) 6
11/10/2014 1:59:05 PM Key: HKEY_USERS\.DEFAULT\SOFTWARE\APPDATALOW\{5F189DF5-2D05-472B-9091-84D9848AE48B} Moved to quarantine Application.AdGenie (A) 7
11/10/2014 1:59:04 PM C:\temp\InstallFilter64.msi Moved to quarantine Adware.Adpeak.L (B) 3
11/10/2014 1:59:04 PM C:\AdwCleaner\Quarantine\C\Program Files (x86)\MSR\backup\System Update kb70007\InstallerLibrary.dll.vir Moved to quarantine Application.Bundler.Somoto.F (B) 4
11/10/2014 1:59:04 PM Key: HKEY_USERS\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F} Moved to quarantine Application.Win32.InstallAd (A) 5
11/10/2014 1:59:03 PM C:\Users\frank-pc\AppData\Roaming\YDZ Moved to quarantine Adware.JS.Mplug.A (B) 1
11/10/2014 1:59:03 PM C:\Users\frank-pc\AppData\Roaming\RM Moved to quarantine Adware.JS.Mplug.A (B) 2
 


#14 wickerman

wickerman
  • Topic Starter

  • Members
  • 167 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:40 PM

Posted 12 November 2014 - 01:55 AM

# AdwCleaner v3.208 - Report created 12/05/2014 at 07:34:55
# Updated 11/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Frank - FRANK-PC
# Running from : C:\Users\Frank\Documents\calibre - E-book Management\Calibre Library\Calibre Library\Downloads\adwcleaner(4).exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\Program Files (x86)\CostMin
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Frank\AppData\Local\simple_new_tab
Folder Deleted : C:\Users\Frank\AppData\Local\torch
Folder Deleted : C:\Users\Frank\AppData\Roaming\Activeris
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\torch
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ActiverisAntiMalware_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ActiverisAntiMalware_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MYSEAR~1_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MYSEAR~1_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MySearchDial_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MySearchDial_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Supreme Savings_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Supreme Savings_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\supreme savings-bg_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\supreme savings-bg_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C2DD58F-613F-4580-8AC0-F10D760AF938}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C2DD58F-613F-4580-8AC0-F10D760AF938}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5C2DD58F-613F-4580-8AC0-F10D760AF938}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v8.0.7601.17514
 
 
-\\ Mozilla Firefox v29.0 (en-US)
 
[ File : C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\mn2x57v8.default\prefs.js ]
 
 
-\\ Google Chrome v
 
[ File : C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [9026 octets] - [30/04/2014 13:40:26]
AdwCleaner[R1].txt - [17540 octets] - [06/05/2014 11:00:10]
AdwCleaner[R2].txt - [4377 octets] - [07/05/2014 14:32:57]
AdwCleaner[R3].txt - [1504 octets] - [10/05/2014 10:33:00]
AdwCleaner[R4].txt - [1454 octets] - [11/05/2014 05:49:38]
AdwCleaner[R5].txt - [1822 octets] - [11/05/2014 06:22:24]
AdwCleaner[R6].txt - [3817 octets] - [12/05/2014 07:24:35]
AdwCleaner[S0].txt - [9767 octets] - [30/04/2014 13:47:07]
AdwCleaner[S1].txt - [14020 octets] - [06/05/2014 11:01:14]
AdwCleaner[S2].txt - [3161 octets] - [07/05/2014 14:33:30]
AdwCleaner[S3].txt - [1508 octets] - [10/05/2014 10:37:18]
AdwCleaner[S4].txt - [1502 octets] - [11/05/2014 05:51:35]
AdwCleaner[S5].txt - [1878 octets] - [11/05/2014 06:22:59]
AdwCleaner[S6].txt - [3702 octets] - [12/05/2014 07:34:55]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [3762 octets] ##########
# AdwCleaner v4.101 - Report created 11/11/2014 at 11:55:27
# Updated 09/11/2014 by Xplode
# Database : 2014-11-10.9 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : frank-pc - FRANK-PC-PC
# Running from : C:\Users\frank-pc\Downloads\AdwCleaner (1).exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
File Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage
File Deleted : C:\Users\frank-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage-journal
 
***** [ Scheduled Tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17344
 
 
-\\ Mozilla Firefox v32.0.3 (x86 en-US)
 
 
-\\ Google Chrome v38.0.2125.111
 
 
-\\ Comodo Dragon v
 
 
-\\ Opera v0.0.0.0
 
 
*************************
 
AdwCleaner[R0].txt - [24375 octets] - [30/04/2014 12:40:26]
AdwCleaner[R10].txt - [2241 octets] - [23/05/2014 07:03:33]
AdwCleaner[R1].txt - [26211 octets] - [06/05/2014 10:00:10]
AdwCleaner[R2].txt - [7118 octets] - [07/05/2014 13:32:57]
AdwCleaner[R3].txt - [4309 octets] - [10/05/2014 09:33:00]
AdwCleaner[R4].txt - [3953 octets] - [11/05/2014 04:49:38]
AdwCleaner[R5].txt - [5015 octets] - [11/05/2014 05:22:24]
AdwCleaner[R6].txt - [6452 octets] - [12/05/2014 06:24:35]
AdwCleaner[R7].txt - [4875 octets] - [20/05/2014 14:53:00]
AdwCleaner[R8].txt - [1997 octets] - [23/05/2014 06:34:05]
AdwCleaner[R9].txt - [2120 octets] - [23/05/2014 06:56:07]
AdwCleaner[S0].txt - [23131 octets] - [30/04/2014 12:47:07]
AdwCleaner[S1].txt - [24577 octets] - [06/05/2014 10:01:14]
AdwCleaner[S2].txt - [7824 octets] - [07/05/2014 13:33:30]
AdwCleaner[S3].txt - [6235 octets] - [10/05/2014 09:37:18]
AdwCleaner[S4].txt - [5925 octets] - [11/05/2014 04:51:35]
AdwCleaner[S5].txt - [4929 octets] - [11/05/2014 05:22:59]
AdwCleaner[S6].txt - [6170 octets] - [12/05/2014 06:34:55]
AdwCleaner[S7].txt - [4584 octets] - [20/05/2014 14:55:08]
AdwCleaner[S8].txt - [2051 octets] - [23/05/2014 06:34:57]
AdwCleaner[S9].txt - [2174 octets] - [23/05/2014 06:58:04]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [6410 octets] ##########
 


#15 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,714 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:11:40 AM

Posted 12 November 2014 - 08:49 AM

What is the computer doing now?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users