Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows 7 slows and freezes. After restart temp user account loads


  • Please log in to reply
17 replies to this topic

#1 Tigers85

Tigers85

  • Members
  • 54 posts
  • OFFLINE
  •  
  • Local time:01:14 AM

Posted 12 December 2014 - 01:12 PM

I am running a HP Pavilion desktop with 64-bit, Intel I7-2600 CPU @ 3.40 Ghz and 8.00 Gb ram using a Windows 7 Ultimate OS.  The computer slows and then freezes.  I have to turn the computer off and back on to restart it.  When it restarts, it loads a temporary user account.  I am afraid that I have picked up some virus.  Can someone please help me determine if my machine is infected?



BC AdBot (Login to Remove)

 


#2 Guest_LighthouseParty_*

Guest_LighthouseParty_*

  • Guests
  • OFFLINE
  •  

Posted 12 December 2014 - 06:40 PM

Hello there     :welcome:
 
Welcome to Bleeping Computer, I'm LighthouseParty. Let's run a couple of scans to see what could be causing this.
 
Step One:
Please download MiniToolBox to your desktop
  • Double click MiniToolBox.
  • Select the following and then press go.
  • Post the log in your next reply.
Flush DNS
Reset IE Proxy Settings
Reset FF Proxy Settings
List Installed Programs
List Restore Points
 
Step Two:
Please download Malwarebytes Anti-Malware to your desktop
  • Double click mbam-setup-x.x.x.xxxx and follow the on-screen instructions.
  • On the dashboard, click update now.
  • After that, click scan now - the scan will now begin.
  • When the scan's completed, select apply actions - make sure the action is quarantine.
  • Restart your computer.
How to get the log.
  • On the dashboard, select the history tab and click application logs.
  • Select the log which has the time and date of when you did the scan.
  • Click copy to clipboard and paste it into your reply.
Step Three:
Please download Security Check to your desktop
  • Double click SecurityCheck and follow the on-screen instructions.
  • A log should open, called checkup.txt.
  • Please post the contents of it in your next reply.
Thanks and good luck!

Edited by LighthouseParty, 12 December 2014 - 06:40 PM.


#3 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  

Posted 13 December 2014 - 03:17 AM

Thank you very much for taking your time to help me!

 

Here are the logs you requested:

 

MiniToolBox by Farbar  Version: 30-11-2014
Ran by Joanne (ATTENTION: The logged in user is not administrator) on 13-12-2014 at 01:28:24
Running from "C:\Users\Joanne\Desktop"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

 

=========================== Installed Programs ============================
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.9 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 2.6.0.19120 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.3.633 - Adobe Systems, Inc.)
Advanced SystemCare 6 (HKLM-x32\...\Advanced SystemCare 6_is1) (Version: 6.0 - IObit)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
AuthenTec TrueAPI (Version: 1.3.0.116 - AuthenTec, Inc.) Hidden
Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Belarc Advisor 8.2 (HKLM-x32\...\Belarc Advisor) (Version: 8.2.7.6 - Belarc Inc.)
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blasterball 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Bounce Symphony (x32 Version: 2.2.0.97 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.00 - Piriform)
Chronicles of Albian (x32 Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cradle of Rome 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
CyberLink Media Suite Premium (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3928 - CyberLink Corp.)
CyberLink Media Suite Premium (x32 Version: 7.0.3928 - CyberLink Corp.) Hidden
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.1.2925 - CyberLink Corp.)
CyberLink PowerDVD 10 (x32 Version: 10.0.1.2925 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Definition Update for Microsoft Office 2010 (KB2910899) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{C8358E8D-6C89-41B3-8439-FEFBC0353D81}) (Version:  - Microsoft)
Dual Stream 802.11n Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 3.01.18.0 - Ralink)
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
Google Apps Migration For Microsoft Outlook® 3.0.19.44 (HKLM-x32\...\{16CA4BD4-27ED-4DA0-9190-48F69D8AAC25}) (Version: 3.0.19.44 - Google, Inc.)
Google Apps Sync™ for Microsoft Outlook® 3.5.385.1020 (HKLM-x32\...\{CEBBF68C-4C3F-4D9B-8482-428E01064C31}) (Version: 3.5.385.1020 - Google, Inc.)
Google Talk (remove only) (HKCU\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Howie's Quick Screen Capture 1.1.1 (HKLM-x32\...\{370674BC-FCD0-4C4D-9B55-49A6EFC3DAC6}_is1) (Version:  - Howies Funware)
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden
HP Customer Experience Enhancements (x32 Version: 6.0.1.8 - Hewlett-Packard) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version:  - )
HP LinkUp (HKLM-x32\...\{DB3147AB-4024-4773-8EC0-A1FE5B44933D}) (Version: 2.01.028 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Product Detection (HKLM-x32\...\{3C22981C-5C14-4176-B0E8-C2BE71174C41}) (Version: 11.14.0003 - HP)
HP Product Detection (HKLM-x32\...\{A436F67F-687E-4736-BD2B-537121A804CF}) (Version: 11.14.0001 - HP)
HP Setup (HKLM-x32\...\{D35B72B6-F0E4-462B-BDEB-E08032B3B681}) (Version: 8.7.4747.3786 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13880.3792 - Hewlett-Packard Company)
HP SimplePass PE 2011 (HKLM-x32\...\{00FF4EB6-6AAC-4E9D-A60A-8F388691BB27}) (Version: 5.3.0.194 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.9.0.0 - Hewlett-Packard)
hppLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (x32 Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6346.0 - IDT)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel® Identity Protection Technology 1.1.2.0 (HKLM-x32\...\{C01A86F5-56E7-101F-9BC9-E3F1025EB779}) (Version: 1.1.2.0 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
ISO Recorder (HKLM\...\{2D7ED2A0-9553-412B-939F-D6E0AEB2ABE1}) (Version: 3.1.0 - Alex Feinman)
Java Auto Updater (x32 Version: 2.0.4.1 - Sun Microsystems, Inc.) Hidden
Java™ 6 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216025FF}) (Version: 6.0.250 - Oracle)
Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3925 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.3925 - CyberLink Corp.) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
McAfee SecurityCenter (HKLM-x32\...\MSC) (Version: 12.8.992 - McAfee, Inc.)
McAfee SiteAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 3.7.154 - McAfee, Inc.)
McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 6.5.0.2101 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft DirectX SDK (June 2010) (HKLM-x32\...\Microsoft DirectX SDK (June 2010)) (Version: 9.29.1962.0 - Microsoft Corporation)
Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation)
Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.6.0305.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden
Mozilla Firefox 32.0.3 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 en-US)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.97 - WildTangent) Hidden
Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden
NVIDIA Control Panel 296.28 (Version: 296.28 - NVIDIA Corporation) Hidden
NVIDIA Graphics Driver 296.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 296.28 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.62.312 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.10.0514 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation)
NVIDIA Update 1.7.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.7.12 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.7.12 - NVIDIA Corporation) Hidden
Oracle VM VirtualBox 4.1.8 (HKLM\...\{9B2C4509-2B9F-4303-BA74-E2F9BB773F03}) (Version: 4.1.8 - Oracle Corporation)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
PhotoNow! (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.7717 - CyberLink Corp.)
PhotoNow! (x32 Version: 1.1.7717 - CyberLink Corp.) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.5331 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.5331 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.4020 - CyberLink Corp.)
PowerDirector (x32 Version: 8.0.4020 - CyberLink Corp.) Hidden
RealDownloader (x32 Version: 17.0.11 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.10 - RealNetworks)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.0.4320 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
Roxio Easy Media Creator 7 (HKLM-x32\...\{A99C6296-A311-4D6C-9602-53B4241921D5}) (Version: 7.5.3.51 - Roxio, Inc.)
RoxioNow Player (HKLM-x32\...\{0EDEB615-1A60-425E-8306-0E10519C7B55}) (Version: 1.9.5.103 - RoxioNow)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Slingo Supreme (x32 Version: 2.2.0.97 - WildTangent) Hidden
Smart Defrag 2 (HKLM-x32\...\Smart Defrag 2_is1) (Version: 2.5 - IObit)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 7 (HKLM-x32\...\TeamViewer 7) (Version: 7.0.13989 - TeamViewer)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0409-0000-0000000FF1CE}_Office14.PROPLUS_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUS_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0409-0000-0000000FF1CE}_Office14.PROPLUS_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{A4F91D60-654C-4892-BFD3-0D41ADA649B6}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597089) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUS_{A12F43A5-CF0B-44E3-942F-2441CD442F0D}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{0B7744D2-1FDD-4843-9987-7CE11B79F370}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{D1C4AD0B-CC79-41D2-8D6A-571E7B30658C}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2889818) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{CFB80344-FCBA-4C03-AD77-D49E82F14C3E}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2889828) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{C1954E2B-1672-4E5C-B564-F8CB2D08345B}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2910896) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{E762A933-274B-4860-B066-A39FAB0838FD}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2910896) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0C0A-0000-0000000FF1CE}_Office14.PROPLUS_{A7AA9E77-A9F4-4596-8AFD-4910FF258C3D}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{A87EDEA3-4861-4D99-9B36-F442740F1287}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A87EDEA3-4861-4D99-9B36-F442740F1287}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUS_{26A0F874-417C-4B0A-8088-3FA53638FB49}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUS_{DCE104A1-1875-4469-A83D-A5BFA6C4640F}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{6C727BC2-B2B9-4B03-BD7E-682EA6FA1C04}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUS_{DF548669-AAED-467B-A074-AE2B72A4A871}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden
Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97 - WildTangent) Hidden
VIP Access SDK (1.0.1.4)  (HKLM-x32\...\VIP Access SDK) (Version: 1.0.1.4 - Symantec Inc.)
Virtual Villagers 5 - New Believers (x32 Version: 2.2.0.97 - WildTangent) Hidden
WildTangent Games App (HP Games) (x32 Version: 4.0.5.2 - WildTangent) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
========================= Restore Points ==================================

**** End of log ****

 

 

 

 

============================================================================

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 12/13/2014
Scan Time: 1:30:49 AM
Logfile:
Administrator: No

Version: 2.00.4.1028
Malware Database: v2014.12.13.02
Rootkit Database: v2014.12.08.03
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Joanne

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 290339
Time Elapsed: 11 min, 0 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Warn
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 2
PUP.Optional.WinToFlashSuggestor.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD}, Delete-on-Reboot, [61f5372b2359979f0e2c8249f30fb848],
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT, Delete-on-Reboot, [5600fd650c70211538fd511cf0133ec2],

Registry Values: 1
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT|InstallDir, C:\PROGRA~2\SearchProtect, Delete-on-Reboot, [5600fd650c70211538fd511cf0133ec2]

Registry Data: 0
(No malicious items detected)

Folders: 35
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\Logs, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\SearchProtect, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\SearchProtect\Logs, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\SearchProtect\rep, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\UI, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\UI\rep, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\defaults, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\defaults\preferences, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\userCode, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\locale, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\locale\en-US, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\EmailNotifier, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ExternalComponent, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Logs, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\MyStuffApps, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarHiddenSettings, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarLogin, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarSettings, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_en, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_en\ToolbarTranslation, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.WinToFlashSuggestor.A, C:\Program Files (x86)\WinToFlash Suggestor, Delete-on-Reboot, [d185134fcbb1c571975a87c28380fa06],

Files: 159
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\Lucky Savings-bg.exe, Delete-on-Reboot, [9bbb5210fd7f32048009494d7988d030],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\Lucky Savings.exe, Delete-on-Reboot, [8acc87dbbdbf5dd924652670c93850b0],
PUP.Optional.Conduit, c:\Windows\System32\Tasks\backgroundcontainer startup task, Delete-on-Reboot, [015579e9d3a9053130755060e42034cc],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\background.html, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\ButtonUtil.dll, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\Installer.log, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\Lucky Savings.ico, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.LuckySavings.A, C:\Program Files (x86)\Lucky Savings\Lucky Savings.ini, Delete-on-Reboot, [ca8cd38f5725cf67caf3c664c340d32d],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.SearchProtect.A, C:\Users\Joanne\AppData\Local\SearchProtect\UI\rep\UIRepository.dat, Quarantined, [36202e34433991a5b9fd69c737ccc63a],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome.manifest, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\install.rdf, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\background.html, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\baseObject.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\browser.xul, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\dialog.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\ffCoreFilesIndex.txt, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\main.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\options.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\options.xul, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\platformVersion.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\search_dialog.xul, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\setup.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\asyncDB.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\background.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\browserAction.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\contextMenu.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\dbManager.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\dom_bg.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\fileManager.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\firefox.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\firefoxNotifications.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\firefoxOmnibox.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\message.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\pageAction.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\request.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\tabs.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\webRequest.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\api\windowsMessagingHandler.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\addressBarChangeObserver.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\console.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\consts.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\delegate.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\extensionDataStore.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\folderIOWrapper.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\httpObserver.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\IDBWrapper.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\installer.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\logFile.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\prefs.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\progressListenerObserver.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\registry.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\reloadObserver.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\reports.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\requestObject.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\searchSettings.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\uninstallObserver.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\updateManager.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\utils.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\chrome\content\core\xhr.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\defaults\preferences\prefs.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\manifest.xml, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins.json, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\1.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\1000014.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\1000015.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\13.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\14.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\16.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\17.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\177.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\182.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\183.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\207.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\21.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\22.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\28.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\4.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\47.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\64.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\72.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\78.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\plugins\98.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\userCode\background.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\extensionData\userCode\extension.js, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\locale\en-US\translations.dtd, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\button1.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\button2.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\button3.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\button4.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\button5.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\crossrider_statusbar.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\icon128.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\icon16.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\icon24.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\icon48.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\panelarrow-up.png, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\popup.html, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\skin.css, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.CrossFire.A, C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\extensions\crossriderapp12759@crossrider.com\skin\update.css, Quarantined, [0b4b184a8cf046f0fc9ef2449c67728e],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ThirdPartyComponents.xml, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\toolbar.cfg, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_43_330_CT3301943_Images_635040680223907925_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_43_330_CT3301943_images_635057641690978441_24PX_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_43_330_CT3301943_Sharing_temp_635057639562816360_16PX_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_commandcomps_block_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_calculator_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_excel_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_MsAccess_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_msnmessenger_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_notepad_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_office_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_OutlookExpress_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_Outlook_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_paint_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_powerpoint_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_RegistryEditor_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_winword_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_WMPlayer_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_BankImages_Facebook_Facebook_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_ClientImages_radio_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_Images_ClientResources_mini_browser_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_eula_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_Menu_uninstall-icon_png.png, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_SearchEngines_images_search_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_SearchEngines_news_icon_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_SearchEngines_tfd_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\CacheIcons\http___storage_conduit_com_images_SearchEngines_video_gif.gif, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en&ctid=CT3306061.xml, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en&ctid=CT3306061.xml, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en&ctid=CT3306061.xml, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3306061&UM=2.xml, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarHiddenSettings\data.txt, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarLogin\data.txt, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_CT3306061\ToolbarSettings\data.txt, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.ConnectDLC.A, C:\Users\Joanne\AppData\LocalLow\Connect_DLC_5\Repository\conduit_CT3306061_en\ToolbarTranslation\data.txt, Quarantined, [c096144ea0dc52e4553689b8c24133cd],
PUP.Optional.WinToFlashSuggestor.A, C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll.remove, Delete-on-Reboot, [d185134fcbb1c571975a87c28380fa06],

Physical Sectors: 0
(No malicious items detected)

(end)

 

============================================================================

 

 

 

 Results of screen317's Security Check version 0.99.93 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
McAfee Anti-Virus and Anti-Spyware  
Microsoft Security Essentials       
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File 
 Spybot - Search & Destroy
 McAfee SiteAdvisor   
 Java™ 6 Update 25 
 Java version 32-bit out of Date!
  Adobe Flash Player 15.0.0.246 Flash Player out of Date! 
 Adobe Reader 10.1.11 Adobe Reader out of Date! 
 Mozilla Firefox 32.0.3 Firefox out of Date! 
````````Process Check: objlist.exe by Laurent```````` 
 Microsoft Security Essentials MSMpEng.exe
 Microsoft Security Essentials msseces.exe
 Malwarebytes Anti-Malware mbam.exe 
 Spybot Teatimer.exe is disabled!
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````
 



#4 Guest_LighthouseParty_*

Guest_LighthouseParty_*

  • Guests
  • OFFLINE
  •  

Posted 13 December 2014 - 04:48 AM

Hello there,

 

:exclame: More than one anti-virus!

 

You currently have McAfee Anti-Virus and Anti-Spyware and Microsoft Security Essentials. It's not recommended to have more than one antivirus, so it would be highly appreciated if you could remove one of them.

 

Step One:
Please uninstall some programs
 
There's currently some programs on your PC that we need to remove, for the time-being at least. Press the Windows + R key on your keyboard and type in appwiz.cpl and press enter. Navigate to each of the following below one-by-one and click uninstall:

  • Advanced SystemCare 6
  • AuthenTec TrueAPI
  • Java™ 6 Update 25
  • RealDownloader
  • RealPlayer Cloud
  • Spybot - Search & Destroy

If any programs listed above aren't in Programs and Features, you can just skip them. Please download JavaRa from here and once opened it, select 'remove JRE' (If that's not there, select remove Java Runtime). Make sure you skip the re-install Java option! The following programs need updating, click them for instructions on how to do so:

Step Two:
Please download rKill to your desktop

  • Double click it (Win 7, 8 and Vista users, right-click and select run as admin)
  • The tool will run and then a log file should open.
  • Please post the contents of it in your next reply.

Please don't restart your computer before running the next step.

Step Three:
Please download AdwCleaner to your desktop.

  • Double click adwcleaner_x.xxx.exe. (Win 7, 8 and Vista users, right-click and select run as admin)
  • If prompted, click I agree.
  • Click scan. When it's finished, select clean.
  • Allow AdwCleaner to restart your computer.
  • Once your computer's restarted, a log should appear.
  • Please post this in your next reply.

Step Four:
Please download Junkware Removal Tool to your desktop.

  • Double click JRT.exe. (Win 7, 8 and Vista users, right-click and select run as admin)
  • Press any key and the scan will begin.
  • At the end, a log will open. Please post this in your next reply.

Edited by LighthouseParty, 13 December 2014 - 04:48 AM.


#5 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:14 AM

Posted 13 December 2014 - 05:32 AM

Note : Hello -
With your MinitoolBox, can you please re-open it and post these 3 extra needed items, Checkmark the following boxes:

  • List content of Hosts
  • List last 10 Event Viewer log
  • List Users, Partitions and Memory

Click Go and Copy / Paste the result. (result.txt)

 

 

Also : Please post a snapshot with Speccy for a bit more system details -
How to Publish a snapshot with Speccy <<-- Full Directions Here (only Copy / Paste the link)

 

 

Sorry to bother, and Thank You -



#6 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  

Posted 13 December 2014 - 04:04 PM

I uninstalled Microsoft Essentials.

 

Step One:  I was unable to find and uninstall AuthenTec TrueAPI and RealPlayer Cloud.  I successfully uninstalled the others you listed.

 

Step Two:  I successfully downloaded and ran Rkill, but when I ran the Adwcleaner in the next step and the sytem restarted, the log disappeared.  I ran the Rkill again and have posted the resulting log below:

 

Rkill 2.6.9 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 12/13/2014 02:24:39 PM in x64 mode.
Windows Version: Windows 7 Ultimate Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * HOSTS file entries found:

  127.0.0.1 www.007guard.com
  127.0.0.1 007guard.com
  127.0.0.1 008i.com
  127.0.0.1 www.008k.com
  127.0.0.1 008k.com
  127.0.0.1 www.00hq.com
  127.0.0.1 00hq.com
  127.0.0.1 010402.com
  127.0.0.1 www.032439.com
  127.0.0.1 032439.com
  127.0.0.1 www.0scan.com
  127.0.0.1 0scan.com
  127.0.0.1 www.1000gratisproben.com
  127.0.0.1 1000gratisproben.com
  127.0.0.1 1001namen.com
  127.0.0.1 www.1001namen.com
  127.0.0.1 100888290cs.com
  127.0.0.1 www.100888290cs.com
  127.0.0.1 www.100sexlinks.com
  127.0.0.1 100sexlinks.com

  20 out of 15309 HOSTS entries shown.
  Please review HOSTS file for further entries.

Program finished at: 12/13/2014 02:25:56 PM
Execution time: 0 hours(s), 1 minute(s), and 17 seconds(s)

 

Step 3: Here is the log:

 

 Results of screen317's Security Check version 0.99.93 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
McAfee Anti-Virus and Anti-Spyware  
Microsoft Security Essentials       
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File 
 Spybot - Search & Destroy
 McAfee SiteAdvisor   
 Java™ 6 Update 25 
 Java version 32-bit out of Date!
  Adobe Flash Player 15.0.0.246 Flash Player out of Date! 
 Adobe Reader 10.1.11 Adobe Reader out of Date! 
 Mozilla Firefox 32.0.3 Firefox out of Date! 
````````Process Check: objlist.exe by Laurent```````` 
 Microsoft Security Essentials MSMpEng.exe
 Microsoft Security Essentials msseces.exe
 Malwarebytes Anti-Malware mbam.exe 
 Spybot Teatimer.exe is disabled!
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````

 

 

Step 4:  Here is the JRT log:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 7 Ultimate x64
Ran by Mike on Sat 12/13/2014 at 14:45:01.16
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

~~~ Services

 

~~~ Registry Values

 

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111271159}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}

 

~~~ Files

Successfully deleted: [File] "C:\Windows\wininit.ini"

 

~~~ Folders

 

~~~ Event Viewer Logs were cleared

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 12/13/2014 at 14:47:55.55
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 



#7 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:04:14 PM

Posted 13 December 2014 - 04:30 PM

Hi -

There should be a text document on your desktop for AdwCleaner. Did you remove or delete the AdwCleaner Program ??

If not a copy of all logfiles are also saved in the C:\AdwCleaner folder which was created when running the tool.

 

Thank You -



#8 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  
  • Local time:01:14 AM

Posted 13 December 2014 - 04:53 PM

NOKNOJON;

 

MiniToolBox by Farbar  Version: 30-11-2014
Ran by Joanne (ATTENTION: The logged in user is not administrator) on 13-12-2014 at 15:02:03
Running from "C:\Users\Joanne\Desktop\Bleeping"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************
========================= Hosts content: =================================

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com

There are 15289 more lines starting with "127.0.0.1"

========================= Event log errors: ===============================

Application errors:
==================

System errors:
=============
Error: (12/13/2014 02:55:45 PM) (Source: Service Control Manager) (User: )
Description: The NVIDIA Update Service Daemon service failed to start due to the following error:
%%1069

Error: (12/13/2014 02:55:45 PM) (Source: Service Control Manager) (User: )
Description: The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error:
%%1330

To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

Error: (12/13/2014 02:53:41 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
Cdr4_xp
cdudf_xp
DVDVRRdr_xp
UDFReadr

Error: (12/13/2014 02:53:25 PM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\Drivers\UDFReadr.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (12/13/2014 02:53:25 PM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\Drivers\DVDVRRdr_xp.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (12/13/2014 02:50:23 PM) (Source: DCOM) (User: )
Description: {3EEF301F-B596-4C0B-BD92-013BEAFCE793}

Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
  Date: 2014-12-13 14:53:25.081
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdudf_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.987
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdudf_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.894
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\pwd_2k.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.800
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\pwd_2k.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.691
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdralw2k.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.597
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdralw2k.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.504
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdr4_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:53:24.410
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdr4_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:36:30.750
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdudf_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-13 14:36:30.656
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cdudf_xp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

========================= Memory info: ===================================

Percentage of memory in use: 26%
Total physical RAM: 8172.31 MB
Available physical RAM: 6046.58 MB
Total Pagefile: 16342.8 MB
Available Pagefile: 14069.09 MB
Total Virtual: 4095.88 MB
Available Virtual: 3977.08 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:917.79 GB) (Free:762.66 GB) NTFS
2 Drive d: (HP_RECOVERY) (Fixed) (Total:13.62 GB) (Free:1.68 GB) NTFS
3 Drive e: (Exploraciones Te) (CDROM) (Total:0.11 GB) (Free:0 GB) CDFS

========================= Users: ========================================

User accounts for \\JOANNE-HP

Administrator            Guest                    Joanne                  
Mike                     UpdatusUser             

**** End of log ****

 

http://speccy.piriform.com/results/1OVVHmmo8X7uXIUp5AeGWE2

 



#9 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  
  • Local time:04:14 PM

Posted 13 December 2014 - 04:56 PM

Sorry about posting the wrong log, here is the Adwcleaner log:

 

# AdwCleaner v4.105 - Report created 13/12/2014 at 13:55:44
# Updated 08/12/2014 by Xplode
# Database : 2014-12-13.4 [Live]
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Mike - JOANNE-HP
# Running from : C:\Users\Joanne\Desktop\adwcleaner_4.105.exe
# Option : Scan

***** [ Services ] *****

Service Found : c2cautoupdatesvc
Service Found : c2cpnrsvc

***** [ Files / Folders ] *****

File Found : \END
File Found : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Joanne M\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Mike\AppData\Local\Temp\Uninstall.exe
File Found : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\Conduit.xml
File Found : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\conduit-search.xml
File Found : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\user.js
Folder Found : C:\Program Files (x86)\Conduit
Folder Found : C:\Program Files (x86)\Lucky Savings
Folder Found : C:\Program Files (x86)\WinToFlash Suggestor
Folder Found : C:\ProgramData\Conduit
Folder Found : C:\Users\Joanne M\AppData\Local\SearchProtect
Folder Found : C:\Users\Joanne M\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found : C:\Users\Joanne\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found : C:\Users\Mike\AppData\Local\Conduit
Folder Found : C:\Users\Mike\AppData\Local\Lucky Savings
Folder Found : C:\Users\Mike\AppData\Local\SearchProtect
Folder Found : C:\Users\Mike\AppData\LocalLow\Conduit
Folder Found : C:\Windows\SysWOW64\SearchProtect

***** [ Scheduled Tasks ] *****

Task Found : BackgroundContainer Startup Task

***** [ Shortcuts ] *****

***** [ Registry ] *****

Data Found : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
Key Found : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Found : HKCU\Software\AppDataLow\Software\Lucky Savings
Key Found : HKCU\Software\AppDataLow\Software\Smartbar
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Cr_Installer
Key Found : HKCU\Software\InstalledBrowserExtensions
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3748D0D9-0C19-45F7-A3CE-5C09B184B0A1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Cr_Installer
Key Found : [x64] HKCU\Software\InstalledBrowserExtensions
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3748D0D9-0C19-45F7-A3CE-5C09B184B0A1}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Conduit
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\SearchProtect
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BackgroundContainer]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17496

-\\ Mozilla Firefox v34.0.5 (x86 en-US)

[ryx8sma7.default] - Line Found : user_pref("CT3306061.FF19Solved", "true");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.UserID", "UN74542824917297202");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.browser.search.defaultthis.engineName", "true");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.fullUserID", "UN74542824917297202.IN.20131231165640");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.installDate", "31/12/2013 16:56:44");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.installSessionId", "{EE036486-03A7-48C8-B254-8ED08C8036A8}");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.installSp", "TRUE");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.installerVersion", "1.8.1.4");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.keyword", "true");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.originalHomepage", "hxxp://mysearch.avg.com/?cid={0B8B3828-9290-4EE0-9DB7-59634F9BE5AD}&mid=1fa5980a9e994de1835a9c4f321421dd-ebda301ccd4b4d6f6b6deccadea075ecc4a055c1&lang=en&ds=ag[...]
[ryx8sma7.default] - Line Found : user_pref("CT3306061.originalSearchAddressUrl", "");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.originalSearchEngine", "AVG Secure Search");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.originalSearchEngineName", "AVG Secure Search");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.searchRevert", "true");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.searchUninstallUserMode", "2");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.searchUserMode", "2");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.smartbar.homepage", "true");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.toolbarInstallDate", "31-12-2013 16:56:40");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.versionFromInstaller", "10.23.0.722");
[ryx8sma7.default] - Line Found : user_pref("CT3306061.xpeMode", "0");
[ryx8sma7.default] - Line Found : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
[ryx8sma7.default] - Line Found : user_pref("browser.search.defaultthis.engineName", "Connect DLC 5 Customized Web Search");
[ryx8sma7.default] - Line Found : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=3&q={searchTerms}");
[ryx8sma7.default] - Line Found : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=13&UP=SP79C182A0-BE9A-400D-A227-858A8BBB826B&SSPV=");
[ryx8sma7.default] - Line Found : user_pref("extensions.crossriderapp12759.adsOldValue", -1);
[ryx8sma7.default] - Line Found : user_pref("smartbar.addressBarOwnerCTID", "CT3306061");
[ryx8sma7.default] - Line Found : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=13");
[ryx8sma7.default] - Line Found : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&SearchSource=2&CUI=UN74542824917297202&UM=2&q=");
[ryx8sma7.default] - Line Found : user_pref("smartbar.defaultSearchOwnerCTID", "CT3306061");
[ryx8sma7.default] - Line Found : user_pref("smartbar.homePageOwnerCTID", "CT3306061");
[ryx8sma7.default] - Line Found : user_pref("smartbar.machineId", "XML9CXVYMUAXIONCNFKUOIBQFXHTJPBIE4HITPYSSMNJL5WBPZWV8VY3V5YSJB4RIEVZVXHQGPUY13XMSST5LG");
[ryx8sma7.default] - Line Found : user_pref("browser.newtab.url", "hxxp://search.conduit.com/?ctid=CT3320047&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SP79C182A0-BE9A-400D-A227-858A8BBB826B");

*************************

AdwCleaner[R0].txt - [9988 octets] - [13/12/2014 13:55:44]

########## EOF - \AdwCleaner\AdwCleaner[R0].txt - [10048 octets] ##########



#10 Guest_LighthouseParty_*

Guest_LighthouseParty_*

  • Guests
  • OFFLINE
  •  

Posted 13 December 2014 - 05:13 PM

Are you still experiencing the slowness and freezing?



#11 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:14 AM

Posted 13 December 2014 - 06:58 PM

Please first re- open AdwCleaner and now hit Clean as you only posted the Scan log.

 

 Press OK when asked to close all programs and follow the onscreen prompts.
 Press OK finally to allow AdwCleaner to Restart the computer and complete the removal process.
NOTE :  After Auto-rebooting, a log report (AdwCleaner[S0].txt) will open automatically.
**Copy and Paste the contents of that log in your next reply.**

 

To restore an item that has been deleted "by accident" : Open the program again,
Go to Tools (top left) > Quarantine Manager > check what you want restored > now click on Restore.

Note: With most Adware / Junkware / PUPs it is strongly recommended to deal with it like a legitimate program and uninstall from Programs and Features or Add/Remove Programs in the Control Panel. In many cases, using the uninstaller of the adware not only removes the adware more effectively, but it also restores any changed configuration. After uninstallation, then you can run specialized tools like AdwCleaner and JRT to fix any remaining entries they may find.

I would say that if you remove these found items, it will help you as they are generally Adware items to remove.

 

Thank You -


Edited by noknojon, 13 December 2014 - 07:08 PM.


#12 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:14 AM

Posted 13 December 2014 - 07:56 PM

RealPlayer Cloud is just for watching YouTube type Videos and could stay.
RealDownloader is the same, and can be re installed if you like

AuthenTec TrueAPI for TrueSuite is biometric software that protects the security of your data through the use of fingerprint authentication.

Fingerprint authentication is performed by scanning your finger on a fingerprint sensor.

If you play a few games and watch a few videos, you may wish to reinstall Java from Here to get the latest updates, otherwise you can generally leave it off for now.

Make sure you do not accept any Addons or Toolbars as they are not part of the download ............

 

Now if there are still problems, there are a few others showing in your logs.

 

Thanks -



#13 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  

Posted 13 December 2014 - 10:17 PM

I have not experienced any slowing or freezing today.



#14 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  
  • Local time:04:14 PM

Posted 13 December 2014 - 10:18 PM

I found the AdwCleaner[S0].txt file from earlier:

 

# AdwCleaner v4.105 - Report created 13/12/2014 at 14:13:43
# Updated 08/12/2014 by Xplode
# Database : 2014-12-13.4 [Live]
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Mike - JOANNE-HP
# Running from : C:\Users\Joanne\Desktop\adwcleaner_4.105.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : c2cautoupdatesvc
Service Deleted : c2cpnrsvc

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Conduit
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Lucky Savings
Folder Deleted : C:\Program Files (x86)\WinToFlash Suggestor
Folder Deleted : C:\Windows\SysWOW64\SearchProtect
Folder Deleted : C:\Users\Joanne\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Joanne M\AppData\Local\SearchProtect
Folder Deleted : C:\Users\Joanne M\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Mike\AppData\Local\Conduit
Folder Deleted : C:\Users\Mike\AppData\Local\Lucky Savings
Folder Deleted : C:\Users\Mike\AppData\Local\SearchProtect
Folder Deleted : C:\Users\Mike\AppData\LocalLow\Conduit
File Deleted : \END
File Deleted : C:\Users\Mike\AppData\Local\Temp\Uninstall.exe
File Deleted : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\Conduit.xml
File Deleted : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\conduit-search.xml
File Deleted : C:\Users\Joanne\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Users\Joanne M\AppData\Roaming\Mozilla\Firefox\Profiles\mgt7vekt.default\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\ryx8sma7.default\user.js

***** [ Scheduled Tasks ] *****

Task Deleted : BackgroundContainer Startup Task

***** [ Shortcuts ] *****

***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BackgroundContainer]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3748D0D9-0C19-45F7-A3CE-5C09B184B0A1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Lucky Savings
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\SearchProtect
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17496

-\\ Mozilla Firefox v34.0.5 (x86 en-US)

[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.FF19Solved", "true");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.UserID", "UN74542824917297202");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.browser.search.defaultthis.engineName", "true");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.fullUserID", "UN74542824917297202.IN.20131231165640");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.installDate", "31/12/2013 16:56:44");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.installSessionId", "{EE036486-03A7-48C8-B254-8ED08C8036A8}");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.installSp", "TRUE");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.installerVersion", "1.8.1.4");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.keyword", "true");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.originalHomepage", "hxxp://mysearch.avg.com/?cid={0B8B3828-9290-4EE0-9DB7-59634F9BE5AD}&mid=1fa5980a9e994de1835a9c4f321421dd-ebda301ccd4b4d6f6b6deccadea075ecc4a055c1&lang=en&ds=ag[...]
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.originalSearchAddressUrl", "");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.originalSearchEngine", "AVG Secure Search");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.originalSearchEngineName", "AVG Secure Search");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.searchRevert", "true");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.searchUninstallUserMode", "2");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.searchUserMode", "2");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.smartbar.homepage", "true");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.toolbarInstallDate", "31-12-2013 16:56:40");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.versionFromInstaller", "10.23.0.722");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("CT3306061.xpeMode", "0");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultthis.engineName", "Connect DLC 5 Customized Web Search");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=3&q={searchTerms}");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=13&UP=SP79C182A0-BE9A-400D-A227-858A8BBB826B&SSPV=");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("extensions.crossriderapp12759.adsOldValue", -1);
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3306061");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3306061&CUI=UN74542824917297202&UM=2&SearchSource=13");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3306061&SearchSource=2&CUI=UN74542824917297202&UM=2&q=");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT3306061");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.homePageOwnerCTID", "CT3306061");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("smartbar.machineId", "XML9CXVYMUAXIONCNFKUOIBQFXHTJPBIE4HITPYSSMNJL5WBPZWV8VY3V5YSJB4RIEVZVXHQGPUY13XMSST5LG");
[ryx8sma7.default\prefs.js] - Line Deleted : user_pref("browser.newtab.url", "hxxp://search.conduit.com/?ctid=CT3320047&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SP79C182A0-BE9A-400D-A227-858A8BBB826B");

*************************

AdwCleaner[R0].txt - [10187 octets] - [13/12/2014 13:55:44]
AdwCleaner[S0].txt - [9903 octets] - [13/12/2014 14:13:43]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [9963 octets] ##########



#15 Tigers85

Tigers85
  • Topic Starter

  • Members
  • 54 posts
  • OFFLINE
  •  
  • Local time:04:14 PM

Posted 13 December 2014 - 10:20 PM

Should I try to remove AuthenTec TrueAPI, I have no hardware for detecting fingerprints.  If so, do you know how to remove it?






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users