Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Ads popping up everywhere


  • This topic is locked This topic is locked
11 replies to this topic

#1 Slomo1020

Slomo1020

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 18 August 2015 - 09:22 PM

I'm not sure what happened but  all of a sudden I have ads everywhere literally covering my screen. I tried several junk removal I have Avast and I did a whole system check and even as I am writing this I can barely see the screen

Edited by Orange Blossom, 19 August 2015 - 12:50 AM.
Moved from XP to AII. ~ OB


BC AdBot (Login to Remove)

 


#2 Bezukhov

Bezukhov

    Bleepin' Jazz Fan!


  • Members
  • 2,723 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Providence, R.I.
  • Local time:10:59 PM

Posted 19 August 2015 - 01:21 AM

I'm not sure what happened but  all of a sudden I have ads everywhere literally covering my screen. I tried several junk removal I have Avast and I did a whole system check and even as I am writing this I can barely see the screen


That sounds most annoying. Let's see what your dealing with.

Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool.
    Vista/Windows 7/8 users right-click and select Run As Administrator
  • The tool will start to update the database, please wait a bit.
  • Click on I agree button.
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R#].txt) will open in Notepad for review (where the largest value of # represents the most recent report).
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.

To err is Human. To blame it on someone else is even more Human.

#3 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 19 August 2015 - 12:57 PM

# AdwCleaner v5.002 - Logfile created 19/08/2015 at 12:50:03
# Updated 18/08/2015 by Xplode
# Database : 2015-08-18.2 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : User - LAPTOP1
# Running from : C:\Documents and Settings\User\My Documents\Downloads\AdwCleaner.exe
# Option : Cleaning
 
***** [ Services ] *****
 
[x] Service Not Deleted : ppfd_vt_1_10_0_21
 
***** [ Folders ] *****
 
[-] Folder Deleted : C:\Documents and Settings\All Users\Application Data\FlashBeat
[-] Folder Deleted : C:\Documents and Settings\All Users\Application Data\d405410900005ca5
[-] Folder Deleted : C:\Documents and Settings\All Users\Application Data\f71e266600002ccd
[-] Folder Deleted : C:\Documents and Settings\All Users\Start Menu\Programs\Rapid Media Converter
[-] Folder Deleted : C:\Documents and Settings\All Users\Start Menu\Programs\ONESOFTPERDAY
[-] Folder Deleted : C:\Documents and Settings\User\Local Settings\Application Data\FileTypeAssistant
[-] Folder Deleted : C:\Documents and Settings\User\Local Settings\Application Data\avaavxvyex
[-] Folder Deleted : C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\plkplgmhfkkhokgkdkblfcnfeccpippe
[-] Folder Deleted : C:\Program Files\File Type Assistant
[-] Folder Deleted : C:\Program Files\predm
[-] Folder Deleted : C:\Program Files\GSafe
[-] Folder Deleted : C:\Program Files\GU Player
[-] Folder Deleted : C:\Program Files\RapidMediaConverter
[-] Folder Deleted : C:\WINDOWS\system32\First Verify
 
***** [ Files ] *****
 
[-] File Deleted : C:\END
[-] File Deleted : C:\Documents and Settings\User\Application Data\Bubble Dock.boostrap.log
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
[-] Task Deleted : ProgramRefresh-ATFST
[-] Task Deleted : ProgramUpdateCheck
[-] Task Deleted : RegSERVO
 
***** [ Registry ] *****
 
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
[-] Key Deleted : HKLM\SOFTWARE\79af4c1b-4539-6a8c-9131-a6a764caa4c4
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
[-] Key Deleted : HKU\.DEFAULT\Software\Compete
[-] Key Deleted : HKU\.DEFAULT\Software\Tutorials
[-] Key Deleted : HKU\.DEFAULT\Software\TutoTag
[-] Key Deleted : HKU\.DEFAULT\Software\DownloadAdmin
[-] Key Deleted : HKU\.DEFAULT\Software\RapidMediaConverterApp
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
[-] Key Deleted : HKCU\Software\Bitberry
[-] Key Deleted : HKCU\Software\DynConIE
[-] Key Deleted : HKCU\Software\FileTypeAssistant
[-] Key Deleted : HKCU\Software\Nosibay
[-] Key Deleted : HKCU\Software\Optimizer Pro
[-] Key Deleted : HKCU\Software\CoinisRS
[-] Key Deleted : HKCU\Software\GAMESDESKTOP
[-] Key Deleted : HKCU\Software\ClientConnect
[-] Key Deleted : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[-] Key Deleted : HKCU\Software\ryofward
[-] Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
[-] Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
[-] Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
[-] Key Deleted : HKLM\SOFTWARE\CompeteInc
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\SPPDCOM
[-] Key Deleted : HKLM\SOFTWARE\FlashBeat
[-] Key Deleted : HKLM\SOFTWARE\coupoon
[-] Key Deleted : HKLM\SOFTWARE\ONESOFTPERDAY
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Uninstall\RapidMediaConverter
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Trusted Software Assistant_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7AF56C9C-F827-41A9-9998-047116F688A4}_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchProtect
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Trusted Software Assistant_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7AF56C9C-F827-41A9-9998-047116F688A4}_is1
[-] Data Restored : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main [Start Page]
 
***** [ Web browsers ] *****
 
[-] [C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider_Data] Deleted : hxxps://www.google.de/search?q={searchTerms}","usage_count":0}},"extensions":{"settings":{"aaaaddliknddhjhjcofimffekgonpkom":{"active_permissions":{"api":["cookies","management","storage","tabs","webRequest","webRequestBlocking"],"explicit_host":["hxxp://*/*","hxxps://*/*"],"manifest_permissions":[],"scriptable_host":["hxxp://www.search.ask.com/?*gct=hp*
[-] [C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://search.conduit.com/?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPE747AB2B-CE85-4F1D-ACB1-C5D277CC7F7B&SSPV=
 
*************************
 
:: Proxy settings cleared
:: Winsock settings cleared
 
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [5490 bytes] ##########
 
The only thing is I forgot to run as administrator, should I run it again?? Thanks for your help


#4 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 19 August 2015 - 01:11 PM

It does seem though that the ads aren't popping up anymore. I think maybe I might know the problem. I already had Avast anti-virus and then I added the Avast secureline, I am not sure but it seems that's when it started. Let me know what you make out of that log file because it looks like another language to me. Thanks for your help!



#5 Bezukhov

Bezukhov

    Bleepin' Jazz Fan!


  • Members
  • 2,723 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Providence, R.I.
  • Local time:10:59 PM

Posted 19 August 2015 - 02:01 PM

I would run a couple of more tools.

Please download Malwarebytes Anti-Malware photo.jpg?sz=48 and save it to your desktop.
  • Double-click on the setup file (mbam-setup.exe), then click on Run to install.
  • Malwarebytes will automatically open to its Dashboard. If you have never run this version, you should see a red note at the top indicating "A scan has never been run on your system"

    malwarebytes-anti-malware-fix-now.jpg
    .
  • Click on Update Now to download the current database definitions, then click the Scan Now >> button.
    .
  • If you have run this version before, you should see a green note at the top indicating "Your system is fully protected".
  • You will be prompted to update Malwarebytes...click on the Update Now button.

    malwarebytes-anti-malware-2-0-update-now
    .
  • The THREAT SCAN will automatically begin.

    malwarebytes-anti-malware-scan.jpg
    .
  • When the scan has completed, the results will be displayed. Click on Quarantine All, then click on Apply Actions.

    malwarebytes-anti-malware-potential-thre
    .
  • To complete any actions taken you will be prompted to restart your computer...click on Yes. Failure to reboot normally will prevent Malwarebytes from removing all the malware.

    mbam4_zps490948cc.png
    .
  • After rebooting the computer, copy and paste the mbam.log in your next reply.
.
To retrieve the Malwarebytes Anti-Malware 2.0 scan log information (Method 1)
  • Open Malwarebytes Anti-Malware.
  • Click the History Tab at the top and select Application Logs.
  • Select (check) the box next to Scan Log. Choose the most current scan.
  • Click the View button.
  • Click Copy to Clipboard at the bottom...come back to this thread, click Add Reply, then right-click and choose Paste.
  • Alternatively, you can click Export and save the log as a .txt file on your Desktop or another location.
  • Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
To retrieve the Malwarebytes Anti-Malware 2.0 scan log information (Method 2)
  • Open Malwarebytes Anti-Malware.
  • Click the Scan Tab at the top.
  • Click the View detailed log link on the right.
  • Click Copy to Clipboard at the bottom...come back to this thread, click Add Reply, then right-click and choose Paste.
  • Alternatively, you can click Export and save the log as a .txt file on your Desktop or another location.
  • Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
Logs are named by the date of scan in the following format: mbam-log-yyyy-mm-dd and automatically saved to the following locations:
-- XP: C:\Documents and Settings\<Username>\Application Data\Malwarebytes\Malwarebytes Anti-Malware\Logs\mbam-log-yyyy-mm-dd
-- Vista, Windows 7/8: C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs\mbam-log-yyyy-mm-dd


===========================================

thisisujrt.gif Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
Post both logs, and let me know how things are running.
To err is Human. To blame it on someone else is even more Human.

#6 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 19 August 2015 - 03:46 PM

Here are the results to the Malwarebytes log

 

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 8/19/2015
Scan Time: 3:05:49 PM
Logfile: 
Administrator: Yes
 
Version: 2.01.6.1022
Malware Database: v2015.08.19.07
Rootkit Database: v2015.08.16.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
 
OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: User
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 318694
Time Elapsed: 23 min, 41 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 10
PUP.Optional.PhraseProfessor.A, HKLM\SOFTWARE\PhraseProfessor_1.10.0.21, Quarantined, [991a46c4c6c57fb71842238f5aaabb45], 
PUP.Optional.FlashBeat.A, HKLM\SOFTWARE\MICROSOFT\ESENT\PROCESS\FlashBeat, Quarantined, [575c14f6137874c2d8bdbb720003d32d], 
PUP.Optional.PhraseProfessor.A, HKLM\SOFTWARE\MICROSOFT\ESENT\PROCESS\PhraseProfessorAutoUpdateClient, Quarantined, [387bb951216aa69001562b87a65e8c74], 
PUP.Optional.ProPCCleaner.A, HKLM\SOFTWARE\MICROSOFT\ESENT\PROCESS\ProPCCleaner, Quarantined, [842f9d6d5a312b0b5f33e5c338cc7789], 
PUP.Optional.WinYahoo.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}, Quarantined, [5d567a90deadaa8c47cd190752b10000], 
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32LDR  , Quarantined, [4e650efc1c6f0b2b2d042b7fe32129d7], 
PUP.Optional.OneSoftPerDay.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ospd_us_1029_is1, Quarantined, [cde6fc0ee9a20d29dabef44c2cd74ab6], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{f93004be}, Quarantined, [0ba82dddbdce4cea3f33d3d56b99619f], 
PUP.Optional.Vitruvian.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PPFD_VT_1_10_0_21, Quarantined, [654efd0d513a43f3e113dfd0877d4db3], 
PUP.Optional.ProPCCleaner.A, HKU\S-1-5-21-1547161642-1637723038-839522115-1003\SOFTWARE\ProPCCleanerLanguage, Quarantined, [12a1a96147443df908469b0b30d4c53b], 
 
Registry Values: 12
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [654e8c7eb2d9dd59f13f5f4ba16332ce]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [baf928e239528ea843eda70352b2d828]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [a90a0ffbf794d36388a8763464a0936d]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [aa09f8121c6fb28461cf604a6f95e11f]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_removal_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [01b2b05aed9e181e8ba56446a361d729]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_reporter_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [ad069476c4c793a34ce4bbeff2120ef2]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr  |{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130712112337187500, Quarantined, [4e650efc1c6f0b2b2d042b7fe32129d7]
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_us_325, Quarantined, [d7dcf119b1da0531061e1124cb3809f7], 
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_us_331, Quarantined, [af042ddd3655ef47c361d461a45f4bb5], 
PUP.Optional.Vitruvian.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ppfd_vt_1_10_0_21|ImagePath, system32\drivers\ppfd_vt_1_10_0_21.sys, Quarantined, [654efd0d513a43f3e113dfd0877d4db3]
 
Registry Data: 2
PUM.Hijack.StartMenu, HKU\S-1-5-21-1547161642-1637723038-839522115-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED|Start_ShowHelp, 0, Good: (1), Bad: (0),Replaced,[4073c842602b8caaeff686cb9075817f]
PUM.Hijack.StartMenu, HKU\S-1-5-21-1547161642-1637723038-839522115-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED|Start_ShowSearch, 0, Good: (1), Bad: (0),Replaced,[e4cf8981305b0b2bb930fe53768fb947]
 
Folders: 48
PUP.Optional.MultiPlug.Gen, C:\Documents and Settings\User\Application Data\8066377F-1426736816-DB11-8083-B05D86077900, Quarantined, [a70c8189305bca6c05c1d3cee222c53b], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\locales, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\plugin, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.WombatService.A, C:\Documents and Settings\All Users\Application Data\Service1291, Quarantined, [367de42659324cea1817317fb84c14ec], 
PUP.Optional.SearchProtect.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect, Quarantined, [dad917f39af1cf675324fbfb49b950b0], 
PUP.Optional.SearchProtect.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect\SearchProtect, Quarantined, [dad917f39af1cf675324fbfb49b950b0], 
PUP.Optional.SearchProtect.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect\SearchProtect\rep, Quarantined, [dad917f39af1cf675324fbfb49b950b0], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\ospd_us_1029, Quarantined, [9221d53598f3270f83cb649cb84bb54b], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\ospd_us_1029\ospd_us_1029, Quarantined, [9221d53598f3270f83cb649cb84bb54b], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\ospd_us_1029\ospd_us_1029\1.10, Quarantined, [9221d53598f3270f83cb649cb84bb54b], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\User\Local Settings\Application Data\ospd_us_1029, Quarantined, [d3e062a83a5187af97b7966ac142a65a], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\User\Local Settings\Application Data\ospd_us_1029\ospd_us_1029, Quarantined, [d3e062a83a5187af97b7966ac142a65a], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\User\Local Settings\Application Data\ospd_us_1029\ospd_us_1029\1.10, Quarantined, [d3e062a83a5187af97b7966ac142a65a], 
PUP.Optional.OneSoftPerDay.A, C:\Program Files\ospd_us_1029, Quarantined, [674cdb2f4d3ecb6bafa0e719649f7a86], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331\gmsd_us_331, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331\gmsd_us_331\1.20, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.UpdateAdmin.A, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\UpdateAdmin, Quarantined, [466d81894744171fe4c48b83f60d4bb5], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3\config, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Application Data\RapidMediaConverter, Quarantined, [5c570703d9b2023463260f053bc8738d], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Start Menu\Programs\Rapid Media Converter, Quarantined, [ebc857b36526dc5ab5d6ac686e95bb45], 
PUP.Optional.ProPCCleaner.A, C:\Documents and Settings\User\Local Settings\Application Data\Pro_PC_Cleaner, Quarantined, [961dfc0e78132a0cd8e61ff5c3407e82], 
PUP.Optional.ProPCCleaner.A, C:\Documents and Settings\User\Local Settings\Application Data\Pro_PC_Cleaner\ProPCCleaner.exe_Url_eu3leohf2lkst0pmyizeddn2uwebg12q, Quarantined, [961dfc0e78132a0cd8e61ff5c3407e82], 
PUP.Optional.ProPCCleaner.A, C:\Documents and Settings\User\Local Settings\Application Data\Pro_PC_Cleaner\ProPCCleaner.exe_Url_eu3leohf2lkst0pmyizeddn2uwebg12q\2.5.5.0, Quarantined, [961dfc0e78132a0cd8e61ff5c3407e82], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\content_script, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\css, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\images, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\newtab, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\newtab\js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings\common, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings\partner, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\_locales, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\_locales\en, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\_metadata, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\icons, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\_metadata, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
 
Files: 102
PUP.Optional.Digital, C:\Documents and Settings\User\My Documents\Downloads\adobe_flash_player.cpl, Quarantined, [268d0307642753e331dbc4c627de7090], 
PUP.Optional.Coupoon.A, C:\Program Files\015\trz196.tmp, Quarantined, [b9fa48c21279ec4ac237800808fdda26], 
Trojan.Downloader, C:\Documents and Settings\User\Local Settings\Temp\nsi339.tmp, Quarantined, [fab952b8cebda3933b05b3cbab5712ee], 
PUP.Optional.Bundle, C:\Documents and Settings\User\Local Settings\Temp\nsi33A.tmp, Quarantined, [268dc545ed9efc3a9988949fcc392bd5], 
PUP.Optional.Compete, C:\Documents and Settings\User\Local Settings\Temp\ConsumerInputSetup.exe, Quarantined, [3b789c6e8ffc78be45383d4ce322936d], 
PUP.Optional.Installcore, C:\Documents and Settings\User\Local Settings\Temp\Setup_Installer__7123_il17939.exe, Quarantined, [af04e7234b4069cde49ff1998a7ba65a], 
PUP.Optional.Installcore, C:\Documents and Settings\User\Local Settings\Temp\Temporary Directory 1 for Setup Installer.zip\Setup_Installer__7123_il17939.exe, Quarantined, [793a11f9f4971e1884ff4d3d986df010], 
PUP.Optional.FlashBeat, C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\NSISHelper.dll, Quarantined, [318218f2c3c8072f999cedd6877a6e92], 
PUP.Optional.FlashBeat, C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\40AZ.zip, Quarantined, [13a0bc4e5a31bf77f0455f6454ad52ae], 
PUP.Optional.FlashBeat, C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\5DN.zip, Quarantined, [397ab9518308d066d263ffc4b849d42c], 
PUP.Optional.FlashBeat, C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\7GL.zip, Quarantined, [eec54ac0593241f51d18a91a0cf5b54b], 
PUP.Optional.Conduit.A, C:\Documents and Settings\User\Local Settings\Temp\ct3334333\ism.exe, Quarantined, [c7ec7f8be0abd264453b5e2029d8dc24], 
PUP.Optional.InstallCore, C:\WINDOWS\Temp\is947030362\61CE0746_stp\icc.dll, Quarantined, [ecc7a56598f3ef479c232666d230b64a], 
PUP.Optional.ValcanLabs.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\RapidMediaConverterBrowser.exe, Quarantined, [575c24e63952a2940e4fa7e2eb1aeb15], 
PUP.Optional.InstallCore.SID.C, C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\0123S567\chrome-setup[1].exe, Quarantined, [842f7a90503b8caa95c9c1c8fa0b8a76], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\4T6VKXAN\RapidMediaConverter[1].exe, Quarantined, [61520cfeacdf8fa7aa50cbd2e918b14f], 
PUP.Optional.MultiPlug.Gen, C:\Documents and Settings\User\Application Data\8066377F-1426736816-DB11-8083-B05D86077900\vnsl36B.tmp, Quarantined, [a70c8189305bca6c05c1d3cee222c53b], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\RapidMediaConverterApp.dat, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\ffmpegsumo.dll, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\icudt.dll, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\libcef.dll, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\locales\en-US.pak, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\RapidMediaConverter\plugin\npswf32.dll, Quarantined, [f5be1cee3952e84ecbfff7ae8f754bb5], 
PUP.Optional.Ask.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aaaaddliknddhjhjcofimffekgonpkom_0.localstorage, Quarantined, [a70c15f5e9a24aece2dee0ca1de78080], 
PUP.Optional.WombatService.A, C:\Documents and Settings\All Users\Application Data\Service1291\Service1291.dll, Quarantined, [367de42659324cea1817317fb84c14ec], 
PUP.Optional.SearchProtect.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\SearchProtect\SearchProtect\rep\UserRepository.dat, Quarantined, [dad917f39af1cf675324fbfb49b950b0], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\ospd_us_1029\ospd_us_1029\1.10\cnf.cyl, Quarantined, [9221d53598f3270f83cb649cb84bb54b], 
PUP.Optional.OneSoftPerDay.A, C:\Documents and Settings\User\Local Settings\Application Data\ospd_us_1029\ospd_us_1029\1.10\cnf.cyl, Quarantined, [d3e062a83a5187af97b7966ac142a65a], 
PUP.Optional.OneSoftPerDay.A, C:\Program Files\ospd_us_1029\unins000.dat, Quarantined, [674cdb2f4d3ecb6bafa0e719649f7a86], 
PUP.Optional.OneSoftPerDay.A, C:\Program Files\ospd_us_1029\unins000.exe, Quarantined, [674cdb2f4d3ecb6bafa0e719649f7a86], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331\upgmsd_us_331.cyl, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331\upospd_us_1029.cyl, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GamesDesktop.A, C:\Documents and Settings\LocalService\Local Settings\Application Data\gmsd_us_331\gmsd_us_331\1.20\cnf.cyl, Quarantined, [f8bbc743dcafee48dd089077ad56669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-www.gsafejs.me-970ad62d3c67b36ca3369d2c804a09cc879cc37c#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-clients4.google.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-clients4.google.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-safebrowsing.google.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-safebrowsing.google.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-ssl.gstatic.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-ssl.gstatic.com-095a235ac2e3b54d2a6bd6691c87b0ea4b11a5ef#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-translate.googleapis.com-91aa4e4cb555911140cf8f7ced0879830597d922#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-translate.googleapis.com-91aa4e4cb555911140cf8f7ced0879830597d922#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-wsup175.itibiti.com-3a43fd1eab1e0d1cf5c301c5677df5c5f43a2445#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-wsup175.itibiti.com-3a43fd1eab1e0d1cf5c301c5677df5c5f43a2445#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-www.google.com-6970f0c0c2c9d3b9c964c358e6f47418d7ca6f09#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-www.google.com-6970f0c0c2c9d3b9c964c358e6f47418d7ca6f09#child.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL-www.gsafejs.me-970ad62d3c67b36ca3369d2c804a09cc879cc37c#child.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\GSafe Intermediate SSL.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\test.cer, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.GSafe.A, C:\WINDOWS\Temp\GSafe\SSL\test.pvk, Quarantined, [efc445c5fa91142220c8c146a162669a], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3\systeinfo.vpx, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3\vxmclient.exe, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3\winvxm.exe, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.VXMClient.A, C:\Program Files\Windows Network Accelerater\v3\config\systeinfo.vpx, Quarantined, [e6cd1beff09bfa3c727547c9917246ba], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Application Data\RapidMediaConverter\ffmpeg.dll, Quarantined, [5c570703d9b2023463260f053bc8738d], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Application Data\RapidMediaConverter\rapidmc.smc, Quarantined, [5c570703d9b2023463260f053bc8738d], 
PUP.Optional.RapidMediaConverter.A, C:\Documents and Settings\LocalService\Start Menu\Programs\Rapid Media Converter\Uninstall RapidMediaConverter.lnk, Quarantined, [ebc857b36526dc5ab5d6ac686e95bb45], 
PUP.Optional.ProPCCleaner.A, C:\Documents and Settings\User\Local Settings\Application Data\Pro_PC_Cleaner\ProPCCleaner.exe_Url_eu3leohf2lkst0pmyizeddn2uwebg12q\2.5.5.0\user.config, Quarantined, [961dfc0e78132a0cd8e61ff5c3407e82], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\manifest.json, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common\aes.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common\config.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common\mode-ecb.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common\utils.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\common\winner.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\content_script\overlayer.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\css\ilnt.css, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\images\icon.png, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\images\sprite.png, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\newtab\newtab.html, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\newtab\js\newtab-hp.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\newtab\js\topbar.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings\common\redirect.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings\partner\background.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\settings\partner\Reporting.js, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\_locales\en\messages.json, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusicBox.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aaaaddliknddhjhjcofimffekgonpkom\7.6_0\_metadata\verified_contents.json, Quarantined, [1e955ab0eba0a19563e366260ff67b85], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\manifest.json, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\background.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\domains.json, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\base.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\content-newtab.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\jquery-1.9.1.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\baseParameters.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\espeedcheck_parameters.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\espeedcheck_parameters_ds.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\espeedcheck_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\gozooms_parameters_ds.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\gozooms_parameters_main.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\gozooms_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\musixlib_parameters_ds.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\musixlib_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\pdfconverter_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\softorama_parameters_ds.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\wiki_parameters.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\zipconverter_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\zooms_musixlib_parameters_ds.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\extensions_base\basejs\products\zooms_musixlib_parameters_nt.js, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\icons\16x16.png, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\icons\logo.png, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\_metadata\computed_hashes.json, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
PUP.Optional.MusixLib.A, C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\balimbofoedmklhpnchbgmlfipgpbjnl\1.1.2_0\_metadata\verified_contents.json, Quarantined, [8e2528e2ff8c96a02778eba2ce379070], 
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)


#7 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 19 August 2015 - 03:58 PM

Here are the results to the Junk Removal:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.5.7 (08.18.2015:1)
OS: Microsoft Windows XP x86
Ran by User on Wed 08/19/2015 at 15:51:17.92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
Successfully deleted: [Service] gfilterdrv [Reboot required]
 
 
 
~~~ Tasks
 
Successfully deleted: [Task] C:\WINDOWS\Tasks\FreeFileViewerUpdateChecker.job
Successfully deleted: [Task] C:\WINDOWS\Tasks\PCGJIHRYXDDSKUQN.job
 
 
 
~~~ Registry Values
 
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\Documents and Settings\User\Local Settings\Application Data\google\chrome\user data\default\local storage\chrome-extension_balimbofoedmklhpnchbgmlfipgpbjnl_0.localstorage
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] C:\Documents and Settings\User\Application Data\freefileviewer
Successfully deleted: [Folder] C:\Documents and Settings\User\Local Settings\Application Data\freefileviewer
Successfully deleted: [Folder] C:\Program Files\015
Successfully deleted: [Folder] C:\Program Files\10
Successfully deleted: [Folder] C:\Program Files\freefileviewer
 
 
 
~~~ Chrome
 
 
[C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences] - default search provider reset
 
[C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
balimbofoedmklhpnchbgmlfipgpbjnl
 
[C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
 
[C:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[
  balimbofoedmklhpnchbgmlfipgpbjnl,
  gjkpcnacdgdlpfejlgflolpaigoicibh
]
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 08/19/2015 at 15:56:07.14
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


#8 Bezukhov

Bezukhov

    Bleepin' Jazz Fan!


  • Members
  • 2,723 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Providence, R.I.
  • Local time:10:59 PM

Posted 20 August 2015 - 03:10 PM

So the ads are gone, but something's not right? Is your computer now running more slowly? Did these fixes reset your homepage, default browser or search engine? That happens sometimes. I hope you can put up with one more scan, and if I can't set things right I'll refer you some who might. I'm still a student here, and I'm not quite ready to use some of the more powerful weapons in our arsenal.

ESET Online Scanner
  • Click here to download the installer for ESET Online Scanner and save it to your Desktop.
  • Disable all your antivirus and antimalware software - see how to do that here.
  • Right click on esetsmartinstaller_enu.exe and select Run as Administrator.
  • Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.
  • Select Enable detection of potentially unwanted applications.
  • Click Advanced Settings, then place a checkmark in the following:
    • Remove found threats
    • Scan archives
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • Click Start to begin scanning.
  • ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.
  • When the scan is done, click List threats (only available if ESET Online Scanner found something).
  • Click Export, then save the file to your desktop.
  • Click Back, then Finish to exit ESET Online Scanner.

To err is Human. To blame it on someone else is even more Human.

#9 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 20 August 2015 - 07:16 PM

Here are the results from the Eset Scan, let me know if there is anything else I should do and I am very grateful for your help!!

 

C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Application Data\FlashBeat\FlashBeat.exe.vir a variant of Win32/Adware.CouponMarvel.N application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Documents and Settings\All Users\Application Data\FlashBeat\FlashBeat32.dll.vir a variant of Win32/Adware.CouponMarvel.N application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\File Type Assistant\ftacfg.exe.vir Win32/FileTypeAssistant.A potentially unwanted application cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\File Type Assistant\TSASetup.exe.vir a variant of Win32/FileTypeAssistant.A potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\File Type Assistant\tsassist.exe.vir a variant of Win32/FileTypeAssistant.A potentially unwanted application cleaned by deleting - quarantined
C:\Documents and Settings\User\Local Settings\Temp\115a7f67c63c4afb99c6773a3b744fc6704951.exe MSIL/MyPCBackup.G potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\39RM.zip a variant of Win32/Adware.CouponMarvel.N application deleted - quarantined
C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\41PR.zip a variant of Win32/Wombat.A potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\Local Settings\Temp\nss15D.tmp\temp\42VT.zip a variant of Win32/Wombat.B potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\Local Settings\Temp\pdH6pzNcZCeq84ziBB3\1\ffvsetup.exe a variant of Win32/FileTypeAssistant.A potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\My Documents\Downloads\adobe_flash_player.jse JS/InstallCore.A potentially unwanted application cleaned by deleting - quarantined
C:\Documents and Settings\User\My Documents\Downloads\ccsetup508pro (1).exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
C:\Documents and Settings\User\My Documents\Downloads\ccsetup508pro.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
C:\Documents and Settings\User\My Documents\Downloads\Installer (Right Click & select extract) (1).zip a variant of Win32/Amonetize.GZ.gen potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\My Documents\Downloads\Installer (Right Click & select extract).zip a variant of Win32/Amonetize.GZ.gen potentially unwanted application deleted - quarantined
C:\Documents and Settings\User\My Documents\Downloads\MicrosoftSilverlightSetup-26084991.jse JS/InstallCore.A potentially unwanted application cleaned by deleting - quarantined
C:\Documents and Settings\User\My Documents\Downloads\SetupNew.exe NSIS/TrojanDownloader.Adload.AS trojan cleaned by deleting - quarantined
C:\Program Files\Windows Audio\R1\WmiPrvSD.exe a variant of Win32/Adware.Dowsserve.B application cleaned by deleting - quarantined
C:\WINDOWS\Temp\_avast_\unp128373061.tmp a variant of Win32/Adware.ConvertAd.WZ.gen application cleaned by deleting - quarantined


#10 Bezukhov

Bezukhov

    Bleepin' Jazz Fan!


  • Members
  • 2,723 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Providence, R.I.
  • Local time:10:59 PM

Posted 21 August 2015 - 12:59 AM

I'm going to make a tactical retreat. You may need more help than I can give you right now. Follow the instructions below,
 
Do not post that log in this topic.
 
Instead make a new topic, and post that log here:
Virus, Trojan, Spyware, and Malware Removal Logs

Also put this topic as a link, so whoever helps you there can see what we did here.

Please download Farbar Recovery Scan Tool and save it to your Desktop.
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).
  • When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • When finished, it will produce a log called FRST.txt in the same directory the tool was run from.
  • Please copy and paste the log in your next reply.
Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.
To err is Human. To blame it on someone else is even more Human.

#11 Slomo1020

Slomo1020
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Milwaukee, Wisconsin
  • Local time:08:59 PM

Posted 21 August 2015 - 01:55 AM

Okay Thank you so much, I think I will have to send them as attachments as I did not realize how long they were!! Thank you so much for all that you helped me with, I appreciate you going out of your way to help me. Sincerely, Slomo1020



#12 hamluis

hamluis

    Moderator


  • Moderator
  • 56,302 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:09:59 PM

Posted 21 August 2015 - 07:31 AM

OP reposted in Malware Removal Logs forum.

 

This topic is closed to avoid confusion.

 

Louis






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users