Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Stuck in Safe Mode


  • Please log in to reply
12 replies to this topic

#1 ELevy

ELevy

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 12 May 2016 - 10:19 PM

I was trying to clean a friends system by running super anti-spyware and malware bytes in safemode.

 

I used msconfig to cause it to boot into safe mode,

 

Bioth apps said they cleaned the system but now when I try to run msconfig to set it back to normal mode it says I am not an administrator. 

 

I already tried opening a command prompt as administrator and msconfig still won't run.

 

Help would be appreciated,


Edited by hamluis, 13 May 2016 - 10:41 AM.
Moved from Win 7 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 ScathEnfys

ScathEnfys

    Bleeping Butterfly


  • Members
  • 1,375 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Deep in the Surface Web
  • Local time:10:55 AM

Posted 12 May 2016 - 10:41 PM

Can you provide a screenshot of the error box?
Proud system builder, modder, and watercooler.

GitHub | SoundCloud | Keybase

#3 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,265 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:07:55 AM

Posted 13 May 2016 - 01:04 PM

Are you using an administrator account to do this?

 

Go to the Search box and type in msconfig.

 

When it appears above the search box right click on it and select Run as administrator.

 

Let us know if this works.

 

Please post the Malwarebytes log.

 

To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  Copy and paste the log in your topic.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#4 ELevy

ELevy
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 13 May 2016 - 11:07 PM

 

Are you using an administrator account to do this?

 

Go to the Search box and type in msconfig.

 

When it appears above the search box right click on it and select Run as administrator.

 

Let us know if this works.

 

Please post the Malwarebytes log.

 

To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  Copy and paste the log in your topic.

 

I made a video of the boot process, opening a command prompt as admin and trying to launch msconfig. Link is below

 

Here is a copy of the log

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 5/13/2016
Scan Time: 11:54 PM
Logfile: mbytes scan 1.txt
Administrator: No
 
Version: 2.2.1.1043
Malware Database: v2016.05.12.01
Rootkit Database: v2016.05.06.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Eddie
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 241031
Time Elapsed: 1 min, 40 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 28
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKpt, , [4fb281547f1ac472e2437020b74ad729], 
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCProtectService, , [13eef6dfc3d6ed494e2a315939c8f010], 
PUP.Optional.DNSio, HKLM\SOFTWARE\CLASSES\CLSID\{FD20C151-A061-4097-955D-682F317A7035}, , [14edf4e1cecb52e46af894b315ed9c64], 
Adware.Kajajugt, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{7D8DAE88-BC05-4578-8C29-E541FFBA5757}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\TYPELIB\{14EF423E-3EE8-44AE-9337-07AC3F27B744}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\INTERFACE\{A9582D7B-F24A-441D-9D26-450D58F3CD17}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\INTERFACE\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A9582D7B-F24A-441D-9D26-450D58F3CD17}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{A9582D7B-F24A-441D-9D26-450D58F3CD17}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{14EF423E-3EE8-44AE-9337-07AC3F27B744}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{14EF423E-3EE8-44AE-9337-07AC3F27B744}, , [42bfd40174250b2b8a7182ec9d6528d8], 
Adware.Kajajugt, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{7D8DAE88-BC05-4578-8C29-E541FFBA5757}, , [42bfd40174250b2b8a7182ec9d6528d8], 
PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, , [60a13f968712e452ea6d82e9679b10f0], 
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASAPI32, , [877a4e87d5c48aac746f616f887b1be5], 
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASMANCS, , [fd04c70ef5a474c224bf18b801023cc4], 
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32LDR  , , [bf42d401f2a7c86e3db7b5d848bb1de3], 
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}, , [32cf5f760a8f40f64792aa0851b2ec14], 
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{cf2797aa-b7ec-e311-8ed9-005056c00008}, , [2bd6468f5643aa8c6674169cb94a0000], 
PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CompeteInc, , [51b08a4b2f6a8caab7a4f96f47bc4db3], 
PUP.Optional.MySearch123, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}, , [de23b81de3b6bb7bf2c2753a877cdd23], 
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC, , [956ca0351881ea4ca5a83f87c340e917], 
PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\ORBTR, , [26dbcf06831658deee50b4bd0af92ed2], 
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT, , [7988e1f4821739fd4b950da5e71cc33d], 
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM, , [1be6cf069bfe1d195a876b4716ed9f61], 
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, , [1be63b9ad4c53bfbab8519750ff49e62], 
PUP.Optional.SearchProtect.AppFlsh, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SPPD, , [c33e5a7b6930e254855ecee48d767d83], 
 
Registry Values: 20
Trojan.Dropper.IR, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|chromebrowser, "C:\Windows\chromebrowser.exe", , [0001419464354fe7e581289d2ad77789]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [e31e894c3a5f44f2b83b593413f0f50b]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [6f92eee739600333fdf6fc9151b2a55b]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [2cd5b520a4f510267c77612ca85ba45c]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [6f929f363d5cdb5bf8fbe9a457ac946c]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_removal_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [8d7413c26633b482965dc2cb24df9967]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_reporter_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [877ac312b1e862d445ae56377d866a96]
PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr  |{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 131074876586507309, , [bf42d401f2a7c86e3db7b5d848bb1de3]
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|IDSCPRODUCT, "C:\Program Files\SpaceSoundPro\idscservice.exe", , [0001399c059447efc5578e40e02356aa]
PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}|AppPath, C:\Program Files (x86)\Consumer Input\InternetExplorer, , [46bbd6ff71288bab0a78662e3bc857a9]
PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SVCHOST|ORBTR, Orbiter^^, , [768bdff61c7dfa3c612be6c1f9096c94]
Adware.EoRezo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|sun21, , [39c80acb8019c670fffc7a4d5ca7cd33], 
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|Location, C:\Program Files (x86)\MPC Cleaner, , [956ca0351881ea4ca5a83f87c340e917]
PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\ORBTR|ctid, CT3325157, , [26dbcf06831658deee50b4bd0af92ed2]
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT|InstallDir, C:\PROGRA~2\SearchProtect, , [7988e1f4821739fd4b950da5e71cc33d]
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM|TS, 2, , [1be6cf069bfe1d195a876b4716ed9f61]
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, C7101F38-1522-435C-ABA9-010C543BDEE2, , [1be63b9ad4c53bfbab8519750ff49e62]
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKPT|Description, MPC Driver, , [f0116471821787af88c632942cd7ff01]
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCPROTECTSERVICE|ImagePath, "C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe", , [33ce686de4b5d95d33f9883f1be8d030]
PUP.Optional.SearchProtect.AppFlsh, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SPPD|ImagePath, \??\C:\Windows\system32\drivers\SPPD.sys, , [c33e5a7b6930e254855ecee48d767d83]
 
Registry Data: 2
Trojan.DNSChanger, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{846ee342-7039-11de-9d20-806e6f6e6963}|NameServer, 104.197.191.4, Good: (), Bad: (104.197.191.4),,[1be628adefaae74fefabdc67976db14f]
Trojan.DNSChanger, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{AC05DE15-512B-48C4-8002-DB30E6FCFF88}|NameServer, 104.197.191.4, Good: (), Bad: (104.197.191.4),,[976a3e9783165adc5941ef5419ebc040]
 
Folders: 49
PUP.Optional.Orbtr, C:\Program Files (x86)\ORBTR, , [45bce7ee6534181efac4530b46bd7e82], 
PUP.Optional.VBates, c:\users\compel\appdata\locallow\company\product\1.0, , [a85963728019fc3a56b37722d231f60a], 
PUP.Optional.VBates, c:\users\compel\appdata\locallow\company\product, , [a85963728019fc3a56b37722d231f60a], 
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC, , [46bb62731b7e3bfbf99dbc02bf440af6], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.QuickCleaner, C:\Users\Compel\AppData\Roaming\QuickCleaner, , [ab564491e5b4a6901fc66e626e953dc3], 
PUP.Optional.VBates, c:\users\compel\appdata\locallow\{d2020d47-707d-4e26-b4d9-739c4f4c2e9a}, , [be434293bcddd6605734019855ad34cc], 
PUP.Optional.SearchProtect.AppFlsh, c:\users\compel\appdata\local\searchprotect, , [0bf6c90c3465e6508cf384171de50df3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Eddie\AppData\Local\SearchProtect, , [a45d4095990095a1e798504b1ee47789], 
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Eddie\AppData\Local\SearchProtect\UI, , [a45d4095990095a1e798504b1ee47789], 
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Eddie\AppData\Local\SearchProtect\UI\rep, , [a45d4095990095a1e798504b1ee47789], 
PUP.Optional.SearchProtect.AppFlsh, c:\windows\syswow64\config\systemprofile\appdata\local\searchprotect, , [0001e3f2198054e2eb97a7f4778bb14f], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\SearchProtect, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\SearchProtect\bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\SearchProtect\rep, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Consent, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\rep, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\f7f3e9cb-0d83-1, , [5fa227ae02971c1a5d66ced0f210de22], 
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\f7f3e9cb-31a7-0, , [1de40fc6d2c7b581289bb7e7b2503cc4], 
PUP.Optional.SpringFiles, C:\Program Files (x86)\SrpnFiles, , [d031389df0a964d2273e029dee14de22], 
PUP.Optional.SpringFiles, C:\ProgramData\Microsoft\Windows\Start Menu\SrpnFiles, , [5fa2f7def2a72f074324d2cdcd35bf41], 
 
Files: 258
Trojan.Dropper.IR, C:\Windows\chromebrowser.exe, , [0001419464354fe7e581289d2ad77789], 
PUP.Optional.MorePowerfulCleaner, C:\Windows\System32\drivers\MPCKpt.sys, , [4fb281547f1ac472e2437020b74ad729], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, , [13eef6dfc3d6ed494e2a315939c8f010], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, , [a160f5e0ecad6cca5028d4b6a85920e0], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, , [61a0cd08cecbc670c3b57d0d639eeb15], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, , [3cc5f1e4396093a3adcb0486ee13d12f], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, , [de23389dbcddc47216620d7d6998827e], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [15ecc60fddbc3204fc7c860460a17e82], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MainFrame.dll, , [b24f33a22376e94d72063c4e26db3cc4], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, , [79886e67772251e5b3c5ec9e7091f50b], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPC.exe, , [4fb244918613d75fbabe345614ed956b], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCAutoClean.exe, , [34cd686d7e1b241265131971a8591ee2], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCNews.exe, , [71901cb9f5a4e353f28602885aa7d62a], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [e31ed500e0b9072f7dfbe1a92cd59070], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll64.dll, , [a85920b5c9d0cc6a3f39dcaecd346a96], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSecurity.exe, , [0bf6a3326e2bdc5ab4c416749f62b24e], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSetting.exe, , [3bc6f0e53267e5511860c6c4d928c739], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, , [7889e0f5eaafd95dda9eb4d62dd43cc4], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, , [24dd399c544582b46b0d1971c63bb64a], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [f0114491f3a6e2541a5e8efc778ab14f], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [a55ca72eb9e07eb85721c9c1b64b1be5], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi64.dll, , [9f62884d0198092dcdab7e0cf60bb34d], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, , [936ea134a2f7b97d0b6d67231fe2d22e], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SetupFrame.dll, , [e51c81546b2e2412a7d188025da43ec2], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, , [f50cb52044552a0cdc9c8bfff908ae52], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Uninstall.exe, , [728f28ade1b8cf67591f0a806b96b947], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstallFrame.dll, , [659c71646a2f0f27b6c2ec9e3fc228d8], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstDelete.exe, , [f80995405148e551a3d535559f625ca4], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, , [35cc7b5ac0d958de5127800a1de412ee], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UpdateHost.exe, , [13ee518419803bfb00786d1da25fb749], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Upgrade.dll, , [23de498c90096ec858202466728f42be], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, , [d9285b7a128748ee7cfc107a778a7090], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, , [27da6174821783b3aecac9c111f04cb4], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, , [60a1cc090c8d31054d2bbbcf25dc46ba], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [ea17f5e0c9d0ab8bd5a34248b54cfc04], 
PUP.Optional.Orbtr, C:\Program Files (x86)\ORBTR\Orbt.ext, , [45bce7ee6534181efac4530b46bd7e82], 
PUP.Optional.VBates, c:\users\compel\appdata\locallow\company\product\1.0\localstorageie.txt, , [a85963728019fc3a56b37722d231f60a], 
PUP.Optional.SearchProtect.AppFlsh, C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, , [ad54dbfaaeeb1323b61405adf40fac54], 
PUP.Optional.SearchProtect.AppFlsh, C:\Windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb, , [f8095d7841582a0c319a644e24dfcb35], 
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC\MPC Cleaner.lnk, , [46bb62731b7e3bfbf99dbc02bf440af6], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.yes, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdcManager.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CeBase.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CrashReport.exe, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\dbgkpt.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\isafechlp.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT.manifest, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCBS.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcm90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp110.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr110.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\nmlct, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\snh.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\wfhxte.dat, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\xadb.exe, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\Clean.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\PlugIn.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\as.db, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\cf.db, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\run.db, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\st.db, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCBase_32.sys, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.inf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.sys, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_32.sys, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_64.sys, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_xp_32.sys, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe\ADC_qd00000.exe, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_gray.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g1.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g10.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g11.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g12.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g2.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g3.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g4.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g5.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g6.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g7.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g8.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g9.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q1.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q10.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q11.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q12.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q2.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q3.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q4.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q5.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q6.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q7.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q8.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q9.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r1.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r10.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r11.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r12.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r2.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r3.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r4.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r5.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r6.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r7.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r8.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r9.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_gray.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y1.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y10.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y11.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y12.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y2.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y3.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y4.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y5.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y6.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y7.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y8.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y9.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{ADC520A9-B4B3-791E-B149-845C11673CB0}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{CDA529A9-B1B3-793E-B449-845C11673CB5}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{EDA029A1-B5BA-793E-B649-875C18673CC5}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{FDA029A2-A5BA-797E-B689-875E18673FC2}.ico, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\toasts_waring.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcapp.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcweb.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\block.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\home.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\ie.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\search.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_green.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_org.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_red.png, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Lang.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Skin.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Lang.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Skin.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Lang.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Skin.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Lang.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Skin.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Lang.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Skin.xf, , [e71a2ca960390c2abc2aa31b7192d828], 
PUP.Optional.QuickCleaner, c:\users\compel\appdata\roaming\quickcleaner\quickcleaner.exe, , [ab564491e5b4a6901fc66e626e953dc3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\EULA.txt, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\bin\sptool.dll_1463014053740, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.pun, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep\cfi.bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep\edk.bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep\pni.bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep\SystemRepository.dat, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\Main\rep\trn.bin, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32.dll, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64.dll, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\style.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Consent\consent.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Consent\consent.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Consent\consent.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Consent\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-default.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-onclick.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-Rollover.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-dia.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-uninstall.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-with-logo.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgNotif.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettings.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettingsDS.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgUninstall.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnBlue.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnClose.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnSilver.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\button-bg.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_checked.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_def.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-def.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-over-click.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\gray-bg.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def-grey.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-selected.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\icon-win.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\info-icon.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-rollover.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-selected.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-def.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-selected.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button2.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Settings-icon.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\SP_DialogBG.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\text-field.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\v.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\x.png, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\DialogAPI.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\dialogUtils.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\json2.min.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\main.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\defaults.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.css, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.html, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.js, , [966be9eceeabfd39d2d47e20b84a5da3], 
PUP.Optional.SpringFiles, C:\Program Files (x86)\SrpnFiles\htmlayout.dll, , [d031389df0a964d2273e029dee14de22], 
PUP.Optional.SpringFiles, C:\Program Files (x86)\SrpnFiles\SrpnFiles.exe, , [d031389df0a964d2273e029dee14de22], 
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)

Edited by ELevy, 13 May 2016 - 11:09 PM.


#5 hedgeley

hedgeley

  • Members
  • 306 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bristol/Bath UK
  • Local time:03:55 PM

Posted 14 May 2016 - 02:11 AM

Hi ELevy, and welcome,

 

Could you follow dc3's instructions and not use the command prompt (it apears that is not elevating you)  

 

 

 

Go to the Search box and type in msconfig.

 

When it appears above the search box right click on it and select Run as administrator.

 

Let us know if this works.

 

 

 

 

Hopefully this will give you the system configuration window

 

Let us know if this works

 

I will let somebody more knowledgeable advise on your MBAM log

 

Hedge 


Edited by hedgeley, 14 May 2016 - 02:14 AM.


#6 ELevy

ELevy
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 14 May 2016 - 07:09 AM

Hi ELevy, and welcome,

 

Could you follow dc3's instructions and not use the command prompt (it apears that is not elevating you)  

 

 

 

Go to the Search box and type in msconfig.

 

When it appears above the search box right click on it and select Run as administrator.

 

Let us know if this works.

 

 

 

 

Hopefully this will give you the system configuration window

 

Let us know if this works

 

I will let somebody more knowledgeable advise on your MBAM log

 

Hedge 

Same result



#7 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,265 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:07:55 AM

Posted 14 May 2016 - 07:38 AM

You do not need to post my previous posts.

 

I can't read the error message in your video.  You would be better off posting either a screen shot of the error or create an image using the snipping tool.

 

You have two Trojans in the Malwarebytes log.  Malwarebytes didn't recognize these as malicious.

 

Are you in Safe Mode with Networking?  


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#8 ELevy

ELevy
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 15 May 2016 - 09:59 AM

The exact error message is

 

You do not have sufficient privileges to run System Configuration.

Please run this utility as a user in the Administrators group.

 

 

And no, networking is not enabled.



#9 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,265 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:07:55 AM

Posted 15 May 2016 - 10:46 AM

Are you using an administrator account?

 

Do you have more than one?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#10 ELevy

ELevy
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 15 May 2016 - 08:27 PM

I am not given a choice of accounts when the system boots. I do have two accounts on the system one with administrative rights and one as a standard user.



#11 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,265 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:07:55 AM

Posted 16 May 2016 - 09:22 AM

If you open the Start Menu and go to Shut Down and place the mouse pointer over the arrow to the right you will have other options.  One of these is to Switch user.

 

Switch users and see if you can open System Configuration (msconfig) as an administrator. 


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#12 ELevy

ELevy
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:03:55 PM

Posted 16 May 2016 - 06:01 PM

Ok I just tried that and worked! i was able to stop it from booting into safe mode!

 

Thank you for the help there. Now to work on the malware issue!

 

Should I post a new thread?



#13 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,265 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:07:55 AM

Posted 17 May 2016 - 08:22 AM

This topic has already been moved to the Am I Infected forum which is the proper place for the tools we will use.
 
Emsisoft Emergency Kit
 
Please download Emsisoft Emergency Kit and save it to your desktop. Double click on the EmsisoftEmergencyKit file you downloaded to extract its contents and create a shortcut on the desktop. Leave all settings as they are and click the Extract button at the bottom. A folder named EEK will be created in the root of the drive (usually c:\).

  •  
  • After extraction please double-click on the new Start Emsisoft Emergency Kit icon on your desktop.
  • The first time you launch it, Emsisoft Emergency Kit will recommend that you allow it to download updates. Please click Yes so that it downloads the latest database updates.
  • When update is complete, click Malware Scan. When asked if you want the scanner to scan for Potentially Unwanted Programs, click Yes. Emsisoft Emergency Kit will start scanning.
  • When the scan is completed click Quarantine selected objects. Note:  This option is only available if malicious objects were detected during the scan.  If this is the case select Delete selected.
  • When the threats have been quarantined, click the View report button in the lower-right corner, and the scan log will be opened in Notepad.
  • Please save the log in Notepad on your desktop and post the contents in your next reply.
  • When you close Emsisoft Emergency Kit, it will give you an option to sign up for a newsletter. This is optional, and is not necessary for the malware removal process.

================

 
Please run TDSSKiller.
 
Please download TDSSKiller from here and save it to your Desktop.
 
The log for the TDSSKiller can be very long.  If you go to the bottom of the log to where you find Scan finished you will see the results of the scan.  If it shows Detected object count: 0 and Actual detected object count: 0, this means that nothing malicious was found and you will not need to post the log.
 
1.  Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
 
tdss1_zps90132559.png
 
2.  Check Loaded Modules, Verify Driver Digital Signature, and Detect TDLFS file system.
 
If you are asked to reboot because an "Extended Monitoring Driver is required" please click Reboot now.
 
tdsskillermultiple_zps472c18eb.png
 
3.  Click Start Scan and allow the scan process to run.
 
tdss4_zps6792a13c.png
 
4.  If threats are detected select Cure (if available) for all of them unless otherwise instructed.
 
***Do NOT select Delete!
 
Click on Continue.
 
tdss5_zps98fc5887.png
 
5.  Click on Reboot computer.
 
Please copy the TDSSKiller.[Version]_[Date]_[Time]_log.txt file found in your root directory (typically c:\) and paste it into your next reply.
 
Note:  The log may be very long.  You may need to break it into parts to post the whole log.
 
Post this in your topic.
 
================

Please run AdwCleaner
 
Please download AdwCleaner and install it.
 
When AdwCleaner opens you will see an image like the one below.
 
adwcleaner11_zps48314883.png
 
Click on Scan to start the scan.
 
Once the search is complete a list of the pending items will be displayed.  If you see any which you do not want removed, remove the check mark next to it.
 
If there are no malicious programs are found you will receive the following message.
 
adwcleaner%20111_zpsiduqrrrp.png
 
Click on Clean to remove the selected items.  If you have any questions about any items in the list please copy and paste the list in your topic so we can review it.  
 
You will receive a message telling you that all programs will be closed so that the infections can be removed.  Click on OK.  The computer will be restarted to complete the cleaning process.
 
When the cleaning process is complete a log of what was removed will be presented.  Please copy and the paste this log in your topic.
 
================

Emsisoft Emergency Kit

Please download Emsisoft Emergency Kit and save it to your desktop. Double click on the EmsisoftEmergencyKit file you downloaded to extract its contents and create a shortcut on the desktop. Leave all settings as they are and click the Extract button at the bottom. A folder named EEK will be created in the root of the drive (usually c:\).

  • After extraction please double-click on the new Start Emsisoft Emergency Kit icon on your desktop.
  • The first time you launch it, Emsisoft Emergency Kit will recommend that you allow it to download updates. Please click Yes so that it downloads the latest database updates.
  • When update is complete, click Malware Scan. When asked if you want the scanner to scan for Potentially Unwanted Programs, click Yes. Emsisoft Emergency Kit will start scanning.
  • When the scan is completed click Quarantine selected objects. Note: This option is only available if malicious objects were detected during the scan. If this is the case select Delete selected.
  • When the threats have been quarantined, click the View report button in the lower-right corner, and the scan log will be opened in Notepad.
  • Please save the log in Notepad on your desktop and post the contents in your next reply.
  • When you close Emsisoft Emergency Kit, it will give you an option to sign up for a newsletter. This is optional, and is not necessary for the malware removal process.

Edited by dc3, 17 May 2016 - 08:26 AM.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users