I have contracted a Virus that shows many Ads

Page 5 of 17 FirstFirst ... 3456715 ... LastLast

  1. Posts : 16,325
    W10Prox64
       #41
      My Computer


  2. Posts : 174
    Windows 10 Version 1709 as of 01-21-218
    Thread Starter
       #42

    For simrick


    I've never used the clipboard on Windows 10; how do I find it?

    I made a document for the earlier Scan Log:

    Malwarebytes AM 11-16-2015 11.31 pm.docx
      My Computer


  3. Posts : 16,325
    W10Prox64
       #43

    You will see the scan logs if you click APPLICATION LOGS on the top left:

    I have contracted a Virus that shows many Ads-mbam-scan-logs.png

    Select "copy to clipboard". Then put your cursor in the answer box here, and right-click and select PASTE. That's it - the clipboard works behind the scenes - you never see it, but it's there. :)
      My Computer


  4. Posts : 174
    Windows 10 Version 1709 as of 01-21-218
    Thread Starter
       #44

    For simrick


    I thought I would try the clipboard method: here is the earlier Scan Log again: There are 406 files:

    Malwarebytes Anti-Malware
    Malwarebytes | Free Anti-Malware & Internet Security Software

    Scan Date: 11/16/2015
    Scan Time: 11:31 AM
    Logfile:
    Administrator: Yes

    Version: 2.2.0.1024
    Malware Database: v2015.11.16.04
    Rootkit Database: v2015.11.14.01
    License: Trial
    Malware Protection: Enabled
    Malicious Website Protection: Enabled
    Self-protection: Disabled

    OS: Windows 10
    CPU: x86
    File System: NTFS
    User: User

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 353770
    Time Elapsed: 29 min, 21 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 1
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerConsole.exe, 924, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a]

    Modules: 0
    (No malicious items detected)

    Registry Keys: 27
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\bsdriver, Delete-on-Reboot, [b5ff0a746f1c4fe79d0eec8b24e0e21e],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\APPID\{6306dc18-167c-4bfa-9c77-469dc02cc127}, Quarantined, [d9db0f6f5b300432f56480c3ae541be5],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\APPID\{6dfe2004-9287-41c3-be29-cf2b0d3138a9}, Quarantined, [7c38afcf93f8d75f87d3ea5934ceff01],
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{71C1D63A-C944-428A-A5BD-BA513190E5D2}, Quarantined, [476d6a14216ac96de641f93d10f257a9],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{71C1D63A-C944-428A-A5BD-BA513190E5D2}, Quarantined, [476d6a14216ac96de641f93d10f257a9],
    PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [258fd3ab107b8aacf248cb705ba7718f],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\INTERFACE\{D00BCE5B-A428-45CB-ABA3-BF3EFD1EE161}, Quarantined, [9222ed91c1ca6ec8fb9bfb151de5d927],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\TypeLib\{87129AC5-E754-4EA9-B521-7671C0AD4889}, Quarantined, [a1135925e7a4fc3a84127e925ba7738d],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\CLASSES\INTERFACE\{B03CD630-51ED-4B15-974C-76472E4624C0}, Quarantined, [10a4abd34c3f50e6b24f50e75ca61ce4],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\CLASSES\TypeLib\{E38FA7CB-C053-4B07-84AD-BCA6D2BE4FE7}, Quarantined, [4d672856d1bacd6959a81f18a161b64a],
    PUP.Optional.NowUSeeItPlayer, HKLM\SOFTWARE\NowUSeeItPlayer, Quarantined, [8c28a2dc1477be78f526bf19cc37c13f],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\VideoTile, Quarantined, [555f85f97f0cde583d7cb1d77191b24e],
    PUP.Optional.SystemHealer, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemHealer Monitor, Delete-on-Reboot, [0ba9dda1206b62d48b0802d6956e07f9],
    PUP.Optional.SystemHealer, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemHealer Run Delay, Delete-on-Reboot, [50642658becd68ce0192b91f996a8878],
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BROWSER.EXE, Quarantined, [f8bc136bec9f94a223443b9dc0437e82],
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\WOW6432NODE\shopperz101120150230, Quarantined, [b400b6c8d4b79e98ae9035280003e41c],
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\WOW6432NODE\shopperz121120151540, Quarantined, [bafa7c02038873c3d36b1d40966d60a0],
    PUP.Optional.SearchModule, HKLM\SOFTWARE\WOW6432NODE\SEARCHMODULE\SMUpd, Quarantined, [268e5925a6e593a3db0c0689b25154ac],
    Rootkit.Komodia.PUP, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7],
    PUP.Optional.CinePlus, HKU\S-1-5-18\SOFTWARE\CinePlus-1.44V09.11-nv-ie, Quarantined, [24903d41345744f2e982283fbe45916f],
    PUP.Optional.CinePlus, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\CinePlus-1.44V09.11-nv-ie, Quarantined, [4d67d5a90e7d78be34372245659e4eb2],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\NowUSeeItPlayer, Quarantined, [fdb7631b7912c86e241155780102a858],
    PUP.Optional.Searching, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\jlcgehabolcakkjhgmgpkagpolbjlhfa, Quarantined, [4c680a7492f9c96dda02ddac7b870ef2],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\nowuseeitplayer.com, Quarantined, [ab09d5a96922eb4bb8ee23b0f70c50b0],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\ui.nowuseeitplayer.com, Quarantined, [9d17abd3ccbf082e4462993aaf548779],
    PUP.Optional.CrossRider, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9563BC59-9556-4805-8CD4-886781779D8D}, Quarantined, [9a1a106e9af1a591b1335d794ab9a759],
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER, Quarantined, [dada0e703d4e072f05bc32a6db28e020],

    Registry Values: 18
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{26842a09-ffa8-4e2c-ae12-0c80f01c3295}, Quarantined, [22922f4fb6d582b4a3e55bda5da59f61],
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{26842A09-FFA8-4E2C-AE12-0C80F01C3295}, Quarantined, [22922f4fb6d582b4a3e55bda5da59f61],
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\CLASSES\.XHTML\OPENWITHPROGIDS|CRSBRWSHTML, Quarantined, [f6bed5a9a3e8eb4b3fc106cd53b09d63],
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS, Crossbrowse, Quarantined, [af05710dadde1f17c11e98d26b984eb2]
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS|StubPath, "C:\Program Files\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level, Quarantined, [654ff38ba6e5d75f39a696d429da60a0]
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS|Localized Name, Crossbrowse, Quarantined, [862e1c62583348eec51ae585a16230d0]
    PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}|AppPath, C:\Program Files\Consumer Input\InternetExplorer, Quarantined, [a311acd290fbae8804106c3a48bb7c84]
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BROWSER.EXE, C:\Program Files\speed browser\Application\browser.exe, Quarantined, [f8bc136bec9f94a223443b9dc0437e82]
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{9652507D-C26A-43BB-bB34-01D771D29F20}, C:\Program Files\shopperz091120151629\Firefox\{9652507D-C26A-43BB-bB34-01D771D29F20}.xpi, Quarantined, [5e561e607e0d3006f937dd802ed59d63]
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{6FA9B76E-BB43-4C4A-a80F-0B40A32260B7}, C:\Program Files\shopperz091120152358\Firefox\{6FA9B76E-BB43-4C4A-a80F-0B40A32260B7}.xpi, Quarantined, [4d6706783c4fec4ae34dd984ae55d927]
    PUP.Optional.Groover.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{350F8805-D431-4908-8701-57A62717BAF2}, C:\Program Files\groover121120151836\Firefox\{350F8805-D431-4908-8701-57A62717BAF2}.xpi, Quarantined, [d4e0f6887b107cba8c67b9a3b84ba25e]
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\REGISTEREDAPPLICATIONS|speed browser, Software\Clients\StartMenuInternet\speed browser\Capabilities, Quarantined, [961e5628810a37ff84e48b4d8f74bf41]
    Rootkit.Komodia.PUP, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER|DisplayName, bsdriver, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7]
    PUP.Optional.CrossBrowse, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{E945514 6-3706-4494-B51A-6BCCE84619F4}, v2.24|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe|Name=Crossbrowse (mDNS-In)|Desc=Inbound rule for Crossbrowse to allow mDNS traffic.|EmbedCtxt=Crossbrowse|, Quarantined, [0fa51569a6e50036e25219bedb288779]
    PUP.Optional.CrossBrowse, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|GoogleChromeAutoLaunch_9BAB471B03D368FCB9DADC4CBC F42FCC, "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window, Quarantined, [4e662856e6a5f04622b92e3c37cc35cb]
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NowUSeeIt Player, "C:\Program Files\NowUSeeItPlayer\NowUSeeItPlayer.exe" /autostart=1, Quarantined, [5c5855291576b185bee94b88f50e22de]
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER|HomePage, Awesome PC Cleanup Tool | System Healer, Quarantined, [dada0e703d4e072f05bc32a6db28e020]
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER|SupportPage, Frequently Asked Questions | System Healer, Quarantined, [cbe9126c5734c96d328f2eaa9a6918e8]

    Registry Data: 0
    (No malicious items detected)

    Folders: 18
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio, Quarantined, [b103e49a117a42f448531f6cb74c817f],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.GamesDesktop, C:\Users\User\AppData\Local\gmsd_us_005010146, Quarantined, [e5cf6b134249e94d97af80eb986a10f0],
    PUP.Optional.GamesDesktop, C:\Users\User\AppData\Local\gmsd_us_005010146\Download, Quarantined, [e5cf6b134249e94d97af80eb986a10f0],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.125671, Quarantined, [71431a64a7e480b6cfe9b0bb24dec63a],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.341072, Quarantined, [486c7c02335863d37741fe6d39c99a66],
    PUP.Optional.NowUSeeItPlayer, C:\Program Files\NowUSeeItPlayer, Quarantined, [f1c397e76328a98d3505186dd32f6b95],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\WL, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs, Quarantined, [05afbdc17615092d8ef889f57e864cb4],

    Files: 342
    PUP.Optional.Shopperz.BrwsrFlsh, C:\Windows\System32\drivers\bsdriver.sys, Delete-on-Reboot, [b5ff0a746f1c4fe79d0eec8b24e0e21e],
    PUP.Optional.FastBrowser, C:\ProgramData\setup_56cf62a1bba847bbba3f56040e43d8ea.exe, Quarantined, [a014cbb384074cea538fc26a2fd16b95],
    PUP.Optional.ZombieInvasion, C:\ProgramData\jsrySFYScqs\dat\fsNCAculTex.dll, Quarantined, [cfe51e60e3a89a9c18ca33f4a85c52ae],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio\prompt.exe, Quarantined, [d7dd205e99f2112572be969423de19e7],
    PUP.Optional.Shopperz.BrwsrFlsh, C:\Windows\System32\drivers\cherimoya.sys, Delete-on-Reboot, [a80c334b7b1072c4ffac0770e222fd03],
    PUP.Optional.CrossBrowse, C:\Users\User\AppData\Local\Temp\1124.exe, Quarantined, [d7dd522cf09b92a479a15accee13df21],
    PUP.Optional.CinePlus, C:\Users\User\AppData\Local\Temp\1844.exe, Quarantined, [d4e0c2bcbbd03bfbcff07af734d019e7],
    PUP.Optional.BonDon, C:\Users\User\AppData\Local\Temp\mytmpinstaller.exe, Quarantined, [496b8af4b0db082e5badfa4734cdea16],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsa24C9.tmp, Quarantined, [06aea6d83c4f78be050a74b68a77d32d],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\nsa39B1.tmp, Quarantined, [01b339456328af87fc2afe443cc4ef11],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg9BE1.exe, Quarantined, [466e4a348ffcc175bcce1a82679a847c],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avg13CA.exe, Quarantined, [e1d31e609af1e6507ec22e1817e9d927],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg400.exe, Quarantined, [aa0a4c32cdbeed4971193963d13017e9],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avg6AC3.exe, Quarantined, [2a8a6f0f216a69cd2917a4a2eb151de3],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg79C6.exe, Quarantined, [a70d83fbd9b2ef4756344a522dd46898],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg9906.exe, Quarantined, [872dcbb3662562d48ffbbfdd8b76bd43],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nslA9A0.tmp, Quarantined, [f8bccdb1870461d550418ca2e61ad62a],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn5D58.tmp, Quarantined, [aa0a78065a3156e09190dc2431d016ea],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn6204.tmp, Quarantined, [3a7a730b305b58deef3202fe8e732cd4],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nso7BCB.tmp, Quarantined, [1d97d0ae95f61a1c1b0f39d729d99769],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsp68A4.tmp, Quarantined, [456fc5b9e1aa4ceab76a04fc30d1a060],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsx6F49.tmp, Quarantined, [74408bf3dbb0a69077582174cb36ee12],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsxA91F.tmp, Quarantined, [a90bd7a7880337ffd24ffb0505fc7e82],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsxB7F6.tmp, Quarantined, [32822559008bd75fe93829d754ad38c8],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsxDFB3.tmp, Quarantined, [bcf8225c503b1026ad22f3a214ed47b9],
    PUP.Optional.NoteUp, C:\Users\User\AppData\Local\Temp\nsy4790.tmp, Quarantined, [813381fdf695a98d4e7c1e2ea65b36ca],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsy67E7.tmp, Quarantined, [5d570975711a330352bdcf5b99680ef2],
    PUP.Optional.CouponMarvel, C:\Users\User\AppData\Local\Temp\nsyDF2A.tmp, Quarantined, [3381205edead04327de4dda98e7313ed],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsyFC7C.tmp, Quarantined, [159f48364d3ec076d13f9f06c43de41c],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nszC930.tmp, Quarantined, [338167175437d066cc43f1394eb32cd4],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nscCC3D.tmp, Quarantined, [a410c8b6e8a3ed49cf2a3eba37ca13ed],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nscE159.tmp, Quarantined, [a311017dcbc051e52c65b67832ceea16],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsd6968.tmp, Quarantined, [6b49dea0cdbe41f5ce01d4c108f9c53b],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsdAA95.tmp, Quarantined, [dcd82c524447a88e2ee1dd4d79889868],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nse20B6.tmp, Quarantined, [387c7fffa2e976c0a180bc444fb24cb4],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsf8E4E.tmp, Quarantined, [ad07ed915932fb3b735c30655ca5ba46],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsfE732.tmp, Quarantined, [585cb3cb4b40231313fd574e956c05fb],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nsg57B2.tmp, Quarantined, [2b893a446d1ed363c2375d9bc33e29d7],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsgA489.tmp, Quarantined, [5361512d47446ec857ca679924ddc13f],
    PUP.Optional.NoteUp, C:\Users\User\AppData\Local\Temp\nsgBE4E.tmp, Quarantined, [02b280fed0bb999d973363e9b64b6d93],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd16E7.exe, Quarantined, [05af2c52d2b9e45256f674bc50b0ca36],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd25F6.exe, Quarantined, [526218660e7d8bab82cafa36ff014db3],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd56D3.exe, Quarantined, [7b39d9a5206bb3832e1e85ab16ea827e],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdA11C.exe, Quarantined, [466ed9a53c4f8caaaaa265cbe51bcf31],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdCC13.exe, Quarantined, [e5cfea94bad180b6ad9fe74917e98d73],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdD412.exe, Quarantined, [4c68d6a85734cd69103c56daf709ae52],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdE4D.exe, Quarantined, [7b39e29cef9c5ed89bb1b47c9f61ba46],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avgA249.exe, Quarantined, [694be7973952a98d6ad62323fc04a25e],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun9458.exe, Quarantined, [3f75b6c8791244f28e0dcecdec15fb05],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\setup_ra.exe, Quarantined, [09abb6c8b0db280eba8044afba474db3],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{813A89B7-BBBA-42C9-A78E-97D7157EC987}.dll, Quarantined, [d8dc542abad144f2922f2031b44dc838],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{FF82C726-1A84-46F4-B820-693F5A869A22}.dll, Quarantined, [c1f36c126b2078bef3cec1908f729d63],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{4BF2F589-F66F-47AF-8631-D8DF831F725F}.dll, Quarantined, [892b5d217f0c65d1a918272ad72a5da3],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{5ED61B35-A1B1-478E-A7EC-1BF870DCA326}.dll, Quarantined, [4d6795e9addefd39665b1f3258a928d8],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{61529F72-25C1-4A0C-96B3-6BEBB09929D8}.dll, Quarantined, [14a0d0aeacdf2d09b60b430efe03d729],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nshC2C1.tmp, Quarantined, [5a5adea0aae1dd5964abe04a917023dd],
    PUP.Optional.MaxDriverUpdater, C:\Users\User\AppData\Local\Temp\nsi524E.tmp, Quarantined, [ded6fb83e0abcf67bb358113679a5da3],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsiF6BC.tmp, Quarantined, [1e9685f95c2f2511c24dc763af520cf4],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nsj96E4.tmp, Quarantined, [e0d41b63fd8ebb7b32f88b85cd358f71],
    PUP.Optional.VBates, C:\Users\User\AppData\Local\Temp\nsjB387.tmp, Quarantined, [c7ed423c612a2b0b3073a5f65ba616ea],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsjFE92.tmp, Quarantined, [f2c2c5b9880396a05fb1dec742bf3ac6],
    PUP.Optional.Compete, C:\Users\User\AppData\Local\Temp\nsk2586.tmp, Quarantined, [4a6ad8a6206b3ef8a8c15d1a34d0c43c],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nsk8F51.tmp, Quarantined, [a90b0b733d4ecc6ab6db082621dfe719],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nskD6B4.tmp, Quarantined, [3f758af43655ff37e24854bca65cb24e],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsl4CEF.tmp, Quarantined, [6b4993eb0289df57709fe14940c1e21e],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\nsqD1EA.tmp, Quarantined, [bdf7e5990883e84ef21209709d6714ec],
    Trojan.Downloader, C:\Users\User\AppData\Local\Temp\nsr2DD8.tmp, Quarantined, [b202225c4a4115214f541239fd07f20e],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nsr5F1D.tmp, Quarantined, [12a290eeed9ec27448e2f61a2fd39f61],
    PUP.Optional.OutBrowse, C:\Users\User\AppData\Local\Temp\nss23C.tmp, Quarantined, [b1037707682353e38282a464689960a0],
    PUP.Optional.CinePlus, C:\Users\User\AppData\Local\Temp\nss65BA.tmp, Quarantined, [0aaafc825d2e26101aa5ee83d03440c0],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nssBB8D.tmp, Quarantined, [11a32c52dbb00a2c36d9e9417091dc24],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nstB666.tmp, Quarantined, [159f6d119fecaa8cc35ea15f7b86d729],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\nstD1BC.tmp, Quarantined, [6054c2bc8dfe989eba9f80b6bc459e62],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\nstEFAE.tmp, Quarantined, [4a6adca22e5d50e6c2ff460b46bb916f],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun11169.exe, Quarantined, [e4d0314d6b2062d42392316581809a66],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun12186.exe, Quarantined, [e7cd8ef05338f73f4853b9e25ea36a96],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17592.exe, Quarantined, [0ca8e599d8b3082e595c8e08ca374db3],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17671.exe, Quarantined, [367e4e30b9d238fe6e2d801b0100a35d],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17920.exe, Quarantined, [72425b23bdce63d30992900b37ca5da3],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun20869.exe, Quarantined, [e4d06a140982191dad08badc7988c739],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun28520.exe, Quarantined, [4a6acbb396f5ca6ccee7425424dda957],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun28909.exe, Quarantined, [f9bbfe80b3d8fd39bddee5b6cd34e41c],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun32547.exe, Quarantined, [179d8df1c5c640f67d1e46550cf5d12f],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun5249.exe, Quarantined, [43719be37318350152638e0860a1ae52],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun5780.exe, Quarantined, [9a1a413d66253501862fc3d3cf320ff1],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsa7CC7.tmp, Quarantined, [763e7fffacdf0b2b30df77b39071d927],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsaA1AC.tmp, Quarantined, [308457272d5eb383ca46fea7e51c46ba],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsb3CBF.tmp, Quarantined, [b9fb027ccebd76c026fb669ab1503bc5],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nsbB66B.tmp, Quarantined, [0ba92b534249013534c542b61ee3f10f],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsbE692.tmp, Quarantined, [8430017d03886fc74cc3af7ba061df21],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsbF657.tmp, Quarantined, [0ca84f2fec9fca6c45cbe1c432cfb64a],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\nsc52AC.tmp, Quarantined, [31831d6194f79d99655c86cb0df448b8],
    PUP.Optional.WebShield, C:\Users\User\AppData\Local\Temp\ef46eb29-6caa-4790-a550-cfd272b3af48\setup.exe, Quarantined, [4b696a14ec9fed49ac130826c53b7c84],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdate.exe, Quarantined, [82324d31b6d51521ddaaca25b14f669a],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateBroker.exe, Quarantined, [72424a34e2a9bd79a7e0a34cf30d01ff],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateCrashHandler.exe, Quarantined, [7d37a2dc8704b58136511bd4946c8878],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateOnDemand.exe, Quarantined, [e4d0027ce9a20e284146c42b26daea16],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\goopdate.dll, Quarantined, [bcf82559711a2412f1962ac5a957cf31],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\goopdateres_en.dll, Quarantined, [00b4d4aa3754a690573096598d73966a],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\npglobalupdateUpdate4.dll, Quarantined, [dbd9106e8803bd79266168871ae67e82],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\psmachine.dll, Quarantined, [cee66717345779bd0087fff001ff57a9],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\psuser.dll, Quarantined, [eec679057417c2749fe820cff40cd729],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.341072\globalupdate.exe, Quarantined, [8a2a9fdf5a31d066305745aa32ceb947],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.341072\globalupdateCrashHandler.exe, Quarantined, [cee6027c4447171f7413777828d843bd],
    PUP.Optional.Watchman, C:\Users\User\AppData\Local\Temp\Install_5108\ins_smknnodesk.exe, Quarantined, [2a8a2f4f0685999dc38735515fa2ac54],
    PUP.Optional.Wajam, C:\Users\User\AppData\Local\Temp\f1dd1725-0b5f-466a-82f9-caaad45eb85f\wwe_1.54.1.13.exe, Quarantined, [932147371873b1858bfc64e53dc437c9],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\846bb3cf-5963-4b38-8c7d-57d8fe506ee3\braiegut_gutbl_inst.exe, Quarantined, [aa0a88f603883afc0d19c37f60a04fb1],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsmDA57.tmp\nsCBHTML5.dll, Quarantined, [9321ff7fafdc211526fb6997d22f5ba5],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn2ABE.tmp\nsCBHTML5.dll, Quarantined, [b5ff86f898f3e74fe33ee51b6b96847c],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsw7EB.tmp\nsCBHTML5.dll, Quarantined, [714396e8d7b4c67074ad23dd42bfbf41],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsyCAF7.tmp\nsCBHTML5.dll, Quarantined, [a1130b73d2b9e6509889857b12ef2ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\380.exe, Quarantined, [f8bccbb36e1d9c9a1c9bd6507988946c],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\381.exe, Quarantined, [dada9ae4ed9e56e0338428fe70919d63],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\420.exe, Quarantined, [e8cc9ae42f5c0333dfd873b3fb06738d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\465.exe, Quarantined, [5460c5b9f695bd7944735dc95da4b34d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\473.exe, Quarantined, [348068161e6d2214e9cedc4a22df857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\609.exe, Quarantined, [298b225c266504325e59180e0ff2b44c],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_AnySend_installer_multilang.exe, Quarantined, [4371b8c66427270f219666c0bf42ed13],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7c38641acac19a9cc2f5b67020e14ab6],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_speedup_installer_multilang.exe, Quarantined, [06ae07779cef42f43384c06644bd55ab],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\380.exe, Quarantined, [367e1f5fed9e5adc15a2a482ae53e11f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\381.exe, Quarantined, [763ee9957318092d774001253ec3837d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\420.exe, Quarantined, [1a9ac8b6b9d20333edca180e4cb5a15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\609.exe, Quarantined, [13a128564b408da9704757cf738e07f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [33810c72543745f107b035f147ba43bd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_AnySend_installer_multilang.exe, Quarantined, [2b8986f8cfbc2016bef9c75f46bb7987],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [ded6156995f6ef479f1829fd936edd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_speedup_installer_multilang.exe, Quarantined, [7a3af08e1f6c03337443d254c73ad52b],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-JFFA6.tmp\gentlemjmp_ieeuu.exe, Quarantined, [e0d4126cf99262d47c786d2d25dcf010],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-JQ619.tmp\gentlemjmp_ieeuu.exe, Quarantined, [189c3648424973c3ef05d6c4867b6799],
    PUP.Optional.PCSpeedUp, C:\Users\User\AppData\Local\Temp\is-KP86D.tmp\speedup_soft_partner.exe, Quarantined, [4470047acebd59dd775961c8af527789],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\381.exe, Quarantined, [496b700e4e3ddc5a704730f65ca5fc04],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\583.exe, Quarantined, [00b4dda14c3f4fe77b3cfc2a7a87d32d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\623.exe, Quarantined, [a90b1767f09bb5816e4941e5a160a957],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-KVHKK.tmp\465.exe, Quarantined, [d2e2017d800b072fcb39e6931be92bd5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\380.exe, Quarantined, [64503e40c6c51c1a793e94928d7407f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\381.exe, Quarantined, [2f85bac4533803335067e93d0cf5bc44],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\420.exe, Quarantined, [42724d311c6f36002592a97da859c33d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\583.exe, Quarantined, [90246c122269f6406354dc4ab74a4db3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\609.exe, Quarantined, [10a4d3ab2368db5bd2e5be689c6551af],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\623.exe, Quarantined, [5e568ef0aedd41f5d9de2ef8fd0404fc],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\666.exe, Quarantined, [3084324c7d0e2e08981f1e0823de669a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\667.exe, Quarantined, [2b89daa4098263d3694eef376c95837d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [fbb95a246823e056d9deb07613eef60a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_AnySend_installer_multilang.exe, Quarantined, [b5ffbbc3d8b3b2847641df4719e8d32d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [268e146a3754eb4bc7f0dc4ad42d2dd3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_speedup_installer_multilang.exe, Quarantined, [3d777b0396f51f172394e64000017c84],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LK322.tmp\package_AnySend_installer_multilang.exe, Quarantined, [12a2225ce3a8f3435f58bc6a4ab79b65],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\380.exe, Quarantined, [dcd8cdb17c0fae884473d254748db947],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\381.exe, Quarantined, [f9bb5c22ee9dae88c9ee889ee819867a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\420.exe, Quarantined, [4e664a34e4a793a312a5062059a8f50b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\465.exe, Quarantined, [199be995dcafd1657047fa2c48b93fc1],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\473.exe, Quarantined, [872d007ec2c96dc95d5ae1458978f808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\609.exe, Quarantined, [d6de720cacdfbd79a512978f4fb29967],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\666.exe, Quarantined, [3381c9b5afdc0f27e4d32afc4eb3f30d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\667.exe, Quarantined, [ddd7b2ccef9c1c1a2a8d39ed649d0af6],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [a311d4aa93f843f34c6be244af5207f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_AnySend_installer_multilang.exe, Quarantined, [ac08512d8a018ea8991eb96dcd3419e7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1d97601ec4c754e2e1d64bdb946d08f8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_speedup_installer_multilang.exe, Quarantined, [c5eff48ac7c457dfd5e204228180f60a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-M0PDS.tmp\583.exe, Quarantined, [bff59de118737cba496e57cf9d64f20e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-M0PDS.tmp\667.exe, Quarantined, [14a0d6a8810ab482c8efa28405fc58a8],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-M1UPG.tmp\465.exe, Quarantined, [f3c187f77912de589e660970798bf808],
    PUP.Optional.SystemNotifier, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_152.exe, Quarantined, [674d631b731872c41d67f1818d7720e0],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe, Quarantined, [4f65245a5239d561093757ef07f9867a],
    PUP.Optional.Jogotempo, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\Extracted\adv_128.exe, Quarantined, [496b3a44ec9f76c0f1fde4b00af72ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\380.exe, Quarantined, [09ab8af4206b8bab23942afc000153ad],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\420.exe, Quarantined, [3b79750972195cdaf9be899d758c669a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\465.exe, Quarantined, [8f25c3bba7e460d68730c5617f829769],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\package_AnySend_installer_multilang.exe, Quarantined, [367ea2dc3e4d55e19423ad792bd6f808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [caea28560487350117a084a257aa9c64],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-1IQ49.tmp\gentlemjmp_ieeuu.exe, Quarantined, [9f158bf3ef9c5bdb767e7d1d669ba15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\380.exe, Quarantined, [a90b1e601f6c58deac0bf6301ae713ed],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\381.exe, Quarantined, [b400afcf5635c472744333f33cc57a86],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\420.exe, Quarantined, [0ea648361d6ece68764115110ef34cb4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\609.exe, Quarantined, [793b691592f93105774082a431d06c94],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_AnySend_installer_multilang.exe, Quarantined, [466e027ca2e9d0668c2b30f603feb848],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [c5efa0de5c2f77bfd6e1e64001008a76],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_speedup_installer_multilang.exe, Quarantined, [b8fcadd1682359dda7105fc77e838a76],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-2PHT7.tmp\643.exe, Quarantined, [5d57a2dc35562a0ca41349dd6998f50b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-2PHT7.tmp\667.exe, Quarantined, [674d3f3feba03df9a71040e6679a03fd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\380.exe, Quarantined, [d6de92ecc1ca4fe702b572b42bd6cc34],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\381.exe, Quarantined, [bdf75826d9b24de95760ae78ce3338c8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\420.exe, Quarantined, [ddd73846781390a6a80fe2444cb58e72],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\465.exe, Quarantined, [f0c4e49a226915210daaa5812fd2ef11],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [e1d3047a2368a591c3f452d42fd229d7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_AnySend_installer_multilang.exe, Quarantined, [a113324ce5a630068037f92d14edf808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [d4e0017dcebd11258c2b49dd04fd9769],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_speedup_installer_multilang.exe, Quarantined, [7a3aa3dbe2a9f83ee3d40125c04107f9],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-34HF9.tmp\gentlemjmp_ieeuu.exe, Quarantined, [dfd57905216aed49d91b2c6e9b66db25],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-3M4I1.tmp\package_AnySend_installer_multilang.exe, Quarantined, [faba5529dfac3006c5f2f03639c8e21e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\583.exe, Quarantined, [971d0f6feaa1a690635437ef8b76dd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\667.exe, Quarantined, [951f9be33d4e261008af34f2e41d728e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [70446e10e7a40d29199e26002cd5bb45],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_AnySend_installer_multilang.exe, Quarantined, [5a5a3f3ff59669cd54631f072bd69967],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1b9994ea2269a6909423170fdd24728e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_speedup_installer_multilang.exe, Quarantined, [4e660f6fed9ecb6b3e79ec3aa35e748c],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-9D4JG.tmp\gentlemjmp_ieeuu.exe, Quarantined, [5262037be8a33402f6fe8812a958e917],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\380.exe, Quarantined, [caeaff7ffd8e45f18b2c45e1c140857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\381.exe, Quarantined, [e8cc5628eba0ea4cfcbb41e5f70af10f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\420.exe, Quarantined, [eec64e300c7f95a1feb9ef37e31eff01],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\465.exe, Quarantined, [fabae896a4e7b383576063c3c63ba35d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\473.exe, Quarantined, [cde73945573441f534835dc939c8e020],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\609.exe, Quarantined, [8b292e50deadde58bdfab472b64b7e82],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\666.exe, Quarantined, [991ba6d815763afcb8ff96909f62dc24],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\667.exe, Quarantined, [23918df1513ac076902770b65ea3a15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [3a7ac6b814777db9b50241e507fa47b9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_AnySend_installer_multilang.exe, Quarantined, [5f557707dead73c3783fcf57ec151be5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7f35dda1d5b6cc6a92250a1c47baa957],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_speedup_installer_multilang.exe, Quarantined, [674d46386c1f2c0ab10655d1f70aaf51],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-TNCIF.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7b39e8968efd47ef609469313ec3718f],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-TUDD8.tmp\gentlemjmp_ieeuu.exe, Quarantined, [e1d3f18de5a6c27482722f6b936efc04],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-U2L4R.tmp\gentlemjmp_ieeuu.exe, Quarantined, [169ed4aa810a082e2ec643579a6738c8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0ABA7.tmp\381.exe, Quarantined, [d7ddc8b69fec6ec8ab0ca08640c1a55b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0ABA7.tmp\465.exe, Quarantined, [02b23d412d5e5ed8b10657cf22df15eb],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\380.exe, Quarantined, [b3011f5f08837eb8bef9de48c140926e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\420.exe, Quarantined, [12a20a74d8b351e565520224c0416799],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\465.exe, Quarantined, [d9dbdaa40289d264ebcc7da9c938b34d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\package_AnySend_installer_multilang.exe, Quarantined, [6b493b43117ae2545463b17533ce28d8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [951ffa84800bef47d9dedb4be021728e],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-SI7V0.tmp\gentlemjmp_ieeuu.exe, Quarantined, [2e86fe8056352b0b32c2504afb06f20e],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nshC202.tmp\nsCBHTML5.dll, Quarantined, [4074215dc2c90a2cc45de31d0ef3cf31],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nss67E7.tmp\nsCBHTML5.dll, Quarantined, [3f75d4aa8704e74f73ae1ae633ce13ed],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-CE298.tmp\Z2VudGxlbWptcF9pZWV1dQ==.exe, Quarantined, [9c18bdc1b3d88fa723d1ebafd8298779],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-CJMR9.tmp\gentlemjmp_ieeuu.exe, Quarantined, [f4c0324cf6950a2c2cc8a8f2748d26da],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-D4OF0.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7c38136bbccf24125b993a602ed30ff1],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-D6FMP.tmp\gentlemjmp_ieeuu.exe, Quarantined, [2d875e20a9e2b284bb39bddd7d841ae6],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-DRDQF.tmp\465.exe, Quarantined, [9f15542ab9d2a88e5fa5e6931ee618e8],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-F7Q0G.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7c3878060c7f44f248ac0c8eba47659b],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-GQUV5.tmp\gentlemjmp_ieeuu.exe, Quarantined, [664ea7d75f2ca5919d577e1ce51c35cb],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-I27MC.tmp\465.exe, Quarantined, [34809be326657abc52b2e99006fe8c74],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-I56C2.tmp\gentlemjmp_ieeuu.exe, Quarantined, [9b19e29ceba069cd9c58108af40d59a7],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\is-I9JJ3.tmp\brakietut_tutbl_setup.exe, Quarantined, [e8cc27572764c07631f5cd75a060af51],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-NOM8C.tmp\gentlemjmp_ieeuu.exe, Quarantined, [ac086a14f3983006c133debcfb06cd33],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\420.exe, Quarantined, [6351e29ce3a8270fedca2df9bc4533cd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\667.exe, Quarantined, [ecc897e7d0bbb284a0170c1a69980ef2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [edc7730be8a306309522c75f8879916f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_AnySend_installer_multilang.exe, Quarantined, [a50f4638b0dbb482358280a6eb16e51b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7e363b43a0eb5dd92f8847df17ead22e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_speedup_installer_multilang.exe, Quarantined, [357f047aef9c53e3684fe5414eb3b848],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_speedup_installer_multilang.exe, Quarantined, [14a066181576072f397e2105fe030df3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\381.exe, Quarantined, [c9ebe19db5d638fe783f6eb8966b7090],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\420.exe, Quarantined, [8a2a3c42eba0c86e11a6b47281806f91],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\465.exe, Quarantined, [5e564b33810a0531eccb40e659a849b7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\473.exe, Quarantined, [a113fa84a1ea72c49126091d0cf58977],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\583.exe, Quarantined, [08aca1dd0883a096a5126cba728f956b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\609.exe, Quarantined, [456f106e800b43f32d8a92945ea3629e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\661.exe, Quarantined, [5a5a9ae42863e452189f0b1b91703bc5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\666.exe, Quarantined, [b400b1cd107b1422c7f0e73f19e8768a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\667.exe, Quarantined, [c4f0dda1f992f0465c5b0422aa57dd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [14a0f18d0e7dfb3b1e99cc5abb466799],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_AnySend_installer_multilang.exe, Quarantined, [6351fe80820938fee2d5ab7ba45d2cd4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1f95dda15338d1652691f13510f107f9],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-R0G9I.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7440fc82cac1ea4c83714f4b0cf5857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\465.exe, Quarantined, [b10347375c2fb482f8bf67bfac553cc4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\643.exe, Quarantined, [c5ef82fc4744092d496e9c8af20f916f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\667.exe, Quarantined, [4a6af18d4843a492d1e6f92de120b24e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\380.exe, Quarantined, [0ea63f3f6229b4824473fb2bc938a35d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\381.exe, Quarantined, [9024d5a9b7d4cd698334260039c82ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\420.exe, Quarantined, [e8ccf688602b46f09027ff2759a813ed],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\465.exe, Quarantined, [4470205ed0bb5cda9324e1458a7712ee],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\473.exe, Quarantined, [5c589ce22467de5826919a8c32cf857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\609.exe, Quarantined, [9a1a1965e7a4d660ebcce541dc256997],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_AnySend_installer_multilang.exe, Quarantined, [f0c4225c0586df57e0d758ceb54c21df],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [06ae4539a7e4e1555b5cc75f808136ca],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_speedup_installer_multilang.exe, Quarantined, [1e9605794d3e2b0b0ea93bebeb164ab6],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-RVNB5.tmp\gentlemjmp_ieeuu.exe, Quarantined, [8034037b58333303fbf97f1b649dee12],
    PUP.Optional.MaxDriverUpdater, C:\Users\User\AppData\Local\Temp\SWOD6EZU7K\newversion.exe, Quarantined, [f3c1d7a70e7dac8a40ea5ee6b24f768a],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsbB30E.tmp\nsCBHTML5.dll, Quarantined, [e8ccccb27219dc5a9c85ab55f50c946c],
    PUP.Optional.OneSystemCare, C:\Users\User\AppData\Local\Temp\dc51d451-32b2-4cf4-8cf8-8cf6cf26bdca\onesystemcare.exe, Quarantined, [f4c0a3db55369d998d286b0dc83cfb05],
    Trojan.Symmi, C:\Windows\Temp\2728.tmp.exe, Quarantined, [1e967905216a10265944217bfb067d83],
    PUP.Optional.ConvertAd, C:\Windows\Temp\A1F1.tmp, Quarantined, [159fc3bb1477f04635d1b19ace36718f],
    Trojan.Symmi, C:\Windows\Temp\E1DD.tmp.exe, Quarantined, [288c97e7098260d6c3daadefe21f55ab],
    PUP.Optional.FastBrowser, C:\Windows\Temp\nsp7E54.tmp\Installer\setup.exe, Quarantined, [ddd70f6f5b30eb4b875bdd4f9967f20e],
    PUP.Optional.InstallCore, C:\Users\User\Downloads\AdwCleaner Setup.exe, Quarantined, [e6ce542a4645ca6cc1d0b7e1b54c5aa6],
    PUP.Optional.SoftPulse, C:\Users\User\Downloads\Setup.exe, Quarantined, [f8bc87f7a4e72b0b1e0ac7851ee34ab6],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_13416\braiegut_gutbl_inst.exe, Quarantined, [c7ed265825667bbb3ee8330f9c64f010],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_31873\brakietut_tutbl_setup.exe, Quarantined, [cbe99ae4503b3bfb56d054ee1ce42dd3],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_6757\nsa39B1.tmp, Quarantined, [4371add1c2c996a0fb2b83bf09f75da3],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_820\nsa39B1.tmp, Quarantined, [7d37f5896d1e7bbb59cd90b2728ec43c],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_8760\braiegut_gutbl_inst.exe, Quarantined, [c1f37fffb8d3a096eb3b90b26799966a],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_9513\brakietut_tutbl_setup.exe, Quarantined, [5e56f6884a419b9b3de98fb307f9e61a],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\gmsd_us_005010146\Download\myoffergroup_us6.exe, Quarantined, [2e8696e8b1da9e9842b2b5e517ea22de],
    Rootkit.Agent.A, C:\Windows\System32\drivers\cherimoya.sys, Delete-on-Reboot, [00b4720c9af1f83edd5fd9b622e07987],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun11169.exe, Quarantined, [03b1007e4b402e083fc85b80ea18b44c],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun17592.exe, Quarantined, [6d470c72513a013548bf6f6c7b87aa56],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun20869.exe, Quarantined, [c3f1d2ac1a71c1752ed98457fd0516ea],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun28520.exe, Quarantined, [4b691b63c9c2be789c6b8952748ef808],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun420.exe, Quarantined, [278db9c50586cd6907007f5c4eb46a96],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun5249.exe, Quarantined, [813385f9682365d121e684578979d927],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun5780.exe, Quarantined, [e6ce522c0883d066e91e716a3ac85da3],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1\oohnagee.exe.config, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1\sqlite3.dll, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\dat.dat, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio\prompt.exe.config, Quarantined, [b103e49a117a42f448531f6cb74c817f],
    PUP.Optional.SearchModule, C:\Windows\Temp\SM_cache_iexplore.exe.cache, Quarantined, [c5ef5c229eeda59189542e618f74a858],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-hardwareprofile-v0001, Quarantined, [278da7d70d7efb3bf25cecb0768d718f],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-install-v0003, Quarantined, [6f455a24810aee48c688aaf2e81bc13f],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-processes-v0002, Quarantined, [3b79f6886b206accaca22b717093bd43],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001, Quarantined, [991b5925e8a33ff75df19606659e3cc4],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-softwareregkeys-v0002, Quarantined, [6c48b1cd810a0432301ef1ab32d17f81],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-uninstall-v0002, Quarantined, [cde72a540487d3631f2f8913b74c02fe],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0\localStorageIE.txt, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\groover121120151836_installer_1447369107.txt, Quarantined, [c6eeabd3d9b284b2c160b91fde256c94],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120151629_installer_1447105407.txt, Quarantined, [f8bc027cf893b1851a09845429da9f61],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120152358_installer_1447110657.txt, Quarantined, [6e4694ea5d2e92a4bb688256db289a66],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120152358_installer_1447115284.txt, Quarantined, [852f007e0c7fcd6973b07464689b867a],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz101120150230_installer_1447120757.txt, Quarantined, [60547b03acdf0b2b091a1cbc768d37c9],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447382285.txt, Quarantined, [2f855b23e7a4da5c75aef4e41ae9926e],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447550561.txt, Quarantined, [edc7d1ad791231057ea57d5b62a16c94],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447555679.txt, Quarantined, [357f8bf3632883b337ec10c815ee8a76],
    PUP.Optional.SpeedBrowser, C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\speed browser.lnk, Quarantined, [e8ccf68806852c0aaab7e4f407fc0af6],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SystemHealer.ini, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerCheckout.exe, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerConsole.exe, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SHShellExtension.dll, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SystemHealer.exe, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Windows\System32\Tasks\SystemHealer Monitor, Quarantined, [476da0de088378bed4bbf3e5ee15f20e],
    PUP.Optional.SystemHealer, C:\Windows\System32\Tasks\SystemHealer Run Delay, Quarantined, [c2f25c229fec41f5622d3c9c5aa917e9],
    Rootkit.Komodia.PUP, C:\Windows\System32\drivers\bsdriver.sys, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateHelper.msi, Quarantined, [71431a64a7e480b6cfe9b0bb24dec63a],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player\NowUSeeIt Player.lnk, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player\Uninstall NowUSeeIt Player.lnk, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\English.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\Parameters.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\tmpLang.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\tmpLangs.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\Launch System Healer.lnk, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\System Healer on the Web.url, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\Uninstall.lnk, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\dat\iOnamWHW.exe.config, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\info.dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\tmKasKUsC.dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\tmKasKUsC.exe.config, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.Trovi, C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\wrru4scy.default-1412090802549\prefs.js, Good: (), Bad: (user_pref("browser.search.selectedEngine", "Trovi"), Replaced,[f8bc92ecaae189ada8468af1ed17a957]
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\mipb\nhau\fag.dat, Quarantined, [4b697d0112792f07a8a399e38a7a5ba5],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\xyuc\useh\daf.dat, Quarantined, [fdb7ed918605211552f91765dc2854ac],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\gaon\kad\foqe.dat, Quarantined, [367e81fd7a11f541e26ae29adf2501ff],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\oloc\lux\teit.dat, Quarantined, [cbe9a6d8adde7cbaf557d9a323e1946c],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\pol\ydam\vovs.dat, Quarantined, [7a3adda1fd8ee452f459ee8ec93bf30d],
    PUP.Optional.TaskRNDM, C:\Windows\System32\sc.bat, Quarantined, [ddd77a04652682b4e60d700f28dce11f],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
      My Computer


  5. Posts : 16,325
    W10Prox64
       #45

    Nice! It worked!

    OUCH! You had 3 different trojans, two of which were re-spawning themselves over and over.
    Trojan.Downloader, Trojan.Symmi and Trojan.Agent

    A ton of adware, gazilions of PUPs (Possibly Unwanted Programs).
    Most of it is gone, but ESET will ferret out most of the leftovers, I think.

    Run ESET from Firefox browser as I instructed above please. When it's finished, you will have an option to see what it has found, and copy to a text file. Then you can copy and paste the text file in here.
      My Computer


  6. Posts : 174
    Windows 10 Version 1709 as of 01-21-218
    Thread Starter
       #46

    For simrick


    Two Victories!

    I just did a "Restart" and now, when I click on Edge, www-searching.com does not appear!

    Also, I was able to "uninstall" "NowUSeeIt Player."

    I'll download FireFox first and then run the ESET Scan.
      My Computer


  7. Posts : 16,325
    W10Prox64
       #47

    Instructions to run ESET from BC:

    ESET Online Scanner
    § Click here to download the installer for ESET Online Scanner and save it to your Desktop.
    § Disable all your antivirus and antimalware software - see how to do that here.
    § Right click on esetsmartinstaller_enu.exe and select Run as Administrator.
    § Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.
    § Select Enable detection of potentially unwanted applications.
    § Click Advanced Settings, then place a checkmark in the following:
    o Remove found threats
    o Scan archives
    o Scan for potentially unsafe applications
    o Enable Anti-Stealth technology
    § Click Start to begin scanning.
    § ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.
    § When the scan is done, click List threats (only available if ESET Online Scanner found something).
    § Click Export, then save the file to your desktop.
    Click Back, then Finish to exit ESET Online Scanner.
      My Computer


  8. Posts : 174
    Windows 10 Version 1709 as of 01-21-218
    Thread Starter
       #48

    For simrick


    I ran the ESET Scan, but I didn't do it properly. It took about an hour. At the end, it gave me the option to "purchase" or for a "30-day free trial." I clicked on the "30-day free trial," thinking that I had to click on one or the other. It is possible that I didn't have to choose. I also had the option of deleting the ESET software or keeping it on my computer. I chose the option to keep it on my computer.

    Then it went down to the task-bar. I brought it back up, but there was no tab to copy the Scan Log that I could see. ESET flagged about 170 files as potential threats; possibly some of them were definite threats, but I didn't get a chance to look at the whole list.

    I downloaded FireFox, by the way, but I don't know if ESET was downloaded and the Scan run with FireFox. It'll probably take another hour. We'll likely have to continue this tomorrow. Thanks for all you help, as usual.

    I just read the instructions in your post above this one. I'll try to run the ESET Scan again closely following the instructions.
    Last edited by Writer; 16 Nov 2015 at 22:50.
      My Computer


  9. Posts : 16,325
    W10Prox64
       #49

    Writer said:
    I ran the ESET Scan, but I might have messed it up. It took about an hour.
    Yes, that sounds about right.

    Writer said:
    At the end, it gave me the option to "purchase" or for a "30-day free trial." I clicked on the "30-day free trial," thinking that I had to click on one or the other. It is possible that I didn't have to choose.
    No, you didn't have to chose either - I think at that point you can just close the window...can't remember; haven't run it in a while myself.

    Writer said:
    I also had the option of deleting the ESET software or keeping it on my computer. I chose the option to keep it on my computer.
    Yes, good, in case we need it again, that's fine.

    Writer said:
    Then if went down to the task-bar. I brought it back up, but there was no tab to copy the Scan Log that I could see. ESET flagged about 170 files as potential threats; possibly some of them were definite threats, but I didn't get a chance to look at the whole list.
    So, were you able to have it quarantine everything it found?

    Writer said:
    What should I do at this point concerning ESET. Should I run it again? I notice that it is still in my downloads.
    If you were able to get through the screens to the point where it "cleaned" everything, you should be fine. I think, if you got to the point where it offers the trial, you were successful.

    Writer said:
    I downloaded FireFox, by the way, but I don't know if ESET was downloaded and the Scan run with FireFox.
    What browser did you use to go to the online scanner? Firefox? If so, then it was run with Firefox. I don't think it works with Edge yet; I could be wrong on that though...I'll have to give it a try.

    Please try Edge> Settings>Advanced Settings>Open Proxy Settings and see if there is anything in there. If so, get rid of it. Below is a picture of the way mine looks - yours should match. If there are any differences, let me know what they are, and then change them.





    To get here, click on the three dots in the top right-hand corner of Edge, then Settings, then scroll down to View Advanced Settings, then select Open proxy settings.


    If you want to do just a little more tonight, I would set a new restore point "Prepare to reset browsers", and then follow the instructions to reset them, including Edge. But, if you've had enough for today, we could wait until tomorrow to do that. It's up to you. I will be around for a while, if you want to do it now.

    Reset Internet Explorer
    To open, type iexplore.exe in the search box
    https://support.microsoft.com/en-us/kb/923737
    Reset Edge
    How to reset Microsoft Edge in Windows 10 when things are broken | Windows Central


    Once your browsers have been reset, you will want to download and install SuperAntiSpyware. Open the program, update the virus definitions, and run a scan of drive C.

    I will update this post with screenshots just as soon as I capture them for you.

    BE SURE TO UNCHECK the GOOGLE CHROME INSTALL BOXES DURING INSTALL. (UGH! I hate when they do that!)



    I have contracted a Virus that shows many Ads-sas01.png

    Install "for anyone who uses this computer".


    I have contracted a Virus that shows many Ads-sas02.png


    Decline the Trial


    I have contracted a Virus that shows many Ads-sas03.png

    Update the virus definitions

    I have contracted a Virus that shows many Ads-sas04.png


    Then click Scan This Computer. Select Custom Scan.

    I have contracted a Virus that shows many Ads-sas05.png

    Make sure all the boxes are checked at the top, and then click on the big plus sign, to tell it where you want it to scan.

    I have contracted a Virus that shows many Ads-sas06.png

    Select This PC, then local disk (C : )

    I have contracted a Virus that shows many Ads-sas07.png

    If selected properly, it should look like this:


    I have contracted a Virus that shows many Ads-sas08.png

    Click Start Scan.


    I have contracted a Virus that shows many Ads-sas10.png


    Tracking cookies are nothing to worry about, but they should be cleaned every now and then.
    Last edited by simrick; 16 Nov 2015 at 22:34.
      My Computer


  10. Posts : 142
    dual boot win10/win7
       #50

    I do not wish to derail the thread, but what "Adobe" was downloaded? Was it Flash, or Acrobat?
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 19:42.
Find Us




Windows 10 Forums