Windows 10: I have contracted a Virus that shows many Ads Solved

Page 5 of 17 FirstFirst ... 3456715 ... LastLast
  1.   My ComputerSystem Spec

  2.    16 Nov 2015 #42

    For simrick


    I've never used the clipboard on Windows 10; how do I find it?

    I made a document for the earlier Scan Log:

    Malwarebytes AM 11-16-2015 11.31 pm.docx
      My ComputerSystem Spec


  3. Posts : 12,432
    W10Prox64
       16 Nov 2015 #43

    You will see the scan logs if you click APPLICATION LOGS on the top left:

    Click image for larger version. 

Name:	mbam-scan-logs.PNG 
Views:	1 
Size:	188.7 KB 
ID:	48667

    Select "copy to clipboard". Then put your cursor in the answer box here, and right-click and select PASTE. That's it - the clipboard works behind the scenes - you never see it, but it's there.
      My ComputerSystem Spec

  4.    16 Nov 2015 #44

    For simrick


    I thought I would try the clipboard method: here is the earlier Scan Log again: There are 406 files:

    Malwarebytes Anti-Malware
    Malwarebytes | Free Anti-Malware & Internet Security Software

    Scan Date: 11/16/2015
    Scan Time: 11:31 AM
    Logfile:
    Administrator: Yes

    Version: 2.2.0.1024
    Malware Database: v2015.11.16.04
    Rootkit Database: v2015.11.14.01
    License: Trial
    Malware Protection: Enabled
    Malicious Website Protection: Enabled
    Self-protection: Disabled

    OS: Windows 10
    CPU: x86
    File System: NTFS
    User: User

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 353770
    Time Elapsed: 29 min, 21 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 1
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerConsole.exe, 924, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a]

    Modules: 0
    (No malicious items detected)

    Registry Keys: 27
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\bsdriver, Delete-on-Reboot, [b5ff0a746f1c4fe79d0eec8b24e0e21e],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\APPID\{6306dc18-167c-4bfa-9c77-469dc02cc127}, Quarantined, [d9db0f6f5b300432f56480c3ae541be5],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\APPID\{6dfe2004-9287-41c3-be29-cf2b0d3138a9}, Quarantined, [7c38afcf93f8d75f87d3ea5934ceff01],
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{71C1D63A-C944-428A-A5BD-BA513190E5D2}, Quarantined, [476d6a14216ac96de641f93d10f257a9],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{71C1D63A-C944-428A-A5BD-BA513190E5D2}, Quarantined, [476d6a14216ac96de641f93d10f257a9],
    PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [258fd3ab107b8aacf248cb705ba7718f],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\INTERFACE\{D00BCE5B-A428-45CB-ABA3-BF3EFD1EE161}, Quarantined, [9222ed91c1ca6ec8fb9bfb151de5d927],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\TypeLib\{87129AC5-E754-4EA9-B521-7671C0AD4889}, Quarantined, [a1135925e7a4fc3a84127e925ba7738d],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\CLASSES\INTERFACE\{B03CD630-51ED-4B15-974C-76472E4624C0}, Quarantined, [10a4abd34c3f50e6b24f50e75ca61ce4],
    PUP.Optional.MindSpark, HKLM\SOFTWARE\CLASSES\TypeLib\{E38FA7CB-C053-4B07-84AD-BCA6D2BE4FE7}, Quarantined, [4d672856d1bacd6959a81f18a161b64a],
    PUP.Optional.NowUSeeItPlayer, HKLM\SOFTWARE\NowUSeeItPlayer, Quarantined, [8c28a2dc1477be78f526bf19cc37c13f],
    PUP.Optional.Yontoo, HKLM\SOFTWARE\VideoTile, Quarantined, [555f85f97f0cde583d7cb1d77191b24e],
    PUP.Optional.SystemHealer, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemHealer Monitor, Delete-on-Reboot, [0ba9dda1206b62d48b0802d6956e07f9],
    PUP.Optional.SystemHealer, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemHealer Run Delay, Delete-on-Reboot, [50642658becd68ce0192b91f996a8878],
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BROWSER.EXE, Quarantined, [f8bc136bec9f94a223443b9dc0437e82],
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\WOW6432NODE\shopperz101120150230, Quarantined, [b400b6c8d4b79e98ae9035280003e41c],
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\WOW6432NODE\shopperz121120151540, Quarantined, [bafa7c02038873c3d36b1d40966d60a0],
    PUP.Optional.SearchModule, HKLM\SOFTWARE\WOW6432NODE\SEARCHMODULE\SMUpd, Quarantined, [268e5925a6e593a3db0c0689b25154ac],
    Rootkit.Komodia.PUP, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7],
    PUP.Optional.CinePlus, HKU\S-1-5-18\SOFTWARE\CinePlus-1.44V09.11-nv-ie, Quarantined, [24903d41345744f2e982283fbe45916f],
    PUP.Optional.CinePlus, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\CinePlus-1.44V09.11-nv-ie, Quarantined, [4d67d5a90e7d78be34372245659e4eb2],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\NowUSeeItPlayer, Quarantined, [fdb7631b7912c86e241155780102a858],
    PUP.Optional.Searching, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\jlcgehabolcakkjhgmgpkagpolbjlhfa, Quarantined, [4c680a7492f9c96dda02ddac7b870ef2],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\nowuseeitplayer.com, Quarantined, [ab09d5a96922eb4bb8ee23b0f70c50b0],
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\ui.nowuseeitplayer.com, Quarantined, [9d17abd3ccbf082e4462993aaf548779],
    PUP.Optional.CrossRider, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9563BC59-9556-4805-8CD4-886781779D8D}, Quarantined, [9a1a106e9af1a591b1335d794ab9a759],
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER, Quarantined, [dada0e703d4e072f05bc32a6db28e020],

    Registry Values: 18
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{26842a09-ffa8-4e2c-ae12-0c80f01c3295}, Quarantined, [22922f4fb6d582b4a3e55bda5da59f61],
    PUP.Optional.MindSpark, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{26842A09-FFA8-4E2C-AE12-0C80F01C3295}, Quarantined, [22922f4fb6d582b4a3e55bda5da59f61],
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\CLASSES\.XHTML\OPENWITHPROGIDS|CRSBRWSHTML, Quarantined, [f6bed5a9a3e8eb4b3fc106cd53b09d63],
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS, Crossbrowse, Quarantined, [af05710dadde1f17c11e98d26b984eb2]
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS|StubPath, "C:\Program Files\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level, Quarantined, [654ff38ba6e5d75f39a696d429da60a0]
    PUP.Optional.CrossBrowse, HKLM\SOFTWARE\MICROSOFT\ACTIVE SETUP\INSTALLED COMPONENTS|Localized Name, Crossbrowse, Quarantined, [862e1c62583348eec51ae585a16230d0]
    PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}|AppPath, C:\Program Files\Consumer Input\InternetExplorer, Quarantined, [a311acd290fbae8804106c3a48bb7c84]
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BROWSER.EXE, C:\Program Files\speed browser\Application\browser.exe, Quarantined, [f8bc136bec9f94a223443b9dc0437e82]
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{9652507D-C26A-43BB-bB34-01D771D29F20}, C:\Program Files\shopperz091120151629\Firefox\{9652507D-C26A-43BB-bB34-01D771D29F20}.xpi, Quarantined, [5e561e607e0d3006f937dd802ed59d63]
    PUP.Optional.Shopperz.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{6FA9B76E-BB43-4C4A-a80F-0B40A32260B7}, C:\Program Files\shopperz091120152358\Firefox\{6FA9B76E-BB43-4C4A-a80F-0B40A32260B7}.xpi, Quarantined, [4d6706783c4fec4ae34dd984ae55d927]
    PUP.Optional.Groover.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{350F8805-D431-4908-8701-57A62717BAF2}, C:\Program Files\groover121120151836\Firefox\{350F8805-D431-4908-8701-57A62717BAF2}.xpi, Quarantined, [d4e0f6887b107cba8c67b9a3b84ba25e]
    PUP.Optional.SpeedBrowser, HKLM\SOFTWARE\REGISTEREDAPPLICATIONS|speed browser, Software\Clients\StartMenuInternet\speed browser\Capabilities, Quarantined, [961e5628810a37ff84e48b4d8f74bf41]
    Rootkit.Komodia.PUP, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER|DisplayName, bsdriver, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7]
    PUP.Optional.CrossBrowse, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{E945514 6-3706-4494-B51A-6BCCE84619F4}, v2.24|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe|Name=Crossbrowse (mDNS-In)|Desc=Inbound rule for Crossbrowse to allow mDNS traffic.|EmbedCtxt=Crossbrowse|, Quarantined, [0fa51569a6e50036e25219bedb288779]
    PUP.Optional.CrossBrowse, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|GoogleChromeAutoLaunch_9BAB471B03D368FCB9DADC4CBC F42FCC, "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window, Quarantined, [4e662856e6a5f04622b92e3c37cc35cb]
    Adware.NowUSeeIt, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NowUSeeIt Player, "C:\Program Files\NowUSeeItPlayer\NowUSeeItPlayer.exe" /autostart=1, Quarantined, [5c5855291576b185bee94b88f50e22de]
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER|HomePage, Awesome PC Cleanup Tool | System Healer, Quarantined, [dada0e703d4e072f05bc32a6db28e020]
    PUP.Optional.SystemHealer, HKU\S-1-5-21-4156195948-2828175874-2147720042-1000\SOFTWARE\SYSTEM HEALER|SupportPage, Frequently Asked Questions | System Healer, Quarantined, [cbe9126c5734c96d328f2eaa9a6918e8]

    Registry Data: 0
    (No malicious items detected)

    Folders: 18
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio, Quarantined, [b103e49a117a42f448531f6cb74c817f],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.GamesDesktop, C:\Users\User\AppData\Local\gmsd_us_005010146, Quarantined, [e5cf6b134249e94d97af80eb986a10f0],
    PUP.Optional.GamesDesktop, C:\Users\User\AppData\Local\gmsd_us_005010146\Download, Quarantined, [e5cf6b134249e94d97af80eb986a10f0],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.125671, Quarantined, [71431a64a7e480b6cfe9b0bb24dec63a],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.341072, Quarantined, [486c7c02335863d37741fe6d39c99a66],
    PUP.Optional.NowUSeeItPlayer, C:\Program Files\NowUSeeItPlayer, Quarantined, [f1c397e76328a98d3505186dd32f6b95],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\WL, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs, Quarantined, [05afbdc17615092d8ef889f57e864cb4],

    Files: 342
    PUP.Optional.Shopperz.BrwsrFlsh, C:\Windows\System32\drivers\bsdriver.sys, Delete-on-Reboot, [b5ff0a746f1c4fe79d0eec8b24e0e21e],
    PUP.Optional.FastBrowser, C:\ProgramData\setup_56cf62a1bba847bbba3f56040e43d8ea.exe, Quarantined, [a014cbb384074cea538fc26a2fd16b95],
    PUP.Optional.ZombieInvasion, C:\ProgramData\jsrySFYScqs\dat\fsNCAculTex.dll, Quarantined, [cfe51e60e3a89a9c18ca33f4a85c52ae],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio\prompt.exe, Quarantined, [d7dd205e99f2112572be969423de19e7],
    PUP.Optional.Shopperz.BrwsrFlsh, C:\Windows\System32\drivers\cherimoya.sys, Delete-on-Reboot, [a80c334b7b1072c4ffac0770e222fd03],
    PUP.Optional.CrossBrowse, C:\Users\User\AppData\Local\Temp\1124.exe, Quarantined, [d7dd522cf09b92a479a15accee13df21],
    PUP.Optional.CinePlus, C:\Users\User\AppData\Local\Temp\1844.exe, Quarantined, [d4e0c2bcbbd03bfbcff07af734d019e7],
    PUP.Optional.BonDon, C:\Users\User\AppData\Local\Temp\mytmpinstaller.exe, Quarantined, [496b8af4b0db082e5badfa4734cdea16],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsa24C9.tmp, Quarantined, [06aea6d83c4f78be050a74b68a77d32d],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\nsa39B1.tmp, Quarantined, [01b339456328af87fc2afe443cc4ef11],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg9BE1.exe, Quarantined, [466e4a348ffcc175bcce1a82679a847c],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avg13CA.exe, Quarantined, [e1d31e609af1e6507ec22e1817e9d927],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg400.exe, Quarantined, [aa0a4c32cdbeed4971193963d13017e9],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avg6AC3.exe, Quarantined, [2a8a6f0f216a69cd2917a4a2eb151de3],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg79C6.exe, Quarantined, [a70d83fbd9b2ef4756344a522dd46898],
    Adware.Imali, C:\Users\User\AppData\Local\Temp\avg9906.exe, Quarantined, [872dcbb3662562d48ffbbfdd8b76bd43],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nslA9A0.tmp, Quarantined, [f8bccdb1870461d550418ca2e61ad62a],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn5D58.tmp, Quarantined, [aa0a78065a3156e09190dc2431d016ea],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn6204.tmp, Quarantined, [3a7a730b305b58deef3202fe8e732cd4],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nso7BCB.tmp, Quarantined, [1d97d0ae95f61a1c1b0f39d729d99769],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsp68A4.tmp, Quarantined, [456fc5b9e1aa4ceab76a04fc30d1a060],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsx6F49.tmp, Quarantined, [74408bf3dbb0a69077582174cb36ee12],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsxA91F.tmp, Quarantined, [a90bd7a7880337ffd24ffb0505fc7e82],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsxB7F6.tmp, Quarantined, [32822559008bd75fe93829d754ad38c8],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsxDFB3.tmp, Quarantined, [bcf8225c503b1026ad22f3a214ed47b9],
    PUP.Optional.NoteUp, C:\Users\User\AppData\Local\Temp\nsy4790.tmp, Quarantined, [813381fdf695a98d4e7c1e2ea65b36ca],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsy67E7.tmp, Quarantined, [5d570975711a330352bdcf5b99680ef2],
    PUP.Optional.CouponMarvel, C:\Users\User\AppData\Local\Temp\nsyDF2A.tmp, Quarantined, [3381205edead04327de4dda98e7313ed],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsyFC7C.tmp, Quarantined, [159f48364d3ec076d13f9f06c43de41c],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nszC930.tmp, Quarantined, [338167175437d066cc43f1394eb32cd4],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nscCC3D.tmp, Quarantined, [a410c8b6e8a3ed49cf2a3eba37ca13ed],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nscE159.tmp, Quarantined, [a311017dcbc051e52c65b67832ceea16],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsd6968.tmp, Quarantined, [6b49dea0cdbe41f5ce01d4c108f9c53b],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsdAA95.tmp, Quarantined, [dcd82c524447a88e2ee1dd4d79889868],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nse20B6.tmp, Quarantined, [387c7fffa2e976c0a180bc444fb24cb4],
    Adware.SilentInstaller, C:\Users\User\AppData\Local\Temp\nsf8E4E.tmp, Quarantined, [ad07ed915932fb3b735c30655ca5ba46],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsfE732.tmp, Quarantined, [585cb3cb4b40231313fd574e956c05fb],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nsg57B2.tmp, Quarantined, [2b893a446d1ed363c2375d9bc33e29d7],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsgA489.tmp, Quarantined, [5361512d47446ec857ca679924ddc13f],
    PUP.Optional.NoteUp, C:\Users\User\AppData\Local\Temp\nsgBE4E.tmp, Quarantined, [02b280fed0bb999d973363e9b64b6d93],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd16E7.exe, Quarantined, [05af2c52d2b9e45256f674bc50b0ca36],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd25F6.exe, Quarantined, [526218660e7d8bab82cafa36ff014db3],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsd56D3.exe, Quarantined, [7b39d9a5206bb3832e1e85ab16ea827e],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdA11C.exe, Quarantined, [466ed9a53c4f8caaaaa265cbe51bcf31],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdCC13.exe, Quarantined, [e5cfea94bad180b6ad9fe74917e98d73],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdD412.exe, Quarantined, [4c68d6a85734cd69103c56daf709ae52],
    PUP.Optional.Bundler, C:\Users\User\AppData\Local\Temp\fsdE4D.exe, Quarantined, [7b39e29cef9c5ed89bb1b47c9f61ba46],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\avgA249.exe, Quarantined, [694be7973952a98d6ad62323fc04a25e],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun9458.exe, Quarantined, [3f75b6c8791244f28e0dcecdec15fb05],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\setup_ra.exe, Quarantined, [09abb6c8b0db280eba8044afba474db3],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{813A89B7-BBBA-42C9-A78E-97D7157EC987}.dll, Quarantined, [d8dc542abad144f2922f2031b44dc838],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{FF82C726-1A84-46F4-B820-693F5A869A22}.dll, Quarantined, [c1f36c126b2078bef3cec1908f729d63],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{4BF2F589-F66F-47AF-8631-D8DF831F725F}.dll, Quarantined, [892b5d217f0c65d1a918272ad72a5da3],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{5ED61B35-A1B1-478E-A7EC-1BF870DCA326}.dll, Quarantined, [4d6795e9addefd39665b1f3258a928d8],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\{61529F72-25C1-4A0C-96B3-6BEBB09929D8}.dll, Quarantined, [14a0d0aeacdf2d09b60b430efe03d729],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nshC2C1.tmp, Quarantined, [5a5adea0aae1dd5964abe04a917023dd],
    PUP.Optional.MaxDriverUpdater, C:\Users\User\AppData\Local\Temp\nsi524E.tmp, Quarantined, [ded6fb83e0abcf67bb358113679a5da3],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsiF6BC.tmp, Quarantined, [1e9685f95c2f2511c24dc763af520cf4],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nsj96E4.tmp, Quarantined, [e0d41b63fd8ebb7b32f88b85cd358f71],
    PUP.Optional.VBates, C:\Users\User\AppData\Local\Temp\nsjB387.tmp, Quarantined, [c7ed423c612a2b0b3073a5f65ba616ea],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsjFE92.tmp, Quarantined, [f2c2c5b9880396a05fb1dec742bf3ac6],
    PUP.Optional.Compete, C:\Users\User\AppData\Local\Temp\nsk2586.tmp, Quarantined, [4a6ad8a6206b3ef8a8c15d1a34d0c43c],
    PUP.Optional.TVTime, C:\Users\User\AppData\Local\Temp\nsk8F51.tmp, Quarantined, [a90b0b733d4ecc6ab6db082621dfe719],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nskD6B4.tmp, Quarantined, [3f758af43655ff37e24854bca65cb24e],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsl4CEF.tmp, Quarantined, [6b4993eb0289df57709fe14940c1e21e],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\nsqD1EA.tmp, Quarantined, [bdf7e5990883e84ef21209709d6714ec],
    Trojan.Downloader, C:\Users\User\AppData\Local\Temp\nsr2DD8.tmp, Quarantined, [b202225c4a4115214f541239fd07f20e],
    PUP.Optional.Imali, C:\Users\User\AppData\Local\Temp\nsr5F1D.tmp, Quarantined, [12a290eeed9ec27448e2f61a2fd39f61],
    PUP.Optional.OutBrowse, C:\Users\User\AppData\Local\Temp\nss23C.tmp, Quarantined, [b1037707682353e38282a464689960a0],
    PUP.Optional.CinePlus, C:\Users\User\AppData\Local\Temp\nss65BA.tmp, Quarantined, [0aaafc825d2e26101aa5ee83d03440c0],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nssBB8D.tmp, Quarantined, [11a32c52dbb00a2c36d9e9417091dc24],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nstB666.tmp, Quarantined, [159f6d119fecaa8cc35ea15f7b86d729],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\nstD1BC.tmp, Quarantined, [6054c2bc8dfe989eba9f80b6bc459e62],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\nstEFAE.tmp, Quarantined, [4a6adca22e5d50e6c2ff460b46bb916f],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun11169.exe, Quarantined, [e4d0314d6b2062d42392316581809a66],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun12186.exe, Quarantined, [e7cd8ef05338f73f4853b9e25ea36a96],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17592.exe, Quarantined, [0ca8e599d8b3082e595c8e08ca374db3],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17671.exe, Quarantined, [367e4e30b9d238fe6e2d801b0100a35d],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun17920.exe, Quarantined, [72425b23bdce63d30992900b37ca5da3],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun20869.exe, Quarantined, [e4d06a140982191dad08badc7988c739],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun28520.exe, Quarantined, [4a6acbb396f5ca6ccee7425424dda957],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun28909.exe, Quarantined, [f9bbfe80b3d8fd39bddee5b6cd34e41c],
    Adware.PennyBee.WnskRST, C:\Users\User\AppData\Local\Temp\oprun32547.exe, Quarantined, [179d8df1c5c640f67d1e46550cf5d12f],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun5249.exe, Quarantined, [43719be37318350152638e0860a1ae52],
    PUP.Optional.Komodia.WnskRST, C:\Users\User\AppData\Local\Temp\oprun5780.exe, Quarantined, [9a1a413d66253501862fc3d3cf320ff1],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsa7CC7.tmp, Quarantined, [763e7fffacdf0b2b30df77b39071d927],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsaA1AC.tmp, Quarantined, [308457272d5eb383ca46fea7e51c46ba],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsb3CBF.tmp, Quarantined, [b9fb027ccebd76c026fb669ab1503bc5],
    PUP.Optional.ConvertAd, C:\Users\User\AppData\Local\Temp\nsbB66B.tmp, Quarantined, [0ba92b534249013534c542b61ee3f10f],
    PUP.Optional.PreInstaller, C:\Users\User\AppData\Local\Temp\nsbE692.tmp, Quarantined, [8430017d03886fc74cc3af7ba061df21],
    PUP.Optional.BrowseFox, C:\Users\User\AppData\Local\Temp\nsbF657.tmp, Quarantined, [0ca84f2fec9fca6c45cbe1c432cfb64a],
    PUP.Optional.Yontoo, C:\Users\User\AppData\Local\Temp\nsc52AC.tmp, Quarantined, [31831d6194f79d99655c86cb0df448b8],
    PUP.Optional.WebShield, C:\Users\User\AppData\Local\Temp\ef46eb29-6caa-4790-a550-cfd272b3af48\setup.exe, Quarantined, [4b696a14ec9fed49ac130826c53b7c84],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdate.exe, Quarantined, [82324d31b6d51521ddaaca25b14f669a],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateBroker.exe, Quarantined, [72424a34e2a9bd79a7e0a34cf30d01ff],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateCrashHandler.exe, Quarantined, [7d37a2dc8704b58136511bd4946c8878],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateOnDemand.exe, Quarantined, [e4d0027ce9a20e284146c42b26daea16],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\goopdate.dll, Quarantined, [bcf82559711a2412f1962ac5a957cf31],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\goopdateres_en.dll, Quarantined, [00b4d4aa3754a690573096598d73966a],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\npglobalupdateUpdate4.dll, Quarantined, [dbd9106e8803bd79266168871ae67e82],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\psmachine.dll, Quarantined, [cee66717345779bd0087fff001ff57a9],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.125671\psuser.dll, Quarantined, [eec679057417c2749fe820cff40cd729],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.341072\globalupdate.exe, Quarantined, [8a2a9fdf5a31d066305745aa32ceb947],
    PUP.Optional.ModGoog, C:\Users\User\AppData\Local\Temp\comh.341072\globalupdateCrashHandler.exe, Quarantined, [cee6027c4447171f7413777828d843bd],
    PUP.Optional.Watchman, C:\Users\User\AppData\Local\Temp\Install_5108\ins_smknnodesk.exe, Quarantined, [2a8a2f4f0685999dc38735515fa2ac54],
    PUP.Optional.Wajam, C:\Users\User\AppData\Local\Temp\f1dd1725-0b5f-466a-82f9-caaad45eb85f\wwe_1.54.1.13.exe, Quarantined, [932147371873b1858bfc64e53dc437c9],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\846bb3cf-5963-4b38-8c7d-57d8fe506ee3\braiegut_gutbl_inst.exe, Quarantined, [aa0a88f603883afc0d19c37f60a04fb1],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsmDA57.tmp\nsCBHTML5.dll, Quarantined, [9321ff7fafdc211526fb6997d22f5ba5],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsn2ABE.tmp\nsCBHTML5.dll, Quarantined, [b5ff86f898f3e74fe33ee51b6b96847c],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsw7EB.tmp\nsCBHTML5.dll, Quarantined, [714396e8d7b4c67074ad23dd42bfbf41],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsyCAF7.tmp\nsCBHTML5.dll, Quarantined, [a1130b73d2b9e6509889857b12ef2ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\380.exe, Quarantined, [f8bccbb36e1d9c9a1c9bd6507988946c],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\381.exe, Quarantined, [dada9ae4ed9e56e0338428fe70919d63],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\420.exe, Quarantined, [e8cc9ae42f5c0333dfd873b3fb06738d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\465.exe, Quarantined, [5460c5b9f695bd7944735dc95da4b34d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\473.exe, Quarantined, [348068161e6d2214e9cedc4a22df857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\609.exe, Quarantined, [298b225c266504325e59180e0ff2b44c],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_AnySend_installer_multilang.exe, Quarantined, [4371b8c66427270f219666c0bf42ed13],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7c38641acac19a9cc2f5b67020e14ab6],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J2UUC.tmp\package_speedup_installer_multilang.exe, Quarantined, [06ae07779cef42f43384c06644bd55ab],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\380.exe, Quarantined, [367e1f5fed9e5adc15a2a482ae53e11f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\381.exe, Quarantined, [763ee9957318092d774001253ec3837d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\420.exe, Quarantined, [1a9ac8b6b9d20333edca180e4cb5a15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\609.exe, Quarantined, [13a128564b408da9704757cf738e07f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [33810c72543745f107b035f147ba43bd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_AnySend_installer_multilang.exe, Quarantined, [2b8986f8cfbc2016bef9c75f46bb7987],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [ded6156995f6ef479f1829fd936edd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-J58A4.tmp\package_speedup_installer_multilang.exe, Quarantined, [7a3af08e1f6c03337443d254c73ad52b],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-JFFA6.tmp\gentlemjmp_ieeuu.exe, Quarantined, [e0d4126cf99262d47c786d2d25dcf010],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-JQ619.tmp\gentlemjmp_ieeuu.exe, Quarantined, [189c3648424973c3ef05d6c4867b6799],
    PUP.Optional.PCSpeedUp, C:\Users\User\AppData\Local\Temp\is-KP86D.tmp\speedup_soft_partner.exe, Quarantined, [4470047acebd59dd775961c8af527789],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\381.exe, Quarantined, [496b700e4e3ddc5a704730f65ca5fc04],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\583.exe, Quarantined, [00b4dda14c3f4fe77b3cfc2a7a87d32d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-KTT7I.tmp\623.exe, Quarantined, [a90b1767f09bb5816e4941e5a160a957],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-KVHKK.tmp\465.exe, Quarantined, [d2e2017d800b072fcb39e6931be92bd5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\380.exe, Quarantined, [64503e40c6c51c1a793e94928d7407f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\381.exe, Quarantined, [2f85bac4533803335067e93d0cf5bc44],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\420.exe, Quarantined, [42724d311c6f36002592a97da859c33d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\583.exe, Quarantined, [90246c122269f6406354dc4ab74a4db3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\609.exe, Quarantined, [10a4d3ab2368db5bd2e5be689c6551af],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\623.exe, Quarantined, [5e568ef0aedd41f5d9de2ef8fd0404fc],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\666.exe, Quarantined, [3084324c7d0e2e08981f1e0823de669a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\667.exe, Quarantined, [2b89daa4098263d3694eef376c95837d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [fbb95a246823e056d9deb07613eef60a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_AnySend_installer_multilang.exe, Quarantined, [b5ffbbc3d8b3b2847641df4719e8d32d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [268e146a3754eb4bc7f0dc4ad42d2dd3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LEKJ7.tmp\package_speedup_installer_multilang.exe, Quarantined, [3d777b0396f51f172394e64000017c84],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LK322.tmp\package_AnySend_installer_multilang.exe, Quarantined, [12a2225ce3a8f3435f58bc6a4ab79b65],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\380.exe, Quarantined, [dcd8cdb17c0fae884473d254748db947],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\381.exe, Quarantined, [f9bb5c22ee9dae88c9ee889ee819867a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\420.exe, Quarantined, [4e664a34e4a793a312a5062059a8f50b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\465.exe, Quarantined, [199be995dcafd1657047fa2c48b93fc1],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\473.exe, Quarantined, [872d007ec2c96dc95d5ae1458978f808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\609.exe, Quarantined, [d6de720cacdfbd79a512978f4fb29967],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\666.exe, Quarantined, [3381c9b5afdc0f27e4d32afc4eb3f30d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\667.exe, Quarantined, [ddd7b2ccef9c1c1a2a8d39ed649d0af6],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [a311d4aa93f843f34c6be244af5207f9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_AnySend_installer_multilang.exe, Quarantined, [ac08512d8a018ea8991eb96dcd3419e7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1d97601ec4c754e2e1d64bdb946d08f8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-LQPRJ.tmp\package_speedup_installer_multilang.exe, Quarantined, [c5eff48ac7c457dfd5e204228180f60a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-M0PDS.tmp\583.exe, Quarantined, [bff59de118737cba496e57cf9d64f20e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-M0PDS.tmp\667.exe, Quarantined, [14a0d6a8810ab482c8efa28405fc58a8],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-M1UPG.tmp\465.exe, Quarantined, [f3c187f77912de589e660970798bf808],
    PUP.Optional.SystemNotifier, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_152.exe, Quarantined, [674d631b731872c41d67f1818d7720e0],
    PUP.Optional.SilentInstaller, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe, Quarantined, [4f65245a5239d561093757ef07f9867a],
    PUP.Optional.Jogotempo, C:\Users\User\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\Extracted\adv_128.exe, Quarantined, [496b3a44ec9f76c0f1fde4b00af72ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\380.exe, Quarantined, [09ab8af4206b8bab23942afc000153ad],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\420.exe, Quarantined, [3b79750972195cdaf9be899d758c669a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\465.exe, Quarantined, [8f25c3bba7e460d68730c5617f829769],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\package_AnySend_installer_multilang.exe, Quarantined, [367ea2dc3e4d55e19423ad792bd6f808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0UH8L.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [caea28560487350117a084a257aa9c64],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-1IQ49.tmp\gentlemjmp_ieeuu.exe, Quarantined, [9f158bf3ef9c5bdb767e7d1d669ba15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\380.exe, Quarantined, [a90b1e601f6c58deac0bf6301ae713ed],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\381.exe, Quarantined, [b400afcf5635c472744333f33cc57a86],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\420.exe, Quarantined, [0ea648361d6ece68764115110ef34cb4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\609.exe, Quarantined, [793b691592f93105774082a431d06c94],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_AnySend_installer_multilang.exe, Quarantined, [466e027ca2e9d0668c2b30f603feb848],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [c5efa0de5c2f77bfd6e1e64001008a76],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-1S585.tmp\package_speedup_installer_multilang.exe, Quarantined, [b8fcadd1682359dda7105fc77e838a76],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-2PHT7.tmp\643.exe, Quarantined, [5d57a2dc35562a0ca41349dd6998f50b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-2PHT7.tmp\667.exe, Quarantined, [674d3f3feba03df9a71040e6679a03fd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\380.exe, Quarantined, [d6de92ecc1ca4fe702b572b42bd6cc34],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\381.exe, Quarantined, [bdf75826d9b24de95760ae78ce3338c8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\420.exe, Quarantined, [ddd73846781390a6a80fe2444cb58e72],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\465.exe, Quarantined, [f0c4e49a226915210daaa5812fd2ef11],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [e1d3047a2368a591c3f452d42fd229d7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_AnySend_installer_multilang.exe, Quarantined, [a113324ce5a630068037f92d14edf808],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [d4e0017dcebd11258c2b49dd04fd9769],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-34A07.tmp\package_speedup_installer_multilang.exe, Quarantined, [7a3aa3dbe2a9f83ee3d40125c04107f9],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-34HF9.tmp\gentlemjmp_ieeuu.exe, Quarantined, [dfd57905216aed49d91b2c6e9b66db25],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-3M4I1.tmp\package_AnySend_installer_multilang.exe, Quarantined, [faba5529dfac3006c5f2f03639c8e21e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\583.exe, Quarantined, [971d0f6feaa1a690635437ef8b76dd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\667.exe, Quarantined, [951f9be33d4e261008af34f2e41d728e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [70446e10e7a40d29199e26002cd5bb45],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_AnySend_installer_multilang.exe, Quarantined, [5a5a3f3ff59669cd54631f072bd69967],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1b9994ea2269a6909423170fdd24728e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-93AP1.tmp\package_speedup_installer_multilang.exe, Quarantined, [4e660f6fed9ecb6b3e79ec3aa35e748c],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-9D4JG.tmp\gentlemjmp_ieeuu.exe, Quarantined, [5262037be8a33402f6fe8812a958e917],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\380.exe, Quarantined, [caeaff7ffd8e45f18b2c45e1c140857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\381.exe, Quarantined, [e8cc5628eba0ea4cfcbb41e5f70af10f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\420.exe, Quarantined, [eec64e300c7f95a1feb9ef37e31eff01],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\465.exe, Quarantined, [fabae896a4e7b383576063c3c63ba35d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\473.exe, Quarantined, [cde73945573441f534835dc939c8e020],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\609.exe, Quarantined, [8b292e50deadde58bdfab472b64b7e82],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\666.exe, Quarantined, [991ba6d815763afcb8ff96909f62dc24],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\667.exe, Quarantined, [23918df1513ac076902770b65ea3a15f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [3a7ac6b814777db9b50241e507fa47b9],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_AnySend_installer_multilang.exe, Quarantined, [5f557707dead73c3783fcf57ec151be5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7f35dda1d5b6cc6a92250a1c47baa957],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-T4QK6.tmp\package_speedup_installer_multilang.exe, Quarantined, [674d46386c1f2c0ab10655d1f70aaf51],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-TNCIF.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7b39e8968efd47ef609469313ec3718f],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-TUDD8.tmp\gentlemjmp_ieeuu.exe, Quarantined, [e1d3f18de5a6c27482722f6b936efc04],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-U2L4R.tmp\gentlemjmp_ieeuu.exe, Quarantined, [169ed4aa810a082e2ec643579a6738c8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0ABA7.tmp\381.exe, Quarantined, [d7ddc8b69fec6ec8ab0ca08640c1a55b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-0ABA7.tmp\465.exe, Quarantined, [02b23d412d5e5ed8b10657cf22df15eb],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\380.exe, Quarantined, [b3011f5f08837eb8bef9de48c140926e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\420.exe, Quarantined, [12a20a74d8b351e565520224c0416799],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\465.exe, Quarantined, [d9dbdaa40289d264ebcc7da9c938b34d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\package_AnySend_installer_multilang.exe, Quarantined, [6b493b43117ae2545463b17533ce28d8],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ASQQT.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [951ffa84800bef47d9dedb4be021728e],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-SI7V0.tmp\gentlemjmp_ieeuu.exe, Quarantined, [2e86fe8056352b0b32c2504afb06f20e],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nshC202.tmp\nsCBHTML5.dll, Quarantined, [4074215dc2c90a2cc45de31d0ef3cf31],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nss67E7.tmp\nsCBHTML5.dll, Quarantined, [3f75d4aa8704e74f73ae1ae633ce13ed],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-CE298.tmp\Z2VudGxlbWptcF9pZWV1dQ==.exe, Quarantined, [9c18bdc1b3d88fa723d1ebafd8298779],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-CJMR9.tmp\gentlemjmp_ieeuu.exe, Quarantined, [f4c0324cf6950a2c2cc8a8f2748d26da],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-D4OF0.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7c38136bbccf24125b993a602ed30ff1],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-D6FMP.tmp\gentlemjmp_ieeuu.exe, Quarantined, [2d875e20a9e2b284bb39bddd7d841ae6],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-DRDQF.tmp\465.exe, Quarantined, [9f15542ab9d2a88e5fa5e6931ee618e8],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-F7Q0G.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7c3878060c7f44f248ac0c8eba47659b],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-GQUV5.tmp\gentlemjmp_ieeuu.exe, Quarantined, [664ea7d75f2ca5919d577e1ce51c35cb],
    PUP.Optional.SwiftSearch, C:\Users\User\AppData\Local\Temp\is-I27MC.tmp\465.exe, Quarantined, [34809be326657abc52b2e99006fe8c74],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-I56C2.tmp\gentlemjmp_ieeuu.exe, Quarantined, [9b19e29ceba069cd9c58108af40d59a7],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Temp\is-I9JJ3.tmp\brakietut_tutbl_setup.exe, Quarantined, [e8cc27572764c07631f5cd75a060af51],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-NOM8C.tmp\gentlemjmp_ieeuu.exe, Quarantined, [ac086a14f3983006c133debcfb06cd33],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\420.exe, Quarantined, [6351e29ce3a8270fedca2df9bc4533cd],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\667.exe, Quarantined, [ecc897e7d0bbb284a0170c1a69980ef2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [edc7730be8a306309522c75f8879916f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_AnySend_installer_multilang.exe, Quarantined, [a50f4638b0dbb482358280a6eb16e51b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [7e363b43a0eb5dd92f8847df17ead22e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-O23A4.tmp\package_speedup_installer_multilang.exe, Quarantined, [357f047aef9c53e3684fe5414eb3b848],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_speedup_installer_multilang.exe, Quarantined, [14a066181576072f397e2105fe030df3],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\381.exe, Quarantined, [c9ebe19db5d638fe783f6eb8966b7090],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\420.exe, Quarantined, [8a2a3c42eba0c86e11a6b47281806f91],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\465.exe, Quarantined, [5e564b33810a0531eccb40e659a849b7],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\473.exe, Quarantined, [a113fa84a1ea72c49126091d0cf58977],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\583.exe, Quarantined, [08aca1dd0883a096a5126cba728f956b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\609.exe, Quarantined, [456f106e800b43f32d8a92945ea3629e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\661.exe, Quarantined, [5a5a9ae42863e452189f0b1b91703bc5],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\666.exe, Quarantined, [b400b1cd107b1422c7f0e73f19e8768a],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\667.exe, Quarantined, [c4f0dda1f992f0465c5b0422aa57dd23],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_airwebbar_installer_multilang.exe, Quarantined, [14a0f18d0e7dfb3b1e99cc5abb466799],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_AnySend_installer_multilang.exe, Quarantined, [6351fe80820938fee2d5ab7ba45d2cd4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-ODVKK.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [1f95dda15338d1652691f13510f107f9],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-R0G9I.tmp\gentlemjmp_ieeuu.exe, Quarantined, [7440fc82cac1ea4c83714f4b0cf5857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\465.exe, Quarantined, [b10347375c2fb482f8bf67bfac553cc4],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\643.exe, Quarantined, [c5ef82fc4744092d496e9c8af20f916f],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RCCFB.tmp\667.exe, Quarantined, [4a6af18d4843a492d1e6f92de120b24e],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\380.exe, Quarantined, [0ea63f3f6229b4824473fb2bc938a35d],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\381.exe, Quarantined, [9024d5a9b7d4cd698334260039c82ed2],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\420.exe, Quarantined, [e8ccf688602b46f09027ff2759a813ed],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\465.exe, Quarantined, [4470205ed0bb5cda9324e1458a7712ee],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\473.exe, Quarantined, [5c589ce22467de5826919a8c32cf857b],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\609.exe, Quarantined, [9a1a1965e7a4d660ebcce541dc256997],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_AnySend_installer_multilang.exe, Quarantined, [f0c4225c0586df57e0d758ceb54c21df],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_bubbledock_installer_multilang.exe, Quarantined, [06ae4539a7e4e1555b5cc75f808136ca],
    PUP.Optional.EoRezo, C:\Users\User\AppData\Local\Temp\is-RQJR3.tmp\package_speedup_installer_multilang.exe, Quarantined, [1e9605794d3e2b0b0ea93bebeb164ab6],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\Temp\is-RVNB5.tmp\gentlemjmp_ieeuu.exe, Quarantined, [8034037b58333303fbf97f1b649dee12],
    PUP.Optional.MaxDriverUpdater, C:\Users\User\AppData\Local\Temp\SWOD6EZU7K\newversion.exe, Quarantined, [f3c1d7a70e7dac8a40ea5ee6b24f768a],
    PUP.Optional.CheckOffer, C:\Users\User\AppData\Local\Temp\nsbB30E.tmp\nsCBHTML5.dll, Quarantined, [e8ccccb27219dc5a9c85ab55f50c946c],
    PUP.Optional.OneSystemCare, C:\Users\User\AppData\Local\Temp\dc51d451-32b2-4cf4-8cf8-8cf6cf26bdca\onesystemcare.exe, Quarantined, [f4c0a3db55369d998d286b0dc83cfb05],
    Trojan.Symmi, C:\Windows\Temp\2728.tmp.exe, Quarantined, [1e967905216a10265944217bfb067d83],
    PUP.Optional.ConvertAd, C:\Windows\Temp\A1F1.tmp, Quarantined, [159fc3bb1477f04635d1b19ace36718f],
    Trojan.Symmi, C:\Windows\Temp\E1DD.tmp.exe, Quarantined, [288c97e7098260d6c3daadefe21f55ab],
    PUP.Optional.FastBrowser, C:\Windows\Temp\nsp7E54.tmp\Installer\setup.exe, Quarantined, [ddd70f6f5b30eb4b875bdd4f9967f20e],
    PUP.Optional.InstallCore, C:\Users\User\Downloads\AdwCleaner Setup.exe, Quarantined, [e6ce542a4645ca6cc1d0b7e1b54c5aa6],
    PUP.Optional.SoftPulse, C:\Users\User\Downloads\Setup.exe, Quarantined, [f8bc87f7a4e72b0b1e0ac7851ee34ab6],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_13416\braiegut_gutbl_inst.exe, Quarantined, [c7ed265825667bbb3ee8330f9c64f010],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_31873\brakietut_tutbl_setup.exe, Quarantined, [cbe99ae4503b3bfb56d054ee1ce42dd3],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_6757\nsa39B1.tmp, Quarantined, [4371add1c2c996a0fb2b83bf09f75da3],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_820\nsa39B1.tmp, Quarantined, [7d37f5896d1e7bbb59cd90b2728ec43c],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_8760\braiegut_gutbl_inst.exe, Quarantined, [c1f37fffb8d3a096eb3b90b26799966a],
    PUP.Optional.Amonetize, C:\Users\User\AppData\Local\Installer\Install_9513\brakietut_tutbl_setup.exe, Quarantined, [5e56f6884a419b9b3de98fb307f9e61a],
    PUP.Optional.Tuto4PC, C:\Users\User\AppData\Local\gmsd_us_005010146\Download\myoffergroup_us6.exe, Quarantined, [2e8696e8b1da9e9842b2b5e517ea22de],
    Rootkit.Agent.A, C:\Windows\System32\drivers\cherimoya.sys, Delete-on-Reboot, [00b4720c9af1f83edd5fd9b622e07987],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun11169.exe, Quarantined, [03b1007e4b402e083fc85b80ea18b44c],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun17592.exe, Quarantined, [6d470c72513a013548bf6f6c7b87aa56],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun20869.exe, Quarantined, [c3f1d2ac1a71c1752ed98457fd0516ea],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun28520.exe, Quarantined, [4b691b63c9c2be789c6b8952748ef808],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun420.exe, Quarantined, [278db9c50586cd6907007f5c4eb46a96],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun5249.exe, Quarantined, [813385f9682365d121e684578979d927],
    Trojan.Agent, C:\Users\User\AppData\Local\Temp\oprun5780.exe, Quarantined, [e6ce522c0883d066e91e716a3ac85da3],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1\oohnagee.exe.config, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\1.0.6.1\sqlite3.dll, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate.Gen, C:\ProgramData\Fsaksaeelkida\dat.dat, Quarantined, [ded625595e2db4823bb9e7719370966a],
    PUP.Optional.PullUpdate, C:\ProgramData\Radio\prompt.exe.config, Quarantined, [b103e49a117a42f448531f6cb74c817f],
    PUP.Optional.SearchModule, C:\Windows\Temp\SM_cache_iexplore.exe.cache, Quarantined, [c5ef5c229eeda59189542e618f74a858],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-hardwareprofile-v0001, Quarantined, [278da7d70d7efb3bf25cecb0768d718f],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-install-v0003, Quarantined, [6f455a24810aee48c688aaf2e81bc13f],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-processes-v0002, Quarantined, [3b79f6886b206accaca22b717093bd43],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001, Quarantined, [991b5925e8a33ff75df19606659e3cc4],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-softwareregkeys-v0002, Quarantined, [6c48b1cd810a0432301ef1ab32d17f81],
    PUP.Optional.Vitruvian, C:\Users\User\AppData\Local\Temp\vitruvian-installer-uninstall-v0002, Quarantined, [cde72a540487d3631f2f8913b74c02fe],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0\localStorageIE.txt, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates, C:\Users\User\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, Quarantined, [6e46403e2c5ffc3ab2b4c4e732d1956b],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\groover121120151836_installer_1447369107.txt, Quarantined, [c6eeabd3d9b284b2c160b91fde256c94],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120151629_installer_1447105407.txt, Quarantined, [f8bc027cf893b1851a09845429da9f61],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120152358_installer_1447110657.txt, Quarantined, [6e4694ea5d2e92a4bb688256db289a66],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz091120152358_installer_1447115284.txt, Quarantined, [852f007e0c7fcd6973b07464689b867a],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz101120150230_installer_1447120757.txt, Quarantined, [60547b03acdf0b2b091a1cbc768d37c9],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447382285.txt, Quarantined, [2f855b23e7a4da5c75aef4e41ae9926e],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447550561.txt, Quarantined, [edc7d1ad791231057ea57d5b62a16c94],
    PUP.Optional.VBates.WnskRST, C:\Users\User\AppData\Local\Temp\shopperz121120151540_installer_1447555679.txt, Quarantined, [357f8bf3632883b337ec10c815ee8a76],
    PUP.Optional.SpeedBrowser, C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\speed browser.lnk, Quarantined, [e8ccf68806852c0aaab7e4f407fc0af6],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SystemHealer.ini, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerCheckout.exe, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\HealerConsole.exe, Delete-on-Reboot, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SHShellExtension.dll, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Program Files\SystemHealer\SystemHealer.exe, Quarantined, [edc70d710685a690e4a95187bc47c63a],
    PUP.Optional.SystemHealer, C:\Windows\System32\Tasks\SystemHealer Monitor, Quarantined, [476da0de088378bed4bbf3e5ee15f20e],
    PUP.Optional.SystemHealer, C:\Windows\System32\Tasks\SystemHealer Run Delay, Quarantined, [c2f25c229fec41f5622d3c9c5aa917e9],
    Rootkit.Komodia.PUP, C:\Windows\System32\drivers\bsdriver.sys, Delete-on-Reboot, [d1e3e29c91fab08643e91ebcc04339c7],
    PUP.Optional.GlobalUpdate, C:\Users\User\AppData\Local\Temp\comh.125671\globalupdateHelper.msi, Quarantined, [71431a64a7e480b6cfe9b0bb24dec63a],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player\NowUSeeIt Player.lnk, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.NowUSeeItPlayer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NowUSeeIt Player\Uninstall NowUSeeIt Player.lnk, Quarantined, [1c9808766a212e085edd98edcf33db25],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\English.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\Parameters.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\tmpLang.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\Users\User\AppData\Roaming\System Healer\Languages\tmpLangs.xml, Quarantined, [f2c2b5c966250135f5601e6737cbc43c],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\Launch System Healer.lnk, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\System Healer on the Web.url, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.SystemHealer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer\Uninstall.lnk, Quarantined, [4272e599eaa19d99e86e8cf99c66c739],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\dat\iOnamWHW.exe.config, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\info.dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\tmKasKUsC.dat, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.PullUpdate, C:\ProgramData\jsrySFYScqs\tmKasKUsC.exe.config, Quarantined, [05afbdc17615092d8ef889f57e864cb4],
    PUP.Optional.Trovi, C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\wrru4scy.default-1412090802549\prefs.js, Good: (), Bad: (user_pref("browser.search.selectedEngine", "Trovi"), Replaced,[f8bc92ecaae189ada8468af1ed17a957]
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\mipb\nhau\fag.dat, Quarantined, [4b697d0112792f07a8a399e38a7a5ba5],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\xyuc\useh\daf.dat, Quarantined, [fdb7ed918605211552f91765dc2854ac],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\gaon\kad\foqe.dat, Quarantined, [367e81fd7a11f541e26ae29adf2501ff],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\oloc\lux\teit.dat, Quarantined, [cbe9a6d8adde7cbaf557d9a323e1946c],
    PUP.Optional.HijackHosts.Gen, C:\Windows\System32\pol\ydam\vovs.dat, Quarantined, [7a3adda1fd8ee452f459ee8ec93bf30d],
    PUP.Optional.TaskRNDM, C:\Windows\System32\sc.bat, Quarantined, [ddd77a04652682b4e60d700f28dce11f],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
      My ComputerSystem Spec


  5. Posts : 12,432
    W10Prox64
       16 Nov 2015 #45

    Nice! It worked!

    OUCH! You had 3 different trojans, two of which were re-spawning themselves over and over.
    Trojan.Downloader, Trojan.Symmi and Trojan.Agent

    A ton of adware, gazilions of PUPs (Possibly Unwanted Programs).
    Most of it is gone, but ESET will ferret out most of the leftovers, I think.

    Run ESET from Firefox browser as I instructed above please. When it's finished, you will have an option to see what it has found, and copy to a text file. Then you can copy and paste the text file in here.
      My ComputerSystem Spec

  6.    16 Nov 2015 #46

    For simrick


    Two Victories!

    I just did a "Restart" and now, when I click on Edge, www-searching.com does not appear!

    Also, I was able to "uninstall" "NowUSeeIt Player."

    I'll download FireFox first and then run the ESET Scan.
      My ComputerSystem Spec


  7. Posts : 12,432
    W10Prox64
       16 Nov 2015 #47

    Instructions to run ESET from BC:

    ESET Online Scanner
    Click here to download the installer for ESET Online Scanner and save it to your Desktop.
    Disable all your antivirus and antimalware software - see how to do that here.
    Right click on esetsmartinstaller_enu.exe and select Run as Administrator.
    Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.
    Select Enable detection of potentially unwanted applications.
    Click Advanced Settings, then place a checkmark in the following:
    o Remove found threats
    o Scan archives
    o Scan for potentially unsafe applications
    o Enable Anti-Stealth technology
    Click Start to begin scanning.
    ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.
    When the scan is done, click List threats (only available if ESET Online Scanner found something).
    Click Export, then save the file to your desktop.
    Click Back, then Finish to exit ESET Online Scanner.
      My ComputerSystem Spec

  8.    16 Nov 2015 #48

    For simrick


    I ran the ESET Scan, but I didn't do it properly. It took about an hour. At the end, it gave me the option to "purchase" or for a "30-day free trial." I clicked on the "30-day free trial," thinking that I had to click on one or the other. It is possible that I didn't have to choose. I also had the option of deleting the ESET software or keeping it on my computer. I chose the option to keep it on my computer.

    Then it went down to the task-bar. I brought it back up, but there was no tab to copy the Scan Log that I could see. ESET flagged about 170 files as potential threats; possibly some of them were definite threats, but I didn't get a chance to look at the whole list.

    I downloaded FireFox, by the way, but I don't know if ESET was downloaded and the Scan run with FireFox. It'll probably take another hour. We'll likely have to continue this tomorrow. Thanks for all you help, as usual.

    I just read the instructions in your post above this one. I'll try to run the ESET Scan again closely following the instructions.
    Last edited by Writer; 16 Nov 2015 at 22:50.
      My ComputerSystem Spec


  9. Posts : 12,432
    W10Prox64
       16 Nov 2015 #49

    Writer said: View Post
    I ran the ESET Scan, but I might have messed it up. It took about an hour.
    Yes, that sounds about right.

    Writer said: View Post
    At the end, it gave me the option to "purchase" or for a "30-day free trial." I clicked on the "30-day free trial," thinking that I had to click on one or the other. It is possible that I didn't have to choose.
    No, you didn't have to chose either - I think at that point you can just close the window...can't remember; haven't run it in a while myself.

    Writer said: View Post
    I also had the option of deleting the ESET software or keeping it on my computer. I chose the option to keep it on my computer.
    Yes, good, in case we need it again, that's fine.

    Writer said: View Post
    Then if went down to the task-bar. I brought it back up, but there was no tab to copy the Scan Log that I could see. ESET flagged about 170 files as potential threats; possibly some of them were definite threats, but I didn't get a chance to look at the whole list.
    So, were you able to have it quarantine everything it found?

    Writer said: View Post
    What should I do at this point concerning ESET. Should I run it again? I notice that it is still in my downloads.
    If you were able to get through the screens to the point where it "cleaned" everything, you should be fine. I think, if you got to the point where it offers the trial, you were successful.

    Writer said: View Post
    I downloaded FireFox, by the way, but I don't know if ESET was downloaded and the Scan run with FireFox.
    What browser did you use to go to the online scanner? Firefox? If so, then it was run with Firefox. I don't think it works with Edge yet; I could be wrong on that though...I'll have to give it a try.

    Please try Edge> Settings>Advanced Settings>Open Proxy Settings and see if there is anything in there. If so, get rid of it. Below is a picture of the way mine looks - yours should match. If there are any differences, let me know what they are, and then change them.





    To get here, click on the three dots in the top right-hand corner of Edge, then Settings, then scroll down to View Advanced Settings, then select Open proxy settings.


    If you want to do just a little more tonight, I would set a new restore point "Prepare to reset browsers", and then follow the instructions to reset them, including Edge. But, if you've had enough for today, we could wait until tomorrow to do that. It's up to you. I will be around for a while, if you want to do it now.

    Reset Internet Explorer
    To open, type iexplore.exe in the search box
    https://support.microsoft.com/en-us/kb/923737
    Reset Edge
    How to reset Microsoft Edge in Windows 10 when things are broken | Windows Central


    Once your browsers have been reset, you will want to download and install SuperAntiSpyware. Open the program, update the virus definitions, and run a scan of drive C.

    I will update this post with screenshots just as soon as I capture them for you.

    BE SURE TO UNCHECK the GOOGLE CHROME INSTALL BOXES DURING INSTALL. (UGH! I hate when they do that!)



    Click image for larger version. 

Name:	SAS01.PNG 
Views:	33 
Size:	70.7 KB 
ID:	48684

    Install "for anyone who uses this computer".


    Click image for larger version. 

Name:	sas02.PNG 
Views:	33 
Size:	30.5 KB 
ID:	48685


    Decline the Trial


    Click image for larger version. 

Name:	sas03.PNG 
Views:	33 
Size:	33.6 KB 
ID:	48686

    Update the virus definitions

    Click image for larger version. 

Name:	sas04.PNG 
Views:	1 
Size:	61.0 KB 
ID:	48687


    Then click Scan This Computer. Select Custom Scan.

    Click image for larger version. 

Name:	sas05.PNG 
Views:	1 
Size:	60.4 KB 
ID:	48688

    Make sure all the boxes are checked at the top, and then click on the big plus sign, to tell it where you want it to scan.

    Click image for larger version. 

Name:	sas06.PNG 
Views:	1 
Size:	65.5 KB 
ID:	48689

    Select This PC, then local disk (C : )

    Click image for larger version. 

Name:	sas07.PNG 
Views:	33 
Size:	15.2 KB 
ID:	48691

    If selected properly, it should look like this:


    Click image for larger version. 

Name:	sas08.PNG 
Views:	1 
Size:	43.7 KB 
ID:	48692

    Click Start Scan.


    Click image for larger version. 

Name:	sas10.PNG 
Views:	1 
Size:	54.8 KB 
ID:	48693


    Tracking cookies are nothing to worry about, but they should be cleaned every now and then.
    Last edited by simrick; 16 Nov 2015 at 22:34.
      My ComputerSystem Spec

  10.    16 Nov 2015 #50

    I do not wish to derail the thread, but what "Adobe" was downloaded? Was it Flash, or Acrobat?
      My ComputerSystem Spec


 
Page 5 of 17 FirstFirst ... 3456715 ... LastLast

Related Threads
BEST Anti-Virus for Windows 10 Pro ?? in AntiVirus, Firewalls and System Security
I have been using Norton Anti-Virus for 10 years and Norton Security the past 3 years !! I actually bought a 3-User pack on a Super Sale Price (from Norton). My Wife uses on and I have one "unused" !! Since I Upgraded to WINDOWS 10 PRO I find...
Malware or Virus? in AntiVirus, Firewalls and System Security
I usually use downmagz.com to download magazines. Today, I went to there to get some mags and when I went to the download page I got a popup that said CableONE has blocked the website. Clicked OK and then a page came up with a blue screen and...
Solved ?Question about virus behavior. in AntiVirus, Firewalls and System Security
Hi all, story; I got a virus about 6 months ago,,around then,, I had a pro-virus program, and it found virus after virus,after virus,,,,uhh infected files,,, my question is; why didnt the virus program kill the "source of the virus"? was i...
Help with a virus in AntiVirus, Firewalls and System Security
Hi everyone, So here is my issue, I installed some software but it turned out to be a fake version of that software. It installed a ton of bloat and popups and all of that. When ever I uninstalled the software it would reinstall itself and it was a...
VIRUS TOTAL Bookmarked in AntiVirus, Firewalls and System Security
While Miles was helping some one in Eight Forums he made a recommendation for the user to scan a URL with an online scanner. An then it came to me, I should have Virus Total bookmarked. https://virustotalcloud.appspot.com/static/img/logo.png ...
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd
All times are GMT -5. The time now is 04:26.
Find Us