Jump to content

kdtyler10

Members
  • Posts

    13
  • Joined

  • Last visited

Reputation

0 Neutral
  1. log from another scan Malwarebytes Anti-Malwarewww.malwarebytes.org Scan Date: 7/3/2014Scan Time: 10:31:43 AMLogfile: Administrator: Yes Version: 2.00.2.1012Malware Database: v2014.07.03.04Rootkit Database: v2014.07.01.01License: TrialMalware Protection: EnabledMalicious Website Protection: EnabledSelf-protection: Disabled OS: Windows Vista Service Pack 2CPU: x86File System: NTFSUser: EDITH CAIN Scan Type: Threat ScanResult: CompletedObjects Scanned: 281369Time Elapsed: 11 min, 56 sec Memory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: EnabledHeuristics: EnabledPUP: EnabledPUM: Enabled Processes: 0(No malicious items detected) Modules: 0(No malicious items detected) Registry Keys: 1PUP.Optional.SystemSpeedup, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\ssd, Quarantined, [2235e6b41b600333775107a9669c29d7], Registry Values: 0(No malicious items detected) Registry Data: 0(No malicious items detected) Folders: 0(No malicious items detected) Files: 0(No malicious items detected) Physical Sectors: 0(No malicious items detected) (end)
  2. Maurice you are Awesome... thank you so much. Should I continue to attempt to remove AVG? Malawarebytes will be the only threat software installed on my computer since AVG is not working. Do you advise that I install another anitvirus software.. and if so, which would you suggest? Also, how can I donate some money for you time? KT
  3. Updated scan... Again thank you sooooo much!!! you have been a tremendous help Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 7/3/2014 Scan Time: 7:53:38 AM Logfile: Administrator: Yes Version: 2.00.2.1012 Malware Database: v2014.07.03.02 Rootkit Database: v2014.07.01.01 License: Trial Malware Protection: Enabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows Vista Service Pack 2 CPU: x86 File System: NTFS User: EDITH CAIN Scan Type: Threat Scan Result: Completed Objects Scanned: 281401 Time Elapsed: 12 min, 29 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 0 (No malicious items detected) Physical Sectors: 0 (No malicious items detected) (end)
  4. For some reason AVG does't run and I'm unable to remove it from the computer. I will work on your steps now.
  5. Here is the log... Malwarebytes Anti-Malwarewww.malwarebytes.org Scan Date: 7/2/2014Scan Time: 7:28:49 PMLogfile: Administrator: Yes Version: 2.00.2.1012Malware Database: v2014.07.02.08Rootkit Database: v2014.02.20.01License: TrialMalware Protection: EnabledMalicious Website Protection: EnabledSelf-protection: Disabled OS: Windows Vista Service Pack 2CPU: x86File System: NTFSUser: EDITH CAIN Scan Type: Threat ScanResult: CompletedObjects Scanned: 280530Time Elapsed: 16 min, 41 sec Memory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: DisabledHeuristics: EnabledPUP: EnabledPUM: Enabled Processes: 0(No malicious items detected) Modules: 0(No malicious items detected) Registry Keys: 20PUP.Optional.PriceGong.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{1631550F-191D-4826-B069-D9439253D926}, Quarantined, [29977c1e86f5a88ef031202c39c9669a], PUP.Optional.FreeFileConverter.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{59A062A1-5ECA-4A1A-BC44-B2A9283A8ACB}, Quarantined, [9e2202986f0ce155a61d34190df5916f], PUP.Optional.FreeFileConverter.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{59A062A1-5ECA-4A1A-BC44-B2A9283A8ACB}, Quarantined, [9e2202986f0ce155a61d34190df5916f], PUP.Optional.ZenSearch.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EC740D8D-BAA6-4BAF-9183-2406AB943D3A}, Quarantined, [dee2564483f847ef998e2725cf33649c], PUP.Optional.ZenSearch.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EC740D8D-BAA6-4BAF-9183-2406AB943D3A}, Quarantined, [dee2564483f847ef998e2725cf33649c], PUP.Optional.HDVPro.A, HKLM\SOFTWARE\HD-Vpro--1.9, Quarantined, [15abd2c8087390a65f34d9e83fc3a35d], PUP.Optional.RebateInformer.A, HKLM\SOFTWARE\Rebate Informer, Quarantined, [6e522377720942f49b4882463cc6669a], PUP.Optional.SavingsBull.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\htfmboczez32, Quarantined, [02be2377681381b5a4ceb90903ff8977], PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST, Quarantined, [11af0397314a6ec88fd018ad9e64d828], PUP.Optional.123HDReady.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\123HD-Ready, Quarantined, [af118317d4a76acc4291bc05a35f669a], PUP.Optional.EasyDeals.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\easy-deals3, Quarantined, [714f4258106b092d81978445fc06df21], PUP.Optional.HDVPro.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HD-Vpro--1.9, Quarantined, [9927376381fa3006335ecbf6bb472dd3], PUP.Optional.TidyNetwork.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TidyNetwork, Quarantined, [dde31d7d2e4daa8c86ffa42553afa65a], PUP.Optional.HDVPro.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HD-Vpro--1.9, Quarantined, [b50b2575f4870630c9c8833ecb37b34d], PUP.Optional.123HDReady.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\123HD-Ready, Quarantined, [8838afeb5328fb3bdff4a021d62c40c0], PUP.Optional.MultiIE.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\DynConIE, Quarantined, [8a3693077506ce6892ffe5243fc502fe], PUP.Optional.EasyDeals.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\easy-deals3, Quarantined, [c2feeab0c4b75ed8b068993080827090], PUP.Optional.HDVPro.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HD-Vpro--1.9, Quarantined, [dae6c1d996e5a98df39e5c65907259a7], PUP.Optional.LuckySavings.A, HKU\S-1-5-21-756178843-1719226502-2987531416-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Lucky Savings, Quarantined, [338db8e2d8a3e3531b1cd9e37b87d42c], PUP.Optional.HDPro.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\HD-Vpro--1.9, Quarantined, [6d5377231467f93d2dd6495833cfff01], Registry Values: 2PUP.Optional.FirstSeenToday.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|fst_us_63, Quarantined, [ab153565512ada5ce153873bca38b947], PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST|ImagePath, C:\Program Files\WinRST\WinRST.exe, Quarantined, [11af0397314a6ec88fd018ad9e64d828] Registry Data: 0(No malicious items detected) Folders: 56PUP.Optional.AdPeak.A, C:\TEMP, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Update, Quarantined, [d9e7623878035bdb3ea31d9d57ab40c0], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce, Quarantined, [b50b2f6b14674beba728792408fae21e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0, Quarantined, [843c79210d6e023441a3108e54ae20e0], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0, Quarantined, [dbe5f9a1a3d81f17bf25841ab949a25e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0, Quarantined, [04bcff9b7efdbf77836a3f5f6b97fa06], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0, Quarantined, [c7f99dfd7506ec4a8f5ec5d92bd7dd23], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\actions, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\actions, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.MindSpark.A, C:\Program Files\BibleTriviaTime_4l Chrome Extension, Quarantined, [d5eb069405761323dc36cbd6bc467f81], PUP.Optional.MindSpark.A, C:\Program Files\BibleTriviaTime_4l Chrome Extension\bar, Quarantined, [d5eb069405761323dc36cbd6bc467f81], PUP.Optional.123HDReady.A, C:\Users\123\AppData\Local\123HD-Ready, Quarantined, [1da37129a3d870c63f401e8500029967], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_jodedgbjmohnmabanimipelnganjpmkh_0, Quarantined, [70509901dd9e4beb4e33812224de728e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\userCode, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons\actions, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\popupResource, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.Extutil.A, C:\Users\123\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B, Quarantined, [9729c4d65229c86e441eb9f6f30f867a], PUP.Optional.Extutil.A, C:\Users\EDITH CAIN\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B, Quarantined, [2f91f0aadc9fea4c3230c7e8ff0312ee], PUP.Optional.Managera.A, C:\Users\123\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42, Quarantined, [734d0694c6b56fc70b582c8389799d63], PUP.Optional.Managera.A, C:\Users\EDITH CAIN\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42, Quarantined, [6c544d4d4734e650451eb2fd7f83a35d], Files: 357PUP.Optional.OutBrowse, C:\Users\EDITH CAIN\Documents\Downloads\install-flashplayer.exe, Quarantined, [b7092674a1da0234051dbfbea2624fb1], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (11).exe, Quarantined, [d2ee4456b6c591a562bed1692ed2d52b], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (12).exe, Quarantined, [635d8317e2994aec918fca70e41c6a96], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (13).exe, Quarantined, [ccf496044536a98d7ca4c17913ed3ec2], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (14).exe, Quarantined, [5f61f6a4037816209789f644df21f10f], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (15).exe, Quarantined, [6759f9a13a414fe748d85bdf966a5da3], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (16).exe, Quarantined, [e9d78812403b290d32ee1921e818c838], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (3).exe, Quarantined, [4080aaf0e695ed49ad7394a69f61a25e], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (4).exe, Quarantined, [11af0b8f99e243f3db45f5458977f010], PUP.Optional.DownLoadAdmin.A, C:\Users\EDITH CAIN\Documents\Downloads\uplayermediaplayer-setup.exe, Quarantined, [8c3472287dfe60d62725c8b331d3e21e], Adware.DomaIQ, C:\Users\EDITH CAIN\Documents\Downloads\Player_Setup.exe, Quarantined, [7e42c7d3c7b42f07a652b58746babe42], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (6).exe, Quarantined, [2b95a8f26714e35330f0c2784cb425db], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (7).exe, Quarantined, [b808089291ea072fce52b58502fe8080], PUP.Optional.AirAdInstaller, C:\Users\EDITH CAIN\Documents\Downloads\Setup (8).exe, Quarantined, [338dadeddc9f2115d54b91a9718fc23e], PUP.Optional.ExFriendAlert.A, C:\Users\EDITH CAIN\Documents\Downloads\Setup.exe, Quarantined, [02be81191d5e91a58f1790f4ba47639d], PUP.Optional.AdPeak.A, C:\TEMP\InstallFilter32.msi, Quarantined, [ac14eab03a419f975a2ea29b3bc5a25e], PUP.Optional.SupraSavings.A, C:\TEMP\t.msi, Quarantined, [764a74260774ba7c2bb4caaeca3ad42c], PUP.Optional.Conduit.A, C:\Users\123\AppData\Local\Temp\nsb629D.exe, Quarantined, [e2de3a604f2c50e65fb1a2e6bd449c64], PUP.Optional.Conduit.A, C:\Users\EDITH CAIN\AppData\Local\Temp\GCVerifier.dll, Quarantined, [467ae6b4adce05316760f84aa759f20e], PUP.Optional.Conduit.A, C:\Users\EDITH CAIN\AppData\Local\Temp\dlLogic.exe, Quarantined, [f0d01f7bf58669cdf9cfb68c629e4db3], PUP.Optional.Conduit.A, C:\Users\EDITH CAIN\AppData\Local\Temp\dltr.exe, Quarantined, [d8e8a8f288f39e98cefb222041bfc23e], PUP.Optional.SearchProtect.A, C:\Users\EDITH CAIN\AppData\Local\Temp\nshC1EA.tmp, Quarantined, [8838168499e2b1858ba88e04629f9b65], PUP.Optional.TidyNetwork.A, C:\Windows\System32\Tasks\TidyNetwork Update, Quarantined, [4f71762438432115a7ca7e34cb370af6], PUP.Optional.ArcadeParlor.A, C:\Windows\System32\Tasks\ArcadeParlor, Quarantined, [0db3079329520a2c771007abbb47a45c], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-1, Quarantined, [d1ef6535d1aa9f9792ec2f849c66758b], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-2, Quarantined, [bd03b4e6bac10135116d7d3652b05fa1], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-3, Quarantined, [3987fc9ede9d8fa7d4aadad9a35f9967], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-4, Quarantined, [328e2e6c710a1620dba32a8905fd33cd], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-5, Quarantined, [5b65fb9f1269c76f4c329a1905fd2fd1], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-1, Quarantined, [efd16139106b15213945b102c43edd23], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-2, Quarantined, [823ec7d3ccaf1f179ae4e7ccd52d6e92], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-3, Quarantined, [5070b9e127543ef8017d793a26dcc43c], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-4, Quarantined, [12aeb3e7374493a3542aab08758d20e0], PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-5, Quarantined, [6d534159a6d5d85e8af42e85a35f669a], PUP.Optional.AdPeak.A, C:\TEMP\lsp2.log, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.AdPeak.A, C:\TEMP\guardian.exe, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.AdPeak.A, C:\TEMP\launcher.exe, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.AdPeak.A, C:\TEMP\t.txt, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.AdPeak.A, C:\TEMP\white2.exe, Quarantined, [b808f3a7c7b4fc3a55ca7e399072ab55], PUP.Optional.SelectNGo.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, Quarantined, [b50b66347407e650898e5b5f8a78b54b], PUP.Optional.SelectNGo.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal, Quarantined, [7c445b3f4f2c280e25f25d5d768c8779], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update\sqlite3.dll, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update\java.exe, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update\javaclient32.exe, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update\SQLite3.dcu, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\Program Files\Java Update\SQLiteTable3.dcu, Quarantined, [2799c5d5592260d6d010685260a2a957], PUP.Optional.JavaUpdater.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Update\Java Update.lnk, Quarantined, [d9e7623878035bdb3ea31d9d57ab40c0], PUP.Optional.LiveLyrics.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.livelyrics00.live-lyrics.com_0.localstorage, Quarantined, [5a664b4ff982ea4c45239328fc0602fe], PUP.Optional.LiveLyrics.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.livelyrics00.live-lyrics.com_0.localstorage-journal, Quarantined, [912ff2a8285386b081e78f2c50b257a9], PUP.Optional.Superfish.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [813f0793b8c340f65d0f922b42c0728e], PUP.Optional.Superfish.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [516f83172457ec4ae983cdf03fc3e31d], PUP.Optional.ZenSearch.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lificnbhpecdikcjmcpdinkjbigomafg_0.localstorage, Quarantined, [1aa6504ae299f640041bc10045bd47b9], PUP.Optional.ZenSearch.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lificnbhpecdikcjmcpdinkjbigomafg_0.localstorage-journal, Quarantined, [c3fd108a443785b17ca3e9d8b052b749], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jodedgbjmohnmabanimipelnganjpmkh_0.localstorage, Quarantined, [78481f7b0a7163d360760ab73cc64fb1], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jodedgbjmohnmabanimipelnganjpmkh_0.localstorage-journal, Quarantined, [4779ddbd2e4db77fc115c0018a7859a7], PUP.Optional.MySearchDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iagcajndpnfncplednpbnkahadegklfa_0.localstorage, Quarantined, [566a09913d3e67cfe8ade2e2946ede22], PUP.Optional.MySearchDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iagcajndpnfncplednpbnkahadegklfa_0.localstorage-journal, Quarantined, [437d801adba0c96dd9bc1ea614ee40c0], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0.localstorage, Quarantined, [e8d857437209082e9bb13295ea181ee2], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0.localstorage-journal, Quarantined, [aa167525027937ff004c7453da28f30d], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0.localstorage, Quarantined, [665a108a6813b0862e1ea6211ee47f81], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0.localstorage-journal, Quarantined, [4c74c7d36c0f82b4aca09e2936cc32ce], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0.localstorage, Quarantined, [358b1a80fd7eb87ef770d3334eb6b24e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0.localstorage-journal, Quarantined, [556baaf0700bda5c600761a5bb49ea16], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0.localstorage, Quarantined, [02bed7c3324996a02740c6406f95b54b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0.localstorage-journal, Quarantined, [734da7f36813c571e483ea1c4bb9a15f], PUP.Optional.NewTab.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bakijjialdiiboeaknfpmflphhmljfkd_0.localstorage, Quarantined, [d0f0a6f44a3152e40e9258b1877dc13f], PUP.Optional.NewTab.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bakijjialdiiboeaknfpmflphhmljfkd_0.localstorage-journal, Quarantined, [3b852575f88356e0ccd48782927204fc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000044.ldb, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000046.ldb, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000047.log, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\CURRENT, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOCK, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOG, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOG.old, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\MANIFEST-000045, Quarantined, [17a9554580fbca6cd70c108e62a0817f], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000069.ldb, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000074.ldb, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000085.ldb, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000088.ldb, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\000089.log, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\CURRENT, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOCK, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOG, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\LOG.old, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iobhlofholalpkgbeoeobhckdmfpcpce\MANIFEST-000087, Quarantined, [29975e3c4734ca6c885b2a74c33f9868], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0\2, Quarantined, [843c79210d6e023441a3108e54ae20e0], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_iobhlofholalpkgbeoeobhckdmfpcpce_0\12, Quarantined, [dbe5f9a1a3d81f17bf25841ab949a25e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0\3, Quarantined, [04bcff9b7efdbf77836a3f5f6b97fa06], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cckahkoimnbpflhhobnanhfdihegpedf_0\11, Quarantined, [c7f99dfd7506ec4a8f5ec5d92bd7dd23], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\background.html, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\chromeCoreFilesIndex.txt, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\crossriderManifest.json, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\manifest.json, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\popup.html, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\manifest.xml, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins.json, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\1.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\102.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\104.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\119.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\13.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\14.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\155.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\17.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\177.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\178.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\179.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\180.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\182.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\183.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\184.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\19.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\191.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\207.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\21.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\22.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\223.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\231.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\232.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\246.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\28.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\4.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\47.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\64.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\72.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\78.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\80.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\91.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\93.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\97.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode\background.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode\extension.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon128.png, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon16.png, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon48.png, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\actions\1.png, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\background.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\main.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\platformVersion.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\chrome.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\cookie.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\message.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\monitor.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\pageAction.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\pageActionBG.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\app_api.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\bg_app_api.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\consts.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\cookie_store.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\crossriderAPI.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\delegate.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\events.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\extensionDataStore.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\installer.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\logFile.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\logging.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\onBGDocumentLoad.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\reports.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\storageWrapper.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\updateManager.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\util.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\xhr.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource\newPopup.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource\popup.js, Quarantined, [f3cd3f5b5c1f63d312e24f4fcb3734cc], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\background.html, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\chromeCoreFilesIndex.txt, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\crossriderManifest.json, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\manifest.json, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\popup.html, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\manifest.xml, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins.json, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\1.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\102.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\104.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\119.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\13.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\14.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\155.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\17.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\177.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\178.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\179.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\180.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\182.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\183.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\184.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\19.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\191.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\207.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\21.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\22.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\223.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\231.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\232.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\246.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\28.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\4.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\47.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\64.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\72.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\78.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\80.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\91.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\93.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\plugins\97.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode\background.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\extensionData\userCode\extension.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon128.png, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon16.png, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\icon48.png, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\icons\actions\1.png, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\background.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\main.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\platformVersion.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\chrome.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\cookie.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\message.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\monitor.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\pageAction.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\api\pageActionBG.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\app_api.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\bg_app_api.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\consts.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\cookie_store.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\crossriderAPI.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\delegate.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\events.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\extensionDataStore.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\installer.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\logFile.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\logging.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\onBGDocumentLoad.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\reports.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\storageWrapper.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\updateManager.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\util.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\xhr.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource\newPopup.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf\1.26.30_0\js\lib\popupResource\popup.js, Quarantined, [e5db08920c6f42f400f4b5e92dd546ba], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000005.ldb, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000011.ldb, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000014.ldb, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000015.log, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\CURRENT, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOCK, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOG, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOG.old, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\MANIFEST-000013, Quarantined, [952b7f1bbebd3df9ce29cdd1847ea759], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000110.ldb, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000112.ldb, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000118.ldb, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\000119.log, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\CURRENT, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOCK, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOG, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\LOG.old, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.CrossRider.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cckahkoimnbpflhhobnanhfdihegpedf\MANIFEST-000117, Quarantined, [bc046733e992f0466c8b118d48baf50b], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\53164.crx, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\53164.xpi, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3.exe, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5.exe, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\background.html, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\HD-Vpro--1.9-bg.exe, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\HD-Vpro--1.9.ico, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.HDPro.A, C:\Program Files\HD-Vpro--1.9\Uninstall.exe, Quarantined, [6d5377231467f93d2dd6495833cfff01], PUP.Optional.MindSpark.A, C:\Program Files\BibleTriviaTime_4l Chrome Extension\bar\KnowTheBibleCrxSetup (2).exe, Quarantined, [d5eb069405761323dc36cbd6bc467f81], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_jodedgbjmohnmabanimipelnganjpmkh_0\1, Quarantined, [70509901dd9e4beb4e33812224de728e], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\background.html, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\chromeCoreFilesIndex.txt, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\crossriderManifest.json, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\manifest.json, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\popup.html, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\manifest.xml, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins.json, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\1.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\102.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\104.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\123.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\13.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\14.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\17.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\177.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\180.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\182.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\183.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\184.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\19.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\193.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\207.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\21.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\22.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\223.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\230.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\246.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\263.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\28.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\4.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\47.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\64.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\72.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\78.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\80.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\91.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\93.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\plugins\97.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\userCode\background.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\extensionData\userCode\extension.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons\icon128.png, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons\icon16.png, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons\icon48.png, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\icons\actions\1.png, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\background.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\main.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\platformVersion.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\chrome.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\cookie.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\message.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\monitor.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\pageAction.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\api\pageActionBG.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\app_api.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\bg_app_api.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\consts.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\cookie_store.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\crossriderAPI.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\delegate.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\events.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\extensionDataStore.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\installer.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\logFile.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\logging.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\onBGDocumentLoad.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\reports.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\storageWrapper.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\updateManager.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\util.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\xhr.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\popupResource\newPopup.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Extensions\jodedgbjmohnmabanimipelnganjpmkh\1.26.32_0\js\lib\popupResource\popup.js, Quarantined, [b808504af18a1d19f989dbc8f80a8878], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\000044.ldb, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\000046.ldb, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\000047.log, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\CURRENT, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\LOCK, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\LOG, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\LOG.old, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.CrossRider.A, C:\Users\123\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jodedgbjmohnmabanimipelnganjpmkh\MANIFEST-000045, Quarantined, [d0f0504ab6c54cea087cf4af09f9f808], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\000003.log, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\CURRENT, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOCK, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOG, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.MySpeedDial.A, C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\MANIFEST-000002, Quarantined, [526eeab0176448ee09fb5e46f50d34cc], PUP.Optional.Extutil.A, C:\Users\123\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\bk.js, Quarantined, [9729c4d65229c86e441eb9f6f30f867a], PUP.Optional.Extutil.A, C:\Users\123\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\cs.js, Quarantined, [9729c4d65229c86e441eb9f6f30f867a], PUP.Optional.Extutil.A, C:\Users\123\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\manifest.json, Quarantined, [9729c4d65229c86e441eb9f6f30f867a], PUP.Optional.Managera.A, C:\Users\123\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\cs.js, Quarantined, [734d0694c6b56fc70b582c8389799d63], PUP.Optional.Managera.A, C:\Users\123\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\manifest.json, Quarantined, [734d0694c6b56fc70b582c8389799d63], Physical Sectors: 0(No malicious items detected) (end)
  6. Ok I was able to update malwarebytes. What would you suggest my next steps are? I'm noticing that several PUP threats are bring stopped now that the updates were completed. KT
  7. I receive the error malwarebytes anti-malware has stopped working. A problem caused the program to stop working correctly.
  8. I also just ran another scan and no threats were found (still unable to update malware bytes)
  9. Hi Thank you so much for responding. I did a clean uninstall and re-install. I was not able to update but I was able to scan the computer. Malware bytes located the PUP and several other things, I clicked fix actions and I assumed they were removed. Once I restarted the computer they and scanned again more things were found. I completed your steps and restarted my computer.
  10. Not sure if I should have pasted the logs... Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:01-07-2014Ran by EDITH CAIN (administrator) on EDITHCAINLAPTOP on 02-07-2014 14:54:36Running from C:\Users\EDITH CAIN\Documents\DownloadsPlatform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English (United States)Internet Explorer Version 9Boot Mode: Normal The only official download link for FRST:Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated.See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\SLsvc.exe() C:\Windows\System32\WLTRYSVC.EXE(Microsoft Corporation) C:\Windows\System32\wlanext.exe(Dell Inc.) C:\Windows\System32\BCMWLTRY.EXE(Andrea Electronics Corporation) C:\Windows\System32\AEstSrv.exe(AOL LLC) C:\Program Files\Common Files\aol\acs\AOLacsd.exe() C:\Users\EDITH CAIN\AppData\Local\a05affdce4ca9d72a7d3c0c3ab912182\b96b7643e8c426f.exe() C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\DefaultFreewareProcess.exe() C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\FunctionKeyboardWord.exe() C:\Program Files\003\htfmboczez32.exe(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe() C:\Program Files\pcmax\pcmax.exe() C:\Program Files\Pirrit\AutoUpdater.exe(SupportSoft, Inc.) C:\Program Files\Dell Support Center\bin\sprtsvc.exe(IDT, Inc.) C:\Windows\System32\stacsv.exe() C:\Program Files\WinRST\WinRST.exe(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe(Safer Networking Ltd.) C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe() C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\AppEncondingWin32.exe(Microsoft Corporation) C:\Windows\System32\taskmgr.exe(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe(Microsoft Corporation) C:\Windows\System32\wercon.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [fst_us_87] => [X]HKLM\...\Run: [pcreg] => C:\Program Files\pcmax\service.exe [79088 2014-05-29] ()HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [155648 2009-01-09] (Apple Computer, Inc.)HKLM\...\Run: [fst_us_53] => [X]HKLM\...\Run: [fst_us_63] => [X]Winlogon\Notify\GoToAssist: C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll (Citrix Online, a division of Citrix Systems, Inc.)HKLM\...\Policies\Explorer: [HideSCAHealth] 1HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenterHKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenterHKU\S-1-5-21-756178843-1719226502-2987531416-1000\...\Run: [Driver Detective] => C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe /applicationMode:systemTray /showWelcome:falseHKU\S-1-5-21-756178843-1719226502-2987531416-1000\...\Run: [pcreg] => C:\Program Files\pcmax\service.exe [79088 2014-05-29] ()HKU\S-1-5-21-756178843-1719226502-2987531416-1000\...\Policies\system: [LogonHoursAction] 2HKU\S-1-5-21-756178843-1719226502-2987531416-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1HKU\S-1-5-21-756178843-1719226502-2987531416-1000\...\Policies\Explorer: [HideSCAHealth] 1HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenterHKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Run: [DellSupportCenter] => C:\Program Files\Dell Support Center\bin\sprtcmd.exe [202544 2008-03-11] (SupportSoft, Inc.)HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Run: [Weather] => C:\Program Files\AWS\WeatherBug\Weather.exe 1HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [155648 2009-01-09] (Apple Computer, Inc.)HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\RunOnce: [DelTr701598] - cmd.exe /c rd /s /q "C:\Users\EDITH CAIN\AppData\Roaming\Speedial"HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Policies\system: [LogonHoursAction] 2HKU\S-1-5-21-756178843-1719226502-2987531416-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1AppInit_DLLs: c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll => c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll File Not FoundShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No FileGroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled.ProxyServer: http=127.0.0.1:37956HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehpHKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x94B9289D0A81CF01HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-usHKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blankHKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = URLSearchHook: HKLM - AOL Toolbar Search Class - {f0e98552-8e47-4c6c-9b3a-11ab0549f94d} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)SearchScopes: HKLM - DefaultScope {31090377-0740-419E-BEFC-A56E50500D5B} URL = SearchScopes: HKLM - {31090377-0740-419E-BEFC-A56E50500D5B} URL = SearchScopes: HKCU - DefaultScope {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3329901&octid=EB_ORIGINAL_CTID&ISID=M8D330D17-4567-41FF-A3BA-3421B42F9F97&SearchSource=58&CUI=&UM=2&UP=SP4B7F0AB4-FAB1-46BE-AFB9-2F701293C701&q={searchTerms}&SSPV=SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3329901&octid=EB_ORIGINAL_CTID&ISID=M8D330D17-4567-41FF-A3BA-3421B42F9F97&SearchSource=58&CUI=&UM=2&UP=SP4B7F0AB4-FAB1-46BE-AFB9-2F701293C701&q={searchTerms}&SSPV=BHO: No Name - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No FileBHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)BHO: AOL Toolbar Loader - {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.)BHO: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No FileBHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)BHO: Zoom Downloader - {E5C66DD8-308B-4a4f-AF0A-3D04F25B5343} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)Toolbar: HKLM - AOL Toolbar - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)Toolbar: HKCU - AOL Toolbar - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No FileDPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cabHandler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)Handler: rebinfo - {AF808758-C780-404C-A4EE-4526323FD9B6} - No FileHosts: There are more than one entry in Hosts. See Hosts section of Addition.txtTcpip\Parameters: [DhcpNameServer] 192.168.1.254 FireFox:========FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)FF Plugin: @viewpoint.com/VMP - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)FF Extension: No Name - C:\Users\EDITH CAIN\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2014-04-19]FF Extension: Pirrit Suggestor - C:\Users\EDITH CAIN\AppData\Roaming\Mozilla\Firefox\profiles\extensions\suggestor@suggestor.pirrit.com.xpi [2014-04-19]FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtensionFF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-08-18]FF HKCU\...\Firefox\Extensions: [{58bd07eb-0ee0-4df0-8121-dc9b693373df}] - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtensionFF HKCU\...\Firefox\Extensions: [{828c786a-e911-4821-aabd-a58eff0dcf02}] - C:\Program Files\BlockAndSurf Corp\158.xpi Chrome: =======CHR HomePage: hxxp://www.yahoo.com/CHR Extension: (Speedial) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bakijjialdiiboeaknfpmflphhmljfkd [2014-06-05]CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-02]CHR Extension: (HD-Vpro--1.9) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf [2014-04-19]CHR Extension: (DailyBibleGuide) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdanlnkkocbcbpgngbjcmfopmnicklbf [2014-04-19]CHR Extension: (MySearchDial) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\iagcajndpnfncplednpbnkahadegklfa [2014-04-19]CHR Extension: (easy-deals3) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce [2014-04-19]CHR Extension: (Google Wallet) - C:\Users\EDITH CAIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-19]CHR HKLM\...\Chrome\Extension: [aaaaimaoojakejhnaflpfmfgdkpllplb] - C:\ProgramData\AskPartnerNetwork\Toolbar\BCPA1-V7\CRX\ToolbarCR.crx [2014-04-19]CHR HKLM\...\Chrome\Extension: [gdanlnkkocbcbpgngbjcmfopmnicklbf] - C:\Program Files\DailyBibleGuide Chrome Extension\bar\DailyBibleGuide@mindspark.com [2014-04-17]CHR HKLM\...\Chrome\Extension: [iagcajndpnfncplednpbnkahadegklfa] - C:\Users\EDITHC~1\AppData\Local\speedial.crx [2014-04-19]CHR HKLM\...\Chrome\Extension: [pgafcinpmmpklohkojmllohdhomoefph] - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.crx [2014-04-19]CHR HKCU\...\Chrome\Extension: [iagcajndpnfncplednpbnkahadegklfa] - C:\Users\EDITHC~1\AppData\Local\speedial.crx [2014-04-19]CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= R2 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46640 2006-10-23] (AOL LLC)S4 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-01-06] () [File not signed]S4 AVG Security Toolbar Service; C:\Program Files\AVG\AVG8\Toolbar\ToolbarBroker.exe [167264 2011-11-10] ()S4 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)S4 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)R2 b96b7643e8c426f.exe; C:\Users\EDITH CAIN\AppData\Local\a05affdce4ca9d72a7d3c0c3ab912182\b96b7643e8c426f.exe [93696 2014-05-27] () [File not signed]R2 DefaultFreewareProcess.exe; C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\DefaultFreewareProcess.exe [110592 2014-06-03] () [File not signed]R2 FunctionKeyboardWord.exe; C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\FunctionKeyboardWord.exe [110629 2014-07-01] () [File not signed]R2 htfmboczez32; C:\Program Files\003\htfmboczez32.exe [541696 2014-04-19] () [File not signed]S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)R2 pcmaxservice; C:\Program Files\pcmax\pcmax.exe [241344 2014-05-29] ()R2 PirritUpdater; C:\Program Files\Pirrit\AutoUpdater.exe [59904 2014-02-20] () [File not signed]R2 SBSDWSCService; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)R2 sprtsvc_dellsupportcenter; C:\Program Files\Dell Support Center\bin\sprtsvc.exe [202544 2008-03-11] (SupportSoft, Inc.)R2 WinRST; C:\Program Files\WinRST\WinRST.exe [59904 2014-02-26] () [File not signed]R2 wltrysvc; C:\Windows\System32\bcmwltry.exe [2506752 2007-12-11] (Dell Inc.) [File not signed]S2 4f893caf24e3b34.exe; C:\Users\123\AppData\Local\7f6f6588fcc35d70d4f131cddf46ac5e\4f893caf24e3b34.exe [X]S2 BTHelper.exe; C:\Program Files\Brand Thunder\Helper\bin\BTHelper.exe [X]S2 f069d3e76f26eb9.exe; C:\Users\EDITH CAIN\AppData\Local\e10653ec9b12b1de0a47da1ed83cf89e\f069d3e76f26eb9.exe [X]S2 PirritDesktop; C:\Users\EDITH CAIN\AppData\Local\PirritSuggestor\PirritService.exe [X]S2 vosr; C:\Users\EDITH CAIN\AppData\Roaming\VOPackage\VOsrv.exe [X]S2 vToolbarUpdater14.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [X] ==================== Drivers (Whitelisted) ==================== R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)S1 AvgLdx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)R0 AvgMfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)R1 AvgTdiX; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-05-12] (Malwarebytes Corporation)R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [110296 2014-07-02] (Malwarebytes Corporation)R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-05-12] (Malwarebytes Corporation)R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-04-28] (Riverbed Technology, Inc.)R4 RegFltrX86; C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\RegFltrX86.sys [17552 2014-06-03] ()S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [13464 2014-06-05] ()R3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-01] (America Online, Inc.)R1 {cc30460f-753f-44d9-b58c-13dae1321968}t; C:\Windows\System32\drivers\{cc30460f-753f-44d9-b58c-13dae1321968}t.sys [55232 2014-05-22] (StdLib)S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]S0 hitmanpro37duringboot; system32\drivers\hitmanpro37.sys [X]S3 IpInIp; system32\DRIVERS\ipinip.sys [X]S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-02 14:54 - 2014-07-02 14:54 - 00000000 ____D () C:\FRST2014-07-02 14:37 - 2014-07-02 14:38 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys2014-07-02 14:37 - 2014-07-02 14:37 - 00000901 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware2014-07-02 14:37 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys2014-07-02 14:37 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys2014-07-02 14:37 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys2014-07-02 14:17 - 2014-07-02 14:18 - 00176285 _____ () C:\Users\EDITH CAIN\Desktop\CheckResults.txt2014-07-02 14:15 - 2014-07-02 14:15 - 00014688 _____ () C:\Users\EDITH CAIN\Desktop\attach.txt2014-07-02 14:15 - 2014-07-02 14:14 - 00016217 _____ () C:\Users\EDITH CAIN\Desktop\dds.txt2014-07-02 10:22 - 2014-07-02 14:03 - 00000003 _____ () C:\Users\EDITH CAIN\AppData\Local\proxy.log2014-07-02 10:22 - 2014-07-02 12:32 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\BenchUpdater2014-07-02 10:21 - 2014-07-02 14:05 - 00000000 ____D () C:\Program Files\Bench2014-07-01 21:20 - 2014-07-01 21:20 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf95ace54f00ae.job2014-07-01 21:20 - 2014-05-28 09:48 - 12356608 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll2014-07-01 21:20 - 2014-05-28 09:39 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll2014-07-01 21:20 - 2014-05-28 09:38 - 09711104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll2014-07-01 21:20 - 2014-05-28 09:33 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll2014-07-01 21:20 - 2014-05-28 09:32 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl2014-07-01 21:20 - 2014-05-28 09:32 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll2014-07-01 21:20 - 2014-05-28 09:31 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll2014-07-01 21:20 - 2014-05-28 09:31 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll2014-07-01 21:20 - 2014-05-28 09:30 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll2014-07-01 21:20 - 2014-05-28 09:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll2014-07-01 21:20 - 2014-05-28 09:30 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll2014-07-01 21:20 - 2014-05-28 09:30 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll2014-07-01 21:20 - 2014-05-28 09:30 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll2014-07-01 21:20 - 2014-05-28 09:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe2014-07-01 21:20 - 2014-05-28 09:30 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll2014-07-01 21:20 - 2014-05-28 09:29 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb2014-07-01 21:20 - 2014-05-28 09:29 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll2014-07-01 21:20 - 2014-05-28 09:29 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll2014-07-01 21:20 - 2014-05-28 09:29 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe2014-07-01 21:20 - 2014-05-28 09:29 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe2014-07-01 21:20 - 2014-05-28 09:28 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll2014-07-01 21:18 - 2014-04-26 09:01 - 00502784 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll2014-07-01 21:18 - 2014-04-04 19:42 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys2014-07-01 21:18 - 2014-03-09 18:22 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll2014-07-01 21:18 - 2014-03-09 18:22 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll2014-07-01 21:04 - 2014-07-01 21:05 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord2014-07-01 14:27 - 2014-07-01 14:27 - 00000000 __RSH () C:\MSDOS.SYS2014-07-01 14:27 - 2014-07-01 14:27 - 00000000 __RSH () C:\IO.SYS2014-07-01 13:42 - 2014-07-01 13:42 - 00000227 _____ () C:\Users\EDITH CAIN\AppData\Local\poetsch.bat2014-07-01 13:08 - 2014-07-01 13:08 - 00000000 ____D () C:\Program Files\System Optimizer Pro2014-07-01 13:04 - 2014-07-01 13:04 - 00000000 ____D () C:\Program Files\predm2014-07-01 12:58 - 2014-07-01 12:58 - 00000680 _____ () C:\Users\123\AppData\Local\d3d9caps.dat2014-07-01 11:43 - 2014-07-01 11:43 - 00000000 ____D () C:\Users\123\AppData\Roaming\OpenSoftwareUpdater2014-07-01 11:42 - 2014-07-01 11:42 - 00000000 ____D () C:\Users\123\AppData\Local\WebBar2014-06-18 19:47 - 2014-06-18 19:47 - 00000000 ____D () C:\4e62051e361e3695368ccc0515241b2014-06-08 21:26 - 2014-06-08 21:26 - 00000000 ____D () C:\ProgramData\Sun2014-06-08 20:47 - 2008-05-17 01:21 - 00139264 _____ (Sun Microsystems, Inc.) C:\Windows\system32\javaws.exe2014-06-08 20:46 - 2008-05-17 01:21 - 00135168 _____ (Sun Microsystems, Inc.) C:\Windows\system32\javaw.exe2014-06-08 20:46 - 2008-05-17 01:21 - 00135168 _____ (Sun Microsystems, Inc.) C:\Windows\system32\java.exe2014-06-08 20:32 - 2014-06-08 21:25 - 00000000 ____D () C:\ProgramData\Oracle2014-06-08 20:10 - 2014-06-22 12:37 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\PCFixSpeed2014-06-08 20:10 - 2014-06-08 20:12 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\OpenSoftwareUpdater2014-06-08 20:09 - 2014-07-02 12:32 - 00000000 ____D () C:\Program Files\gorillaprice2014-06-08 20:07 - 2014-07-01 12:59 - 00000000 ____D () C:\Program Files\OpenSoftwareUpdater2014-06-06 19:44 - 2014-06-10 14:30 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\Activeris2014-06-06 19:18 - 2014-06-08 19:00 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP3.job2014-06-06 19:18 - 2014-06-08 19:00 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP2.job2014-06-06 19:15 - 2014-06-06 21:00 - 00002922 _____ () C:\Users\EDITH CAIN\AppData\Roaming\aps.scan.results2014-06-06 19:15 - 2014-06-06 21:00 - 00001160 _____ () C:\Users\EDITH CAIN\AppData\Roaming\aps.scan.quick.results2014-06-06 19:13 - 2014-06-06 19:13 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup2014-06-05 19:24 - 2014-06-05 19:24 - 00000000 ____D () C:\Users\EDITH CAIN\Documents\PC Speed Maximizer2014-06-05 19:20 - 2014-07-01 13:25 - 00000000 ____D () C:\ProgramData\InstallSightSDK2014-06-05 19:20 - 2014-07-01 13:25 - 00000000 ____D () C:\Program Files\WebBar2014-06-05 19:20 - 2014-06-10 15:17 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\WebBar2014-06-05 19:20 - 2014-06-05 19:20 - 00000000 ____D () C:\Users\EDITH CAIN\Documents\GoFastPC2014-06-05 19:19 - 2014-07-02 14:33 - 00000270 _____ () C:\Windows\Tasks\pcreg.job2014-06-05 19:19 - 2014-06-18 20:12 - 00000354 _____ () C:\Windows\Tasks\At1.job2014-06-05 19:19 - 2014-06-10 13:54 - 00000000 ____D () C:\Program Files\pcmax2014-06-05 17:51 - 2014-06-05 17:51 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\PC_Drivers_Headquarters2014-06-05 17:50 - 2014-06-05 17:50 - 00000000 ____D () C:\Program Files\PC Drivers HeadQuarters2014-06-05 14:56 - 2014-07-01 13:12 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\fst_us_872014-06-05 14:44 - 2014-06-05 14:44 - 00000000 ____D () C:\Windows\Sun2014-06-05 14:11 - 2014-06-05 14:57 - 00000000 __HDC () C:\ProgramData\{E0A9340B-C01B-42C1-9910-C307D7BE4756}2014-06-05 12:47 - 2014-06-05 13:07 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 12:27 - 2014-06-05 12:27 - 00001735 _____ () C:\Users\EDITH CAIN\Downloads\WLBidRequestHandler2014-06-05 10:51 - 2014-06-05 10:51 - 00000000 ____D () C:\Users\123\AppData\Roaming\Activeris2014-06-05 10:46 - 2014-06-05 14:49 - 00001009 _____ () C:\Windows\system32\debug.log2014-06-05 10:33 - 2014-06-05 10:33 - 00000000 ____D () C:\Users\123\AppData\Local\d9d28ad74c37999ab8d6d59ba193b8322014-06-05 10:33 - 2014-06-05 10:33 - 00000000 ____D () C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de2014-06-05 10:22 - 2014-06-05 10:23 - 01527104 _____ (LogMeIn, Inc.) C:\Users\123\Downloads\Support-LogMeInRescue (7).exe ==================== One Month Modified Files and Folders ======= 2014-07-02 14:56 - 2008-05-17 01:11 - 01917082 _____ () C:\Windows\WindowsUpdate.log2014-07-02 14:54 - 2014-07-02 14:54 - 00000000 ____D () C:\FRST2014-07-02 14:52 - 2008-05-23 14:48 - 00000000 ___HD () C:\TEMP2014-07-02 14:50 - 2013-03-14 17:54 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job2014-07-02 14:38 - 2014-07-02 14:37 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys2014-07-02 14:38 - 2014-04-19 09:14 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\CrashDumps2014-07-02 14:37 - 2014-07-02 14:37 - 00000901 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-07-02 14:37 - 2014-07-02 14:37 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware2014-07-02 14:37 - 2006-11-02 03:33 - 00703388 _____ () C:\Windows\system32\PerfStringBackup.INI2014-07-02 14:36 - 2012-11-21 12:42 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job2014-07-02 14:34 - 2014-04-19 08:34 - 00000294 _____ () C:\Windows\Tasks\FF Watcher {4AF489E7-8509-4448-AC76-E29C66162AC3}.job2014-07-02 14:33 - 2014-06-05 19:19 - 00000270 _____ () C:\Windows\Tasks\pcreg.job2014-07-02 14:32 - 2014-04-17 16:05 - 00002140 _____ () C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-4.job2014-07-02 14:32 - 2014-04-17 16:05 - 00001444 _____ () C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5.job2014-07-02 14:32 - 2014-04-17 16:05 - 00001356 _____ () C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-2.job2014-07-02 14:32 - 2014-04-17 16:04 - 00002774 _____ () C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3.job2014-07-02 14:32 - 2013-03-26 18:10 - 00000374 _____ () C:\Windows\system32\Drivers\etc\hosts.ics2014-07-02 14:31 - 2014-04-19 10:53 - 00000390 _____ () C:\Windows\Tasks\FreeFileViewerUpdateChecker.job2014-07-02 14:31 - 2014-04-17 16:05 - 00001356 _____ () C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-1.job2014-07-02 14:31 - 2006-11-02 05:47 - 00003968 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A02014-07-02 14:31 - 2006-11-02 05:47 - 00003968 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A02014-07-02 14:30 - 2013-10-28 09:42 - 00237450 _____ () C:\Windows\PFRO.log2014-07-02 14:30 - 2012-10-02 16:14 - 00065536 _____ () C:\Windows\system32\Ikeext.etl2014-07-02 14:30 - 2006-11-02 06:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT2014-07-02 14:30 - 2006-11-02 05:47 - 00281536 _____ () C:\Windows\system32\FNTCACHE.DAT2014-07-02 14:29 - 2006-11-02 06:01 - 00032630 _____ () C:\Windows\Tasks\SCHEDLGU.TXT2014-07-02 14:28 - 2011-02-11 15:50 - 00000000 ____D () C:\ProgramData\MFAData2014-07-02 14:18 - 2014-07-02 14:17 - 00176285 _____ () C:\Users\EDITH CAIN\Desktop\CheckResults.txt2014-07-02 14:15 - 2014-07-02 14:15 - 00014688 _____ () C:\Users\EDITH CAIN\Desktop\attach.txt2014-07-02 14:14 - 2014-07-02 14:15 - 00016217 _____ () C:\Users\EDITH CAIN\Desktop\dds.txt2014-07-02 14:05 - 2014-07-02 10:21 - 00000000 ____D () C:\Program Files\Bench2014-07-02 14:03 - 2014-07-02 10:22 - 00000003 _____ () C:\Users\EDITH CAIN\AppData\Local\proxy.log2014-07-02 14:02 - 2006-11-02 04:18 - 00000000 ____D () C:\Windows\tracing2014-07-02 13:50 - 2008-05-17 01:21 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information2014-07-02 12:37 - 2013-01-27 17:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox2014-07-02 12:35 - 2014-01-03 14:29 - 00000000 ____D () C:\ProgramData\FilesOpened2014-07-02 12:32 - 2014-07-02 10:22 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\BenchUpdater2014-07-02 12:32 - 2014-06-08 20:09 - 00000000 ____D () C:\Program Files\gorillaprice2014-07-02 12:32 - 2014-04-19 09:39 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\TidyNetwork2014-07-02 12:32 - 2014-04-19 09:39 - 00000000 ____D () C:\Program Files\TidyNetwork2014-07-02 12:32 - 2014-03-17 20:57 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\ArcadeParlor2014-07-02 12:32 - 2013-05-21 18:25 - 00000000 ____D () C:\Program Files\AppGraffiti2014-07-02 12:32 - 2013-05-21 18:24 - 00000000 ____D () C:\Program Files\RebateInformer2014-07-02 12:32 - 2012-11-21 12:50 - 00000000 ____D () C:\Program Files\24x7Help2014-07-01 21:38 - 2006-11-02 03:23 - 00000450 _____ () C:\Windows\win.ini2014-07-01 21:25 - 2013-12-21 15:45 - 00001973 _____ () C:\Users\Public\Desktop\Google Chrome.lnk2014-07-01 21:20 - 2014-07-01 21:20 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf95ace54f00ae.job2014-07-01 21:05 - 2014-07-01 21:04 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord2014-07-01 14:28 - 2014-04-19 08:50 - 00000258 __RSH () C:\ProgramData\ntuser.pol2014-07-01 14:27 - 2014-07-01 14:27 - 00000000 __RSH () C:\MSDOS.SYS2014-07-01 14:27 - 2014-07-01 14:27 - 00000000 __RSH () C:\IO.SYS2014-07-01 14:25 - 2013-12-19 15:58 - 00001802 _____ () C:\Windows\wininit.ini2014-07-01 13:57 - 2009-01-27 15:10 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy2014-07-01 13:55 - 2009-01-27 15:10 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy2014-07-01 13:42 - 2014-07-01 13:42 - 00000227 _____ () C:\Users\EDITH CAIN\AppData\Local\poetsch.bat2014-07-01 13:42 - 2014-03-17 20:57 - 00000000 ____D () C:\ProgramData\Yahoo!2014-07-01 13:42 - 2008-05-23 14:02 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\Google2014-07-01 13:25 - 2014-06-05 19:20 - 00000000 ____D () C:\ProgramData\InstallSightSDK2014-07-01 13:25 - 2014-06-05 19:20 - 00000000 ____D () C:\Program Files\WebBar2014-07-01 13:12 - 2014-06-05 14:56 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\fst_us_872014-07-01 13:10 - 2008-08-07 14:42 - 00000000 ____D () C:\Program Files\AOL 9.0b2014-07-01 13:10 - 2006-11-02 04:18 - 00000000 ____D () C:\Windows\system32\spool2014-07-01 13:10 - 2006-11-02 04:18 - 00000000 ____D () C:\Windows\system32\Msdtc2014-07-01 13:10 - 2006-11-02 04:18 - 00000000 ____D () C:\Windows\registration2014-07-01 13:10 - 2006-11-02 03:22 - 36962304 _____ () C:\Windows\system32\config\software_previous2014-07-01 13:10 - 2006-11-02 03:22 - 20971520 _____ () C:\Windows\system32\config\system_previous2014-07-01 13:08 - 2014-07-01 13:08 - 00000000 ____D () C:\Program Files\System Optimizer Pro2014-07-01 13:07 - 2014-05-31 15:10 - 00000000 ____D () C:\Users\123\AppData\Roaming\Systweak2014-07-01 13:07 - 2013-01-27 17:57 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\Systweak2014-07-01 13:04 - 2014-07-01 13:04 - 00000000 ____D () C:\Program Files\predm2014-07-01 13:04 - 2014-05-10 16:07 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\fst_us_532014-07-01 13:03 - 2006-11-02 03:22 - 40370176 _____ () C:\Windows\system32\config\components_previous2014-07-01 13:03 - 2006-11-02 03:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous2014-07-01 13:02 - 2006-11-02 03:22 - 00262144 _____ () C:\Windows\system32\config\security_previous2014-07-01 12:59 - 2014-06-08 20:07 - 00000000 ____D () C:\Program Files\OpenSoftwareUpdater2014-07-01 12:58 - 2014-07-01 12:58 - 00000680 _____ () C:\Users\123\AppData\Local\d3d9caps.dat2014-07-01 12:48 - 2014-01-24 13:46 - 00000000 ____D () C:\Program Files\File Type Assistant2014-07-01 12:46 - 2014-04-01 13:41 - 00000304 _____ () C:\Windows\system32\ff.bin2014-07-01 12:41 - 2014-04-01 13:31 - 00000546 _____ () C:\Windows\system32\schtasks.bin2014-07-01 12:40 - 2014-05-31 15:10 - 00000900 __RSH () C:\Users\123\ntuser.pol2014-07-01 12:40 - 2014-05-31 15:10 - 00000000 ____D () C:\Users\1232014-07-01 12:19 - 2008-05-23 14:00 - 00000000 ____D () C:\Users\EDITH CAIN2014-07-01 12:01 - 2006-11-02 03:22 - 00262144 _____ () C:\Windows\system32\config\default_previous2014-07-01 11:51 - 2014-05-31 15:13 - 00000000 ____D () C:\Users\123\AppData\Local\CrashDumps2014-07-01 11:43 - 2014-07-01 11:43 - 00000000 ____D () C:\Users\123\AppData\Roaming\OpenSoftwareUpdater2014-07-01 11:43 - 2014-05-31 15:11 - 00066784 _____ () C:\Users\123\AppData\Local\GDIPFONTCACHEV1.DAT2014-07-01 11:42 - 2014-07-01 11:42 - 00000000 ____D () C:\Users\123\AppData\Local\WebBar2014-06-22 12:37 - 2014-06-08 20:10 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\PCFixSpeed2014-06-18 20:54 - 2011-02-11 15:49 - 00000000 ____D () C:\ProgramData\Temp2014-06-18 20:12 - 2014-06-05 19:19 - 00000354 _____ () C:\Windows\Tasks\At1.job2014-06-18 19:47 - 2014-06-18 19:47 - 00000000 ____D () C:\4e62051e361e3695368ccc0515241b2014-06-18 19:47 - 2006-11-02 03:24 - 92708840 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe2014-06-10 15:17 - 2014-06-05 19:20 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\WebBar2014-06-10 14:45 - 2012-11-21 12:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome2014-06-10 14:30 - 2014-06-06 19:44 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\Activeris2014-06-10 13:54 - 2014-06-05 19:19 - 00000000 ____D () C:\Program Files\pcmax2014-06-10 13:49 - 2008-05-23 14:01 - 00066784 _____ () C:\Users\EDITH CAIN\AppData\Local\GDIPFONTCACHEV1.DAT2014-06-10 13:29 - 2014-04-19 08:27 - 00608351 _____ (Click Me In Limited) C:\Users\EDITH CAIN\AppData\Local\AnyProtectScannerSetup.exe2014-06-08 21:26 - 2014-06-08 21:26 - 00000000 ____D () C:\ProgramData\Sun2014-06-08 21:26 - 2008-05-17 01:21 - 00000000 ____D () C:\Program Files\Common Files\Java2014-06-08 21:25 - 2014-06-08 20:32 - 00000000 ____D () C:\ProgramData\Oracle2014-06-08 20:45 - 2008-05-17 01:21 - 00000000 ____D () C:\Program Files\Java2014-06-08 20:12 - 2014-06-08 20:10 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\OpenSoftwareUpdater2014-06-08 19:34 - 2014-04-19 08:56 - 00000000 ____D () C:\ProgramData\Norton2014-06-08 19:00 - 2014-06-06 19:18 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP3.job2014-06-08 19:00 - 2014-06-06 19:18 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP2.job2014-06-06 21:20 - 2014-04-19 09:00 - 00000366 _____ () C:\Windows\Tasks\APSnotifierPP1.job2014-06-06 21:00 - 2014-06-06 19:15 - 00002922 _____ () C:\Users\EDITH CAIN\AppData\Roaming\aps.scan.results2014-06-06 21:00 - 2014-06-06 19:15 - 00001160 _____ () C:\Users\EDITH CAIN\AppData\Roaming\aps.scan.quick.results2014-06-06 21:00 - 2014-04-19 08:59 - 00000318 _____ () C:\Users\EDITH CAIN\AppData\Roaming\aps.uninstall.scan.results2014-06-06 19:13 - 2014-06-06 19:13 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup2014-06-06 18:48 - 2014-01-24 13:46 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\FileTypeAssistant2014-06-06 18:35 - 2013-12-19 15:33 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\LogMeIn Rescue Applet2014-06-05 19:24 - 2014-06-05 19:24 - 00000000 ____D () C:\Users\EDITH CAIN\Documents\PC Speed Maximizer2014-06-05 19:20 - 2014-06-05 19:20 - 00000000 ____D () C:\Users\EDITH CAIN\Documents\GoFastPC2014-06-05 17:51 - 2014-06-05 17:51 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\PC_Drivers_Headquarters2014-06-05 17:50 - 2014-06-05 17:50 - 00000000 ____D () C:\Program Files\PC Drivers HeadQuarters2014-06-05 15:14 - 2008-05-23 14:53 - 00000000 ____D () C:\ProgramData\AOL2014-06-05 14:57 - 2014-06-05 14:11 - 00000000 __HDC () C:\ProgramData\{E0A9340B-C01B-42C1-9910-C307D7BE4756}2014-06-05 14:49 - 2014-06-05 10:46 - 00001009 _____ () C:\Windows\system32\debug.log2014-06-05 14:44 - 2014-06-05 14:44 - 00000000 ____D () C:\Windows\Sun2014-06-05 13:41 - 2014-04-19 17:06 - 00000000 ____D () C:\Windows\Minidump2014-06-05 13:40 - 2014-05-04 13:47 - 00000000 ____D () C:\Users\EDITH CAIN\AppData\Local\Mobogenie2014-06-05 13:07 - 2014-06-05 12:47 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 12:27 - 2014-06-05 12:27 - 00001735 _____ () C:\Users\EDITH CAIN\Downloads\WLBidRequestHandler2014-06-05 12:13 - 2014-03-17 21:08 - 00000000 ____D () C:\ProgramData\Fighters2014-06-05 12:13 - 2014-01-14 23:19 - 00000069 _____ () C:\Users\EDITH CAIN\AppData\Roaming\WB.CFG2014-06-05 12:02 - 2013-12-19 15:50 - 00000000 ____D () C:\Windows\pss2014-06-05 11:51 - 2014-05-29 16:30 - 00000000 ____D () C:\ProgramData\SpeedMaxPc2014-06-05 11:13 - 2013-10-14 16:12 - 00013464 _____ () C:\Windows\system32\Drivers\SWDUMon.sys2014-06-05 11:03 - 2014-05-31 15:10 - 00000000 ____D () C:\Users\123\AppData\Roaming\System Speedup2014-06-05 10:51 - 2014-06-05 10:51 - 00000000 ____D () C:\Users\123\AppData\Roaming\Activeris2014-06-05 10:33 - 2014-06-05 10:33 - 00000000 ____D () C:\Users\123\AppData\Local\d9d28ad74c37999ab8d6d59ba193b8322014-06-05 10:33 - 2014-06-05 10:33 - 00000000 ____D () C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de2014-06-05 10:33 - 2014-05-31 16:52 - 00000000 ____D () C:\Users\123\AppData\Local\7f6f6588fcc35d70d4f131cddf46ac5e2014-06-05 10:26 - 2014-05-31 16:07 - 00000000 ____D () C:\Users\123\AppData\Local\LogMeIn Rescue Applet2014-06-05 10:23 - 2014-06-05 10:22 - 01527104 _____ (LogMeIn, Inc.) C:\Users\123\Downloads\Support-LogMeInRescue (7).exe Files to move or delete:====================C:\Windows\Tasks\At1.job Some content of TEMP:====================C:\Users\123\AppData\Local\Temp\nsb629D.exeC:\Users\EDITH CAIN\AppData\Local\Temp\dlLogic.exeC:\Users\EDITH CAIN\AppData\Local\Temp\dltr.exeC:\Users\EDITH CAIN\AppData\Local\Temp\file_to_run55881.exeC:\Users\EDITH CAIN\AppData\Local\Temp\GCVerifier.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => File is digitally signedC:\Windows\system32\winlogon.exe => File is digitally signedC:\Windows\system32\wininit.exe => File is digitally signedC:\Windows\system32\svchost.exe => File is digitally signedC:\Windows\system32\services.exe => File is digitally signedC:\Windows\system32\User32.dll => File is digitally signedC:\Windows\system32\userinit.exe => File is digitally signedC:\Windows\system32\rpcss.dll => File is digitally signedC:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-02 14:38 ==================== End Of Log ============================ Additional scan result of Farbar Recovery Scan Tool (x86) Version:01-07-2014Ran by EDITH CAIN at 2014-07-02 14:57:34Running from C:\Users\EDITH CAIN\Documents\DownloadsBoot Mode: Normal========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2013 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}AV: AVG Anti-Virus Free (Disabled - Up to date) {0C939084-9E57-CBDB-EA61-0B0C7F62AF82}AS: AVG Anti-Virus Free (Disabled - Up to date) {B7F27160-B86D-C455-D0D1-307E04E5E53F}AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: AVG AntiVirus Free Edition 2013 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}FW: AVG update module (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)Adobe Reader XI (11.0.07) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: - )Advanced Video FX Engine (HKLM\...\Advanced Video FX Engine) (Version: - )AOL Toolbar (HKCU\...\AOL Toolbar) (Version: - )AOL Uninstaller (Choose which Products to Remove) (HKLM\...\AOL Uninstaller) (Version: - )Ask Toolbar (HKLM\...\{42435041-312D-5637-00A7-A758B70C0A00}) (Version: 12.10.0.3168 - APN, LLC) <==== ATTENTIONAVG 2013 (HKLM\...\AVG) (Version: 2013.0.3426 - AVG Technologies)AVG 2013 (Version: 13.0.3222 - AVG Technologies) HiddenAVG 2013 (Version: 13.0.3426 - AVG Technologies) HiddenBanctec Service Agreement (HKLM\...\{4B9F45E8-E3CE-40B4-9463-80A9B3481DEF}) (Version: 1.11.0000 - Dell)Browser Address Error Redirector (HKLM\...\{62230596-37E5-4618-A329-0D21F529A86F}) (Version: 1.00.0000 - Dell)Cisco EAP-FAST Module (HKLM\...\{BF53252E-4AB2-4C7F-A0FD-6100755745E3}) (Version: 2.0.26 - Cisco Systems, Inc.)Cisco LEAP Module (HKLM\...\{76F9CF97-FC4B-4E20-B363-D127C888448F}) (Version: 1.0.11 - Cisco Systems, Inc.)Cisco PEAP Module (HKLM\...\{4E5386F5-C0F6-4532-A54A-374865AEAB71}) (Version: 1.0.12 - Cisco Systems, Inc.)Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)Conexant HDA D330 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F) (Version: - )DailyBibleGuide Toolbar Chrome Extension (HKLM\...\DailyBibleGuide Chrome Extension Uninstall) (Version: - Mindspark Interactive Network) <==== ATTENTIONDell DataSafe Online (HKLM\...\{4D3C9F4B-4B7D-4E5D-99B9-0123AB0D51ED}) (Version: 1.0.21 - Dell, Inc.)Dell Getting Started Guide (HKLM\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)Dell Support Center (HKLM\...\{E3BFEE55-39E2-4BE0-B966-89FE583822C1}) (Version: 2.1.08060 - Dell)Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1.102.7 - Alps Electric)Dell Webcam Center (HKLM\...\Dell Webcam Center) (Version: - )Dell Webcam Manager (HKLM\...\Dell Webcam Manager) (Version: - )Dell Wireless WLAN Card (HKLM\...\Broadcom 802.11b Network Adapter) (Version: 4.170.25.12 - Dell Inc.)Digital Line Detect (HKLM\...\{E646DCF0-5A68-11D5-B229-002078017FBF}) (Version: 1.21 - BVRP Software, Inc)emaze PowerPoint Add-In (HKCU\...\emaze PowerPoint Add-In) (Version: 1.1 - emaze.com)File Type Assistant (HKLM\...\Trusted Software Assistant_is1) (Version: 2014.5.6.0 - ) <==== ATTENTIONGoogle Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)Google Update Helper (Version: 1.3.24.15 - Google Inc.) HiddenGoToAssist 8.0.0.514 (HKLM\...\GoToAssist) (Version: - )HD-Vpro--1.9 (HKLM\...\HD-Vpro--1.9) (Version: 1.34.4.10 - HD2-Plus)HiDef Media Player 1.1.12 (HKLM\...\HiDef Media Player) (Version: 1.1.12 - HiDefMedia)iLumina Gold Premium (HKLM\...\iLuminaPremium) (Version: 2.80 - Tyndale House Publishers)Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - )Internet Service Offers Launcher (HKLM\...\{CCFF1E13-77A2-4032-8B12-7566982A27DF}) (Version: 1.00.0000 - Dell Inc.)Itibiti RTC (Version: 0.0.1 - Itibiti Inc) HiddenJava SE Runtime Environment 6 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160000}) (Version: 1.6.0.0 - Sun Microsystems, Inc.)Laptop Integrated Webcam Driver (1.04.01.1011) (HKLM\...\Creative OEM002) (Version: - )Live! Cam Avatar Creator (HKLM\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.0817.1 - Creative Technology Ltd.)Live! Cam Avatar v1.0 (HKLM\...\{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}) (Version: 1.0 - Creative Technology Ltd.)Lucky Savings Widget (HKLM\...\{3E8E469E-1631-424B-8BCA-00FEB824881A}) (Version: 1.6.1.890 - Linkury Inc.) <==== ATTENTIONMalwarebytes Anti-Malware version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)MediaDirect (HKLM\...\{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}) (Version: 3.5 - Dell)Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) HiddenMicrosoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) HiddenMicrosoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)Microsoft VC9 runtime libraries (Version: 2.0.0 - AOL Inc.) HiddenMicrosoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Works (HKLM\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation)Modem Diagnostic Tool (HKLM\...\{F63A3748-B93D-4360-9AD4-B064481A5C7B}) (Version: 1.0.20.0 - Dell)MPlayer (remove only) (HKLM\...\MPlayer) (Version: - )mPlayer version 1.0 (HKLM\...\{B482E758-D602-434C-80B9-DDEFEEAE4BCA}_is1) (Version: 1.0 - Download Freely, LLC)Music, Photos & Videos Launcher (HKLM\...\{D7769185-9A7C-48D4-8874-5388743A1DE2}) (Version: 1.00.0000 - Dell Inc.)NetWaiting (HKLM\...\{3F92ABBB-6BBF-11D5-B229-002078017FBF}) (Version: 2.5.44 - BVRP Software, Inc)OutlookAddinSetup (HKLM\...\{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}) (Version: 1.0.0 - CyberLink)Product Documentation Launcher (HKLM\...\{89CEAE14-DD0F-448E-9554-15781EC9DB24}) (Version: 1.00.0000 - Dell Inc.)QuickSet (HKLM\...\{C4972073-2BFE-475D-8441-564EA97DA161}) (Version: 8.2.17 - Dell Inc.)QuickTime (HKLM\...\InstallShield_{929408E6-D265-4174-805F-81D1D914E2A4}) (Version: 7.0.4 - Apple Computer, Inc.)QuickTime (Version: 7.0.4 - Apple Computer, Inc.) HiddenRebateInformer (HKLM\...\{4EF645BD-65B0-4F98-AD56-D0437B7045F6}_is1) (Version: 2.0.0.7 - Inbox.com, Inc.)Roxio Creator Audio (Version: 3.7.0 - Roxio) HiddenRoxio Creator Copy (Version: 3.7.0 - Roxio) HiddenRoxio Creator Data (Version: 3.7.0 - Roxio) HiddenRoxio Creator DE (HKLM\...\{09760D42-E223-42AD-8C3E-55B47D0DDAC3}) (Version: 10.1 - )Roxio Creator DE (Version: 3.7.0 - Roxio) HiddenRoxio Creator Tools (Version: 3.7.0 - Roxio) HiddenRoxio Express Labeler 3 (Version: 3.2.1 - Roxio) HiddenRoxio Update Manager (Version: 6.0.0 - Roxio) HiddenRTC Client API v1.2 (HKLM\...\{44CDBD1B-89FB-4E02-8319-2A4C550F664A}) (Version: 1.2.0000 - Microsoft)Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871) (Version: 1 - Microsoft Corporation)Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523) (Version: 1 - Microsoft Corporation)Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600217) (Version: 1 - Microsoft Corporation)Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939v3) (Version: 3 - Microsoft Corporation)User's Guides (HKLM\...\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}) (Version: - )Viewpoint Media Player (HKLM\...\ViewpointMediaPlayer) (Version: - )Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)Zoom Downloader (HKLM\...\Zoom Downloader) (Version: - Zoom Downloader) ==================== Restore Points ========================= 09-06-2014 03:44:27 Installed Java 819-06-2014 02:42:42 Windows Update20-06-2014 18:28:43 Windows Update02-07-2014 00:54:50 Scheduled Checkpoint02-07-2014 04:00:17 Windows Update02-07-2014 04:20:48 Windows Update ==================== Hosts content: ========================== 2006-11-02 03:23 - 2014-06-05 14:53 - 00008728 ____A C:\Windows\system32\Drivers\etc\hosts216.239.32.20 google.com www.google.com216.239.32.20 google.com www.google.ad216.239.32.20 google.com www.google.ae216.239.32.20 google.com www.google.com.af216.239.32.20 google.com www.google.com.ag216.239.32.20 google.com www.google.com.ai216.239.32.20 google.com www.google.al216.239.32.20 google.com www.google.am216.239.32.20 google.com www.google.co.ao216.239.32.20 google.com www.google.com.ar216.239.32.20 google.com www.google.as216.239.32.20 google.com www.google.at216.239.32.20 google.com www.google.com.au216.239.32.20 google.com www.google.az216.239.32.20 google.com www.google.ba216.239.32.20 google.com www.google.com.bd216.239.32.20 google.com www.google.be216.239.32.20 google.com www.google.bf216.239.32.20 google.com www.google.bg216.239.32.20 google.com www.google.com.bh216.239.32.20 google.com www.google.bi216.239.32.20 google.com www.google.bj216.239.32.20 google.com www.google.com.bn216.239.32.20 google.com www.google.com.bo216.239.32.20 google.com www.google.com.br216.239.32.20 google.com www.google.bs216.239.32.20 google.com www.google.bt216.239.32.20 google.com www.google.co.bw216.239.32.20 google.com www.google.by There are 162 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {048AC704-41CD-486C-BB14-2978D5960C5F} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files\RegClean Pro\RegCleanPro.exe <==== ATTENTIONTask: {04A96BB1-F7C7-40F7-9CF4-97EE1B096352} - System32\Tasks\FreeFileViewerUpdateChecker => C:\Program Files\FreeFileViewer\FFVCheckForUpdates.exe <==== ATTENTIONTask: {0726FF07-07EF-4E6A-9255-41789ACB5914} - System32\Tasks\BrowserSafeguard Update Task => C:\Program Files\Browsersafeguard\uninstall.BrowserSafeguard.exe <==== ATTENTIONTask: {08602F50-4176-4043-BAF7-A05C4D137D02} - System32\Tasks\SpeedMaxPc_sch_2A5C784D-E789-11E3-8C24-00038A000015 => C:\Program Files\SpeedMaxPc\SpeedMaxPc\SpeedMaxPc.exeTask: {08A49C40-DE4C-4BC5-B0A7-DFD0486E28AA} - System32\Tasks\ArcadeParlor => C:\Users\EDITH CAIN\AppData\Local\ArcadeParlor\versioncheck.exeTask: {0AB3A1A7-6F79-496D-88A8-7595B4518CA4} - System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-3 => C:\Program Files\123HD-Ready\8b927cea-2d3c-41f7-9e30-aa2c279bf006-3.exeTask: {0CCDD1F0-9FBE-4FFB-A9A0-7BC3C3053589} - System32\Tasks\0 => Iexplore.exe <==== ATTENTIONTask: {0E90A9D4-82D4-43FC-A216-AF1CDA0DC2CB} - System32\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3 => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3.exe [2014-04-17] (HD2-Plus)Task: {115BE0A9-12A7-480B-A8C1-5DFAC07CC368} - System32\Tasks\System Speedup => C:\Program Files\System Speedup\SystemSpeedup.exeTask: {14160134-703A-42E5-95F0-B8E3DD2E6303} - System32\Tasks\LaunchApp => C:\Program Files\MyPC Backup\MyPC Backup.exe <==== ATTENTIONTask: {187FCE46-4938-4DE9-B1AD-2B7BE7BEE813} - System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-5 => C:\Program Files\easy-deals3\2498c771-38e6-4940-8dce-eb55fa2ac5b9-5.exeTask: {1C0C3621-0F9A-4179-8A32-94EBE2F37968} - System32\Tasks\Driver Restore-RTMUpdater => C:\Program Files\Driver Restore\Driver Restore\DriverRestore.exeTask: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMMTask: {23EBAF90-6603-4A38-BB24-030382CAFF15} - System32\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-4 => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-4.exe [2014-04-17] (HD2-Plus)Task: {2AFDFFC5-8CD2-41AC-B379-13D47523B228} - System32\Tasks\Driver Detective-RTMUpdater => C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exeTask: {2BB7AF76-73D1-4443-92BF-25CEA7F3DB5D} - System32\Tasks\BrowserProtect => Sc.exe start BrowserProtect <==== ATTENTIONTask: {2CFB0828-AE4A-4978-9013-1C89BA746250} - System32\Tasks\ProgramUpdateCheck => C:\Program Files\File Type Assistant\TSAssist.exe [2014-05-06] (FTA ApS) <==== ATTENTIONTask: {2D37F782-79D4-4207-B70F-18FB6C7A0D32} - System32\Tasks\BlockAndSurf Update => C:\Program Files\BlockAndSurf Corp\BnSup.exe <==== ATTENTIONTask: {2F553467-4F8C-474C-B767-D7958DEBF210} - System32\Tasks\ImproveSpeedPC => C:\Program Files\ImproveSpeedPC\ImproveSpeedPC.exeTask: {30D95E50-71B2-4F53-A828-C7DDF5927FAF} - System32\Tasks\PC Health Kit ScheduleTask: {36099C11-FF63-40DF-A5D1-0A03F316AEA0} - System32\Tasks\Advanced System Protector_startup => C:\Program Files\Advanced System Protector\AdvancedSystemProtector.exe <==== ATTENTIONTask: {3AC37153-55C8-4D7A-B08C-0DC7811BCC78} - System32\Tasks\SpeedMaxPc Update3_triggeronce => c:\program files\common files\speedmaxpc\uus3\Update3.exeTask: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPagesTask: {4060F927-DA4A-4E41-8367-007883D1961E} - System32\Tasks\FF Watcher {4AF489E7-8509-4448-AC76-E29C66162AC3} => C:\Program Files\V-bates\PrefHelper.exeTask: {44918611-8B44-402C-B0E0-922FFB42CCEF} - System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-3 => C:\Program Files\easy-deals3\2498c771-38e6-4940-8dce-eb55fa2ac5b9-3.exeTask: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation)Task: {492FC3C6-528F-4FC3-8940-C19ED274C30F} - System32\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-1 => C:\Program Files\HD-Vpro--1.9\HD-Vpro--1.9-codedownloader.exe [2014-04-17] (HD2-Plus)Task: {5106F23C-BFAA-4AD2-BBD3-8193DDCB7CDC} - System32\Tasks\TidyNetwork Update => C:\Users\EDITH CAIN\AppData\Local\TidyNetwork\petnupdate.exeTask: {514D4071-8DC1-48FF-9CA6-510383545EF2} - System32\Tasks\RegPowerClean => C:\Program Files\Winferno\RegistryPowerCleaner\RegPowerClean.exeTask: {5569890E-2680-4F5A-B4E5-25E24EE0EDC7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-11-21] (Google Inc.)Task: {5991F52F-4425-40F4-AF97-4C7728B7DEBB} - System32\Tasks\System Speedup_UPDATES => C:\Program Files\System Speedup\SystemSpeedup.exeTask: {59F870A2-0653-4F9C-8779-8502F554E88A} - System32\Tasks\Norton Zone\Norton Error Processor => C:\Program Files\Norton Zone\Engine\1.2.0.4\SymErr.exeTask: {604240C7-BEFC-429C-9712-E679A3A7FC63} - System32\Tasks\ZenSearch\Updater\ZenSearch updater => C:\Program Files\ZenSearch Updater\updater.exeTask: {60E1429C-BF1A-4A81-9876-C3594B747E77} - System32\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5 => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5.exe [2014-04-17] (HD2-Plus)Task: {662AEC2D-9B6E-43E3-9563-34C10A6896DB} - System32\Tasks\Driver Detective-RTMScanRunOnce => C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exeTask: {67E59F41-0A90-449B-A804-BA06086C7C8B} - System32\Tasks\Driver Detective-RTMScan => C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exeTask: {69A69331-CAD3-4935-B6DF-1224065A71A5} - System32\Tasks\SpeedMaxPc Registration3 => Rundll32.exe "C:\Program Files\Common Files\SpeedMaxPc\UUS3\UUS3.dll" RunUnsTask: {6ED5B004-42AC-4CD6-B429-047DED202CBC} - System32\Tasks\4789 => Wscript.exe C:\Users\EDITHC~1\AppData\Local\Temp\launchie.vbs //B <==== ATTENTIONTask: {6F9E86A6-F396-4662-91CB-D275679E41D9} - System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-2 => C:\Program Files\123HD-Ready\8b927cea-2d3c-41f7-9e30-aa2c279bf006-2.exeTask: {70AA0B39-CF08-4CDD-8691-6EE52DF32D2D} - System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-1 => C:\Program Files\easy-deals3\easy-deals3-codedownloader.exeTask: {7273B8A3-1F78-4B3A-AD00-62248B03270E} - System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-4 => C:\Program Files\123HD-Ready\8b927cea-2d3c-41f7-9e30-aa2c279bf006-4.exeTask: {75539A92-FC7E-4FAB-A65D-918A39461164} - System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-5 => C:\Program Files\123HD-Ready\8b927cea-2d3c-41f7-9e30-aa2c279bf006-5.exeTask: {77BC4E95-5C23-4636-9F30-0A78E6C5F8A1} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UITask: {7B36DC1B-4477-4E19-ABA3-D6D2E0F5C99B} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: {7CCBAF89-549B-408C-872F-A6EF4078FB5C} - System32\Tasks\ProgramRefresh-ATFST => C:\Program Files\File Type Assistant\tsasetup.exe [2014-06-05] ( ) <==== ATTENTIONTask: {822E05A0-C90C-4FF5-B8EF-1F99A7D0EF1C} - System32\Tasks\SoftUpdateLogon => C:\Users\EDITHTask: {83F27B38-C11E-4117-88B9-4ECD7439FB09} - System32\Tasks\Norton Zone\Norton Error Analyzer => C:\Program Files\Norton Zone\Engine\1.2.0.4\SymErr.exeTask: {8460453A-F933-4C02-A2AE-536D7AF5DDBD} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: {84E3A90A-F174-44D6-BE29-DAC7EB81E62A} - System32\Tasks\Driver Restore-RTMRules => C:\Program Files\Driver Restore\Driver Restore\DriverRestore.exeTask: {889A92B7-E99E-4342-B5FB-0038406DEFC9} - System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-2 => C:\Program Files\easy-deals3\2498c771-38e6-4940-8dce-eb55fa2ac5b9-2.exeTask: {897052A2-2B2E-4A0C-96A2-EE67B2C9B8AB} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: {98A4C9EE-F938-4B4A-93C8-6003B3136EC8} - System32\Tasks\SpeedMaxPc Update3 => c:\program files\common files\speedmaxpc\uus3\Update3.exeTask: {9B1A0504-6B12-4C3D-994B-5FB714E409E4} - System32\Tasks\RegClean Pro => C:\Program Files\RegClean Pro\RegCleanPro.exe <==== ATTENTIONTask: {9CEB804E-EE81-4BDC-8686-BB008E4764C5} - System32\Tasks\Microsoft\Windows\RestartManager\{077C4DE5-B876-4bac-BE3D-C7D0D753659B} => C:\Windows\system32\rmclient.exe [2006-11-02] (Microsoft Corporation)Task: {9EE003C0-AED7-4F27-8D7B-366FC8043321} - System32\Tasks\RPCReminder => C:\Program Files\Winferno\RegistryPowerCleaner\RPCReminder.exeTask: {9F5593D2-AF66-41D6-9FAA-95F0647C5B64} - System32\Tasks\System Speedup_DEFAULT => C:\Program Files\System Speedup\SystemSpeedup.exeTask: {A14A12BF-53C4-4104-B537-BDA731DF9530} - System32\Tasks\Driver Detective-RTMRules => C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exeTask: {A25C3253-7461-4BF1-A333-9730845EA817} - System32\Tasks\SuperFastPC_AutorunOnStartup => C:\Program Files\System Optimizer Pro\SystemOptimizerPro.exe <==== ATTENTIONTask: {A264463F-C0E7-4A9D-B402-5318A6FA6EEB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-29] (Adobe Systems Incorporated)Task: {A66E192E-4A8C-42EE-AD11-AA53B9AD4ACD} - System32\Tasks\Driver Restore-RTMScan => C:\Program Files\Driver Restore\Driver Restore\DriverRestore.exeTask: {A76F47E7-8620-4EA9-AA25-17281397C2FA} - System32\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-2 => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-2.exe [2014-04-17] (HD2-Plus)Task: {A8C3A8CB-7F05-411C-9A10-7EE574294CB9} - System32\Tasks\Driver Restore-RTMScanRunOnce => C:\Program Files\Driver Restore\Driver Restore\DriverRestore.exeTask: {AB5363F7-DBE6-4FBF-8C46-1A420BE75787} - System32\Tasks\At1 => c:\Program Files\pcmax\service.exe [2014-05-29] () <==== ATTENTIONTask: {AD71A329-459B-4586-9FB3-9DB5850A5311} - System32\Tasks\WebBarLaunchTask => C:\Program Files\WebBar\wbsvc.exeTask: {B5582A58-EE93-46CE-930C-C06D4B2BC3E6} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => c:\program files\windows defender\MpCmdRun.exe [2008-01-19] (Microsoft Corporation)Task: {C21E25C2-0A81-48E5-A0D3-B28B399560B6} - System32\Tasks\2498c771-38e6-4940-8dce-eb55fa2ac5b9-4 => C:\Program Files\easy-deals3\2498c771-38e6-4940-8dce-eb55fa2ac5b9-4.exeTask: {D1D2450C-2EB4-4BDF-A207-B8DEEFEF65E5} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation)Task: {D77EDF22-FD45-4860-833B-3B36127A681F} - System32\Tasks\BlockAndSurf_wd => C:\Program Files\BlockAndSurf Corp\BlockAndSurf_wd.exe <==== ATTENTIONTask: {DC516F0A-E83F-4E79-9E6B-3BBCC50265C5} - System32\Tasks\Speedial => C:\Users\EDITHC~1\AppData\Roaming\Speedial\UPDATE~1\UPDATE~1.EXE <==== ATTENTIONTask: {DD10345C-9A8E-47BE-8A9B-86650050B9FE} - System32\Tasks\WebBarUpdateTask => C:\Program Files\WebBar\wbsvc.exeTask: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] ()Task: {E8E6FBEE-51C3-416B-B42E-C40A4F176829} - System32\Tasks\RegClean Pro_DEFAULT => C:\Program Files\RegClean Pro\RegCleanPro.exe <==== ATTENTIONTask: {EDC50C6E-7A9F-4E0C-88D1-422EBC246A37} - System32\Tasks\DriverUpdate Startup => C:\Program Files\DriverUpdate\DriverUpdate.exeTask: {F45DD0D6-4014-4A00-BE0E-8E7E46DF9D73} - System32\Tasks\PC Speed Maximizer Schedule => C:\Program Files\PC Speed Maximizer\SPMLauncher.exeTask: {F4D3FFB2-60E9-4FF4-A47D-BE1B770F8445} - System32\Tasks\8b927cea-2d3c-41f7-9e30-aa2c279bf006-1 => C:\Program Files\123HD-Ready\123HD-Ready-codedownloader.exeTask: {F710F666-8330-4B76-9477-A1F97260A443} - System32\Tasks\GoFastPC Schedule => C:\Program Files\GoFastPC\GFPCLauncher.exeTask: {FD667ACA-0727-429F-8970-C37C95D5B5D5} - System32\Tasks\pcreg => C:\Program Files\pcmax\service.exe [2014-05-29] () <==== ATTENTIONTask: {FECAE173-5A15-4720-AF60-752A14F47F4F} - System32\Tasks\SoftUpdateDaily => C:\Users\EDITHTask: {FF0C3403-AE40-405F-9F3E-38AA35F17F13} - System32\Tasks\Norton Security Scan for EDITH CAIN => C:\PROGRA~1\NORTON~2\Engine\410~1.28\Nss.exeTask: C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-1.job => C:\Program Files\HD-Vpro--1.9\HD-Vpro--1.9-codedownloader.exeTask: C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-2.job => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-2.exeTask: C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3.job => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-3.exeTask: C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-4.job => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-4.exeTask: C:\Windows\Tasks\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5.job => C:\Program Files\HD-Vpro--1.9\8af841f3-ff38-47df-b4f8-f0b2d0e2a4bd-5.exeTask: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exeTask: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTIONTask: C:\Windows\Tasks\At1.job => c:\Program Files\pcmax\service.exeTask: C:\Windows\Tasks\FF Watcher {4AF489E7-8509-4448-AC76-E29C66162AC3}.job => C:\Program Files\V-bates\PrefHelper.exeTask: C:\Windows\Tasks\FreeFileViewerUpdateChecker.job => C:\Program Files\FreeFileViewer\FFVCheckForUpdates.exe <==== ATTENTIONTask: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf95ace54f00ae.job => C:\Program Files\Google\Update\GoogleUpdate.exeTask: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exeTask: C:\Windows\Tasks\pcreg.job => C:\Program Files\pcmax\service.exe <==== ATTENTIONTask: C:\Windows\Tasks\SpeedMaxPc Update3_triggeronce.job => c:\program files\common files\speedmaxpc\uus3\Update3.exeTask: C:\Windows\Tasks\SpeedMaxPc_sch_2A5C784D-E789-11E3-8C24-00038A000015.job => C:\Program Files\SpeedMaxPc\SpeedMaxPc\SpeedMaxPc.exe ==================== Loaded Modules (whitelisted) ============= 2008-05-17 01:28 - 2007-12-11 23:02 - 00024064 _____ () C:\Windows\System32\WLTRYSVC.EXE2008-05-17 01:28 - 2007-12-11 23:01 - 00054784 _____ () C:\Windows\System32\bcmwlrmt.dll2014-05-30 15:46 - 2014-05-27 15:45 - 00093696 _____ () C:\Users\EDITH CAIN\AppData\Local\a05affdce4ca9d72a7d3c0c3ab912182\b96b7643e8c426f.exe2014-05-30 15:46 - 2014-03-07 20:56 - 00117262 _____ () C:\Users\EDITH CAIN\AppData\Local\a05affdce4ca9d72a7d3c0c3ab912182\libgcc_s_dw2-1.dll2014-05-30 15:46 - 2014-03-07 20:56 - 00970766 _____ () C:\Users\EDITH CAIN\AppData\Local\a05affdce4ca9d72a7d3c0c3ab912182\libstdc++-6.dll2014-06-05 10:33 - 2014-06-03 16:34 - 00110592 _____ () C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\DefaultFreewareProcess.exe2014-06-05 10:33 - 2014-03-07 20:56 - 00117262 _____ () C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\libgcc_s_dw2-1.dll2014-06-05 10:33 - 2014-03-07 20:56 - 00970766 _____ () C:\Users\123\AppData\Local\c2a96e701e29d4ee54e891ff50a200de\libstdc++-6.dll2014-07-01 21:05 - 2014-07-01 21:05 - 00110629 _____ () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\FunctionKeyboardWord.exe2014-07-01 21:05 - 2014-03-07 20:56 - 00117262 _____ () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\libgcc_s_dw2-1.dll2014-07-01 21:04 - 2014-03-07 20:56 - 00970766 _____ () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\libstdc++-6.dll2014-04-19 10:22 - 2014-04-19 10:22 - 00541696 _____ () C:\Program Files\003\htfmboczez32.exe2014-05-29 04:16 - 2014-05-29 04:16 - 00241344 _____ () C:\Program Files\pcmax\pcmax.exe2014-04-19 11:41 - 2014-02-20 15:13 - 00059904 _____ () C:\Program Files\Pirrit\AutoUpdater.exe2014-04-19 17:10 - 2014-02-26 17:42 - 00059904 _____ () C:\Program Files\WinRST\WinRST.exe2014-07-01 21:25 - 2014-06-05 06:58 - 04217672 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.153\pdf.dll2014-07-01 21:25 - 2014-06-05 06:58 - 00414536 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll2014-07-01 21:25 - 2014-06-05 06:58 - 01732424 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll2014-07-01 21:25 - 2014-06-05 06:58 - 14612296 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll2014-07-01 21:05 - 2014-07-01 21:05 - 00297509 _____ () C:\Users\EDITH CAIN\AppData\Local\FunctionKeyboardWord\AppEncondingWin32.exe ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\Temp:373E1720 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= MSCONFIG\Services: AVG Security Toolbar Service => 3MSCONFIG\Services: AVGIDSAgent => 2MSCONFIG\Services: avgwd => 2MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Digital Line Detect.lnk => C:\Windows\pss\Digital Line Detect.lnk.CommonStartupMSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk => C:\Windows\pss\QuickSet.lnk.CommonStartupMSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SmartMediaConverter.lnk => C:\Windows\pss\SmartMediaConverter.lnk.CommonStartupMSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SoftwareUpdater.lnk => C:\Windows\pss\SoftwareUpdater.lnk.CommonStartupMSCONFIG\startupfolder: C:^Users^EDITH CAIN^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^DesktopWeatherAlerts.lnk => C:\Windows\pss\DesktopWeatherAlerts.lnk.StartupMSCONFIG\startupfolder: C:^Users^EDITH CAIN^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Weather Alerts.lnk => C:\Windows\pss\Weather Alerts.lnk.StartupMSCONFIG\startupreg: 24x7HELP => "C:\Program Files\24x7Help\App24x7Help.exe" /STARTUPMSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"MSCONFIG\startupreg: AGupdate => C:\Program Files\AppGraffiti\AGupdate.exeMSCONFIG\startupreg: AOL Dialer => C:\Program Files\Common Files\AOL\ACS\AOlDial.exeMSCONFIG\startupreg: AOL Fast Start => "C:\Program Files\AOL 9.0b\AOL.EXE" -bMSCONFIG\startupreg: Apoint => C:\Program Files\DellTPad\Apoint.exeMSCONFIG\startupreg: AVG_UI => "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLYMSCONFIG\startupreg: BackupDutyLite => C:\Program Files\BackUpDutyLite\BackUpDutyLite.exeMSCONFIG\startupreg: BlockNSurf => C:\Program Files\BlockAndSurf Corp\BlockNSurf.exeMSCONFIG\startupreg: Broadcom Wireless Manager UI => C:\Windows\system32\WLTRAY.exeMSCONFIG\startupreg: Browser Infrastructure Helper => C:\Users\EDITH CAIN\AppData\Local\Smartbar\Application\Luckysave.exe startupMSCONFIG\startupreg: BrowserSafeguard => "C:\Program Files\Browsersafeguard\BrowserSafeguard.exe"MSCONFIG\startupreg: ChromeHelper => C:\Program Files\Common Files\ChromeHelper\ChromeHelper.exeMSCONFIG\startupreg: CommonToolkitTray => C:\Program Files\Fighters\Tray\FightersTray.exeMSCONFIG\startupreg: DELL Webcam Manager => "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /sMSCONFIG\startupreg: DellSupportCenter => "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenterMSCONFIG\startupreg: DownloadManager => "C:\Program Files\Zoom Downloader\DownloadManager.exe" /asMSCONFIG\startupreg: dscactivate => "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"MSCONFIG\startupreg: ECenter => C:\Dell\E-Center\EULALauncher.exeMSCONFIG\startupreg: ehTray.exe => C:\Windows\ehome\ehTray.exeMSCONFIG\startupreg: Exetender => "C:\Program Files\Hoopla\GPlayer.exe" /runonstartupMSCONFIG\startupreg: fastclean => "C:\Program Files\FastClean PRO\fastcleanpro.exe"MSCONFIG\startupreg: fst_us_53 => "C:\Program Files\fst_us_53\fst_us_53.exe"MSCONFIG\startupreg: fst_us_63 => "C:\Program Files\fst_us_63\fst_us_63.exe"MSCONFIG\startupreg: fst_us_87 => "C:\Program Files\fst_us_87\fst_us_87.exe"MSCONFIG\startupreg: HostManager => C:\Program Files\Common Files\AOL\1211579613\ee\AOLSoftware.exeMSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exeMSCONFIG\startupreg: IAAnotif => "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exeMSCONFIG\startupreg: InboxToolbar => "C:\PROGRA~1\INBOXT~1\Inbox.exe" /STARTUPMSCONFIG\startupreg: Itibiti.exe => C:\Program Files\Itibiti Soft Phone\Itibiti.exeMSCONFIG\startupreg: mobilegeni daemon => C:\Program Files\Mobogenie\DaemonProcess.exeMSCONFIG\startupreg: My Web Search Bar Search Scope Monitor => "C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe" /m=2 /w /hMSCONFIG\startupreg: MyWebSearch Email Plugin => C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exeMSCONFIG\startupreg: OEM02Mon.exe => C:\Windows\OEM02Mon.exeMSCONFIG\startupreg: PCMService => "C:\Program Files\Dell\MediaDirect\PCMService.exe"MSCONFIG\startupreg: PCPowerSpeed => "C:\Program Files\PCPowerSpeed\PCPowerTray.exe" /startupMSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exeMSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\qttask.exe" -atboottimeMSCONFIG\startupreg: RadioRage Search Scope Monitor => "C:\PROGRA~1\RADIOR~2\bar\1.bin\4jsrchmn.exe" /m=2 /w /hMSCONFIG\startupreg: RadioRage_4j Browser Plugin Loader => C:\PROGRA~1\RADIOR~2\bar\1.bin\4jbrmon.exeMSCONFIG\startupreg: RebateInformer => C:\Program Files\RebateInformer\RebateInf.exe /STARTUPMSCONFIG\startupreg: SigmatelSysTrayApp => %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exeMSCONFIG\startupreg: SiteRanker => "C:\Program Files\SiteRanker\SiteRankTray.exe"MSCONFIG\startupreg: swg => "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"MSCONFIG\startupreg: TelevisionFanatic Browser Plugin Loader => C:\Program Files\TelevisionFanatic\bar\1.bin\64brmon.exeMSCONFIG\startupreg: TelevisionFanatic EPM Support => "C:\PROGRA~1\TELEVI~2\bar\1.bin\64medint.exe" T8EPMSUP.DLL,SMSCONFIG\startupreg: TelevisionFanatic Home Page Guard 32 bit => "C:\PROGRA~1\TELEVI~2\bar\1.bin\AppIntegrator.exe"MSCONFIG\startupreg: TelevisionFanatic Search Scope Monitor => "C:\PROGRA~1\TELEVI~2\bar\1.bin\64srchmn.exe" /m=2 /w /hMSCONFIG\startupreg: VNT => C:\Program Files\VNT\vntldr.exeMSCONFIG\startupreg: vProt => "C:\Program Files\AVG Secure Search\vprot.exe"MSCONFIG\startupreg: WeatherBug => C:\Program Files\Earth Networks\WeatherBug\WeatherBug.exeMSCONFIG\startupreg: Windows Client Manager => C:\Program Files\Java Update\javaclient32.exeMSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide ==================== Faulty Device Manager Devices ============= Name: 6TO4 AdapterDescription: Microsoft 6to4 AdapterClass Guid: {4d36e972-e325-11ce-bfc1-08002be10318}Manufacturer: MicrosoftService: tunnelProblem: : This device cannot start. (Code10)Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Compaq PCMCIA ControllerDescription: Compaq PCMCIA ControllerClass Guid: {4d36e977-e325-11ce-bfc1-08002be10318}Manufacturer: CompaqService: pcmciaProblem: : This device cannot start. (Code10)Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors:==================Error: (07/02/2014 02:38:02 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0xf7c, application start time 0xmbam.exe0. Error: (07/02/2014 02:11:57 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0x14fc, application start time 0xmbam.exe0. Error: (07/02/2014 02:07:58 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0xb84, application start time 0xmbam.exe0. Error: (07/02/2014 01:52:10 PM) (Source: EventSystem) (EventID: 4609) (User: )Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (07/02/2014 00:35:17 PM) (Source: System Restore) (EventID: 8193) (User: )Description: Failed to create restore point on volume (Process = C:\Windows\system32\msiexec.exe /V; Descripton = Removed Ask Toolbar; Hr = 0x8007043c). Error: (07/02/2014 00:35:14 PM) (Source: System Restore) (EventID: 8193) (User: )Description: Failed to create restore point on volume (Process = C:\Windows\system32\msiexec.exe /V; Descripton = Removed Ask Toolbar; Hr = 0x8007043c). Error: (07/02/2014 00:33:15 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0x634, application start time 0xmbam.exe0. Error: (07/02/2014 00:00:01 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0x3c4, application start time 0xmbam.exe0. Error: (07/02/2014 11:59:35 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application mbam.exe, version 1.0.0.532, time stamp 0x53518532, faulting module MSVCR100.dll, version 10.0.40219.325, time stamp 0x4df2be1e, exception code 0x40000015, fault offset 0x0008d6fd,process id 0x6c0, application start time 0xmbam.exe0. Error: (07/02/2014 11:53:26 AM) (Source: EventSystem) (EventID: 4609) (User: )Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c System errors:=============Error: (07/02/2014 02:32:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: BCM42RLY%%2 Error: (07/02/2014 02:32:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: BCM42RLY%%2 Error: (07/02/2014 02:32:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: BCM42RLY%%2 Error: (07/02/2014 02:32:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: BCM42RLY%%2 Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: AvgLdx86 Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )Description: WinRST Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )Description: PirritUpdater Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )Description: FunctionKeyboardWord.exe Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )Description: DefaultFreewareProcess.exe Error: (07/02/2014 02:32:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )Description: b96b7643e8c426f.exe Microsoft Office Sessions:=========================Error: (07/02/2014 02:38:02 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdf7c01cf963de20132af Error: (07/02/2014 02:11:57 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd14fc01cf963a38588863 Error: (07/02/2014 02:07:58 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdb8401cf9638fd69f193 Error: (07/02/2014 01:52:10 PM) (Source: EventSystem) (EventID: 4609) (User: )Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (07/02/2014 00:35:17 PM) (Source: System Restore) (EventID: 8193) (User: )Description: C:\Windows\system32\msiexec.exe /VRemoved Ask Toolbar0x8007043c Error: (07/02/2014 00:35:14 PM) (Source: System Restore) (EventID: 8193) (User: )Description: C:\Windows\system32\msiexec.exe /VRemoved Ask Toolbar0x8007043c Error: (07/02/2014 00:33:15 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd63401cf962807f9cc3b Error: (07/02/2014 00:00:01 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd3c401cf9627d17652ab Error: (07/02/2014 11:59:35 AM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd6c001cf9626fb6c8f8b Error: (07/02/2014 11:53:26 AM) (Source: EventSystem) (EventID: 4609) (User: )Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c CodeIntegrity Errors:=================================== Date: 2014-07-02 14:57:17.681 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:17.084 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:16.292 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:15.714 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:14.884 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:12.458 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:11.654 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:57:10.850 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:55:33.397 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-07-02 14:55:32.805 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 76%Total physical RAM: 2037.31 MBAvailable physical RAM: 474.25 MBTotal Pagefile: 4313.89 MBAvailable Pagefile: 2587.76 MBTotal Virtual: 2047.88 MBAvailable Virtual: 1890.39 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:220.58 GB) (Free:176.51 GB) NTFS ==>[Drive with boot components (obtained from BCD)]Drive d: (RECOVERY) (Fixed) (Total:9.77 GB) (Free:5.28 GB) NTFS ==================== MBR & Partition Table ================== ========================================================Disk: 0 (Size: 233 GB) (Disk ID: 00000080)Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS)Partition 3: (Active) - (Size=221 GB) - (Type=07 NTFS)Partition 4: (Not Active) - (Size=2 GB) - (Type=OF Extended) ==================== End Of Log ============================
  11. Any help that you can provide would be very appreciated Addition.txt FRST.txt
  12. I'm having issues updating and using Malwarebytes... I'm not sure what the issues are.. but I will attach the logs. I would greatly appreciate assistance with this KT dds.txt attach.txt CheckResults.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.