49651131osu
-
Posts
2 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by 49651131osu
-
-
I did a full scan a while ago and am wondering if it is ok to delete what was found (registry keys and files). Log below:
Malwarebytes Anti-Malware
www.malwarebytes.orgScan Date: 9/2/2016
Scan Time: 9:53 PM
Logfile: Malwarebytes Log 9-2-16.txt
Administrator: YesVersion: 2.2.1.1043
Malware Database: v2016.09.02.10
Rootkit Database: v2016.08.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: DisabledOS: Windows 10
CPU: x64
File System: NTFS
User: ThomasScan Type: Threat Scan
Result: Completed
Objects Scanned: 331808
Time Elapsed: 48 min, 15 secMemory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: EnabledProcesses: 0
(No malicious items detected)Modules: 0
(No malicious items detected)Registry Keys: 19
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, Quarantined, [2c3699d49bff092d72841841709432ce],Registry Values: 0
(No malicious items detected)Registry Data: 0
(No malicious items detected)Folders: 0
(No malicious items detected)Files: 5
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\install.1455647699.zip, Quarantined, [f86a0f5e7a20979f6393e178a163d22e],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\3rdparty\OCComSDK.dll, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\3rdparty\OCSetupHlp.dll, Quarantined, [c89ad39a4c4e979f7454ef9a4cb8f40c],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDE964.tmp.1453073463\HTA\install.1453073463.zip, Quarantined, [a1c10469cfcb2610599d64f5b54f936d],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDE964.tmp.1453073463\HTA\3rdparty\OCComSDK.dll, Quarantined, [ec766d00c1d949ed5a9cb1a802020df3],Physical Sectors: 0
(No malicious items detected)
(end)
Old and New Scan. Need to know if I can delete?
in Resolved Malware Removal Logs
Posted
Logs attached:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 9/2/2016
Scan Time: 9:53 PM
Logfile: Malwarebytes Log 9-2-16.txt
Administrator: Yes
Version: 2.2.1.1043
Malware Database: v2016.09.02.10
Rootkit Database: v2016.08.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 10
CPU: x64
File System: NTFS
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 331808
Time Elapsed: 48 min, 15 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 19
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK.1, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, Quarantined, [2c3699d49bff092d72841841709432ce],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 5
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\install.1455647699.zip, Quarantined, [f86a0f5e7a20979f6393e178a163d22e],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\3rdparty\OCComSDK.dll, Quarantined, [2c3699d49bff092d72841841709432ce],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDACED.tmp.1455647699\HTA\3rdparty\OCSetupHlp.dll, Quarantined, [c89ad39a4c4e979f7454ef9a4cb8f40c],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDE964.tmp.1453073463\HTA\install.1453073463.zip, Quarantined, [a1c10469cfcb2610599d64f5b54f936d],
PUP.Optional.OpenCandy, C:\Users\Thomas\AppData\Local\Temp\HYDE964.tmp.1453073463\HTA\3rdparty\OCComSDK.dll, Quarantined, [ec766d00c1d949ed5a9cb1a802020df3],
Physical Sectors: 0
(No malicious items detected)
(end)
Next log:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 10/31/2016
Scan Time: 12:08 PM
Logfile: 10-31-16.txt
Administrator: Yes
Version: 2.2.1.1043
Malware Database: v2016.10.29.07
Rootkit Database: v2016.09.26.02
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 10
CPU: x64
File System: NTFS
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 331683
Time Elapsed: 46 min, 5 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerService.exe, 2492, Delete-on-Reboot, [609b811d94065bdb66f2bd5ca1649e62]
Modules: 0
(No malicious items detected)
Registry Keys: 1
PUP.Optional.USTechSupport, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\USTSScheduler, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 15
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport, Delete-on-Reboot, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\ClientMonitoring, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\DataCollection, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\SchedulerService, Delete-on-Reboot, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\Update, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\DEL, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\Users\Thomas\AppData\Roaming\USTechSupport, Quarantined, [46b5c4da8218063046134fca976ef907],
Files: 43
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\ClientMonitoring\MessageQueueService.exe, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\DataCollection\DataCollection.exe, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerService.exe, Delete-on-Reboot, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerService.log, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerServiceSettings.xml, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\Program Files (x86)\USTechSupport\Update\TinyUpdater.exe, Quarantined, [609b811d94065bdb66f2bd5ca1649e62],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Log\PCOSetup_1.0.17.0.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload1.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload2.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload3.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload4.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload5.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload6.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\ClientMonitoring\Upload\Upload7.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\DEL\del_archive_1.dat, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\DataCollection_CustomerSupport.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\DataCollection_Debug.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\MessageQueueService_CustomerSupport.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\MessageQueueService_Debug.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\MyCleanPC_CustomerSupport.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\MyCleanPC_Debug.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\PCOSetup_1.0.17.0_CustomerSupport.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\PCOSetup_1.0.17.0_Debug.log, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\SchedulerService_CustomerSupport.log, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Log\SchedulerService_Debug.log, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log.1, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log.2, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log.3, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log.4, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.log.5, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.xml, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.xml.1, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.xml.2, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.xml.3, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerService.xml.orig, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Scheduler\SchedulerServiceArchive.bin, Delete-on-Reboot, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759\client_config.xml, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759\embedded_config.xml, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759\FrameworkMSI.msi, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759\install_config.xml, Quarantined, [1cdf2f6f574362d42930071249bc857b],
PUP.Optional.USTechSupport, C:\ProgramData\USTechSupport\Stub\3418837edec34de09bd7d3ac75537759\PCOSetup_1.0.17.0.exe, Quarantined, [1cdf2f6f574362d42930071249bc857b],
Physical Sectors: 0
(No malicious items detected)
(end)