Prosím o kontrolu logu - problém: Offerswizard Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Luncenzo
nováček
Příspěvky: 4
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu - problém: Offerswizard

Příspěvekod Luncenzo » 01 črc 2014 18:05

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:59:48, on 1.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Samsung\Kies\Kies.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Users\Gigacomputer\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\inf\msnfwotjj\msnfwotjj.exe
C:\Windows\inf\msggucgpe\msggucgpe.exe
C:\Windows\inf\msbgmcvo\msbgmcvo.exe
C:\Windows\inf\msntfxh\msntfxh.exe
C:\Windows\inf\msxkafv\msxkafv.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Gigacomputer\Desktop\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16805
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: RichMediaViewV1release1831 - {dffd02a8-1922-4df6-af62-c46ae865acc8} - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ie\RichMediaViewV1release1831.dll
O2 - BHO: MediaWatchV1home5470 - {e5562438-db85-46e9-9d1a-b89e6254ee32} - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ie\MediaWatchV1home5470.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll (file missing)
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (file missing)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Sweetpacks Communicator] C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [msmljtvSrv] C:\Windows\inf\msmljtv.vbe
O4 - HKLM\..\Run: [mstdeugSrv] C:\Windows\inf\mstdeug.vbe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [msqsremSrv] C:\Windows\inf\msqsrem.vbe
O4 - HKLM\..\Run: [mscpurSrv] C:\Windows\inf\mscpur.vbe
O4 - HKLM\..\Run: [msruxngSrv] C:\Windows\inf\msruxng.vbe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Gigacomputer\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Gigacomputer\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Gigacomputer\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Service 16] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~2\MIF5BA~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~2\MIF5BA~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - (no file)
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\Windows\SysWOW64\nethtsrv.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\Windows\SysWOW64\netupdsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13905 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - problém: Offerswizard

Příspěvekod jaro3 » 01 črc 2014 21:29

Nejen..

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Luncenzo
nováček
Příspěvky: 4
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - problém: Offerswizard

Příspěvekod Luncenzo » 02 črc 2014 16:50

tak tady je ten Malwerebytes Anti - Malware


Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 2.7.2014
Scan Time: 16:33:56
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.07.02.03
Rootkit Database: v2014.07.01.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Gigacomputer

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 309946
Time Elapsed: 13 min, 13 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 7
PUP.Optional.Amonetize, C:\Windows\SysWOW64\nethtsrv.exe, 1808, , [6f4c8119007bcb6b8e27335f42bf8d73]
PUP.Optional.Amonetize, C:\Windows\SysWOW64\netupdsrv.exe, 2140, , [08b3584247342f077a3cddb5f011867a]
BitcoinMiner, C:\Windows\inf\msnfwotjj\msnfwotjj.exe, 5188, , [2893227839429f97a044966cbe43cc34]
BitcoinMiner, C:\Windows\inf\msbgmcvo\msbgmcvo.exe, 5216, , [b00b8614c7b4fb3b964e10f2ac5504fc]
BitcoinMiner, C:\Windows\inf\msntfxh\msntfxh.exe, 5224, , [8b30d7c3d3a8ee486084c83a709134cc]
BitcoinMiner, C:\Windows\inf\msggucgpe\msggucgpe.exe, 5236, , [c6f5108a18634fe7568e2dd5976a0ff1]
BitcoinMiner, C:\Windows\inf\msxkafv\msxkafv.exe, 5248, , [d7e4603a2358f145f9eb837f70913ec2]

Modules: 0
(No malicious items detected)

Registry Keys: 71
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NetHttpService, , [6f4c8119007bcb6b8e27335f42bf8d73],
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ServiceUpdater, , [08b3584247342f077a3cddb5f011867a],
PUP.Optional.NetFilter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\nethfdrv, , [c6f5e0bac8b36cca4c98e3af0100e61a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd.1, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd.1, , [695296041d5e4fe70a0e3b1bfa08a35d],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE.1, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE.1, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.SweetPacks, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [c4f70c8e0b70e65027a3064a13ef9868],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [14a7ddbdb3c84fe7a14090beed15ac54],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [14a7ddbdb3c84fe7a14090beed15ac54],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [14a7ddbdb3c84fe7a14090beed15ac54],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [14a7ddbdb3c84fe7a14090beed15ac54],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [00bb1486a6d553e357ef44acd033ee12],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [c0fb9a00f78474c2e95d3eb28182c33d],
PUP.Optional.InstallBrain.A, HKLM\SOFTWARE\WNLT, , [5665297127543105834e6c85fb0857a9],
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MediaPlayerV1alpha595, , [cdeef7a33d3e9e98ec08f1e0e51dbc44],
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewerV1alpha1943, , [932812885d1e69cd79de913c0ef4728e],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha1272, , [2a91b2e82b505dd9cfdbb01c18ead828],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha3879, , [ae0da4f65823c96d5357fece8e741fe1],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MediaWatchV1home5470, , [69529efcdba0c17563984bb9ef159a66],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\RichMediaViewV1release1831, , [1e9d1882b8c3cf67e7986753d72b29d7],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [7546eeac4a310036ce7890606f941de3],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [65565644205bf5411f27f4fc8c7753ad],
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mmifolfpllfdhilecpdpmemhelmanajl, , [bdfe53474f2c2c0a9769a41451b14db3],
PUP.Optional.Webexp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Webexp Enhanced, , [3d7e0c8e4239b97dd6da983c0200fb05],
PUP.Software.Updater, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}, , [f5c6aaf06813bb7b3705f6e618ea7b85],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM, , [f6c5f6a4601b082e1a9147a4ef14d22e],
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT, , [7b4046549be08fa711bf5b9649ba09f7],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [9922cdcd522970c64bca8666d42f55ab],
PUP.Optional.InstallBrain.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT, , [10ab4a5094e72a0c567ab73a5fa454ac],
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaPlayerV1alpha595, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewerV1alpha1943, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewV1alpha1272, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewV1alpha3879, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaWatchV1home5470, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{e5562438-db85-46e9-9d1a-b89e6254ee32}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{6f1bdcd4-5ec0-47c8-8c41-03ad628f6695}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F7CA3F74-D96E-453B-AD5B-458509548877}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F7CA3F74-D96E-453B-AD5B-458509548877}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{6f1bdcd4-5ec0-47c8-8c41-03ad628f6695}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{E5562438-DB85-46E9-9D1A-B89E6254EE32}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E5562438-DB85-46E9-9D1A-B89E6254EE32}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E5562438-DB85-46E9-9D1A-B89E6254EE32}, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.VideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Video Player, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\RichMediaViewV1release1831, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{dffd02a8-1922-4df6-af62-c46ae865acc8}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{d2319bd0-490d-4e37-8659-3cb417b3cf2a}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{702653F2-2AE4-4F6E-B36F-30418E0FF150}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{702653F2-2AE4-4F6E-B36F-30418E0FF150}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{d2319bd0-490d-4e37-8659-3cb417b3cf2a}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{DFFD02A8-1922-4DF6-AF62-C46AE865ACC8}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{DFFD02A8-1922-4DF6-AF62-C46AE865ACC8}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{DFFD02A8-1922-4DF6-AF62-C46AE865ACC8}, , [02b9c1d9007bdb5b2e91abfb29d9bb45],

Registry Values: 22
PUP.Optional.InstallBrain.A, HKLM\SOFTWARE\WNLT|PDV, [BLACKLIST=1], , [5665297127543105834e6c85fb0857a9]
PUP.Optional.SweetPacks.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Sweetpacks Communicator, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, , [308b18826e0d45f15c2f29bf47bce917]
Trojan.Agent.VBSGen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|msmljtvSrv, C:\Windows\inf\msmljtv.vbe, , [ae0dcfcbd6a533034ed90dc4c73b7d83]
Trojan.Agent.VBSGen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|mstdeugSrv, C:\Windows\inf\mstdeug.vbe, , [e7d444567209c17544e3478a1ee49070]
Trojan.Agent.VBSGen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|msqsremSrv, C:\Windows\inf\msqsrem.vbe, , [7c3fa4f6027967cfc166339e8e74f808]
Trojan.Agent.VBSGen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|mscpurSrv, C:\Windows\inf\mscpur.vbe, , [24974753502b50e68b9cb41dfb0747b9]
Trojan.Agent.VBSGen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|msruxngSrv, C:\Windows\inf\msruxng.vbe, , [edce05957407b38368bf5b76dc261ee2]
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|xz123@ya456.com, C:\Program Files (x86)\BetterSurf\ff, , [04b7bcde512a5cda785ba60b9f63ba46]
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@bettersurfplus.com, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff, , [02b96634dba02f07cf328830828029d7]
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@WebexpEnhancedV1alpha917.net, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff, , [5a61f5a516657eb8efac468b62a0d12f]
PUP.Optional.VideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@VideoPlayerV3beta165.net, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff, , [883348523a41e74f79872b9d42c0d12f]
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaPlayerV1alpha595.net, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff, , [5f5cbbdfdf9c91a5678e1eb35fa31be5]
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewerV1alpha1943.net, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff, , [7447a6f4097275c183d528a520e2a759]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha1272.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff, , [d0ebe3b7a8d3cd69ccdf48848181f20e]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha3879.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff, , [704bc3d7a7d4ba7cd2d9aa229f63ec14]
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaWatchV1home5470.net, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff, , [417adcbe166539fdf8044bb929db8e72]
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@RichMediaViewV1release1831.net, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff, , [04b7acee403b181eb9c504b606fccc34]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM|simapp_id, {CB712117-5C0F-11E2-8F74-047D7B73CF67}, , [f6c5f6a4601b082e1a9147a4ef14d22e]
PUP.Optional.NetworkUpdate.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NETHTTPSERVICE|ImagePath, C:\Windows\SysWOW64\nethtsrv.exe, , [ae0d8911c8b332047c9e2fdbba4a867a]
PUP.Optional.NetworkUpdate.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SERVICEUPDATER|ImagePath, C:\Windows\SysWOW64\netupdsrv.exe, , [eecd0d8d87f431055ac1ae5c9b69ad53]
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT|URL, MYSTART, , [7b4046549be08fa711bf5b9649ba09f7]
PUP.Optional.InstallBrain.A, HKU\S-1-5-21-2247907549-2551778222-1905120616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT|URL, SWEETPACKS_SEARCH, , [10ab4a5094e72a0c567ab73a5fa454ac]

Registry Data: 0
(No malicious items detected)

Folders: 65
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ch, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\icons, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\icons\default, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ie, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ch, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\icons, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\icons\default, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ie, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ch, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\icons, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\icons\default, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ie, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ch, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\icons, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\icons\default, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ie, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ch, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\icons, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\icons\default, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ie, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ch, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\icons, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\icons\default, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ie, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ch, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\icons, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\icons\default, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ie, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ch, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\icons, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\icons\default, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ie, , [02b9c1d9007bdb5b2e91abfb29d9bb45],

Files: 89
PUP.Optional.Amonetize, C:\Windows\SysWOW64\nethtsrv.exe, , [6f4c8119007bcb6b8e27335f42bf8d73],
PUP.Optional.Amonetize, C:\Windows\SysWOW64\netupdsrv.exe, , [08b3584247342f077a3cddb5f011867a],
BitcoinMiner, C:\Windows\inf\msnfwotjj\msnfwotjj.exe, , [2893227839429f97a044966cbe43cc34],
BitcoinMiner, C:\Windows\inf\msbgmcvo\msbgmcvo.exe, , [b00b8614c7b4fb3b964e10f2ac5504fc],
BitcoinMiner, C:\Windows\inf\msntfxh\msntfxh.exe, , [8b30d7c3d3a8ee486084c83a709134cc],
BitcoinMiner, C:\Windows\inf\msggucgpe\msggucgpe.exe, , [c6f5108a18634fe7568e2dd5976a0ff1],
BitcoinMiner, C:\Windows\inf\msxkafv\msxkafv.exe, , [d7e4603a2358f145f9eb837f70913ec2],
PUP.Optional.NetFilter, C:\Windows\System32\drivers\nethfdrv.sys, , [c6f5e0bac8b36cca4c98e3af0100e61a],
PUP.Optional.Conduit.A, C:\Users\Gigacomputer\AppData\Roaming\uTorrent\ism.exe, , [c0fb9505a2d9c96d530b9fee9b66ed13],
PUP.Optional.SweetIM, C:\Windows\Installer\aab0b1.msi, , [2f8c1e7c146790a6b5b36251a36127d9],
PUP.Optional.SweetIM, C:\Windows\Installer\aab0b8.msi, , [00bbc2d8a3d87eb888e0b4ffb54fdd23],
PUP.Optional.SweetIM, C:\Windows\Installer\aab0bd.msi, , [d2e955456516a195e880486bf70d8e72],
PUP.SoftwareUpdater.A, C:\Windows\System32\Tasks\AmiUpdXp, , [c9f2e7b3d6a5b185b58f149df60c1ae6],
PUP.Software.Updater, C:\Windows\Tasks\AmiUpdXp.job, , [7645c5d59ae161d58fac08d4956d629e],
Trojan.Agent.VBSGen, C:\Windows\inf\msmljtv.vbe, , [ae0dcfcbd6a533034ed90dc4c73b7d83],
Trojan.Agent.VBSGen, C:\Windows\inf\mstdeug.vbe, , [e7d444567209c17544e3478a1ee49070],
Trojan.Agent.VBSGen, C:\Windows\inf\msqsrem.vbe, , [7c3fa4f6027967cfc166339e8e74f808],
Trojan.Agent.VBSGen, C:\Windows\inf\mscpur.vbe, , [24974753502b50e68b9cb41dfb0747b9],
Trojan.Agent.VBSGen, C:\Windows\inf\msruxng.vbe, , [edce05957407b38368bf5b76dc261ee2],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\uninstall.exe, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ch\WebexpEnhancedV1alpha917.crx, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome.manifest, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\install.rdf, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\ffWebexpEnhancedV1alpha917.js, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\ffWebexpEnhancedV1alpha917ffaction.js, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\overlay.xul, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\icons\Thumbs.db, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha917\ff\chrome\content\icons\default\WebexpEnhancedV1alpha917_32.png, , [0ab1aceea8d381b57bf3dabe659d4db3],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\uninstall.exe, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ch\MediaPlayerV1alpha595.crx, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome.manifest, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\install.rdf, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\ffMediaPlayerV1alpha595.js, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\overlay.xul, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\icons\Thumbs.db, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha595\ff\chrome\content\icons\default\MediaPlayerV1alpha595_32.png, , [2c8f980294e7ec4a4aab801825ddd927],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\uninstall.exe, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ch\MediaViewerV1alpha1943.crx, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome.manifest, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\install.rdf, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\ffMediaViewerV1alpha1943.js, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\overlay.xul, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\icons\Thumbs.db, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1943\ff\chrome\content\icons\default\MediaViewerV1alpha1943_32.png, , [0dae1d7d166580b6993a5c3e48bad62a],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\uninstall.exe, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ch\MediaViewV1alpha1272.crx, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome.manifest, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\install.rdf, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\ffMediaViewV1alpha1272.js, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\overlay.xul, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\icons\Thumbs.db, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1272\ff\chrome\content\icons\default\MediaViewV1alpha1272_32.png, , [28932773116ae74fb2508813bb47f20e],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\uninstall.exe, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ch\MediaViewV1alpha3879.crx, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome.manifest, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\install.rdf, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\ffMediaViewV1alpha3879.js, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\overlay.xul, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\icons\Thumbs.db, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3879\ff\chrome\content\icons\default\MediaViewV1alpha3879_32.png, , [1f9c32689fdcdf57738fa3f821e11fe1],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\uninstall.exe, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ch\MediaWatchV1home5470.crx, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome.manifest, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\install.rdf, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\ffMediaWatchV1home5470.js, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\ffMediaWatchV1home5470ffaction.js, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\overlay.xul, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\icons\Thumbs.db, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ff\chrome\content\icons\default\MediaWatchV1home5470_32.png, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home5470\ie\MediaWatchV1home5470.dll, , [10abb3e7d4a7a3939ea53469dd25f30d],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\uninstall.exe, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ch\VideoPlayerV3beta165.crx, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome.manifest, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\install.rdf, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\ffVideoPlayerV3beta165.js, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\ffVideoPlayerV3beta165ffaction.js, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\overlay.xul, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\icons\Thumbs.db, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.VideoPlayer.A, C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta165\ff\chrome\content\icons\default\VideoPlayerV3beta165_32.png, , [14a761392655a294d27bfaa3ba48629e],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\uninstall.exe, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ch\RichMediaViewV1release1831.crx, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome.manifest, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\install.rdf, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\ffRichMediaViewV1release1831.js, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\ffRichMediaViewV1release1831ffaction.js, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\overlay.xul, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\icons\Thumbs.db, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ff\chrome\content\icons\default\RichMediaViewV1release1831_32.png, , [02b9c1d9007bdb5b2e91abfb29d9bb45],
PUP.Optional.RichMediaView.A, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1831\ie\RichMediaViewV1release1831.dll, , [02b9c1d9007bdb5b2e91abfb29d9bb45],

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - problém: Offerswizard

Příspěvekod jaro3 » 02 črc 2014 19:33

. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Luncenzo
nováček
Příspěvky: 4
Registrován: červenec 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - problém: Offerswizard  Vyřešeno

Příspěvekod Luncenzo » 02 črc 2014 22:08

dal jsem znova skenovat a po skenování mi to ukázalo že nebyly detekovány žádné hrozby

a po tomto ''mazání'' se už v prohlížeči nezobrazují reklamy jako dříve
takže asi problém vyřešen

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - problém: Offerswizard

Příspěvekod Orcus » 02 črc 2014 23:00

Ještě to dočistíme, takže sem doházej ty logy prosím.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 116 hostů