2016-11-09 16:43:10 : [main] - Saving current options to the configuration file 2016-11-09 16:43:12 : [main.gui] - Scan requested 2016-11-09 16:43:12 : [scan] - Running from: C:\AdwCleaner 2016-11-09 16:43:12 : [scan] - Progress: 0% 2016-11-09 16:43:12 : [database] - Checking for database updates 2016-11-09 16:43:12 : [main.network] - Updating definitions 2016-11-09 16:43:17 : [main.network] - Saving the updated definitions 2016-11-09 16:43:17 : [main.network] - Requesting the lastest database release number 2016-11-09 16:43:17 : [main.network] - Latest definitions: 173983447b45386bef93a63bfe6ac0b0 2016-11-09 16:43:17 : [database] - Database update succeeded: 173983447B45386BEF93A63BFE6AC0B0 2016-11-09 16:43:17 : [scan] - Progress: 5% 2016-11-09 16:43:17 : [database] - Initialize the database 2016-11-09 16:43:17 : [database] - Loading sqlite3.dll 2016-11-09 16:43:17 : [database] - Opening the database 2016-11-09 16:43:17 : [database] - Querying database's version 2016-11-09 16:43:17 : [database] - Loading internal data 2016-11-09 16:43:17 : [database] - Loading detections 2016-11-09 16:43:22 : [database] - Loading generics 2016-11-09 16:43:22 : [database] - Closing the database 2016-11-09 16:43:22 : [database] - Closing database 2016-11-09 16:43:22 : [database] - Unloading sqlite3.dll 2016-11-09 16:43:22 : [scan] - Progress: 15% 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [1] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [2] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [3] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [4] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [5] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [6] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [7] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [8] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [9] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [10] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [11] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [12] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [13] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [14] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [15] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [16] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [17] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [18] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [19] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [20] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [21] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [22] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [23] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [24] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [25] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [26] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [27] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [28] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [29] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [30] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [31] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [32] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [33] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [34] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [35] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [36] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [37] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [38] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [39] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [40] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [41] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [42] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [43] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [44] 2016-11-09 16:43:22 : [scan.generic] - Generating generic detections [45] 2016-11-09 16:43:22 : [scan.generic] - Generic detections generated 2016-11-09 16:43:22 : [scan] - Progress: 20% 2016-11-09 16:43:22 : [scan.generic] - Starting generic analysis 2016-11-09 16:43:23 : [scan.generic] - Found Z60VTEUY\www.citysearch[1].xml 2016-11-09 16:43:24 : [scan.generic] - Found HKLM\SOFTWARE\6E6B36EB-9156-411B-B951-C735F4747DCF 2016-11-09 16:43:24 : [scan.generic] - Found HKLM\SOFTWARE\7B0A8368-1A6F-48A5-B236-8BD61816B3F9 2016-11-09 16:43:24 : [scan.generic] - Found HWCRIPSSFGPGBGBP.job 2016-11-09 16:43:24 : [scan.generic] - Found {0E797F47-7E04-0B09-0D11-0B7D7F7E117D}.job 2016-11-09 16:43:24 : [scan.generic] - Found HWCRIPSSFGPGBGBP 2016-11-09 16:43:25 : [scan.generic] - Found ospd_us_037010256 2016-11-09 16:43:25 : [scan.generic] - Found mpck_en_005030256 2016-11-09 16:43:25 : [scan.generic] - Found rec_en_77 2016-11-09 16:43:25 : [scan] - Progress: 30% 2016-11-09 16:43:25 : [scan.services] - Starting services scan [1] 2016-11-09 16:43:25 : [scan.registry] - Found Wpm 2016-11-09 16:43:25 : [scan.registry] - Found Application Hosting 2016-11-09 16:43:25 : [scan.services] - Stopping services scan [1] 2016-11-09 16:43:25 : [scan.services] - Starting services scan [2] 2016-11-09 16:43:25 : [scan.services] - Found netfilter 2016-11-09 16:43:25 : [scan.services] - Stopping services scan [2] 2016-11-09 16:43:25 : [scan.services] - 1 malicious services found 2016-11-09 16:43:25 : [scan] - Progress: 40% 2016-11-09 16:43:25 : [scan.folders] - Starting folders scan 2016-11-09 16:43:26 : [scan.folders] - Found C:\Users\Master User\AppData\Local\AVG SafeGuard toolbar 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\Zoomex 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\337Games 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\AppCloudUpdater 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\OpenCandy 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Settings Manager 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Strongvault 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Systweak 2016-11-09 16:43:27 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\VOPackage 2016-11-09 16:43:29 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2016-11-09 16:43:30 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2016-11-09 16:43:34 : [scan.folders] - Found C:\Program Files\Max Driver Updater 2016-11-09 16:43:34 : [scan.folders] - Found C:\Program Files\nplus 2016-11-09 16:43:34 : [scan.folders] - Found C:\Windows\Quicky Translator 2016-11-09 16:43:36 : [scan.folders] - Found C:\Users\MASTER~1\AppData\Local\Temp\MPC 2016-11-09 16:43:37 : [scan.folders] - Found C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:43:37 : [scan.folders] - Found C:\Users\Master User\AppData\Local\app 2016-11-09 16:43:37 : [scan.folders] - Found C:\uninst 2016-11-09 16:43:37 : [scan.folders] - Stopping folders scan 2016-11-09 16:43:37 : [scan.folders] - 20 malicious folders found 2016-11-09 16:43:37 : [scan] - Progress: 50% 2016-11-09 16:43:37 : [scan.files] - Starting files scan 2016-11-09 16:43:38 : [scan.files] - Found C:\Users\Master User\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml 2016-11-09 16:43:38 : [scan.files] - Found C:\Users\Master User\AppData\Roaming\aps.uninstall.scan.results 2016-11-09 16:43:39 : [scan.files] - Found C:\Users\Master User\Desktop\Continue VuuPC Installation.lnk 2016-11-09 16:43:39 : [scan.files] - Found C:\Users\Master User\Desktop\Sync Folder.lnk 2016-11-09 16:43:40 : [scan.files] - Found C:\Windows\system32\drivers\netfilter.sys 2016-11-09 16:43:40 : [scan.files] - Found C:\Windows\system32\drivers\EsgScanner.sys 2016-11-09 16:43:41 : [scan.files] - Found C:\prefs.js 2016-11-09 16:43:41 : [scan.files] - Stopping files scan 2016-11-09 16:43:41 : [scan.files] - 8 malicious files found 2016-11-09 16:43:41 : [scan] - Progress: 55% 2016-11-09 16:43:41 : [scan.dll] - Starting DLL scan 2016-11-09 16:43:41 : [scan.dll] - Found C:\Windows\system32\dnsapi.dll 2016-11-09 16:43:41 : [scan.dll] - Stopping DLL scan 2016-11-09 16:43:41 : [scan.dll] - 1 malicious DLL found 2016-11-09 16:43:41 : [scan] - Progress: 60% 2016-11-09 16:43:41 : [scan.wmi] - Starting WMI scan 2016-11-09 16:43:41 : [scan.wmi] - Stopping WMI scan 2016-11-09 16:43:41 : [scan.wmi] - 0 malicious WMI found 2016-11-09 16:43:41 : [scan] - Progress: 65% 2016-11-09 16:43:41 : [scan.shortcuts] - Starting shortcuts scan 2016-11-09 16:43:42 : [scan.shortcuts] - Stopping shortcuts scan 2016-11-09 16:43:42 : [scan.shortcuts] - 0 malicious shortcuts found 2016-11-09 16:43:42 : [scan] - Progress: 70% 2016-11-09 16:43:42 : [scan.tasks] - Starting tasks scan 2016-11-09 16:43:42 : [scan.tasks] - Stopping tasks scan 2016-11-09 16:43:42 : [scan.tasks] - 3 malicious tasks found 2016-11-09 16:43:42 : [scan] - Progress: 75% 2016-11-09 16:43:42 : [scan.registry] - Starting registry scan [1] 2016-11-09 16:43:42 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI 2016-11-09 16:43:42 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI.1 2016-11-09 16:43:42 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj 2016-11-09 16:43:42 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj.1 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.GenericWnd 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.GenericWnd.1 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.NativeApi 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.NativeApi.1 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.ScriptHelperApi 2016-11-09 16:43:43 : [scan.registry] - Found ScriptHelper.ScriptHelperApi.1 2016-11-09 16:43:43 : [scan.registry] - Found ViProtocol.ViProtocolOLE 2016-11-09 16:43:43 : [scan.registry] - Found ViProtocol.ViProtocolOLE.1 2016-11-09 16:43:43 : [scan.registry] - Found YontooIEClient.Api 2016-11-09 16:43:43 : [scan.registry] - Found YontooIEClient.Api.1 2016-11-09 16:43:43 : [scan.registry] - Found YontooIEClient.Layers 2016-11-09 16:43:43 : [scan.registry] - Found YontooIEClient.Layers.1 2016-11-09 16:43:43 : [scan.registry] - Stopping registry scan [1] 2016-11-09 16:43:43 : [scan.registry] - Starting registry scan [2] 2016-11-09 16:43:45 : [scan.registry] - Found {1FDFF5A2-7BB1-48E1-8081-7236812B12B2} 2016-11-09 16:43:45 : [scan.registry] - Found {6A7CD9EC-D8BD-4340-BCD0-77C09A282921} 2016-11-09 16:43:45 : [scan.registry] - Found {CFDAFE39-20CE-451D-BD45-A37452F39CF0} 2016-11-09 16:43:45 : [scan.registry] - Found {425F4ABF-B8E4-402D-9E49-06E494EB8DBF} 2016-11-09 16:43:46 : [scan.registry] - Found {051E9166-B275-4683-907B-372FAE22BC7C} 2016-11-09 16:43:46 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:43:46 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:43:46 : [scan.registry] - Found {7E84186E-B5DE-4226-8A66-6E49C6B511B4} 2016-11-09 16:43:46 : [scan.registry] - Found {80922EE0-8A76-46AE-95D5-BD3C3FE0708D} 2016-11-09 16:43:46 : [scan.registry] - Found {933B95E2-E7B7-4AD9-B952-7AC336682AE3} 2016-11-09 16:43:46 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:43:46 : [scan.registry] - Found {99066096-8989-4612-841F-621A01D54AD7} 2016-11-09 16:43:46 : [scan.registry] - Found {B658800C-F66E-4EF3-AB85-6C0C227862A9} 2016-11-09 16:43:46 : [scan.registry] - Found {DE9028D0-5FFA-4E69-94E3-89EE8741F468} 2016-11-09 16:43:46 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:43:46 : [scan.registry] - Found {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} 2016-11-09 16:43:46 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:43:46 : [scan.registry] - Found {FE9271F2-6EFD-44B0-A826-84C829536E93} 2016-11-09 16:43:46 : [scan.registry] - Found {459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} 2016-11-09 16:43:46 : [scan.registry] - Found {554EBE31-AEC1-4E34-BCE3-606467760D88} 2016-11-09 16:43:46 : [scan.registry] - Found {7D8DAE88-BC05-4578-8C29-E541FFBA5757} 2016-11-09 16:43:46 : [scan.registry] - Found {F83D1872-D9FF-47F8-B5A0-49CC51E24EE8} 2016-11-09 16:43:46 : [scan.registry] - Found {A2970C7C-8392-4E6F-8B51-B763CF38E13C} 2016-11-09 16:43:46 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:43:46 : [scan.registry] - Found {3CCC052E-BDEE-408A-BEA7-90914EF2964B} 2016-11-09 16:43:46 : [scan.registry] - Found {61F47056-E400-43D3-AF1E-AB7DFFD4C4AD} 2016-11-09 16:43:46 : [scan.registry] - Found {E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A} 2016-11-09 16:43:46 : [scan.registry] - Found {CA3A5461-96B5-46DD-9341-5350D3C94615} 2016-11-09 16:43:46 : [scan.registry] - Found {03E2A1F3-4402-4121-8B35-733216D61217} 2016-11-09 16:43:46 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:43:46 : [scan.registry] - Found {1AD27395-1659-4DFF-A319-2CFA243861A5} 2016-11-09 16:43:46 : [scan.registry] - Found {31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} 2016-11-09 16:43:46 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:43:46 : [scan.registry] - Found {9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} 2016-11-09 16:43:46 : [scan.registry] - Found {C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} 2016-11-09 16:43:46 : [scan.registry] - Found {C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} 2016-11-09 16:43:46 : [scan.registry] - Found {4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3} 2016-11-09 16:43:46 : [scan.registry] - Found {A9582D7B-F24A-441D-9D26-450D58F3CD17} 2016-11-09 16:43:46 : [scan.registry] - Found {EE0D8859-2ED4-4B0D-9812-16865B9AFD65} 2016-11-09 16:43:47 : [scan.registry] - Found {726E90BE-DC22-4965-B215-E0784DC26F47} 2016-11-09 16:43:47 : [scan.registry] - Found {74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} 2016-11-09 16:43:47 : [scan.registry] - Found {9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} 2016-11-09 16:43:47 : [scan.registry] - Found {C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} 2016-11-09 16:43:47 : [scan.registry] - Found {D372567D-67C1-4B29-B3F0-159B52B3E967} 2016-11-09 16:43:47 : [scan.registry] - Found {DCEE70C6-FA43-4B67-A889-80AF260D2435} 2016-11-09 16:43:47 : [scan.registry] - Found {14EF423E-3EE8-44AE-9337-07AC3F27B744} 2016-11-09 16:43:48 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:43:48 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:43:48 : [scan.registry] - Found {323C6E6D-1621-470F-8A52-4FDEC4E75E40} 2016-11-09 16:43:48 : [scan.registry] - Found {C6FDD0C3-266A-4DC3-B459-28C697C44CDC} 2016-11-09 16:43:48 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:43:48 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:43:48 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:43:48 : [scan.registry] - Found {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} 2016-11-09 16:43:50 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:43:50 : [scan.registry] - Found {D4027C7F-154A-4066-A1AD-4243D8127440} 2016-11-09 16:43:51 : [scan.registry] - Stopping registry scan [2] 2016-11-09 16:43:51 : [scan.registry] - Starting registry scan [3] 2016-11-09 16:43:52 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:52 : [scan.registry] - Found coupon downloader 2016-11-09 16:43:52 : [scan.registry] - Found Supra Savings 2016-11-09 16:43:52 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:43:52 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:52 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:43:53 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:53 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:43:53 : [scan.registry] - Found AnyProtect 2016-11-09 16:43:53 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:43:53 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:43:53 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:43:53 : [scan.registry] - Found Linkey 2016-11-09 16:43:53 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:43:53 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:43:53 : [scan.registry] - Found Softonic 2016-11-09 16:43:53 : [scan.registry] - Found StartSearch 2016-11-09 16:43:53 : [scan.registry] - Found SweetIM 2016-11-09 16:43:53 : [scan.registry] - Found SystemK 2016-11-09 16:43:53 : [scan.registry] - Found TNT2 2016-11-09 16:43:53 : [scan.registry] - Found torch 2016-11-09 16:43:53 : [scan.registry] - Found wecarereminder 2016-11-09 16:43:53 : [scan.registry] - Found systweak 2016-11-09 16:43:53 : [scan.registry] - Found mtZonekix 2016-11-09 16:43:53 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:43:53 : [scan.registry] - Found Systemk 2016-11-09 16:43:53 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:53 : [scan.registry] - Found SProtector 2016-11-09 16:43:53 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:43:53 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:43:53 : [scan.registry] - Found PriceGong 2016-11-09 16:43:53 : [scan.registry] - Found suprasavings 2016-11-09 16:43:53 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:43:53 : [scan.registry] - Found coupon downloader 2016-11-09 16:43:53 : [scan.registry] - Found Wpm 2016-11-09 16:43:53 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:43:54 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:54 : [scan.registry] - Found coupon downloader 2016-11-09 16:43:54 : [scan.registry] - Found Supra Savings 2016-11-09 16:43:54 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:43:55 : [scan.registry] - Found AnyProtect 2016-11-09 16:43:55 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:43:55 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:43:55 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:43:55 : [scan.registry] - Found Linkey 2016-11-09 16:43:55 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:43:55 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:43:55 : [scan.registry] - Found Softonic 2016-11-09 16:43:55 : [scan.registry] - Found StartSearch 2016-11-09 16:43:55 : [scan.registry] - Found SweetIM 2016-11-09 16:43:55 : [scan.registry] - Found SystemK 2016-11-09 16:43:55 : [scan.registry] - Found TNT2 2016-11-09 16:43:55 : [scan.registry] - Found torch 2016-11-09 16:43:55 : [scan.registry] - Found wecarereminder 2016-11-09 16:43:55 : [scan.registry] - Found systweak 2016-11-09 16:43:55 : [scan.registry] - Found mtZonekix 2016-11-09 16:43:55 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:43:55 : [scan.registry] - Found Systemk 2016-11-09 16:43:55 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:43:55 : [scan.registry] - Found SProtector 2016-11-09 16:43:55 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:43:55 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:43:55 : [scan.registry] - Found PriceGong 2016-11-09 16:43:55 : [scan.registry] - Found suprasavings 2016-11-09 16:43:55 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:43:55 : [scan.registry] - Found AVG Security Toolbar 2016-11-09 16:43:55 : [scan.registry] - Found BrowserSafeGuard 2016-11-09 16:43:55 : [scan.registry] - Found csdimedia 2016-11-09 16:43:55 : [scan.registry] - Found DealPlyLive 2016-11-09 16:43:55 : [scan.registry] - Found FlashBeat 2016-11-09 16:43:55 : [scan.registry] - Found free_softtoday 2016-11-09 16:43:55 : [scan.registry] - Found Quiknowledge 2016-11-09 16:43:55 : [scan.registry] - Found SearchProtect 2016-11-09 16:43:55 : [scan.registry] - Found SP Global 2016-11-09 16:43:55 : [scan.registry] - Found SProtector 2016-11-09 16:43:55 : [scan.registry] - Found SweetIM 2016-11-09 16:43:55 : [scan.registry] - Found SystemK 2016-11-09 16:43:55 : [scan.registry] - Found Tarma Installer 2016-11-09 16:43:55 : [scan.registry] - Found torch 2016-11-09 16:43:55 : [scan.registry] - Found V9Software 2016-11-09 16:43:55 : [scan.registry] - Found WebBar 2016-11-09 16:43:55 : [scan.registry] - Found SprgFiles 2016-11-09 16:43:55 : [scan.registry] - Found systweak 2016-11-09 16:43:55 : [scan.registry] - Found mtZonekix 2016-11-09 16:43:55 : [scan.registry] - Found Systemk 2016-11-09 16:43:55 : [scan.registry] - Found SEARCHPROTECT 2016-11-09 16:43:55 : [scan.registry] - Found Xtp 2016-11-09 16:43:55 : [scan.registry] - Found {53820F89-063F-10D7-7457-06C201F4CBF0} 2016-11-09 16:43:55 : [scan.registry] - Found VOPackage 2016-11-09 16:43:55 : [scan.registry] - Found 11598763487076930564 2016-11-09 16:43:55 : [scan.registry] - Found {730E03E4-350E-48E5-9D3E-4329903D454D} 2016-11-09 16:43:55 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:43:56 : [scan.registry] - Found coupon downloader 2016-11-09 16:43:56 : [scan.registry] - Found Wpm 2016-11-09 16:43:56 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [3] 2016-11-09 16:43:56 : [scan] - Progress: 80% 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [4] 2016-11-09 16:43:56 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:43:56 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:43:56 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:43:56 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [4] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [5] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [5] 2016-11-09 16:43:56 : [scan] - Progress: 82% 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [6] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [6] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [7] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [7] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [8] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [8] 2016-11-09 16:43:56 : [scan] - Progress: 84% 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [9] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [9] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [10] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [10] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [11] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [11] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [12] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [12] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [13] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [13] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [14] 2016-11-09 16:43:56 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:43:56 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [14] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [15] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [15] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [16] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [16] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [17] 2016-11-09 16:43:56 : [scan.registry] - Stopping registry scan [17] 2016-11-09 16:43:56 : [scan.registry] - Starting registry scan [18] 2016-11-09 16:43:56 : [scan.registry] - Found AnyProtect Scanner 2016-11-09 16:43:56 : [scan.registry] - Found AnyProtect Tray 2016-11-09 16:43:56 : [scan.registry] - Found Itibiti.exe 2016-11-09 16:43:57 : [scan.registry] - Found vProt 2016-11-09 16:43:57 : [scan.registry] - Found IDSCPRODUCT 2016-11-09 16:43:57 : [scan.registry] - Stopping registry scan [18] 2016-11-09 16:43:57 : [scan] - Progress: 86% 2016-11-09 16:43:57 : [scan.registry] - Starting registry scan [19] 2016-11-09 16:43:57 : [scan.registry] - Found HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\iedll.dll 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\PROTOCOLS\handler\viprotocol 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Stpro.exe 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin 2016-11-09 16:43:57 : [scan.registry] - Found HKCU\Environment SNF 2016-11-09 16:43:57 : [scan.registry] - Found HKCU\Environment SNP 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\s 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ZONEKIX.EXE 2016-11-09 16:43:57 : [scan.registry] - Found HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Classes\protocols\handler\viprotocol 2016-11-09 16:43:57 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext DisableAddonLoadTimePerformanceNotifications 2016-11-09 16:43:57 : [scan.registry] - Stopping registry scan [19] 2016-11-09 16:43:57 : [scan] - Progress: 88% 2016-11-09 16:43:57 : [scan.registry] - 203 malicious registry element found 2016-11-09 16:43:57 : [scan] - Progress: 90% 2016-11-09 16:43:57 : [main] - Firefox is installed: False 2016-11-09 16:43:57 : [main] - Palemoon is installed: False 2016-11-09 16:43:57 : [main] - Cyberfox is installed: False 2016-11-09 16:43:57 : [main] - IceDragon is installed: False 2016-11-09 16:43:57 : [scan] - Progress: 95% 2016-11-09 16:43:57 : [main] - Chrome is installed: True 2016-11-09 16:43:57 : [scan.chromium] - Starting Chromium based browsers scan [1] 2016-11-09 16:43:57 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok 2016-11-09 16:43:57 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof 2016-11-09 16:43:57 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage 2016-11-09 16:43:57 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage-journal 2016-11-09 16:43:58 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\edmgmpmklgfbohogafcfobonnkogchec 2016-11-09 16:43:58 : [scan.chromium] - Stopping Chromium based browsers scan [1] 2016-11-09 16:43:58 : [scan] - Progress: 97% 2016-11-09 16:43:58 : [scan.chromium] - Starting Chromium based browsers scan [2] 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - Closing C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Web Data 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:43:58 : [scan.chromium] - Stopping Chromium based browsers scan [2] 2016-11-09 16:43:58 : [scan] - Progress: 99% 2016-11-09 16:43:58 : [scan.chromium] - Starting Chromium based browsers scan [3] 2016-11-09 16:43:58 : [scan.chromium] - Stopping Chromium based browsers scan [3] 2016-11-09 16:43:58 : [scan.chromium] - 0 malicious Chromium preferences elements found 2016-11-09 16:43:58 : [scan] - Progress: 100% 2016-11-09 16:43:58 : [scan] - Stopping scan 2016-11-09 16:44:03 : [main.gui] - Showing Report window 2016-11-09 16:44:32 : [main.gui] - Clean requested 2016-11-09 16:44:33 : [main.gui] - Killing all processes 2016-11-09 16:44:33 : [main] - Killing [System Process](0) 2016-11-09 16:44:33 : [main] - Killing System(4) 2016-11-09 16:44:33 : [main] - smss.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - csrss.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - wininit.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - csrss.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - services.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - lsass.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - lsm.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - winlogon.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:44:33 : [main] - Killing audiodg.exe(1192) 2016-11-09 16:44:33 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:44:33 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:44:33 : [main] - Killing sched.exe(1792) 2016-11-09 16:44:34 : [main] - svchost.exe - (1792) not killed - whitelisted 2016-11-09 16:44:34 : [main] - dwm.exe - (1792) not killed - whitelisted 2016-11-09 16:44:34 : [main] - explorer.exe - (1792) not killed - whitelisted 2016-11-09 16:44:34 : [main] - hkcmd.exe - (1792) not killed - whitelisted 2016-11-09 16:44:34 : [main] - Killing avguard.exe(2552) 2016-11-09 16:44:34 : [main] - Killing avgnt.exe(2612) 2016-11-09 16:44:34 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:44:34 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:44:34 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:44:34 : [main] - Killing avshadow.exe(1760) 2016-11-09 16:44:35 : [main] - svchost.exe - (1760) not killed - whitelisted 2016-11-09 16:44:35 : [main] - unsecapp.exe - (1760) not killed - whitelisted 2016-11-09 16:44:35 : [main] - WmiPrvSE.exe - (1760) not killed - whitelisted 2016-11-09 16:44:35 : [main] - svchost.exe - (1760) not killed - whitelisted 2016-11-09 16:44:35 : [main] - Killing WPFFontCache_v0400.exe(2336) 2016-11-09 16:44:35 : [main] - Killing WUDFHost.exe(4592) 2016-11-09 16:44:35 : [main] - Killing MAHostService.exe(4404) 2016-11-09 16:44:35 : [main] - Killing node.exe(3532) 2016-11-09 16:44:35 : [main] - Killing Avira.ServiceHost.exe(752) 2016-11-09 16:44:35 : [main] - Killing SearchIndexer.exe(3984) 2016-11-09 16:44:35 : [main] - Killing spoolsv.exe(4492) 2016-11-09 16:44:35 : [main] - Killing AppleMobileDeviceService.exe(4828) 2016-11-09 16:44:35 : [main] - Killing taskeng.exe(5732) 2016-11-09 16:44:35 : [main] - Killing taskeng.exe(4072) 2016-11-09 16:44:35 : [main] - Killing SLsvc.exe(5496) 2016-11-09 16:44:35 : [main] - Killing SearchProtocolHost.exe(0) 2016-11-09 16:44:35 : [main] - Killing chrome.exe(5816) 2016-11-09 16:44:35 : [main] - Killing chrome.exe(5808) 2016-11-09 16:44:35 : [main] - Killing chrome.exe(4228) 2016-11-09 16:44:36 : [main] - Killing chrome.exe(0) 2016-11-09 16:44:36 : [main] - Killing chrome.exe(0) 2016-11-09 16:44:36 : [main] - Killing SearchFilterHost.exe(0) 2016-11-09 16:44:36 : [quarantine] - Quarantine database successfully opened 2016-11-09 16:44:36 : [clean] - Progress: 0% 2016-11-09 16:44:36 : [clean.services] - Starting services clean 2016-11-09 16:44:36 : [quarantine] - Can't read key, attempting to delete key on reboot [HKLM\SYSTEM\CurrentControlSet\services\netfilter] 2016-11-09 16:44:36 : [quarantine] - Added registry element to quarantine database [HKLM\SYSTEM\CurrentControlSet\services\netfilter] 2016-11-09 16:44:36 : [clean.services] - Stopping services clean 2016-11-09 16:44:36 : [clean] - Progress: 10% 2016-11-09 16:44:36 : [clean.folders] - Starting folders clean 2016-11-09 16:44:37 : [quarantine] - Added file to quarantine database [C:\Users\Master User\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}] 2016-11-09 16:49:40 : INFO [main] - >>>> STARTING <<<< 2016-11-09 16:49:40 : INFO [main] - Version: 6.030 2016-11-09 16:49:40 : INFO [main] - RAM Usage: 48 2016-11-09 16:49:40 : INFO [main] - OS: WIN_VISTA Service Pack 2 X86 2016-11-09 16:49:40 : [main.language] - Checking the language 2016-11-09 16:49:40 : [main.language] - Language found: en 2016-11-09 16:49:40 : [main.network] - Checking the network connectivity 2016-11-09 16:49:40 : [main.network] - Network connectivity status: True 2016-11-09 16:49:40 : [main.eula] - Checking for EULA agreement 2016-11-09 16:49:40 : [main.network] - Check for updates 2016-11-09 16:49:40 : [main.network] - Requesting the last release number 2016-11-09 16:49:41 : [main.network] - The current version is up-to-date 2016-11-09 16:49:41 : [main.gui] - GUI setup 2016-11-09 16:49:41 : [main.gui] - Languages setup 2016-11-09 16:49:41 : [main] - Chrome is installed: True 2016-11-09 16:49:41 : [main] - Firefox is installed: False 2016-11-09 16:49:41 : [main] - Palemoon is installed: False 2016-11-09 16:49:41 : [main] - Cyberfox is installed: False 2016-11-09 16:49:41 : [main] - IceDragon is installed: False 2016-11-09 16:49:41 : [main.gui] - Showing the gui 2016-11-09 16:49:48 : [main.gui] - Showing Options window 2016-11-09 16:49:55 : [main] - Saving current options to the configuration file 2016-11-09 16:49:57 : [main.gui] - Scan requested 2016-11-09 16:49:57 : [scan] - Running from: C:\AdwCleaner 2016-11-09 16:49:57 : [scan] - Progress: 0% 2016-11-09 16:49:57 : [database] - Checking for database updates 2016-11-09 16:49:57 : [main.network] - Updating definitions 2016-11-09 16:50:02 : [main.network] - Saving the updated definitions 2016-11-09 16:50:02 : [main.network] - Requesting the lastest database release number 2016-11-09 16:50:03 : [main.network] - Latest definitions: 173983447b45386bef93a63bfe6ac0b0 2016-11-09 16:50:03 : [database] - Database update succeeded: 173983447B45386BEF93A63BFE6AC0B0 2016-11-09 16:50:03 : [scan] - Progress: 5% 2016-11-09 16:50:03 : [database] - Initialize the database 2016-11-09 16:50:03 : [database] - Loading sqlite3.dll 2016-11-09 16:50:03 : [database] - Opening the database 2016-11-09 16:50:03 : [database] - Querying database's version 2016-11-09 16:50:03 : [database] - Loading internal data 2016-11-09 16:50:03 : [database] - Loading detections 2016-11-09 16:50:08 : [database] - Loading generics 2016-11-09 16:50:09 : [database] - Closing the database 2016-11-09 16:50:09 : [database] - Closing database 2016-11-09 16:50:09 : [database] - Unloading sqlite3.dll 2016-11-09 16:50:09 : [scan] - Progress: 15% 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [1] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [2] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [3] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [4] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [5] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [6] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [7] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [8] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [9] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [10] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [11] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [12] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [13] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [14] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [15] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [16] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [17] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [18] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [19] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [20] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [21] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [22] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [23] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [24] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [25] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [26] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [27] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [28] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [29] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [30] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [31] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [32] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [33] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [34] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [35] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [36] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [37] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [38] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [39] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [40] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [41] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [42] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [43] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [44] 2016-11-09 16:50:09 : [scan.generic] - Generating generic detections [45] 2016-11-09 16:50:09 : [scan.generic] - Generic detections generated 2016-11-09 16:50:09 : [scan] - Progress: 20% 2016-11-09 16:50:09 : [scan.generic] - Starting generic analysis 2016-11-09 16:50:10 : [scan.generic] - Found Z60VTEUY\www.citysearch[1].xml 2016-11-09 16:50:10 : [scan.generic] - Found HKLM\SOFTWARE\6E6B36EB-9156-411B-B951-C735F4747DCF 2016-11-09 16:50:10 : [scan.generic] - Found HKLM\SOFTWARE\7B0A8368-1A6F-48A5-B236-8BD61816B3F9 2016-11-09 16:50:11 : [scan.generic] - Found HWCRIPSSFGPGBGBP.job 2016-11-09 16:50:11 : [scan.generic] - Found {0E797F47-7E04-0B09-0D11-0B7D7F7E117D}.job 2016-11-09 16:50:11 : [scan.generic] - Found HWCRIPSSFGPGBGBP 2016-11-09 16:50:11 : [scan.generic] - Found ospd_us_037010256 2016-11-09 16:50:11 : [scan.generic] - Found mpck_en_005030256 2016-11-09 16:50:11 : [scan.generic] - Found rec_en_77 2016-11-09 16:50:11 : [scan] - Progress: 30% 2016-11-09 16:50:11 : [scan.services] - Starting services scan [1] 2016-11-09 16:50:11 : [scan.registry] - Found Wpm 2016-11-09 16:50:11 : [scan.registry] - Found Application Hosting 2016-11-09 16:50:11 : [scan.services] - Stopping services scan [1] 2016-11-09 16:50:11 : [scan.services] - Starting services scan [2] 2016-11-09 16:50:12 : [scan.services] - Found netfilter 2016-11-09 16:50:12 : [scan.services] - Stopping services scan [2] 2016-11-09 16:50:12 : [scan.services] - 1 malicious services found 2016-11-09 16:50:12 : [scan] - Progress: 40% 2016-11-09 16:50:12 : [scan.folders] - Starting folders scan 2016-11-09 16:50:12 : [scan.folders] - Found C:\Users\Master User\AppData\Local\AVG SafeGuard toolbar 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\Zoomex 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\337Games 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\AppCloudUpdater 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\OpenCandy 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Settings Manager 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Strongvault 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Systweak 2016-11-09 16:50:14 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\VOPackage 2016-11-09 16:50:17 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2016-11-09 16:50:17 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2016-11-09 16:50:21 : [scan.folders] - Found C:\Program Files\Max Driver Updater 2016-11-09 16:50:21 : [scan.folders] - Found C:\Program Files\nplus 2016-11-09 16:50:22 : [scan.folders] - Found C:\Windows\Quicky Translator 2016-11-09 16:50:23 : [scan.folders] - Found C:\Users\MASTER~1\AppData\Local\Temp\MPC 2016-11-09 16:50:24 : [scan.folders] - Found C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:50:25 : [scan.folders] - Found C:\Users\Master User\AppData\Local\app 2016-11-09 16:50:25 : [scan.folders] - Found C:\uninst 2016-11-09 16:50:25 : [scan.folders] - Stopping folders scan 2016-11-09 16:50:25 : [scan.folders] - 20 malicious folders found 2016-11-09 16:50:25 : [scan] - Progress: 50% 2016-11-09 16:50:25 : [scan.files] - Starting files scan 2016-11-09 16:50:25 : [scan.files] - Found C:\Users\Master User\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml 2016-11-09 16:50:25 : [scan.files] - Found C:\Users\Master User\AppData\Roaming\aps.uninstall.scan.results 2016-11-09 16:50:26 : [scan.files] - Found C:\Users\Master User\Desktop\Continue VuuPC Installation.lnk 2016-11-09 16:50:26 : [scan.files] - Found C:\Users\Master User\Desktop\Sync Folder.lnk 2016-11-09 16:50:28 : [scan.files] - Found C:\Windows\system32\drivers\netfilter.sys 2016-11-09 16:50:28 : [scan.files] - Found C:\Windows\system32\drivers\EsgScanner.sys 2016-11-09 16:50:29 : [scan.files] - Found C:\prefs.js 2016-11-09 16:50:29 : [scan.files] - Stopping files scan 2016-11-09 16:50:29 : [scan.files] - 8 malicious files found 2016-11-09 16:50:29 : [scan] - Progress: 55% 2016-11-09 16:50:29 : [scan.dll] - Starting DLL scan 2016-11-09 16:50:29 : [scan.dll] - Found C:\Windows\system32\dnsapi.dll 2016-11-09 16:50:29 : [scan.dll] - Stopping DLL scan 2016-11-09 16:50:29 : [scan.dll] - 1 malicious DLL found 2016-11-09 16:50:29 : [scan] - Progress: 60% 2016-11-09 16:50:29 : [scan.wmi] - Starting WMI scan 2016-11-09 16:50:29 : [scan.wmi] - Stopping WMI scan 2016-11-09 16:50:29 : [scan.wmi] - 0 malicious WMI found 2016-11-09 16:50:29 : [scan] - Progress: 65% 2016-11-09 16:50:29 : [scan.shortcuts] - Starting shortcuts scan 2016-11-09 16:50:29 : [scan.shortcuts] - Stopping shortcuts scan 2016-11-09 16:50:29 : [scan.shortcuts] - 0 malicious shortcuts found 2016-11-09 16:50:29 : [scan] - Progress: 70% 2016-11-09 16:50:29 : [scan.tasks] - Starting tasks scan 2016-11-09 16:50:30 : [scan.tasks] - Stopping tasks scan 2016-11-09 16:50:30 : [scan.tasks] - 3 malicious tasks found 2016-11-09 16:50:30 : [scan] - Progress: 75% 2016-11-09 16:50:30 : [scan.registry] - Starting registry scan [1] 2016-11-09 16:50:30 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI 2016-11-09 16:50:30 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI.1 2016-11-09 16:50:30 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj 2016-11-09 16:50:30 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj.1 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.GenericWnd 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.GenericWnd.1 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.NativeApi 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.NativeApi.1 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.ScriptHelperApi 2016-11-09 16:50:31 : [scan.registry] - Found ScriptHelper.ScriptHelperApi.1 2016-11-09 16:50:31 : [scan.registry] - Found ViProtocol.ViProtocolOLE 2016-11-09 16:50:31 : [scan.registry] - Found ViProtocol.ViProtocolOLE.1 2016-11-09 16:50:31 : [scan.registry] - Found YontooIEClient.Api 2016-11-09 16:50:31 : [scan.registry] - Found YontooIEClient.Api.1 2016-11-09 16:50:31 : [scan.registry] - Found YontooIEClient.Layers 2016-11-09 16:50:31 : [scan.registry] - Found YontooIEClient.Layers.1 2016-11-09 16:50:31 : [scan.registry] - Stopping registry scan [1] 2016-11-09 16:50:31 : [scan.registry] - Starting registry scan [2] 2016-11-09 16:50:33 : [scan.registry] - Found {1FDFF5A2-7BB1-48E1-8081-7236812B12B2} 2016-11-09 16:50:33 : [scan.registry] - Found {6A7CD9EC-D8BD-4340-BCD0-77C09A282921} 2016-11-09 16:50:33 : [scan.registry] - Found {CFDAFE39-20CE-451D-BD45-A37452F39CF0} 2016-11-09 16:50:33 : [scan.registry] - Found {425F4ABF-B8E4-402D-9E49-06E494EB8DBF} 2016-11-09 16:50:34 : [scan.registry] - Found {051E9166-B275-4683-907B-372FAE22BC7C} 2016-11-09 16:50:34 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:50:34 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:50:34 : [scan.registry] - Found {7E84186E-B5DE-4226-8A66-6E49C6B511B4} 2016-11-09 16:50:34 : [scan.registry] - Found {80922EE0-8A76-46AE-95D5-BD3C3FE0708D} 2016-11-09 16:50:34 : [scan.registry] - Found {933B95E2-E7B7-4AD9-B952-7AC336682AE3} 2016-11-09 16:50:34 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:50:34 : [scan.registry] - Found {99066096-8989-4612-841F-621A01D54AD7} 2016-11-09 16:50:34 : [scan.registry] - Found {B658800C-F66E-4EF3-AB85-6C0C227862A9} 2016-11-09 16:50:34 : [scan.registry] - Found {DE9028D0-5FFA-4E69-94E3-89EE8741F468} 2016-11-09 16:50:34 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:50:34 : [scan.registry] - Found {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} 2016-11-09 16:50:34 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:50:34 : [scan.registry] - Found {FE9271F2-6EFD-44B0-A826-84C829536E93} 2016-11-09 16:50:34 : [scan.registry] - Found {459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} 2016-11-09 16:50:34 : [scan.registry] - Found {554EBE31-AEC1-4E34-BCE3-606467760D88} 2016-11-09 16:50:34 : [scan.registry] - Found {7D8DAE88-BC05-4578-8C29-E541FFBA5757} 2016-11-09 16:50:34 : [scan.registry] - Found {F83D1872-D9FF-47F8-B5A0-49CC51E24EE8} 2016-11-09 16:50:34 : [scan.registry] - Found {A2970C7C-8392-4E6F-8B51-B763CF38E13C} 2016-11-09 16:50:34 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:50:34 : [scan.registry] - Found {3CCC052E-BDEE-408A-BEA7-90914EF2964B} 2016-11-09 16:50:34 : [scan.registry] - Found {61F47056-E400-43D3-AF1E-AB7DFFD4C4AD} 2016-11-09 16:50:34 : [scan.registry] - Found {E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A} 2016-11-09 16:50:34 : [scan.registry] - Found {CA3A5461-96B5-46DD-9341-5350D3C94615} 2016-11-09 16:50:34 : [scan.registry] - Found {03E2A1F3-4402-4121-8B35-733216D61217} 2016-11-09 16:50:34 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:50:34 : [scan.registry] - Found {1AD27395-1659-4DFF-A319-2CFA243861A5} 2016-11-09 16:50:34 : [scan.registry] - Found {31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} 2016-11-09 16:50:34 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:50:34 : [scan.registry] - Found {9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} 2016-11-09 16:50:34 : [scan.registry] - Found {C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} 2016-11-09 16:50:34 : [scan.registry] - Found {C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} 2016-11-09 16:50:34 : [scan.registry] - Found {4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3} 2016-11-09 16:50:34 : [scan.registry] - Found {A9582D7B-F24A-441D-9D26-450D58F3CD17} 2016-11-09 16:50:34 : [scan.registry] - Found {EE0D8859-2ED4-4B0D-9812-16865B9AFD65} 2016-11-09 16:50:35 : [scan.registry] - Found {726E90BE-DC22-4965-B215-E0784DC26F47} 2016-11-09 16:50:35 : [scan.registry] - Found {74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} 2016-11-09 16:50:35 : [scan.registry] - Found {9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} 2016-11-09 16:50:35 : [scan.registry] - Found {C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} 2016-11-09 16:50:35 : [scan.registry] - Found {D372567D-67C1-4B29-B3F0-159B52B3E967} 2016-11-09 16:50:35 : [scan.registry] - Found {DCEE70C6-FA43-4B67-A889-80AF260D2435} 2016-11-09 16:50:35 : [scan.registry] - Found {14EF423E-3EE8-44AE-9337-07AC3F27B744} 2016-11-09 16:50:36 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:50:36 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:50:36 : [scan.registry] - Found {323C6E6D-1621-470F-8A52-4FDEC4E75E40} 2016-11-09 16:50:36 : [scan.registry] - Found {C6FDD0C3-266A-4DC3-B459-28C697C44CDC} 2016-11-09 16:50:36 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:50:36 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:50:36 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:50:36 : [scan.registry] - Found {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} 2016-11-09 16:50:38 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:50:38 : [scan.registry] - Found {D4027C7F-154A-4066-A1AD-4243D8127440} 2016-11-09 16:50:40 : [scan.registry] - Stopping registry scan [2] 2016-11-09 16:50:40 : [scan.registry] - Starting registry scan [3] 2016-11-09 16:50:40 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:40 : [scan.registry] - Found coupon downloader 2016-11-09 16:50:40 : [scan.registry] - Found Supra Savings 2016-11-09 16:50:40 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:50:40 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:40 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:50:41 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:41 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:50:41 : [scan.registry] - Found AnyProtect 2016-11-09 16:50:41 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:50:41 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:50:41 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:50:41 : [scan.registry] - Found Linkey 2016-11-09 16:50:41 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:50:41 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:50:41 : [scan.registry] - Found Softonic 2016-11-09 16:50:41 : [scan.registry] - Found StartSearch 2016-11-09 16:50:41 : [scan.registry] - Found SweetIM 2016-11-09 16:50:41 : [scan.registry] - Found SystemK 2016-11-09 16:50:41 : [scan.registry] - Found TNT2 2016-11-09 16:50:41 : [scan.registry] - Found torch 2016-11-09 16:50:41 : [scan.registry] - Found wecarereminder 2016-11-09 16:50:41 : [scan.registry] - Found systweak 2016-11-09 16:50:41 : [scan.registry] - Found mtZonekix 2016-11-09 16:50:41 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:50:41 : [scan.registry] - Found Systemk 2016-11-09 16:50:42 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:42 : [scan.registry] - Found SProtector 2016-11-09 16:50:42 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:50:42 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:50:42 : [scan.registry] - Found PriceGong 2016-11-09 16:50:42 : [scan.registry] - Found suprasavings 2016-11-09 16:50:42 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:50:42 : [scan.registry] - Found coupon downloader 2016-11-09 16:50:42 : [scan.registry] - Found Wpm 2016-11-09 16:50:42 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:50:42 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:42 : [scan.registry] - Found coupon downloader 2016-11-09 16:50:42 : [scan.registry] - Found Supra Savings 2016-11-09 16:50:42 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:50:43 : [scan.registry] - Found AnyProtect 2016-11-09 16:50:43 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:50:43 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:50:43 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:50:43 : [scan.registry] - Found Linkey 2016-11-09 16:50:43 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:50:43 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:50:43 : [scan.registry] - Found Softonic 2016-11-09 16:50:43 : [scan.registry] - Found StartSearch 2016-11-09 16:50:43 : [scan.registry] - Found SweetIM 2016-11-09 16:50:43 : [scan.registry] - Found SystemK 2016-11-09 16:50:43 : [scan.registry] - Found TNT2 2016-11-09 16:50:43 : [scan.registry] - Found torch 2016-11-09 16:50:43 : [scan.registry] - Found wecarereminder 2016-11-09 16:50:43 : [scan.registry] - Found systweak 2016-11-09 16:50:43 : [scan.registry] - Found mtZonekix 2016-11-09 16:50:43 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:50:43 : [scan.registry] - Found Systemk 2016-11-09 16:50:43 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:50:43 : [scan.registry] - Found SProtector 2016-11-09 16:50:43 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:50:43 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:50:43 : [scan.registry] - Found PriceGong 2016-11-09 16:50:43 : [scan.registry] - Found suprasavings 2016-11-09 16:50:43 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:50:43 : [scan.registry] - Found AVG Security Toolbar 2016-11-09 16:50:43 : [scan.registry] - Found BrowserSafeGuard 2016-11-09 16:50:43 : [scan.registry] - Found csdimedia 2016-11-09 16:50:43 : [scan.registry] - Found DealPlyLive 2016-11-09 16:50:43 : [scan.registry] - Found FlashBeat 2016-11-09 16:50:43 : [scan.registry] - Found free_softtoday 2016-11-09 16:50:44 : [scan.registry] - Found Quiknowledge 2016-11-09 16:50:44 : [scan.registry] - Found SearchProtect 2016-11-09 16:50:44 : [scan.registry] - Found SP Global 2016-11-09 16:50:44 : [scan.registry] - Found SProtector 2016-11-09 16:50:44 : [scan.registry] - Found SweetIM 2016-11-09 16:50:44 : [scan.registry] - Found SystemK 2016-11-09 16:50:44 : [scan.registry] - Found Tarma Installer 2016-11-09 16:50:44 : [scan.registry] - Found torch 2016-11-09 16:50:44 : [scan.registry] - Found V9Software 2016-11-09 16:50:44 : [scan.registry] - Found WebBar 2016-11-09 16:50:44 : [scan.registry] - Found SprgFiles 2016-11-09 16:50:44 : [scan.registry] - Found systweak 2016-11-09 16:50:44 : [scan.registry] - Found mtZonekix 2016-11-09 16:50:44 : [scan.registry] - Found Systemk 2016-11-09 16:50:44 : [scan.registry] - Found SEARCHPROTECT 2016-11-09 16:50:44 : [scan.registry] - Found Xtp 2016-11-09 16:50:44 : [scan.registry] - Found {53820F89-063F-10D7-7457-06C201F4CBF0} 2016-11-09 16:50:44 : [scan.registry] - Found VOPackage 2016-11-09 16:50:44 : [scan.registry] - Found 11598763487076930564 2016-11-09 16:50:44 : [scan.registry] - Found {730E03E4-350E-48E5-9D3E-4329903D454D} 2016-11-09 16:50:44 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:50:44 : [scan.registry] - Found coupon downloader 2016-11-09 16:50:44 : [scan.registry] - Found Wpm 2016-11-09 16:50:44 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [3] 2016-11-09 16:50:44 : [scan] - Progress: 80% 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [4] 2016-11-09 16:50:44 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:50:44 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:50:44 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:50:44 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [4] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [5] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [5] 2016-11-09 16:50:44 : [scan] - Progress: 82% 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [6] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [6] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [7] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [7] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [8] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [8] 2016-11-09 16:50:44 : [scan] - Progress: 84% 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [9] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [9] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [10] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [10] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [11] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [11] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [12] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [12] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [13] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [13] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [14] 2016-11-09 16:50:44 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:50:44 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [14] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [15] 2016-11-09 16:50:44 : [scan.registry] - Stopping registry scan [15] 2016-11-09 16:50:44 : [scan.registry] - Starting registry scan [16] 2016-11-09 16:50:45 : [scan.registry] - Stopping registry scan [16] 2016-11-09 16:50:45 : [scan.registry] - Starting registry scan [17] 2016-11-09 16:50:45 : [scan.registry] - Stopping registry scan [17] 2016-11-09 16:50:45 : [scan.registry] - Starting registry scan [18] 2016-11-09 16:50:45 : [scan.registry] - Found AnyProtect Scanner 2016-11-09 16:50:45 : [scan.registry] - Found AnyProtect Tray 2016-11-09 16:50:45 : [scan.registry] - Found Itibiti.exe 2016-11-09 16:50:45 : [scan.registry] - Found vProt 2016-11-09 16:50:45 : [scan.registry] - Found IDSCPRODUCT 2016-11-09 16:50:45 : [scan.registry] - Stopping registry scan [18] 2016-11-09 16:50:45 : [scan] - Progress: 86% 2016-11-09 16:50:45 : [scan.registry] - Starting registry scan [19] 2016-11-09 16:50:45 : [scan.registry] - Found HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\iedll.dll 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\PROTOCOLS\handler\viprotocol 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Stpro.exe 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin 2016-11-09 16:50:45 : [scan.registry] - Found HKCU\Environment SNF 2016-11-09 16:50:45 : [scan.registry] - Found HKCU\Environment SNP 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\s 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ZONEKIX.EXE 2016-11-09 16:50:45 : [scan.registry] - Found HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Classes\protocols\handler\viprotocol 2016-11-09 16:50:45 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext DisableAddonLoadTimePerformanceNotifications 2016-11-09 16:50:45 : [scan.registry] - Stopping registry scan [19] 2016-11-09 16:50:45 : [scan] - Progress: 88% 2016-11-09 16:50:45 : [scan.registry] - 203 malicious registry element found 2016-11-09 16:50:45 : [scan] - Progress: 90% 2016-11-09 16:50:45 : [main] - Firefox is installed: False 2016-11-09 16:50:45 : [main] - Palemoon is installed: False 2016-11-09 16:50:45 : [main] - Cyberfox is installed: False 2016-11-09 16:50:45 : [main] - IceDragon is installed: False 2016-11-09 16:50:45 : [scan] - Progress: 95% 2016-11-09 16:50:45 : [main] - Chrome is installed: True 2016-11-09 16:50:45 : [scan.chromium] - Starting Chromium based browsers scan [1] 2016-11-09 16:50:45 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok 2016-11-09 16:50:46 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof 2016-11-09 16:50:46 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage 2016-11-09 16:50:46 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage-journal 2016-11-09 16:50:46 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\edmgmpmklgfbohogafcfobonnkogchec 2016-11-09 16:50:46 : [scan.chromium] - Stopping Chromium based browsers scan [1] 2016-11-09 16:50:47 : [scan] - Progress: 97% 2016-11-09 16:50:47 : [scan.chromium] - Starting Chromium based browsers scan [2] 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - Closing C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Web Data 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:50:47 : [scan.chromium] - Stopping Chromium based browsers scan [2] 2016-11-09 16:50:47 : [scan] - Progress: 99% 2016-11-09 16:50:47 : [scan.chromium] - Starting Chromium based browsers scan [3] 2016-11-09 16:50:47 : [scan.chromium] - Stopping Chromium based browsers scan [3] 2016-11-09 16:50:47 : [scan.chromium] - 0 malicious Chromium preferences elements found 2016-11-09 16:50:47 : [scan] - Progress: 100% 2016-11-09 16:50:47 : [scan] - Stopping scan 2016-11-09 16:50:52 : [main.gui] - Showing Report window 2016-11-09 16:51:33 : [main.gui] - Clean requested 2016-11-09 16:51:45 : [main.gui] - Killing all processes 2016-11-09 16:51:45 : [main] - Killing [System Process](0) 2016-11-09 16:51:45 : [main] - Killing System(4) 2016-11-09 16:51:45 : [main] - smss.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - csrss.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - wininit.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - csrss.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - services.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - lsass.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - lsm.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - winlogon.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (4) not killed - whitelisted 2016-11-09 16:51:45 : [main] - Killing audiodg.exe(1192) 2016-11-09 16:51:45 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:51:45 : [main] - svchost.exe - (1192) not killed - whitelisted 2016-11-09 16:51:45 : [main] - Killing sched.exe(1792) 2016-11-09 16:51:46 : [main] - svchost.exe - (1792) not killed - whitelisted 2016-11-09 16:51:46 : [main] - dwm.exe - (1792) not killed - whitelisted 2016-11-09 16:51:46 : [main] - explorer.exe - (1792) not killed - whitelisted 2016-11-09 16:51:46 : [main] - hkcmd.exe - (1792) not killed - whitelisted 2016-11-09 16:51:46 : [main] - Killing avguard.exe(2552) 2016-11-09 16:51:46 : [main] - Killing avgnt.exe(2612) 2016-11-09 16:51:46 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:51:46 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:51:46 : [main] - svchost.exe - (2612) not killed - whitelisted 2016-11-09 16:51:46 : [main] - Killing avshadow.exe(1760) 2016-11-09 16:51:47 : [main] - svchost.exe - (1760) not killed - whitelisted 2016-11-09 16:51:47 : [main] - unsecapp.exe - (1760) not killed - whitelisted 2016-11-09 16:51:47 : [main] - WmiPrvSE.exe - (1760) not killed - whitelisted 2016-11-09 16:51:47 : [main] - svchost.exe - (1760) not killed - whitelisted 2016-11-09 16:51:47 : [main] - Killing WUDFHost.exe(5752) 2016-11-09 16:51:47 : [main] - Killing mobsync.exe(3088) 2016-11-09 16:51:47 : [main] - Killing chrome.exe(2692) 2016-11-09 16:51:47 : [main] - Killing chrome.exe(0) 2016-11-09 16:51:47 : [main] - Killing chrome.exe(0) 2016-11-09 16:51:47 : [main] - Killing AppleMobileDeviceService.exe(4408) 2016-11-09 16:51:47 : [main] - Killing taskeng.exe(5848) 2016-11-09 16:51:47 : [main] - Killing taskeng.exe(5504) 2016-11-09 16:51:47 : [main] - Killing SearchIndexer.exe(2388) 2016-11-09 16:51:47 : [main] - Killing SearchProtocolHost.exe(2844) 2016-11-09 16:51:47 : [main] - Killing SearchFilterHost.exe(976) 2016-11-09 16:51:47 : [main] - Killing SearchProtocolHost.exe(2652) 2016-11-09 16:51:47 : [quarantine] - Quarantine database successfully opened 2016-11-09 16:51:47 : [clean] - Progress: 0% 2016-11-09 16:51:47 : [clean.services] - Starting services clean 2016-11-09 16:51:47 : [quarantine] - Can't read key, attempting to delete key on reboot [HKLM\SYSTEM\CurrentControlSet\services\netfilter] 2016-11-09 16:51:47 : [quarantine] - Added registry element to quarantine database [HKLM\SYSTEM\CurrentControlSet\services\netfilter] 2016-11-09 16:51:47 : [clean.services] - Stopping services clean 2016-11-09 16:51:47 : [clean] - Progress: 10% 2016-11-09 16:51:47 : [clean.folders] - Starting folders clean 2016-11-09 16:51:48 : [quarantine] - Added file to quarantine database [C:\Users\Master User\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}] 2016-11-09 16:54:23 : INFO [main] - >>>> STARTING <<<< 2016-11-09 16:54:23 : INFO [main] - Version: 6.030 2016-11-09 16:54:23 : INFO [main] - RAM Usage: 51 2016-11-09 16:54:23 : INFO [main] - OS: WIN_VISTA Service Pack 2 X86 2016-11-09 16:54:23 : [main.language] - Checking the language 2016-11-09 16:54:23 : [main.language] - Language found: en 2016-11-09 16:54:23 : [main.network] - Checking the network connectivity 2016-11-09 16:54:23 : [main.network] - Network connectivity status: True 2016-11-09 16:54:23 : [main.eula] - Checking for EULA agreement 2016-11-09 16:54:23 : [main.network] - Check for updates 2016-11-09 16:54:23 : [main.network] - Requesting the last release number 2016-11-09 16:54:24 : [main.network] - The current version is up-to-date 2016-11-09 16:54:24 : [main.gui] - GUI setup 2016-11-09 16:54:24 : [main.gui] - Languages setup 2016-11-09 16:54:24 : [main] - Chrome is installed: True 2016-11-09 16:54:24 : [main] - Firefox is installed: False 2016-11-09 16:54:24 : [main] - Palemoon is installed: False 2016-11-09 16:54:24 : [main] - Cyberfox is installed: False 2016-11-09 16:54:24 : [main] - IceDragon is installed: False 2016-11-09 16:54:24 : [main.gui] - Showing the gui 2016-11-09 16:54:26 : [main.gui] - Showing Report window 2016-11-09 16:54:37 : [main.gui] - Scan requested 2016-11-09 16:54:37 : [scan] - Running from: C:\AdwCleaner 2016-11-09 16:54:37 : [scan] - Progress: 0% 2016-11-09 16:54:37 : [database] - Checking for database updates 2016-11-09 16:54:37 : [main.network] - Updating definitions 2016-11-09 16:54:43 : [main.network] - Saving the updated definitions 2016-11-09 16:54:43 : [main.network] - Requesting the lastest database release number 2016-11-09 16:54:43 : [main.network] - Latest definitions: 173983447b45386bef93a63bfe6ac0b0 2016-11-09 16:54:43 : [database] - Database update succeeded: 173983447B45386BEF93A63BFE6AC0B0 2016-11-09 16:54:43 : [scan] - Progress: 5% 2016-11-09 16:54:43 : [database] - Initialize the database 2016-11-09 16:54:43 : [database] - Loading sqlite3.dll 2016-11-09 16:54:43 : [database] - Opening the database 2016-11-09 16:54:43 : [database] - Querying database's version 2016-11-09 16:54:43 : [database] - Loading internal data 2016-11-09 16:54:44 : [database] - Loading detections 2016-11-09 16:54:49 : [database] - Loading generics 2016-11-09 16:54:49 : [database] - Closing the database 2016-11-09 16:54:49 : [database] - Closing database 2016-11-09 16:54:49 : [database] - Unloading sqlite3.dll 2016-11-09 16:54:49 : [scan] - Progress: 15% 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [1] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [2] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [3] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [4] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [5] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [6] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [7] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [8] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [9] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [10] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [11] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [12] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [13] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [14] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [15] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [16] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [17] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [18] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [19] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [20] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [21] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [22] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [23] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [24] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [25] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [26] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [27] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [28] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [29] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [30] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [31] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [32] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [33] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [34] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [35] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [36] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [37] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [38] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [39] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [40] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [41] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [42] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [43] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [44] 2016-11-09 16:54:49 : [scan.generic] - Generating generic detections [45] 2016-11-09 16:54:49 : [scan.generic] - Generic detections generated 2016-11-09 16:54:49 : [scan] - Progress: 20% 2016-11-09 16:54:49 : [scan.generic] - Starting generic analysis 2016-11-09 16:54:52 : [scan.generic] - Found Z60VTEUY\www.citysearch[1].xml 2016-11-09 16:54:52 : [scan.generic] - Found HKLM\SOFTWARE\6E6B36EB-9156-411B-B951-C735F4747DCF 2016-11-09 16:54:52 : [scan.generic] - Found HKLM\SOFTWARE\7B0A8368-1A6F-48A5-B236-8BD61816B3F9 2016-11-09 16:54:53 : [scan.generic] - Found HWCRIPSSFGPGBGBP.job 2016-11-09 16:54:53 : [scan.generic] - Found {0E797F47-7E04-0B09-0D11-0B7D7F7E117D}.job 2016-11-09 16:54:53 : [scan.generic] - Found HWCRIPSSFGPGBGBP 2016-11-09 16:54:53 : [scan.generic] - Found ospd_us_037010256 2016-11-09 16:54:53 : [scan.generic] - Found mpck_en_005030256 2016-11-09 16:54:53 : [scan.generic] - Found rec_en_77 2016-11-09 16:54:54 : [scan] - Progress: 30% 2016-11-09 16:54:54 : [scan.services] - Starting services scan [1] 2016-11-09 16:54:54 : [scan.registry] - Found Wpm 2016-11-09 16:54:54 : [scan.registry] - Found Application Hosting 2016-11-09 16:54:54 : [scan.services] - Stopping services scan [1] 2016-11-09 16:54:54 : [scan.services] - Starting services scan [2] 2016-11-09 16:54:54 : [scan.services] - Found netfilter 2016-11-09 16:54:54 : [scan.services] - Stopping services scan [2] 2016-11-09 16:54:54 : [scan.services] - 1 malicious services found 2016-11-09 16:54:54 : [scan] - Progress: 40% 2016-11-09 16:54:54 : [scan.folders] - Starting folders scan 2016-11-09 16:54:54 : [scan.folders] - Found C:\Users\Master User\AppData\Local\AVG SafeGuard toolbar 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\LocalLow\Zoomex 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\337Games 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\AppCloudUpdater 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\OpenCandy 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Settings Manager 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Strongvault 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Systweak 2016-11-09 16:54:56 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\VOPackage 2016-11-09 16:54:58 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2016-11-09 16:54:58 : [scan.folders] - Found C:\Users\Master User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2016-11-09 16:55:03 : [scan.folders] - Found C:\Program Files\Max Driver Updater 2016-11-09 16:55:03 : [scan.folders] - Found C:\Program Files\nplus 2016-11-09 16:55:03 : [scan.folders] - Found C:\Windows\Quicky Translator 2016-11-09 16:55:05 : [scan.folders] - Found C:\Users\MASTER~1\AppData\Local\Temp\MPC 2016-11-09 16:55:06 : [scan.folders] - Found C:\Windows\system32\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar 2016-11-09 16:55:06 : [scan.folders] - Found C:\Users\Master User\AppData\Local\app 2016-11-09 16:55:06 : [scan.folders] - Found C:\uninst 2016-11-09 16:55:06 : [scan.folders] - Stopping folders scan 2016-11-09 16:55:06 : [scan.folders] - 20 malicious folders found 2016-11-09 16:55:06 : [scan] - Progress: 50% 2016-11-09 16:55:06 : [scan.files] - Starting files scan 2016-11-09 16:55:07 : [scan.files] - Found C:\Users\Master User\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml 2016-11-09 16:55:07 : [scan.files] - Found C:\Users\Master User\AppData\Roaming\aps.uninstall.scan.results 2016-11-09 16:55:08 : [scan.files] - Found C:\Users\Master User\Desktop\Continue VuuPC Installation.lnk 2016-11-09 16:55:08 : [scan.files] - Found C:\Users\Master User\Desktop\Sync Folder.lnk 2016-11-09 16:55:09 : [scan.files] - Found C:\Windows\system32\drivers\netfilter.sys 2016-11-09 16:55:09 : [scan.files] - Found C:\Windows\system32\drivers\EsgScanner.sys 2016-11-09 16:55:10 : [scan.files] - Found C:\prefs.js 2016-11-09 16:55:10 : [scan.files] - Stopping files scan 2016-11-09 16:55:10 : [scan.files] - 8 malicious files found 2016-11-09 16:55:10 : [scan] - Progress: 55% 2016-11-09 16:55:10 : [scan.dll] - Starting DLL scan 2016-11-09 16:55:10 : [scan.dll] - Found C:\Windows\system32\dnsapi.dll 2016-11-09 16:55:10 : [scan.dll] - Stopping DLL scan 2016-11-09 16:55:10 : [scan.dll] - 1 malicious DLL found 2016-11-09 16:55:10 : [scan] - Progress: 60% 2016-11-09 16:55:10 : [scan.wmi] - Starting WMI scan 2016-11-09 16:55:10 : [scan.wmi] - Stopping WMI scan 2016-11-09 16:55:10 : [scan.wmi] - 0 malicious WMI found 2016-11-09 16:55:10 : [scan] - Progress: 65% 2016-11-09 16:55:10 : [scan.shortcuts] - Starting shortcuts scan 2016-11-09 16:55:10 : [scan.shortcuts] - Stopping shortcuts scan 2016-11-09 16:55:10 : [scan.shortcuts] - 0 malicious shortcuts found 2016-11-09 16:55:10 : [scan] - Progress: 70% 2016-11-09 16:55:10 : [scan.tasks] - Starting tasks scan 2016-11-09 16:55:11 : [scan.tasks] - Stopping tasks scan 2016-11-09 16:55:11 : [scan.tasks] - 3 malicious tasks found 2016-11-09 16:55:11 : [scan] - Progress: 75% 2016-11-09 16:55:11 : [scan.registry] - Starting registry scan [1] 2016-11-09 16:55:11 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI 2016-11-09 16:55:11 : [scan.registry] - Found AVG SafeGuard toolbar.BrowserWndAPI.1 2016-11-09 16:55:11 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj 2016-11-09 16:55:11 : [scan.registry] - Found AVG SafeGuard toolbar.PugiObj.1 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.GenericWnd 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.GenericWnd.1 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.NativeApi 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.NativeApi.1 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.ScriptHelperApi 2016-11-09 16:55:12 : [scan.registry] - Found ScriptHelper.ScriptHelperApi.1 2016-11-09 16:55:12 : [scan.registry] - Found ViProtocol.ViProtocolOLE 2016-11-09 16:55:12 : [scan.registry] - Found ViProtocol.ViProtocolOLE.1 2016-11-09 16:55:12 : [scan.registry] - Found YontooIEClient.Api 2016-11-09 16:55:12 : [scan.registry] - Found YontooIEClient.Api.1 2016-11-09 16:55:12 : [scan.registry] - Found YontooIEClient.Layers 2016-11-09 16:55:12 : [scan.registry] - Found YontooIEClient.Layers.1 2016-11-09 16:55:12 : [scan.registry] - Stopping registry scan [1] 2016-11-09 16:55:12 : [scan.registry] - Starting registry scan [2] 2016-11-09 16:55:14 : [scan.registry] - Found {1FDFF5A2-7BB1-48E1-8081-7236812B12B2} 2016-11-09 16:55:14 : [scan.registry] - Found {6A7CD9EC-D8BD-4340-BCD0-77C09A282921} 2016-11-09 16:55:14 : [scan.registry] - Found {CFDAFE39-20CE-451D-BD45-A37452F39CF0} 2016-11-09 16:55:14 : [scan.registry] - Found {425F4ABF-B8E4-402D-9E49-06E494EB8DBF} 2016-11-09 16:55:14 : [scan.registry] - Found {051E9166-B275-4683-907B-372FAE22BC7C} 2016-11-09 16:55:14 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:55:14 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:55:15 : [scan.registry] - Found {7E84186E-B5DE-4226-8A66-6E49C6B511B4} 2016-11-09 16:55:15 : [scan.registry] - Found {80922EE0-8A76-46AE-95D5-BD3C3FE0708D} 2016-11-09 16:55:15 : [scan.registry] - Found {933B95E2-E7B7-4AD9-B952-7AC336682AE3} 2016-11-09 16:55:15 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:55:15 : [scan.registry] - Found {99066096-8989-4612-841F-621A01D54AD7} 2016-11-09 16:55:15 : [scan.registry] - Found {B658800C-F66E-4EF3-AB85-6C0C227862A9} 2016-11-09 16:55:15 : [scan.registry] - Found {DE9028D0-5FFA-4E69-94E3-89EE8741F468} 2016-11-09 16:55:15 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:55:15 : [scan.registry] - Found {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} 2016-11-09 16:55:15 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:55:15 : [scan.registry] - Found {FE9271F2-6EFD-44B0-A826-84C829536E93} 2016-11-09 16:55:15 : [scan.registry] - Found {459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} 2016-11-09 16:55:15 : [scan.registry] - Found {554EBE31-AEC1-4E34-BCE3-606467760D88} 2016-11-09 16:55:15 : [scan.registry] - Found {7D8DAE88-BC05-4578-8C29-E541FFBA5757} 2016-11-09 16:55:15 : [scan.registry] - Found {F83D1872-D9FF-47F8-B5A0-49CC51E24EE8} 2016-11-09 16:55:15 : [scan.registry] - Found {A2970C7C-8392-4E6F-8B51-B763CF38E13C} 2016-11-09 16:55:15 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:55:15 : [scan.registry] - Found {3CCC052E-BDEE-408A-BEA7-90914EF2964B} 2016-11-09 16:55:15 : [scan.registry] - Found {61F47056-E400-43D3-AF1E-AB7DFFD4C4AD} 2016-11-09 16:55:15 : [scan.registry] - Found {E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A} 2016-11-09 16:55:15 : [scan.registry] - Found {CA3A5461-96B5-46DD-9341-5350D3C94615} 2016-11-09 16:55:15 : [scan.registry] - Found {03E2A1F3-4402-4121-8B35-733216D61217} 2016-11-09 16:55:15 : [scan.registry] - Found {10DE7085-6A1E-4D41-A7BF-9AF93E351401} 2016-11-09 16:55:15 : [scan.registry] - Found {1AD27395-1659-4DFF-A319-2CFA243861A5} 2016-11-09 16:55:15 : [scan.registry] - Found {31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} 2016-11-09 16:55:15 : [scan.registry] - Found {4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} 2016-11-09 16:55:15 : [scan.registry] - Found {9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} 2016-11-09 16:55:15 : [scan.registry] - Found {C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} 2016-11-09 16:55:15 : [scan.registry] - Found {C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} 2016-11-09 16:55:15 : [scan.registry] - Found {4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3} 2016-11-09 16:55:15 : [scan.registry] - Found {A9582D7B-F24A-441D-9D26-450D58F3CD17} 2016-11-09 16:55:15 : [scan.registry] - Found {EE0D8859-2ED4-4B0D-9812-16865B9AFD65} 2016-11-09 16:55:15 : [scan.registry] - Found {726E90BE-DC22-4965-B215-E0784DC26F47} 2016-11-09 16:55:15 : [scan.registry] - Found {74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} 2016-11-09 16:55:15 : [scan.registry] - Found {9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} 2016-11-09 16:55:15 : [scan.registry] - Found {C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} 2016-11-09 16:55:15 : [scan.registry] - Found {D372567D-67C1-4B29-B3F0-159B52B3E967} 2016-11-09 16:55:15 : [scan.registry] - Found {DCEE70C6-FA43-4B67-A889-80AF260D2435} 2016-11-09 16:55:16 : [scan.registry] - Found {14EF423E-3EE8-44AE-9337-07AC3F27B744} 2016-11-09 16:55:16 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:55:16 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:55:17 : [scan.registry] - Found {323C6E6D-1621-470F-8A52-4FDEC4E75E40} 2016-11-09 16:55:17 : [scan.registry] - Found {C6FDD0C3-266A-4DC3-B459-28C697C44CDC} 2016-11-09 16:55:17 : [scan.registry] - Found {DF7770F7-832F-4BDF-B144-100EDDD0C3AE} 2016-11-09 16:55:17 : [scan.registry] - Found {F25AF245-4A81-40DC-92F9-E9021F207706} 2016-11-09 16:55:17 : [scan.registry] - Found {B2BC04DF-EFBD-409A-95CA-36874E5AB92A} 2016-11-09 16:55:17 : [scan.registry] - Found {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} 2016-11-09 16:55:19 : [scan.registry] - Found {95B7759C-8C7F-4BF1-B163-73684A933233} 2016-11-09 16:55:19 : [scan.registry] - Found {D4027C7F-154A-4066-A1AD-4243D8127440} 2016-11-09 16:55:20 : [scan.registry] - Stopping registry scan [2] 2016-11-09 16:55:20 : [scan.registry] - Starting registry scan [3] 2016-11-09 16:55:20 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:20 : [scan.registry] - Found coupon downloader 2016-11-09 16:55:20 : [scan.registry] - Found Supra Savings 2016-11-09 16:55:20 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:55:21 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:21 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:55:22 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:22 : [scan.registry] - Found {5F189DF5-2D05-472B-9091-84D9848AE48B} 2016-11-09 16:55:22 : [scan.registry] - Found AnyProtect 2016-11-09 16:55:22 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:55:22 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:55:22 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:55:22 : [scan.registry] - Found Linkey 2016-11-09 16:55:22 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:55:22 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:55:22 : [scan.registry] - Found Softonic 2016-11-09 16:55:22 : [scan.registry] - Found StartSearch 2016-11-09 16:55:22 : [scan.registry] - Found SweetIM 2016-11-09 16:55:22 : [scan.registry] - Found SystemK 2016-11-09 16:55:22 : [scan.registry] - Found TNT2 2016-11-09 16:55:22 : [scan.registry] - Found torch 2016-11-09 16:55:22 : [scan.registry] - Found wecarereminder 2016-11-09 16:55:22 : [scan.registry] - Found systweak 2016-11-09 16:55:22 : [scan.registry] - Found mtZonekix 2016-11-09 16:55:22 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:55:22 : [scan.registry] - Found Systemk 2016-11-09 16:55:22 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:22 : [scan.registry] - Found SProtector 2016-11-09 16:55:22 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:55:22 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:55:22 : [scan.registry] - Found PriceGong 2016-11-09 16:55:22 : [scan.registry] - Found suprasavings 2016-11-09 16:55:22 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:55:22 : [scan.registry] - Found coupon downloader 2016-11-09 16:55:22 : [scan.registry] - Found Wpm 2016-11-09 16:55:22 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:55:23 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:23 : [scan.registry] - Found coupon downloader 2016-11-09 16:55:23 : [scan.registry] - Found Supra Savings 2016-11-09 16:55:23 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:55:24 : [scan.registry] - Found AnyProtect 2016-11-09 16:55:24 : [scan.registry] - Found AppCloudUpdater 2016-11-09 16:55:24 : [scan.registry] - Found BrowserSafeguardInstalled 2016-11-09 16:55:24 : [scan.registry] - Found DAILYPCCLEAN 2016-11-09 16:55:24 : [scan.registry] - Found Linkey 2016-11-09 16:55:24 : [scan.registry] - Found Mozilla\Extends 2016-11-09 16:55:24 : [scan.registry] - Found PrivitizeVPNInstallDates 2016-11-09 16:55:24 : [scan.registry] - Found Softonic 2016-11-09 16:55:24 : [scan.registry] - Found StartSearch 2016-11-09 16:55:24 : [scan.registry] - Found SweetIM 2016-11-09 16:55:24 : [scan.registry] - Found SystemK 2016-11-09 16:55:24 : [scan.registry] - Found TNT2 2016-11-09 16:55:24 : [scan.registry] - Found torch 2016-11-09 16:55:24 : [scan.registry] - Found wecarereminder 2016-11-09 16:55:24 : [scan.registry] - Found systweak 2016-11-09 16:55:24 : [scan.registry] - Found mtZonekix 2016-11-09 16:55:24 : [scan.registry] - Found MICROSOFT\IDSC 2016-11-09 16:55:24 : [scan.registry] - Found Systemk 2016-11-09 16:55:24 : [scan.registry] - Found {1146AC44-2F03-4431-B4FD-889BC837521F} 2016-11-09 16:55:24 : [scan.registry] - Found SProtector 2016-11-09 16:55:24 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:55:24 : [scan.registry] - Found BlockAndSurf 2016-11-09 16:55:24 : [scan.registry] - Found PriceGong 2016-11-09 16:55:24 : [scan.registry] - Found suprasavings 2016-11-09 16:55:24 : [scan.registry] - Found {3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} 2016-11-09 16:55:24 : [scan.registry] - Found AVG Security Toolbar 2016-11-09 16:55:24 : [scan.registry] - Found BrowserSafeGuard 2016-11-09 16:55:24 : [scan.registry] - Found csdimedia 2016-11-09 16:55:24 : [scan.registry] - Found DealPlyLive 2016-11-09 16:55:24 : [scan.registry] - Found FlashBeat 2016-11-09 16:55:24 : [scan.registry] - Found free_softtoday 2016-11-09 16:55:24 : [scan.registry] - Found Quiknowledge 2016-11-09 16:55:24 : [scan.registry] - Found SearchProtect 2016-11-09 16:55:24 : [scan.registry] - Found SP Global 2016-11-09 16:55:24 : [scan.registry] - Found SProtector 2016-11-09 16:55:24 : [scan.registry] - Found SweetIM 2016-11-09 16:55:24 : [scan.registry] - Found SystemK 2016-11-09 16:55:24 : [scan.registry] - Found Tarma Installer 2016-11-09 16:55:24 : [scan.registry] - Found torch 2016-11-09 16:55:24 : [scan.registry] - Found V9Software 2016-11-09 16:55:24 : [scan.registry] - Found WebBar 2016-11-09 16:55:24 : [scan.registry] - Found SprgFiles 2016-11-09 16:55:24 : [scan.registry] - Found systweak 2016-11-09 16:55:24 : [scan.registry] - Found mtZonekix 2016-11-09 16:55:24 : [scan.registry] - Found Systemk 2016-11-09 16:55:24 : [scan.registry] - Found SEARCHPROTECT 2016-11-09 16:55:24 : [scan.registry] - Found Xtp 2016-11-09 16:55:24 : [scan.registry] - Found {53820F89-063F-10D7-7457-06C201F4CBF0} 2016-11-09 16:55:24 : [scan.registry] - Found VOPackage 2016-11-09 16:55:24 : [scan.registry] - Found 11598763487076930564 2016-11-09 16:55:24 : [scan.registry] - Found {730E03E4-350E-48E5-9D3E-4329903D454D} 2016-11-09 16:55:24 : [scan.registry] - Found {79A765E1-C399-405B-85AF-466F52E918B0} 2016-11-09 16:55:25 : [scan.registry] - Found coupon downloader 2016-11-09 16:55:25 : [scan.registry] - Found Wpm 2016-11-09 16:55:25 : [scan.registry] - Found Coupon Downloader 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [3] 2016-11-09 16:55:25 : [scan] - Progress: 80% 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [4] 2016-11-09 16:55:25 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:55:25 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:55:25 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:55:25 : [scan.registry] - Found 4E30E037E0535E84D9E3349209D354D4 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [4] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [5] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [5] 2016-11-09 16:55:25 : [scan] - Progress: 82% 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [6] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [6] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [7] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [7] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [8] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [8] 2016-11-09 16:55:25 : [scan] - Progress: 84% 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [9] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [9] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [10] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [10] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [11] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [11] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [12] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [12] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [13] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [13] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [14] 2016-11-09 16:55:25 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:55:25 : [scan.registry] - Found 104.197.191.4 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [14] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [15] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [15] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [16] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [16] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [17] 2016-11-09 16:55:25 : [scan.registry] - Stopping registry scan [17] 2016-11-09 16:55:25 : [scan.registry] - Starting registry scan [18] 2016-11-09 16:55:25 : [scan.registry] - Found AnyProtect Scanner 2016-11-09 16:55:25 : [scan.registry] - Found AnyProtect Tray 2016-11-09 16:55:26 : [scan.registry] - Found Itibiti.exe 2016-11-09 16:55:26 : [scan.registry] - Found vProt 2016-11-09 16:55:26 : [scan.registry] - Found IDSCPRODUCT 2016-11-09 16:55:26 : [scan.registry] - Stopping registry scan [18] 2016-11-09 16:55:26 : [scan] - Progress: 86% 2016-11-09 16:55:26 : [scan.registry] - Starting registry scan [19] 2016-11-09 16:55:26 : [scan.registry] - Found HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\iedll.dll 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\PROTOCOLS\handler\viprotocol 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Stpro.exe 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin 2016-11-09 16:55:26 : [scan.registry] - Found HKCU\Environment SNF 2016-11-09 16:55:26 : [scan.registry] - Found HKCU\Environment SNP 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\s 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ZONEKIX.EXE 2016-11-09 16:55:26 : [scan.registry] - Found HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION wb.exe 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Classes\protocols\handler\viprotocol 2016-11-09 16:55:26 : [scan.registry] - Found HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext DisableAddonLoadTimePerformanceNotifications 2016-11-09 16:55:26 : [scan.registry] - Stopping registry scan [19] 2016-11-09 16:55:26 : [scan] - Progress: 88% 2016-11-09 16:55:26 : [scan.registry] - 203 malicious registry element found 2016-11-09 16:55:26 : [scan] - Progress: 90% 2016-11-09 16:55:26 : [main] - Firefox is installed: False 2016-11-09 16:55:26 : [main] - Palemoon is installed: False 2016-11-09 16:55:26 : [main] - Cyberfox is installed: False 2016-11-09 16:55:26 : [main] - IceDragon is installed: False 2016-11-09 16:55:26 : [scan] - Progress: 95% 2016-11-09 16:55:26 : [main] - Chrome is installed: True 2016-11-09 16:55:26 : [scan.chromium] - Starting Chromium based browsers scan [1] 2016-11-09 16:55:26 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok 2016-11-09 16:55:26 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof 2016-11-09 16:55:27 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage 2016-11-09 16:55:27 : [scan.chromium] - Found C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage-journal 2016-11-09 16:55:27 : [scan.chromium] - Found HKLM\SOFTWARE\Google\Chrome\Extensions\edmgmpmklgfbohogafcfobonnkogchec 2016-11-09 16:55:27 : [scan.chromium] - Stopping Chromium based browsers scan [1] 2016-11-09 16:55:27 : [scan] - Progress: 97% 2016-11-09 16:55:27 : [scan.chromium] - Starting Chromium based browsers scan [2] 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - Closing C:\Users\Master User\AppData\Local\Google\Chrome\User Data\Default\Web Data 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - No profile to scan, skipping 2016-11-09 16:55:27 : [scan.chromium] - Stopping Chromium based browsers scan [2] 2016-11-09 16:55:27 : [scan] - Progress: 99% 2016-11-09 16:55:27 : [scan.chromium] - Starting Chromium based browsers scan [3] 2016-11-09 16:55:27 : [scan.chromium] - Stopping Chromium based browsers scan [3] 2016-11-09 16:55:27 : [scan.chromium] - 0 malicious Chromium preferences elements found 2016-11-09 16:55:27 : [scan] - Progress: 100% 2016-11-09 16:55:27 : [scan] - Stopping scan 2016-11-09 16:55:53 : [main.gui] - Showing Report window 2016-11-09 16:56:05 : [main.gui] - Clean requested 2016-11-09 16:56:11 : [main.gui] - Deleting temporary files before exiting 2016-11-09 16:56:11 : [main.gui] - >>>> EXITING <<<< 2016-11-09 16:59:15 : INFO [main] - >>>> STARTING <<<< 2016-11-09 16:59:15 : INFO [main] - Version: 6.030 2016-11-09 16:59:15 : INFO [main] - RAM Usage: 49 2016-11-09 16:59:15 : INFO [main] - OS: WIN_VISTA Service Pack 2 X86 2016-11-09 16:59:15 : [main.language] - Checking the language 2016-11-09 16:59:15 : [main.language] - Language found: en 2016-11-09 16:59:15 : [main.network] - Checking the network connectivity 2016-11-09 16:59:15 : [main.network] - Network connectivity status: True 2016-11-09 16:59:15 : [main.eula] - Checking for EULA agreement 2016-11-09 16:59:15 : [main.network] - Check for updates 2016-11-09 16:59:15 : [main.network] - Requesting the last release number 2016-11-09 16:59:16 : [main.network] - The current version is up-to-date 2016-11-09 16:59:16 : [main.gui] - GUI setup 2016-11-09 16:59:16 : [main.gui] - Languages setup 2016-11-09 16:59:16 : [main] - Chrome is installed: True 2016-11-09 16:59:16 : [main] - Firefox is installed: False 2016-11-09 16:59:16 : [main] - Palemoon is installed: False 2016-11-09 16:59:16 : [main] - Cyberfox is installed: False 2016-11-09 16:59:16 : [main] - IceDragon is installed: False 2016-11-09 16:59:16 : [main.gui] - Showing the gui 2016-11-09 16:59:21 : [main.gui] - Showing Report window 2016-11-09 17:00:00 : [main.gui] - Showing Report window 2016-11-09 17:00:56 : [main.gui] - Showing Options window