freak1051 | 27.04.2014 21:49 | Fake-Java Update stellt sich als webserch(-virus?)oder andere nervige software heraus Liste der Anhänge anzeigen (Anzahl: 2) Hallo Community,
Bin bei der suche von meinem fraglichen Virenproblem auf eure Seite gestoßen. Hab ein mir unbekanntes Programm namens Websearch in meiner Win-Software liste gefunden. Einerseits hat ein Mitglied von euch einem Threadsteller geholfen andererseits habe ich eine Anleitung gefunden nach der bin ich Stück für Stück vorgegangen: 1. Malewarebytes Anti Malware (log Nr. 1), AdwCleaner(Log Nr.2), Junkware Removal Tool (Log Nr. 3), Shortcut Cleaner (Log Nr. 4) und ESET Online Scanner (Log Nr.5). http://www.trojaner-board.de/152857-...entfernen.html
Ein Log Fehlt allerdings. Das erste vom ESET. Mein PC hat irgendwie gezickt. habe zum Glück noch die bisher infizierten Dateien Löschen können, die er gefunden hat, aber davon kein Log mehr. Beim Zweiten Scan hat er nur noch eine Datei gefunden, die ich aber auf meinem PC nirgendwo finde.
Könnte mir jemand sagen ob des alles Okay so war, und ob mein PC so jetzt dann wieder Heile ist ^^
Log Nr.1: Malewarebytes Anti Malware: Zitat:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 27.04.2014
Suchlauf-Zeit: 10:36:26
Logdatei: 27-04-2014.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.04.27.01
Rootkit Datenbank: v2014.03.27.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: freak
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 327425
Verstrichene Zeit: 44 Min, 18 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 3
Adware.Adpeak, C:\Program Files\003\buuoujqmrk64.exe, 4132, , [79d476b91b602a0cda78cd5856ae9c64]
PUP.Optional.SupraSavings.A, C:\Program Files\003\buuoujqmrk64.exe, 4132, , [202d2a059be01e186026551ccd35639d]
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe, 9268, , [b79642ed33480d29f55d9a007c876f91]
Module: 6
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\aspsys.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Microsoft.Win32.TaskScheduler.DLL, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.FileSystem.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.Zip.dll, , [b79642ed33480d29f55d9a007c876f91],
Registrierungsschlüssel: 28
Adware.Adpeak, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\buuoujqmrk64, , [79d476b91b602a0cda78cd5856ae9c64],
PUP.Optional.AdPeak.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{10AD2C61-0898-4348-8600-14A342F22AC3}, , [e8659c937b0061d506b77f9ae51df907],
PUP.Optional.AdPeak.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{10AD2C61-0898-4348-8600-14A342F22AC3}, , [e8659c937b0061d506b77f9ae51df907],
PUP.Optional.AdPeak.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{10AD2C61-0898-4348-8600-14A342F22AC3}, , [e8659c937b0061d506b77f9ae51df907],
PUP.Optional.AdPeak.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{10AD2C61-0898-4348-8600-14A342F22AC3}, , [e8659c937b0061d506b77f9ae51df907],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [81cc4ce32e4d68ce6172bd5e3dc5c040],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [81cc4ce32e4d68ce6172bd5e3dc5c040],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [81cc4ce32e4d68ce6172bd5e3dc5c040],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [81cc4ce32e4d68ce6172bd5e3dc5c040],
PUP.Optional.SupraSavings.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\buuoujqmrk64, , [202d2a059be01e186026551ccd35639d],
PUP.Optional.AdvancedSystemProtector.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\IEXPLORE.EXE, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\IEXPLORE.EXE, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.SupraSavings.A, HKLM\SOFTWARE\suprasavings, , [1835230cafcc979f846fb9bd36ccd729],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [381535fa582340f656314c5b81828c74],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\webssearchesSoftware, , [0c412c03285352e4becbd1a7b84aca36],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [36179897116a1422c9be17908380ba46],
PUP.Optional.MediaPlayerplus.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\MediaPlayerplus, , [0b429798adceae88b4ffe592df23916f],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [3617a48b007b5fd7e72d2e6f897aa35d],
PUP.Optional.SupraSavings.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupraSavings, , [55f8d65963181f17fafa9cda3dc5b749],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, , [212ce649adce3df972ddb9f70bf8a25e],
PUP.Optional.SupraSavings.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Supra Savings, , [0d40dd52f5863ef84599f4817a8826da],
PUP.Optional.SupraSavings.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\suprasavings, , [a5a8d35c92e9be784ea78de9cf3306fa],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [0b4282ad34478baba1f07f060cf68c74],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [e4695cd359225dd9b7049cffc043fe02],
PUP.Optional.Qone8, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [ba93f13e611a82b4e79fccdbf80b37c9],
PUP.Optional.AdvancedSystemProtector.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\Advanced System Protector, , [86c71f10f18a72c4452fccd582810000],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\webssearches uninstaller, , [e865151a5922270f6de3e58549b9dd23],
Registrierungswerte: 2
PUP.Optional.FirstSeenToday.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|fst_de_6, , [1e2f54db87f453e34df689e8966c09f7],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0X2O1C0R2R1R, , [e4695cd359225dd9b7049cffc043fe02]
Registrierungsdaten: 15
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}),,[88c53ff07407a690e2ee3beb6f957789]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131),,[d67757d82a510e287f4f180e867e30d0]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131),,[6ce1240bf9822610d200aa7c9a6aa55b]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[45083bf4047771c5cf34c26f56aebf41]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}),,[133a0e21f7846accb02063c344c09e62]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131),,[5bf253dca7d4c373408e22045aaa6b95]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131),,[17360629532894a2e9e965c1fb09c63a]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[4b02e946c6b5f244b3503af742c22ad6]
PUP.Optional.Snapdo, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=hp&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=hp&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[5eef5cd3d9a2ec4a264e3bf5956f22de]
PUP.Optional.WebsSearches.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131),,[f657a18e90ebf73f19b6bb6bfb09ed13]
PUP.Optional.Snapdo, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[69e450dfea91d363a5ce6ac642c236ca]
PUP.Optional.Snapdo, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[77d634fb6417bc7ae092ed43f2126e92]
PUP.Optional.Snapdo, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[f45961cef28941f5cea7151b848028d8]
PUP.Optional.Snapdo, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (hxxp://www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[5af350df0a719b9bcda94ee207fd0cf4]
PUP.Optional.SnapDo.A, HKU\S-1-5-21-2604398111-2870433077-1574135249-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}),,[a2abd7588deeb38317f538ef8282b34d]
Ordner: 45
PUP.Optional.SmartBar.A, C:\Users\freak\AppData\Local\Temp\smartbar, , [7cd176b96318b680ee92d0b7cd35c040],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\clamunpack, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\2.1.1000.12580, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12554, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12580, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\Logs, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.RegCleanerPro.A, C:\Users\freak\AppData\Roaming\Systweak\RegClean Pro, , [f75671beee8df2449c2e94cfeb170000],
PUP.Optional.RegCleanerPro.A, C:\Users\freak\AppData\Roaming\Systweak\RegClean Pro\Version 6.1, , [f75671beee8df2449c2e94cfeb170000],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\en, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\es, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\es_419, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-BE, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-CA, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-CH, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-LU, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\it, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\it-CH, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pl, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pt, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pt_BR, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\ru, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\ru-MO, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\tr, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\vi, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\zh_CN, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\zh_TW, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.SupraSavings.A, C:\Program Files\suprasavings, , [6edf58d72952ed490821056650b2dc24],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0, , [0647ca655229a3937c53a0cbd42e9769],
Dateien: 330
Adware.Adpeak, C:\Program Files\003\buuoujqmrk64.exe, , [79d476b91b602a0cda78cd5856ae9c64],
PUP.Optional.AdPeak.A, C:\Program Files (x86)\SupraSavings\2rs3.dll, , [e8659c937b0061d506b77f9ae51df907],
PUP.Optional.AdPeak.A, C:\temp\InstallFilter64.msi, , [b796022db8c369cd6d070c31847c8b75],
PUP.Optional.SupraSavings.A, C:\temp\t.msi, , [ada0a986ccafb97db0537ca89c6843bd],
PUP.Optional.SearchProtect.A, C:\Users\freak\AppData\Local\Temp\nsx6E48.exe, , [f75662cd156683b3ff4d50d56a9725db],
PUP.Optional.Conduit.A, C:\Users\freak\AppData\Local\Temp\uttBDD3.tmp.exe, , [2c2188a7d7a41521e1963eda61a05ba5],
PUP.Optional.SearchProtect.A, C:\Users\freak\AppData\Local\Temp\nsaEA4A.exe, , [410cb17e6f0c53e3bf8d46dff40df709],
PUP.Optional.SearchProtect.A, C:\Users\freak\AppData\Local\Temp\nsc6BA8.exe, , [97b6a38ca7d440f638148e9743be6c94],
PUP.Optional.SearchProtect.A, C:\Users\freak\AppData\Local\Temp\nsg5A8F.exe, , [f756240b512aa98d1d2fd74ebe43ae52],
PUP.Optional.SearchProtect.A, C:\Users\freak\AppData\Local\Temp\nsk5926.exe, , [0c418ba49ae166d0da728d98d22f28d8],
PUP.Optional.Conduit.A, C:\Users\freak\AppData\Local\Temp\SPSetup.exe, , [f954cd62bdbe9e9857e48a9029d8df21],
Backdoor.Bot, C:\Users\freak\AppData\Local\Temp\android\android.exe, , [0944d15e453647ef075b0b5db64b9e62],
PUP.Optional.RegCleanPro, C:\Users\freak\AppData\Local\Temp\is2099814586\517273245_stp\rcpsetup_adppi5_adppi5.exe, , [77d62d0277040432642642f233cd22de],
Backdoor.Bot, C:\Users\freak\AppData\Local\Temp\1952acd1-927e-4092-9b52-36da4693aae4\android.exe, , [113c7bb4c1ba6acc035ff67241c008f8],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Temp\1952acd1-927e-4092-9b52-36da4693aae4\software\F978377C-B7D4-4536-8E10-14CA97B13394.exe, , [74d98da2de9d5ed8f54427effc063fc1],
PUP.Optional.Fortunitas.A, C:\Users\freak\AppData\Local\Temp\1952acd1-927e-4092-9b52-36da4693aae4\software\FortunitasSetup.exe, , [4607121d1b60c67081a436d2fc0831cf],
PUP.Optional.ShoppingHelper.A, C:\Users\freak\AppData\Local\Temp\1952acd1-927e-4092-9b52-36da4693aae4\software\ShoppinHelper2_Setup2.exe, , [72dbb6797b0043f3bac068d4fb056e92],
PUP.Optional.SkyTech.A, C:\Users\freak\AppData\Local\Temp\fullpackage_temp1398550571\alilog.dll, , [df6e240b09725cda759e37fbb44c6997],
Backdoor.Bot, C:\Users\freak\AppData\Local\Temp\de2fb926-cc23-491b-87af-656a151e9011\android.exe, , [7fce9c933546ae8882e01f495ba69070],
PUP.Optional.Addlyrics, C:\Users\freak\AppData\Local\Temp\de2fb926-cc23-491b-87af-656a151e9011\software\2040-2082_Re-markit.exe, , [79d4d25d5922c37386add39ffc05926e],
Adware.EoRezo, C:\Users\freak\AppData\Local\Temp\de2fb926-cc23-491b-87af-656a151e9011\software\Freesofttoday.exe, , [8dc0d9563f3c67cf8263b0bcb150dd23],
PUP.Optional.SkyTech.A, C:\Users\freak\AppData\Local\Temp\de2fb926-cc23-491b-87af-656a151e9011\software\lly_webssearches.exe, , [88c584ab433849ed40f28fc339c88779],
PUP.Optional.SmartBar.A, C:\Users\freak\AppData\Local\Temp\smartbar\Installer.msi, , [57f6e34c8bf076c0ebea8f98758b6c94],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsc60D.exe, , [77d670bf6c0f2f0794b883a2fd043ac6],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsc60E.exe, , [51fccc636a11f83ee96367be7889b050],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsgFA00.exe, , [2c219b9495e69c9a6fdd63c247ba0ef2],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsgFA01.exe, , [0c410e213843c6701f2df1347b8613ed],
PUP.Optional.OneClickDownloader.A, C:\Users\freak\Downloads\Sabaton_-_Discography_[320k]_[rockbox] (1).exe, , [b59847e8265580b64fb25bdda8597789],
PUP.Optional.OneClickDownloader.A, C:\Users\freak\Downloads\Sabaton_-_Discography_[320k]_[rockbox].exe, , [054857d84833c86e5ca5b583fd04fd03],
PUP.Optional.InstallMonetizer, C:\Users\freak\Downloads\downloadsetup__2299_i208012045_il40.exe, , [54f98ea191ea59dde2df2301917053ad],
PUP.Optional.BundleInstaller.A, C:\Users\freak\Downloads\Java (1).exe, , [cf7e8ea1dba00d29de944af735ccee12],
PUP.Optional.SupraSavings.A, C:\Windows\Installer\2ad2d8.msi, , [0d401718abd0e254c73ca183f212d52b],
PUP.Optional.SupraSavings.A, C:\Program Files\003\buuoujqmrk64.exe, , [202d2a059be01e186026551ccd35639d],
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, , [a3aa62cdb8c31125c883d7a8c0422dd3],
PUP.Optional.SmartBar.A, C:\Users\freak\AppData\Local\Temp\smartbar\GuidCreator.dll, , [7cd176b96318b680ee92d0b7cd35c040],
PUP.Optional.SmartBar.A, C:\Users\freak\AppData\Local\Temp\smartbar\Installer.exe.config, , [7cd176b96318b680ee92d0b7cd35c040],
PUP.Optional.SmartBar.A, C:\Users\freak\AppData\Local\Temp\smartbar\sqlite3.dll, , [7cd176b96318b680ee92d0b7cd35c040],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\loading_withWhiteBG.avi, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe.config, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\AppResource.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\asp.ico, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\AspManager.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\aspsys.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\ASPUninstall.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\categories.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Chinese_asp_ZH-CN.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Chinese_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Communication.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\danish_asp_DA.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Danish_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\dutch_asp_NL.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Dutch_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\eng_asp_en.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\eng_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\filetypehelper.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Finnish_asp_FI.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Finnish_uninst_fi.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\french_asp_FR.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\French_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\german_asp_DE.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\German_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Norwegian_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\polish_uninst_pl.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\portugese_uninst_pt.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\portuguese_asp_PT-BR.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Portuguese_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\russian_asp_ru.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\russian_uninst_ru.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\scandll.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\spanish_asp_ES.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\spanish_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\SSDPTstub.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\swedish_asp_SV.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\swedish_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\greek_uninst_el.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Interop.IWshRuntimeLibrary.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\italian_asp_IT.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Italian_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\japanese_asp_JA.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Japanese_uninst.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\korean_uninst_ko.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Microsoft.Win32.TaskScheduler.DLL, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\traditionalcn_uninst_zh-tw.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Turkish_uninst_tr.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\unins000.dat, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\unins000.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\unins000.msg, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\unrar.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.Compression.Formats.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.FileSystem.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Xceed.Zip.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\norwegian_asp_NO.ini, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\System.Core.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\clamunpack\clamscan.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\clamunpack\libclamav.dll, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\clamunpack\readme.txt, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\asp-fixer.com, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\asp-fixer.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\asp-fixer.pif, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\asp-fixer.scr, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\ASP-Troubleshooter.chm, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\firefox.com, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\iexplore.exe, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\Program Files (x86)\Advanced System Protector\Troubleshooter\iexplore.lnk, , [b79642ed33480d29f55d9a007c876f91],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\AddonSafelist, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\log.xslt, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\completedatabase.db, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Cookies.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\DigSign.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\FilePaths.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\FileSignature.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Folders.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Md5.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Registry.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\SetupSign.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\StrSetupSign.bin, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1545completedatabase.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1720mupdate.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1721update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1722update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1723update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1724update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1725update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1726update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1727update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1728update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1729update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1730update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1731update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1732update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1733update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1734update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1735update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1736update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1737update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1738update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1739update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1740update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1741update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1742update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1743update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1744update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1745update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1746update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1747update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1748update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1749update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1750update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1751update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1752update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1753update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1755mupdate.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1756update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1757update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1758update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1759update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1760update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1761update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1769mupdate.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1770update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1771update.zip, , [67e6200f0576d165a7825e0530d28878],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\ASPStartupManagerErrorLog.txt, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\QDetail.db, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\Settings.db, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\Update.ini, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12554\ASPLog.txt, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12580\ASPLog.txt, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\Logs\log_20-03-14_06-52-12.xml, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\freak\AppData\Roaming\Systweak\Advanced System Protector\Logs\SMLog.xml, , [8bc25cd33249ac8aa8815f04847e13ed],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\background.html, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\index.html, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\manifest.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\style.css, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\default_logo.png, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\icon128.png, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\icon16.png, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\icon48.png, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\loading.gif, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\search.png, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\weather.eot, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\weather.svg, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\weather.ttf, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\img\weather.woff, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\background.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\ga.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\inject.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\jquery-base.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\jquery.autocomplete.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\js.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\js\xagainit.js, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\en\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\es\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\es_419\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-BE\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-CA\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-CH\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\fr-LU\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\it\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\it-CH\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pl\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pt\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\pt_BR\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\ru\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\ru-MO\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\tr\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\vi\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\zh_CN\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.QuickStart.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma\3.2.3_1\_locales\zh_TW\messages.json, , [0e3f0b24f7843ef8e60924450200f907],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\92.json, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\uninstallDlg.xml, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\UninstallManager.exe, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\bg1.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\button1.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\checked.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\close.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\min.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\Thumbs.db, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\images\unchecked.png, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log\UninstallManager_2014-04-27[01-47-35-725].log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log\UninstallManager_2014-04-27[01-49-59-399].log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log\UninstallManager_2014-04-27[01-56-33-171].log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log\UninstallManager_2014-04-27[07-58-05-513].log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Roaming\webssearches\log\UninstallManager_2014-04-27[10-08-00-208].log, , [e865151a5922270f6de3e58549b9dd23],
PUP.Optional.SupraSavings.A, C:\Program Files\suprasavings\uninstaller.exe, , [6edf58d72952ed490821056650b2dc24],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\CustomActionInstall, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\CustomActionUninstall, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_api-utils.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_base64.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_byte-streams.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_collection.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_content.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_cortex.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_cuddlefish.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_deprecate.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_environment.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_errors.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_events.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_file.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_functional.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_heritage.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_hidden-frame.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_light-traits.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_list.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_loader.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_match-pattern.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_memory.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_namespace.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_observer-service.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_plain-text-console.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_preferences-service.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_promise.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_querystring.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_runtime.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_sandbox.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_addonkit_page-mod.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_addonkit_private-browsing.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_addonkit_request.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_addonkit_windows.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_addon_runner.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_system.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_text-streams.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_timer.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_traceback.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_traits.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_unload.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_url.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_uuid.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_window-utils.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_xhr.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_xpcom.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_xul-app.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_bootstrap.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_globals.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_base_self.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_harness-options.json, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_prefs.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_utils_thumbnail.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_content_content-proxy.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_content_content-worker.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_content_loader.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_content_symbiont.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_content_worker.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_dom_events.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_events_assembler.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_event_core.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_event_target.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_icon.png, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_icon64.png, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_install.rdf, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_l10n_core.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_l10n_html.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_l10n_loader.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_l10n_locale.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_l10n_prefs.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_locales.json, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_main.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_privatebrowsing_utils.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_system_events.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_tabs_events.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_tabs_observer.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_tabs_tab.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_tabs_utils.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_traits_core.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_utils_data.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_utils_object.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_utils_registry.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_windows_dom.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_windows_loader.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_windows_observer.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_windows_tabs.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\ff_window_utils.js, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\Microsoft.Deployment.WindowsInstaller.dll, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\Microsoft.Deployment.WindowsInstaller.xml, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Program Files (x86)\SupraSavings\SendJson.dll, , [331a3df2cfac8aac3dec73f8e61ccc34],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\background.js, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\bootstrap.js, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon128.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon16.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon32.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon48.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon64.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\icon8.png, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\manifest.json, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.SupraSavings.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk\5.0_0\marcopolo.js, , [0647ca655229a3937c53a0cbd42e9769],
PUP.Optional.WebsSearches.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "search_url": "hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}",), ,[1538ff30f6859a9c13dba0bbc93bce32]
PUP.Optional.Snapdo.A, C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "homepage": "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=hp&installDate={installDate}&barcodeid={barcodeID}&um={UM}",), ,[8ac3ea452f4c47ef29d0adaee222ee12]
Physische Sektoren: 0
(No malicious items detected)
(end)
| Log Nr.2, ADW Claner: Zitat:
# AdwCleaner v3.204 - Bericht erstellt am 27/04/2014 um 10:43:56
# Aktualisiert 26/04/2014 von Xplode
# Betriebssystem : Windows 8.1 (64 bits)
# Benutzername : freak - FREAK1051
# Gestartet von : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antivirus\adwcleaner\adwcleaner.exe
# Option : Suchen
***** [ Dienste ] *****
Dienst Gefunden : buuoujqmrk64
***** [ Dateien / Ordner ] *****
Datei Gefunden : C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage
Datei Gefunden : C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage-journal
Datei Gefunden : C:\WINDOWS\System32\roboot64.exe
Datei Gefunden : C:\WINDOWS\System32\Tasks\Advanced System Protector_startup
Ordner Gefunden : C:\Program Files (x86)\Advanced System Protector
Ordner Gefunden : C:\Program Files (x86)\predm
Ordner Gefunden : C:\Program Files (x86)\RegClean Pro
Ordner Gefunden : C:\Program Files (x86)\SupraSavings
Ordner Gefunden : C:\Program Files\003
Ordner Gefunden : C:\Program Files\SupraSavings
Ordner Gefunden : C:\Users\freak\AppData\Local\Genesis
Ordner Gefunden : C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk
Ordner Gefunden : C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Ordner Gefunden : C:\Users\freak\AppData\Local\Temp\Smartbar
Ordner Gefunden : C:\Users\freak\AppData\Roaming\Systweak
Ordner Gefunden : C:\Users\freak\AppData\Roaming\webssearches
Ordner Gefunden : C:\Users\freak\Documents\Optimizer Pro
Ordner Gefunden : C:\WINDOWS\SysWOW64\SearchProtect
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden : HKCU\Software\1ClickDownload
Schlüssel Gefunden : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\Supra Savings
Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\suprasavings
Schlüssel Gefunden : HKCU\Software\genesis
Schlüssel Gefunden : HKCU\Software\InstallCore
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10AD2C61-0898-4348-8600-14A342F22AC3}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10AD2C61-0898-4348-8600-14A342F22AC3}
Schlüssel Gefunden : HKCU\Software\suprasavings
Schlüssel Gefunden : HKCU\Software\systweak
Schlüssel Gefunden : HKCU\Software\TutoTag
Schlüssel Gefunden : [x64] HKCU\Software\1ClickDownload
Schlüssel Gefunden : [x64] HKCU\Software\genesis
Schlüssel Gefunden : [x64] HKCU\Software\InstallCore
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gefunden : [x64] HKCU\Software\suprasavings
Schlüssel Gefunden : [x64] HKCU\Software\systweak
Schlüssel Gefunden : [x64] HKCU\Software\TutoTag
Schlüssel Gefunden : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gefunden : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gefunden : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{10AD2C61-0898-4348-8600-14A342F22AC3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\ctTOOLBAR.ctToolBarCtrl.3
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\speedupmypc
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10AD2C61-0898-4348-8600-14A342F22AC3}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1
Schlüssel Gefunden : HKLM\Software\systweak
Schlüssel Gefunden : HKLM\Software\Tutorials
Schlüssel Gefunden : HKLM\Software\Uniblue
Schlüssel Gefunden : HKLM\Software\webssearchesSoftware
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\LevelQualityWatcher
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\suprasavings
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17031
Einstellung Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=hp&installDate={installDate}&barcodeid={barcodeID}&um={UM}
Einstellung Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://istart.webssearches.com/?type=hp&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131
Einstellung Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] - hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}
Einstellung Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] - hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=OB_[[PubID]]_CH&co=GB&userid=baeb99a7-06c8-e2cd-2208-95846d30154c&searchtype=ds&q={searchTerms}&installDate={installDate}&barcodeid={barcodeID}&um={UM}
Einstellung Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}
Einstellung Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://istart.webssearches.com/web/?type=ds&ts=1398551216&from=tugs&uid=V4-CT256V4SSD2_200030131&q={searchTerms}
-\\ Google Chrome v34.0.1847.116
[ Datei : C:\Users\freak\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gefunden [Extension] : afjegdojkkoghnbiollpogeeimocanmk
Gefunden [Extension] : flpcjncodpafbgdpnkljologafpionhb
Gefunden [Extension] : pelmeidfhdlhlbjimpabfcbnnojbboma
*************************
AdwCleaner[R0].txt - [9131 octets] - [27/04/2014 10:43:56]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [9191 octets] ##########
| Log Nr.3: Junkware: Zitat:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by freak on 27.04.2014 at 11:07:04,92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Myfree Codec
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Myfree Codec
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511311172}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421146}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511311172}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421146}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{88FB16D2-04EA-4ffe-8079-CFF68F1B9CE6}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{E6DFA72B-E3A3-4EE5-89E2-D618E482A4D2}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\systweak"
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\advanced system protector"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.04.2014 at 11:13:07,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
| Log Nr.4 SC-Cleaner: Zitat:
Shortcut Cleaner 1.3.3 by Lawrence Abrams (Grinler)
hxxp://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
hxxp://www.bleepingcomputer.com/download/shortcut-cleaner/
Windows Version: Windows 8.1
Program started at: 04/27/2014 11:28:26 AM.
Scanning for registry hijacks:
* HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "@" hijacked!
Backup Registry file created at:
C:\Users\freak\Desktop\sc-cleaner\sc-cleaner-04-27-2014-11-28-26.reg
Searching for Hijacked Shortcuts:
Searching C:\Users\freak\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\freak\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\freak\Desktop
0 bad shortcuts found.
Program finished at: 04/27/2014 11:28:26 AM
Execution time: 0 hours(s), 0 minute(s), and 0 seconds(s)
|
Log Nr. 5 ESET: Zitat:
C:\$Recycle.Bin\S-1-5-21-2604398111-2870433077-1574135249-1002\$RKEXPIW.exe Win32/SpeedingUpMyPC.J application
|
Vielen dank Schon mal im Vorraus für eure Mühe
mfg
Daniel |