Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Counterflix...
Message
<blockquote data-quote="Ender Hugo" data-source="post: 683383" data-attributes="member: 66854"><p># AdwCleaner 7.0.3.1 - Logfile created on Wed Oct 25 00:26:21 2017</p><p># Updated on 2017/29/09 by Malwarebytes </p><p># Database: 10-17-2017.1</p><p># Running on Windows 10 Home Single Language (X64)</p><p># Mode: scan</p><p># Support: <a href="https://www.malwarebytes.com/support" target="_blank">Customer Support & Help Center</a></p><p></p><p>***** [ Services ] *****</p><p></p><p>PUP.Optional.Legacy, PCSUService</p><p>PUP.Optional.Legacy, SparkSvc</p><p>PUP.Optional.Legacy, SparkUpdater</p><p>PUP.Optional.CPUMiner, WinDriverSvc</p><p></p><p></p><p>***** [ Folders ] *****</p><p></p><p>PUP.Optional.uBar, C:\Program Files\uBar</p><p>PUP.Optional.Legacy, C:\Users\Public\Documents\dmp</p><p>PUP.Optional.Legacy, C:\Program Files (x86)\Prompt Downloader</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Local\Prompt Downloader</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prompt Downloader</p><p>PUP.Optional.Legacy, C:\ProgramData\pc faster</p><p>PUP.Optional.Legacy, C:\Program Files (x86)\pc faster</p><p>PUP.Optional.Legacy, C:\Users\All Users\pc faster</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\pc faster</p><p>PUP.Optional.Legacy, C:\Users\Public\Documents\pc faster</p><p>PUP.Optional.Legacy, C:\Users\Todos os Usuários\pc faster</p><p>PUP.Optional.Legacy, C:\Users\Public\Documents\Guid</p><p>PUP.Optional.Legacy, C:\Program Files (x86)\DiskP</p><p>PUP.Optional.Legacy, C:\Windows\System32\config\systemprofile\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\Users\Default\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\Users\Default User\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\Users\Usuário Padrão\AppData\Local\AdvinstAnalytics</p><p>PUP.Optional.Legacy, C:\ProgramData\devnull</p><p>PUP.Optional.Legacy, C:\Users\All Users\devnull</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\devnull</p><p>PUP.Optional.Legacy, C:\Users\Todos os Usuários\devnull</p><p>PUP.Optional.Plumbytes, C:\Program Files\Plumbytes Software</p><p>Adware.Trotux, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1</p><p>Trojan.Bunitu, C:\Program Files (x86)\ppt</p><p>PUP.Optional.FileViewPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro</p><p>PUP.Optional.TXQQBrowser, C:\Program Files (x86)\QQBrowser</p><p>PUP.Adware.Heuristic, C:\ProgramData\730a0536</p><p>PUP.Adware.Heuristic, C:\ProgramData\HwinpH</p><p>PUP.Adware.Heuristic, C:\ProgramData\nWdMn</p><p>PUP.Adware.Heuristic, C:\ProgramData\Service5184</p><p></p><p></p><p>***** [ Files ] *****</p><p></p><p>PUP.Optional.Legacy, C:\ProgramData\Duplicaterecord.js</p><p>PUP.Optional.Legacy, C:\Users\All Users\Duplicaterecord.js</p><p>PUP.Optional.Legacy, C:\Users\Todos os Usuários\Duplicaterecord.js</p><p>PUP.Optional.Legacy, C:\END</p><p>PUP.Optional.Legacy, C:\Windows\SysNative\log\iSafeKrnlCall.log</p><p>PUP.Optional.Legacy, C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat</p><p>PUP.Optional.Legacy, C:\Users\All Users\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat</p><p>PUP.Optional.Legacy, C:\Users\Todos os Usuários\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\invalidprefs.js</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\dd1b66d4.xml</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\nice.xml</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\luck.xml</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\invalidprefs.js</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\searchplugins\nice.xml</p><p>PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\searchplugins\luck.xml</p><p>Adware.ChinAd, C:\Windows\SysNative\drivers\cfidsk.sys</p><p></p><p></p><p>***** [ DLL ] *****</p><p></p><p>No malicious DLLs found.</p><p></p><p>***** [ WMI ] *****</p><p></p><p>No malicious WMI found.</p><p></p><p>***** [ Shortcuts ] *****</p><p></p><p>No malicious shortcuts found.</p><p></p><p>***** [ Tasks ] *****</p><p></p><p>PUP.Optional.Legacy, Microsoft\Windows\Apps\UpService</p><p>PUP.Optional.Legacy, Browser Updater Task(Core)</p><p>PUP.Optional.Legacy, SparkUpdater</p><p>PUP.Optional.Legacy, sparkupdater</p><p></p><p></p><p>***** [ Registry ] *****</p><p></p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\static.cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\utop.it</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\adnetworkperformance.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d19tqk5t6qcjac.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d234jr1v61uxpn.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d347r6gnj453cs.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funsafetab.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funsafetab.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\onclickads.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\utop.it</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\wonderlandads.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\<a href="http://www.adnetworkperformance.com" target="_blank">www.adnetworkperformance.com</a></p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\adnetworkperformance.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d19tqk5t6qcjac.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d234jr1v61uxpn.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d347r6gnj453cs.cloudfront.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funsafetab.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funsafetab.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\onclickads.net</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.cmptch.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\utop.it</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\wonderlandads.com</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\<a href="http://www.adnetworkperformance.com" target="_blank">www.adnetworkperformance.com</a></p><p>PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {80465ADF-B45C-4DAE-85E0-A6E021422A43}</p><p>PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {1D7C16B1-2BB9-40F2-9703-54456C296E04}</p><p>PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {8FFC5494-09D7-4D65-8B12-5F966CA7EBF6}</p><p>PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\PopWnd</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\PopWnd</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\hdcode</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Prompt Downloader</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Prompt Downloader</p><p>PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Prompt Downloader</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Prompt Downloader</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\TSv</p><p>PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Mozilla\Extends</p><p>PUP.Optional.Legacy, [Key] - HKCU\Software\Mozilla\Extends</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\WinZiper</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\UBar</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\devnull</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\DMunversion</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}</p><p>PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | pcmgr</p><p>PUP.Optional.Legacy, [Value] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | YeaDesktop</p><p>PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | SpeeDownloader</p><p>PUP.Optional.Legacy, [Value] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | pcspeedup</p><p>PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | Plumbytes Anti-Malware</p><p>PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | DiskPower</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\iSafeSvc2.exe</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced</p><p>PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\04262113-2a31-48e1-b4bb-3b42174bea0f</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\e24b7131-d039-43cb-9e6f-ad4be601ec1f</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\04262113-2a31-48e1-b4bb-3b42174bea0f</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\e24b7131-d039-43cb-9e6f-ad4be601ec1f</p><p>PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\iSafeKrnlBoot</p></blockquote><p></p>
[QUOTE="Ender Hugo, post: 683383, member: 66854"] # AdwCleaner 7.0.3.1 - Logfile created on Wed Oct 25 00:26:21 2017 # Updated on 2017/29/09 by Malwarebytes # Database: 10-17-2017.1 # Running on Windows 10 Home Single Language (X64) # Mode: scan # Support: [URL="https://www.malwarebytes.com/support"]Customer Support & Help Center[/URL] ***** [ Services ] ***** PUP.Optional.Legacy, PCSUService PUP.Optional.Legacy, SparkSvc PUP.Optional.Legacy, SparkUpdater PUP.Optional.CPUMiner, WinDriverSvc ***** [ Folders ] ***** PUP.Optional.uBar, C:\Program Files\uBar PUP.Optional.Legacy, C:\Users\Public\Documents\dmp PUP.Optional.Legacy, C:\Program Files (x86)\Prompt Downloader PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Local\Prompt Downloader PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prompt Downloader PUP.Optional.Legacy, C:\ProgramData\pc faster PUP.Optional.Legacy, C:\Program Files (x86)\pc faster PUP.Optional.Legacy, C:\Users\All Users\pc faster PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\pc faster PUP.Optional.Legacy, C:\Users\Public\Documents\pc faster PUP.Optional.Legacy, C:\Users\Todos os Usuários\pc faster PUP.Optional.Legacy, C:\Users\Public\Documents\Guid PUP.Optional.Legacy, C:\Program Files (x86)\DiskP PUP.Optional.Legacy, C:\Windows\System32\config\systemprofile\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\Users\Default\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\Users\Default User\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\Users\Usuário Padrão\AppData\Local\AdvinstAnalytics PUP.Optional.Legacy, C:\ProgramData\devnull PUP.Optional.Legacy, C:\Users\All Users\devnull PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\devnull PUP.Optional.Legacy, C:\Users\Todos os Usuários\devnull PUP.Optional.Plumbytes, C:\Program Files\Plumbytes Software Adware.Trotux, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1 Trojan.Bunitu, C:\Program Files (x86)\ppt PUP.Optional.FileViewPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro PUP.Optional.TXQQBrowser, C:\Program Files (x86)\QQBrowser PUP.Adware.Heuristic, C:\ProgramData\730a0536 PUP.Adware.Heuristic, C:\ProgramData\HwinpH PUP.Adware.Heuristic, C:\ProgramData\nWdMn PUP.Adware.Heuristic, C:\ProgramData\Service5184 ***** [ Files ] ***** PUP.Optional.Legacy, C:\ProgramData\Duplicaterecord.js PUP.Optional.Legacy, C:\Users\All Users\Duplicaterecord.js PUP.Optional.Legacy, C:\Users\Todos os Usuários\Duplicaterecord.js PUP.Optional.Legacy, C:\END PUP.Optional.Legacy, C:\Windows\SysNative\log\iSafeKrnlCall.log PUP.Optional.Legacy, C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat PUP.Optional.Legacy, C:\Users\All Users\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat PUP.Optional.Legacy, C:\Users\Todos os Usuários\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\invalidprefs.js PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\dd1b66d4.xml PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\nice.xml PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\luck.xml PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\invalidprefs.js PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\searchplugins\nice.xml PUP.Optional.Legacy, C:\Users\Ender_Hugo\AppData\Roaming\Mozilla\Firefox\Profiles\5hsfgdeb.default-1457391237291\searchplugins\luck.xml Adware.ChinAd, C:\Windows\SysNative\drivers\cfidsk.sys ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** PUP.Optional.Legacy, Microsoft\Windows\Apps\UpService PUP.Optional.Legacy, Browser Updater Task(Core) PUP.Optional.Legacy, SparkUpdater PUP.Optional.Legacy, sparkupdater ***** [ Registry ] ***** PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\static.cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\utop.it PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\adnetworkperformance.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d19tqk5t6qcjac.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d234jr1v61uxpn.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\d347r6gnj453cs.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funsafetab.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funsafetab.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\onclickads.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\utop.it PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\wonderlandads.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\[URL="http://www.adnetworkperformance.com"]www.adnetworkperformance.com[/URL] PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\adnetworkperformance.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d19tqk5t6qcjac.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d234jr1v61uxpn.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\d347r6gnj453cs.cloudfront.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funsafetab.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funsafetab.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\onclickads.net PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.cmptch.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\utop.it PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\wonderlandads.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\[URL="http://www.adnetworkperformance.com"]www.adnetworkperformance.com[/URL] PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {80465ADF-B45C-4DAE-85E0-A6E021422A43} PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {1D7C16B1-2BB9-40F2-9703-54456C296E04} PUP.Optional.Legacy, [Value] - HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | {8FFC5494-09D7-4D65-8B12-5F966CA7EBF6} PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\PopWnd PUP.Optional.Legacy, [Key] - HKCU\Software\PopWnd PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\hdcode PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Prompt Downloader PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Prompt Downloader PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Prompt Downloader PUP.Optional.Legacy, [Key] - HKCU\Software\Prompt Downloader PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\TSv PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Mozilla\Extends PUP.Optional.Legacy, [Key] - HKCU\Software\Mozilla\Extends PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\WinZiper PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\UBar PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\devnull PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\DMunversion PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | pcmgr PUP.Optional.Legacy, [Value] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | YeaDesktop PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | SpeeDownloader PUP.Optional.Legacy, [Value] - HKU\S-1-5-21-3755472278-2447889109-3489952286-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | pcspeedup PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run | Plumbytes Anti-Malware PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 | DiskPower PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\iSafeSvc2.exe PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\04262113-2a31-48e1-b4bb-3b42174bea0f PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\ControlSet001\Control\Power\User\PowerSchemes\e24b7131-d039-43cb-9e6f-ad4be601ec1f PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\04262113-2a31-48e1-b4bb-3b42174bea0f PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\e24b7131-d039-43cb-9e6f-ad4be601ec1f PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\iSafeKrnlBoot [/QUOTE]
Insert quotes…
Verification
Post reply
Top