(02-22-2016, 09:50 PM)Compton Wrote: Scan with Malwarebytes' Anti-Malware
Please download Malwarebytes Anti-Malware and save it to your desktop.
- Install the progam and select update.
- Once updated, click the Settings tab, in the left panel choose Detctions & protection and tick Scan for rootkits.
- Click the Scan tab, choose Threat Scan is checked and click Scan Now.
- If threats are detected, click the Apply Actions button. You will now be prompted to reboot. Click Yes.
- Upon completion of the scan (or after the reboot), click the History tab.
- Click Application Logs and double-click the Scan Log.
- At the bottom click Export and choose Text file.
Save the file to your desktop and include its content in your next reply.
Fix with Junkware Removal Tool
Please download
JRT by Malwarebytes and save the file to your desktop.
Temporary disable your AntiVirus and AntiSpyware protection - instructions
here.
- Right-click on icon and select Run as Administrator to start the tool.
- Follow the prompts and let this process run uninterrupted.
- This scan can take a while, depending on your System specs.
- Upon completion, a log (JRT.txt) will open on your desktop.
Please include the contents of that file in your reply.
Do not forget to
re-enable your previously switched off
protection software!
Please also
manually reboot your machine after this procedure.
[/quote]
Fix with Junkware Removal Tool
Please download
JRT by Malwarebytes and save the file to your desktop.
Temporary disable your AntiVirus and AntiSpyware protection - instructions
here.
- Right-click on icon and select Run as Administrator to start the tool.
- Follow the prompts and let this process run uninterrupted.
- This scan can take a while, depending on your System specs.
- Upon completion, a log (JRT.txt) will open on your desktop.
Please include the contents of that file in your reply.
Do not forget to
re-enable your previously switched off
protection software!
Please also
manually reboot your machine after this procedure.
[/quote]
HitmanPro
- Please download HitmanPro.
- Launch the program by double clicking on the icon. (Windows Vista/7 users right click on the HitmanPro icon and select run as administrator).
- Click on the next button. You must agree with the terms of EULA.
- Check the box beside "No, I only want to perform a one-time scan to check this computer".
- Click on the next button.
- The program will start to scan the computer. The scan will typically take no more than 2-3 minutes.
- When the scan is done click on drop-down menu of the found entries (if any) and choose - Apply to all => Ignore <= IMPORTANT!!!
- Click on the next button.
- Click on the "Export scan results to XML file".
- Save that file to your desktop and post in your next reply.
[/quote]
[/quote]
Thank you very much. Problem solved. Here is my scan log. I have forgotten to check rootkit. Anyway the problem is solved. Thanks once again.
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Scan Date: 2/23/2016
Scan Time: 1:05:17 PM
Logfile: Scan log.txt
Administrator: Yes
Version: 2.2.0.1024
Malware Database: v2016.02.22.06
Rootkit Database: v2016.02.17.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: tara
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 344442
Time Elapsed: 14 min, 28 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 10
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}, Quarantined, [c6f896cd2772df5787f5ee91b44e5da3],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, Quarantined, [f0ce392a5d3c3ff7a3dde29d9c66d62a],
PUP.Optional.Yontoo, HKLM\SOFTWARE\DiscoverTreasure, Quarantined, [447ad48f990082b49b1d58aadd26dd23],
PUP.Optional.LuckyBrowse.ShrtCln, HKLM\SOFTWARE\LuckyBrowse, Quarantined, [07b7382bf0a96ccad9483cc8a55e8977],
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [be001350f0a965d1f4953de28d7720e0],
PUP.Optional.LuckyBrowse, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LuckyBrowse, Delete-on-Reboot, [af0f33308415b383768a0a45e02436ca],
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Discover Treasure, Quarantined, [734baeb5c5d4e84e700ef55a3ec6be42],
PUP.Optional.SimpleFiles, HKLM\SOFTWARE\SIMPLEFILES, Quarantined, [be0064ff3465e6501be695c5b2529b65],
PUP.Optional.Yontoo, HKU\S-1-5-21-797625875-3032012179-2915779993-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [526cdf845b3e082e8dfb6cb331d31ce4],
PUP.Optional.SimpleFiles, HKU\S-1-5-21-797625875-3032012179-2915779993-1000\SOFTWARE\SIMPLEFILES, Quarantined, [ac123f245643d85e28d8b3a744c059a7],
Registry Values: 12
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DoNotAskAgain, searchinterneat-a.akamaihd.net, Quarantined, [7e40540f9efb3afc6efa928f7a8ab24e]
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL,
https://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVsLWQgTFwITbVgOWFpcFQcVJRQABV8TDAEbIg1ZUFpGRAETeR9aFQQTSEcFME0FCFwEURNNfWpdBHQeU1BxJUpNDU0CaUBB&q={searchTerms}, Quarantined, [be001350f0a965d1f4953de28d7720e0]
PUP.Optional.SimpleFiles, HKLM\SOFTWARE\SIMPLEFILES|PARTNER_ID, 3, Quarantined, [be0064ff3465e6501be695c5b2529b65]
PUP.Optional.LuckyBrowse, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{D205AC84-71C7-400D-8657-484C4B9999B5}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\LuckyBrowse\app\LuckyBrowse.exe|Name=LuckyBrowse|Edge=FALSE|, Quarantined, [3b831c476a2fa591d2f414512fd56d93]
PUP.Optional.LuckyBrowse, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{324CE856-22C2-4812-B92C-92D9B37DAC87}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\LuckyBrowse\app\LuckyBrowse.exe|Name=LuckyBrowse|Edge=FALSE|, Quarantined, [586670f32772f442487e83e2c93bf20e]
PUP.Optional.SimpleFiles, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{DE8E2A80-2BB3-4941-9A8A-A7C81FA9F911}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\SimpleFiles\SimpleFiles.exe|Name=SimpleFiles|Edge=FALSE|, Quarantined, [9628ea79e0b970c6785ff570fa0a936d]
PUP.Optional.SimpleFiles, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{00BF3ED6-8210-4BCA-82EA-9950DF96C2C0}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\SimpleFiles\SimpleFiles.exe|Name=SimpleFiles|Edge=FALSE|, Quarantined, [eed0e57eb7e22e08edeaadb83dc77090]
PUP.Optional.SimpleFiles, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{24D1A95B-02B4-4173-9EBB-C0A21738B58B}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\SimpleFiles\downloader.exe|Name=SimpleFiles|Edge=FALSE|, Quarantined, [be0075ee6138a39360770065fd07e41c]
PUP.Optional.SimpleFiles, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{2D12197B-7776-4BBA-B815-EEB8BD3F0115}, v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\SimpleFiles\downloader.exe|Name=SimpleFiles|Edge=FALSE|, Quarantined, [e3db491a861354e29f387fe636ce0cf4]
PUP.Optional.Yontoo, HKU\S-1-5-21-797625875-3032012179-2915779993-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DoNotAskAgain, searchinterneat-a.akamaihd.net, Quarantined, [942ace95bddce74f5054041cc63ecb35]
PUP.Optional.Yontoo, HKU\S-1-5-21-797625875-3032012179-2915779993-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL,
https://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVsLWQgTFwITbVgOWFpcFQcVJRQABV8TDAEbIg1ZUFpGRAETeR9aFQQTSEcFME0FCFwEURNNfWpdBHQeU1BxJUpNDU0CaUBB&q={searchTerms}, Quarantined, [526cdf845b3e082e8dfb6cb331d31ce4]
PUP.Optional.SimpleFiles, HKU\S-1-5-21-797625875-3032012179-2915779993-1000\SOFTWARE\SIMPLEFILES|is_firstrun, no, Quarantined, [ac123f245643d85e28d8b3a744c059a7]
Registry Data: 1
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
https://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghBcwEJAw9GERhCdgBbTA1DF1AOeF1eAxRFGVcXIQhbVlxFEQwFIk0FA1ADB0VXfVBdFElXTwhwJVx1DksUc1BQNVVMEnEEQw==, Good: (
http://www.google.com), Bad: (
https://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghBcwEJAw9GERhCdgBbTA1DF1AOeF1eAxRFGVcXIQhbVlxFEQwFIk0FA1ADB0VXfVBdFElXTwhwJVx1DksUc1BQNVVMEnEEQw==),Replaced,[813d3f24128738fe29a850a3689cdb25]
Folders: 23
PUP.Optional.SimpleFiles, C:\Program Files\SimpleFiles, Quarantined, [bb0367fcfd9c73c35558c202ab5731cf],
PUP.Optional.SimpleFiles, C:\ProgramData\Microsoft\Windows\Start Menu\SimpleFiles, Quarantined, [5d612e354f4a74c26946be065ca6e020],
PUP.Optional.LuckyBrowse.ShrtCln, C:\ProgramData\LuckyBrowse, Quarantined, [437bd2913e5b54e27f47bc35e919956b],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugincontainer, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\10, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\12, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\12\resources, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\2, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\3, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\4, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\5, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\7, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\7\resources, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugins\8, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\Program Files\Common Files\4f596ec3-77fb-4fc3-82cb-691c42c71d77, Quarantined, [2a94055e20793bfb8d0909e943bf50b0],
PUP.Optional.Yontoo, C:\Program Files\Common Files\4f596ec3-77fb-4fc3-82cb-691c42c71d77\updater, Quarantined, [2a94055e20793bfb8d0909e943bf50b0],
PUP.Optional.Yontoo, C:\Program Files\Discover Treasure, Quarantined, [3d814e15badf24124f48dd152fd321df],
PUP.Optional.Yontoo, C:\Program Files\Discover Treasure\Extensions, Quarantined, [3d814e15badf24124f48dd152fd321df],
PUP.Optional.SimpleFiles, C:\Users\tara\AppData\Roaming\SimpleFiles, Quarantined, [09b58cd7415895a1f06ed126bd45fe02],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo\1.0.5877.38629_0, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
Files: 30
PUP.Optional.SimpleFiles, C:\Program Files\SimpleFiles\downloader.exe, Quarantined, [11ad1053cccdf24429ce53bbee179868],
PUP.Optional.SimpleFiles, C:\Program Files\SimpleFiles\SimpleFiles.exe, Quarantined, [843ad68dc8d10a2c698e5cb25baa758b],
PUP.Optional.Amonetize, C:\Users\tara\Downloads\dit+usmle+step+2+ck+torre.ace, Quarantined, [09b5c1a2297089ad0b9a1b2a36ca27d9],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\extensions\{d749d8a6-2564-455e-820c-a49ef3a150c8}.xpi, Quarantined, [6658154e7524be78d334c338fc0641bf],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage, Quarantined, [af0f9ac905942412096add22946ee31d],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage-journal, Quarantined, [b10d0f54bedb5bdbc2b1b34c768ce51b],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_discovertreasure-a.akamaihd.net_0.localstorage, Quarantined, [6f4f342f8e0bdf57981ebd45e1222bd5],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_discovertreasure-a.akamaihd.net_0.localstorage-journal, Quarantined, [85398ad98514ba7c3581b84a1ce7e61a],
PUP.Optional.LuckyBrowse, C:\Windows\System32\Tasks\LuckyBrowse, Quarantined, [0eb01d46f2a71620ab534a04bf456997],
PUP.Optional.AdNetworkPerformance, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adnetworkperformance.com_0.localstorage, Quarantined, [2c92065d60390c2a71cd451552b254ac],
PUP.Optional.AdNetworkPerformance, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adnetworkperformance.com_0.localstorage-journal, Quarantined, [1ba343202871f83e201e69f1877d5aa6],
PUP.Optional.PriceMoon, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.pricemoon.co_0.localstorage, Quarantined, [dbe3d0939bfe65d1f37ecc90c53fc33d],
PUP.Optional.PriceMoon, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.pricemoon.co_0.localstorage-journal, Quarantined, [17a76bf8f6a3072fdf92b5a722e28e72],
PUP.Optional.SimpleFiles, C:\Program Files\SimpleFiles\htmlayout.dll, Quarantined, [bb0367fcfd9c73c35558c202ab5731cf],
PUP.Optional.SimpleFiles, C:\Program Files\SimpleFiles\uninstall.dat, Quarantined, [bb0367fcfd9c73c35558c202ab5731cf],
PUP.Optional.SimpleFiles, C:\ProgramData\Microsoft\Windows\Start Menu\SimpleFiles\SimpleFiles.lnk, Quarantined, [5d612e354f4a74c26946be065ca6e020],
PUP.Optional.LuckyBrowse.ShrtCln, C:\ProgramData\LuckyBrowse\install.dat, Quarantined, [437bd2913e5b54e27f47bc35e919956b],
PUP.Optional.Yontoo, C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77\temp, Quarantined, [16a85e053663072ff1a4d81af40ea060],
PUP.Optional.Yontoo, C:\Program Files\Discover Treasure\7za.exe, Quarantined, [3d814e15badf24124f48dd152fd321df],
PUP.Optional.Yontoo, C:\Program Files\Discover Treasure\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo.crx, Quarantined, [3d814e15badf24124f48dd152fd321df],
PUP.Optional.Yontoo, C:\Program Files\Discover Treasure\Extensions\{d749d8a6-2564-455e-820c-a49ef3a150c8}.xpi, Quarantined, [3d814e15badf24124f48dd152fd321df],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo\1.0.5877.38629_0\manifest.json, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo\1.0.5877.38629_0\background.js, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo\1.0.5877.38629_0\content.js, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdidmnnfanhcebkjdjomigkmpfmlfmlo\1.0.5877.38629_0\icon.png, Quarantined, [3f7f144f9dfc43f38604c6579174728e],
PUP.Optional.Yontoo, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\prefs.js, Good: (), Bad: (user_pref("browser.newtab.url", "https://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHFcQeAhaVw5BDFQVeVoVVQtHRBgbJF9aTA1JQwFCcVoPBA1BGBNBNARaB0tXUUEeJl9NER8fHGZGJXRXE1wjREZWLE1LKUwT");), Replaced,[9f1f540f0891979f74584ccd4eb71de3]
PUP.Optional.Yontoo, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\prefs.js, Good: (), Bad: (user_pref("keyword.URL", "https://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVsLWQgTFwITbVgOWFpcFQcVJRQABV8TDAEbIg1ZUFpGRAETeR9aFQQTR0cFME0FB18EURNNfWpdBHQeU1BxJUpNDU0CaUBB&q={searchTerms}");), Replaced,[c1fd174c8811082ec11031e8e5206e92]
PUP.Optional.Yontoo, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\prefs.js, Good: (user_pref("browser.startup.homepage", "https://www.malwarebytes.org/restorebrowser/), Bad: (user_pref("browser.startup.homepage", "https://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghBcwEJAw9GERhCdgBbTA1DF1AOeF1eAxRFGVcXIQhbVlxFEQwFIk0FA18DB0VXfV9eFElXTwhwJVx1DksUc1BQNVVMEnEEQw==");), Replaced,[bb033e25108992a4cc5f7aa70ff624dc]
PUP.Optional.Yontoo, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\searchplugins\yahoo.xml, Quarantined, [01bda9ba1a7f59dd7db9d14d1fe69868],
PUM.Optional.FireFoxSearchOverride, C:\Users\tara\AppData\Roaming\Mozilla\Firefox\Profiles\m6iqb4lg.default\user.js, Quarantined, [28964d166039bd79a7dc66b89174f50b],
Physical Sectors: 0
(No malicious items detected)
(end)