Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 1/21/19 Scan Time: 11:44 PM Log File: d155cfe8-1e08-11e9-8d60-3085a99c3fb9.json -Software Information- Version: 3.6.1.2711 Components Version: 1.0.519 Update Package Version: 1.0.8904 License: Trial -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Owner-PC\Owner -Scan Summary- Scan Type: Threat Scan Scan Initiated By: Manual Result: Completed Objects Scanned: 318274 Threats Detected: 265 Threats Quarantined: 265 Time Elapsed: 32 min, 53 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Warn PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 82 Trojan.BitCoinStealer.BatBitRst, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SYSTEMMAINTANCETASK, Quarantined, [6047], [590543],1.0.8904 Trojan.BitCoinStealer.BatBitRst, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{860FA938-AF9E-48C0-820A-F79F13335CAA}, Quarantined, [6047], [590543],1.0.8904 Trojan.BitCoinStealer.BatBitRst, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{860FA938-AF9E-48C0-820A-F79F13335CAA}, Quarantined, [6047], [590543],1.0.8904 PUP.Optional.ConsumerInput, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\APPDATALOW\SOFTWARE\COMPETE, Quarantined, [922], [234601],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.CoreClass.1, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1AB0B6A3-9BC5-419B-B86D-40FA2998A131}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{1AB0B6A3-9BC5-419B-B86D-40FA2998A131}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.CoreClass, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.OnDemandCOMClassSvc.1.0, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\APPID\{D2A19E15-4D23-41F5-8035-E2D730DA691C}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{D2A19E15-4D23-41F5-8035-E2D730DA691C}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{D2A19E15-4D23-41F5-8035-E2D730DA691C}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D2A19E15-4D23-41F5-8035-E2D730DA691C}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D2A19E15-4D23-41F5-8035-E2D730DA691C}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.OnDemandCOMClassSvc, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.Update3COMClassService.1.0, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\APPID\{E3EBCC2D-D239-4CA9-BF77-8DC68381D6CA}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{E3EBCC2D-D239-4CA9-BF77-8DC68381D6CA}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{E3EBCC2D-D239-4CA9-BF77-8DC68381D6CA}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E3EBCC2D-D239-4CA9-BF77-8DC68381D6CA}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E3EBCC2D-D239-4CA9-BF77-8DC68381D6CA}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.Update3COMClassService, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.Update3WebSvc.1.0, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3DBBAB3C-4077-4EC4-BF2C-E89C7784846A}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{3DBBAB3C-4077-4EC4-BF2C-E89C7784846A}, Quarantined, [922], [236905],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\ConsumerInputUpdate.Update3WebSvc, Quarantined, [922], [236905],1.0.8904 PUP.Optional.Conduit, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [215], [236865],1.0.8904 PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [215], [236865],1.0.8904 PUP.Optional.Conduit, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, Quarantined, [215], [236865],1.0.8904 PUP.Optional.SoftMedia, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\POWERPACK, Quarantined, [3675], [343995],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\ConsumerInputUpdate.exe, Quarantined, [922], [236908],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\CptUrlPassthru.DLL, Quarantined, [506], [246224],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\dca-bho.DLL, Quarantined, [506], [246225],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\dca-host.exe, Quarantined, [506], [246226],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\ConsumerInputUpdate.exe, Quarantined, [922], [236908],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\CptUrlPassthru.DLL, Quarantined, [506], [246224],1.0.8904 PUP.Optional.TornTV, HKU\S-1-5-18\SOFTWARE\TornTv Downloader, Quarantined, [1569], [244132],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\dca-bho.DLL, Quarantined, [506], [246225],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\dca-host.exe, Quarantined, [506], [246226],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CompeteInc, Quarantined, [922], [234603],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\ConsumerInput, Quarantined, [922], [236909],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\NATIVEMESSAGINGHOSTS\com.compete.cinm, Quarantined, [922], [245884],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\DcaHost.DcaHost, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\DcaHost.DcaHost.1, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}, Quarantined, [922], [245885],1.0.8904 PUP.Optional.SearchProtect, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\cltmng_RASAPI32, Quarantined, [2039], [184777],1.0.8904 PUP.Optional.SearchProtect, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\cltmng_RASMANCS, Quarantined, [2039], [184777],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\CLASSES\APPID\ConsumerInputUpdate.exe, Quarantined, [922], [236908],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\CptUrlPassthru.DLL, Quarantined, [506], [246224],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\dca-bho.DLL, Quarantined, [506], [246225],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\dca-host.exe, Quarantined, [506], [246226],1.0.8904 PUP.Optional.TornTV.OL, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Torntv, Quarantined, [7382], [339894],1.0.8904 PUP.Optional.1ClickDownload, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\1ClickDownload, Quarantined, [1875], [235164],1.0.8904 PUP.Optional.ConsumerInput, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\Compete, Quarantined, [922], [234602],1.0.8904 PUP.Optional.ConsumerInput, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\ConsumerInput, Quarantined, [922], [236906],1.0.8904 PUP.Optional.FileScout, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\FileScout, Quarantined, [1048], [238352],1.0.8904 PUP.Optional.TornTV, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\TornTv Downloader, Quarantined, [1569], [244132],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\TYPELIB\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\INTERFACE\{15527BF5-9729-49DC-889C-9F956983154C}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\INTERFACE\{C015D269-0F4E-4B52-A91F-721F6DAC9437}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{15527BF5-9729-49DC-889C-9F956983154C}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{C015D269-0F4E-4B52-A91F-721F6DAC9437}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{15527BF5-9729-49DC-889C-9F956983154C}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C015D269-0F4E-4B52-A91F-721F6DAC9437}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}, Quarantined, [506], [169145],1.0.8904 Adware.1ClickDownload, HKLM\SOFTWARE\CLASSES\APPID\{C007DADD-132A-624C-088E-59EE6CF0711F}, Quarantined, [529], [169917],1.0.8904 Adware.1ClickDownload, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{C007DADD-132A-624C-088E-59EE6CF0711F}, Quarantined, [529], [169917],1.0.8904 Adware.1ClickDownload, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{C007DADD-132A-624C-088E-59EE6CF0711F}, Quarantined, [529], [169917],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}, Quarantined, [506], [169150],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}, Quarantined, [506], [169150],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}, Quarantined, [506], [169150],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\APPID\{D5FA0C65-08BE-4F86-B30F-2E285694863A}, Quarantined, [506], [169156],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{D5FA0C65-08BE-4F86-B30F-2E285694863A}, Quarantined, [506], [169156],1.0.8904 PUP.Optional.Compete, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{D5FA0C65-08BE-4F86-B30F-2E285694863A}, Quarantined, [506], [169156],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F90B8F59-792D-4F5A-97AD-06E83284F9AB}, Quarantined, [922], [167839],1.0.8904 Registry Value: 10 PUP.Optional.ConsumerInput, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\APPDATALOW\SOFTWARE\COMPETE|INSTALL_DIR, Quarantined, [922], [234601],1.0.8904 PUP.Optional.Conduit, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, Quarantined, [215], [236865],1.0.8904 PUP.Optional.Conduit, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TOPRESULTURL, Quarantined, [215], [236865],1.0.8904 PUP.Optional.BrowserProtect, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TABBEDBROWSING|BPROTECTSHOWTABSWELCOME, Quarantined, [891], [538248],1.0.8904 PUP.Optional.SoftMedia, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\POWERPACK|GUID, Quarantined, [3675], [343995],1.0.8904 PUP.Optional.ConsumerInput, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|CONSUMERINPUT@COMPETE, Quarantined, [922], [236907],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}|APPPATH, Quarantined, [922], [245885],1.0.8904 PUP.Optional.ConsumerInput, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D87094D-49E1-4C72-8C9E-3D937A119BE5}|APPPATH, Quarantined, [922], [245885],1.0.8904 PUP.Optional.VideoDownloaderPro, HKU\S-1-5-21-464788138-2171508545-1185426554-1000\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|kmdldgcmokdpmacblnehppgkjphcbpnn, Quarantined, [1305], [595652],1.0.8904 Trojan.BitCoinMiner.BatBitRst, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{860FA938-AF9E-48C0-820A-F79F13335CAA}|PATH, Quarantined, [5987], [590545],1.0.8904 Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 46 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\COMPETE, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Local\Consumer Input\CrashReports, Quarantined, [922], [176184],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\LOCAL\CONSUMER INPUT, Quarantined, [922], [176184],1.0.8904 PUP.Optional.Conduit, C:\USERS\OWNER\APPDATA\LOCAL\CONDUIT, Quarantined, [215], [182116],1.0.8904 PUP.Optional.Conduit, C:\Users\Owner\AppData\LocalLow\Conduit\Community Alerts\Log, Quarantined, [215], [182117],1.0.8904 PUP.Optional.Conduit, C:\Users\Owner\AppData\LocalLow\Conduit\Community Alerts, Quarantined, [215], [182117],1.0.8904 PUP.Optional.Conduit, C:\USERS\OWNER\APPDATA\LOCALLOW\CONDUIT, Quarantined, [215], [182117],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{B3F80DB8-951F-4A2A-BE2F-ED6F4FF63B98}\0.0.0.0, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{C7B061F6-380E-4545-86E3-400E3156FD28}\0.0.0.0, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{B3F80DB8-951F-4A2A-BE2F-ED6F4FF63B98}, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download\{C7B061F6-380E-4545-86E3-400E3156FD28}, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Offline\{96132756-4966-40B5-9868-79022E18A14C}, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer\x64, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\1.3.25.149, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Download, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Install, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update\Offline, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\CrashReports, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Monitoring, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Firefox, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Update, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\PROGRAM FILES (X86)\CONSUMER INPUT, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\CT3227981, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\PROGRAM FILES (X86)\CONDUIT\COMMUNITY ALERTS, Quarantined, [1557], [443543],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\en_gb, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\pt_br, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\de, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\en, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\es, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\fr, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\ru, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_metadata, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\images, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\fonts, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\html, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\css, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\EXTENSIONS\kmdldgcmokdpmacblnehppgkjphcbpnn, Quarantined, [1305], [595652],1.0.8904 File: 127 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\COMPETE\CONSUMER INPUT\DCA_config_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_externalJS_diagnostic_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_externalJS_serp_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_externalJS_shoppingcart_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_externalJS_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_notification_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_privacy_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_voicebox_rules_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput, C:\Users\Owner\AppData\Roaming\Compete\Consumer Input\DCA_whitelist_spruce000fox.dat, Quarantined, [922], [236897],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Firefox\uninstall.ico, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer\dca.js, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer\mozjs185-1.0.dll, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer\uninstall.ico, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\InternetExplorer\uninstall.log, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Monitoring\manifest.json, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\Monitoring\uninstall.ico, Quarantined, [2869], [182563],1.0.8904 PUP.Optional.ConsumerInput.BrwsrFlsh, C:\Program Files (x86)\Consumer Input\CIuninstall.ico, Quarantined, [2869], [182563],1.0.8904 Trojan.BitCoinStealer.BatBitRst, C:\WINDOWS\SYSTEM32\TASKS\SYSTEMMAINTANCETASK, Quarantined, [6047], [590543],1.0.8904 Trojan.BitCoinStealer.BatBitRst, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\PROGRAMDATA\APPLICATION DATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\DOCUMENTS AND SETTINGS\ALL USERS\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 Trojan.BitCoinStealer.BatBitRst, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, Delete-on-Reboot, [6047], [-1],0.0.0 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_34_270_CT2708334_Images_634623983406188807.png, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_images_ClientImages_radio.gif, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_Images_ClientResources_mini_browser.gif, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_images_components_separator.gif, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_images_searchengines_search_icon.gif, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_MarketPlace_17_30a_1707ec51-cc71-41c5-b73e-2c135b6ea30a_Appearance_634329338460581253.png, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_MarketPlace_2e_33e_2ec9e65c-72a4-4035-8a0e-06a6f1e0533e_Appearance_634394279015031252.png, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbarImages\http___storage_conduit_com_MarketPlace_81_28e_816147d9-d2b0-4dc7-b220-fb7ea1b1228e_Appearance_634726106907093173.png, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\conduit.xml, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.1000082.currentList, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.1000082.localStations, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.1000082.nowPlaying, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.1000082.publisherStations, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.129837882913311618.search.selectedEngineId, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.129837882913311618.search.settings, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.appOptions, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.cookiesRepo, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.NotificationSettings, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.NOTIFICATION_ID.notifications-repository, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.NOTIFICATION_ID.notifications-servicemap, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.NOTIFICATION_ID.notifications-service_1663750, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.pg_conf_global, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.searchProtectorData, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981.skin, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_appsMetadata, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_appTrackingFirstTime, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_gottenAppsContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_login, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_otherAppsContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_searchAPI, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_serviceMap, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_toolbarContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_toolbarSettings, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_translation, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_10.13.40.15.serviceLayer_services_userApps, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_appsMetadata, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_appTrackingFirstTime, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_gottenAppsContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_login, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_otherAppsContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_searchAPI, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_serviceMap, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_toolbarContextMenu, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_toolbarSettings, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_translation, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\CT3227981_RAW.serviceLayer_services_userApps, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\serviceLayer_userApps_added, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\serviceLayer_userApps_removed, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\toolbar_initializing_logger.txt, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\uninstallData, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.Conduit.Generic, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\mxmfuxju.default\CT3227981\uninstallUrl, Quarantined, [1557], [443542],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\css\popup.css, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\fonts\OpenSans-Regular.woff, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\fonts\ubuntu-medium-webfont.woff, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\fonts\ubuntu-regular-webfont.woff, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\html\background.html, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\html\popup.html, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\images\download_active.png, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\images\download_inactive.png, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\images\logo.png, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\images\play5.svg, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js\analytics.js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js\background.js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js\contentscript.js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js\jquery-3.1.1.min.js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\js\popup.js, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\de\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\en\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\en_gb\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\es\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\fr\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\pt_br\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_locales\ru\messages.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_metadata\computed_hashes.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\_metadata\verified_contents.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\128x128.png, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmdldgcmokdpmacblnehppgkjphcbpnn\2.3_0\manifest.json, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\000003.log, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\CURRENT, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\LOCK, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\LOG, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\LOG.old, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmdldgcmokdpmacblnehppgkjphcbpnn\MANIFEST-000001, Quarantined, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [1305], [595652],1.0.8904 PUP.Optional.VideoDownloaderPro, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Replaced, [1305], [595652],1.0.8904 PUP.Optional.Conduit, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [215], [301520],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.ConsumerInput, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [922], [301527],1.0.8904 PUP.Optional.Conduit, C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MXMFUXJU.DEFAULT\PREFS.JS, Replaced, [215], [303091],1.0.8904 PUP.Optional.DriverHive, C:\PROGRAMDATA\SOLVUSOFT\DRIVERDOC\INSTALLCACHE\{A48B2AFF-BAC0-4BB6-AD52-EC28D293E5E1}\DRIVERDOC.MSI, Quarantined, [2918], [542209],1.0.8904 PUP.Optional.InstallCore.Generic, C:\USERS\OWNER\APPDATA\LOCAL\TEMP\KIRBY'S ADVENTURE (E)_3355685576.EXE, Quarantined, [530], [512151],1.0.8904 PUP.Optional.HandyTab, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [230], [617104],1.0.8904 PUP.Optional.HandyTab, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [230], [617104],1.0.8904 PUP.Optional.HandyTab, C:\USERS\OWNER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [230], [617104],1.0.8904 Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end)