Advertisement
Guest User

Untitled

a guest
Jun 7th, 2015
49
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 27.75 KB | None | 0 0
  1. Malwarebytes Anti-Malware
  2. www.malwarebytes.org
  3.  
  4. Scan Date: 7.6.2015
  5. Scan Time: 23:52:50
  6. Logfile:
  7. Administrator: Yes
  8.  
  9. Version: 2.01.6.1022
  10. Malware Database: v2015.06.07.05
  11. Rootkit Database: v2015.06.02.01
  12. License: Free
  13. Malware Protection: Disabled
  14. Malicious Website Protection: Disabled
  15. Self-protection: Disabled
  16.  
  17. OS: Windows 7 Service Pack 1
  18. CPU: x64
  19. File System: NTFS
  20.  
  21. Scan Type: Threat Scan
  22. Result: Completed
  23. Objects Scanned: 385745
  24. Time Elapsed: 21 min, 3 sec
  25.  
  26. Memory: Enabled
  27. Startup: Enabled
  28. Filesystem: Enabled
  29. Archives: Enabled
  30. Rootkits: Disabled
  31. Heuristics: Enabled
  32. PUP: Enabled
  33. PUM: Enabled
  34.  
  35. Processes: 1
  36. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 1036, , [16cb1e996d1dd85edf376bad5aa88c74]
  37.  
  38. Modules: 2
  39. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, , [da079324e4a62c0ace2c817851b2b749],
  40. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, , [da079324e4a62c0ace2c817851b2b749],
  41.  
  42. Registry Keys: 26
  43. PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, , [16cb1e996d1dd85edf376bad5aa88c74],
  44. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [2ab79225f9918da961f091cff40fc23e],
  45. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [2ab79225f9918da961f091cff40fc23e],
  46. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [2ab79225f9918da961f091cff40fc23e],
  47. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [2ab79225f9918da961f091cff40fc23e],
  48. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [2ab79225f9918da961f091cff40fc23e],
  49. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [2ab79225f9918da961f091cff40fc23e],
  50. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [2ab79225f9918da961f091cff40fc23e],
  51. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [2ab79225f9918da961f091cff40fc23e],
  52. PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [2ab79225f9918da961f091cff40fc23e],
  53. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [c120d5e2c0ca51e5b78ba9435fa42dd3],
  54. PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\delta-homesSoftware, , [b32e694e157577bfceacce440ff50cf4],
  55. PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, , [33aeffb8c9c15adc99602fcaa55e3cc4],
  56. PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\sweet-pageSoftware, , [14cd2790256541f5e7d599c862a3738d],
  57. PUP.Optional.Babylon.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dhkplhfnhceodhffomolpfigojocbpcb, , [548d15a2c1c9ed49379c2943bf4643bd],
  58. PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, , [59885265f694b28423b19f6e7d8752ae],
  59. PUP.Optional.SystemSpeedup, HKLM\SOFTWARE\WOW6432NODE\SYSTWEAK\ssd, , [1dc4ad0a6c1ef1451fdc7d997a8a4eb2],
  60. PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, , [05dcaf084d3d3501c3789c610201f808],
  61. PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, , [10d102b5216977bf52964fb45fa5738d],
  62. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, , [10d12c8b0585c3736357aa411ae9649c],
  63. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, , [b52c4b6c68224fe71f9b2fbca75c9070],
  64. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [6180c3f4fc8e9e98d36ead3fb350ed13],
  65. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3A40E547-20FD-44A2-94D0-1C98342D1507}, , [2ab716a1c0cad95d78423dae649f9769],
  66. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, , [ca172295701a15214872b43726dda957],
  67. PUP.Optional.QuickSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MOZILLA\EXTENDS, , [e4fdb5021c6e96a098b9747604fff30d],
  68. PUP.Optional.SystemSpeedup, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\SYSTWEAK\ssd, , [b928d8df9eec3ef82ad05eb8b3518b75],
  69.  
  70. Registry Values: 13
  71. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, delta-homes, , [c120d5e2c0ca51e5b78ba9435fa42dd3]
  72. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, , [944d53644f3b84b277cb29c3b64d11ef]
  73. PUP.Optional.QuickSearch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|quick_searchff@gmail.com, C:\Users\Deky\AppData\Roaming\Mozilla\Firefox\Profiles\s42wdltv.default\extensions\quick_searchff@gmail.com, , [3ca567502a605fd7ad7c8a6047bc3cc4]
  74. PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, wpm05203, , [59885265f694b28423b19f6e7d8752ae]
  75. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, , [10d12c8b0585c3736357aa411ae9649c]
  76. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, , [b52c4b6c68224fe71f9b2fbca75c9070]
  77. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, http://do-search.com//favicon.ico, , [2fb203b41a70f0469a20836842c1738d]
  78. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, delta-homes, , [6180c3f4fc8e9e98d36ead3fb350ed13]
  79. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, , [a43dad0a3f4b39fd09b1fbf00ff4af51]
  80. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, , [0ad78433d2b84de990b1aa42ca39c63a]
  81. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{3A40E547-20FD-44a2-94D0-1C98342D1507}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, , [2ab716a1c0cad95d78423dae649f9769]
  82. PUP.Optional.DoSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, , [ca172295701a15214872b43726dda957]
  83. PUP.Optional.QuickSearch.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MOZILLA\EXTENDS|appid, quick_searchff@gmail.com, , [e4fdb5021c6e96a098b9747604fff30d]
  84.  
  85. Registry Data: 19
  86. PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (firefox.exe), Bad: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[469b85321377ab8b4d42e9503fc742be]
  87. PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, c:\program files\internet explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (iexplore.exe), Bad: (c:\program files\internet explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[28b985328406bf77eea22d0ce42203fd]
  88. PUP.Optional.SweetPage.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[b22f0fa8aae09d9935d479c0d135748c]
  89. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[be23288fadddd85ea3e8a099aa5c8d73]
  90. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[f6eb34835634171f454683b6b650aa56]
  91. PUP.Optional.SweetPage.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[37aa5364d9b1b08624e555e418eeef11]
  92. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|CustomizeSearch, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[22bfd5e2454570c6e8a5d663fa0cce32]
  93. PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[e7fa199e21690d297617ad8c6d99718f]
  94. PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[bf225265266443f3b1fea89063a3e11f]
  95. PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (firefox.exe), Bad: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[c21fcbec2268d5617619df5a51b58977]
  96. PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, c:\program files\internet explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (iexplore.exe), Bad: (c:\program files\internet explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[b130e5d266243501a1eff940ae58b34d]
  97. PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[13ceb8ffdeac25112cdd80b952b401ff]
  98. PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[7968d3e43c4ec76f711a1425fb0b07f9]
  99. PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[91500fa8b0da59dd7c0fdc5d7b8bc739]
  100. PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1427452331&from=cor&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[707109ae3e4cff37987100391fe7ad53]
  101. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[e2ffbcfb0f7b39fd39531e1b33d307f9]
  102. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[b52c2196890189ad7517cc6db1553ec2]
  103. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888, Good: (www.google.com), Bad: (http://www.delta-homes.com/?type=hp&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888),,[0cd50bac6b1f36004b41f643788e0df3]
  104. PUP.Optional.Delta.A, HKU\S-1-5-21-2618932830-1615122502-1231652666-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}, Good: (www.google.com), Bad: (http://search.delta-homes.com/web/?type=ds&ts=1432126125&z=e8b656ee0648bd2d234e5b1g9z8c6ocg9oaq2g3o7m&from=wpm05203&uid=SAMSUNGXHD502HJ_S20BJ90SC72888&q={searchTerms}),,[4b96cee9a9e13105a7e52a0f947238c8]
  105.  
  106. Folders: 30
  107. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, , [da079324e4a62c0ace2c817851b2b749],
  108. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, , [da079324e4a62c0ace2c817851b2b749],
  109. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, , [da079324e4a62c0ace2c817851b2b749],
  110. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, , [da079324e4a62c0ace2c817851b2b749],
  111. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, , [da079324e4a62c0ace2c817851b2b749],
  112. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, , [da079324e4a62c0ace2c817851b2b749],
  113. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, , [da079324e4a62c0ace2c817851b2b749],
  114. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, , [da079324e4a62c0ace2c817851b2b749],
  115. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, , [da079324e4a62c0ace2c817851b2b749],
  116. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, , [da079324e4a62c0ace2c817851b2b749],
  117. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, , [da079324e4a62c0ace2c817851b2b749],
  118. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, , [da079324e4a62c0ace2c817851b2b749],
  119. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, , [da079324e4a62c0ace2c817851b2b749],
  120. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, , [da079324e4a62c0ace2c817851b2b749],
  121. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, , [da079324e4a62c0ace2c817851b2b749],
  122. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, , [da079324e4a62c0ace2c817851b2b749],
  123. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, , [da079324e4a62c0ace2c817851b2b749],
  124. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, , [da079324e4a62c0ace2c817851b2b749],
  125. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, , [da079324e4a62c0ace2c817851b2b749],
  126. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, , [da079324e4a62c0ace2c817851b2b749],
  127. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, , [da079324e4a62c0ace2c817851b2b749],
  128. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, , [da079324e4a62c0ace2c817851b2b749],
  129. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, , [da079324e4a62c0ace2c817851b2b749],
  130. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, , [da079324e4a62c0ace2c817851b2b749],
  131. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, , [da079324e4a62c0ace2c817851b2b749],
  132. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, , [da079324e4a62c0ace2c817851b2b749],
  133. PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, , [e8f98136335710268dc44c7c659ede22],
  134. PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, , [e8f98136335710268dc44c7c659ede22],
  135. PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, , [6a777a3dd9b1ee48a81c8c514eb5639d],
  136. PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, , [6a777a3dd9b1ee48a81c8c514eb5639d],
  137.  
  138. Files: 66
  139. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, , [16cb1e996d1dd85edf376bad5aa88c74],
  140. PUP.Optional.LuckyTab.A, C:\Program Files (x86)\XTab\SupTab.dll, , [2ab79225f9918da961f091cff40fc23e],
  141. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, , [da079324e4a62c0ace2c817851b2b749],
  142. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1031.xpi, , [da079324e4a62c0ace2c817851b2b749],
  143. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, , [da079324e4a62c0ace2c817851b2b749],
  144. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, , [da079324e4a62c0ace2c817851b2b749],
  145. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, , [da079324e4a62c0ace2c817851b2b749],
  146. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, , [da079324e4a62c0ace2c817851b2b749],
  147. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, , [da079324e4a62c0ace2c817851b2b749],
  148. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, , [da079324e4a62c0ace2c817851b2b749],
  149. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, , [da079324e4a62c0ace2c817851b2b749],
  150. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, , [da079324e4a62c0ace2c817851b2b749],
  151. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, , [da079324e4a62c0ace2c817851b2b749],
  152. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, , [da079324e4a62c0ace2c817851b2b749],
  153. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, , [da079324e4a62c0ace2c817851b2b749],
  154. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, , [da079324e4a62c0ace2c817851b2b749],
  155. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, , [da079324e4a62c0ace2c817851b2b749],
  156. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, , [da079324e4a62c0ace2c817851b2b749],
  157. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, , [da079324e4a62c0ace2c817851b2b749],
  158. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, , [da079324e4a62c0ace2c817851b2b749],
  159. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, , [da079324e4a62c0ace2c817851b2b749],
  160. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, , [da079324e4a62c0ace2c817851b2b749],
  161. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, , [da079324e4a62c0ace2c817851b2b749],
  162. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, , [da079324e4a62c0ace2c817851b2b749],
  163. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, , [da079324e4a62c0ace2c817851b2b749],
  164. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, , [da079324e4a62c0ace2c817851b2b749],
  165. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, , [da079324e4a62c0ace2c817851b2b749],
  166. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, , [da079324e4a62c0ace2c817851b2b749],
  167. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, , [da079324e4a62c0ace2c817851b2b749],
  168. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, , [da079324e4a62c0ace2c817851b2b749],
  169. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, , [da079324e4a62c0ace2c817851b2b749],
  170. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, , [da079324e4a62c0ace2c817851b2b749],
  171. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, , [da079324e4a62c0ace2c817851b2b749],
  172. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, , [da079324e4a62c0ace2c817851b2b749],
  173. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, , [da079324e4a62c0ace2c817851b2b749],
  174. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, , [da079324e4a62c0ace2c817851b2b749],
  175. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.xdomainrequest.min.js, , [da079324e4a62c0ace2c817851b2b749],
  176. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, , [da079324e4a62c0ace2c817851b2b749],
  177. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, , [da079324e4a62c0ace2c817851b2b749],
  178. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, , [da079324e4a62c0ace2c817851b2b749],
  179. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, , [da079324e4a62c0ace2c817851b2b749],
  180. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xdomain.min.js, , [da079324e4a62c0ace2c817851b2b749],
  181. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  182. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  183. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  184. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  185. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  186. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  187. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  188. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  189. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  190. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  191. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  192. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  193. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  194. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  195. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  196. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  197. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  198. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  199. PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, , [da079324e4a62c0ace2c817851b2b749],
  200. PUP.Optional.RegCleanerPro, C:\Windows\System32\Tasks\ASP, , [c21fb007eaa093a3420bd937a55fe719],
  201. PUP.Optional.Delta.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\delta-homes.xml, , [be23991e3852ab8bc354938847bd8a76],
  202. PUP.Optional.WindowsMangerProtect.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, , [05dcaf084d3d3501c3789c610201f808],
  203. PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, , [e8f98136335710268dc44c7c659ede22],
  204. PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, , [6a777a3dd9b1ee48a81c8c514eb5639d],
  205.  
  206. Physical Sectors: 0
  207. (No malicious items detected)
  208.  
  209.  
  210. (end)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement