Advertisement
Guest User

Untitled

a guest
Feb 28th, 2016
1,043
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 34.52 KB | None | 0 0
  1. Malwarebytes Anti-Malware
  2. www.malwarebytes.org
  3.  
  4. Scan Date: 2/28/2016
  5. Scan Time: 8:30 PM
  6. Logfile:
  7. Administrator: Yes
  8.  
  9. Version: 2.2.0.1024
  10. Malware Database: v2015.12.26.05
  11. Rootkit Database: v2016.02.27.01
  12. License: Free
  13. Malware Protection: Disabled
  14. Malicious Website Protection: Disabled
  15. Self-protection: Disabled
  16.  
  17. OS: Windows 8
  18. CPU: x64
  19. File System: NTFS
  20. User: Owner
  21.  
  22. Scan Type: Threat Scan
  23. Result: Completed
  24. Objects Scanned: 343248
  25. Time Elapsed: 7 min, 39 sec
  26.  
  27. Memory: Enabled
  28. Startup: Enabled
  29. Filesystem: Enabled
  30. Archives: Enabled
  31. Rootkits: Disabled
  32. Heuristics: Enabled
  33. PUP: Enabled
  34. PUM: Enabled
  35.  
  36. Processes: 1
  37. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\ihpmServer.exe, 2156, , [02ab8623701b10264a0bbdf8847dfb05]
  38.  
  39. Modules: 0
  40. (No malicious items detected)
  41.  
  42. Registry Keys: 12
  43. PUP.Optional.Elex, HKLM\SOFTWARE\CLASSES\TYPELIB\{8DD92279-9B04-4C6F-A862-EF3C24603804}, , [02ab8623701b10264a0bbdf8847dfb05],
  44. PUP.Optional.Elex, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{8DD92279-9B04-4C6F-A862-EF3C24603804}, , [02ab8623701b10264a0bbdf8847dfb05],
  45. PUP.Optional.Elex, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{8DD92279-9B04-4C6F-A862-EF3C24603804}, , [02ab8623701b10264a0bbdf8847dfb05],
  46. PUP.Optional.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ihpmServer, , [02ab8623701b10264a0bbdf8847dfb05],
  47. PUP.Optional.WinManger, HKLM\SOFTWARE\CLASSES\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, , [e2cbefba43482511a200194ec0426a96],
  48. PUP.Optional.WinManger, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, , [e2cbefba43482511a200194ec0426a96],
  49. PUP.Optional.WinManger, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, , [e2cbefba43482511a200194ec0426a96],
  50. PUP.Optional.Elex, HKLM\SOFTWARE\WOW6432NODE\ihpmserver, , [674602a79ceffe38b9e2b72008fb20e0],
  51. PUP.Optional.MySites123.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\mysites123Software, , [49642d7c256668cef4d5ded77e848e72],
  52. PUP.Optional.MySites123.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\mysites123, , [6e3f2485b0db8aac4286664faa5848b8],
  53. PUP.Optional.Elex, HKLM\SOFTWARE\WOW6432NODE\RAYDLD, , [0ca1c1e8d2b9be78de43bcfd31d1e020],
  54. PUP.Optional.DeskCut, HKU\S-1-5-21-4287619305-1751583266-3670588670-1001\SOFTWARE\MOZILLA\EXTENDS, , [4a634366781369cdc2b8e6b8bd4641bf],
  55.  
  56. Registry Values: 3
  57. PUP.Optional.DeskCut, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|deskCutv2@gmail.com, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com, , [f9b4fcadabe0bf77700be8b60df648b8]
  58. PUP.Optional.Elex, HKLM\SOFTWARE\WOW6432NODE\RAYDLD|dir, C:\Program Files (x86)\RayDld, , [0ca1c1e8d2b9be78de43bcfd31d1e020]
  59. PUP.Optional.DeskCut, HKU\S-1-5-21-4287619305-1751583266-3670588670-1001\SOFTWARE\MOZILLA\EXTENDS|appid, deskCutv2@gmail.com, , [4a634366781369cdc2b8e6b8bd4641bf]
  60.  
  61. Registry Data: 0
  62. (No malicious items detected)
  63.  
  64. Folders: 36
  65. PUP.Optional.Elex, C:\Program Files (x86)\RayDld, , [a607931698f3a0968a108e49b64d03fd],
  66. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin, , [a607931698f3a0968a108e49b64d03fd],
  67. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  68. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  69. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  70. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  71. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  72. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  73. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  74. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  75. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  76. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  77. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  78. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en-US, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  79. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  80. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es-419, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  81. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  82. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-BE, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  83. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CA, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  84. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CH, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  85. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-LU, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  86. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  87. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it-CH, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  88. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pl, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  89. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pt-BR, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  90. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  91. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru-MO, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  92. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\tr, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  93. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\vi, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  94. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-CN, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  95. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-TW, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  96. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  97. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\defaults, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  98. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\defaults\preferences, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  99. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  100. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\mysites123, , [3d705950bbd077bf7b61ded51ae8cd33],
  101.  
  102. Files: 151
  103. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\ihpmServer.exe, , [02ab8623701b10264a0bbdf8847dfb05],
  104. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\Raydld.exe, , [a00d4f5a2e5d3df94018f9bc639e6f91],
  105. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\searchplugins\mysites123.xml, , [624b3970404b9a9c7354e5d0907215eb],
  106. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\uninstall.exe, , [a607931698f3a0968a108e49b64d03fd],
  107. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\DuiLib.dll, , [a607931698f3a0968a108e49b64d03fd],
  108. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\msvcp110.dll, , [a607931698f3a0968a108e49b64d03fd],
  109. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\msvcr110.dll, , [a607931698f3a0968a108e49b64d03fd],
  110. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\Ray.ini, , [a607931698f3a0968a108e49b64d03fd],
  111. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\main.xml, , [a607931698f3a0968a108e49b64d03fd],
  112. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\About.xml, , [a607931698f3a0968a108e49b64d03fd],
  113. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\about_banner.png, , [a607931698f3a0968a108e49b64d03fd],
  114. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\animate_history.png, , [a607931698f3a0968a108e49b64d03fd],
  115. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\animate_portal.png, , [a607931698f3a0968a108e49b64d03fd],
  116. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\animate_recent.png, , [a607931698f3a0968a108e49b64d03fd],
  117. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\big_button_down.png, , [a607931698f3a0968a108e49b64d03fd],
  118. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\bk_shadow.png, , [a607931698f3a0968a108e49b64d03fd],
  119. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\bottom_toolbar_bk.png, , [a607931698f3a0968a108e49b64d03fd],
  120. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\brower_back.png, , [a607931698f3a0968a108e49b64d03fd],
  121. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\brower_refresh.png, , [a607931698f3a0968a108e49b64d03fd],
  122. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\btn.png, , [a607931698f3a0968a108e49b64d03fd],
  123. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\btn_browser_dir.png, , [a607931698f3a0968a108e49b64d03fd],
  124. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\ck_box.png, , [a607931698f3a0968a108e49b64d03fd],
  125. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\ck_check.png, , [a607931698f3a0968a108e49b64d03fd],
  126. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\close.png, , [a607931698f3a0968a108e49b64d03fd],
  127. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\create.png, , [a607931698f3a0968a108e49b64d03fd],
  128. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\delete.png, , [a607931698f3a0968a108e49b64d03fd],
  129. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\drag_flag.png, , [a607931698f3a0968a108e49b64d03fd],
  130. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\exclamation.png, , [a607931698f3a0968a108e49b64d03fd],
  131. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\list_header_bk.png, , [a607931698f3a0968a108e49b64d03fd],
  132. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\logo_16.png, , [a607931698f3a0968a108e49b64d03fd],
  133. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\logo_small.png, , [a607931698f3a0968a108e49b64d03fd],
  134. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\Menu.xml, , [a607931698f3a0968a108e49b64d03fd],
  135. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\MenuItem.xml, , [a607931698f3a0968a108e49b64d03fd],
  136. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\menu_bk.png, , [a607931698f3a0968a108e49b64d03fd],
  137. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\menu_bk_seperator.png, , [a607931698f3a0968a108e49b64d03fd],
  138. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\MessageBox.xml, , [a607931698f3a0968a108e49b64d03fd],
  139. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\min.png, , [a607931698f3a0968a108e49b64d03fd],
  140. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\open_position.png, , [a607931698f3a0968a108e49b64d03fd],
  141. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\pause.png, , [a607931698f3a0968a108e49b64d03fd],
  142. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\progress_bk.png, , [a607931698f3a0968a108e49b64d03fd],
  143. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\progress_fore.png, , [a607931698f3a0968a108e49b64d03fd],
  144. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\scrollbar.bmp, , [a607931698f3a0968a108e49b64d03fd],
  145. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\Start.png, , [a607931698f3a0968a108e49b64d03fd],
  146. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\sysmenu.png, , [a607931698f3a0968a108e49b64d03fd],
  147. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\TaskListItem.xml, , [a607931698f3a0968a108e49b64d03fd],
  148. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\TaskListItemHistory.xml, , [a607931698f3a0968a108e49b64d03fd],
  149. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\TaskNew.xml, , [a607931698f3a0968a108e49b64d03fd],
  150. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\task_completed.png, , [a607931698f3a0968a108e49b64d03fd],
  151. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\task_failed.png, , [a607931698f3a0968a108e49b64d03fd],
  152. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\task_pause.png, , [a607931698f3a0968a108e49b64d03fd],
  153. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\toolbar_separator.png, , [a607931698f3a0968a108e49b64d03fd],
  154. PUP.Optional.Elex, C:\Program Files (x86)\RayDld\skin\WebPortal.xml, , [a607931698f3a0968a108e49b64d03fd],
  155. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome.manifest, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  156. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  157. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\install.rdf, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  158. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  159. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\index.html.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  160. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\quick_start.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  161. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\quick_start.xul, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  162. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  163. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\speed_dial.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  164. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools\about_blank_hook.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  165. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  166. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools\misc.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  167. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools\popup_image_helper.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  168. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools\urlrequestor.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  169. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib\doT.min.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  170. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  171. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  172. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  173. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module\hotSearch.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  174. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  175. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module\mostgrid.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  176. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module\search.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  177. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\module\stat.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  178. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack\common.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  179. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack\ga.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  180. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  181. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack\xagainit.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  182. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  183. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  184. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en-US\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  185. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\en-US\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  186. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  187. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  188. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es-419\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  189. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\es-419\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  190. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  191. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  192. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-BE\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  193. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-BE\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  194. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CA\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  195. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CA\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  196. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CH\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  197. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CH\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  198. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-LU\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  199. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-LU\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  200. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  201. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  202. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it-CH\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  203. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\it-CH\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  204. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pl\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  205. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pl\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  206. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pt-BR\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  207. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\pt-BR\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  208. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  209. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  210. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru-MO\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  211. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\ru-MO\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  212. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\tr\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  213. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\tr\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  214. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\vi\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  215. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\vi\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  216. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-CN\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  217. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-CN\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  218. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-TW\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  219. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-TW\locale.properties, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  220. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\default_logo.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  221. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\googlelogo.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  222. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\google_trends.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  223. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  224. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\icon.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  225. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\loading.gif.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  226. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\logo.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  227. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\luck.png.p5tkjw, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  228. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\newtab.ico, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  229. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\simple.css, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  230. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\chrome\skin\style.css, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  231. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\defaults\preferences\fvd.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  232. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\defaults\preferences\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  233. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\defaults\preferences\preferences.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  234. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\addonmanager.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  235. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\aes.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  236. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\config.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  237. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\dialogs.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  238. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\HOW TO DECRYPT FILES.txt, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  239. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\last_tab.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  240. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\misc.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  241. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\properties.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  242. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\remoterequest.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  243. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\restoreprefs.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  244. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\extensions\deskCutv2@gmail.com\modules\settings.js, , [03aa4663ed9e40f6dc526a2a22e0b24e],
  245. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\mysites123\HOW TO DECRYPT FILES.txt, , [3d705950bbd077bf7b61ded51ae8cd33],
  246. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\mysites123\inst1.dat, , [3d705950bbd077bf7b61ded51ae8cd33],
  247. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\mysites123\Uninstall.exe, , [3d705950bbd077bf7b61ded51ae8cd33],
  248. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\mysites123\unipc.dat, , [3d705950bbd077bf7b61ded51ae8cd33],
  249. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Good: ("session":{"restore_on_startup":4,"startup_urls":["https://www.malwarebytes.org/restorebrowser/"]}}), Bad: ("session":{"restore_on_startup":4,"startup_urls":["http://www.mysites123.com/?type=hp&ts=1456644747&z=e4fe204fe83c2493c059fafgez7wbq3q8zdz2m1zam&from=amt&uid=toshibaxmq01abd075_63peslx6sxx63peslx6s"]}}), ,[98159811a5e6af87e5baa818f80c36ca]
  250. PUP.Optional.QuickStart, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\prefs.js, Good: (), Bad: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), ,[9d102980800b0d29a26e417926de17e9]
  251. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\prefs.js, Good: (user_pref("browser.startup.homepage", "https://www.malwarebytes.org/restorebrowser/), Bad: (user_pref("browser.startup.homepage", "http://www.mysites123.com), ,[cae35554f69584b25cb8f4cd6b99d030]
  252. PUP.Optional.DeskCut, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\prefs.js, Good: (), Bad: (deskCutv2@gmail.com), ,[921b3e6bff8c79bd971312af23e1ed13]
  253. PUP.Optional.MySites123.ShrtCln, C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\qjm2w7zg.default\prefs.js, Good: (), Bad: (mysites123.com), ,[921b1693078402348438e5dc59ab2dd3]
  254.  
  255. Physical Sectors: 0
  256. (No malicious items detected)
  257.  
  258.  
  259. (end)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement