06/26/2016 17:02 Scan of C: Scan of *STARTUP File C:\AdwCleaner\FileQuarantine\C\WINDOWS\SysWOW64\dnsapi.dll.vir is infected by Win32:Patched-AWK [Trj], Moved to chest File C:\Users\Brad\Downloads\Microsoft Office Professional Plus 2010\Activators\KMSnano\KMSnano_setup.exe is infected by Win32:Malware-gen, Moved to chest File C:\Users\Brad\Downloads\Microsoft Office Professional Plus 2010\Activators\Microsoft Toolkit\Microsoft Toolkit.exe|>[Embedded_I#00132ba] is infected by Win32:Malware-gen, Moved to chest File C:\Users\Brad\Downloads\Microsoft Office Professional Plus 2010\Activators\Microsoft Toolkit\Microsoft Toolkit.exe|>$PLUGINSDIR\B is infected by Win32:Malware-gen, Moved to chest File C:\Users\Brad\Downloads\SoftwareUpdater.exe is infected by Win32:Adware-gen [Adw], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 186495.crdownload|>disk1.cab|>itc3_d.dll is infected by Win32:Dropper-gen [Drp], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 186495.crdownload|>disk1.cab|>itc3x64_d.dll is infected by Win64:Adware-gen [Adw], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 186495.crdownload|>disk1.cab|>itc3xp_d.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 369901.crdownload|>disk1.cab|>itc3_d.dll is infected by Win32:Dropper-gen [Drp], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 369901.crdownload|>disk1.cab|>itc3x64_d.dll is infected by Win64:Adware-gen [Adw], Moved to chest File C:\Users\Brad\Downloads\Unconfirmed 369901.crdownload|>disk1.cab|>itc3xp_d.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files\Caster\Uninstaller.exe is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files\Caster\wizzcaster.exe is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files\Common Files\Noobzo\GNUpdate\sma.exe is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files\Common Files\Noobzo\GNUpdate\smi32.exe is infected by Win32:Trojan-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files\Common Files\Noobzo\GNUpdate\SMUninstall.exe is infected by Win32:GenMaliciousA-JHL [PUP], Moved to chest File C:\FRST\Quarantine\C\Program Files\Common Files\Noobzo\GNUpdate\smw.sys is infected by Win64:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files\Udutdy\Baokei64.dll is infected by Win64:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files\Udutdy\Diroghs64.dll is infected by Win64:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\4C4C4544-1466726587-5410-8046-B8C04F535131\rnszA197.exe is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Firefox\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\InternetExplorer\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\1.3.25.309\goopdateres_es-419.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\1.3.25.309\goopdateres_fr.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\1.3.25.309\psuser.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0\ciie-3.2.0-12494.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0\ciie-3.2.0-12494.exe|>$INSTDIR\dca-bho.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0\ciie-3.2.0-12494.exe|>$INSTDIR\cpturlpassthru.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0\ciie-3.2.0-12494.exe|>$OUTDIR\x64\dca-bho.dll is infected by Win64:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{1138A907-2253-45D6-99C1-843A0AC58730}\0.0.0.0\ciie-3.2.0-12494.exe|>$OUTDIR\x64\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{C7B061F6-380E-4545-86E3-400E3156FD28}\0.0.0.0\ciff-3.2.0-12297.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Download\{C7B061F6-380E-4545-86E3-400E3156FD28}\0.0.0.0\ciff-3.2.0-12297.exe|>$INSTDIR\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{2B62991C-2964-4D3A-8C6E-7FB29F9A8203}\ciie-3.2.0-12494.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{2B62991C-2964-4D3A-8C6E-7FB29F9A8203}\ciie-3.2.0-12494.exe|>$INSTDIR\dca-bho.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{2B62991C-2964-4D3A-8C6E-7FB29F9A8203}\ciie-3.2.0-12494.exe|>$INSTDIR\cpturlpassthru.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{2B62991C-2964-4D3A-8C6E-7FB29F9A8203}\ciie-3.2.0-12494.exe|>$OUTDIR\x64\dca-bho.dll is infected by Win64:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{2B62991C-2964-4D3A-8C6E-7FB29F9A8203}\ciie-3.2.0-12494.exe|>$OUTDIR\x64\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{F6C2E9AB-886B-4F54-9F4E-153A9919556A}\ciff-3.2.0-12297.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\Consumer Input\Consumer Input\Update\Install\{F6C2E9AB-886B-4F54-9F4E-153A9919556A}\ciff-3.2.0-12297.exe|>$INSTDIR\uninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\FastWeb\fastweb.exe is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\mpck\mobilepcstarterkit_widget.exe is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\SPtool.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\uninstall.pun|>$R2\$PLUGINSDIR\SPTool.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\uninstall.pun is infected by Win32:Evo-gen [Susp], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\RN32.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPtool64.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\ProgramData\Lamzap\AlphaFind.exe is infected by Win64:PUP-gen [PUP], Moved to chest File C:\FRST\Quarantine\C\ProgramData\Lamzap\DonSoloing.exe is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\ProgramData\Lamzap\Homestock.exe is infected by Win32:PUP-gen [PUP], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\4C4C4544-1466720306-5410-8046-B8C04F535131\qnsb8271.tmp is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\bvyvbvyf.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R2\$PLUGINSDIR\SPTool.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\CltMngSvc.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\uninstall.pun|>$R2\$PLUGINSDIR\SPTool.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\uninstall.pun is infected by Win32:Evo-gen [Susp], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\uninstall.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R2\$R2\$R3.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\cltmng.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\VC32.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\VC32Loader.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\RN32.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\VC64Loader.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\VC64.dll is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\rep\$R1\SPtool64.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub|>$R1\dialogs\libs\$R1\cltmngui.exe is infected by Win32:SearchProtect-EB [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\bvyvbvyf\pbqrmvbub is infected by Win32:Evo-gen [Susp], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\ddnow.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\ddnow4.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\setupone.exe.xBAD|>$SHELL[17]\behaving\settings.dll is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\compete.exe.xBAD|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\compete.exe.xBAD|>$INSTDIR\$1|>$INSTDIR\CIuninstall.exe|>$PLUGINSDIR\nsis_plugin.dll is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\compete.exe.xBAD|>$INSTDIR\$1 is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\R1MB5Y6ZTK.exe.xBAD|>{app}\mobilepcstarterkit_widget.exe is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\reg_32.exe.xBAD is infected by Win32:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\sdf589C.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\sdf5948.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\sdfBC24.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\Setup__2140_il33.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\Temp\ZBJ60X3CHE.exe.xBAD is infected by Win32:Dropper-gen [Drp], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\tinstall.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Local\tinstall4.exe.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Roaming\Jayfind.bin.xBAD|>LogicHandler.exe is infected by Win32:Rootkit-gen [Rtk], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Roaming\Kaysing.exe.xBAD is infected by Win32:Rootkit-gen [Rtk], Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Roaming\Microsoft\Protect\fdd333eecbb2e25acfff.rs.xBAD is infected by Win64:Malware-gen, Moved to chest File C:\FRST\Quarantine\C\Users\Brad\AppData\Roaming\Zertip.bin.xBAD is infected by Win32:Adware-gen [Adw], Moved to chest Number of searched folders: 36913 Number of tested files: 679725 Number of infected files: 87