Emsisoft Emergency Kit - Version 11.9 Last update: 10/24/2016 Monday 10:56:49 PM User account: GAMERPC2\mewtw_000 Computer name: GAMERPC2 OS version: Windows 10x64 Scan settings: Scan type: Malware Scan Objects: Rootkits, Memory, Traces, Files Detect PUPs: On Scan archives: Off ADS Scan: On File extension filter: Off Advanced caching: On Direct disk access: Off Scan start: 10/24/2016 Monday 11:09:44 PM C:\Users\mewtw_000\AppData\Roaming\baidu detected: Application.AppInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS detected: Application.Win32.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\INSTALLEDBROWSEREXTENSIONS detected: Application.Win32.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} detected: Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\SOLID PROGRAM detected: Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1004\SOFTWARE\SOLID PROGRAM detected: Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1004_CLASSES\*\SHELLEX\CONTEXTMENUHANDLERS\SYSMENUEXT detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1006\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{02478D38-C3F9-4EFB-9B51-7695ECA05670} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1006\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} detected: Application.AdInstall (A) C:\Users\mewtw_000\Desktop\Emulators\Setup Project64 2.2.exe detected: Application.InstallAd (A) Scanned 156193 Found 15 Scan end: 10/24/2016 Monday 11:43:46 PM Scan time: 0:34:02 C:\Users\mewtw_000\Desktop\Emulators\Setup Project64 2.2.exe Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1006\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1006\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1005\SOFTWARE\INSTALLEDBROWSEREXTENSIONS Application.Win32.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1004_CLASSES\*\SHELLEX\CONTEXTMENUHANDLERS\SYSMENUEXT Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1004\SOFTWARE\SOLID PROGRAM Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\SOLID PROGRAM Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Application.AdInstall (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS Application.Win32.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3857839104-3952859072-2417217460-1001\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Application.Toolbar (A) C:\Users\mewtw_000\AppData\Roaming\baidu Application.AppInstall (A) Quarantined 15