Премини към съдържанието

Hadzhipenev

Потребител
  • Публикации

    10
  • Регистрация

  • Последно онлайн

Харесвания

0 Неутрална репутация

Всичко за Hadzhipenev

  • Титла
    Потребител
  1. Проблем с вируси

    Благодаря безкрайно много. Не знам как да ви се отблагодаря просто. Поздравявам ви, че се занимавате.
  2. Проблем с вируси

    Да, не виждам нещо нередно
  3. Проблем с вируси

    </div><div>HitmanPro 3.7.9.220</div><div>www.hitmanpro.com</div><div> </div><div> Computer name . . . . : LENA-PC</div><div> Windows . . . . . . . : 5.1.3.2600.X86/2</div><div> User name . . . . . . : LENA-PCLena</div><div> License . . . . . . . : Free</div><div> </div><div> Scan date . . . . . . : 2014-07-01 23:19:09</div><div> Scan mode . . . . . . : Normal</div><div> Scan duration . . . . : 5m 10s</div><div> Disk access mode . . : Direct disk access (SRB)</div><div> Cloud . . . . . . . . : Internet</div><div> Reboot . . . . . . . : No</div><div> </div><div> Threats . . . . . . . : 12</div><div> Traces . . . . . . . : 84</div><div> </div><div> Objects scanned . . . : 571 524</div><div> Files scanned . . . . : 17 241</div><div> Remnants scanned . . : 72 892 files / 481 391 keys</div><div> </div><div>Malware _____________________________________________________________________</div><div> </div><div> C:Documents and SettingsAll UsersApplication DataInstallMate{0497BDD6-ABEF-445E-A6B5-E3CDDF749F20}_Setupx.dll</div><div> Size . . . . . . . : 54 272 bytes</div><div> Age . . . . . . . : 427.4 days (2013-04-30 14:08:02)</div><div> Entropy . . . . . : 6.5</div><div> SHA-256 . . . . . : 6C2EF1A85B6CBE3993484AF3A631C86D425279620B3C02593BF8364C8BCA8318</div><div> > Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.AdLoad.u</div><div> Fuzzy . . . . . . : 106.0</div><div> </div><div> C:Documents and SettingsAll UsersApplication DataInstallMate{D7C6572F-1A36-4FFA-AD11-52140C2575D9}_Setupx.dll</div><div> Size . . . . . . . : 54 272 bytes</div><div> Age . . . . . . . : 459.3 days (2013-03-29 15:56:01)</div><div> Entropy . . . . . : 6.5</div><div> SHA-256 . . . . . : 6C2EF1A85B6CBE3993484AF3A631C86D425279620B3C02593BF8364C8BCA8318</div><div> > Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.AdLoad.u</div><div> Fuzzy . . . . . . : 106.0</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134773.dll</div><div> Size . . . . . . . : 4 184 576 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:16:51)</div><div> Entropy . . . . . : 7.1</div><div> SHA-256 . . . . . : A588669C657A5B8196C005D9CD97C84CE47828CA73E90459E87A4224B6A23DCD</div><div> > Bitdefender . . . : Gen:Adware.BProtector.1</div><div> > Kaspersky . . . . : HEUR:Trojan.Win32.Generic</div><div> Fuzzy . . . . . . : 117.0</div><div> Forensic Cluster</div><div> -116.8s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{A3800B08-A81C-478E-9531-4AD557C21410}</div><div> -116.0s C:WINXPPrefetchGUNINSTALLER.EXE-1EC45041.pf</div><div> -115.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{455EF2A8-E704-4E1C-B1A7-02A850DE3E14}</div><div> -113.7s C:WINXPPrefetchUNINST1.EXE-0638583A.pf</div><div> -95.9s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{95AEC645-F902-4901-B410-A0CF2F8DB68A}</div><div> -95.1s C:WINXPPrefetchGUNINSTALLER.EXE-09BDC4C0.pf</div><div> -93.9s C:WINXPPrefetchSCHTASKS.EXE-074EFA2F.pf</div><div> -93.2s C:WINXPPrefetchUNINSTALL.EXE-01BEC9B7.pf</div><div> -92.4s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{9E3004D9-5393-4C74-8B53-FCC639D8102C}</div><div> -91.2s C:WINXPPrefetchAU_.EXE-213B9352.pf</div><div> -67.3s C:WINXPPrefetchBUENOSEARCHSRV.EXE-2076CFFA.pf</div><div> -64.0s C:Documents and SettingsLenaCookiesB7GY2SKO.txt</div><div> -59.9s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{5FC058C5-E5C7-48FC-B927-EA20E952D1A1}</div><div> -56.3s C:WINXPPrefetchBI_CLIENT.EXE-05A5460E.pf</div><div> -32.8s C:WINXPPrefetchUNINSTALL.EXE-3AE3EF05.pf</div><div> -32.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{E88B198A-2FE0-49FF-8193-55C789B342A8}</div><div> -32.1s C:WINXPPrefetchUTILS.EXE-0AA46516.pf</div><div> -26.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{B835D3F7-9653-45DC-9A0A-34CB570056B3}</div><div> -24.9s C:WINXPPrefetchFIREFOXUNINSTALLER51356.EXE-089E421B.pf</div><div> -23.7s C:WINXPPrefetchD0E20C83-1F7C-414D-B69A-6EB92-3A409675.pf</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134773.dll</div><div> 1.2s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore185</div><div> 1.2s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1859370AB3F006F14A1.dat</div><div> 2.3s C:WINXPPrefetchRUNDLL32.EXE-4031B6A2.pf</div><div> 2.3s C:WINXPPrefetchRUNDLL32.EXE-4031B6A2.pf</div><div> 18.7s C:WINXPPrefetchUNINSTALLER.EXE-283A094E.pf</div><div> 19.3s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{6FA58685-AEFA-47D5-A9BE-89C113B734A8}</div><div> 19.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansHistoryResultsResource{0CDBF8F4-3C3E-4211-9EEF-E2300E849E1B}</div><div> 19.9s C:WINXPPrefetchWGET.EXE-2E635F99.pf</div><div> 19.9s C:WINXPPrefetchNS1440.TMP-150C9F5D.pf</div><div> 32.3s C:WINXPPrefetchPBGMKXEH.EXE-13FFE7F5.pf</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> Size . . . . . . . : 372 224 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:40)</div><div> Entropy . . . . . : 6.0</div><div> SHA-256 . . . . . : 9F5C0CC26A6EBED5FE46CAA72BAD21BB8929836170A4498867F848EF1299B7FC</div><div> Product . . . . . : memory Databases</div><div> Publisher . . . . : memory Databases</div><div> Description . . . : managing dedicated are database</div><div> Version . . . . . : structures</div><div> Copyright . . . . : Copyright (C) 2014</div><div> LanguageID . . . . : 1033</div><div> > Bitdefender . . . : Application.Generic.645804</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.MultiPlug.bfk</div><div> Fuzzy . . . . . . : 105.0</div><div> Forensic Cluster</div><div> -3.2s C:AdwCleanerAdwCleaner[S0].txt</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -0.8s C:AdwCleanerQuarantineC</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -0.7s C:AdwCleanerQuarantineQuarantine.txt</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 1.4s C:AdwCleanerQuarantineCProgram Files</div><div> 1.4s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 1.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 1.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 1.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.7s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 2.3s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 3.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 4.0s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 4.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 4.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 4.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 4.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 4.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 4.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 4.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 4.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 5.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 6.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 6.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 6.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 6.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 6.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 9.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 9.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 11.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 13.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 14.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 14.4s C:AdwCleanerQuarantineCWINXP</div><div> 14.4s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.4s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 14.5s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 14.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 14.5s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.6s C:AdwCleanerQuarantineCWINXPTasks</div><div> 15.1s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 16.1s C:AdwCleanerBackupC</div><div> 16.1s C:AdwCleanerBackup</div><div> 16.1s C:AdwCleanerBackupCDocuments and Settings</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 16.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> Size . . . . . . . : 460 800 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:40)</div><div> Entropy . . . . . : 6.2</div><div> SHA-256 . . . . . : 15C8E5E748AAD1E42F260020F4A60A9402A23CE1E52D3DB71B10949EACAD6567</div><div> > Bitdefender . . . : Application.Generic.623657</div><div> Fuzzy . . . . . . : 108.0</div><div> Forensic Cluster</div><div> -3.3s C:AdwCleanerAdwCleaner[S0].txt</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -0.8s C:AdwCleanerQuarantineC</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -0.8s C:AdwCleanerQuarantineQuarantine.txt</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 1.3s C:AdwCleanerQuarantineCProgram Files</div><div> 1.3s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 1.4s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 1.4s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 1.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 2.2s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 3.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.9s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 4.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 4.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 4.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 4.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 4.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 4.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 4.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 5.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 5.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 6.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 6.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 9.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 9.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 13.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 13.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 13.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 14.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 14.3s C:AdwCleanerQuarantineCWINXP</div><div> 14.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 14.4s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 14.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 14.4s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.5s C:AdwCleanerQuarantineCWINXPTasks</div><div> 15.0s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 16.0s C:AdwCleanerBackupC</div><div> 16.0s C:AdwCleanerBackup</div><div> 16.0s C:AdwCleanerBackupCDocuments and Settings</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 16.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> Size . . . . . . . : 425 984 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:40)</div><div> Entropy . . . . . : 5.9</div><div> SHA-256 . . . . . : 910B55FC9813794520D25A87FFE3BC6FCED799ACEE3619973EC113F59C936FFD</div><div> > Bitdefender . . . : Application.Generic.609959</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.BHO.bdnc</div><div> Fuzzy . . . . . . : 108.0</div><div> Forensic Cluster</div><div> -3.5s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.1s C:AdwCleanerQuarantineC</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.0s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> 0.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 0.7s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 0.7s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 1.1s C:AdwCleanerQuarantineCProgram Files</div><div> 1.1s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 1.2s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 1.2s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 1.2s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.3s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.3s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 2.0s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.7s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.8s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.8s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.8s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 4.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 4.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 4.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 6.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 6.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 9.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 9.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 13.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 13.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 14.1s C:AdwCleanerQuarantineCWINXP</div><div> 14.1s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.1s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 14.2s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 14.2s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.3s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.8s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 15.8s C:AdwCleanerBackupC</div><div> 15.8s C:AdwCleanerBackup</div><div> 15.8s C:AdwCleanerBackupCDocuments and Settings</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 15.8s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> Size . . . . . . . : 495 616 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:41)</div><div> Entropy . . . . . : 6.1</div><div> SHA-256 . . . . . : 6F8BAF089193A8D1B2A585D817EB81B989D406A3A09C8683A7D494544DF28304</div><div> Product . . . . . : TODO: <Product name></div><div> Publisher . . . . : Setup</div><div> Description . . . : Setup</div><div> Version . . . . . : 1.0.0.1</div><div> LanguageID . . . . : 1037</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.MegaSearch.at</div><div> Fuzzy . . . . . . : 102.0</div><div> Forensic Cluster</div><div> -3.6s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.2s C:AdwCleanerQuarantineC</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.1s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div>-0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 0.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 0.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 1.0s C:AdwCleanerQuarantineCProgram Files</div><div> 1.0s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 1.1s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 1.1s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 1.1s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.2s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.3s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 1.9s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 2.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.6s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.7s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.7s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.7s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 3.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 4.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 4.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 5.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 9.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 9.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 12.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 13.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 13.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 14.0s C:AdwCleanerQuarantineCWINXP</div><div> 14.0s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.0s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 14.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 14.1s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 14.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 14.1s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.2s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.7s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 15.7s C:AdwCleanerBackupC</div><div> 15.7s C:AdwCleanerBackup</div><div> 15.7s C:AdwCleanerBackupCDocuments and Settings</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 15.7s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> Size . . . . . . . : 370 688 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:41)</div><div> Entropy . . . . . : 6.0</div><div> SHA-256 . . . . . : D5CF0F26C6B4CAA7864994B917C23EBB42A31BE84DAD72D3B99E6CC3FD2EC12B</div><div> Product . . . . . : DBMS is a a</div><div> Publisher . . . . : DBMS is a a</div><div> Description . . . : often</div><div> Version . . . . . : four</div><div> Copyright . . . . : Copyright (C) 2014</div><div> LanguageID . . . . : 1033</div><div> > Bitdefender . . . : Application.Generic.654202</div><div> Fuzzy . . . . . . : 105.0</div><div> Forensic Cluster</div><div> -3.7s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.3s C:AdwCleanerQuarantineC</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.3s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> 0.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 0.5s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 0.5s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 0.9s C:AdwCleanerQuarantineCProgram Files</div><div> 0.9s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 1.0s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 1.8s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.4s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.6s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.6s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.6s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 3.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 3.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 4.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 6.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 6.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 8.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 8.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 12.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 12.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 13.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 13.9s C:AdwCleanerQuarantineCWINXP</div><div> 13.9s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.9s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 13.9s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 13.9s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.0s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.6s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 15.5s C:AdwCleanerBackupC</div><div> 15.5s C:AdwCleanerBackup</div><div> 15.5s C:AdwCleanerBackupCDocuments and Settings</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> Size . . . . . . . : 643 072 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:41)</div><div> Entropy . . . . . : 6.3</div><div> SHA-256 . . . . . : 5A92AA473393CCF3D343B358F8EB0EC147414C0B3415C07204FCB0E315D5A311</div><div> > Bitdefender . . . : Application.Generic.649799</div><div> Fuzzy . . . . . . : 108.0</div><div> Forensic Cluster</div><div> -3.8s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.4s C:AdwCleanerQuarantineC</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.3s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -1.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> 0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 0.4s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 0.4s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 0.8s C:AdwCleanerQuarantineCProgram Files</div><div> 0.8s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 1.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 1.7s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 3.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.4s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.5s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.5s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.5s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 3.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 4.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 5.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 5.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 5.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 5.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 5.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 6.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 6.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 8.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 8.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 12.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 12.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 12.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 12.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 13.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 13.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 13.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 13.8s C:AdwCleanerQuarantineCWINXP</div><div> 13.8s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.8s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 13.9s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 13.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 13.9s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 14.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 14.0s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.5s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 15.5s C:AdwCleanerBackupC</div><div> 15.5s C:AdwCleanerBackup</div><div> 15.5s C:AdwCleanerBackupCDocuments and Settings</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 15.5s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> Size . . . . . . . : 425 984 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:41)</div><div> Entropy . . . . . : 5.9</div><div> SHA-256 . . . . . : 910B55FC9813794520D25A87FFE3BC6FCED799ACEE3619973EC113F59C936FFD</div><div> > Bitdefender . . . : Application.Generic.609959</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.BHO.bdnc</div><div> Fuzzy . . . . . . : 108.0</div><div> Forensic Cluster</div><div> -4.2s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.8s C:AdwCleanerQuarantineC</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.7s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -1.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -1.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -1.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -0.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> -0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> 0.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> 0.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> 0.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 0.4s C:AdwCleanerQuarantineCProgram Files</div><div> 0.4s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 0.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 0.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 0.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 0.6s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 0.7s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 1.3s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 2.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 3.0s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 3.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.1s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 3.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.2s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 4.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 4.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 5.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 5.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 8.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 8.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 10.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 10.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 11.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 12.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 12.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 12.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 12.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 12.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 12.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 12.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 12.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 12.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 13.4s C:AdwCleanerQuarantineCWINXP</div><div> 13.4s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.4s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 13.5s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 13.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 13.5s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 13.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 13.6s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.1s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 15.1s C:AdwCleanerBackupC</div><div> 15.1s C:AdwCleanerBackup</div><div> 15.1s C:AdwCleanerBackupCDocuments and Settings</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 15.1s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> Size . . . . . . . : 495 616 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:41)</div><div> Entropy . . . . . : 6.1</div><div> SHA-256 . . . . . : 6F8BAF089193A8D1B2A585D817EB81B989D406A3A09C8683A7D494544DF28304</div><div> Product . . . . . : TODO: <Product name></div><div> Publisher . . . . : Setup</div><div> Description . . . : Setup</div><div> Version . . . . . : 1.0.0.1</div><div> LanguageID . . . . : 1037</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.MegaSearch.at</div><div> Fuzzy . . . . . . : 102.0</div><div> Forensic Cluster</div><div> -4.3s C:AdwCleanerAdwCleaner[S0].txt</div><div> -1.9s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.9s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -1.9s C:AdwCleanerQuarantineC</div><div> -1.9s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -1.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -1.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -1.9s C:AdwCleanerQuarantineQuarantine.txt</div><div> -1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -1.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -1.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -1.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -1.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -0.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> -0.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> -0.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> -0.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> -0.1s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> 0.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> 0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> 0.3s C:AdwCleanerQuarantineCProgram Files</div><div> 0.3s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> 0.3s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> 0.3s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> 0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> 0.4s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> 0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> 0.5s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> 0.5s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> 0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 1.1s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 2.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 2.8s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 3.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 3.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 3.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 3.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 3.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 3.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 3.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 4.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 4.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 4.0s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 4.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 4.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 4.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 4.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 5.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 5.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 5.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 5.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 5.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 8.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 8.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 9.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 9.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 11.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 11.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 11.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 11.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 12.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 12.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 12.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 12.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 12.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 12.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 12.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 12.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 12.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 12.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 12.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 13.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 13.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 13.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 13.3s C:AdwCleanerQuarantineCWINXP</div><div> 13.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 13.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 13.3s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 13.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 13.3s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 13.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 13.4s C:AdwCleanerQuarantineCWINXPTasks</div><div> 14.0s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 14.9s C:AdwCleanerBackupC</div><div> 14.9s C:AdwCleanerBackup</div><div> 14.9s C:AdwCleanerBackupCDocuments and Settings</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 14.9s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> Size . . . . . . . : 5 802 128 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:43)</div><div> Entropy . . . . . : 8.0</div><div> SHA-256 . . . . . : 6E0FAFE87A88C670F7E5B32BA1F4CF99CEF06FC8FEAF77777697DB80ECEAC32D</div><div> Product . . . . . : Ekrgrp</div><div> Publisher . . . . : Zfueelacm</div><div> Description . . . : Vdplculzpxc</div><div> Version . . . . . : 6.2.20.17</div><div> Copyright . . . . : Knxhqigdeqfgyc</div><div> RSA Key Size . . . : 2048</div><div> LanguageID . . . . : 1033</div><div> Authenticode . . . : Valid</div><div> > Bitdefender . . . : Adware.Generic.944033</div><div> > Kaspersky . . . . : not-a-virus:AdWare.Win32.Agent.akcj</div><div> Fuzzy . . . . . . : 98.0</div><div> Forensic Cluster</div><div> -6.3s C:AdwCleanerAdwCleaner[S0].txt</div><div> -3.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -3.8s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -3.8s C:AdwCleanerQuarantineC</div><div> -3.8s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -3.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -3.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -3.8s C:AdwCleanerQuarantineQuarantine.txt</div><div> -3.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -3.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -3.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -3.7s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -3.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -3.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -3.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -3.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -3.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -3.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -3.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -3.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -3.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -3.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -3.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -3.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -2.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -2.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -2.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -2.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -2.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -2.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -2.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> -2.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -2.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> -2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> -2.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -2.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -2.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -2.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> -2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> -2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> -2.2s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> -2.1s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> -2.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> -2.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> -2.0s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> -1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> -1.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> -1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> -1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> -1.7s C:AdwCleanerQuarantineCProgram Files</div><div> -1.7s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> -1.6s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> -1.6s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> -1.5s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> -1.4s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> -1.4s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> -1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> -0.8s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 0.9s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 0.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 1.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 1.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 1.0s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 1.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 2.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 2.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 2.1s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 2.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 2.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 2.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 2.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 2.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 2.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 3.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 3.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 3.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 3.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 3.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 3.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 3.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 3.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 6.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 6.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 7.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 7.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 9.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 9.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 9.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 9.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 9.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 9.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 9.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 10.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 10.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 10.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 10.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 10.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 10.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 10.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 10.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 10.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 10.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 10.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 10.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 10.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 10.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 10.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 10.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 10.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 10.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 10.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 10.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 10.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 10.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 10.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 10.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 11.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 11.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 11.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 11.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 11.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 11.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 11.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 11.3s C:AdwCleanerQuarantineCWINXP</div><div> 11.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 11.3s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 11.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 11.4s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 11.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 11.4s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 11.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 11.5s C:AdwCleanerQuarantineCWINXPTasks</div><div> 12.0s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 13.0s C:AdwCleanerBackupC</div><div> 13.0s C:AdwCleanerBackup</div><div> 13.0s C:AdwCleanerBackupCDocuments and Settings</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 13.0s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> </div><div>Suspicious files ____________________________________________________________</div><div> </div><div> C:Documents and SettingsLenaMy DocumentsDownloadsFRST.exe</div><div> Size . . . . . . . : 1 073 664 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 20:27:32)</div><div> Entropy . . . . . : 8.0</div><div> SHA-256 . . . . . : 9804725E8EDD0743468B803A92B4BC4C8BFCAA2A90282E33E7090B271EE20F87</div><div> Needs elevation . : Yes</div><div> Fuzzy . . . . . . : 24.0</div><div> Program has no publisher information but prompts the user for permission elevation.</div><div> Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.</div><div> Authors name is missing in version info. This is not common to most programs.</div><div> Version control is missing. This file is probably created by an individual. This is not typical for most programs.</div><div> Time indicates that the file appeared recently on this computer.</div><div> References</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftWindowsShellNoRoamMUICacheC:Documents and SettingsLenaMy DocumentsDownloadsFRST.exe</div><div> </div><div> C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> Size . . . . . . . : 2 083 328 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 20:59:26)</div><div> Entropy . . . . . : 7.5</div><div> SHA-256 . . . . . : CC449B189EC631A9A65BDA95D2386D193E6AD8BAD7ED4C551B2DF2A39016D860</div><div> Needs elevation . : Yes</div><div> Fuzzy . . . . . . : 24.0</div><div> Program has no publisher information but prompts the user for permission elevation.</div><div> Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.</div><div> Authors name is missing in version info. This is not common to most programs.</div><div> Version control is missing. This file is probably created by an individual. This is not typical for most programs.</div><div> Time indicates that the file appeared recently on this computer.</div><div> Forensic Cluster</div><div> -5.9s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64.exe</div><div> 0.0s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> 0.0s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> 0.0s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> </div><div> C:Documents and SettingsLenaMy DocumentsDownloadsFRST64.exe</div><div> Size . . . . . . . : 2 083 328 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 20:59:20)</div><div> Entropy . . . . . : 7.5</div><div> SHA-256 . . . . . : CC449B189EC631A9A65BDA95D2386D193E6AD8BAD7ED4C551B2DF2A39016D860</div><div> Needs elevation . : Yes</div><div> Fuzzy . . . . . . : 24.0</div><div> Program has no publisher information but prompts the user for permission elevation.</div><div> Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.</div><div> Authors name is missing in version info. This is not common to most programs.</div><div> Version control is missing. This file is probably created by an individual. This is not typical for most programs.</div><div> Time indicates that the file appeared recently on this computer.</div><div> References</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftWindowsShellNoRoamMUICacheC:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftWindowsShellNoRoamMUICacheC:Documents and SettingsLenaMy DocumentsDownloadsFRST64.exe</div><div> Forensic Cluster</div><div> 0.0s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64.exe</div><div> 5.9s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> 5.9s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> 5.9s C:Documents and SettingsLenaMy DocumentsDownloadsFRST64 (1).exe</div><div> </div><div> C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> Size . . . . . . . : 26 792 bytes</div><div> Age . . . . . . . : 1.1 days (2014-06-30 21:32:42)</div><div> Entropy . . . . . : 5.3</div><div> SHA-256 . . . . . : 1E7B1163501755A5DF857BAB8683113A8DD1D2FE2612F32104CEF478E9AF47F2</div><div> Product . . . . . : globalUpdate Update</div><div> Publisher . . . . : globalUpdate</div><div> Description . . . : globalUpdate Update Resource DLL</div><div> Version . . . . . : 1.3.25.0</div><div> Copyright . . . . : LegalCopyright_XXXXXXXXXXXXXXXXXXX</div><div> RSA Key Size . . . : 1024</div><div> LanguageID . . . . : 1033</div><div> Authenticode . . . : Invalid</div><div> Fuzzy . . . . . . : 22.0</div><div> Program is altered or corrupted since it was code signed by its author. This is typical for malware and pirated software.</div><div> Time indicates that the file appeared recently on this computer.</div><div> Forensic Cluster</div><div> -5.0s C:AdwCleanerAdwCleaner[S0].txt</div><div> -2.6s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -2.6s C:AdwCleanerQuarantineCDocuments and SettingsAll Users</div><div> -2.6s C:AdwCleanerQuarantineC</div><div> -2.6s C:AdwCleanerQuarantineCDocuments and Settings</div><div> -2.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc</div><div> -2.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication Data</div><div> -2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll</div><div> -2.5s C:AdwCleanerQuarantineQuarantine.txt</div><div> -2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134841.tlb</div><div> -2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134842.ini</div><div> -2.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134843.exe</div><div> -2.4s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIcdata</div><div> -2.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer</div><div> -2.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataTarma Installer{361E80BE-388B-4270-BF54-A10C2B756504}</div><div> -2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134844.exe</div><div> -2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134845.ico</div><div> -2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134846.dll</div><div> -2.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134847.dll</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrapper</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.com</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercache</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappertemp</div><div> -2.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataAlawarWrappercachewww.alawar.comwrapper</div><div> -1.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeails</div><div> -1.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll</div><div> -1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe</div><div> -1.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134850.tlb</div><div> -1.6s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll</div><div> -1.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134852.tlb</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134853.ini</div><div> -1.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPrice</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -1.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe</div><div> -1.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134856.tlb</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -1.3s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverr</div><div> -1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -1.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134859.tlb</div><div> -1.0s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134861.tlb</div><div> -1.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134862.exe</div><div> -0.9s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNssharedata</div><div> -0.8s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeri</div><div> -0.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll</div><div> -0.8s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore148</div><div> -0.8s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore1481200EE78DEFD5DE0.dat</div><div> -0.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe</div><div> -0.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134865.tlb</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart Menu</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuProgramsMeaagnIPPIc</div><div> -0.5s C:AdwCleanerQuarantineCDocuments and SettingsAll UsersStart MenuPrograms</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134866.lnk</div><div> -0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134867.lnk</div><div> -0.4s C:AdwCleanerQuarantineCProgram Files</div><div> -0.4s C:AdwCleanerQuarantineCProgram Filesfile scout</div><div> -0.4s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134868.exe</div><div> -0.3s C:AdwCleanerQuarantineCProgram FilesglobalUpdate</div><div> -0.3s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134869.exe</div><div> -0.3s C:AdwCleanerQuarantineCProgram FilesglobalUpdateUpdate1.3.25.0</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134870.exe</div><div> -0.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134871.exe</div><div> -0.2s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102</div><div> -0.2s C:Documents and SettingsAll UsersApplication DataMicrosoftMicrosoft AntimalwareScansMetaStore102B344803D24505082.dat</div><div> -0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134872.exe</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134873.msi</div><div> -0.1s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134874.exe</div><div> -0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134875.dll</div><div> 0.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134876.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134877.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134878.dll</div><div> 0.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134879.dll</div><div> 0.5s C:AdwCleanerQuarantineCProgram FilesHDvidCodec.com</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134880.exe</div><div> 0.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134881.exe</div><div> 1.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe</div><div> 2.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134883.exe</div><div> 2.2s C:AdwCleanerQuarantineCProgram FilesSystweak Support Dock</div><div> 2.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134884.dll</div><div> 2.3s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4z</div><div> 2.3s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar</div><div> 2.3s C:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin</div><div> 2.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll</div><div> 2.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe</div><div> 2.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll</div><div> 2.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134888.DLL</div><div> 3.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal Settings</div><div> 3.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstaller</div><div> 3.3s C:AdwCleanerQuarantineCDocuments and SettingsLena</div><div> 3.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication Data</div><div> 3.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe</div><div> 3.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenie</div><div> 3.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersion</div><div> 3.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieVersionCacheVersion</div><div> 3.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataMobogenieData</div><div> 4.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempWebSpades</div><div> 4.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTempVeriBrowse</div><div> 4.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsTemp</div><div> 4.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication Data</div><div> 4.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataBabylon</div><div> 4.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandyE711B3C53D1045AAB1A56F8E6DE5C36F</div><div> 4.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy</div><div> 4.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134890.exe</div><div> 7.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy8A61947FED6C4871A0220172D5181F09</div><div> 7.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134891.exe</div><div> 9.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataOpenCandy303C1B9E2A134DE4B5CF6CE7D2946477</div><div> 9.2s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134892.exe</div><div> 10.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataUpdater</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozilla</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensions</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.com</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comMETA-INF</div><div> 11.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134893.manifest</div><div> 11.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontent</div><div> 11.1s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgs</div><div> 11.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcontentimgsflgs</div><div> 11.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsffxtlbr@privitize.comcomponents</div><div> 11.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134894.dll</div><div> 11.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.edu</div><div> 11.5s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134895.manifest</div><div> 11.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontent</div><div> 11.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.com</div><div> 11.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134896.manifest</div><div> 11.6s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionseyyo@eeoo.comcontent</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.uk</div><div> 11.7s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134897.manifest</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontent</div><div> 11.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.net</div><div> 11.8s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134898.manifest</div><div> 11.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontent</div><div> 11.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.edu</div><div> 11.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontent</div><div> 11.9s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134899.manifest</div><div> 11.9s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.edu</div><div> 12.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134900.manifest</div><div> 12.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontent</div><div> 12.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.net</div><div> 12.0s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsuaa_p@arbiuecq.netcontent</div><div> 12.0s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134901.manifest</div><div> 12.2s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.org</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 12.3s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134902.manifest</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsyxw.a4@zvdufx-.orgcontent</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser Data</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChrome</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogle</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefault</div><div> 12.3s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensions</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc</div><div> 12.4s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionskmdbclognejefacdfjilffmnjngjmibc2.3_0</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg5.2</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmcdnkkjdfdgedkeidfmfmlkpedmglebg</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei6.3</div><div> 12.5s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultExtensionsmkjgfenlijhiedfmnlhfbiblfofpmpei</div><div> 12.6s C:AdwCleanerQuarantineCWINXP</div><div> 12.6s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 12.6s C:AdwCleanerQuarantineCWINXPsystem32</div><div> 12.6s C:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134903.exe</div><div> 12.7s C:AdwCleanerQuarantineCProgram FilesMozilla Firefoxsearchplugins</div><div> 12.7s C:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultsearchplugins</div><div> 12.7s C:AdwCleanerQuarantineCProgram FilesMozilla Firefox</div><div> 12.8s C:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultLocal Storage</div><div> 12.8s C:AdwCleanerQuarantineCWINXPTasks</div><div> 13.3s C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultprefs.js</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefox</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.default</div><div> 14.3s C:AdwCleanerBackupC</div><div> 14.3s C:AdwCleanerBackup</div><div> 14.3s C:AdwCleanerBackupCDocuments and Settings</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozillaFirefoxProfiles</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication Data</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLena</div><div> 14.3s C:AdwCleanerBackupCDocuments and SettingsLenaApplication DataMozilla</div><div> </div><div> </div><div>Potential Unwanted Programs _________________________________________________</div><div> </div><div> HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{38122a36-83b2-46b8-b39a-ec72a4614a07} (MindSpark)</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftInternet ExplorerTabbedBrowsingbProtectNewTabPageShow (22Find)</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftInternet ExplorerTabbedBrowsingbProtectShowTabsWelcome (22Find)</div><div> HKUS-1-5-21-1085031214-884357618-682003330-1003SoftwareMicrosoftWindowsCurrentVersionExtStats{38122A36-83B2-46B8-B39A-EC72A4614A07} (MindSpark)</div><div> </div><div>Cookies _____________________________________________________________________</div><div> </div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ad.360yield.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ad.mlnadvertising.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ads.creative-serving.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ads.pubmatic.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ads.stickyadstv.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ads.yahoo.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:adtech.de</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:advertising.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:at.atwola.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:atdmt.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:burstnet.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:casalemedia.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:collective-media.net</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:doubleclick.net</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:exoclick.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:media6degrees.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:revsci.net</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:ru4.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:smartadserver.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:tribalfusion.com</div><div> C:Documents and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultcookies.sqlite:www.burstnet.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ad.360yield.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ad.afy11.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ad.leadboltmobile.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ad.mlnadvertising.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.adsrvmedia.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.anyoption.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.betfair.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.creative-serving.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.kaldata.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.pubmatic.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.stickyadstv.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ads.yahoo.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:adtech.de</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:advertising-support.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:advertising.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:at.atwola.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:atdmt.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:burstnet.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:casalemedia.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:collective-media.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:dmtracker.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:doubleclick.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:hearstdigital.122.2o7.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:hearstmagazines.112.2o7.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:in.getclicky.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:media6degrees.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:mediaplex.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:mswmwpapolloprod.122.2o7.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:premiumtv.122.2o7.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ptvgoalv15.122.2o7.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:revsci.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:ru4.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:smartadserver.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:spylog.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:statcounter.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:stats.betradar.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:statse.webtrendslive.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:track.adform.net</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:xiti.com</div><div> C:Documents and SettingsLenaLocal SettingsApplication DataGoogleChromeUser DataDefaultCookies:yadro.ru</div><div> </div><div> </div><div>
  4. Проблем с вируси

    ESETScan C:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeailsQOw.dll.vir a variant of Win32/AdWare.MultiPlug.T applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataFFunDeailsQOw.exe.vir a variant of Win32/AdWare.MultiPlug.T applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMagnniPyic517faf65a0c49.dll.vir a variant of Win32/Adware.MultiPlug.I applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMeaagnIPPIc5154463bd22ee.dll.vir a variant of Win32/Adware.MultiPlug.I applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPriceSFVjrfm.dll.vir a variant of Win32/AdWare.MultiPlug.N applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataMinimumPriceSFVjrfm.exe.vir a variant of Win32/AdWare.MultiPlug.K.gen applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverrzQ.dll.vir a variant of Win32/AdWare.MultiPlug.Y applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataNewwSaverrzQ.exe.vir a variant of Win32/AdWare.MultiPlug.Y applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DatasaveNNsshare11BfjgU.dll.vir a variant of Win32/Adware.MultiPlug.I applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeriBNI6rszD.dll.vir a variant of Win32/AdWare.MultiPlug.N applicationC:AdwCleanerQuarantineCDocuments and SettingsAll UsersApplication DataUTuabeerADBlockeriBNI6rszD.exe.vir a variant of Win32/AdWare.MultiPlug.K.gen applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionscxomfa@atrgo.educontentbg.js.vir Win32/Adware.MultiPlug.H applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsgdqhddq@zsrsea-.co.ukcontentbg.js.vir Win32/Adware.MultiPlug.H applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionslpm1m@oioortf.netcontentbg.js.vir Win32/Adware.MultiPlug.H applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsmw3-vrg@jlqfnffs-uuy.educontentbg.js.vir Win32/Adware.MultiPlug.H applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaApplication DataMozillaFirefoxProfileszy68t5it.defaultExtensionsou7kk@q-fdhd.educontentbg.js.vir Win32/Adware.MultiPlug.H applicationC:AdwCleanerQuarantineCDocuments and SettingsLenaLocal SettingsApplication DataBundled software uninstallerbi_client.exe.vir Win32/Somoto.A potentially unwanted applicationC:AdwCleanerQuarantineCProgram FilesHDvidCodec.comhdvidextsetup.exe.vir a variant of Win32/Packed.ScrambleWrapper.L potentially unwanted applicationC:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin4zbar.dll.vir Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin4zbrmon.exe.vir Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:AdwCleanerQuarantineCProgram FilesVideoDownloadConverter_4zbar1.bin4zbrstub.dll.vir Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:Documents and SettingsLenaLocal SettingsApplication DataMozillaFirefoxProfileszy68t5it.defaultCacheDD60B045d01 JS/Toolbar.Crossrider.B potentially unwanted applicationC:Program FilesMozilla Firefoxbrowserextensions5226134104c84@5226134104c85.comcontentbg.js Win32/Adware.MultiPlug.H applicationC:Program FilesMozilla Firefoxupdatedbrowserextensions5226134104c84@5226134104c85.comcontentbg.js Win32/Adware.MultiPlug.H applicationC:QooboxQuarantineCDocuments and SettingsAll UsersApplication Datapjfcipdceonfddaagoafeffpjfhbfapcpjfcipdceonfddaagoafeffpjfhbfapc.crx.vir Win32/Adware.MultiPlug.H applicationC:QooboxQuarantineCProgram Files-VeriBrowse-softVeriBrowseiU174.exe.vir a variant of Win32/AdWare.AddLyrics.AQ applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134739.exe Win32/Toolbar.Babylon.I potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134747.exe Win32/Toolbar.Montiera.B potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134748.dll a variant of Win32/Toolbar.Montiera.F potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134749.dll a variant of Win32/Toolbar.Escort.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134750.dll a variant of Win32/Toolbar.Montiera.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134751.dll probably a variant of Win32/Toolbar.Montiera.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134752.exe Win32/Toolbar.Montiera.B potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134753.exe a variant of Win32/Toolbar.Montiera.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134758.exe a variant of Win32/Toolbar.CrossRider.AJ potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134759.exe a variant of Win32/Toolbar.CrossRider.AK potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134760.exe a variant of Win32/Toolbar.CrossRider.AC potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134761.exe a variant of Win32/Toolbar.CrossRider.AL potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134762.dll a variant of Win32/Toolbar.CrossRider.AF potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134763.dll a variant of Win32/Toolbar.CrossRider.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134764.exe a variant of Win32/Toolbar.CrossRider.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134765.exe a variant of Win32/Toolbar.CrossRider.AJ potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134766.dll a variant of Win32/Toolbar.CrossRider.AI potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134767.exe a variant of Win32/Toolbar.CrossRider.AE potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134768.exe a variant of Win32/Toolbar.CrossRider.AJ potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134771.exe a variant of Win32/Packed.VMDetector.E potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134772.dll a variant of Win32/SProtector.D potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134773.dll a variant of Win32/SProtector.D potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134774.exe Win32/CoinMiner.RZ trojanC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134775.exe NSIS/CoinMiner.A trojanC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134799.exe MSIL/Toolbar.SmileysLove.C potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134804.dll a variant of Win32/AdGazelle.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134805.dll Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134806.exe Win32/Toolbar.MyWebSearch.X potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134807.dll a variant of Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134808.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134809.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134810.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134811.exe Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134812.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134813.dll a variant of Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134814.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134815.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134816.dll probably a variant of Win32/Toolbar.MyWebSearch.P potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134817.exe Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134818.exe Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134819.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134820.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134821.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134822.dll a variant of Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134823.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134824.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134825.dll a variant of Win32/Toolbar.MyWebSearch.P potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134826.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134827.exe Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134828.dll a variant of Win32/Toolbar.MyWebSearch.AC potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134829.exe a variant of Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134830.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134831.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134832.DLL Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134833.exe Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134834.DLL Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134835.DLL Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134836.DLL probably a variant of Win32/Toolbar.MyWebSearch.F potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134837.DLL Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134840.dll a variant of Win32/Adware.MultiPlug.I applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134848.dll a variant of Win32/AdWare.MultiPlug.T applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134849.exe a variant of Win32/AdWare.MultiPlug.T applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134851.dll a variant of Win32/Adware.MultiPlug.I applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134854.dll a variant of Win32/AdWare.MultiPlug.N applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134855.exe a variant of Win32/AdWare.MultiPlug.K.gen applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134857.dll a variant of Win32/AdWare.MultiPlug.Y applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134858.exe a variant of Win32/AdWare.MultiPlug.Y applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134860.dll a variant of Win32/Adware.MultiPlug.I applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134863.dll a variant of Win32/AdWare.MultiPlug.N applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134864.exe a variant of Win32/AdWare.MultiPlug.K.gen applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134882.exe a variant of Win32/Packed.ScrambleWrapper.L potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134885.dll Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134886.exe Win32/Toolbar.MyWebSearch.W potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134887.dll Win32/Toolbar.MyWebSearch.AA potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0134889.exe Win32/Somoto.A potentially unwanted applicationC:System Volume Information_restore{94C303C9-4F3C-4FB7-97E7-0C6AD4F727A1}RP682A0135088.exe a variant of Win32/AdWare.AddLyrics.AQ applicationD:gamesChessBase.11-RELOADEDrld-cb11.iso a variant of Win32/Packed.VMProtect.AAD trojanD:gamesFIFA 13Gamerldea.dll Win32/HackTool.Crack.BA potentially unsafe applicationD:gamesFIFA.13.INTERNAL-RELOADEDrld-fifa13.iso Win32/HackTool.Crack.BA potentially unsafe applicationD:gamesNaruto.Shippuden.Ultimate.Ninja.Storm.3.Full.Burst-RELOADEDrld-nashulni.iso a variant of Win32/HackTool.Crack.BL potentially unsafe applicationD:gamesNaruto.Shippuden.Ultimate.Ninja.Storm.3.Full.Burst-RELOADEDNARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burststeam_api.dll a variant of Win32/HackTool.Crack.BL potentially unsafe applicationD:gamesNeed For Speed - Most Wanted Black (Relentless Edition) [h33t] [sYphYn]EA GAMESNeed for Speed Most WantedDATNFS - MW v1.3 TrainersPlus19Plus19.exe a variant of Win32/GameHack.S potentially unsafe applicationD:PavelSopPlayerSetup-SopCast-3.4.8-2012-1-1.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application Тъй като не усях да прикача Rar файл го качих в Dox http://dox.bg/files/dw?a=7246ee4ad0
  5. Проблем с вируси

    Ами чесно казано доста по добре работи още след вчера. Ако мога да попитам как да продължа да поддържам състоянието на машината изрядно и какво да направя с изтеглените програми. Благодаря много !!!
  6. Проблем с вируси

    Addition.txt AdwCleanerS0.txt checkup.txt FRST.txt JRT.txt malwarebytes anti-malware.txt Rkill.txt
  • Разглеждащи в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите условия за ползване.