Malwarebytes
Anti-Malware
www.
malwarebytes
.org
Scan Date: 11/03/2015
Scan Time: 09:01:54 a.m.
Logfile: mbam.txt
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.03.11.04
Rootkit Database: v2015.02.25.01
License: Free
Malware Protection
: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: PERSONAL
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 358023
Time Elapsed: 33 min, 24 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\privoxy.exe, 2820, Delete-on-Reboot, [79c79ea6701ad660e202f7a24fb4ca36]
Modules: 1
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\mgwz.dll, Delete-on-Reboot, [79c79ea6701ad660e202f7a24fb4ca36],
Registry Keys
: 17
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D3C24E2B-C820-4492-9B69-11BF7163F998}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2F137995-4D26-44AD-9C4E-91055090A817}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{2F137995-4D26-44AD-9C4E-91055090A817}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SecureWeb.A, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D3C24E2B-C820-4492-9B69-11BF7163F998}, Quarantined, [b28e410346448aac2e0538e2897a1ae6],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Quarantined, [8db3251fafdb1c1ae8aa9b822ad956aa],
PUP.Optional.BrowserWarden.A, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{2C09954F-CDA8-4BD1-8794-1D543E050378}, Quarantined, [91afab99d1b9a88ea2c01941798a5aa6],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Quarantined, [50f0ed5746440a2c374322f6eb1a5ba5],
PUP.Optional.AdevertisingSupport.A, HKLM\SOFTWARE\WOW6432NODE\AdvertisingSupport, Quarantined, [ef51ff45aedc979f44b25763ff0423dd],
PUP.Optional.BrowserWarden.A, HKLM\SOFTWARE\WOW6432NODE\Browser Warden, Quarantined, [bb8547fd365475c1777fe449bf46659b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\supWPM, Quarantined, [57e9c87c2565092d7cfc5276f70cf10f],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\webssearchesSoftware, Quarantined, [b7891a2af09a77bf28b1ffeb29da956b],
PUP.Optional.IEPluginServices.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\IePluginServices, Quarantined, [d36d6bd9444666d08031902d9a698977],
PUP.Optional.WebSearches.A, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, Quarantined, [c17f0f35addd0a2c37eddeec57ac837d],
PUP.Optional.SaleItCoupon.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{37476589-E48E-439E-A706-56189E2ED4C4}_is1, Quarantined, [2e12f252f3974fe7d0e0a9ea05fe758b],
PUP.Optional.SecureWeb.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PrivoxyService, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
Registry Values: 1
PUM.Bad.Proxy, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, 127.0.0.1:8118, Quarantined, [e95756eedeacf442827fdc5e1ee756aa]
Registry Data: 13
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (iexplore.exe), Bad: (C:\Program Files\Internet Explorer\iexplore.exe
http://istart.webssearches.com/?typ...),Replaced,[c27e3b09c2c8f145bf761fbb06ff1be5]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL,
http://istart.webssearches.com/web/...K6476GSX_12TJSDLGSXX12TJSDLGS&q={searchTerms}, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/web/...),Replaced,[d26e301491f9e05628104d8d8a7b39c7]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL,
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/?typ...),Replaced,[3e02d66e82089e98c86fa93191747789]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/?typ...),Replaced,[3e02004493f73ef81722fcde8b7a51af]
PUP.Optional.WebsSearches, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page,
http://istart.webssearches.com/web/...K6476GSX_12TJSDLGSXX12TJSDLGS&q={searchTerms}, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/web/...),Replaced,[61df5ce8385285b1c40efcdbe91cce32]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Replaced,[66dafe46fa9051e56aaba63e7a8bf808]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (iexplore.exe), Bad: (C:\Program Files\Internet Explorer\iexplore.exe
http://istart.webssearches.com/?typ...),Replaced,[97a962e2ddadb77f14219248729310f0]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL,
http://istart.webssearches.com/web/...K6476GSX_12TJSDLGSXX12TJSDLGS&q={searchTerms}, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/web/...),Replaced,[241c1331a1e92a0c0e2a4c8e91741fe1]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL,
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/?typ...),Replaced,[ea5691b3bcce6dc92017cd0dae577789]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/?typ...),Replaced,[a69a4ff51f6b181e7ebb9f3b689d649c]
PUP.Optional.WebsSearches, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page,
http://istart.webssearches.com/web/...K6476GSX_12TJSDLGSXX12TJSDLGS&q={searchTerms}, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/web/...),Replaced,[5de3d96b7f0b9c9afcd629ae21e47c84]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Replaced,[10305de7197186b055c0667e838209f7]
PUP.Optional.WebsSearches.A, HKU\S-1-5-21-1526854711-616541130-931098711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://istart.webssearches.com/?typ...rs&uid=TOSHIBAXMK6476GSX_12TJSDLGSXX12TJSDLGS, Good: (
www.google.com), Bad: (
http://istart.webssearches.com/?typ...),Replaced,[b9874ef65535e353ddf6875d858019e7]
Folders: 35
PUP.Optional.GetPrivateVPN, C:\Users\PERSONAL\AppData\Roaming\GetPrivate, Quarantined, [e060e65ea0ea3105c94b754c15ee8a76],
PUP.Optional.GetPrivateVPN, C:\Program Files (x86)\GetPrivate, Quarantined, [f34d3f052b5f40f69f7605bcf1129f61],
Rogue.Multiple, C:\ProgramData\374311380, Quarantined, [6bd562e26c1e270fe288e3784db6a65a],
PUP.Optional.Iminent.A, C:\Program Files (x86)\IminentToolbar, Quarantined, [4af6370dd5b5f442c52c5c0e0003f60a],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices, Quarantined, [261a6ed6ec9e70c633c0fd8263a030d0],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update, Quarantined, [261a6ed6ec9e70c633c0fd8263a030d0],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.MultiPlug.A, C:\ProgramData\deal4me, Quarantined, [60e062e2711976c0f0efaae2798aa858],
PUP.Optional.SaleItCoupon.A, C:\ProgramData\SaleItCoupon, Quarantined, [2e12f252f3974fe7d0e0a9ea05fe758b],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
Files: 102
PUP.Optional.SearchHijacker.A, C:\Users\PERSONAL\AppData\Local\Temp\3jho10ni.eqm.exe, Quarantined, [0c34e460f7936acc6876fdcc2dd4b749],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nsb4B9C.exe, Quarantined, [ad93093bd0bab581165e5cf8da2721df],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nsdA3A3.exe, Quarantined, [52eedb691f6b88ae2fa303aa7f823bc5],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nshE7B3.exe, Quarantined, [f34d75cfddadcd69d89c282cc73ab749],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nsl919.exe, Quarantined, [2a1661e367234ee8baba282cfb06857b],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nslEE4.exe, Quarantined, [08382a1afe8c270fe68e4f0515ec10f0],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nsxB83D.exe, Quarantined, [98a8242017737abc379b4d60827f3bc5],
PUP.Optional.GratifyingApps.A, C:\Users\PERSONAL\AppData\Local\Temp\ypigm5n5.2or.exe, Quarantined, [49f704402268cf6708e0bf16fe035fa1],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\shx3ofmy.ceb.exe, Quarantined, [cd7353f15c2ef244e5d8b3f9e61b17e9],
PUP.Optional.Bundle, C:\Users\PERSONAL\AppData\Local\Temp\GPUpd547507512.exe, Quarantined, [2719192b39512c0a773f1add52af748c],
PUP.Optional.LiMo, C:\Users\PERSONAL\AppData\Local\Temp\GPUpd5456B4D61.exe, Quarantined, [5ae60a3a0387a29438c1faca53b243bd],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nsm4748.exe, Quarantined, [94ac1a2a3951df5799db510310f132ce],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nsn30FB.exe, Quarantined, [3e02ca7a0c7e75c105cd64492ed34ab6],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nsnADF0.exe, Quarantined, [9da30440e9a155e1953df0bda958db25],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nsr4FF1.exe, Quarantined, [6ed2410327632313b0c43d1750b146ba],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nss1D99.exe, Quarantined, [41ff2f15553561d5458d7a33ae533ec2],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nssB50.exe, Quarantined, [2917bf85cfbbc96dc111ab020df4847c],
PUP.Optional.Conduit.A, C:\Users\PERSONAL\AppData\Local\Temp\nsvF23F.exe, Quarantined, [95ab93b197f363d3f7db6d4015ecd030],
PUP.Optional.SearchProtect.A, C:\Users\PERSONAL\AppData\Local\Temp\nsw13B6.exe, Quarantined, [4cf41d276a20b97d75ff90c42ad7e51b],
PUP.Optional.Amonetize, C:\Users\PERSONAL\AppData\Local\Temp\amisetup3841__7675.exe, Quarantined, [b0903c08028891a52f94b5646c96ec14],
PUP.Optional.Amonetize, C:\Users\PERSONAL\AppData\Local\Temp\amisetup6368__7675.exe, Quarantined, [fa46df65830706301fa4bd5c9270748c],
PUP.Optional.MyPCBackup.A, C:\Users\PERSONAL\AppData\Local\Temp\BackupSetup.exe, Quarantined, [5ce495af8604b38306659e5243bee51b],
PUP.Optional.MyPCBackup.A, C:\Users\PERSONAL\AppData\Local\Temp\CloudBackup9605.exe, Quarantined, [c47c7fc53b4f1a1c6506f9f73ac77789],
PUP.Optional.Iminent, C:\Users\PERSONAL\AppData\Local\Temp\Umbrella.exe119887, Quarantined, [5de31430beccc571836051e121e0629e],
PUP.Optional.SupTab.A, C:\Users\PERSONAL\AppData\Local\Temp\49B76F9071754b77A8E4706F9CE86DDA\tmp\STab_Down.exe, Quarantined, [3c042d170e7c0432315bf76e6a96758b],
PUP.Optional.WindowsProtectManger.A, C:\Users\PERSONAL\AppData\Local\Temp\49B76F9071754b77A8E4706F9CE86DDA\tmp\wpm_v20.0.0.1337.exe, Quarantined, [1a2695af701a96a05d1d97369d64a957],
PUP.Optional.SmartInstaller, C:\Users\PERSONAL\AppData\Local\Temp\smarti\smi.exe, Quarantined, [c27e76cef2984ee82e7e233416eaa45c],
PUP.Optional.Softonic.A, C:\Users\PERSONAL\Downloads\SoftonicDownloader_para_janaserver.exe, Quarantined, [6fd122228cfe3501eb3f1f2cb24fb848],
PUP.Optional.GoForFiles.A, C:\Users\PERSONAL\Downloads\los-de-sangre-felina-biografia_downloader_1.exe, Quarantined, [75cb56ee2862270ffb402323ad54d729],
PUP.Optional.Trovi.A, C:\Users\PERSONAL\AppData\Roaming\Mozilla\Firefox\Profiles\kzlfk467.default\searchplugins\trovi.xml, Quarantined, [af91cc78503a85b18b59069f0df650b0],
PUP.Optional.SecureWeb.A, C:\Windows\System32\Tasks\Jelbrus Secure Web Task, Quarantined, [4cf4b78d4b3f3501245c10a7ee15946c],
PUP.Optional.GetPrivateVPN, C:\Users\PERSONAL\AppData\Roaming\GetPrivate\tasks.dll, Quarantined, [e060e65ea0ea3105c94b754c15ee8a76],
PUP.Optional.GetPrivateVPN, C:\Program Files (x86)\GetPrivate\tasks.dll, Quarantined, [f34d3f052b5f40f69f7605bcf1129f61],
PUP.Optional.Proxy.A, C:\Users\PERSONAL\AppData\Local\proxy.log, Quarantined, [eb5584c0a9e146f01568963547bc6997],
PUP.Optional.Trovi.A, C:\Users\PERSONAL\AppData\Roaming\Mozilla\Firefox\Profiles\kzlfk467.default\searchplugins\trovi-search.xml, Quarantined, [08388eb6bbcfcc6a4e3001deaf544db3],
PUP.Optional.WebsSearches.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml, Quarantined, [ee52291b6c1e5adc19c2edfded16f907],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update\conf, Quarantined, [261a6ed6ec9e70c633c0fd8263a030d0],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\ient.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\install.data, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\uninstall.exe, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\bk_shadow.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\btn.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\close.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\main.xml, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\main.xml.bak, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\ck_box.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\ck_check.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\radio_bk.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\radio_check.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\data.html, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE.html, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE8.html, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\main.css, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\ver.txt, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\google_trends.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon128.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon16.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon48.png, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\loading.gif, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\logo32.ico, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\common.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ga.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery-1.11.0.min.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\js.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\library.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit-ie8.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit2.0.js, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json, Quarantined, [a39d143036541e18b1bb7d0ab84b9967],
PUP.Optional.SaleItCoupon.A, C:\ProgramData\SaleItCoupon\SaleItCoupon.exe, Quarantined, [2e12f252f3974fe7d0e0a9ea05fe758b],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\config.txt, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\default.action, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\default.filter, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jswchromium.exe, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jswchromium64.exe, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jsweb.dll, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jsweb64.dll, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jswff.exe, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\jswtask.exe, Quarantined, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\mgwz.dll, Delete-on-Reboot, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\privoxy.exe, Delete-on-Reboot, [79c79ea6701ad660e202f7a24fb4ca36],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Jelbrus Secure Web\privoxy.log, Delete-on-Reboot, [79c79ea6701ad660e202f7a24fb4ca36],
Physical Sectors: 0
(No malicious items detected)
(end)