Malwarebytes Anti-Malware
www.malwarebytes.org

Data skanowania: 2015-12-16
Czas skanowania: 10:46
Raport: malwarebytes.txt
Administrator: Tak

Wersja: 2.2.0.1024
Baza szkodliwego oprogramowania: v2015.12.16.02
Baza danych rootkitów: v2015.12.07.01
Licencja: Darmowa
Ochrona przed złośliwym oprogramowaniem: Wyłączony
Ochrona przed szkodliwymi stronami: Wyłączony
Samoobrona: Wyłączony

System operacyjny: Windows 10
Procesor: x64
System plików: NTFS
Użytkownik: Adam

Typ skanowania: Niestandardowe skanowanie
Wynik: Zakończono
Obiekty przeskanowane: 595393
Czas, który upłynął: 2 h, 46 min, 53 s

Pamięć: Włączony
Autostart: Włączony
System plików: Włączony
Archiwa: Włączony
Rootkity: Włączony
Heurystyka: Włączony
PUP: Włączony
PUM: Włączony

Procesy: 6
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlservice.exe, 9780, , [4082564f7d0e89adfad8bdd6ff05639d]
PUP.Optional.SwiftSearch, C:\Program Files (x86)\SwiftSearch_1.10.0.25\Service\swsesrvc.exe, 9392, , [ecd6663fa5e6cf67caf18b1c0afa9c64]
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\knsa5EEE.tmpfs, 5604, , [5b67495ca4e7ff37f7b6748cb24e20e0]
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\jnsp772F.tmp, 10940, , [a81aa203b3d8f145ad0057a9d22eda26]
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\hnst8CBD.tmp, 10560, , [b1117e27fc8fa98d9b12e51b2bd560a0]
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\vnsz4FE8.tmp, 6408, , [6d55a7fed0bbb0868e56911606fd41bf]

Moduły: 0
(Nie wykryto zagrożeń)

Klucze rejestru: 29
PUP.Optional.RelevantKnowledge, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RelevantKnowledge, , [4082564f7d0e89adfad8bdd6ff05639d], 
PUP.Optional.SwiftSearch, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\swsesrvc_1.10.0.25, , [ecd6663fa5e6cf67caf18b1c0afa9c64], 
PUP.Optional.BrowseFox.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\pyvoriqe, , [5b67495ca4e7ff37f7b6748cb24e20e0], 
PUP.Optional.BrowseFox.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\rizyqibe, , [a81aa203b3d8f145ad0057a9d22eda26], 
PUP.Optional.BrowseFox.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\zizusyju, , [b1117e27fc8fa98d9b12e51b2bd560a0], 
PUP.Optional.RelevantKnowledge, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{d08d9f98-1c78-4704-87e6-368b0023d831}, , [685a3d689deef83e8b476b2816eec13f], 
PUP.Optional.SwiftSearch, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\SwiftSearch_1.10.0.25, , [c6fcd5d02d5e04325f35426d50b1bc44], 
PUP.Optional.VBates, HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\A7BD54B233B5B2F70AF86F5BD1A0C0A772A59FC6, , [d9e97b2a0d7e79bdc0d87b2eff03da26], 
PUP.Optional.VBates, HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\D830B6B8939ACB4928401060203BB648456BB4F8, , [d2f0a203cac156e01a7f783121e1f60a], 
PUP.Optional.VBates, HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\F53E693DDABF57A88A9B12B608B09B26C0608B74, , [7f43465f8a01df570c8e7f2a669cea16], 
PUP.Optional.SmartWeb, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SmartWeb Upgrade Trigger Task, , [efd3e4c1e6a50a2c129a0ea856ad8080], 
PUP.Optional.SwiftSearch, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SwiftSearch Auto Updater 1.10.0.25 Core, , [c2004065d2b901352a198d3f31d28d73], 
PUP.Optional.SwiftSearch, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SwiftSearch Auto Updater 1.10.0.25 Pending Update, , [f7cbaafb6b20ce6898aba42861a2659b], 
PUP.Optional.SwiftSearch, HKLM\SOFTWARE\WOW6432NODE\SwiftSearch_1.10.0.25, , [556d574e8506ed49f7c0f6c4788b3ec2], 
PUP.Optional.VBates, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\A7BD54B233B5B2F70AF86F5BD1A0C0A772A59FC6, , [b40ec2e39fecd066bfd95158649e4db3], 
PUP.Optional.VBates, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\D830B6B8939ACB4928401060203BB648456BB4F8, , [269c0c9904871a1c83166e3b8b771be5], 
PUP.Optional.VBates, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\F53E693DDABF57A88A9B12B608B09B26C0608B74, , [6d553075c6c59c9a5644e4c559a98080], 
PUP.Optional.Vitruvian, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\SwiftSearchAutoUpdateClient_RASAPI32, , [4082fbaa63282e08f84cb01caa59758b], 
PUP.Optional.Vitruvian, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\SwiftSearchAutoUpdateClient_RASMANCS, , [764cf9ac4f3c3df9a99ba428dc27c739], 
PUP.Optional.VOPackage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VOPackage, , [358d1a8b3d4e71c525e10eb2f60dd22e], 
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, , [4181e1c42863b28441ad932a7390fc04], 
Rootkit.cherimoya.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\cherimoya, , [734f8124ec9f9b9b013ff3c0857d42be], 
PUP.Optional.Vitruvian, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SWSEDRVR_VW_1_10_0_25, , [60628c19cebda096cb481399ca3821df], 
Rootkit.Komodia.PUA, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER, , [03bfc8ddd6b50f273d41ab56c440f10f], 
PUP.Optional.NetService, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NETTCPHANDLER, , [51718124e1aa42f48e8a0ca1af53e020], 
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-18\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}, , [a31f188dd6b5dc5a11ab5f21dc2721df], 
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-19\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}, , [e9d9aff6b6d52115407c552b937060a0], 
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-20\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}, , [f2d0ebba612a71c57f3d2a56a75cfc04], 
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-21-395553583-66053808-1738365731-1001\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}, , [2b973b6a8605e4529725eb95b84b30d0], 

Wartości rejestru: 16
PUP.Optional.Groover.BrwsrFlsh, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{9BC9DF4E-6E38-417C-8A51-41D9EBE6E210}, C:\Program Files\groover161220150949\Firefox\{9BC9DF4E-6E38-417C-8A51-41D9EBE6E210}.xpi, , [358d5c498b001e1815ab4c34cd3613ed]
PUP.Optional.InternetQuickAccess, HKLM\SOFTWARE\POLICIES\CHROMIUM\EXTENSIONINSTALLSOURCES|1, http://ext.internetquickaccess.com/*, , [7c46a2035536c86e55ba86760003b54b]
PUP.Optional.GamesDesktop, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_pl_005010177, , [09b9485da7e469cd9c6b7227897a2dd3], 
PUP.Optional.Groover.BrwsrFlsh, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{9BC9DF4E-6E38-417C-8A51-41D9EBE6E210}, C:\Program Files\groover161220150949\Firefox\{9BC9DF4E-6E38-417C-8A51-41D9EBE6E210}.xpi, , [6a587b2a2b6096a0dde382fe49ba1ae6]
PUP.Optional.InternetQuickAccess, HKLM\SOFTWARE\WOW6432NODE\POLICIES\CHROMIUM\EXTENSIONINSTALLSOURCES|1, http://ext.internetquickaccess.com/*, , [39894a5b8dfecb6bb55a31cb5aa96898]
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, 32B5B89F-C8D9-45C7-89DA-E25500793BB9, , [4181e1c42863b28441ad932a7390fc04]
PUP.Optional.Vitruvian, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\swsedrvr_vw_1_10_0_25|ImagePath, system32\drivers\swsedrvr_vw_1_10_0_25.sys, , [60628c19cebda096cb481399ca3821df]
PUP.Optional.MultiPlug, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\pyvoriqe|ImagePath, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\knsa5EEE.tmpfs, , [3d85e1c4e9a2db5bb758f3b56b988977]
PUP.Optional.MultiPlug, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\rizyqibe|ImagePath, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\jnsp772F.tmp, , [f0d27b2abdced75f79960e9ae71cdb25]
PUP.Optional.MultiPlug, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\zizusyju|ImagePath, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\hnst8CBD.tmp, , [ecd6495cb9d27abcc748a3050bf823dd]
Rootkit.Komodia.PUA, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BSDRIVER|DisplayName, bsdriver, , [03bfc8ddd6b50f273d41ab56c440f10f]
PUP.Optional.NetService, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NETTCPHANDLER|ImagePath, C:\Users\Adam\AppData\Roaming\NetService\netservice.exe -start, , [51718124e1aa42f48e8a0ca1af53e020]
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-18\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}|Name, C:\Program Files\groover161220150949\Pajal.exe, , [a31f188dd6b5dc5a11ab5f21dc2721df]
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-19\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}|Name, C:\Program Files\groover161220150949\Pajal.exe, , [e9d9aff6b6d52115407c552b937060a0]
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-20\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}|Name, C:\Program Files\groover161220150949\Pajal.exe, , [f2d0ebba612a71c57f3d2a56a75cfc04]
PUP.Optional.Groover.BrwsrFlsh, HKU\S-1-5-21-395553583-66053808-1738365731-1001\SOFTWARE\{CCBD1807-A3E4-43D1-9E92-F1CB30505503}|Name, C:\Program Files\groover161220150949\Pajal.exe, , [2b973b6a8605e4529725eb95b84b30d0]

Dane rejestru: 2
Trojan.DNSChanger, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{0ba7bab2-f559-4998-8301-cb300ef0030f}|NameServer, 104.197.191.4, Dobry: (), Zły: (104.197.191.4),,[61611d887b10f24488877512ad5752ae]
Trojan.DNSChanger, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{15B9BF3D-CF5E-44CF-B0CA-B9ECF037F38A}|NameServer, 104.197.191.4, Dobry: (), Zły: (104.197.191.4),,[368c3c69008b181e5ab59aed91737e82]

Foldery: 17
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A, , [6d55a7fed0bbb0868e56911606fd41bf], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\Company\Product\1.0, , [675b7f26e2a97db9ab384787ec174cb4], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\Company\Product, , [675b7f26e2a97db9ab384787ec174cb4], 
PUP.Optional.AutoUpdater, C:\Users\Adam\AppData\Roaming\RunDir\temp, , [ebd7c5e08506ef4732b3ad4dc241d729], 
PUP.Optional.MarketScore, C:\Program Files (x86)\RelevantKnowledge, , [873ba5003d4ea393860b77f2aa58a55b], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\bav199lt.default-1423070591943\jetpack\@E9F231D8C9E95BE6CF66696E797FD59DE9F2, , [fbc743623d4e37ff2edbdf9bb0528080], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\bav199lt.default-1423070591943\jetpack\@E9F231D8C9E95BE6CF66696E797FD59DE9F2\simple-storage, , [fbc743623d4e37ff2edbdf9bb0528080], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}, , [d1f103a2bdceaf87e1656f356f937f81], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}, , [d1f103a2bdceaf87e1656f356f937f81], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5, , [d1f103a2bdceaf87e1656f356f937f81], 
Adware.LaSuperba, C:\uninst, , [ad15bde8a9e2a6907fe45659798b05fb], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component2, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.NetService, C:\Users\Adam\AppData\Roaming\NetService, , [5e6445602269ec4a199ac1eddd27619f], 

Pliki: 102
PUP.Optional.SwiftSearch, C:\WINDOWS\SYSTEM32\drivers\swsedrvr_vt_1_10_0_25.sys, , [6ab61f3586b23fb7901d6c00f10e8df0], 
PUP.Optional.SwiftSearch, C:\WINDOWS\SYSTEM32\drivers\swsedrvr_vw_1_10_0_25.sys, , [5599862c76e1e889e5da8820e9756e6e], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlservice.exe, , [4082564f7d0e89adfad8bdd6ff05639d], 
PUP.Optional.SwiftSearch, C:\Program Files (x86)\SwiftSearch_1.10.0.25\Service\swsesrvc.exe, , [ecd6663fa5e6cf67caf18b1c0afa9c64], 
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\knsa5EEE.tmpfs, , [5b67495ca4e7ff37f7b6748cb24e20e0], 
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\jnsp772F.tmp, , [a81aa203b3d8f145ad0057a9d22eda26], 
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\hnst8CBD.tmp, , [b1117e27fc8fa98d9b12e51b2bd560a0], 
Adware.EoRezo, C:\Program Files (x86)\gmsd_pl_005010177\gmsd_pl_005010177.exe, , [dee46b3a7a118fa773f4136e45bc41bf], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlls.dll, , [1fa31491d8b3fa3cf1e14d4636ce14ec], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlls64.dll, , [685a0f96b7d41b1bab273162f80cc739], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe, , [685a3d689deef83e8b476b2816eec13f], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlvknlg32.exe, , [824070355734a98dc909b6dd50b460a0], 
PUP.Optional.RelevantKnowledge, C:\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe, , [ffc38520cdbed26431a1abe8af55fd03], 
PUP.Optional.SwiftSearch, C:\Program Files (x86)\SwiftSearch_1.10.0.25\Uninstall.exe, , [c6fcd5d02d5e04325f35426d50b1bc44], 
PUP.Optional.SwiftSearch, C:\Program Files (x86)\SwiftSearch_1.10.0.25\Update\SwiftSearchAutoUpdateClient.exe, , [f5cd8d18543754e28b30fcab1aea30d0], 
PUP.Optional.BrowseFox, C:\Users\Adam\AppData\Local\814A7FD2-1450263491-11E3-9BFD-28D24482F56A\qnsi58B2.tmp, , [14ae881d117a79bd144c713a53ae9070], 
PUP.Optional.CrossRider, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}\CarExtension.dll, , [596925809eedf541af3126512bd954ac], 
PUP.Optional.CrossRider, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}\hzhebv.dll, , [f5cd0a9bacdf0a2cee1aea8f1fe5be42], 
PUP.Optional.CrossRider, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}\{E47B9AC9-7959-DCEF-2B9C-5C094286F782}.dll, , [645efda893f8c4727c647106f4101be5], 
PUP.Optional.LoadMoney, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\7PJESIPG\Cdn[1].exe, , [e2e000a5830893a375c2c9df1de7be42], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\7PJESIPG\JieUhs[1].exe, , [2d95178ebccfd75fa8f11b121ae8ae52], 
PUP.Optional.SmartWeb, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\9VQ4WQZA\SmartWebInstaller[1].exe, , [f2d05d483754b28495a1f240d829aa56], 
PUP.Optional.Bundler, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\9VQ4WQZA\FinalInstaller_dotnet4[1].exe, , [fcc62e7797f4d5617bb4d95770905ca4], 
PUP.Optional.SilentInstaller, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\9VQ4WQZA\SilentInstaller_dotnet4[1].exe, , [1aa8f8ad6427a096fc2433134cb43fc1], 
PUP.Optional.PennyBee, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\9VQ4WQZA\orion[1].exe, , [942ed3d2d8b303331ea34b6fd72a10f0], 
PUP.Optional.BrowseFox, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\AK5UF08Q\6E9vxV[1], , [3d857233424940f6540c0d9e8d7453ad], 
PUP.Optional.PennyBee, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\AK5UF08Q\installer[1].exe, , [edd59f06dbb02511c9f8a119e918c33d], 
PUP.Optional.PreInstaller, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\AK5UF08Q\setup_362[1].exe, , [744ebde83f4ce650fd4f6cc5847d19e7], 
PUP.Optional.CheckOffer, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\AK5UF08Q\VuuPC_VO2_8907[1].exe, , [c101277e4249b086611657b0b24f6c94], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\Microsoft\Windows\INetCache\IE\AK5UF08Q\check[1].exe, , [8e344b5ac0cbe94da7a9da38719148b8], 
PUP.Optional.SmartWeb, C:\Users\Adam\AppData\Local\SmartWeb\SmartWebApp.exe, , [c8fa45606c1f37fffd399a985ca5b749], 
PUP.Optional.SmartWeb, C:\Users\Adam\AppData\Local\SmartWeb\SmartWebHelper.exe, , [a220a3024b4031053402eb477c85d52b], 
PUP.Optional.SmartWeb, C:\Users\Adam\AppData\Local\SmartWeb\swhk.dll, , [efd304a1fc8f75c1a492240e3fc213ed], 
PUP.Optional.SmartWeb, C:\Users\Adam\AppData\Local\SmartWeb\__u.exe, , [0fb3cdd8adde77bf8fa7250d2ad79769], 
PUP.Optional.PennyBee, C:\Users\Adam\AppData\Local\Temp\setup_758.exe, , [b80a70350d7e290d19a8eecc48b916ea], 
PUP.Optional.Bundler, C:\Users\Adam\AppData\Local\Temp\fsdED5F.exe, , [03bf574e028986b086a9e74938c84cb4], 
PUP.Optional.SilentInstaller, C:\Users\Adam\AppData\Local\Temp\avg5411.exe, , [b50d05a00784a98d170979cd659b2dd3], 
PUP.Optional.SilentInstaller, C:\Users\Adam\AppData\Local\Temp\avg6899.exe, , [546e2f76dead999d67b97acc53ad1fe1], 
PUP.Optional.SilentInstaller, C:\Users\Adam\AppData\Local\Temp\avgAC24.exe, , [a41ee7bef398c6700a1690b6877933cd], 
PUP.Optional.BrowseFox, C:\Users\Adam\AppData\Local\Temp\nsi3F6F.tmp, , [cbf7fbaa2e5d221484dca40761a05ea2], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\Temp\nso3E70.tmp, , [11b15154f19a4aeccfca59d4b0523fc1], 
PUP.Optional.PreInstaller, C:\Users\Adam\AppData\Local\Temp\nsoE6C4.tmp, , [20a28d18b4d781b58ebe2a07a061827e], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\Temp\nsw15EF.tmp, , [6b5744612f5c4de968e88092ce347f81], 
PUP.Optional.PennyBee, C:\Users\Adam\AppData\Local\Temp\oprun12711.exe, , [1fa30c995c2f6acc09b8f7c331d013ed], 
PUP.Optional.PennyBee, C:\Users\Adam\AppData\Local\Temp\oprun2441.exe, , [3b875550a2e995a1b0116f4bf50c54ac], 
PUP.Optional.RelevantKnowledge, C:\Users\Adam\AppData\Local\Temp\CSM5473.tmp, , [1aa8683d2467c6701badb9d35ba9e41c], 
PUP.Optional.CheckOffer, C:\Users\Adam\AppData\Local\Temp\is-LU1OV.tmp\InstallManager.exe, , [a022376efe8db680591e8f78cb3627d9], 
PUP.Optional.RelevantKnowledge, C:\Users\Adam\AppData\Local\Temp\is-LU1OV.tmp\rkinstaller.exe, , [01c18124672478bea929365dd430eb15], 
PUP.Optional.RelevantKnowledge, C:\Users\Adam\AppData\Local\Temp\is-LU1OV.tmp\rkverify.exe, , [79490c99e1aa3303bc0a4d3ff014ed13], 
PUP.Optional.Jogotempo, C:\Users\Adam\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_128.exe, , [9032c5e04843b87e4c10fc9fdf22ea16], 
Trojan.Dropper.MSIL, C:\Users\Adam\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_154.exe, , [754d663f2863cc6abcbb3a2e23de06fa], 
PUP.Optional.SwiftSearch, C:\Users\Adam\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_199.exe, , [e0e23b6adcaf290df89c3679ea1718e8], 
PUP.Optional.SilentInstaller, C:\Users\Adam\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe, , [6161e1c4a7e4fe387ba50541e8180000], 
PUP.Optional.QuarkNetwork, C:\Users\Adam\AppData\Roaming\NetService\sc.exe, , [1ba7a8fdb6d539fda847218159a8df21], 
Adware.PennyBee, C:\Users\Adam\AppData\Roaming\XyvetiElo\Tynrutg.exe, , [f0d22a7b39520f272074239641c036ca], 
PUP.Optional.Komodia.WnskRST, C:\Windows\System32\Kaaplhv64.dll, , [d9e92c79f69545f12521d3ca9e63ef11], 
Rootkit.Komodia.PUA, C:\Windows\System32\drivers\bsdriver.sys, , [82e4ab52358c53a3494303e3466f6256], 
PUP.Optional.Cherimoya, C:\Windows\System32\drivers\cherimoya.sys, , [fb54ae223aab947a013daf9d657aab19], 
PUP.Optional.Komodia.WnskRST, C:\Windows\SysWOW64\Kaaplhv.dll, , [04be00a5addecc6ace3ea3fa679abb45], 
PUP.Optional.WindowsProtectManager, C:\AdwCleaner\Quarantine\C\ProgramData\2WMiniPro2\WMiniPro.exe.vir, , [10b2d6cf3b501e18e8b3fc92986915eb], 
PUP.Optional.WindowsProtectManager, C:\AdwCleaner\Quarantine\C\ProgramData\7WMiniPro7\WMiniPro.exe.vir, , [685a74311378b6805447c2cc20e137c9], 
Trojan.Agent, C:\Users\Adam\AppData\Local\Temp\oprun12711.exe, , [1da5a8fde8a3d660579bc43a966cfa06], 
Trojan.Agent, C:\Users\Adam\AppData\Local\Temp\oprun2441.exe, , [f9c9f0b5adde1d19f5fd76888f73f709], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\bav199lt.default-1423070591943\extensions\@E9F231D8C9E95BE6CF66696E797FD59DE9F2.xpi, , [863c9213f4974ceaa9eefc8548bbd927], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A\Uninstall.exe, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A\onsy94B4.tmp, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A\pnsy94B5.exe, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A\rnsy94B3.exe, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.ConvertAd, C:\Users\Adam\AppData\Local\814A7FD2-1450262851-11E3-9BFD-28D24482F56A\snsy94B2.tmp, , [fbc76441d7b4de58330d018c42c1fb05], 
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\vnsz4FE8.tmp, , [6d55a7fed0bbb0868e56911606fd41bf], 
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\Number of results, , [6d55a7fed0bbb0868e56911606fd41bf], 
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\rnso7382.exe, , [6d55a7fed0bbb0868e56911606fd41bf], 
PUP.Optional.MultiPlug, C:\Program Files (x86)\814A7FD2-1450259103-11E3-9BFD-28D24482F56A\Uninstall.exe, , [6d55a7fed0bbb0868e56911606fd41bf], 
PUP.Optional.SmartWeb, C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task, , [d8eab9ec0d7ef24422889d19f60d8878], 
PUP.Optional.Vitruvian, C:\Users\Adam\AppData\Local\Temp\vitruvian-installer-install-v0003, , [734f23826328fc3a19c7823d42c153ad], 
PUP.Optional.Vitruvian, C:\Users\Adam\AppData\Local\Temp\vitruvian-installer-processes-v0002, , [99296243f398142200e0655a24df817f], 
PUP.Optional.Vitruvian, C:\Users\Adam\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001, , [06bcd0d507841026ae32cbf4669d649c], 
PUP.Optional.Vitruvian, C:\Users\Adam\AppData\Local\Temp\vitruvian-installer-softwareregkeys-v0002, , [3092b8ed7417a09613cda41b58abe917], 
PUP.Optional.SwiftSearch, C:\Windows\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Core, , [ae146144ef9c0b2be75a1cb0d330dd23], 
PUP.Optional.SwiftSearch, C:\Windows\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Pending Update, , [f1d1f2b3eaa1cf67b68b9c30976ceb15], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\Company\Product\1.0\localStorageIE.txt, , [675b7f26e2a97db9ab384787ec174cb4], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, , [675b7f26e2a97db9ab384787ec174cb4], 
PUP.Optional.AutoUpdater, C:\Users\Adam\AppData\Roaming\RunDir\temp\autoupdate.exe, , [ebd7c5e08506ef4732b3ad4dc241d729], 
PUP.Optional.AutoUpdater, C:\Users\Adam\AppData\Roaming\RunDir\temp\execute.exe, , [ebd7c5e08506ef4732b3ad4dc241d729], 
PUP.Optional.VBates.WnskRST, C:\Users\Adam\AppData\Local\Temp\groover161220150949_installer_1450259943.txt, , [378bf5b0a9e226105d2222d97a89e41c], 
PUP.Optional.NetService, C:\Users\Adam\AppData\Roaming\NetService\netservice.exe, , [51718124e1aa42f48e8a0ca1af53e020], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\bav199lt.default-1423070591943\jetpack\@E9F231D8C9E95BE6CF66696E797FD59DE9F2\simple-storage\store.json, , [fbc743623d4e37ff2edbdf9bb0528080], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5\config.js, , [d1f103a2bdceaf87e1656f356f937f81], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5\tree.js, , [d1f103a2bdceaf87e1656f356f937f81], 
PUP.Optional.VBates, C:\Users\Adam\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5\wlist.js, , [d1f103a2bdceaf87e1656f356f937f81], 
Adware.LaSuperba, C:\uninst\uninstall.html, , [ad15bde8a9e2a6907fe45659798b05fb], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\config.json, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\hello.js, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\manifest.json, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\scriptTagContext.js, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\tmp_bg.js, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component\uconfig.json, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\Component2\plugin, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}\c.dat, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUP.Optional.CrossAd.Gen, C:\Users\Adam\AppData\Local\Car Extension\{05B948B3-37B0-235F-D287-5BA3794DED95}\{9E39123C-AFF8-B2BC-D7BA-62E2AA90164E}.dat, , [72502580c7c4ad890b1bb0fb8084c23e], 
PUM.Optional.FireFoxSearchOverride, C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\bav199lt.default-1423070591943\user.js, , [edd572334e3d92a445252a85857faf51], 
PUP.Optional.NetService, C:\Users\Adam\AppData\Roaming\NetService\conf.ini, , [5e6445602269ec4a199ac1eddd27619f], 

Sektory fizyczne: 0
(Nie wykryto zagrożeń)


(end)