Malwarebytes Anti-Malware
www.malwarebytes.orgScan Date: 6/23/2014
Scan Time: 8:03:29 PM
Logfile: MBAM 6.23.14.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.06.24.02
Rootkit Database: v2014.06.23.02
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 8.1
CPU: x64
File System: NTFS
User: soldbylinz
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 308067
Time Elapsed: 39 min, 1 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 7
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\CT3326777, Quarantined, [eb57dba12952b680651c048c16ecba46],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect\rep, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect\STG, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\UI, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\UI\rep, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
Files: 18
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nsaB878.exe, Quarantined, [46fca5d79cdf6dc907760c7af70a4fb1],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nsg357C.exe, Quarantined, [3f03bdbf1f5ca096f38aeb9bb24f9f61],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nsl236.exe, Quarantined, [3e04f6865f1c91a5b3ca1c6a966b9967],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nsoCB94.exe, Quarantined, [02408bf13843b1855924523410f1fa06],
PUP.Optional.OpenCandy, C:\Users\soldbylinz\AppData\Local\Temp\utt471D.tmp, Quarantined, [9ba791ebdf9c05316a3d1f899173bd43],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nsxC1A.tmp, Quarantined, [bf833646b4c7b581d9a4c5c1b24fd32d],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nszCD98.exe, Quarantined, [6dd52d4f7902c1750974d8aeef12f20e],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\nszE7E7.exe, Quarantined, [172b3943790255e1c0bdacda827f669a],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\d4630f5a-d712-418a-9b61-dc6edbc0615b\ExtremeFlashPlayer.exe, Quarantined, [62e04e2e413a81b5557e98ae17e9a55b],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\Downloads\ExtremeFlashPlayer.exe, Quarantined, [f151a4d85823be78b9c2d06ded13f907],
PUP.Optional.Trovi.A, C:\Users\soldbylinz\AppData\Roaming\Mozilla\Firefox\Profiles\b8n3xg9r.default-1403244976794\searchplugins\trovi-search.xml, Quarantined, [f052710b90eba78fec31bcf70ef425db],
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Local\Temp\CT3326777\ddt.csf, Quarantined, [eb57dba12952b680651c048c16ecba46],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect\rep\Cvc.dat, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.SearchProtect.A, C:\Users\soldbylinz\AppData\Local\SearchProtect\UI\rep\UIRepository.dat, Quarantined, [71d1ed8f2d4ec57126d8dcc9d52d54ac],
PUP.Optional.Trovi.A, C:\Users\soldbylinz\AppData\Roaming\Mozilla\Firefox\Profiles\b8n3xg9r.default-1403244976794\prefs.js, Good: (), Bad: (user_pref("browser.newtab.url", "
http://www.trovi.com/?gd=&ctid=CT3326777&octid=EB_ORIGINAL_CTID&ISID=d4630f5a-d712-418a-9b61-dc6edbc0615b&SearchSource=69&CUI=&SSPV=&Lay=1&UM=5&UP=SPD7D8CC04-5D85-4EDD-917B-E1E8749FC720")
, Replaced,[2a18bebec4b7290d8a7ba30f9d67f10f]
PUP.Optional.Conduit.A, C:\Users\soldbylinz\AppData\Roaming\Mozilla\Firefox\Profiles\b8n3xg9r.default-1403244976794\prefs.js, Good: (), Bad: (user_pref("browser.startup.homepage", "
http://search.conduit.com/?gd=&ctid=CT3324790&octid=EB_ORIGINAL_CTID&ISID=ISID_ID&SearchSource=55&CUI=&UM=5&UP=SP1A37C6E1-993D-4085-B8F1-AB52502E6830&SSPV=")
, Replaced,[b191215b4b3093a3325c0ea4b3518977]
Physical Sectors: 0
(No malicious items detected)
(end)