Computer Hope

Software => Computer viruses and spyware => Topic started by: glathem40 on July 03, 2019, 11:59:54 PM

Title: Pop-ups Re-directs
Post by: glathem40 on July 03, 2019, 11:59:54 PM
Greetings,
HP Notebook 15 x64 WIN 10.  After running Adware and Malwarebytes, still getting pop-ups/Re-directs.

                                                    Adware

# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build:    04-04-2019
# Database: 2019-06-28.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    07-03-2019
# Duration: 00:00:06
# OS:       Windows 10 Home
# Cleaned:  3
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

Deleted       C:\Users\User\Desktop\Youtube.lnk

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Blackjack +.lnk

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted       PDF Viewer & Converter by FromDocToPDF

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************



*************************

AdwCleaner[S00].txt - [1401 octets] - [03/07/2019 23:27:35]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########


                                                    Malwarebytes

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 7/3/19
Scan Time: 10:52 PM
Log File: 7f489c00-9e17-11e9-8bb1-80ce624f77c7.json

-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.11398
License: Premium

-System Information-
OS: Windows 10 (Build 17134.829)
CPU: x64
File System: NTFS
User: LAPTOP-4NQEC07D\User

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 280462
Threats Detected: 609
Threats Quarantined: 0
Time Elapsed: 11 min, 34 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 6
PUP.Optional.SearchEncrypt.Generic, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|iiihmlfhnchcalmhhoilcamhpjcfafge, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchManager.BITSRST, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|kjgaljeofmfgjfipajjeeflbknekghma, No Action By User, [271], [626728],1.0.11398
PUP.Optional.MindSpark.Generic, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|gnighmloblbkmoleodphoegaiinnikpk, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.AdvertisingExt.Generic, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|nhhkpoidbnfnlbpddckbkaeihfbiggnl, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.MindSpark.Generic, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|pbneiecbhikjapoihjpemfmpaalkafkh, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.SearchManager.BITSRST, HKU\S-1-5-21-982410814-266225061-1825802746-1001\SOFTWARE\GOOGLE\CHROME\PREFERENCEMACS\Default\extensions.settings|hiokjagcieggabhleodplmjimlcemloi, No Action By User, [271], [626728],1.0.11398

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 97
PUP.Optional.SearchEncrypt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\_metadata, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\css, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\lib, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\IIIHMLFHNCHCALMHHOILCAMHPJCFAFGE, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\tiles, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales\pt_BR, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\fonts, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales\en, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales\fr, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales\hi, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales\vi, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\skin\icons, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_metadata, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\_locales, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\vendor, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\skin, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\KJGALJEOFMFGJFIPAJJEEFLBKNEKGHMA, No Action By User, [271], [626728],1.0.11398
PUP.Optional.MindSpark.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\es_419, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\pt_BR, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\pt_PT, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\ar, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\de, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\en, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\es, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\fr, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\it, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\ja, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\ko, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales\nl, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_metadata, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\_locales, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\config, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\icons, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\js, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\GNIGHMLOBLBKMOLEODPHOEGAIINNIKPK\13.894.15.54978_0, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.AdvertisingExt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Extension Settings\nhhkpoidbnfnlbpddckbkaeihfbiggnl, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.AdvertisingExt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhhkpoidbnfnlbpddckbkaeihfbiggnl\9.1.2.10_0\_metadata, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.AdvertisingExt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhhkpoidbnfnlbpddckbkaeihfbiggnl\9.1.2.10_0\img, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.AdvertisingExt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhhkpoidbnfnlbpddckbkaeihfbiggnl\9.1.2.10_0, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.AdvertisingExt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\NHHKPOIDBNFNLBPDDCKBKAEIHFBIGGNL, No Action By User, [14687], [542296],1.0.11398
PUP.Optional.MindSpark.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\es_419, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\pt_BR, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\pt_PT, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\ar, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\de, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\en, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\es, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\fr, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\it, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\ja, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\ko, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales\nl, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_metadata, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\_locales, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\config, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\icons, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\js, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.MindSpark.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\PBNEIECBHIKJAPOIHJPEMFMPAALKAFKH\13.894.15.54870_0, No Action By User, [1761], [456842],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\sitesThumbnails, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\email_providers, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\converter, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\weather, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\films, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\icons, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\tiles, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images\maps, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\images, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\pt_BR, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content\fonts, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\de, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\en, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\fr, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\hi, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales\vi, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\skin\icons, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_metadata, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\_locales, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\content, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\vendor, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0\skin, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiokjagcieggabhleodplmjimlcemloi\10.1.3.159_0, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\HIOKJAGCIEGGABHLEODPLMJIMLCEMLOI, No Action By User, [271], [626728],1.0.11398

File: 506
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\000003.log, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\CURRENT, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\LOCK, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\LOG, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\LOG.old, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iiihmlfhnchcalmhhoilcamhpjcfafge\MANIFEST-000001, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\IIIHMLFHNCHCALMHHOILCAMHPJCFAFGE\3.4.4.7_0\MANIFEST.JSON, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\css\tooltip.css, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\icon128.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\icon16.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\icon16_disabled.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\icon48.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\input-checked.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\input-unchecked.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\img\se\si-logo.png, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\lib\bg.js, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\lib\page-protection.js, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\lib\panel.js, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\lib\savesettings.js, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\_metadata\verified_contents.json, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\background.html, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\panel.html, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchEncrypt.Generic, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihmlfhnchcalmhhoilcamhpjcfafge\3.4.4.7_0\settings.html, No Action By User, [14697], [448980],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\KJGALJEOFMFGJFIPAJJEEFLBKNEKGHMA\10.1.3.87_0\MANIFEST.JSON, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\fonts\HelveticaNeue-Thin.otf, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\fonts\HelveticaNeueLT-Roman.woff, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\fonts\neue-bold.woff, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\fonts\neue.woff, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\close-FF8A5A.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\collection-9B9B9B.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\collection-FF691E.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\doc-icon-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\error-FF691E.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\pdf-2-doc-9B9B9B.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\pdf-2-doc-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\pdf-icon-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\success-FF8A5A.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\tab-arrow-FF691E.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\converter\upload-FF691E.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\amazon-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\amazon.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\close.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\enlarge-000000-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\enlarge-FFCA00-000000.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\hulu-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\hulu.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\minimize-000000-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\netflix-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\netflix.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\refresh-FFFFFF-000000.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\shrink-FFCA00-000000.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\shuffle-000000.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\shuffle-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\vudu-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films\vudu.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\128.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\16.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\48.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\close.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\favicon.ico, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\icons\trends.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\bing-maps-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\from-to-icon-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\google-maps-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\location-icon-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\search-4A4A4A.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\search-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\switch-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\tab-arrow-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\whereto-logo-8881FF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\maps\whereto-logo-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\facebook_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\aliexpress.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\aliexpress_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\amazon.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\amazon_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\booking.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\booking_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\ebay.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\ebay_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\expedia.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\expedia_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\facebook.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\gmail.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\gmail_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\google-translate-icon-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\gtranslte.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\pinterest.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\pinterest_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\twitter.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\twitter_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\wix.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\wix_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\yahoo.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\yahoo_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\youtube.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sitesThumbnails\youtube_tile_v2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\tiles\DOC-to-PDF.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\tiles\PDF-to-DOC.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\tiles\Translation.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\tiles\View-PDF.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\01d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\01n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\02d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\02n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\03d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\03n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\04d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\04n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\09d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\09n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\10d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\10n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\11d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\11n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\13d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\13n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\50d.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\weather\50n.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\down.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\alot.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\angle-arrow-down.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\bing.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\bing_large.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\bluesky-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\brush.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\bt.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\clock.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\cloud.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\cupcake-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\desk-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\doodle.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\enhanced_google.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\eyeglass.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\eyeglass_transparent.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\films-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\gmx_large.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\google.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\google_large.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\hero-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\just-the-box-empty.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\just-the-box.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\mountain-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\pointer2.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\radio-selected.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\radio-unselected.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\sea-bg.jpg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\search-D7D7D7.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\search-FFFFFF.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\settings.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\smallMagnifier.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\star-unselected.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\star.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\todoc.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\toggle-off.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\toggle-on.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\topdf.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\transparent_img.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\yahoo.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\yahoo.svg, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\yahoo_large.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\yandex.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\_enhanced_google.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjgaljeofmfgjfipajjeeflbknekghma\10.1.3.87_0\content\images\_gmx_large.png, No Action By User, [271], [626728],1.0.11398
PUP.Optional.SearchManager.BITSRST, C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 04, 2019, 12:10:40 AM
Here is the rest  (Didn't show up in the first post.)

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)

                                                          Security Check

 Results of screen317's Security Check version 1.014 --- 12/23/15 
   x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````[/u]
 Windows Firewall Enabled! 
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````[/u]
 Google Chrome (75.0.3770.100)
 Google Chrome (SetupMetrics...)
````````Process Check: objlist.exe by Laurent````````[/u] 
 Windows Defender MSMpEng.exe
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbamtray.exe 
 Windows Defender MSASCuiL.exe   
`````````````````System Health check`````````````````[/u]
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````[/u]

Just go ahead and shoot me now Dave.  Thanks.
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 04, 2019, 04:55:44 PM
Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
2. The fixes are specific to your problem and should only be used for this issue on this machine.
3. If you don't know or understand something, please don't hesitate to ask.
4. Please DO NOT run any other tools or scans while I am helping you.
5. It is important that you reply to this thread. Do not start a new topic.
6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
7. Absence of symptoms does not mean that everything is clear.

If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
*************************************************************************
Please run MBAM again and this time, clean the infections.
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 04, 2019, 10:44:14 PM
Quote
Please run MBAM again and this time, clean the infections.

Sorry, if there is a"clean" option in MBAM I don't know where it is.
I have:  Run the Scan>"Quarantine" all items>Restart 3 times and still come up with 609 infected items.
Thanks.
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 05, 2019, 04:00:56 PM
(http://i424.photobucket.com/albums/pp322/digistar/mbamicontw5.gif) Download and install: Please download Malwarebytes' scanner (http://downloads.malwarebytes.org/file/mbam) to your desktop.
Double Click mbam-setup.exe to install the application.
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 05, 2019, 09:15:34 PM
In trying to insure I was following your instructions exactly I have created confusion.  My apologies.
I have been using MBAM on my computer for years and am familiar with how to "clean the infections" by 1. Selecting all items  2. Quarantine selected.  3. Apply Actions. 4. Restart computer.  Every now and then I will have 1 or 2 threats identified and MBAM gets rid of the files - no problem.
This is my mothers' laptop.  I don't know what she has done.  I installed MBAM.  Ran the scan.  It came back with 600+ threats.
I selected all.  Quarantine selected.  Applied Actions and restarted the laptop.  I immediately noticed pop-ups and redirects.
I ran the scan again After having cleaned the infections and it came back with pretty much the same 600+ threats identified. (The log from the second scan after cleaning the infections is my first post).  Since MBAM didn't seem to be working I realized I was out of my depth and started this thread to get some Expert Advice. (you have resolved 3 issues for me going back 8 years)
Since your last post, I ran the scan again and got a BSOD in the middle of the scan.  Decided to run the scan in Safe Mode and it came back with 0 infected items.  Ran the scan again after a normal boot and it came back 0 threats detected.  (See Log).

I got 3 pop-ups and 3 new windows open before I could get here to make this post - Obviously still infected.

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 7/5/19
Scan Time: 7:59 PM
Log File: ad9e509c-9f91-11e9-9118-80ce624f77c7.json

-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.11420
License: Premium

-System Information-
OS: Windows 10 (Build 17134.829)
CPU: x64
File System: NTFS
User: LAPTOP-4NQEC07D\User

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 285179
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 06, 2019, 03:28:43 PM
ESET Online Scanner
Note : If you use Internet Explorer to get the ESET Online Scanner, you won't have to download, nor install the tool, as everything will be ran in a contextual (pop-up) window of Internet Explorer. However, for every other browsers, you will have to download and install ESET Online Scanner. In this set of instruction, I'll use Google Chrome to download it and run it (since a lot of people will do it), however, except for the download and installation procedure, the same instructions applies if you use Internet Explorer. Please note that two or three prompts will appear if you use Internet Explorer asking you to reload the page, authorize the application, execute it, etc. Accept all of them in order to run ESET Online Scanner.

    Download and execute  ESET OnlineScan (http://eset.com/onlinescan) (on this window, click on ESET Smart Installer to trigger the download). People accessing this URL via Internet Explorer will start the integration process of ESET Online Scanner in their browser;
    Once the installation is done (it requires Admin Rights), check the following settings (two of them are under Advanced Settings, click on it to display them) :

        Enable detection of potentially unwanted applications;
        Scan archives;
        Scan for potentially unsafe applications;
        Optional : If you want to scan more drives, click on Change... and select the drives you want to include in the scan;

   (http://i424.photobucket.com/albums/pp322/digistar/Lilp6C2_1.png) (http://s424.photobucket.com/user/digistar/media/Lilp6C2_1.png.html)

    After you're done checking these options, click on Start and ESET Online Scanner will download it's virus signature database before starting the scan;
   
(http://i424.photobucket.com/albums/pp322/digistar/PbI6QoP_1.png) (http://s424.photobucket.com/user/digistar/media/PbI6QoP_1.png.html)
    Once done, the scan will start automatically. Detections will appear at the bottom of the window. ESET Online Scanner can have an extremely long scan time that can last between 2 or 3 hours. So if you start the scan, do not interrupt it, let it complete until the end;
   
(http://i424.photobucket.com/albums/pp322/digistar/iYk249p_1.png) (http://s424.photobucket.com/user/digistar/media/iYk249p_1.png.html)
    After the scan is finished, a summary window will appear to give you the information about the scan. Then you'll have to the option to see what threads were found and to manage the threats that were quarantined;
   
(http://i424.photobucket.com/albums/pp322/digistar/SQWS56I.png) (http://s424.photobucket.com/user/digistar/media/SQWS56I.png.html)

    Click on List of found threats, it'll display every threat identified during that scan, their type and what action was taken against them. Click on Copy to clipboard to copy these results on our clipboard and post them in your next reply;
   
(http://i424.photobucket.com/albums/pp322/digistar/OkgGDKc_1.png) (http://s424.photobucket.com/user/digistar/media/OkgGDKc_1.png.html)

    Once you're done, click on the Back button;
    Check both checkboxes at the bottom: Uninstall application on close and Delete quarantined files before clicking on the Finish button;
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 07, 2019, 12:23:31 AM
                                                                           ESET


7/6/2019 23:25:25 PM
Files scanned: 300703
Infected files: 3
Cleaned threats: 3
Total scan time 02:49:42
Scan status: Finished


C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnighmloblbkmoleodphoegaiinnikpk\13.894.15.54978_0\js\PartnerId.js   JS/Mindspark.G potentially unwanted application   cleaned by deleting
C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbneiecbhikjapoihjpemfmpaalkafkh\13.894.15.54870_0\js\PartnerId.js   JS/Mindspark.G potentially unwanted application   cleaned by deleting
C:\Users\User\AppData\Local\Temp\scoped_dir1184_19577\CRX_INSTALL\js\PartnerId.js   JS/Mindspark.G potentially unwanted application   cleaned by deleting



As soon as I opened Chrome, the pop-ups and re-directs started.
Had not tried using Edge until I did the ESET Scan.  It seems to be OK.
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 07, 2019, 04:00:52 PM
Could you please try uninstalling and re-installing Chrome?
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 07, 2019, 05:17:31 PM
Uninstall/Re-install Chrome.  So far all seems OK.   Anything I need to do to follow up ?
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 08, 2019, 04:19:23 PM
Let's just watch it for a few days to see how it goes then get back to me.
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 08, 2019, 08:21:16 PM
Thanks.  Will do.
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 15, 2019, 12:28:57 AM
No issues.  I think we're good.
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 15, 2019, 03:36:06 PM
Click Start> Computer> right click the C Drive and choose Properties> enter
Click Disk Cleanup from there.

(http://i424.photobucket.com/albums/pp322/digistar/diskcleanup2.jpg)

Click OK on the Disk Cleanup Screen.
Click Yes on the Confirmation screen.

(http://i424.photobucket.com/albums/pp322/digistar/diskcleanup.jpg)

This runs the Disk Cleanup utility along with other selections if you have chosen any. (if you had a lot System Restore points, you will see a significant change in the free space in C drive)
***************************************
This step will remove all cleaning tools we used, it'll reset restore points (so you won't get reinfected by accidentally using some older restore point) and it'll make some other minor adjustments...
This is a very crucial step so make sure you don't skip it.

Download Delfix by Xplode (https://www.bleepingcomputer.com/download/delfix/) to the desktop. This stop will remove all cleaning tools we used. It'll reset Restore Points ( so you wont' get re-infected by accidentally using some older Restore Point) and it'll make some other minor adjustments.

Double-click Delfix.exe to start the tool.
Make sure the following items are checked:
Now click "Run" and wait patiently.
Once finished a logfile will be created. You don't have to attach it to your next reply.
********************************************
I suggest using WOT - Web of Trust (http://www.mywot.com/). WOT is a free Internet security addon for your browser. It will keep you safe from online scams, identity theft, spyware, spam, viruses and unreliable shopping sites. WOT warns you before you interact with a risky website. It's easy and it's free.

Check out Keeping Yourself Safe On The Web  (http://evilfantasy.wordpress.com/2008/05/20/keeping-yourself-safe-on-the-web/) for tips and free tools to help keep you safe in the future.

Also see Slow Computer? It may not be Malware (http://evilfantasy.wordpress.com/2008/05/24/slow-computer-it-may-not-be-malware/) for free cleaning/maintenance tools to help keep your computer running smoothly.
Safe Surfing!
Title: Re: Pop-ups Re-directs
Post by: glathem40 on July 17, 2019, 12:37:27 PM
Thanks SuperDave.  I really do appreciate it.
Title: Re: Pop-ups Re-directs
Post by: SuperDave on July 17, 2019, 03:58:20 PM
You're welcome. I will lock this thread. If you need it re-opened, please send me a pm.