Wow! There were a lot of bugs. I have
Quarantined everything. I use AVG virus and have scanned with it. Did not pick up any of this.
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 11/6/2014
Scan Time: 1:12:10 PM
Logfile:
Administrator: Yes
Version: 2.00.3.1025
Malware Database: v2014.11.06.07
Rootkit Database: v2014.11.01.02
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Joe's Servicenter
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 379407
Time Elapsed: 37 min, 44 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
Trojan.Agent, C:\Windows\svchost.exe, 3668, , [7a1575c31d5fe05677b3c1cc8e75db25]
Modules: 0
(No malicious items detected)
Registry Keys: 34
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, , [b9d645f33b41d561e967e00903fff60a],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, , [b9d645f33b41d561e967e00903fff60a],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\mysearchdial.mysearchdialHlpr.1, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\mysearchdial.mysearchdialHlpr, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\mysearchdial.mysearchdialHlpr, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\mysearchdial.mysearchdialHlpr.1, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}, , [0689a3954f2dd264a761e5cb61a18878],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}, , [0689a3954f2dd264a761e5cb61a18878],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}, , [d6b99d9b92eacc6a2bdc6f7a30d209f7],
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\IEXPLORE.EXE, , [3758ac8c522a43f38257dbe89b68758b],
Trojan.Agent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\IEXPLORE.EXE, , [3758ac8c522a43f38257dbe89b68758b],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0003026.BHO, , [abe4fc3cd1ab50e65bea7cc25ea51ae6],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0003026.BHO.1, , [f99658e0fb81cb6b90b571cd877ce917],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0003026.Sandbox, , [b6d9b5837b0173c3cc799ca211f240c0],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0003026.Sandbox.1, , [5e310533c8b4b5816fd683bb8b780cf4],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0003026.BHO, , [018e2c0cdf9d3afc89bca995c53e3cc4],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0003026.BHO.1, , [c7c8d7617dff0f2760e5bb83bf44946c],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0003026.Sandbox, , [f699d266b7c5b383a1a464da808307f9],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0003026.Sandbox.1, , [305f7eba5e1e191d063fcb732bd8738d],
PUP.Optional.SystemSpeedup, HKLM\SOFTWARE\WOW6432NODE\SYSTWEAK\ssd, , [5b34cf696e0e7abc12006ed462a17d83],
Trojan.Zaccess, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32, , [d8b772c683f90d29ae28de648480a65a],
Trojan.Zaccess, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}, , [d8b772c683f90d29ae28de648480a65a],
Trojan.Zaccess, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}, , [d8b772c683f90d29ae28de648480a65a],
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MySearchDial, , [f798f64224589b9b99ce48362adade22],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, , [bfd039ffeb91a0965e46296802027f81],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\CR_INSTALLER\3026, , [b5dae454adcfbd7982ad96cd877cd12f],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [b6d92414ee8e58deac7fe3847f840ef2],
PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\mysearchdial, , [eca377c1b9c3d36349cc59293dc710f0],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [6d22b5832755c86ebfaad7a69b694eb2],
PUP.Optional.SystemSpeedup, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\ssd, , [008f003857250e28ca47d07252b18977],
Registry Values: 3
Trojan.Zaccess, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32, C:\Windows\system32\config\systemprofile\AppData\Local\{c9e709ff-f391-860c-25d7-5ea7dc9c281b}\n., , [d8b772c683f90d29ae28de648480a65a]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0X2O1C0R2R1R, , [6d22b5832755c86ebfaad7a69b694eb2]
Trojan.Agent.RNS, HKU\S-1-5-21-2286913346-1561967918-2795062421-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON|shell, explorer.exe,C:\Users\Joe's Servicenter\AppData\Roaming\skype.dat, , [256a4aee6517b87e69e17be27a8a4db3]
Registry Data: 0
(No malicious items detected)
Folders: 7
PUP.Optional.MySearchDial.A, C:\Users\Joe's Servicenter\AppData\Roaming\mysearchdial, , [46498bade894e5510fc444b834ce956b],
PUP.Optional.MySearchDial.A, C:\Users\Joe's Servicenter\AppData\Roaming\mysearchdial\icons_0.0.0.0, , [46498bade894e5510fc444b834ce956b],
PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial, , [216ec771e09cd36363c341bdf210ab55],
PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.21.0, , [216ec771e09cd36363c341bdf210ab55],
PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.21.0\bh, , [216ec771e09cd36363c341bdf210ab55],
PUP.Optional.SystemSpeedup, C:\Users\Joe's Servicenter\AppData\Roaming\systweak\ssd, , [533ca5935c201521f6739f767f84e61a],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc, , [4a453efa3c40ad89cd8591897c875da3],
Files: 50
PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.21.0\bh\mysearchdial.dll, , [2f603cfc2854a78fbe476287689a857b],
PUP.Optional.Installcore, C:\Users\Joe's Servicenter\AppData\Local\Temp\is357113909\35186742_stp\HomePageDLL.dll, , [ddb280b881fb31055214a854d43056aa],
PUP.Optional.RegCleanPro, C:\Users\Joe's Servicenter\AppData\Local\Temp\is357113909\35186995_stp\rcpsetup_adppi12_adppi12.exe, , [1f708bad82fa01355d69e450ea16fc04],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old, , [a4ebef49eb914de9ba17a3696e935ba5],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old1, , [ccc3a494760691a5626f85876c95c43c],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old10, , [038cf840adcf0c2ab61b61ab98690bf5],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old11, , [18779d9bc8b444f2409186861ce55ea2],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old12, , [07885ddbeb9193a316bb7c90758c15eb],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old13, , [f8979b9d81fbf244963b30dc8e739967],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old14, , [632c91a76a127abcf8d9d933c140c838],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old2, , [e1aead8b6d0f0c2a9e3347c52bd6e21e],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old3, , [751a6ace64189b9bb61b010b758c59a7],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old4, , [b8d7d266bcc058de13be12fa12ef0000],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old5, , [325d51e7522a3204478a86865fa2a060],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old6, , [d3bc11275a229e98c70a93796d945fa1],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old7, , [b3dc30084834c86e607137d5f70af10f],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old8, , [cdc243f5afcd38fea62b25e78c759070],
Trojan.Tracur.s, C:\Users\Joe's Servicenter\AppData\Local\Intuit\Symantec\qilmyuo.dll.old9, , [99f669cf413bcf67f7da21eb0bf6df21],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old, , [2b647ebaf18b9c9a6e2ab1660bf6aa56],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old1, , [424d0236235969cd8a0e6ea935cc817f],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old10, , [0b84b385abd16ccab3e520f76d94db25],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old11, , [97f8a8904d2f7db93662001746bbad53],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old12, , [eba463d57408e84e76220413ee13a55b],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old13, , [7f108fa91c602c0a0a8ed344778ad32d],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old14, , [3d52b385abd174c21c7c77a0c839d729],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old2, , [533cce6abdbf58de28703bdc4ab79a66],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old3, , [a3ec9f99b4c862d47e1ad93e808139c7],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old4, , [d0bf290f304cc571c3d5a27581803dc3],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old5, , [731ca692b4c8043292060c0bf0115ea2],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old6, , [7c131028ea9246f08f0947d041c0f20e],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old7, , [99f666d2037989addfb925f2659cfc04],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old8, , [bfd07bbd8cf0e65072260f08748d11ef],
Trojan.Clons.DP, C:\Users\Joe's Servicenter\AppData\Local\Macromedia\ypaacvte.dll.old9, , [c2cd8eaa2854f442b6e20f08c53c8977],
Trojan.Dropper.BCMiner, C:\Windows\Installer\{c9e709ff-f391-860c-25d7-5ea7dc9c281b}\U\00000008.@, , [c1cec8707309f4427f435d4cef11ad53],
Rootkit.0Access, C:\Windows\Installer\{c9e709ff-f391-860c-25d7-5ea7dc9c281b}\U\000000cb.@, , [721d68d0e597cb6b678f01c335cfb947],
Trojan.Agent, C:\Windows\svchost.exe, , [7a1575c31d5fe05677b3c1cc8e75db25],
Trojan.Agent, C:\Users\Joe's Servicenter\ctfmon.exe, , [a9e63afea7d5c57150f1d8ebfe05bb45],
Trojan.Agent, C:\Users\Joe's Servicenter\iexplore.exe, , [3758ac8c522a43f38257dbe89b68758b],
Trojan.Dropper, C:\Users\Joe's Servicenter\rundll32.exe, , [6d2296a24636ad895a59269f0003bb45],
Trojan.Agent, C:\Users\Joe's Servicenter\spoolsv.exe, , [147bf840d3a98aac3f8fca56ca3a8d73],
Trojan.Agent, C:\Users\Joe's Servicenter\firefox.exe, , [b8d73ff923599e982b2f3f52c93b3ec2],
PUP.Optional.MySearchDial.A, C:\Users\Joe's Servicenter\AppData\Roaming\mysearchdial\icons_0.0.0.0\62.ico, , [46498bade894e5510fc444b834ce956b],
PUP.Optional.MySearchDial.A, C:\Users\Joe's Servicenter\AppData\Roaming\mysearchdial\icons_0.0.0.0\80.ico, , [46498bade894e5510fc444b834ce956b],
PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.21.0\FavIcon.ico, , [216ec771e09cd36363c341bdf210ab55],
PUP.Optional.SystemSpeedup, C:\Users\Joe's Servicenter\AppData\Roaming\systweak\ssd\SSDPTstub.exe, , [533ca5935c201521f6739f767f84e61a],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc\config.dat, , [4a453efa3c40ad89cd8591897c875da3],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc\info.dat, , [4a453efa3c40ad89cd8591897c875da3],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc\prod.dat, , [4a453efa3c40ad89cd8591897c875da3],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc\STTL.DAT, , [4a453efa3c40ad89cd8591897c875da3],
PUP.Optional.Updater.A, C:\Users\Joe's Servicenter\AppData\Roaming\DigitalSites\UpdateProc\TTL.DAT, , [4a453efa3c40ad89cd8591897c875da3],
Physical Sectors: 0
(No malicious items detected)
(end)