Jump to content

Removal instructions for Ge-Force6.1


Recommended Posts

  • Staff

What is Ge-Force6.1?

The Malwarebytes research team has determined that Ge-Force6.1 is a browser hijacker. These so-called "hijackers" manipulate your browser(s), for example to change your startpage or searchscopes, so that the affected browser visits their site or one of their choice. This one also displays advertisements.

How do I know if my computer is affected by Ge-Force6.1?

You may see these browser extensions/add-ons:

warning1.png

warning2.png

and this entry in your list of installed programs:

warning4.png

and these tasks in your Scheduled Tasks :

warning3.png

How did Ge-Force6.1 get on my computer?

Browser hijackers use different methods for distributing themselves. This particular one was bundled with other software.

How do I remove Ge-Force6.1?

Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted application.

  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-version.exe and follow the prompts to install the program.
  • At the end, be sure a check-mark is placed next to the following:
    • Enable free trial of Malwarebytes Anti-Malware Premium
    • Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • If an update is found, you will be prompted to download and install the latest version.
  • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
  • When the scan is complete , make sure that everything is set to "Quarantine", and click Apply Actions.
  • Reboot your computer if prompted.
Is there anything else I need to do to get rid of Ge-Force6.1?
  • This PUP creates some scheduled tasks. You can read here how to remove Scheduled Tasks.
How would the full version of Malwarebytes Anti-Malware help protect me?

We hope our application and this guide have helped you eradicate this hijacker.

As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the Ge-Force6.1 hijacker. It would have warned you before the rogue could install itself, giving you a chance to stop it before it became too late.

protection1.png

Technical details for experts

Signs in a HijackThis log:

O2 - BHO: 55e064c969ff493a998a8dfbc6932f9d0065841 - {11111111-1111-1111-1111-110611581141} - C:\Program Files\Ge-Force6.1\Ge-Force6.1-bho.dll
Alterations made by the installer:

File system details  ---------------------------------------------    Adds the folder C:\Program Files\349a1a44-ceb7-451f-9997-dd7477f45ad1       Adds the file e47a8a43-e4c0-4f27-bd0f-5dd1389b7269.dll"="1/6/2015 1:04 PM, 163808 bytes, A    In the existing folder C:\Program Files\Common Files       Adds the file d5acde99-785e-4caa-8aa4-e851ac15ca85.dll"="1/6/2015 1:04 PM, 163808 bytes, A    Adds the folder C:\Program Files\Ge-Force6.1       Adds the file 5adc528a-61e1-4b50-8cff-5f1f4499c984.dll"="1/6/2015 1:04 PM, 163808 bytes, A       Adds the file background.html"="1/4/2015 11:08 AM, 729 bytes, A       Adds the file bgNova.html"="1/4/2015 11:08 AM, 729 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756.xpi"="1/6/2015 1:04 PM, 388262 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-4.exe"="1/6/2015 1:04 PM, 1512928 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.exe"="1/6/2015 1:05 PM, 1151968 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.exe"="1/6/2015 1:04 PM, 1294304 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.exe"="1/6/2015 1:04 PM, 1105888 bytes, A       Adds the file Ge-Force6.1.ico"="1/4/2015 11:08 AM, 15086 bytes, A       Adds the file Ge-Force6.1-bg.exe"="1/6/2015 1:05 PM, 695776 bytes, A       Adds the file Ge-Force6.1-bho.dll"="1/6/2015 1:05 PM, 734688 bytes, A       Adds the file Ge-Force6.1-buttonutil.dll"="1/6/2015 1:05 PM, 433120 bytes, A       Adds the file Ge-Force6.1-buttonutil.exe"="1/6/2015 1:05 PM, 301024 bytes, A       Adds the file Ge-Force6.1-codedownloader.exe"="1/6/2015 1:05 PM, 1105888 bytes, A       Adds the file Uninstall.exe"="1/6/2015 1:04 PM, 103904 bytes, A       Adds the file utils.exe"="1/6/2015 1:04 PM, 2580863 bytes, A    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com       Adds the file chrome.manifest"="1/6/2015 1:05 PM, 456 bytes, A       Adds the file install.rdf"="1/6/2015 1:05 PM, 1190 bytes, A    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\defaults    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\locale    Adds the folder C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin    In the existing folder C:\Windows\System32\Tasks       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1"="1/6/2015 1:05 PM, 6122 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5"="1/6/2015 1:05 PM, 5458 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user"="1/6/2015 1:05 PM, 5464 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6"="1/6/2015 1:04 PM, 8528 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7"="1/6/2015 1:04 PM, 8194 bytes, A    In the existing folder C:\Windows\Tasks       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1.job"="1/6/2015 1:05 PM, 3092 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.job"="1/6/2015 1:05 PM, 2428 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user.job"="1/6/2015 1:05 PM, 2428 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.job"="1/6/2015 1:04 PM, 5500 bytes, A       Adds the file ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.job"="1/6/2015 1:04 PM, 5164 bytes, ARegistry details  ------------------------------------------    [HKEY_LOCAL_MACHINE\SOFTWARE\5adc528a-61e1-4b50-8cff-5f1f4499c984]       "5adc528a-61e1-4b50-8cff-5f1f4499c984-ver"="REG_BINARY, (zero length data)    [HKEY_LOCAL_MACHINE\SOFTWARE\AppDataLow\Software\Crossrider]       "Bic"="REG_SZ", "1448A05F416544FF9AC62E303F1D016AIE"       "Verifier"="REG_SZ", "758c3e6688b4757089ac57d076cb8b31"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.BHO]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.BHO\CLSID]       "(Default)"="REG_SZ", "{11111111-1111-1111-1111-110611581141}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.BHO\CurVer]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.BHO.1]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.BHO.1\CLSID]       "(Default)"="REG_SZ", "{11111111-1111-1111-1111-110611581141}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox\CLSID]       "(Default)"="REG_SZ", "{22222222-2222-2222-2222-220622582241}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox\CurVer]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox.1]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox.1\CLSID]       "(Default)"="REG_SZ", "{22222222-2222-2222-2222-220622582241}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}]       "(Default)"="REG_SZ", "Ge-Force6.1"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\Implemented Categories]       "(Default)"="REG_SZ", ""    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\Implemented Categories\{59fb2056-d625-48d0-a944-1a85b5ab2640}]       "(Default)"="REG_SZ", ""    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\InprocServer32]       "(Default)"="REG_SZ", "C:\Program Files\Ge-Force6.1\Ge-Force6.1-bho.dll"       "ThreadingModel"="REG_SZ", "Apartment"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\ProgID]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.BHO.1"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\Programmable]    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\TypeLib]       "(Default)"="REG_SZ", "{44444444-4444-4444-4444-440644584441}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611581141}\VersionIndependentProgID]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}\InprocServer32]       "(Default)"="REG_SZ", "C:\Program Files\Ge-Force6.1\Ge-Force6.1-bho.dll"       "ThreadingModel"="REG_SZ", "Apartment"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}\ProgID]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox.1"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}\Programmable]    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}\TypeLib]       "(Default)"="REG_SZ", "{44444444-4444-4444-4444-440644584441}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622582241}\VersionIndependentProgID]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655585541}]       "(Default)"="REG_SZ", "ICrossriderBHO"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655585541}\ProxyStubClsid]       "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655585541}\ProxyStubClsid32]       "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655585541}\TypeLib]       "(Default)"="REG_SZ", "{44444444-4444-4444-4444-440644584441}"       "Version"="REG_SZ", "1.0"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666586641}]       "(Default)"="REG_SZ", "ISandBox"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666586641}\ProxyStubClsid]       "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666586641}\ProxyStubClsid32]       "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666586641}\TypeLib]       "(Default)"="REG_SZ", "{44444444-4444-4444-4444-440644584441}"       "Version"="REG_SZ", "1.0"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644584441}\1.0]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841 Type Library"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644584441}\1.0\0\win32]       "(Default)"="REG_SZ", "C:\Program Files\Ge-Force6.1\Ge-Force6.1-bho.dll"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644584441}\1.0\FLAGS]       "(Default)"="REG_SZ", "0"    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644584441}\1.0\HELPDIR]       "(Default)"="REG_SZ", "C:\Program Files\Ge-Force6.1"    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1\hCd0sm22Uklpp2RCCe/fbQHOzK1fQoqNKwfH4Db4l0/EgPKiG6GP3VAi02cTRFoX2+tQrz54iv2zDk+3gyuwHW4Q5KiLi4iUXsDr9QM4+ZwNIN438WLoWq1alx68SESoD+HE9lGXVzRKsMVTRhOoiNjCqzq1TkvjNBTPjdmGlsc=]       "C5J0gzvVlwy18xOszHzom1jNDE6eKZK6OVgsHuop0cS/iE7Ph5aqHWdP7rQGwbLh+q6zRB3iVWgvPnwSOo4MNKuWUHND9R4XETGANhVFUm5kZmY1dKStRyu5c0GJSkN5GEYM1jrVExd6wgib56OqeXEVo1edtBziAh4TJuvxBp2Xfpzne7bBpeK/tCtyC5ajhBXyMoPfI7LcFwoiDlc8z/G3u7VA9kiwPQSHZxV2lhMIrk9FGqwxzanuvWEgp31oyd/9+iL2Ot/X3pxtKuXNPR1AIrmP/PgqpGVDoqAHFZ9NbeD+e7eQENUI5O3Z4Zle66+qLIXCLVKVZpVO8ByoxQ=="="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1\IE]       "TotalProfiles"="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1\IE\Profiles]       "S-1-5-21-4016700205-1717049133-1125222536-1001"="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1\Installer]       "BundledFirefox"="REG_DWORD", 1       "BundledIe"="REG_DWORD", 1       "BundledNova"="REG_DWORD", 1       "nova_injected_dll_64_path2"="REG_SZ", "C:\Program Files\Common Files\349a1a44-ceb7-451f-9997-dd7477f45ad1.dll"       "nova_injected_dll_path2"="REG_SZ", "C:\Program Files\Common Files\d5acde99-785e-4caa-8aa4-e851ac15ca85.dll"    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1\ioUPoWrfkJe7INQ2JjIk3lj5g8fIGUBithGSrVThkUIk4Op/BtSRxHcNqsXR9K5qBSY4pmnKvbO0ys2oUIHOk7h0WhR+rAkZ60MDpnma0MqtmVdFIwXnXYnTCp8hfoZoKkTa7ELKc0qkbv1JtH22derNKnExmX0bagWmQ5DDfMQ=]       "AhkTeql9mYSc375tCGKJl5b/zLMS/2nFkHRu0OjtvE5WQQHbuinUMB+NNZJWoXqbDY8ayn4C6hok2wlv0H2awhvZMw3mmSy5gvsNZVQNQ6KIitQEUNuBeUXpMja74wBUPB2/iTlavAYeN6fJX8NC1PkkNvOrPoKEA+ifZqhVgUU="="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1-nv]       "ActiveAppId"="REG_SZ", "65841"    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1-nv\Code]       " { JavaScript removed, full log available on request } "    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1-nv\Installer]       "AdditionalInfo"="REG_SZ", "{"asw":[67108864, -1073733563, 0, 0],"browser_name":"nv","proc_id":"74FDF92C289D401FAB66AA1EFF6A43EDPI","os":{"name":"7","build":"7601","product":"Windows 7 Ultimate N","sp":"Service Pack 1","install_date":"1363633411"},"upi":"8655ebc447297b398088e5f1933333c9"}"       "Bic"="REG_SZ", "1448A05F416544FF9AC62E303F1D016AIE"       "CodeDownloadDomain"="REG_SZ", "http://js.newstatsdatanet.com"       "CodeDownloadFbDomain"="REG_SZ", "http://js.clientdemocloud.com"       "DefaultBrowser"="REG_SZ", "ie"       "ErrorsDomain"="REG_SZ", "http://errors.newstatsdatanet.com"       "FullVersion"="REG_SZ", "1.35.12.18"       "FullVersionForUrl"="REG_SZ", "1_35_12_18"       "OsName"="REG_SZ", "7"       "Params"="REG_SZ", "{   "source_id" : "001729",   "sub_id" : "0",   "uzid" : "0"}"       "SrcId"="REG_SZ", "001729"       "StatsDomain"="REG_SZ", "http://stats.newstatsdatanet.com"       "SubId"="REG_SZ", "0"       "Time"="REG_SZ", "1420545888"       "Verifier"="REG_SZ", "758c3e6688b4757089ac57d076cb8b31"       "ZData"="REG_SZ", "0"    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1-nv\Manifest]       "AddressbarURL"="REG_SZ", "NA"       "BgVersion"="REG_SZ", "1"       "ChangePrevious"="REG_SZ", "false"       "Description"="REG_SZ", "Cert_Change_test"       "DisableIe"="REG_SZ", "true"       "EnableSearchIE"="REG_SZ", "false"       "HomePageUrl"="REG_SZ", "NA"       "IsButtonEnabled"="REG_SZ", "false"       "Manifest"="REG_SZ", "NA"       "ModeType"="REG_SZ", "production"       "Name"="REG_SZ", "Ge-Force6.1"       "PluginsManifestVersion"="REG_SZ", "23"       "PublisherId"="REG_SZ", "31406"       "PublisherName"="REG_SZ", "iWebar6.1"       "RunInFrame"="REG_SZ", "false"       "SetNewTab"="REG_SZ", "false"       "ThanksUrl"="REG_SZ", "NA"       "UninstallerOfferAction"="REG_SZ", "NA"       "UninstallerOfferUrl"="REG_SZ", "NA"       "UpdateInterval"="REG_DWORD", 360       "Version"="REG_SZ", "33"    [HKEY_LOCAL_MACHINE\SOFTWARE\Ge-Force6.1-nv\Update]       "LastCheck"="REG_DWORD", 1420545896    [HKEY_LOCAL_MACHINE\SOFTWARE\InstalledBrowserExtensions\31406]       "65841"="REG_SZ", "Ge-Force6.1"    [HKEY_LOCAL_MACHINE\SOFTWARE\InstalledBrowserExtensions\31406\Status]       "Installed"="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION]       "(Default)"="REG_DWORD", 8000       "Ge-Force6.1-bg.exe"="REG_DWORD", 8000    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611581141}]       "(Default)"="REG_SZ", "55e064c969ff493a998a8dfbc6932f9d0065841"       "NoExplorer"="REG_DWORD", 1    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ge-Force6.1]       "CrAppId"="REG_SZ", "65841"       "CrPublisherId"="REG_SZ", "31406"       "DisplayIcon"="REG_SZ", "C:\Program Files\Ge-Force6.1\utils.exe"       "DisplayName"="REG_SZ", "Ge-Force6.1"       "DisplayVersion"="REG_SZ", "1.35.12.18"       "Publisher"="REG_SZ", "iWebar6.1"       "UninstallString"="REG_SZ", "C:\Program Files\Ge-Force6.1\Uninstall.exe /fcp=1 "    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures]       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1.job"="REG_BINARY, ................................       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1.job.fp"="REG_DWORD", 850236978       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.job"="REG_BINARY, ................................       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.job.fp"="REG_DWORD", 1881138757       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user.job"="REG_BINARY, ................................       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user.job.fp"="REG_DWORD", 1013598032       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.job"="REG_BINARY, ................................       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.job.fp"="REG_DWORD", -1002405745       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.job"="REG_BINARY, ................................       "ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.job.fp"="REG_DWORD", -433014623    [HKEY_CURRENT_USER\Software\AppDataLow\Software\Crossrider]       "Bic"="REG_SZ", "1448A05F416544FF9AC62E303F1D016AIE"       "Verifier"="REG_SZ", "758c3e6688b4757089ac57d076cb8b31"    [HKEY_CURRENT_USER\Software\AppDataLow\Software\Ge-Force6.1]       "ActiveAppId"="REG_SZ", "65841"    [HKEY_CURRENT_USER\Software\AppDataLow\Software\Ge-Force6.1\Installer]       "AdditionalInfo"="REG_SZ", "{"asw":[67108864, -1073733563, 0, 0],"browser_name":"ie","proc_id":"74FDF92C289D401FAB66AA1EFF6A43EDPI","os":{"name":"7","build":"7601","product":"Windows 7 Ultimate N","sp":"Service Pack 1","install_date":"1363633411"},"upi":"8655ebc447297b398088e5f1933333c9"}"       "CodeDownloadDomain"="REG_SZ", "http://js.newstatsdatanet.com"       "CodeDownloadFbDomain"="REG_SZ", "http://js.clientdemocloud.com"       "DefaultBrowser"="REG_SZ", "ie"       "ErrorsDomain"="REG_SZ", "http://errors.newstatsdatanet.com"       "FullVersion"="REG_SZ", "1.35.12.18"       "FullVersionForUrl"="REG_SZ", "1_35_12_18"       "OsName"="REG_SZ", "7"       "Params"="REG_SZ", "{   "source_id" : "001729",   "sub_id" : "0",   "uzid" : "0"}"       "SrcId"="REG_SZ", "001729"       "StatsDomain"="REG_SZ", "http://stats.newstatsdatanet.com"       "SubId"="REG_SZ", "0"       "Time"="REG_SZ", "1420545888"       "ZData"="REG_SZ", "0"    [HKEY_CURRENT_USER\Software\InstalledBrowserExtensions\iWebar6.1]       "65841"="REG_SZ", "Ge-Force6.1" 
Malwarebytes Anti-Malware log:

Malwarebytes Anti-Malwarewww.malwarebytes.orgScan Date: 1/6/2015Scan Time: 1:18:25 PMLogfile: mbamGeForce61.txtAdministrator: YesVersion: 2.00.4.1028Malware Database: v2015.01.06.03Rootkit Database: v2014.12.30.01License: FreeMalware Protection: DisabledMalicious Website Protection: DisabledSelf-protection: DisabledOS: Windows 7 Service Pack 1CPU: x86File System: NTFSUser: MalwarebytesScan Type: Threat ScanResult: CompletedObjects Scanned: 286646Time Elapsed: 3 min, 26 secMemory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: DisabledHeuristics: EnabledPUP: EnabledPUM: EnabledProcesses: 0(No malicious items detected)Modules: 0(No malicious items detected)Registry Keys: 22PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110611581141}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{44444444-4444-4444-4444-440644584441}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{55555555-5555-5555-5555-550655585541}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{66666666-6666-6666-6666-660666586641}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\55e064c969ff493a998a8dfbc6932f9d0065841.BHO.1, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110611581141}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\55e064c969ff493a998a8dfbc6932f9d0065841.BHO, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{11111111-1111-1111-1111-110611581141}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{11111111-1111-1111-1111-110611581141}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\CLSID\{22222222-2222-2222-2222-220622582241}, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox.1, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\55e064c969ff493a998a8dfbc6932f9d0065841.Sandbox, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110611581141}\INPROCSERVER32, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\Ge-Force6.1, Quarantined, [919abe3603863501e872461efc076d93], PUP.Optional.GeForce.A, HKLM\SOFTWARE\Ge-Force6.1-nv, Quarantined, [e84322d288017cba64f6b8ace71c33cd], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\31406, Quarantined, [a08bca2a49401e18ee5bdfbef112ad53], PUP.Optional.GeForce.A, HKCU\SOFTWARE\Ge-Force6.1-nv, Quarantined, [f239af450c7d67cf86d53b2932d1b14f], PUP.Optional.CrossRider.A, HKCU\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Quarantined, [0625787c414860d6a414bd16d82c4eb2], PUP.Optional.GeForce.A, HKCU\SOFTWARE\APPDATALOW\SOFTWARE\Ge-Force6.1, Quarantined, [bd6ed024e7a2ed495b01550faa59bc44], PUP.Optional.CrossRider.A, HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\31406, Quarantined, [79b24ca87c0def4799c41462f90ab44c], PUP.Optional.iWebar.A, HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\iWebar6.1, Quarantined, [e94251a315740c2af46cf96b7e850bf5], PUP.Optional.GeForce.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Ge-Force6.1, Quarantined, [7daed51f29603afcc7846df79271d12f], Registry Values: 0(No malicious items detected)Registry Data: 0(No malicious items detected)Folders: 14PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\defaults, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\defaults\preferences, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\userCode, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\locale, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\locale\en-US, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1, Quarantined, [7daed51f29603afcc7846df79271d12f], Files: 141PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1-bho.dll, Quarantined, [7faccc28bccd43f3b22430d4c33f4bb5], PUP.Optional.Nova.A, C:\Program Files\Common Files\d5acde99-785e-4caa-8aa4-e851ac15ca85.dll, Quarantined, [939836bee1a8d165c74ff70ad32f27d9], PUP.Optional.CrossRider.A, C:\Users\{username}\Desktop\Ge-Force6.1.exe, Quarantined, [83a8aa4abacff145ce823fbd6899cf31], PUP.Optional.Nova.A, C:\Program Files\349a1a44-ceb7-451f-9997-dd7477f45ad1\e47a8a43-e4c0-4f27-bd0f-5dd1389b7269.dll, Quarantined, [a68514e0d7b277bf43d3cb3647bbb050], PUP.Optional.Nova.A, C:\Program Files\Ge-Force6.1\5adc528a-61e1-4b50-8cff-5f1f4499c984.dll, Quarantined, [62c9e01495f4a98d1df9b24fee144eb2], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-4.exe, Quarantined, [fb30f8fc0c7d3006676f45bf719114ec], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.exe, Quarantined, [cf5cad4794f5e05616c0eb19fb0710f0], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.exe, Quarantined, [5ecd37bda5e48caafed85da791717090], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.exe, Quarantined, [111a0aea9eeb6acc31a510f417eb32ce], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1-bg.exe, Quarantined, [50dbc62ed8b1d85e399d2cd832d044bc], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1-buttonutil.exe, Quarantined, [9a91906456330e284d89ee16f40ef30d], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1-codedownloader.exe, Quarantined, [a289777d5d2c01355b7bf212639f54ac], PUP.Optional.CrossRider.A, C:\Program Files\Ge-Force6.1\utils.exe, Quarantined, [04278e6665243ff777c3c3968f7121df], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1, Quarantined, [64c74ca8bfca6acc2459552d60a352ae], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5, Quarantined, [a685f202f59462d4f588354dbf443ac6], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user, Quarantined, [ea41f5ff7e0b81b5423b7a0845be59a7], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6, Quarantined, [b17a2bc9602962d4b3ca2e54956ee31d], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7, Quarantined, [ba71ed07dcadda5c2d508bf7c83b04fc], PUP.Optional.CrossRider.T, C:\Windows\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-1.job, Quarantined, [f23928ccfa8fbc7ac14727b961a358a8], PUP.Optional.CrossRider.T, C:\Windows\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5.job, Quarantined, [b774599b543584b2e91f8e52f3111fe1], PUP.Optional.CrossRider.T, C:\Windows\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-5_user.job, Quarantined, [d754757fa8e170c694741bc5d52fa15f], PUP.Optional.CrossRider.T, C:\Windows\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-6.job, Quarantined, [eb404ca891f88bab55b3d30d9b69cb35], PUP.Optional.CrossRider.T, C:\Windows\Tasks\ec74adc8-5a43-4eb7-80dd-a2bd4f441756-7.job, Quarantined, [2ffc3eb65f2a74c2f414bf2150b45da3], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome.manifest, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\install.rdf, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\3c45ba7a55585b0793f59063dfa6e240.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\42d39d470e75cbb2a86244c210d96781.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\7fc87a0aad4532af9eb0a8fd980e3c6a.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\8452c04e17ac8aca9096e389c0269dc8.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\8643cea05f0815294c521f8cd3bbcc60.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\a369c161f2a0c2ed867e1b13108e02ac.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\background.html, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\browser.xul, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\dialog.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\ffCoreFilesIndex.txt, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\options.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\options.xul, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\search_dialog.xul, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\20d38f5e9b94bf3d76d326491102d745.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\260c4ae801f2dc861d02dbf277be6008.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\44e5cceb0b5fa7c9e20a38e405c1e3d3.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\4d1fcb96be847081ef754127ca9519af.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\5076514c0423d62133b33002af0dcfc7.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\51ad061ef25ba78edabaa339bbb516b4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\713989b4e637642f08a7b813d92c7b80.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\8789cc9ad3051f0aa4f265412bd3f9a2.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\b997e7c316063a32e71c8fede015d1d1.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\c3160f3d58000bdc67a32d6d71f19414.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\c4bdc535a5a9cc621497d8a99c023e61.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\c6d2fd8d5b604773705e521ef8c48ce2.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\cdbabd9490a53d9d647fd0cac0d4832c.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\d669959e53804a4f334b07192f83bc6a.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\d9127107bcbc01250cd6e1d67b265013.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\api\ee26ec80f09bab406a11616dba2d7415.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\7c35264a855ceab0f2b59061f2bf0127.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\01140aae504507218b5ce162ef766b6d.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\1755193fbe82c50545286b213c68899f.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\2381b62462f0b22023d960697fb61c27.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\2825af1ad9e0d4858126776602563db1.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\2da9f297988fbf2879677dc66bbc7e1a.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\3aaa713f69b7a6aa0789e458b64112a4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\4149c0edae182c3e0b1d889512718a84.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\544a37781f7552933f1ca23e11cbd21b.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\5595b7f761336ab36d69add08f81b0bc.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\71aef3b9ade44ebdb468e40396d305a4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\7e85f9fe79c9d0089ac8b543d4e1d3b4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\9ceac21dcf3e04b3231cbac64443f52a.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\a79ef12def928cf336a44063c2562889.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\ad5a204a89df285b950c293b7e34991b.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\b7cea2b8c62a31becdcc883063f759e7.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\bbc52470ff2f2622e177f2e5c060431f.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\c7f5ec9fb5427c8996b4dac230ace54f.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\e9c99cd732c0d8cecefcce67bcd993b4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\fd12818b51969a83c477476e1e2abadc.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\chrome\content\core\installer.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\defaults\preferences\prefs.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\manifest.xml, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins.json, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\1.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\102.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\104.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\123.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\13.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\14.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\16.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\17.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\177.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\178.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\179.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\180.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\182.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\183.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\195.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\207.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\21.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\22.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\220.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\221.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\223.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\246.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\253.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\262.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\263.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\273.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\28.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\281.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\345.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\354.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\4.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\47.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\64.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\7.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\72.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\78.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\9.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\91.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\93.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\plugins\98.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\userCode\background.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\extensionData\userCode\extension.js, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\locale\en-US\translations.dtd, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\button1.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\button2.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\button3.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\button4.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\button5.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\crossrider_statusbar.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\icon128.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\icon16.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\icon24.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\icon48.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\panelarrow-up.png, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\popup.html, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\skin.css, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.CrossRider.A, C:\Users\{username}\AppData\Roaming\Mozilla\Firefox\Profiles\6qeoodjs.default-1401006518835\extensions\antionechristie@aol.com\skin\update.css, Quarantined, [0823f7fdc5c43ff745ed550a21e2c937], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\background.html, Quarantined, [7daed51f29603afcc7846df79271d12f], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\bgNova.html, Quarantined, [7daed51f29603afcc7846df79271d12f], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\ec74adc8-5a43-4eb7-80dd-a2bd4f441756.xpi, Quarantined, [7daed51f29603afcc7846df79271d12f], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1-buttonutil.dll, Quarantined, [7daed51f29603afcc7846df79271d12f], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Ge-Force6.1.ico, Quarantined, [7daed51f29603afcc7846df79271d12f], PUP.Optional.GeForce.A, C:\Program Files\Ge-Force6.1\Uninstall.exe, Quarantined, [7daed51f29603afcc7846df79271d12f], Physical Sectors: 0(No malicious items detected)(end)
As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.

We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
Link to post
Share on other sites

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.