[code] HitmanPro 3.7.14.280 www.hitmanpro.com Computer name . . . . : KONRAD-KOMPUTER Windows . . . . . . . : 6.1.1.7601.X64/4 User name . . . . . . : Konrad-Komputer\Konrad UAC . . . . . . . . . : Enabled License . . . . . . . : Free Scan date . . . . . . : 2016-10-03 21:43:33 Scan mode . . . . . . : Normal Scan duration . . . . : 1m 19s Disk access mode . . : Direct disk access (SRB) Cloud . . . . . . . . : Internet Reboot . . . . . . . : No Threats . . . . . . . : 2 Traces . . . . . . . : 111 Objects scanned . . . : 1 254 568 Files scanned . . . . : 32 662 Remnants scanned . . : 250 539 files / 971 367 keys Malware _____________________________________________________________________ C:\Users\Konrad\Downloads\Adobe-Reader-XI-21590-dp.exe Size . . . . . . . : 983 624 bytes Age . . . . . . . : 110.0 days (2016-06-15 20:40:34) Entropy . . . . . : 7.9 SHA-256 . . . . . : 0FE12CB4C44CBCD82393393B28071CC02E98CA154C5FEAE4BA0363184BA1B42A Product . . . . . : Rukimakin Publisher . . . . : Description . . . : Rukimakin Setup Version . . . . . : 3.7.4.5 RSA Key Size . . . : 2048 LanguageID . . . . : 0 Authenticode . . . : Valid > HitmanPro . . . . : App/InstCore-DI Fuzzy . . . . . . : 101.0 References HKU\S-1-5-21-3340888716-2642510718-1188868624-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache\C:\Users\Konrad\Downloads\Adobe-Reader-XI-21590-dp.exe C:\Users\Konrad\Downloads\Samsung-PC-Studio-18722-dp.exe Size . . . . . . . : 980 199 bytes Age . . . . . . . : 130.4 days (2016-05-26 12:27:09) Entropy . . . . . : 7.9 SHA-256 . . . . . : 36B3188FC6B9C72EAE64D48F6AC515960F2F3C34E40FCD9D112F67275293DA51 Product . . . . . : Penota Publisher . . . . : Sonepopi Description . . . : Penota Setup Version LanguageID . . . . : 0 > Bitdefender . . . : Application.Bundler.InstallMonster.GA Fuzzy . . . . . . : 111.0 Potential Unwanted Programs _________________________________________________ HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}\ (ReimageRepair) HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}\ (ReimageRepair) HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_ISAFENETFILTER\ (NationZoom) HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_ISAFENETFILTER\ (NationZoom) HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ISAFENETFILTER\ (NationZoom) Cookies _____________________________________________________________________ C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Cookies\Low\70EV03SA.txt C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Cookies\Low\LXY1QXRQ.txt C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:abmr.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:acuityplatform.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ad.360yield.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adadvisor.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adaptv.advertising.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adbrn.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:addthis.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adfarm1.adition.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adform.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adformdsp.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adgrx.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adingo.jp C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adnxs.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.avocet.io C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.businessclick.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.chargeads.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.kiosked.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.programattik.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ads.stickyadstv.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adscale.de C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adsrvr.org C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adsymptotic.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adtech.de C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adtechus.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:advertising.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:adx.adform.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:agkn.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:angsrvr.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:atdmt.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:atemda.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:basebanner.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:bidr.io C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:bidswitch.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:bluekai.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:bs.serving-sys.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:c.appier.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:casalemedia.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:chango.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:connexity.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:contextweb.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:crwdcntrl.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ctnsnet.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:demdex.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:domdex.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:dotomi.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:doubleclick.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:dpm.demdex.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:erne.co C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:everesttech.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:eyereturn.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:eyeviewads.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:flashtalking.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:go.sonobi.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:googleadservices.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:gssprt.jp C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:gwallet.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ibeu2.mookie1.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ibillboard.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ih.adscale.de C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:kau.li C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:krxd.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:lijit.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:liverail.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:m6r.eu C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:match.adsby.bidtheatre.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:match.rundsp.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:mathtag.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:mediaplex.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:ml314.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:mookie1.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:mxptint.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:nexac.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:openx.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:owneriq.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:pixel.rubiconproject.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:pubmatic.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:revsci.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:rfihub.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:rlcdn.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:rubiconproject.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:scorecardresearch.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:server.adformdsp.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:server.cpmstar.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:serving-sys.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:simpli.fi C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:sitescout.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:smartadserver.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:swid.switchads.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:sxp.smartclip.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tap2-cdn.rubiconproject.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tapad.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tidaltv.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:track.adform.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:track.omgpl.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tradedoubler.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tribalfusion.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:tubemogul.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:turn.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:w55c.net C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:wtp101.com C:\Users\Konrad\AppData\Roaming\Mozilla\Firefox\Profiles\5zdmiisu.default-1475270105738\cookies.sqlite:www.googleadservices.com [/code]