Dads laptop this time, I know for a fact that he watched porn on it and the home page was a porn site....
Here's malwarebyte's log.
Here's malwarebyte's log.
Code:
Malwarebytes' Anti-Malware 1.39
Database version: 2531
Windows 6.0.6001 Service Pack 1
7/30/2009 2:49:44 PM
mbam-log-2009-07-30 (14-49-44).txt
Scan type: Full Scan (C:\|D:\|E:\|)
Objects scanned: 248063
Time elapsed: 43 minute(s), 44 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 32
Registry Values Infected: 2
Registry Data Items Infected: 1
Folders Infected: 102
Files Infected: 232
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{22c12739-c111-44c6-9bb7-f335c2a9be2a} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{edb1a56e-2224-4c79-a4bd-42a39c6e4608} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{27ff1ee8-8ccc-49e1-b801-f212e3744e80} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1d975a5e-1126-4f46-a423-41781934a63e} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\AIMActiveXDLL.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Funband Serach (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Funband Serach (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1fb52ab3-5987-45a2-85e0-f3ec30dddc29}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{16b6279b-9ff5-41fb-8bf9-404324f5dd1f}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c5096216-7703-409e-b85a-8a6ee7395128}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\JuicyAccess Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\Outlook\Addins\OEActiveXDLL.DesktopOEAddin1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
C:\Program Files (x86)\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\Avatar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\Message (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\Notifier (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\mywebsearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files (x86)\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\funwebproducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files (x86)\funwebproducts\screensaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files (x86)\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\JuicyAccess Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\juicyaccess toolbar\4.1.4.20920 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\juicyaccess toolbar\4.1.4.20920\Cache (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\juicyaccess toolbar\4.1.4.20920\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\juicyaccess toolbar\4.1.4.20920\Icons (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\DoubleD\juicyaccess toolbar\4.1.4.20920\Skins (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\media access startup\1.5.0.850\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\internet saving optimizer\3.4.0.4340\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Program Files (x86)\System Search Dispatcher (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\system search dispatcher\1.3.0.840 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files (x86)\system search dispatcher\1.3.0.840\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\ProgramData\{5EA804FD-5E7A-4405-A638-CAFBD22489D9} (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\15D3A7BB (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\15D3A7BB\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\24618E3F (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\24618E3F\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\29A73ACD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\29A73ACD\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\2A3DCDAF (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\2A3DCDAF\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\36F1A852 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\36F1A852\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\3FA86A06 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\3FA86A06\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\4DAC9037 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\4DAC9037\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\4F73E13A (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\4F73E13A\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\50EF6DF6 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\50EF6DF6\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\51B9750F (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\51B9750F\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\6216A4BD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\6216A4BD\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\62404B3E (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\62404B3E\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\628759C1 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\628759C1\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\69E6D3E5 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\69E6D3E5\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\879169BE (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\879169BE\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\9B242A8C (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\9B242A8C\611F5CA (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\A26F7F7 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\A26F7F7\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\A53562F1 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\A53562F1\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\B3AC8875 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\B3AC8875\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\B75FA91E (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\B75FA91E\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\BED3DEFB (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\BED3DEFB\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C3C6C2CD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C3C6C2CD\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C41B8701 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C41B8701\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C90EEF64 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\C90EEF64\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\CC8FDF08 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\CC8FDF08\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\CE8732D (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\CE8732D\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\D5797E3B (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\D5797E3B\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\EB91CE86 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\EB91CE86\3E688669 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\F0A80E14 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\F0A80E14\5702F56C (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\mFileBagIDE.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\mfilebagide.dll\bag (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\mIDEFunc.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\mIDEWriteReg.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\programdata\{5ea804fd-5e7a-4405-a638-cafbd22489d9}\OFFLINE\mMSI.dll (Adware.DoubleD) -> Quarantined and deleted successfully.