Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- mbam-check result log version: 2.3.2.0
- ========================================
- User Account type: Administrator
- DomainComputer: No
- OS: Windows 7 Service Pack 1 Service Pack 1 64 bit Operating System
- Current Version and Build: 6.1.7601
- Malwarebytes Anti-Malware: 2.2.1.1043
- Installed On: 2016/09/25
- Malware Database: 2016.10.07.05
- Rootkit Database: 2016.09.26.02
- Remediation Database: 2016.09.21.01
- IP Database: 2016.10.06.01
- Domain Database: 2016.10.06.12
- License: Premium
- Malware Protection: 4 (The service is running.)
- Malicious Website Protection: 4 (The service is running.)
- Chameleon: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
- Log Created: 2016/10/07 16:00:06
- User Information for Local System:
- ===========================================
- User Account: Administrator
- Account Level: Admin
- User Account: Guest
- Account Level: Guest
- User Account: Miles
- Account Level: Admin
- Total # of user entries: 3
- UAC Settings:
- ===================
- SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
- DWORD 1 Status: ON
- SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
- DWORD 5 Status: ON
- AntiVirus Information:
- ===================
- AntiVirus Software Installed: "ESET Smart Security 9.0.386.0"
- FireWall Information:
- ===================
- 3rd Party Firewall Software Installed: "ESET Personal firewall"
- AntiSpyware Information:
- ===================
- AntiSpyware Software Installed: "Windows Defender"
- AntiSpyware Software Installed: "ESET Smart Security 9.0.386.0"
- Machine Information
- ===============================================
- Machine ID: dedb6bd8e60ffe22218c52109028a0ff55b3908a
- Installation Token: Bzv1BxzzNCviXZF_r5cr1474792834
- System has been up for: 53.2211 Hours
- Current Date: 2016-Oct-07 15:00:07.912781
- Date Booted: 2016-Oct-05 10:00:07.912781
- Detection and Protection Settings
- ===============================================
- Use Advanced Heuristics Engine (Shuriken): true
- Scan for rootkits: true
- Scan within archives: true
- PUP (Potentially Unwanted Program) detections: Treat Detections as Malware
- PUM (Potentially Unwanted Modification) detections: Treat Detections as Malware
- Compatibility Flag Settings:
- =================================
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
- Malwarebytes Anti-Malware Shell Extension Block Check:
- ======================================================
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:
- MBAM Startup Entries:
- =====================
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
- Malwarebytes Anti-Malware Service and Driver Status:
- =======================================================
- --------------Driver File Info:--------------
- C:\Windows\system32\drivers\mbam.sys
- File Size: 27008 BYTES FileVersion: 0.1.16.0 MD5: [78bff5425e044086e74e78650a359fbb]
- C:\Windows\system32\drivers\mwac.sys
- File Size: 64896 BYTES FileVersion: 1.0.6.0 MD5: [452acb7a9914398d9e18cccffcf92208]
- C:\Windows\system32\drivers\mbamswissarmy.sys
- File Size: 192216 BYTES FileVersion: 0.3.0.4 MD5: [78488af2ab2111d67b3c4044707a519b]
- C:\Windows\system32\drivers\mbamchameleon.sys
- File Size: 140672 BYTES FileVersion: 1.1.22.0 MD5: [1239597bab7eed2bb16d035af87e65d9]
- --------------MBAMProtector:--------------
- Type: 2
- State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- --------------MBAMService:--------------
- Type: 16
- State: 4 (The service is running.)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- --------------MBAMScheduler:--------------
- Type: 16
- State: 4 (The service is running.)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- --------------MBAMChameleon:--------------
- Type: N/A
- State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
- WIN32_EXIT_CODE: N/A
- SERVICE_EXIT_CODE: N/A
- CHECKPOINT: N/A
- WAIT_HINT: N/A
- --------------MBAMWebAccessControl:--------------
- Type: 2
- State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- Required Dependencies:
- ======================
- --------------BFE:--------------
- Type: 32
- State: 4 (The service is running.)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
- DisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001
- Group REG_SZ NetworkProvider
- ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
- Description REG_SZ @%SystemRoot%\system32\bfe.dll,-1002
- ObjectName REG_SZ NT AUTHORITY\LocalService
- ErrorControl REG_DWORD 1
- Start REG_DWORD 2
- Type REG_DWORD 32
- DependOnService REG_MULTI_SZ RpcSs
- ServiceSidType REG_DWORD 3
- RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege
- FailureActions REG_BINARY Binary Data
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
- ServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dll
- ServiceDllUnloadOnStop REG_DWORD 1
- ServiceMain REG_SZ BfeServiceMain
- --------------fltmgr:--------------
- Type: 2
- State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
- AttachWhenLoaded REG_DWORD 1
- DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001
- Group REG_SZ FSFilter Infrastructure
- ImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sys
- Description REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000
- ErrorControl REG_DWORD 3
- Start REG_DWORD 0
- Tag REG_DWORD 1
- Type REG_DWORD 2
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum
- 0 REG_SZ Root\LEGACY_FLTMGR\0000
- Count REG_DWORD 1
- NextInstance REG_DWORD 1
- C:\Windows\system32\drivers\fltmgr.sys
- File Size: 289664 BYTES FileVersion: 6.1.7601.17514 MD5: [da6b67270fd9db3697b20fce94950741]
- C:\Windows\SysWOW64\olepro32.dll
- File Size: 90624 BYTES FileVersion: 6.1.7601.23452 MD5: [307a6d4f7cd94e384ecff05afa30b42c]
- MBAM Registry Settings and License Info:
- ========================================
- --------------Settings:--------------
- Advanced:
- AutomaticQuarantine: false
- AutostartProtection: false
- LimitedMode: false
- StartSilentMode: false
- StartupDelay: -15
- ApplicationState:
- First-Run-After-Installation: false
- General:
- DaysUntilNotifyExpiration: 5
- Language: en
- RightClickAccess: true
- SilentErrors: false
- Logging:
- ExportLog: true
- Marketing:
- LastPostScanMarketingIndex: 4
- Notification:
- ProtectionTray:
- DisplayMilliseconds: 3000
- ScanHistory:
- Duration_Complete: 19125
- Duration_Driver: 0
- Duration_Filesystem: 31
- Duration_Heuristics: 338830
- Duration_Loading: 0
- Duration_MasterBootRecord: 0
- Duration_Memory: 40000
- Duration_PreScan: 8735
- Duration_Registry: 8870
- Duration_Sector: 0
- Duration_Startup: 29006
- ItemCount_Complete: 243460
- ItemCount_Driver: 0
- ItemCount_Filesystem: 49104
- ItemCount_Heuristics: 15455
- ItemCount_Loading: 0
- ItemCount_MasterBootRecord: 0
- ItemCount_Memory: 2797
- ItemCount_PreScan: 0
- ItemCount_Registry: 609
- ItemCount_Sector: 0
- ItemCount_Startup: 4123
- LastRemovalRequiredDOR: false
- LastScanDateEpoch: 1475822206002
- LastScanType: 1 (Threat Scan)
- QuarantineCompletedCount: 2
- Update:
- LastUpdate: 2016-10-07T12:56:03
- NotifyInstallReady: true
- NotifyOutdatedDatabase: 7
- ProxyPassword:
- ProxyPort: 0
- ProxyServer:
- ProxyUsername:
- UseProxy: false
- UseProxyAuthentication: false
- CheckProgramUpdates: true
- --------------Account:--------------
- Account Status: Premium
- Expiration Time: 2016/10/09 08:40:34
- Activation Time: 2016/09/25 09:40:46
- Trial Used: true
- --------------Access Policies:--------------
- Scheduler Queue:
- ================
- tasks:
- 5211e860-107a-4148-9c4b-e1f8c72ef5fe:
- parameters:
- AutoDelete: false
- CheckForUpdatesBeforeScanStart: true
- ProcessLaunchedFromScheduler: true
- ScanConfig:
- ExportLog: true
- FileSystemOption: true
- Quarantine: Prompt
- RebootSystemWhenMalwareDetected: false
- ScanArchives: true
- ScanExtra: true
- ScanHeuristic: true
- ScanMemoryObjects: true
- ScanPUM: Treat Detections as Malware
- ScanPUP: Treat Detections as Malware
- ScanRegistry: true
- ScanRootkits: false
- ScanSource: 1
- ScanStartup: true
- ScanTargets:
- ScanType: 1 (Threat Scan)
- Silent: true
- StartTaskFromSystemAccount: false
- TaskType: 0
- triggers:
- 3a9e257f-3fa0-4b19-bf3f-e7eb0492a36f:
- dateinterval: 1:0:0 (Days:Months:Years)
- lastscheduled: Fri, 07 Oct 2016 07:36:17.579705 +0100
- lasttriggered: Fri, 07 Oct 2016 07:36:17.579705 +0100
- nextscheduled: Sat, 08 Oct 2016 02:17:26 +0100
- recovery: 23:00:00 (Hours:Minutes:Seconds)
- start: Mon, 26 Sep 2016 02:21:11 +0100
- timeinterval: 00:00:00 (Hours:Minutes:Seconds)
- type: Daily
- uuid: 3a9e257f-3fa0-4b19-bf3f-e7eb0492a36f
- type: scan
- uuid: 5211e860-107a-4148-9c4b-e1f8c72ef5fe
- ff973fc8-ea61-4bf5-b912-4d69105e8731:
- parameters:
- NotifyWhenUpdateCompletes: false
- ProcessLaunchedFromScheduler: true
- TaskType: 3
- triggers:
- 4a968b31-6dff-4b6c-908b-19fe5abc240d:
- dateinterval: 0:0:0 (Days:Months:Years)
- lastscheduled: Fri, 07 Oct 2016 15:44:02.988590 +0100
- lasttriggered: Fri, 07 Oct 2016 15:44:02.988590 +0100
- nextscheduled: Fri, 07 Oct 2016 16:01:55.985453 +0100
- recovery: 00:00:00 (Hours:Minutes:Seconds)
- start: Sun, 25 Sep 2016 09:57:04.985453 +0100
- timeinterval: 01:00:00 (Hours:Minutes:Seconds)
- type: Hourly
- uuid: 4a968b31-6dff-4b6c-908b-19fe5abc240d
- type: update
- uuid: ff973fc8-ea61-4bf5-b912-4d69105e8731
- Pending File Rename Operations:
- ================================
- If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.
- MBAMProtector Registry Values:
- ==============================
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector
- Type REG_DWORD 2
- Start REG_DWORD 3
- ErrorControl REG_DWORD 1
- ImagePath REG_EXPAND_SZ \??\C:\Windows\system32\drivers\mbam.sys
- Group REG_SZ FSFilter Anti-Virus
- DependOnService REG_MULTI_SZ FltMgr
- WOW64 REG_DWORD 1
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances
- DefaultInstance REG_SZ MBAMProtector Instance
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector Instance
- Altitude REG_SZ 328800
- Flags REG_DWORD 0
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Parameters
- PassThruFile REG_SZ mbampt.exe
- ProductPath REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Enum
- 0 REG_SZ Root\LEGACY_MBAMPROTECTOR\0000
- Count REG_DWORD 1
- NextInstance REG_DWORD 1
- MBAMService Registry Values:
- ============================
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
- Type REG_DWORD 16
- Start REG_DWORD 2
- ErrorControl REG_DWORD 1
- ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
- DependOnService REG_MULTI_SZ MBAMProtector
- WOW64 REG_DWORD 1
- ObjectName REG_SZ LocalSystem
- Description REG_SZ Malwarebytes Anti-Malware service
- DelayedAutostart REG_DWORD 0
- MBAMScheduler Registry Values:
- ==============================
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMScheduler
- Type REG_DWORD 16
- Start REG_DWORD 2
- ErrorControl REG_DWORD 1
- ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
- WOW64 REG_DWORD 1
- ObjectName REG_SZ LocalSystem
- Description REG_SZ Malwarebytes Anti-Malware scheduler
- Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
- ===============================================================================
- --------------TERMService:--------------
- Type: 32
- State: 1 (The service is not running.) (State is stopped)
- WIN32_EXIT_CODE: 1077
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- TermService Start is set to: 3 (Manual Startup)
- Proxy Status: No proxy is Set
- LAN Settings:
- =============
- only 'Automatically detect settings' is selected
- SystemPartition:
- ================
- HKEY_LOCAL_MACHINE\SYSTEM\Setup\
- SystemPartition REG_SZ \Device\HarddiskVolume2
- Balloon Tips Status:
- ====================
- Enabled
- Time Format Settings:
- =====================
- Should be:
- h:mm:ss tt
- AM
- PM
- :
- Currently:
- REG_SZ HH:mm:ss
- REG_SZ AM
- REG_SZ PM
- REG_SZ :
- Language and Regional Settings:
- ===============================
- ACP: Language is English (United States)
- MACCP: Language is English (United States)
- OEMCP: 850 Please refer to this link for details:[url=http://technet.microsoft.com/en-us/library/cc775938(WS.10).aspx] Here [/url]
- Startup Folders for Error_Expanding_Variables Check:
- ====================================================
- All Users Startup Folder Exists.
- Current User's Startup Folder Exists.
- Context Menu Entries:
- =====================
- HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\MBAMShlExt
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CLSID
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CurVer
- (Default): REG_SZ MBAMExt.MBAMShlExt.1
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1\CLSID
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}
- (Default): REG_SZ IMBAMShlExt
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\ProxyStubClsid32
- (Default): REG_SZ {00020424-0000-0000-C000-000000000046}
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\TypeLib
- (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- Version REG_SZ 1.0
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\InprocServer32
- (Default): REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
- ThreadingModel REG_SZ Apartment
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\ProgID
- (Default): REG_SZ MBAMExt.MBAMShlExt.1
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\TypeLib
- (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\VersionIndependentProgID
- (Default): REG_SZ MBAMExt.MBAMShlExt
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
- (Default): REG_SZ MBAMExt 1.0 Type Library
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win32
- (Default): REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
- (Default): REG_SZ 0
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
- (Default): REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
- (Default): REG_SZ MBAMExt 1.0 Type Library
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win32
- (Default): REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
- (Default): REG_SZ 0
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
- (Default): REG_SZ C:\Program Files (x86)\Malwarebytes Anti-Malware
- List of MBAM Related Directories:
- =================================
- C:\Program Files (x86)\Malwarebytes Anti-Malware\
- 7z.dll File Size: 922080 BYTES FileVersion: 9.20.0.0 MD5: [14079a2411fa2bb7f78bc100c92bbcc2]
- changes.txt File Size: 1596 BYTES FileVersion: N/A MD5: [09371a0c8bd9e9554571da257d554d3e]
- cloud-enumeration.dll File Size: 287200 BYTES FileVersion: 1.0.1.0 MD5: [84ac20b9327dbd4d94039be93384dad5]
- cloud.dll File Size: 352736 BYTES FileVersion: 1.0.1.0 MD5: [5659790448fb136a80be407c4a0dbb50]
- license.rtf File Size: 38870 BYTES FileVersion: N/A MD5: [ed36ea764c3a452334416713c8cf1eed]
- master.conf File Size: 1258 BYTES FileVersion: N/A MD5: [9702ca5e82d3756c6d8af34a2ababaea]
- mbam.dll File Size: 609760 BYTES FileVersion: 1.0.40.0 MD5: [c4a51c1cb174066fdaf383c09f0d574b]
- mbam.exe File Size: 9926112 BYTES FileVersion: 2.3.173.0 MD5: [8e98e3ec16d2641005b4748cd330fb45]
- mbamcore.dll File Size: 2127840 BYTES FileVersion: 1.3.24.0 MD5: [63ce66ef2b30a09308eafe29baec6a75]
- mbamdor.exe File Size: 55264 BYTES FileVersion: 1.0.2.0 MD5: [297c1bdcc26adb339d4c0f0550e434d6]
- mbamext.dll File Size: 431072 BYTES FileVersion: 3.1.1.0 MD5: [67a6ec1735c77c2623b49cc1f284c8a0]
- mbampt.exe File Size: 40928 BYTES FileVersion: 1.0.57.0 MD5: [04d0b942b0ad4a5d2eee45d9b7d6545b]
- mbamresearch.exe File Size: 1949152 BYTES FileVersion: 1.1.1.0 MD5: [e601f9ca6a72493bc8185bedda17eee8]
- mbamscheduler.exe File Size: 1514464 BYTES FileVersion: 3.1.7.0 MD5: [9611577752e293259c7dce19e9026362]
- mbamservice.exe File Size: 1136608 BYTES FileVersion: 3.2.21.0 MD5: [f1a89a34388b5626f1548d393b23ecb1]
- mbamsrv.dll File Size: 3863008 BYTES FileVersion: 2.1.10.0 MD5: [a33629c51295570fe9f252a39ddcea93]
- msvcp100.dll File Size: 422880 BYTES FileVersion: 10.0.40219.325 MD5: [53a5f1b984f585997968cd0dfb27400c]
- msvcr100.dll File Size: 775648 BYTES FileVersion: 10.0.40219.325 MD5: [dc0213118e61e5ca865092109860792c]
- Qt5Core.dll File Size: 4646880 BYTES FileVersion: 5.4.1.0 MD5: [91c7c50b2a290b82604163b5a679ea24]
- Qt5Gui.dll File Size: 4640224 BYTES FileVersion: 5.4.1.0 MD5: [1d59b3e632aef8e24cc1707fd411113b]
- Qt5Network.dll File Size: 673248 BYTES FileVersion: 5.4.1.0 MD5: [e089635a8cbed229ec30cdbe29748c08]
- Qt5Widgets.dll File Size: 4474848 BYTES FileVersion: 5.4.1.0 MD5: [33881dda0ccc3898facadf1e4d1df237]
- unins000.dat File Size: 37316 BYTES FileVersion: N/A MD5: [4b1f72bc26f598179473bab19606dcb1]
- unins000.exe File Size: 720085 BYTES FileVersion: 51.52.0.0 MD5: [f1505d347325c77e3eeef418495e1f57]
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon\Windows
- chameleon.chm File Size: 235882 BYTES FileVersion: N/A MD5: [c4190b71f037714aa77aba294434ba5b]
- firefox.com File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- firefox.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- firefox.pif File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- firefox.scr File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- iexplore.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- mbam-chameleon.com File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- mbam-chameleon.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- mbam-chameleon.pif File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- mbam-chameleon.scr File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- mbam-killer.exe File Size: 1504736 BYTES FileVersion: 3.0.15.0 MD5: [b79d3c2fca170c4dd15d7316067a1fd3]
- rundll32.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- svchost.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- windows.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- winlogon.exe File Size: 960480 BYTES FileVersion: 3.1.29.0 MD5: [f86a4139730504047f52ccfb8c47e9f5]
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\imageformats
- qgif.dll File Size: 29664 BYTES FileVersion: 5.4.1.0 MD5: [0b528e4c9bbd9efdea9bc8ac6a967d6d]
- qico.dll File Size: 29664 BYTES FileVersion: 5.4.1.0 MD5: [7b36d94db81b8b0dfd9323228dd96b51]
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\Languages
- lang_ar.qm File Size: 87404 BYTES FileVersion: N/A MD5: [269d3107ca72a75fe154ce4ff718af50]
- lang_bg.qm File Size: 133911 BYTES FileVersion: N/A MD5: [376ad1e4ad206bc32da09b12b564ecc4]
- lang_ca.qm File Size: 92634 BYTES FileVersion: N/A MD5: [2d35f58b0c2db44ad2717f4a4526a085]
- lang_cs.qm File Size: 105193 BYTES FileVersion: N/A MD5: [2c191de828d5e05fd7afa27ee1245023]
- lang_da.qm File Size: 88039 BYTES FileVersion: N/A MD5: [f8a4941d5d388160d252832a77ab584f]
- lang_de.qm File Size: 139276 BYTES FileVersion: N/A MD5: [b55f37281f0fcadfae67aecf0bf4cca5]
- lang_el.qm File Size: 126897 BYTES FileVersion: N/A MD5: [bd671253e071bac626beea63393abcda]
- lang_en.qm File Size: 3081 BYTES FileVersion: N/A MD5: [e2790b3cd9fdd9d3e266e9623fe477af]
- lang_es.qm File Size: 138468 BYTES FileVersion: N/A MD5: [cc4f3aab63d933d5964e2bba62df4277]
- lang_et.qm File Size: 107794 BYTES FileVersion: N/A MD5: [aa4845cd64b20377cea0ebc66eed4a42]
- lang_fi.qm File Size: 130793 BYTES FileVersion: N/A MD5: [00653d1fb2f790817aef991025c176aa]
- lang_fr.qm File Size: 141996 BYTES FileVersion: N/A MD5: [e06db8ef6b826b75ec5859913651ed44]
- lang_he.qm File Size: 98928 BYTES FileVersion: N/A MD5: [2954e902664f2e129f8a8d8238e90552]
- lang_hu.qm File Size: 132359 BYTES FileVersion: N/A MD5: [6bf3b8c78fd393ef2811a19742518b9a]
- lang_id.qm File Size: 129135 BYTES FileVersion: N/A MD5: [6be058072a90897595c6f097a3caa797]
- lang_it.qm File Size: 134154 BYTES FileVersion: N/A MD5: [183990148beec433023688db65a7bf2e]
- lang_ja.qm File Size: 73762 BYTES FileVersion: N/A MD5: [f6bfd643cb92fa760ae6ec64344ee7e1]
- lang_ko.qm File Size: 85731 BYTES FileVersion: N/A MD5: [53b5a94eb309d69993a5bc3cd43a85e4]
- lang_lt.qm File Size: 90799 BYTES FileVersion: N/A MD5: [eecd8edca1fb068ad3bd88aa711bdae2]
- lang_lv.qm File Size: 90659 BYTES FileVersion: N/A MD5: [683950904e725821740217824df440ff]
- lang_nl.qm File Size: 133514 BYTES FileVersion: N/A MD5: [442a6cf7e07e6f676d8b5ae41637549c]
- lang_no.qm File Size: 129833 BYTES FileVersion: N/A MD5: [8949e21e367e5a32ca9f36d8d22c9771]
- lang_pl.qm File Size: 133827 BYTES FileVersion: N/A MD5: [48379f4ac164adfc8d448bf53c8e2df8]
- lang_pt_BR.qm File Size: 136918 BYTES FileVersion: N/A MD5: [b1ea2002cf5362b24ca0a026f448e3f1]
- lang_pt_PT.qm File Size: 136982 BYTES FileVersion: N/A MD5: [5e23b66cb6d8d9894b991cc8f33658af]
- lang_ro.qm File Size: 90458 BYTES FileVersion: N/A MD5: [bcf524020255c4f7a6fdbae8df2bfe81]
- lang_ru.qm File Size: 137874 BYTES FileVersion: N/A MD5: [5e28394fbd12f21301e2b7e1a9dbac94]
- lang_sk.qm File Size: 131080 BYTES FileVersion: N/A MD5: [68e0e95e7131d101188a57e3a413dee5]
- lang_sl.qm File Size: 107631 BYTES FileVersion: N/A MD5: [83755001a3f1bd527d0b4b7a77d0b37d]
- lang_sv.qm File Size: 129135 BYTES FileVersion: N/A MD5: [b3c38242beb63f895fabcc14bbc6807a]
- lang_tr.qm File Size: 88838 BYTES FileVersion: N/A MD5: [1e4a3c0dcd7074ad4a3971ce67762cda]
- lang_vi.qm File Size: 133386 BYTES FileVersion: N/A MD5: [586de19c023986bf884ad56fc29c8f5e]
- lang_zh_TW.qm File Size: 87797 BYTES FileVersion: N/A MD5: [e120a014cf077bdcbcdcbf98c3438188]
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\platforms
- qwindows.dll File Size: 929760 BYTES FileVersion: 5.4.1.0 MD5: [6c54d2ebeaacbe9b56816536041c8281]
- C:\Program Files (x86)\Malwarebytes Anti-Malware\\Plugins
- fixdamage.exe File Size: 823776 BYTES FileVersion: 1.4.0.1001 MD5: [bbfc25590af3e45d8cca1fab95648b40]
- C:\Users\Miles\AppData\Roaming\Malwarebytes\Malwarebytes Anti-Malware
- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware
- actions.ref File Size: 9251 BYTES FileVersion: N/A MD5: [87bb68ff723ecd46de8c248e1cfec0f1]
- akadomains.ref File Size: 92 BYTES FileVersion: N/A MD5: [73d5774cbd8df165274a0691ae264808]
- akaips.ref File Size: 92 BYTES FileVersion: N/A MD5: [2a6869d1f91f0a0b87b1d27bd30ccc5c]
- domains.ref File Size: 1052561 BYTES FileVersion: N/A MD5: [bed5a52752640eec0828baee84a886c9]
- exclusions.dat File Size: 0 BYTES FileVersion: N/A MD5: [d41d8cd98f00b204e9800998ecf8427e]
- ips.ref File Size: 198860 BYTES FileVersion: N/A MD5: [35477d4c1f3cd6961996aba452ec7e8c]
- rules.ref File Size: 10889658 BYTES FileVersion: N/A MD5: [92127fddf1b1ea4c48ee4cf0314f7276]
- swissarmy.ref File Size: 28481 BYTES FileVersion: N/A MD5: [7dc8509e7ba768b50ea1ce9271e3b931]
- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration
- build.conf File Size: 4596 BYTES FileVersion: N/A MD5: [2af88ab9b37620b5c63527e8bb33e75c]
- database.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- gatekeeper.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- license.conf File Size: 2907 BYTES FileVersion: N/A MD5: [aa880f6aa62b5421b137115eb65483b4]
- manifest.conf File Size: 3412 BYTES FileVersion: N/A MD5: [9e0f6752052fd779632291d590aae87f]
- marketing.conf File Size: 7318 BYTES FileVersion: N/A MD5: [5c86b541dc9031e2957ebbf0be5d4c6a]
- net.conf File Size: 7336 BYTES FileVersion: N/A MD5: [c5b5c06c2789f1dfadc262039e7e3df2]
- notifications.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- scheduler.conf File Size: 2201 BYTES FileVersion: N/A MD5: [bfc49a7d90de3307f9de571bd77c8f31]
- settings.conf File Size: 2120 BYTES FileVersion: N/A MD5: [0fcf95bf504cbeb586ed015bd1563b6f]
- statistics.conf File Size: 513 BYTES FileVersion: N/A MD5: [165b0e724fe766eaa1c2882ca799b194]
- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration\Restore
- build.conf File Size: 4179 BYTES FileVersion: N/A MD5: [20d9566b3cf94f1e395de8f40046fc68]
- database.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- gatekeeper.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- license.conf File Size: 23 BYTES FileVersion: N/A MD5: [0ec01df616b565180556881d8042255b]
- manifest.conf File Size: 3171 BYTES FileVersion: N/A MD5: [a6e5576f7723acab40490fb9e64dfc1c]
- marketing.conf File Size: 6974 BYTES FileVersion: N/A MD5: [53bbca93e7bbeb7f5dca1ef9419ccb28]
- net.conf File Size: 6530 BYTES FileVersion: N/A MD5: [9fb4acfdc11c7af48a760db4c7bfebf0]
- notifications.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- scheduler.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- settings.conf File Size: 1724 BYTES FileVersion: N/A MD5: [e27b42126b89352fdaae8f1630b9a8d8]
- statistics.conf File Size: 4 BYTES FileVersion: N/A MD5: [2261e7eca4cd0615a97263c0ad5045c2]
- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs
- mbam-log-2016-09-25 (09-41-37).xml File Size: 2604 BYTES FileVersion: N/A MD5: [de215ca304f01ea8257ca6f2d61cf6e4]
- mbam-log-2016-09-26 (05-00-20).xml File Size: 2962 BYTES FileVersion: N/A MD5: [a579241abec4983dc1ea2e699212a9b2]
- mbam-log-2016-09-27 (20-24-46).xml File Size: 3040 BYTES FileVersion: N/A MD5: [d8a8c9c1ea4116a7a53abf4384e60d37]
- mbam-log-2016-09-28 (02-28-33).xml File Size: 2638 BYTES FileVersion: N/A MD5: [683c0e4767b485b96a6cdadd32f69464]
- mbam-log-2016-09-29 (02-29-30).xml File Size: 2638 BYTES FileVersion: N/A MD5: [b49ada35b5713c3dcf50c0be9e54db68]
- mbam-log-2016-09-30 (02-24-22).xml File Size: 2638 BYTES FileVersion: N/A MD5: [1789741a0cf4d4d35f36eea39046cb9a]
- mbam-log-2016-10-01 (02-19-09).xml File Size: 2638 BYTES FileVersion: N/A MD5: [61be403b62ef5608865c5cca71c30780]
- mbam-log-2016-10-01 (02-27-14).xml File Size: 2638 BYTES FileVersion: N/A MD5: [5fcb59749a43343363794d4753e1096b]
- mbam-log-2016-10-01 (12-08-20).xml File Size: 2638 BYTES FileVersion: N/A MD5: [1e07689a95fb9ebd718c63b0c0e5ecf0]
- mbam-log-2016-10-07 (07-36-19).xml File Size: 2640 BYTES FileVersion: N/A MD5: [5f152215009970d3065df754ff82e677]
- protection-log-2016-09-25.xml File Size: 27037 BYTES FileVersion: N/A MD5: [de384e92ea52fb508f9bffe843a0bb39]
- protection-log-2016-09-26.xml File Size: 8288 BYTES FileVersion: N/A MD5: [68a0c876d6a1c677c8759e0e36ada4cc]
- protection-log-2016-09-27.xml File Size: 3886 BYTES FileVersion: N/A MD5: [8ca3a9aebcf5e13e58a7224194a2fb01]
- protection-log-2016-09-28.xml File Size: 36873 BYTES FileVersion: N/A MD5: [faa30d895006bc7e30745be1c6366a18]
- protection-log-2016-09-29.xml File Size: 28651 BYTES FileVersion: N/A MD5: [24e8696cf2cfdff470199385cdc94e01]
- protection-log-2016-09-30.xml File Size: 26179 BYTES FileVersion: N/A MD5: [8c4ce45824f14474007beb6d6aded23a]
- protection-log-2016-10-01.xml File Size: 11323 BYTES FileVersion: N/A MD5: [5e28881c1e1b5e123dd4602a4199906a]
- protection-log-2016-10-07.xml File Size: 14871 BYTES FileVersion: N/A MD5: [3612d0c3f8d2341adc297d6bffe7a7af]
- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine
- 0012959513.data File Size: 724 BYTES FileVersion: N/A MD5: [bb22eb42149ae767bc7465ce9841954b]
- 0012959513.quar File Size: 152064 BYTES FileVersion: N/A MD5: [7954194473cb870fff75c8b9cc6e268c]
- 5030371964.data File Size: 704 BYTES FileVersion: N/A MD5: [de2d1e7654ade806ba2c1985b3c1665c]
- 5030371964.quar File Size: 1278384 BYTES FileVersion: N/A MD5: [3da556daebc98b1a187cf8b77c5b89e4]
- 5042266222.data File Size: 795 BYTES FileVersion: N/A MD5: [122c3d526718c0e9b6de1bfd6b061ff9]
- 5042266222.quar File Size: 2088960 BYTES FileVersion: N/A MD5: [2112712cfff30998a33425a68443e029]
- Malware Exclusions:
- ===================
- Web Exclusions:
- ================
- Quarantined Items:
- ===================
- Vendor: PUP.Optional.DealPly, Date: 2016/09/27 19:25:03, Type: File, Location: C:\Users\Miles\AppData\Local\Temp\nsd26207693426\EnigmaEncode.exe
- Vendor: PUP.Optional.InstallCore, Date: 2016/09/26 04:00:21, Type: File, Location: C:\Users\Miles\Downloads\BitlordSetup.exe
- Vendor: CrackTool.SpectraLayers.Keygen, Date: 2016/09/29 19:31:26, Type: File, Location: C:\Users\Miles\Downloads\Sony Vegas Pro 13.0 Build 453 (x64) + Patch DI\Keygen & Patch bY DI\Keygen.exe
- ===============================================================
- END OF FILE
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement