Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Malwarebytes
- www.malwarebytes.com
- -Log Details-
- Scan Date: 1/20/18
- Scan Time: 11:46 AM
- Log File: c09d751a-fdc6-11e7-ae35-448a5b659f26.json
- Administrator: Yes
- -Software Information-
- Version: 3.3.1.2183
- Components Version: 1.0.262
- Update Package Version: 1.0.3739
- License: Trial
- -System Information-
- OS: Windows 10 (Build 15063.850)
- CPU: x64
- File System: NTFS
- User: SVEN\Jacques
- -Scan Summary-
- Scan Type: Threat Scan
- Result: Completed
- Objects Scanned: 296248
- Threats Detected: 108
- Threats Quarantined: 108
- Time Elapsed: 2 min, 38 sec
- -Scan Options-
- Memory: Enabled
- Startup: Enabled
- Filesystem: Enabled
- Archives: Enabled
- Rootkits: Disabled
- Heuristics: Enabled
- PUP: Detect
- PUM: Detect
- -Scan Details-
- Process: 0
- (No malicious items detected)
- Module: 0
- (No malicious items detected)
- Registry Key: 24
- PUP.Optional.WebSearches.ShrtCln, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\SupHpUISoft, Quarantined, [10384], [190053],1.0.3739
- PUP.Optional.QuickSearch, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MOZILLA\EXTENDS, Quarantined, [2135], [242146],1.0.3739
- PUP.Optional.FFPluginHp, HKLM\SOFTWARE\WOW6432NODE\FFPluginHp, Quarantined, [12522], [238346],1.0.3739
- PUP.Optional.IHProtect, HKLM\SOFTWARE\WOW6432NODE\IHProtect, Quarantined, [12572], [239373],1.0.3739
- PUP.Optional.WPM, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, Quarantined, [8273], [245116],1.0.3739
- PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\supWPM, Quarantined, [3234], [243703],1.0.3739
- Adware.Elex, HKLM\SOFTWARE\WOW6432NODE\winzipersvc, Quarantined, [1], [444492],1.0.3739
- PUP.Optional.IEPluginServices, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\IePluginServices, Quarantined, [10771], [239278],1.0.3739
- PUP.Optional.WindowsMangerProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, Quarantined, [13078], [245008],1.0.3739
- Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\winzipersvc, Quarantined, [1], [385015],1.0.3739
- PUP.Optional.MiuiTab, HKLM\SOFTWARE\WOW6432NODE\SUPDP, Quarantined, [8551], [240843],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.LuckyTab, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, Quarantined, [9736], [168173],1.0.3739
- PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Quarantined, [3234], [168876],1.0.3739
- PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Quarantined, [3234], [168876],1.0.3739
- PUP.Optional.SupTab, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Quarantined, [3234], [168876],1.0.3739
- PUP.Optional.SupTab, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Quarantined, [3234], [168876],1.0.3739
- PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Quarantined, [3234], [168876],1.0.3739
- Registry Value: 5
- PUP.Optional.QuickSearch, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MOZILLA\EXTENDS|APPID, Quarantined, [2135], [242146],1.0.3739
- PUP.Optional.MiuiTab, HKLM\SOFTWARE\WOW6432NODE\SUPDP|DIR, Quarantined, [8551], [240843],1.0.3739
- PUP.Optional.SecurityProtection, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|DETGDP@GMAIL.COM, Quarantined, [11014], [242842],1.0.3739
- PUP.Optional.QuickSearch, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|QUICK_SEARCHFF@GMAIL.COM, Quarantined, [2135], [242147],1.0.3739
- PUP.Optional.SweetSearch, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|SWEETSEARCH@GMAIL.COM, Quarantined, [11078], [243783],1.0.3739
- Registry Data: 5
- PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Replaced, [8319], [291146],1.0.3739
- PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3792989468-612598785-2919606251-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_SEARCH_URL, Replaced, [8319], [291146],1.0.3739
- PUP.Optional.ViView.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_SEARCH_URL, Replaced, [10390], [291164],1.0.3739
- PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Replaced, [8319], [291148],1.0.3739
- PUP.Optional.ViView.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH PAGE, Replaced, [10390], [291164],1.0.3739
- Data Stream: 0
- (No malicious items detected)
- Folder: 15
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\USERS\JACQUES\APPDATA\EVERYTHING, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.IEPluginServices, C:\ProgramData\IePluginServices\update, Quarantined, [10771], [177726],1.0.3739
- PUP.Optional.IEPluginServices, C:\PROGRAMDATA\IEPLUGINSERVICES, Quarantined, [10771], [177726],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\pack, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\lib, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\locale\en-US, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\locale\zh-CN, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\locale, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\skin, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\USERS\JACQUES\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\9SZCEILY.DEFAULT\EXTENSIONS\DETGDP@GMAIL.COM, Quarantined, [11014], [179501],1.0.3739
- File: 59
- PUP.Optional.Everything, C:\USERS\JACQUES\APPDATA\EVERYTHING\CONFIG.INI, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\bing.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\google.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\search_config.ini, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\SFK.ini, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\SFKEX.ini, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\net_search\yahoo.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\bing.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\caret.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\FileListItem.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\FileListItem_bing.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\FileListItem_google.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\frame.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\frame2.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\google.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\guide.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\icon_search.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\mainpanel.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\MainPannel.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\panel_base.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\search_content_list.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\WndMask.xml, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\skin\yahoo.png, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\everything.dll, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\everything.exe, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\helper.dll, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\Patch.dll, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\SearchBase.db, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\SearchBase.exe, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\SearchHand.dll, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\SFKEX.dll, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\SFKEX.exe, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.Everything, C:\Users\Jacques\AppData\Everything\uninst.exe, Quarantined, [5362], [238151],1.0.3739
- PUP.Optional.IEPluginServices, C:\ProgramData\IePluginServices\update\PluginUpdate.exe, Quarantined, [10771], [177726],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\lib\jquery-2.1.1.min.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\pack\common.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\pack\xagainit.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\epurls.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\inject.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\js\restart.js, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\content\restartOverlay.xul, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\locale\en-US\restart.dtd, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\locale\zh-CN\restart.dtd, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\skin\icon.png, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\skin\iconsmall.png, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\skin\iconverysmall.png, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome\skin\restartfirefox.css, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\chrome.manifest, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.SecurityProtection, C:\Users\Jacques\AppData\Roaming\Mozilla\Firefox\Profiles\9szceily.default\extensions\detgdp@gmail.com\install.rdf, Quarantined, [11014], [179501],1.0.3739
- PUP.Optional.TerraClicks.ShrtCln, C:\USERS\JACQUES\APPDATA\LOCAL\MICROSOFT\WINDOWS\INETCOOKIES\LOW\8KBB1MK9.TXT, Quarantined, [13681], [302487],1.0.3739
- PUP.Optional.TerraClicks.ShrtCln, C:\USERS\JACQUES\APPDATA\LOCAL\MICROSOFT\WINDOWS\INETCOOKIES\LOW\R9Y5RP7E.TXT, Quarantined, [13681], [302487],1.0.3739
- PUP.Optional.QuickStart, C:\USERS\JACQUES\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\9SZCEILY.DEFAULT\PREFS.JS, Replaced, [10949], [301610],1.0.3739
- PUP.Optional.OpenCandy, C:\USERS\JACQUES\APPDATA\ROAMING\UTORRENT\UPDATES\3.4.2_37754.EXE, Quarantined, [460], [431539],1.0.3739
- Adware.Elex.ShrtCln, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [2141], [454693],1.0.3739
- PUP.Optional.Delta, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\SyncData.sqlite3, Replaced, [3409], [455071],1.0.3739
- PUP.Optional.Delta, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [3409], [455071],1.0.3739
- Adware.Elex.ShrtCln, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\SyncData.sqlite3, Replaced, [2141], [454693],1.0.3739
- Adware.Elex.ShrtCln, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [2141], [454693],1.0.3739
- PUP.Optional.Delta, C:\USERS\JACQUES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [3409], [455071],1.0.3739
- Physical Sector: 0
- (No malicious items detected)
- (end)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement