Guest User

Untitled

a guest
Jan 16th, 2019
90
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.33 KB | None | 0 0
  1. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71C1D63A-C944-428A-A5BD-BA513190E5D2} (PUP.MyWebSearch) -> No action taken.
  2. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{71C1D63A-C944-428A-A5BD-BA513190E5D2} (PUP.MyWebSearch) -> No action taken.
  3. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{71C1D63A-C944-428A-A5BD-BA513190E5D2} (PUP.MyWebSearch) -> No action taken.
  4. HKCR\CLSID\{b7acdf9c-c4f9-4d5d-998e-b147866b4d4c} (PUP.MyWebSearch) -> No action taken.
  5. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B7ACDF9C-C4F9-4D5D-998E-B147866B4D4C} (PUP.MyWebSearch) -> No action taken.
  6. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B7ACDF9C-C4F9-4D5D-998E-B147866B4D4C} (PUP.MyWebSearch) -> No action taken.
  7. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B7ACDF9C-C4F9-4D5D-998E-B147866B4D4C} (PUP.MyWebSearch) -> No action taken.
  8.  
  9. Registry Values Detected: 6
  10. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MapsGalaxy Search Scope Monitor (PUP.MyWebSearch) -> Data: "C:\PROGRA~2\MAPSGA~2\bar\1.bin\39srchmn.exe" /m=2 /w /h -> No action taken.
  11. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MapsGalaxy_39 Browser Plugin Loader (PUP.MyWebSearch) -> Data: C:\PROGRA~2\MAPSGA~2\bar\1.bin\39brmon.exe -> No action taken.
  12. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Recipe Hub Search Scope Monitor (PUP.MyWebSearch) -> Data: "C:\PROGRA~2\RECIPE~2\bar\1.bin\2jsrchmn.exe" /m=2 /w /h -> No action taken.
  13. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|RecipeHub_2j Browser Plugin Loader (PUP.MyWebSearch) -> Data: C:\PROGRA~2\RECIPE~2\bar\1.bin\2jbrmon.exe -> No action taken.
  14. HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks|{26842A09-FFA8-4E2C-AE12-0C80F01C3295} (PUP.MyWebSearch) -> Data: -> No action taken.
  15. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce|A928C70509E961B700E5A927E23FC36E (Trojan.Lameshield) -> Data: C:\ProgramData\A928C70509E961B700E5A927E23FC36E\A928C70509E961B700E5A927E23FC36E.exe -> Quarantined and deleted successfully.
  16.  
  17. Registry Data Items Detected: 0
  18. (No malicious items detected)
  19.  
  20. Folders Detected: 4
  21. C:\Program Files (x86)\FunWebProducts (PUP.MyWebSearch) -> No action taken.
  22. C:\Program Files (x86)\FunWebProducts\Installr (PUP.MyWebSearch) -> No action taken.
  23. C:\Program Files (x86)\FunWebProducts\Installr\1.bin (PUP.MyWebSearch) -> No action taken.
  24. C:\Users\Irene's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Progressive Protection (Rogue.SystemProgressiveProtection) -> Quarantined and deleted successfully.
  25.  
  26. Files Detected: 16
  27. C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39SrchMn.exe (PUP.MyWebSearch) -> No action taken.
  28. C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39brmon.exe (PUP.MyWebSearch) -> No action taken.
  29. C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jSrchMn.exe (PUP.MyWebSearch) -> No action taken.
  30. C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbrmon.exe (PUP.MyWebSearch) -> No action taken.
  31. C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39barsvc.exe (PUP.MyWebSearch) -> No action taken.
  32. C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbarsvc.exe (PUP.MyWebSearch) -> No action taken.
  33. C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbar.dll (PUP.MyWebSearch) -> No action taken.
  34. C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39bar.dll (PUP.MyWebSearch) -> No action taken.
  35. C:\Program Files (x86)\MapsGalaxy_39\bar\1.bin\39SrcAs.dll (PUP.MyWebSearch) -> No action taken.
  36. C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jSrcAs.dll (PUP.MyWebSearch) -> No action taken.
  37. C:\Program Files (x86)\FunWebProducts\Installr\1.bin\F3EZSETP.DLL (PUP.MyWebSearch) -> No action taken.
  38. C:\Program Files (x86)\FunWebProducts\Installr\1.bin\F3PLUGIN.DLL (PUP.MyWebSearch) -> No action taken.
  39. C:\Program Files (x86)\FunWebProducts\Installr\1.bin\NPFUNWEB.DLL (PUP.MyWebSearch) -> No action taken.
  40. C:\ProgramData\A928C70509E961B700E5A927E23FC36E\A928C70509E961B700E5A927E23FC36E.exe (Trojan.Lameshield) -> Quarantined and deleted successfully.
  41. C:\Users\Irene's\Desktop\System Progressive Protection.lnk (Rogue.SystemProgressiveProtection) -> Quarantined and deleted successfully.
  42. C:\Users\Irene's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Progressive Protection\System Progressive Protection.lnk (Rogue.SystemProgressiveProtection) -> Quarantined and deleted successfully.
  43.  
  44. (end)
Add Comment
Please, Sign In to add comment