alwarebytes Anti-Malware
www.malwarebytes.org
Scandatum: 8-6-2015
Scantijd: 15:43:11
Logbestand: log.txt
Beheerder: Ja
Versie: 2.01.6.1022
Malware Gegevensbestand: v2015.06.08.02
Rootkit Gegevensbestand: v2015.06.02.01
Licentie: Premium
Malwarebescherming: Ingeschakeld
Kwaadaardige Website Bescherming: Ingeschakeld
Zelfbescherming: Ingeschakeld
Besturingssysteem: Windows 8.1
Processor: x86
Bestandssysteem: NTFS
Gebruiker: Alexander
Scantype: Bedreigingsscan
Resultaat: Voltooid
Objecten Gescand: 434531
Verstreken Tijd: 9 m, 11 s
Geheugen: Ingeschakeld
Opstarten: Ingeschakeld
Bestandssysteem: Ingeschakeld
Archieven: Ingeschakeld
Rootkits: Ingeschakeld
Heuristiek: Ingeschakeld
POP: Ingeschakeld
POA: Ingeschakeld
Processen: 0
(Geen kwaadaardige items gedetecteerd)
Modules: 0
(Geen kwaadaardige items gedetecteerd)
Registersleutels: 3
PUP.Optional.Shopperz.A, HKU\S-1-5-21-108685737-1207832666-4151490051-1006\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3C2C21F7-FDB6-4B10-B605-FA4A281E3016}, , [82c09d1be6a4171f2de15f027192fe02],
Malware.Trace, HKU\S-1-5-21-108685737-1207832666-4151490051-1001\SOFTWARE\DC3_FEXEC, , [3e04d6e28a0053e3e0081ebcee166d93],
Malware.Trace, HKU\S-1-5-21-108685737-1207832666-4151490051-1001\SOFTWARE\VB AND VBA PROGRAM SETTINGS\SrvID, , [2a1882361c6e1e18ec9ec9e9ae56f907],
Registerwaardes: 6
Misused.Legit.AI, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|WinxsUpdate, C:\Users\Alexander\AppData\Roaming\fulol\njnjc.bat, , [ae94c0f889012313b2c99326be43669a]
Misused.Legit.AI, HKU\S-1-5-21-108685737-1207832666-4151490051-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|WinxsUpdate, C:\Users\Alexander\AppData\Roaming\fulol\njnjc.bat C:\Users\ALEXAN~1\AppData\Roaming\fulol\fsndx.cos, , [ae94c0f889012313b2c99326be43669a]
Misused.Legit.AI, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|27mai, C:\Users\Alexander\AppData\Roaming\vewjw\skfnu.bat, , [df63ebcd6921d561c4b76b4e3dc436ca]
Misused.Legit.AI, HKU\S-1-5-21-108685737-1207832666-4151490051-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|27mai, C:\Users\Alexander\AppData\Roaming\vewjw\skfnu.bat C:\Users\ALEXAN~1\AppData\Roaming\vewjw\jrajd.tom, , [df63ebcd6921d561c4b76b4e3dc436ca]
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|msUpdate, C:\Users\Alexander\AppData\Roaming\pqeae\onkgg.com, , [3b0754647911a0965029487a53b156aa]
Trojan.Agent, HKU\S-1-5-21-108685737-1207832666-4151490051-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|msUpdate, C:\Users\Alexander\AppData\Roaming\pqeae\onkgg.com C:\Users\ALEXAN~1\AppData\Roaming\pqeae\jgxsp.fwn, , [3b0754647911a0965029487a53b156aa]
Registerdata: 1
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|AntiVirusDisableNotify, 1, Goed: (0), Slecht: (1),,[4ff3576155351c1a4df4191b18eec23e]
Mappen: 1
PUP.Optional.MultiPlug.Gen, C:\Users\Alexander\AppData\Roaming\4705A980-1432634191-11D9-801B-F46D0473E420, , [d0727e3af1990135693fc9b3fd088a76],
Bestanden: 6
Misused.Legit.AI, C:\Users\Alexander\AppData\Roaming\fulol\njnjc.bat, , [ae94c0f889012313b2c99326be43669a],
Misused.Legit.AI, C:\Users\Alexander\AppData\Roaming\vewjw\skfnu.bat, , [df63ebcd6921d561c4b76b4e3dc436ca],
PUP.Optional.Amonetize, C:\Users\Alexander\AppData\Roaming\DAT\MediaPlayer__4488_il150.exe, , [8db53b7d3b4f8da92704f77f36d07c84],
PUP.HackTool.HotKeysHook, C:\Users\Alexander\Desktop\Trainers\ZTtrSA.exe, , [b48e6c4cb3d7da5cd377ceea8a7b24dc],
PUP.Optional.MultiPlug.Gen, C:\Users\Alexander\AppData\Roaming\4705A980-1432634191-11D9-801B-F46D0473E420\vnsc2376.tmp, , [d0727e3af1990135693fc9b3fd088a76],
Trojan.Agent, C:\Users\Alexander\AppData\Roaming\pqeae\onkgg.com, , [3b0754647911a0965029487a53b156aa],
Fysieke Sectoren: 0
(Geen kwaadaardige items gedetecteerd)
(end)