Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 2-11-2014 Scan Time: 18:07:43 Logfile: MBAM.txt Administrator: Yes Version: 2.00.3.1025 Malware Database: v2014.11.02.05 Rootkit Database: v2014.11.01.02 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Jeanet Lebert Scan Type: Threat Scan Result: Completed Objects Scanned: 347403 Time Elapsed: 26 min, 12 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 4 PUP.Optional.Babylon.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Quarantined, [de1fda5c0379211557ca901ce71b4ab6], PUP.Optional.DataMangr.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${dtUserElevationPolicyID}, Quarantined, [b7463cfa4636dc5a4026207a17ed2cd4], PUP.Optional.DataMangr.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${dtUserElevationPolicyID}, Quarantined, [689553e3413b7bbb273f4159d92bc63a], PUP.Optional.DataMngr.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Datamngr, Quarantined, [ed1068ce7b019e9864c45820d72d05fb], Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 2 PUP.Optional.GoForFiles, C:\ProgramData\Microsoft\Windows\Start Menu\GoforFiles, Quarantined, [fa0331055d1f64d2f12d4955c440f20e], PUP.Optional.SnapDo.A, C:\Users\Jeanet Lebert\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl, Quarantined, [db225fd7710b0c2a7dc0ab5112f0857b], Files: 25 PUP.Optional.BundleInstaller.A, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RO6HC1O.exe, Quarantined, [639a77bf15679e9850845ffdc23ff60a], PUP.Optional.GoForFiles.A, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RSYE6UB.exe, Quarantined, [c03da492166674c2fb82b47e659c0df3], PUP.Optional.Installrex, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RU7PQX7.exe, Quarantined, [9e5f989e4636cb6b5c9bf292fc050ef2], PUP.Optional.GoForFiles.A, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$R8K43WO.exe, Quarantined, [97666bcb9ae263d3de9fac86e120d729], PUP.Optional.OpenCandy, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RRTPG11.exe, Quarantined, [04f958de83f94fe70f7b7fdeb352b14f], PUP.Optional.Softonic, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$R28O6ZX.exe, Quarantined, [36c7ae888bf1f343951ac9f59071cc34], PUP.Optional.OptimizePro.A, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RK6G1TC.exe, Quarantined, [15e873c3b3c9d066561cd9456799966a], PUP.Optional.GoForFiles.A, C:\$Recycle.Bin\S-1-5-21-453541400-2006010633-3923492044-1001\$RRFINIH.exe, Quarantined, [e01d46f09ae2b086b6c7d1611ae7a25e], PUP.Optional.Delta.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\toolbar690912.exe, Quarantined, [39c4a2949ddfb3836a556fafba477c84], PUP.Optional.QuickShare.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\toolbar696279.exe, Quarantined, [cc311a1c35470531036db767df2115eb], PUP.Optional.Delta.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\toolbar829644.exe, Quarantined, [9b62d3632d4fb97d566945d95ea3ae52], PUP.Optional.Wajam.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\toolbar834730.exe, Quarantined, [f10c91a5f884f93d0fef9c828a76f010], PUP.Optional.SmartBar.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\SmartbarExeInstaller.exe, Quarantined, [db22dd591567ac8a690af9250cf48d73], PUP.Optional.Wajam.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\wajam_install.exe, Quarantined, [f70649ed90ec78be1f09ce79b848926e], Trojan.RotBrow.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\che1F91.tmp, Quarantined, [b944999d18642016141cb9d9be43bc44], PUP.Optional.BabSolution.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\busD04C\BUSolution.dll, Quarantined, [7885ca6c116b92a4a91262c1c938669a], Trojan.RotBrowse, C:\Users\Jeanet Lebert\AppData\Local\Temp\F6DD8524-BAB0-7891-9614-EB2EBC922C59\ccp.exe, Quarantined, [5ba29e98512be155de231eef59acdd23], PUP.Optional.Babylon.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\F6DD8524-BAB0-7891-9614-EB2EBC922C59\CrxInstaller.dll, Quarantined, [a25b6bcbc7b5989ed79ab779c938bd43], PUP.Optional.Delta.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\F6DD8524-BAB0-7891-9614-EB2EBC922C59\MyBabylonTB.exe, Quarantined, [9766979f3e3e60d642635e295ba6af51], PUP.Optional.Babylon.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\F6DD8524-BAB0-7891-9614-EB2EBC922C59\Setup.exe, Quarantined, [41bc1c1a6f0d1620685382a0699821df], PUP.Optional.BabylonToolBar.A, C:\Users\Jeanet Lebert\AppData\Local\Temp\C7783BC5-BAB0-7891-AD7D-E49BC273B49B\MyBabylonTB.exe, Quarantined, [15e8d660f389b284b430fc320cf53ec2], PUP.Optional.Softonic, C:\Users\Jeanet Lebert\Downloads\SoftonicDownloader_voor_teamviewer.exe, Quarantined, [0fee88aeee8e2412fd8fbd9d7a869d63], PUP.Optional.SnapDo.A, C:\Windows\Installer\30e6f.msi, Quarantined, [3dc039fd93e9dc5af04a3c5f5aa7bb45], PUP.Optional.GoForFiles, C:\ProgramData\Microsoft\Windows\Start Menu\GoforFiles\GoforFiles.lnk, Quarantined, [fa0331055d1f64d2f12d4955c440f20e], PUP.Optional.GoForFiles, C:\ProgramData\Microsoft\Windows\Start Menu\GoforFiles\Remove GFF.lnk, Quarantined, [fa0331055d1f64d2f12d4955c440f20e], Physical Sectors: 0 (No malicious items detected) (end)