Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 4-11-2014 Scan Time: 15:25:57 Logfile: MBAM scanlog.txt Administrator: Yes Version: 2.00.3.1025 Malware Database: v2014.11.04.03 Rootkit Database: v2014.11.01.02 License: Trial Malware Protection: Enabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows Vista Service Pack 1 CPU: x64 File System: NTFS User: Erik Hoetink Scan Type: Threat Scan Result: Completed Objects Scanned: 336637 Time Elapsed: 11 min, 47 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Warn PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 2 PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Quarantined, [05be58dff8843501691b713b31d112ee], PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Quarantined, [05be58dff8843501691b713b31d112ee], Registry Values: 1 PUP.Optional.MBot.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|mbot_nl_34, Quarantined, [ad162e095d1f59dd6a9ab68022e146ba], Registry Data: 0 (No malicious items detected) Folders: 3 Rogue.Multiple, C:\ProgramData\374311380, Quarantined, [249fab8c6715f640709949a242c060a0], PUP.Optional.MultiPlug.A, C:\ProgramData\YoutubeAdBlocke, Quarantined, [9c27b186dba1072ffe5cbf547b88f10f], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\YoutubeAdBlocke, Quarantined, [dce7d3644a325bdb04571cf7030037c9], Files: 16 PUP.Optional.Multiplug, C:\Users\Erik Hoetink\AppData\Local\Temp\4821.exe, Quarantined, [05be58dff8843501691b713b31d112ee], PUP.Optional.DomaIq, C:\Users\Erik Hoetink\AppData\Local\Temp\bXSd6.exe, Quarantined, [c9fa9b9cbcc04de9def65c738e7342be], PUP.Optional.MyPCBackup.A, C:\Users\Erik Hoetink\AppData\Local\Temp\BackupSetup.exe, Quarantined, [556eef48215b280ed78430acf20f0df3], PUP.Optional.VOPackage.Gen, C:\Users\Erik Hoetink\AppData\Local\Temp\E09Atmp\vopackage.exe, Quarantined, [893ad760a7d54ee831dc438fdc25d12f], PUP.Optional.StormWatch.A, C:\Users\Erik Hoetink\AppData\Local\Temp\E09Ctmp\stormwatchsetup_dist_1.0.1.10.exe, Quarantined, [ccf7a39405779e981c6ee07532ce8779], Trojan.SProtector, C:\Users\Erik Hoetink\AppData\Local\Temp\3F50f5d\temp\putfu.exe, Quarantined, [4d76989f215b1026844cb5b2c140fe02], Trojan.Downloader, C:\Users\Erik Hoetink\AppData\Local\Temp\3F50f5d\temp\usetup.exe, Quarantined, [4c7765d2bcc0a5912039cddc1de5916f], PUP.Optional.SearchHijacker.A, C:\Users\Erik Hoetink\AppData\Local\Temp\E09Dtmp\lly_omiga-plus.exe, Quarantined, [279cfa3d1468e452d44bb7ff8081c13f], PUP.Optional.AdLyrics, C:\Users\Erik Hoetink\AppData\Local\Temp\E09Etmp\3333-2080_speedchecker.exe, Quarantined, [f8cb2d0a0577152122b1f5da7e83b050], PUP.Optional.MyBestOffersToday.A, C:\Users\Erik Hoetink\AppData\Local\Temp\E09Ftmp\mybestofferstoday.exe, Quarantined, [289b2d0ae29a92a4c61694404fb2956b], PUP.Optional.MultiPlug, C:\Users\Erik Hoetink\Downloads\Download (1).exe, Quarantined, [3b88c572bebe1a1ccbf4a239ed1436ca], PUP.Optional.MultiPlug, C:\Users\Erik Hoetink\Downloads\Download.exe, Quarantined, [4e75ff38ceae35015e617c5f70918e72], PUP.Optional.DomaIQ, C:\Users\Erik Hoetink\Downloads\Setup (1).exe, Quarantined, [dae9c96e0e6e39fd1c0437207090a957], PUP.Optional.DomaIQ, C:\Users\Erik Hoetink\Downloads\Setup v2 1.exe, Quarantined, [fbc873c4ef8dfc3a928eb6a19e62718f], Rogue.Multiple, C:\ProgramData\374311380\BIT8F85.tmp, Quarantined, [249fab8c6715f640709949a242c060a0], PUP.Optional.ASK.A, C:\Users\Erik Hoetink\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "homepage": "http://www.search.ask.com/?gct=hp",), Replaced,[b1129b9cd9a31e18a3ad5818d92c3cc4] Physical Sectors: 0 (No malicious items detected) (end)