Malwarebytes Anti-Malware www.malwarebytes.org Scandatum: 9-7-2015 Scantijd: 15:33 Logboekbestand: MBAM Scanlog.txt Beheerder: Ja Versie: 2.1.8.1057 Malware-database: v2015.07.09.02 Rootkit-database: v2015.07.09.01 Licentie: Proef Malware-bescherming: Ingeschakeld Bescherming tegen kwaadaardige websites: Ingeschakeld Zelfbescherming: Uitgeschakeld Besturingssysteem: Windows 7 Service Pack 1 Processor: x64 Bestandssysteem: NTFS Gebruiker: Mick Scantype: Bedreigingsscan Resultaat: Voltooid Objecten gescand: 439291 Verstreken tijd: 27 min, 18 sec Geheugen: Ingeschakeld Opstarten: Ingeschakeld Bestandssysteem: Ingeschakeld Archieven: Ingeschakeld Rootkits: Uitgeschakeld Heuristiek: Ingeschakeld POP: Ingeschakeld POA: Ingeschakeld Processen: 0 (Geen kwaadaardige items gedetecteerd) Modules: 0 (Geen kwaadaardige items gedetecteerd) Registersleutels: 8 PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\SPVC32LDR, In quarantaine, [f5c12cb375157cba977ac6c721e34db3], PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}, In quarantaine, [9323ce114f3b221477b9ceaba06424dc], PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{cf2797aa-b7ec-e311-8ed9-005056c00008}, In quarantaine, [c6f010cfc3c781b5a18e106956ae01ff], PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\ICDLFEHBLMKLKIKFIGMJHBMMPMKMPOOJ, In quarantaine, [585e9f4097f3ce68038a92f14fb5d32d], PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\MHKAEKFPCPPMMIOGGNIKNBNBDBCIGPKK, In quarantaine, [36804a953c4e7bbbf697b5ceba4a3ac6], PUP.Optional.TNT.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0C3C6A0A-F8CE-4A22-9D6B-F6159D81CDCD}, In quarantaine, [892dd20d612969cd021f3cc451b26b95], PUP.Optional.Spigot.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6966A4C1-7B06-47C8-A180-0D26D2DDE76F}, In quarantaine, [dbdb3ea14f3b013505e9ac563cc72fd1], PUP.Optional.TNT.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74A007DF-DAD8-4A72-AEC4-3BD46D2C06D1}, In quarantaine, [efc7af30fb8f290db869ad534ab9f20e], Registerwaarden: 12 PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130602796923140052, In quarantaine, [03b34d92f397191d20f091fc21e3d927] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130602796923140052, In quarantaine, [1e9835aa553541f59878a6e7de267f81] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130602796923140052, In quarantaine, [8f279c431971181e46ca424bc73d8b75] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130602796923140052, In quarantaine, [8135d10e6921af8728e8ee9f27ddd927] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\SPVC32Ldr|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130602796923140052, In quarantaine, [f5c12cb375157cba977ac6c721e34db3] PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\icdlfehblmklkikfigmjhbmmpmkmpooj|path, C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx, In quarantaine, [585e9f4097f3ce68038a92f14fb5d32d] PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mhkaekfpcppmmioggniknbnbdbcigpkk|path, C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx, In quarantaine, [36804a953c4e7bbbf697b5ceba4a3ac6] PUP.Optional.TNT.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0C3C6A0A-F8CE-4A22-9D6B-F6159D81CDCD}|OSDFileURL, file:///C:/Users/Mick/AppData/Local/TNT2/Profiles/10583/yah10583.xml, In quarantaine, [892dd20d612969cd021f3cc451b26b95] PUP.Optional.Spigot.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6966A4C1-7B06-47C8-A180-0D26D2DDE76F}|URL, http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}, In quarantaine, [dbdb3ea14f3b013505e9ac563cc72fd1] PUP.Optional.Spigot.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6966A4C1-7B06-47C8-A180-0D26D2DDE76F}|OSDFileURL, file:///C:/Program%20Files%20(x86)/Common%20Files/Spigot/Search%20Settings/yahoo_ie.xml, In quarantaine, [12a4b52a652577bf247e7812bf457789] PUP.Optional.TNT.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74A007DF-DAD8-4A72-AEC4-3BD46D2C06D1}|OSDFileURL, file:///C:/Users/Mick/AppData/Local/TNT2/Profiles/10583/os10583.xml, In quarantaine, [efc7af30fb8f290db869ad534ab9f20e] PUP.Optional.TNT.A, HKU\S-1-5-21-2489962499-1356466088-1286749421-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74A007DF-DAD8-4A72-AEC4-3BD46D2C06D1}|FaviconURL, http://mirror.mirror-files.com/tnt2/10252/su_16.ico, In quarantaine, [734387586a20d85e2001a15fec17c43c] Registerdata: 0 (Geen kwaadaardige items gedetecteerd) Mappen: 0 (Geen kwaadaardige items gedetecteerd) Bestanden: 8 PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{1FAB5555-47C4-4B33-9945-77AC3C6FD50C}.xpi, In quarantaine, [5f57bd22dbaf0531de6be7774eb711ef], PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{48D74B3E-EF57-4716-B335-4C3E236BA5D3}.xpi, In quarantaine, [d8de508fc7c3c4728ebb5905eb1aa15f], PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{578DF106-5ACB-4CE0-A6DD-35F52BD0BDF1}.xpi, In quarantaine, [496d16c9f59545f1b3961f3f679ee41c], PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{8D2E7371-C090-4B4C-A2E6-A1DF92B2C355}.xpi, In quarantaine, [9422845bb0dad26401485509ab5a1fe1], PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{9DE1B6E3-F0EB-4C80-87FE-3CF04FE9F858}.xpi, In quarantaine, [7a3c57889af0f73f97b21e40c14420e0], PUP.Optional.DragonBranch.A, C:\Users\Mick\AppData\Local\Temp\{A0D0B617-8D5E-4A2B-A850-294A56D30E04}.xpi, In quarantaine, [7244f8e751392c0af55466f86e9724dc], PUP.Optional.Spigot.SID, C:\Windows\Temp\ytdToolbar.exe, In quarantaine, [278fbd22b4d643f3fb9eb2abfc0942be], PUP.Optional.SearchProtect.A, C:\Windows\AppPatch\AppPatch64\SPVCLdr64.dll, In quarantaine, [93235d820684999de4799f8e926ff10f], Fysieke Sectoren: 0 (Geen kwaadaardige items gedetecteerd) (end)