Malwarebytes Anti-Malware www.malwarebytes.org Scandatum: 21/09/2015 Scantijd: 22:17 Logboekbestand: 21 september 2015 22.45 u.txt Beheerder: Ja Versie: 2.1.8.1057 Malware-database: v2015.09.21.06 Rootkit-database: v2015.09.18.01 Licentie: Gratis Malware-bescherming: Uitgeschakeld Bescherming tegen kwaadaardige websites: Uitgeschakeld Zelfbescherming: Uitgeschakeld Besturingssysteem: Windows 7 Service Pack 1 Processor: x64 Bestandssysteem: NTFS Gebruiker: Hensyr Scantype: Bedreigingsscan Resultaat: Voltooid Objecten gescand: 384261 Verstreken tijd: 13 min, 58 sec Geheugen: Ingeschakeld Opstarten: Ingeschakeld Bestandssysteem: Ingeschakeld Archieven: Ingeschakeld Rootkits: Uitgeschakeld Heuristiek: Ingeschakeld POP: Ingeschakeld POA: Ingeschakeld Processen: 1 PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\privoxy.exe, 5924, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e] Modules: 1 PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\mgwz.dll, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e], Registersleutels: 1 PUP.Optional.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PrivoxyService, In quarantaine, [216992a0503b51e52f927209d62ec23e], Registerwaarden: 2 PUP.Optional.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PRIVOXYSERVICE|ImagePath, "C:\Program Files (x86)\IT Viewer\privoxy.exe" --service, In quarantaine, [b5d54ae8414a5dd9546e3744c3416d93] PUM.Bad.Proxy, HKU\S-1-5-21-1223704088-254192944-2079473161-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, 127.0.0.1:8118, In quarantaine, [4941230f90fbc86e03c263134db709f7] Registerdata: 0 (Geen kwaadaardige items gedetecteerd) Mappen: 1 PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e], Bestanden: 13 Backdoor.Agent.WD, C:\Users\Hensyr\AppData\Local\Temp\hp_u_23828328.exe, In quarantaine, [5d2dbd750f7c3bfb0eaeaf97f8083ec2], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\privoxy.exe, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\astask.exe, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\checkproxy.exe, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\config.txt, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\default.action, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\default.filter, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\jpchromium.exe, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\jpchromium64.exe, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\mgwz.dll, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\privoxy.log, Verwijder-bij-herstart, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\tsnet.dll, In quarantaine, [216992a0503b51e52f927209d62ec23e], PUP.Optional.PrxySvrRST, C:\Program Files (x86)\IT Viewer\tsnet64.dll, In quarantaine, [216992a0503b51e52f927209d62ec23e], Fysieke Sectoren: 0 (Geen kwaadaardige items gedetecteerd) (end)