Malwarebytes www.malwarebytes.com -Logboekdetails- Scandatum: 03-01-17 Scantijd: 09:43 Logboekbestand: logbestand malware.txt Beheerder: Ja -Software-informatie- Versie: 3.0.5.1299 Versie componenten: 1.0.43 Update pakketversie: 1.0.735 Licentie: Proef -Systeeminformatie- Besturingssysteem: Windows 10 Processor: x64 Bestandssysteem: NTFS Gebruiker: LAPTOP-PK6UNSR4\Fenny Beernink -Scansamenvatting- Scantype: Bedreigingsscan Resultaat: Voltooid Objecten gescand: 369133 Verstreken tijd: 1 min, 54 sec -Scanopties- Geheugen: Ingeschakeld Opstarten: Ingeschakeld Bestandssysteem: Ingeschakeld Archieven: Ingeschakeld Rootkits: Uitgeschakeld Heuristiek: Ingeschakeld POP: Ingeschakeld POA: Ingeschakeld -Scandetails- Proces: 0 (Geen kwaadaardige items gedetecteerd) Module: 0 (Geen kwaadaardige items gedetecteerd) Registersleutel: 50 PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In quarantaine, [130], [170024],1.0.735 PUP.Optional.Wajam, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, In quarantaine, [130], [-1],0.0.0 PUP.Optional.Kuaizip, HKLM\SOFTWARE\CLASSES\CLSID\{AAA0C5B8-933F-4200-93AD-B143D7FFF9F2}, In quarantaine, [1407], [346210],1.0.735 PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In quarantaine, [130], [170024],1.0.735 PUP.Optional.Wajam, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In quarantaine, [130], [170024],1.0.735 PUP.Optional.Social2Search.Gen, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\63d6cb84dda4748f0be36e2378097c6a, In quarantaine, [17849], [261569],1.0.735 Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Hotfresh.exe, In quarantaine, [2734], [350715],1.0.735 PUP.Optional.Ludashi, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\LUDASHI, In quarantaine, [2148], [340603],1.0.735 PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{63FDA47A-2F98-4791-B2A3-296AB5BAC7F5}, In quarantaine, [95], [302564],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\WOW6432NODE\LUDASHI, In quarantaine, [2148], [340617],1.0.735 PUP.Optional.Youndoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{8AB1EB17-9951-4261-B7E2-CEA09A04229C}, In quarantaine, [766], [182916],1.0.735 PUP.Optional.SoftMedia, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\POWERPACK, In quarantaine, [2290], [343995],1.0.735 PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67022369-9574-4BB0-AE49-73F1561F1E3E}, In quarantaine, [95], [259767],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\ComputerZ_CN.exe, In quarantaine, [2148], [340607],1.0.735 PUP.Optional.PCSpeedUp, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\SPEEDCHECKER LIMITED\PC Speed Up, In quarantaine, [7830], [241619],1.0.735 PUP.Optional.Social2Search, HKLM\SOFTWARE\Socia2Sear Browser Enhancer, In quarantaine, [444], [345866],1.0.735 PUP.Optional.SpeedChecker.PrxySvrRST, HKLM\SOFTWARE\Speedchecker Limited, In quarantaine, [12018], [188281],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\ComputerZ_CN.exe, In quarantaine, [2148], [340607],1.0.735 PUP.Optional.Tuto4PC, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\wewewe, In quarantaine, [112], [339689],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\PCSU.Registry, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\TYPELIB\{3157E247-2784-4028-BF0F-52D6DDC70E1B}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\INTERFACE\{6C42038D-817A-472C-8C2A-EF46F1DA576D}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6C42038D-817A-472C-8C2A-EF46F1DA576D}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{6C42038D-817A-472C-8C2A-EF46F1DA576D}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\INTERFACE\{873C7DA8-195D-4D5A-B830-C5E2831901EA}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{873C7DA8-195D-4D5A-B830-C5E2831901EA}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{873C7DA8-195D-4D5A-B830-C5E2831901EA}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{3157E247-2784-4028-BF0F-52D6DDC70E1B}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{3157E247-2784-4028-BF0F-52D6DDC70E1B}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E9B5B0D2-D08A-49FC-8B5C-159B60BAA268}, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\CLASSES\PCSU.Registry.1, In quarantaine, [7830], [241616],1.0.735 PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\psv_Groovefind, In quarantaine, [95], [259770],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PCSU-SL_is1, In quarantaine, [7830], [254783],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\WOW6432NODE\COMPUTERZ, In quarantaine, [2148], [340612],1.0.735 Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\Hotfresh_RASAPI32, In quarantaine, [2734], [350714],1.0.735 Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\Hotfresh_RASMANCS, In quarantaine, [2734], [350714],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASAPI32, In quarantaine, [7830], [246229],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASMANCS, In quarantaine, [7830], [246229],1.0.735 PUP.Optional.BestCleaner, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BESTCLEANER_IS1, In quarantaine, [2293], [342235],1.0.735 PUP.Optional.Kuaizip, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\KuaiZip, In quarantaine, [1407], [348603],1.0.735 PUP.Optional.Kuaizip, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\KuaiZipSFX, In quarantaine, [1407], [348613],1.0.735 PUP.Optional.SpeedChecker, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\Speedchecker Limited, In quarantaine, [1859], [246252],1.0.735 PUP.Optional.Wajam, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\WajIEnhance, In quarantaine, [130], [244670],1.0.735 PUP.Optional.BitCoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\vnlgp, In quarantaine, [252], [261841],1.0.735 Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\mtHotfresh, In quarantaine, [2734], [350712],1.0.735 PUP.Optional.Social2Search, HKLM\SOFTWARE\WOW6432NODE\Socia2Sear Browser Enhancer, In quarantaine, [444], [345866],1.0.735 PUP.Optional.SpeedChecker.PrxySvrRST, HKLM\SOFTWARE\WOW6432NODE\Speedchecker Limited, In quarantaine, [12018], [188281],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, In quarantaine, [7830], [241622],1.0.735 PUP.Optional.Linkury.ACMB1, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting, In quarantaine, [95], [259928],1.0.735 Registerwaarde: 23 PUP.Optional.Wajam, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In quarantaine, [130], [-1],0.0.0 PUP.Optional.Wajam, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In quarantaine, [130], [-1],0.0.0 PUP.Optional.Wajam, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In quarantaine, [130], [-1],0.0.0 PUP.Optional.Social2Search.Gen, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\63d6cb84dda4748f0be36e2378097c6a|DISPLAYNAME, In quarantaine, [17849], [261569],1.0.735 Adware.Linkury.ACMB1, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, In quarantaine, [2734], [-1],0.0.0 Adware.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, In quarantaine, [2734], [-1],0.0.0 Adware.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\ENVIRONMENT|SNF, In quarantaine, [2734], [-1],0.0.0 PUP.Optional.Ludashi, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\LUDASHI|360LOCK, In quarantaine, [2148], [340603],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|DEFAULT, In quarantaine, [95], [259988],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\WOW6432NODE\LUDASHI|BUY, In quarantaine, [2148], [340617],1.0.735 PUP.Optional.SpeedChecker, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION|SPEEDCHECKERSERVICE.EXE, In quarantaine, [1859], [255290],1.0.735 PUP.Optional.Linkury, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{63FDA47A-2F98-4791-B2A3-296AB5BAC7F5}|PUBLISHER, In quarantaine, [399], [239939],1.0.735 PUP.Optional.Youndoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{8AB1EB17-9951-4261-B7E2-CEA09A04229C}|DISPLAYNAME, In quarantaine, [766], [182916],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\ENVIRONMENT|SNP, In quarantaine, [95], [259518],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\ENVIRONMENT|SNF, In quarantaine, [95], [259517],1.0.735 PUP.Optional.SoftMedia, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\POWERPACK|GUID, In quarantaine, [2290], [343995],1.0.735 PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67022369-9574-4BB0-AE49-73F1561F1E3E}|PATH, In quarantaine, [95], [259767],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH BAR, Vervangen, [95], [293485],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCHASSISTANT, Vervangen, [95], [293485],1.0.735 PUP.Optional.Linkury.ACMB1, HKU\S-1-5-21-3032902047-1669751184-2458482982-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|DEFAULT_SEARCH_URL, Vervangen, [95], [293486],1.0.735 PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PCSU-SL_is1|URLINFOABOUT, In quarantaine, [7830], [254783],1.0.735 PUP.Optional.Ludashi, HKLM\SOFTWARE\WOW6432NODE\COMPUTERZ|SETUP PATH, In quarantaine, [2148], [340612],1.0.735 PUP.Optional.BestCleaner, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BESTCLEANER_IS1|PUBLISHER, In quarantaine, [2293], [342235],1.0.735 Gegevensstroom: 0 (Geen kwaadaardige items gedetecteerd) Map: 6 PUP.Optional.LockHomepage, C:\USERS\FENNY BEERNINK\APPDATA\ROAMING\lockhomepage, In quarantaine, [29], [316526],1.0.735 PUP.Optional.PCSpeedUp, C:\USERS\FENNY BEERNINK\APPDATA\LOCAL\MICROSOFT\SILVERLIGHT\OUTOFBROWSER\SPEEDCHECKER.PCSPEEDUP, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\X64, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\X86, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\PROGRAMDATA\LOGIC HANDLER, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.Linkury.ACMB1, C:\PROGRAM FILES (X86)\COMMON FILES\QUADFAX, In quarantaine, [95], [302564],1.0.735 Bestand: 25 PUP.Optional.LockHomepage, C:\Users\Fenny Beernink\AppData\Roaming\lockhomepage\LockHomePage.ini, In quarantaine, [29], [316526],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\appicon_48.png, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\application.xap, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\Error.jpg, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\index.html, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\metadata, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\Speedchecker.PCSpeedUp.ico, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\SplashScreen.jpg, In quarantaine, [7830], [178840],1.0.735 PUP.Optional.PCSpeedUp, C:\Users\Fenny Beernink\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp\state, In quarantaine, [7830], [178840],1.0.735 Adware.Eszjuxuan, C:\PROGRAMDATA\SERVICE.EXE, In quarantaine, [59], [333631],1.0.735 PUP.Optional.LogicHandler, C:\PROGRAMDATA\LOGIC HANDLER\SET.EXE.CONFIG, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\X64\SQLite.Interop.dll, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\X86\SQLite.Interop.dll, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\Config.json, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\System.Data.SQLite.dll, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\System.Data.SQLite.Linq.dll, In quarantaine, [4184], [183111],1.0.735 PUP.Optional.LogicHandler, C:\ProgramData\Logic Handler\System.Data.SQLite.xml, In quarantaine, [4184], [183111],1.0.735 Adware.OxyPumper, C:\USERS\FENNY BEERNINK\APPDATA\ROAMING\ADOBE\MANAGER.EXE, In quarantaine, [465], [352878],1.0.735 PUP.Optional.Linkury, C:\USERS\FENNY BEERNINK\APPDATA\ROAMING\UNINSTALL_TEMP.ICO, In quarantaine, [399], [258093],1.0.735 PUP.Optional.Linkury.ACMB1, C:\PROGRAM FILES (X86)\COMMON FILES\QUADFAX\INSTALLATIONCONFIGURATION.XML, In quarantaine, [95], [302564],1.0.735 PUP.Optional.Linkury.ACMB1, C:\Program Files (x86)\Common Files\Quadfax\uninstall.dat, In quarantaine, [95], [302564],1.0.735 PUP.Optional.Linkury.ACMB1, C:\Program Files (x86)\Common Files\Quadfax\uninstall.exe, In quarantaine, [95], [302564],1.0.735 PUP.Optional.Linkury.ACMB1, C:\Program Files (x86)\Common Files\Quadfax\uninstall.ico, In quarantaine, [95], [302564],1.0.735 Adware.Wajam, C:\WINDOWS\C302971A7A811F57B5EE2B9FD7672843.EXE, In quarantaine, [1770], [357413],1.0.735 PUP.Optional.Linkury.ACMB1, C:\WINDOWS\SYSTEM32\TASKS\psv_Groovefind, In quarantaine, [95], [259513],1.0.735 Fysieke sector: 0 (Geen kwaadaardige items gedetecteerd) (end)