Malwarebytes Anti-Malware
Scan Date: 22/08/35
Scan Time: 05:00:36 م
Logfile: ml.txt
Administrator: No
Version: 2.00.2.1012
Malware Database: v2014.06.20.06
Rootkit Database: v2014.06.19.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: jama
Scan Type: Custom Scan
Result: Completed
Objects Scanned: 485616
Time Elapsed: 2 hr, 18 min, 48 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 22
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\CLSID\{598AC71E-BE58-3981-B78A-5C138F423AD6}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{3FC2D59A-5C76-1E97-30DC-1EC6784419E5}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{63D2A451-3351-178C-7BC4-13C4D58A7652}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\CLSID\{598AC71E-BE58-3981-B78A-5C138F423AD6}\INPROCSERVER32, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\AdSafe.AdSafe.1, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\CLASSES\AdSafe.AdSafe, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{598AC71E-BE58-3981-B78A-5C138F423AD6}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{598AC71E-BE58-3981-B78A-5C138F423AD6}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{598AC71E-BE58-3981-B78A-5C138F423AD6}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.StartPage.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{598AC71E-BE58-3981-B78A-5C138F423AD6}, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
PUP.Optional.FunMoods.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}, Quarantined, [05b164160774f44245044c09e61c41bf],
PUP.Optional.FunMoods.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}, Quarantined, [05b164160774f44245044c09e61c41bf],
PUP.Optional.Funmoods.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Quarantined, [4472502a23585cdaf6a3c7af3cc60af6],
PUP.Optional.Funmoods.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Quarantined, [4472502a23585cdaf6a3c7af3cc60af6],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{2F5F003B-C71B-72E3-42B4-DE51AB079EB2}, Quarantined, [06b0b0ca5724df57824c22239f63f40c],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\fdloijijlkoblmigdofommgnheckmaki, Quarantined, [82345723502b63d334bb6d2d7d86c937],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM, Quarantined, [12a434463c3fce68736c35a9838003fd],
PUP.FunMoods, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Funmoods, Quarantined, [f7bf4634e794e05663865f70ee147f81],
PUP.Optional.SProtector.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SProtector, Quarantined, [c6f0c4b6473400364d29bc24b64d43bd],
PUP.FunMoods, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\funmoods, Quarantined, [6155cfabfb80a5919654f7d899690000],
PUP.Optional.Softonic.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Quarantined, [8e286f0b4239b77ff997eacce121ab55],
PUP.Optional.SweetIM.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, Quarantined, [caecd5a5e19a31058e5022bcd52e857b],
Registry Values: 2
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\SWEETIM|simapp_id, {55A83B43-CDFF-11E1-A4AE-0019E00F138B}, Quarantined, [12a434463c3fce68736c35a9838003fd]
PUP.Optional.SweetIM.A, HKU\S-1-5-21-1127056733-4176383407-4137172375-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {55A83B43-CDFF-11E1-A4AE-0019E00F138B}, Quarantined, [caecd5a5e19a31058e5022bcd52e857b]
Registry Data: 0
(No malicious items detected)
Folders: 7
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods, Quarantined, [5e588feb611ad363107c860620e27789],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods\Funmoods, Quarantined, [5e588feb611ad363107c860620e27789],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods\Funmoods\us, Quarantined, [5e588feb611ad363107c860620e27789],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods\Funmoods\us\20101003, Quarantined, [5e588feb611ad363107c860620e27789],
PUP.Optional.FunMoods.A, C:\Windows\System32\config\systemprofile\AppData\LocalLow\Funmoods, Quarantined, [b0064b2f2d4ef44275175339877b3ac6],
PUP.Optional.FunMoods.A, C:\Windows\System32\config\systemprofile\AppData\LocalLow\Funmoods\Funmoods, Quarantined, [b0064b2f2d4ef44275175339877b3ac6],
PUP.Optional.CostMin.A, C:\ProgramData\CostMin, Quarantined, [26901d5dec8f1a1c782a75263cc66f91],
Files: 18
PUP.Optional.StartPage.A, C:\Users\jama\AppData\Roaming\VolIE\AdSafe_32.dll, Quarantined, [10a65a204f2c66d0f2bd483525dd3ac6],
Trojan.Agent, C:\Program Files\MKJogo\MKLOL\newupdater.exe, Quarantined, [f0c67208dc9f83b3ee7ddfafad549070],
PUP.Optional.Amonetize, C:\Users\jama\Downloads\MinecraftInstaller__2490_il123 (1).exe, Quarantined, [e6d08eecf289d26405b953f1ff01ce32],
PUP.Optional.Amonetize, C:\Users\jama\Downloads\MinecraftInstaller__2490_il123.exe, Quarantined, [8a2cfe7c24571f178c324202f907b749],
PUP.Optional.Softonic.A, C:\Users\jama\Downloads\SoftonicDownloader_for_avi-mpeg-rm-wmv-splitter.exe, Quarantined, [7b3bc3b7fa81ea4cd83a26fe996855ab],
PUP.Optional.Softonic.A, C:\Users\jama\Downloads\SoftonicDownloader_for_vso-convertxtodvd.exe, Quarantined, [52643248047792a43ed46bb9d82922de],
PUP.Optional.DomaIQ, C:\Users\jama\Downloads\Java.exe, Quarantined, [c7efa8d2e695003629568cb613edba46],
RiskWare.Tool.CK, C:\Users\jama\Downloads\MP3 Cutter Joiner v2.20.rar, Quarantined, [dadc3545e69557df8880c1254db47a86],
PUP.FunMoods, C:\Users\jama\Funmoods\1.5.23.22\escortApp.dll, Quarantined, [1b9b7307ec8f4fe7438c5338a45cc937],
PUP.FunMoods, C:\Users\jama\Funmoods\1.5.23.22\escortEng.dll, Quarantined, [caec5327e89382b49a355d2ed42c8b75],
PUP.FunMoods, C:\Users\jama\Funmoods\1.5.23.22\escorTlbr.dll, Quarantined, [6d493a40d2a979bd09c60b80847c7a86],
PUP.FunMoods, C:\Users\jama\Funmoods\1.5.23.22\funmoodssrv.exe, Quarantined, [f1c57dfdf4875bdb2fa0f89310f0c33d],
PUP.Funmoods, C:\Users\jama\Funmoods\1.5.23.22\bh\escort.dll, Quarantined, [feb86e0c3744122486563c53a35de21e],
PUP.Funmoods, C:\Users\jama\AppData\Local\funmoods.crx, Quarantined, [8036d9a14f2cb77f3f20e4ee8280de22],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\Local\funmoods-speeddial_sf.crx, Quarantined, [d2e4a3d7205bfa3c08afcfee21e2c040],
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot.exe, Quarantined, [655187f35922e0567575c915956e946c],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods\Funmoods\us\20101003\kywrds.tat, Quarantined, [5e588feb611ad363107c860620e27789],
PUP.Optional.FunMoods.A, C:\Users\jama\AppData\LocalLow\Funmoods\Funmoods\us\20101003\kywrds.ttr, Quarantined, [5e588feb611ad363107c860620e27789],
Physical Sectors: 0
(No malicious items detected)
(end)