Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 22/05/2014 Scan Time: 18:15:18 Logfile: mbam scanlog 220514.txt Administrator: Yes Version: 2.00.1.1004 Malware Database: v2014.05.21.06 Rootkit Database: v2014.03.27.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Chameleon: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Thierry Scan Type: Custom Scan Result: Completed Objects Scanned: 536742 Time Elapsed: 24 hr, 12 min, 55 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Shuriken: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 1 PUP.Optional.DealPly.A, HKU\S-1-5-21-958784132-981123827-108029691-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\gaiilaahiahdejapggenmdmafpmbipje, Quarantined, [4ab6be42897740c01ad3592c50b204fc], Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 2 Rootkit.Necurs.GO, C:\TDSSKiller_Quarantine\09.05.2014_16.45.31\necurs0000\svc0000\tsk0000.dta, Quarantined, [d03026da738dd42c79d99ec69b663dc3], PUP.Optional.Dealply, C:\zoek_backup\C_Users_Thierry_AppData_Roaming_Mozilla_Firefox_Profiles_a0bav93m.default_extensions_{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\DealPlyTune.dll, Quarantined, [5fa1b947cb3569971fc7bbba8f759c64], Physical Sectors: 0 (No malicious items detected) (end)