Malwarebytes Anti-Malware www.malwarebytes.org Scandatum: 22/06/2014 Scantijd: 11:02:15 Logbestand: malwarebytes 2.txt Beheerder: Ja Versie: 2.00.2.1012 Malwaredatabase: v2014.06.22.01 Rootkitdatabase: v2014.06.20.01 Licentie: Proef Malwarebescherming: Ingeschakeld Kwaadaardige Website Bescherming: Ingeschakeld Self-protection: Uitgeschakeld Besturingssysteem: Windows 7 Service Pack 1 Processor: x64 Bestandssysteem: NTFS Gebruiker: maes Scantype: Bedreigingsscan Resultaat: Voltooid Objecten Gescand: 270641 Verstreken Tijd: 3 m, 4 s Geheugen: Ingeschakeld Opstarten: Ingeschakeld Bestandssysteem: Ingeschakeld Archieven: Ingeschakeld Rootkits: Uitgeschakeld Heuristics: Ingeschakeld POP: Ingeschakeld POA: Ingeschakeld Processen: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registersleutels: 3 PUP.Optional.weDownload.A, HKLM\SOFTWARE\WOW6432NODE\The weDownload Manager, In Quarantaine, [97e2bac1df9c0f27b4fecff79072e41c], PUP.Optional.weDownload.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\The weDownload Manager, In Quarantaine, [9edb007bc7b40432e2acb6078d75be42], PUP.Optional.weDownload.A, HKU\S-1-5-21-640646408-3305349783-2111966010-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\The weDownload Manager, In Quarantaine, [5b1e3d3e0b707cba2a64e7d67a8817e9], Registerwaardes: 0 (No malicious items detected) Registerdata: 0 (No malicious items detected) Mappen: 0 (No malicious items detected) Bestanden: 1 PUP.Optional.Trovi.A, C:\Users\maes\AppData\Local\Google\Chrome\User Data\Default\Preferences, Goed: (), Slecht: ( "startup_urls": [ "http://www.google.com/", "http://www.trovi.com/?gd=&ctid=CT3314759&octid=EB_ORIGINAL_CTID&ISID=M83374C54-E419-411D-97E8-7B1AAA8C9526&SearchSource=55&CUI=&UM=5&UP=SPC8A0C9A6-DF82-497D-A046-A0AE2BF11B87&SSPV=&SSPV=&SSPV=&SSPV=&SSPV=&SSPV=&SSPV=&SSPV=&SSPV=", "http://www.search.ask.com/?tpid=ORJ-V7C&o=APN11412&pf=V7&trgb=CR&p2=Vervangen,[0b6e28535229261067fc7639e81caa56]EBBKVervangen,[0b6e28535229261067fc7639e81caa56]EOSJ000Vervangen,[0b6e28535229261067fc7639e81caa56]EYYVervangen,[0b6e28535229261067fc7639e81caa56]EBE&gct=hp&apn_ptnrs=BBK&apn_dtid=Vervangen,[0b6e28535229261067fc7639e81caa56]EOSJ000Vervangen,[0b6e28535229261067fc7639e81caa56]EYYVervangen,[0b6e28535229261067fc7639e81caa56]EBE&apn_dbr=cr_35.0.1916.114&apn_uid=1ADA9970-4D7D-4946-BD06-77B61B9BBD97&itbv=12.12.2.83&doi=2014-05-31&psv=&pt=tb", "http://mysearch.avg.com?cid={689D74D4-9ED4-4702-BB5A-56B4E9A3F288}&mid=ac3c43452ba847d2875f29f8103dafab-f19f05eef92fbbd3eedb24153642b52917be40bb&lang=en&ds=re011&coid=avgtbdisre&cmpid=&pr=sa&d=2014-06-16 23:02:43&v=18.1.0.443&pid=safeguard&sg=&sap=hp" ],), Vervangen,[0b6e28535229261067fc7639e81caa56] Fysieke Sectoren: 0 (No malicious items detected) (end)