Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 19/11/2014 Scan Time: 06:55:19 Logfile: mbam du 19 nov.txt Administrator: Yes Version: 2.00.3.1025 Malware Database: v2014.11.19.01 Rootkit Database: v2014.11.18.01 License: Trial Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows XP Service Pack 3 CPU: x86 File System: NTFS User: paul Fossaert Scan Type: Threat Scan Result: Completed Objects Scanned: 289240 Time Elapsed: 14 min, 49 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 12 PUP.Optional.Linkey.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [b2ebd36a9ce0f64084fe9e1f946e669a], PUP.Optional.Iminent.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, , [138a1924f68614228cda4ea5867c60a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, , [138a1924f68614228cda4ea5867c60a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, , [b8e5390498e451e5fed3c231eb17e51b], PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, , [0895ce6fafcd082e3f934da613ef24dc], PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, , [49541c2198e4eb4b49f7066fc83b29d7], PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\SmdmF, , [bae3221ba5d773c30587cf779a69fc04], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent, , [6736df5efd7f74c2f17d3b64d72dae52], PUP.Optional.Iminent.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Iminent, , [debf132a5923270fe45da6cf31d2639d], PUP.Optional.InstallCore.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [3568d36aceae3afc5bf4680cdf24956b], PUP.Optional.InstallCore.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [debfed507dff55e17a0aacdeae565ea2], PUP.Optional.Iminent.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\Iminent, , [089581bc94e8a88e63c4ed73a55ee31d], Registry Values: 4 PUP.Optional.Iminent.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, , [138a1924f68614228cda4ea5867c60a0], PUP.Optional.Iminent.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, , [207dce6f4e2e82b4165012e18f73dc24], PUP.Optional.SettingsManager, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x64, c:\program files\settings manager\smdmf\x64\sysapcrt.dll, , [a0fdb489fc8085b1f7194cfe1ae93bc5] PUP.Optional.InstallCore.A, HKU\S-1-5-21-1757981266-1606980848-725345543-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0E1G1J1H, , [debfed507dff55e17a0aacdeae565ea2] Registry Data: 0 (No malicious items detected) Folders: 2 PUP.Optional.Iminent.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\Iminent, , [dcc1320b89f360d683d6e5225aa9817f], PUP.Optional.Datamngr.A, C:\Documents and Settings\paul Fossaert\AppData\LocalLow\DataMngr, , [eab3f24b1b6161d5dea812fbf80b7090], Files: 18 PUP.Optional.IMGUpdater.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\RarSFX0\IMGUpdater.exe, , [039af14cf18b4fe7c0b0643a31d0bf41], PUP.Optional.Iminent, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\RarSFX0\MetroInstallerAPP.exe, , [3766f647e6963bfba607d8493ec342be], PUP.Optional.IMGUpdater.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\RarSFX0\MetroInstallPack.MIP, , [326b78c5e09c96a02749f3ab1ee3ff01], PUP.Optional.Iminent, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\RarSFX0\Umbrella.exe, , [336abb820e6e68ce624bfe2330d16898], PUP.Optional.Iminent.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\Iminent\IminentMinibarIE.exe, , [821bfb422755df576b578d951ce5926e], PUP.Optional.Iminent, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\Iminent\metro.exe, , [b5e856e7d8a450e6a70656cb7988c33d], PUP.Optional.Iminent.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\Iminent\MinibarChrome.exe, , [86176ecfcab2e452a9a662dd9570ac54], PUP.Optional.Iminent.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\Iminent\MinibarFirefox.exe, , [eab351ec16662e08ad152ff35fa2966a], PUP.Optional.Linkey.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\nsn15\Uninstall.exe, , [bedfec5192ea68ce7fbf61241fe212ee], PUP.Optional.Linkey.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\nsnE\tbicon.exe, , [ecb17dc0d3a9fb3b6984aaf627dac040], PUP.Optional.Linkey.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\nsnE\nso12.tmp\mediabar.exe, , [821bf24bfe7e31052816ff8655ac49b7], PUP.Optional.SettingsManager.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\nsnE\nso12.tmp\pack.exe, , [6c311f1ea2daad89f04ca9071ae7916f], PUP.Optional.Linkey.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\nsnE\nso12.tmp\SettingsManagerMediaBar.exe, , [9eff28158cf039fdff3f562f07fa04fc], Trojan.Dropper, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\semapp\2034_Vlc_Media_Player (1).exe, , [633a1d2080fc73c3ca91e1d944bd9e62], Trojan.Dropper, C:\Documents and Settings\paul Fossaert\Local Settings\Temp\semapp\2034_Vlc_Media_Player.exe, , [8a137ac34b31c571e972556552afb14f], PUP.Optional.Iminent.A, C:\Documents and Settings\paul Fossaert\Local Settings\Temporary Internet Files\Content.IE5\620EG06Q\MinibarChrome[1].exe, , [5c41d06dee8efd399db2f04f778e6997], PUP.Optional.Freevox, C:\Documents and Settings\paul Fossaert\Local Settings\Temporary Internet Files\Content.IE5\620EG06Q\avastfreeantivirus[1].exe, , [2578a19c93e9e353c4fce9ef1fe21ee2], PUP.Optional.Datamngr.A, C:\Documents and Settings\paul Fossaert\AppData\LocalLow\DataMngr\{99BB1406-1CFB-488C-90D1-2D978E04F707}, , [eab3f24b1b6161d5dea812fbf80b7090], Physical Sectors: 0 (No malicious items detected) (end)