Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 1/6/18 Scan Time: 11:04 AM Log File: ab341528-f2c0-11e7-a155-3497f6df54dc.json Administrator: Yes -Software Information- Version: 3.3.1.2183 Components Version: 1.0.262 Update Package Version: 1.0.3636 License: Trial -System Information- OS: Windows 10 (Build 16299.192) CPU: x64 File System: NTFS User: DESKTOP-1VCINLI\Ayman -Scan Summary- Scan Type: Threat Scan Result: Completed Objects Scanned: 293548 Threats Detected: 11 Threats Quarantined: 9 Time Elapsed: 11 min, 10 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Detect PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 2 PUP.Optional.ChromeSearchClub.ChrPRST, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME, Quarantined, [15178], [-1],0.0.0 PUP.Optional.ChromeSearchClub.ChrPRST, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\CHROME, Quarantined, [15178], [-1],0.0.0 Registry Value: 3 Trojan.Agent.Proxy, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SVCHOST|NETSVC, Quarantined, [1035], [252006],1.0.3636 PUP.Optional.ChromeSearchClub.ChrPRST, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME|DefaultSearchProviderSearchURL, Quarantined, [15178], [475079],1.0.3636 PUP.Optional.ChromeSearchClub.ChrPRST, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\CHROME|DefaultSearchProviderSearchURL, Quarantined, [15178], [475079],1.0.3636 Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 0 (No malicious items detected) File: 6 PUP.Optional.ChromeSearchClub.ChrPRST, C:\USERS\AYMAN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [15178], [475079],1.0.3636 PUP.Optional.ChromeSearchClub.ChrPRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\NTUSER.POL, Removal Failed, [15178], [-1],0.0.0 PUP.Optional.ChromeSearchClub.ChrPRST, C:\PROGRAMDATA\NTUSER.POL, Removal Failed, [15178], [-1],0.0.0 PUP.Optional.ChromeSearchClub.ChrPRST, C:\WINDOWS\SYSTEM32\GROUPPOLICY\MACHINE\REGISTRY.POL, Quarantined, [15178], [-1],0.0.0 PUP.Optional.ChromeSearchClub.ChrPRST, C:\WINDOWS\SYSTEM32\GROUPPOLICY\MACHINE\REGISTRY.POL, Quarantined, [15178], [475079],1.0.3636 PUP.Optional.ChromeSearchClub.ChrPRST, C:\USERS\AYMAN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [15178], [475079],1.0.3636 Physical Sector: 0 (No malicious items detected) (end)