Log :
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 28.7.2014
Scan Time: 21:38:26
Logfile: Log.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.07.28.06
Rootkit Database: v2014.07.17.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: TomA!A!
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 310212
Time Elapsed: 38 min, 52 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 4
PUP.Optional.Spigot.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Application Updater, , [d016e8bc86f5dc5afaf835552bd606fa],
PUP.Optional.Spigot.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\mhkaekfpcppmmioggniknbnbdbcigpkk, , [776fb4f0bfbc64d2af5a558a51b1b848],
Trojan.Agent.CR, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\godimpbmfohihoaikgfknnnmlncabkkp, , [16d08123b6c5fd396a5fb519887a47b9],
PUP.Optional.Spigot.A, HKU\S-1-5-21-3923160396-3041073526-3501625183-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Search Settings, , [d313f2b2f289e0562ad950dcb84c26da],
Registry Values: 4
PUP.Optional.Spigot.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES\APPLICATION UPDATER\APPLICATIONUPDATER.EXE, 1, , [d016e8bc86f5dc5afaf835552bd606fa]
PUP.Optional.Spigot.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES\COMMON FILES\SPIGOT\SEARCH SETTINGS\SEARCHSETTINGS.EXE, 1, , [18ceecb8d4a7f343172fbff51ee426da]
PUP.Optional.Spigot.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES\COMMON FILES\SPIGOT\SEARCH SETTINGS\{58D2A791-6199-482F-A9AA-9B725EC61362}.XPI, 1, , [18ceecb8d4a7f343172fbff51ee426da]
PUP.Optional.Spigot.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES\COMMON FILES\SPIGOT\GC\EXTHELPER.EXE, 1, , [ba2c2e76c4b73afc5789e5d7f40ed828]
Registry Data: 0
(No malicious items detected)
Folders: 15
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\508B40C7ADB94B2E9C5F671AA2004366, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\98E50D87571943C3BB0E65868A6E72EA, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\EBD5BF2615134144A11C9BB6EADF1F3E, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Res, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\GC, , [ba2c2e76c4b73afc5789e5d7f40ed828],
PUP.Optional.Spigot.A, C:\Users\TomA!A!\AppData\LocalLow\Search Settings, , [994de3c1d5a63ef8cd07467b6b97e21e],
PUP.Optional.Spigot.A, C:\Users\TomA!A!\AppData\LocalLow\Search Settings\res, , [994de3c1d5a63ef8cd07467b6b97e21e],
PUP.Optional.Spigot.A, C:\Users\TomA!A!\AppData\LocalLow\Search Settings\temp, , [994de3c1d5a63ef8cd07467b6b97e21e],
Files: 41
PUP.Optional.Spigot.A, C:\Program Files\Application Updater\ApplicationUpdater.exe, , [d016e8bc86f5dc5afaf835552bd606fa],
PUP.Optional.OpenCandy.A, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\EBD5BF2615134144A11C9BB6EADF1F3E\dlm.exe, , [f1f58e16502bef47f358a583847d08f8],
PUP.Optional.Bitcoin, C:\Windows\System32\acumncxodur.exe, , [c620efb55427191dd4fddecabf4243bd],
PUP.BitCoinMiner, C:\Windows\System32\lcpmncxodur.exe, , [8c5ad4d0d3a8290d4cabeb2b27dafa06],
PUP.Optional.InstallCore.A, C:\Users\TomA!A!\Downloads\razorlame115a.zip - CHIP Downloader.exe, , [489e2084285385b13424067f09fba55b],
PUP.Optional.Spigot.A, C:\Windows\Installer\5e962fc.msi, , [499dfba91863f64007ec54365ea315eb],
Malware.Trace, C:\Windows\inf\ntvdm.inf, , [7076257f80fb55e182845eaff311d42c],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\508B40C7ADB94B2E9C5F671AA2004366\chrometest3.html, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\98E50D87571943C3BB0E65868A6E72EA\avg_tuht_stf_cs_2014_206_CZ.exe, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\EBD5BF2615134144A11C9BB6EADF1F3E\6866.ico, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.OpenCandy, C:\Users\TomA!A!\AppData\Roaming\OpenCandy\EBD5BF2615134144A11C9BB6EADF1F3E\AVG-TuneUp-CZ-CZ_p3v0.exe, , [c323574d86f586b00485c8e1b15107f9],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\background.html, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\config.json, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\manifest.json, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons\ss-128.png, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons\ss-48.png, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\background.js, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\loader_1036.js, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.SlickSavings.A, C:\Users\TomA!A!\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\utils.js, , [dc0a02a2bdbec4723500c3eb54aedc24],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\config.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\searchcom_ff.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\searchcom_ie.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings64.exe, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\wth184.dll, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\wthx184.dll, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yahoo_ff.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yahoo_ie.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yandextr_ff.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yandextr_ie.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\yandex_ie.xml, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\{58d2a791-6199-482f-a9aa-9b725ec61362}.xpi, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini, , [18ceecb8d4a7f343172fbff51ee426da],
PUP.Optional.Spigot.A, C:\Program Files\Common Files\Spigot\GC\exthelper.exe, , [ba2c2e76c4b73afc5789e5d7f40ed828],
Physical Sectors: 0
(No malicious items detected)
(end)
A ještě se chci zeptat co u těch detekovaných malware mám dát za možnost díky
