Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2014-06-29
Scan Time: 00:48:54
Logfile: df.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.06.28.05
Rootkit Database: v2014.06.23.02
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Karol
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 281362
Time Elapsed: 17 min, 3 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 2
PUP.Optional.Amonetize, C:\Windows\SysWOW64\nethtsrv.exe, 4888, Delete-on-Reboot, [32a31a63e19a0432b4833161c938966a]
PUP.Optional.Amonetize, C:\Windows\SysWOW64\netupdsrv.exe, 256, Delete-on-Reboot, [a92c235ac4b76fc7c771830f12ef629e]
Modules: 0
(No malicious items detected)
Registry Keys: 48
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NetHttpService, Quarantined, [32a31a63e19a0432b4833161c938966a],
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ServiceUpdater, Quarantined, [a92c235ac4b76fc7c771830f12ef629e],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MediaBuzzV1mode4717, Quarantined, [389d225b1863ba7c15113a83c33fbe42],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha1566, Quarantined, [29ace994d2a9d56178ef8f3a3bc7e917],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha3755, Quarantined, [34a1512c1566fd395314cffa1fe3867a],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MediaWatchV1home3719, Quarantined, [8e47bebf156694a2af0f946d0ff55aa6],
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\RichMediaViewV1release3, Quarantined, [478ef489bac17fb7ba7e7e392bd7718f],
PUP.Optional.BestMarkIt.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\best_markit, Quarantined, [1fb665183447e3533a012f95be44b24e],
PUP.Optional.BestMarkIt.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\best_markit, Quarantined, [ba1ba6d797e45adc2714a91ba75b6c94],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{eb2df54b-4832-44c1-8d68-56a75da9d5cc}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2ccd11e0-f4fe-4135-85cc-bcebb5fb871c}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{43E6EE01-9C40-45CE-BDFA-A809B0960DA4}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{43E6EE01-9C40-45CE-BDFA-A809B0960DA4}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{2ccd11e0-f4fe-4135-85cc-bcebb5fb871c}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EB2DF54B-4832-44C1-8D68-56A75DA9D5CC}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EB2DF54B-4832-44C1-8D68-56A75DA9D5CC}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EB2DF54B-4832-44C1-8D68-56A75DA9D5CC}, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3b607cbf-04b6-4e3d-9962-7242a9549a74}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3B607CBF-04B6-4E3D-9962-7242A9549A74}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{b7cdde6f-6e96-4144-ad23-384c52610d24}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{BC84B893-6096-4663-BDED-0BEE5314B1BC}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{BC84B893-6096-4663-BDED-0BEE5314B1BC}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{b7cdde6f-6e96-4144-ad23-384c52610d24}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3B607CBF-04B6-4E3D-9962-7242A9549A74}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaWatch.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3B607CBF-04B6-4E3D-9962-7242A9549A74}, Quarantined, [5a7b5627512af34334fae6a911f3748c],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{55ec8fae-9763-4ab3-b0f6-f49f2b4f532c}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{55EC8FAE-9763-4AB3-B0F6-F49F2B4F532C}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{94912010-727a-4981-bc1d-ef36c7bbef6d}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{73BAE20D-785C-4E89-91FE-42C685913FEB}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{73BAE20D-785C-4E89-91FE-42C685913FEB}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{94912010-727a-4981-bc1d-ef36c7bbef6d}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{55EC8FAE-9763-4AB3-B0F6-F49F2B4F532C}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.MediaView.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{55EC8FAE-9763-4AB3-B0F6-F49F2B4F532C}, Quarantined, [ece9cab3314a7bbb05e97f0f838130d0],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7A9CAD0B-E35C-B7B1-B047-00B1386E87D5}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{7A9CAD0B-E35C-B7B1-B047-00B1386E87D5}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{47733550-E9B2-5B3D-4505-1F2B3D30195F}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{426BC7F0-B7F3-E43A-BFAA-33FB7185FB3E}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{47733550-E9B2-5B3D-4505-1F2B3D30195F}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{7A9CAD0B-E35C-B7B1-B047-00B1386E87D5}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.ReMarkIt.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{7A9CAD0B-E35C-B7B1-B047-00B1386E87D5}, Quarantined, [ebeabac3cfac9c9ac9d2f993719322de],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{e8a41c28-fab2-4e09-aaf2-8a89363c5134}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E8A41C28-FAB2-4E09-AAF2-8A89363C5134}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{4bc4d232-2474-4bea-b326-44efceabacb0}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7AE42211-BFCD-466F-AE0C-17C012B9B453}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7AE42211-BFCD-466F-AE0C-17C012B9B453}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{4bc4d232-2474-4bea-b326-44efceabacb0}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E8A41C28-FAB2-4E09-AAF2-8A89363C5134}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
PUP.Optional.MediaView.A, HKU\S-1-5-21-2485980081-3737532992-1299750299-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E8A41C28-FAB2-4E09-AAF2-8A89363C5134}, Quarantined, [e1f45a235526e2546985e5a9d62e6f91],
Registry Values: 8
PUP.Optional.FirstSeenToday.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|fst_en_2, Quarantined, [d9fcf7862e4db6800cb517a622e030d0],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha1566.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1566\ff, Quarantined, [f5e0433accafb383293f1baedd2535cb]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha3755.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3755\ff, Quarantined, [478e3449c6b50036b3b5d6f327db3bc5]
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaWatchV1home3719.net, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home3719\ff, Quarantined, [6471710cafcc84b237889e63c63e45bb]
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaBuzzV1mode4717.net, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff, Quarantined, [fbda423bf9828caa78afd8e5f01252ae]
PUP.Optional.RichMediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@RichMediaViewV1release3.net, C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release3\ff, Quarantined, [0dc8601dcfac05311324aa0d1fe36a96]
PUP.Optional.NetworkUpdate.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NETHTTPSERVICE|ImagePath, C:\Windows\SysWOW64\nethtsrv.exe, Quarantined, [795c215c0e6d50e6835bd135a85cad53]
PUP.Optional.NetworkUpdate.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SERVICEUPDATER|ImagePath, C:\Windows\SysWOW64\netupdsrv.exe, Quarantined, [7d5818657506e74f21bedc2a4eb6d52b]
Registry Data: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Replaced,[587d9be22457f83ead51dbafa4609070]
Folders: 8
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ch, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\icons, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\icons\default, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ie, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
Files: 17
PUP.Optional.Amonetize, C:\Windows\SysWOW64\nethtsrv.exe, Delete-on-Reboot, [32a31a63e19a0432b4833161c938966a],
PUP.Optional.Amonetize, C:\Windows\SysWOW64\netupdsrv.exe, Delete-on-Reboot, [a92c235ac4b76fc7c771830f12ef629e],
PUP.Optional.InstallCore, C:\Users\Karol\Downloads\DAEMON-Tools-Lite(12708).exe, Quarantined, [8f46e5980774e84e3357f289dc28629e],
PUP.Optional.OpenCandy, C:\Users\Karol\Downloads\DTLite4491-0356.exe, Quarantined, [a72e4b321c5fcf671a30426dd1331ee2],
PUP.Optional.BestMarkIt.A, C:\Windows\System32\Tasks\best-markit Update, Quarantined, [ede80c71d1aa54e2ec7ceac432d032ce],
PUP.Optional.BestMarkIt.A, C:\Windows\System32\Tasks\best-markit_wd, Quarantined, [a62fdf9ef4878aaca2c6d9d5f50d6f91],
PUP.Optional.BestMarkIt.A, C:\Windows\Tasks\best-markit Update.job, Quarantined, [973e65185d1e9d99a890be061ae8f30d],
PUP.Optional.BestMarkIt.A, C:\Windows\Tasks\best-markit_wd.job, Quarantined, [468fa8d5a5d62d0986b29331fc060ef2],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ch\MediaBuzzV1mode4717.crx, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome.manifest, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\install.rdf, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\ffMediaBuzzV1mode4717.js, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\ffMediaBuzzV1mode4717ffaction.js, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\overlay.xul, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\icons\Thumbs.db, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ff\chrome\content\icons\default\MediaBuzzV1mode4717_32.png, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode4717\ie\MediaBuzzV1mode4717.dll, Quarantined, [2ea75f1eabd0e6507e5b019f34ce10f0],
Physical Sectors: 0
(No malicious items detected)
(end)