MalwareBytes
Malwarebytes Anti-Malware
www.malwarebytes.orgData scansione: 30/07/2015
Ora scansione: 23:30
File di log: malwar.txt
Amministratore: Sì
Versione: 2.1.8.1057
Database malware: v2015.07.30.05
Database rootkit: v2015.07.29.02
Licenza: Gratuito
Protezione da malware: Disattivata
Protezione da siti web nocivi: Disattivata
Auto-protezione: Disattivata
SO: Windows 7 Service Pack 1
CPU: x86
File system: NTFS
Utente: Pasquale
Tipo di scansione: Ricerca elementi nocivi
Risultati: Completata
Elementi analizzati: 318516
Tempo impiegato: 23 min, 24 sec
Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Disattivata
Euristiche: Attivata
PUP: Attivata
PUM: Attivata
Processi: 1
RiskWare.Tool.CK, C:\Windows\KMService.exe, 632, Elimina al riavvio, [e805ab3cfc8e87afd34ea85db9497987]
Moduli: 0
(Nessun elemento nocivo rilevato)
Chiavi di registro: 5
PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, In quarantena, [faf37e69bdcd7bbbdca35373748ec33d],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, In quarantena, [6a83d90e4347072f6f115d6952b03ac6],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, In quarantena, [89647275e7a365d13ed6a71fa45ee818],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, In quarantena, [05e830b701898fa7da1bf26619ea21df],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent, In quarantena, [aa4331b60288b87e3e57295721e3a060],
Valori di registro: 2
PUP.Optional.Iminent.A, HKU\S-1-5-21-1364049879-728529138-1316295447-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, In quarantena, [89647275e7a365d13ed6a71fa45ee818],
PUP.Optional.Iminent.A, HKU\S-1-5-21-1364049879-728529138-1316295447-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, In quarantena, [39b443a43159b383b46071554cb6e51b],
Dati di registro: 0
(Nessun elemento nocivo rilevato)
Cartelle: 1
PUP.Optional.Iminent.A, C:\Users\Pasquale\AppData\Local\Temp\Iminent, In quarantena, [7974499eed9dd0669e993c9fda28f40c],
File: 11
RiskWare.Tool.CK, C:\Windows\KMService.exe, Elimina al riavvio, [e805ab3cfc8e87afd34ea85db9497987],
Riskware.Crk, C:\Users\Pasquale\Desktop\mini-KMS_Activator_v1.2_Office2010_VL_ENG.exe, In quarantena, [b23be304a7e3c96db636e6e554ac58a8],
PUP.Optional.Somoto.SID.A, C:\Users\Pasquale\AppData\Local\Temp\nscDDB.tmp, In quarantena, [25c89f48f7937eb87b74b2c241c4ec14],
Trojan.Dropped, C:\Users\Pasquale\AppData\Local\Temp\B9BE.tmp\hidcon.exe, In quarantena, [9e4fbd2a99f150e6c0b7914a43be1ce4],
Trojan.FakeAV, C:\Users\Pasquale\AppData\Local\Temp\B9BE.tmp\hs_message.exe, In quarantena, [7875be2923674beb072a9f3f21dfb14f],
RiskWare.Tool.CK, C:\Users\Pasquale\AppData\Local\Temp\B9BE.tmp\KMService.exe, In quarantena, [8568d413375383b3899843c21fe331cf],
PUP.Optional.MultiPlug, C:\Users\Pasquale\Downloads\[pc game ita] harry potter e l'ordine della fenice (1).exe, In quarantena, [618c06e1cbbfe353ca14496bc938ba46],
PUP.Optional.MultiPlug, C:\Users\Pasquale\Downloads\[pc game ita] harry potter e l'ordine della fenice.exe, In quarantena, [cd206582dfab4fe7607eddd7e31e59a7],
PUP.Optional.Iminent.A, C:\Users\Pasquale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ehhlaekjfiiojlddgndcnefflngfmhen_0.localstorage, In quarantena, [d01d1bcc682289ad1e018baa8a7919e7],
PUP.Optional.Iminent.A, C:\Users\Pasquale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jdkokpcldhneihjdhigfjmoeojkdcbmg_0.localstorage, In quarantena, [1ecfa83f4d3dca6c03c01d1ec14229d7],
PUP.Optional.Iminent.A, C:\Users\Pasquale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage, In quarantena, [effeaf38fa9054e22e4333155fa45da3],
Settori fisici: 0
(Nessun elemento nocivo rilevato)
(end)