Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 12/29/19
Scan Time: 9:43 AM
Log File: 63ddc786-2a5a-11ea-b14a-0862662752c8.json
-Software Information-
Version: 4.0.4.49
Components Version: 1.0.785
Update Package Version: 1.0.16927
License: Trial
-System Information-
OS: Windows 10 (Build 18362.535)
CPU: x64
File System: NTFS
User: JTK45-PC\JTK45
-Scan Summary-
Scan Type: Custom Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 1766967
Threats Detected: 37
Threats Quarantined: 0
Time Elapsed: 3 hr, 34 min, 33 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 14
PUP.Optional.InstallCore, HKU\S-1-5-21-523233458-3520325473-2091056160-1000\SOFTWARE\CSASTATS\ic, No Action By User, 480, 586068, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\SegOption, No Action By User, 1557, 757809, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WebDiscoverBrowser, No Action By User, 1695, 253915, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKLM\SOFTWARE\WOW6432NODE\WebDiscoverBrowser, No Action By User, 1695, 253915, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\segurazoclient_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\Segurazo, No Action By User, 1557, 730655, 1.0.16927, , ame,
PUP.Optional.WebDiscoverBrowser, HKU\S-1-5-21-523233458-3520325473-2091056160-1000\SOFTWARE\WebDiscoverBrowser, No Action By User, 1695, 253912, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\segurazoclient_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoService_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoService_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoUninstaller_RASAPI32, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\TRACING\SegurazoUninstaller_RASMANCS, No Action By User, 1557, 709099, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SOFTWARE\MICROSOFT\WINDOWS\Segurazo, No Action By User, 1557, 730655, 1.0.16927, , ame,
PUP.Optional.Segurazo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\SegurazoSvc, No Action By User, 1557, 713771, 1.0.16927, , ame,
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 2
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\USERS\JTK45\APPDATA\LOCAL\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}, No Action By User, 850, 542290, 1.0.16927, , ame,
File: 21
Adware.WinYahoo, C:\PROGRAMDATA\JZEDQ\DALEGO.EXE, No Action By User, 689, 758226, 1.0.16927, , ame,
PUP.Optional.WinYahoo.TskLnk, C:\USERS\JTK45\APPDATA\LOCAL\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HOWTOREMOVE\HOWTOREMOVE.HTML, No Action By User, 850, 542290, 1.0.16927, , ame,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\chromium-min.jpg, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\control panel-min-min.JPG, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\down.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\ff menu.JPG, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\ff search engine-min.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\hp-min ff.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\hp-min ie.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\search engine.gif, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\setup pages.gif, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\sp-min.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\start-min.jpg, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\HowToRemove\up.png, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\caciniti, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\rimototat, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\uninst.exe, No Action By User, 850, 542290, , , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\JTK45\AppData\Local\{DB73ED2F-FFDB-8197-9243-A47FB62B58E7}\uninstp.dat, No Action By User, 850, 542290, , , ,
PUP.Optional.SearchManager, C:\USERS\JTK45\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NA6Y7OMX.DEFAULT\EXTENSIONS\{24436206-088D-4A1A-8D0E-CF93CA7A2D23}.XPI, No Action By User, 420, 733885, 1.0.16927, , ame,
Adware.InstallCore, C:\USERS\JTK45\DOWNLOADS\INKSCAPE-0.48.5-1-WIN32_2198155514.EXE, No Action By User, 481, 768623, 1.0.16927, , ame,
Adware.InstallCore, C:\USERS\JTK45\DOWNLOADS\INKSCAPE-0.48.5-1-WIN32_3160449409.EXE, No Action By User, 481, 768623, 1.0.16927, , ame,
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)