Malwarebytes Anti-Malware
www.malwarebytes.orgScan Date: 20.1.2015
Scan Time: 14:40:43
Logfile: mal.txt
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.01.20.04
Rootkit Database: v2015.01.14.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: user
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 394201
Time Elapsed: 25 min, 33 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 9
PUP.Optional.Datamngr.A, HKLM\SOFTWARE\CLASSES\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}, , [dec68b6eee9bf73f77150a1ee91aaf51],
PUP.Optional.Datamngr.A, HKLM\SOFTWARE\CLASSES\SearchQUIEHelper.DNSGuard, , [dec68b6eee9bf73f77150a1ee91aaf51],
PUP.Optional.Datamngr.A, HKLM\SOFTWARE\CLASSES\SearchQUIEHelper.DNSGuard.1, , [dec68b6eee9bf73f77150a1ee91aaf51],
PUP.Optional.Datamngr.A, HKU\S-1-5-21-75893039-200090470-3686506788-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}, , [dec68b6eee9bf73f77150a1ee91aaf51],
PUP.Optional.Datamngr.A, HKLM\SOFTWARE\CLASSES\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}, , [9d07b346c4c5e74ffd9007218a796997],
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\Datamngr, , [554fed0c5a2f46f04210eab3db284fb1],
PUP.Optional.Delta.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\kiplfnciaokpcennlkldkdaeaaomamof, , [475d10e935546acc741da7cdfb082cd4],
PUP.Optional.Datamngr.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\DatamngrCoordinator, , [fea6c237602981b5e374692c08fbc53b],
PUP.Optional.DataMngr.A, HKU\S-1-5-21-75893039-200090470-3686506788-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Datamngr, , [574d936693f642f429783b9450b40ef2],
Registry Values: 1
PUP.Optional.DataMangr.A, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x86, C:\Program Files\Movies Toolbar\Datamngr\apcrtldr.dll, , [5f4503f68ffa6fc7a11a14ddcd3716ea]
Registry Data: 0
(No malicious items detected)
Folders: 16
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr, , [c0e4c039b2d7d561c90ac90b20e4af51],
PUP.Optional.OpenCandy, C:\Users\user\AppData\Roaming\OpenCandy, , [2c789663f89145f1a905390217ec49b7],
PUP.Optional.OpenCandy, C:\Users\user\AppData\Roaming\OpenCandy\1347C6825382474AA1906FF603713C91, , [2c789663f89145f1a905390217ec49b7],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\css, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\lib, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\plugin, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\plugin\TorchShareHelper.plugin, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\views, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\_locales, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\_locales\en, , [9014fefb721768cea53dadc3b64dcc34],
Files: 64
Malware.Trace, C:\Windows\System32\ieunitdrf.inf, , [2084ae4b3455bb7b6f732a4dbb492ed2],
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\coordinator.cfg, , [c0e4c039b2d7d561c90ac90b20e4af51],
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\general.cfg, , [c0e4c039b2d7d561c90ac90b20e4af51],
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\S-1-5-21-75893039-200090470-3686506788-1000.cfg, , [c0e4c039b2d7d561c90ac90b20e4af51],
PUP.Optional.OpenCandy, C:\Users\user\AppData\Roaming\OpenCandy\1347C6825382474AA1906FF603713C91\TuneUpUtilities2013-2200329_cs-CZ.exe, , [2c789663f89145f1a905390217ec49b7],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\apnuserid.dat, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\appid.dat, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\geodata.xml, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\guid.dat, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\setupCfg.xml, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\sysid.dat, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolBar.A, C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\gubpg53k.default\ilividmoviestoolbardla\trackid.dat, , [12926495c7c288ae112570d1d52eb848],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\apnuserid.dat, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\appid.dat, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\dtx.ini, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\geodata.xml, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\guid.dat, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\setupCfg.xml, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\sysid.dat, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.MoviesToolbar.A, C:\Users\user\AppData\LocalLow\ilividmoviestoolbardla\trackid.dat, , [376d9e5b99f045f1acfa311aa95a6b95],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\background.html, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\manifest.json, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\test.html, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\css\popup.css, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\css\styles.css, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\audio.bubble.flipped.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\audio.bubble.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\check.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\check.selected.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\download-icon.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\favicon.ico, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\hr.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\icon-blink.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\icon-close.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\icon.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\icon_grey.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\share-icon.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torch128.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torch16.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torch32.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torch48.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torch_32x32.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torrent-icon.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torrents.bubble.flipped.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\torrents.bubble.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\videos.bubble.flipped.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\videos.bubble.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\x-hover.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\x-idle.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\images\x-pressed.png, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\bg.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\cont.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\main.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\plugininjection.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\popup.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\sitestype.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\TabInfo.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\utils.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\lib\jquery-1.8.3.min.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\js\lib\jsuri-1.1.1.min.js, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\plugin\TorchPlugin.dll, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\views\popup.html, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.Delta.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\_locales\en\messages.json, , [9014fefb721768cea53dadc3b64dcc34],
PUP.Optional.ASK.A, C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "homepage": "http://www.search.ask.com/?l=dis&o=15187cr",), ,[d1d389700d7cad8992a85e7a0df8fa06]
Physical Sectors: 0
(No malicious items detected)
(end)