Clashback | 30.01.2017 18:14 | Code:
meDefaultData\File System --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\.usage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\000\t\Paths\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\.usage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\001\t\Paths\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\File System\Origins\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FA8.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FA9.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FAA.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FBB.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FBC.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FBD.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FBE.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FBF.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FC0.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FD0.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FD1.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FD2.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIcons\1FD3.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDAC.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDAD.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDAE.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDAF.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDB0.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDB1.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC1.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC2.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC3.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC4.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC5.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC6.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\JumpListIconsOld\BDC7.tmp --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000005.ldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000244.ldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000245.ldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000246.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000247.ldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Extension Settings\mlomiejdfkolichcflejclcbmpeaniij\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-devtools_devtools_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-devtools_devtools_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_mlomiejdfkolichcflejclcbmpeaniij_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_mlomiejdfkolichcflejclcbmpeaniij_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_oiigbmnaadbkfbmpbfijlflahbdbdgdf_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_pkedcjkdefgpdelpbcmbmeomcjbeemfm_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_pkedcjkdefgpdelpbcmbmeomcjbeemfm_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_check.tamobi.net_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_check.tamobi.net_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_chrome.google.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_chrome.google.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_clients5.google.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_clients5.google.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_consent.google.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_consent.google.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_de.aion.gameforge.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_de.aion.gameforge.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_de.wikipedia.org_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_derstandard.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_derstandard.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_docs.google.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_docs.google.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_hangouts.google.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_hangouts.google.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_ib.adnxs.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_ib.adnxs.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_imagesrv.adition.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_imagesrv.adition.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_iqoption.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\chrome-extension_oiigbmnaadbkfbmpbfijlflahbdbdgdf_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_c.betrad.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_de.wikipedia.org_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_iqoption.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.amazon.de_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.youtube.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_disqusads.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.chip.de_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_now.bt.co_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_now.bt.co_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_plus.google.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_plus.google.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_support.apple.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_support.apple.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_torrentreactor.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_torrentreactor.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_webmail.technikum-wien.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_webmail.technikum-wien.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.amazon.de_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.apple.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.apple.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.facebook.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.facebook.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.google.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.google.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.techniker-forum.de_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.techniker-forum.de_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.wolframalpha.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.wolframalpha.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.youtube.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.yumpu.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_www.yumpu.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_cdn.bitmedianetwork.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_cdn.bitmedianetwork.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_derstandard.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_derstandard.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_disqus.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_disqus.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_disqusads.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_download.cnet.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_download.cnet.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_electronics-workbench.updatestar.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_electronics-workbench.updatestar.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_ll.www.utorrent.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_ll.www.utorrent.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_vk.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_vk.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_widgets.outbrain.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_widgets.outbrain.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.apple.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.apple.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.bittorrent.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.bittorrent.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.chemgapedia.de_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.chemgapedia.de_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\https_c.betrad.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.chip.de_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.dailymotion.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.dailymotion.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.etymonline.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.etymonline.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.fussballoesterreich.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.fussballoesterreich.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.krone.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.krone.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.livescores.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.livescores.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.mikrocontroller.net_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.mikrocontroller.net_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.ni.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.ni.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.nvidia.de_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.nvidia.de_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.torrenthound.com_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.torrenthound.com_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.wfv.at_0.localstorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Local Storage\http_www.wfv.at_0.localstorage-journal --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Managed Extension Settings\gighmmpiobklfepjocnamgkkbiglidom\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\VYBCFF4F --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\aa.online-metrix.net --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\aa.online-metrix.net\fpc.swf --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\aa.online-metrix.net\fpc.swf\session.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\images-na.ssl-images-amazon.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\images-na.ssl-images-amazon.com\mercury.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\##45EC4C9792AE2268 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\##45EC4C9792AE2268\00000001.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#aa.online-metrix.net --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#aa.online-metrix.net\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#members.bet365.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#members.bet365.com\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#mpsnare.iesnare.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#mpsnare.iesnare.com\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#rutube.ru --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#rutube.ru\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#vb1en.sftcdn.net --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\macromedia.com\support\flashplayer\sys\#vb1en.sftcdn.net\settings.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\members.bet365.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\members.bet365.com\FCE.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\mpsnare.iesnare.com --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\mpsnare.iesnare.com\stm.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\rutube.ru --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\rutube.ru\gua.cookies.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\rutube.ru\rutube.cookies.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net\shared --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net\shared\flash --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net\shared\flash\rs --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net\shared\flash\rs\storage.swf --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\HPRRLGNV\vb1en.sftcdn.net\shared\flash\rs\storage.swf\FlashCookie_EasyRating.sol --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\index.txt --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\1157fee2e2dc1968_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\1eedab0ddfec5cd4_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\3322af362dd954b0_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\33a474001b630f7c_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\345f011f5c1596e7_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\3c6a62f734811ca1_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\3c6a62f734811ca1_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\474e4314e4d5d4d9_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\474e4314e4d5d4d9_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\5c64d472dacb28fd_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\679de9544e9850fa_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\679de9544e9850fa_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\693467eaad0d5ce8_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\8bec508773b2df50_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\8bec508773b2df50_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\d0a1d7e2a1e8af61_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\fdf2cfeb8ad0eeac_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\index --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\index-dir --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\CacheStorage\69077b5dad3748b9b8dd7ead357abd4547d2eaa3\af3622d5-ebac-4000-aed3-d3a07fddd2f4\index-dir\the-real-index --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\Database\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\46b47d9ddd6025d0_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\46b47d9ddd6025d0_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\beeb6cfbac9a1259_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\beeb6cfbac9a1259_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\index --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\index-dir --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Service Worker\ScriptCache\index-dir\the-real-index --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\000277.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\000279.ldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Session Storage\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\oiigbmnaadbkfbmpbfijlflahbdbdgdf\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Web Applications --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Web Applications\_crx_aohghmighlieiainnegkcijnfilokake --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Web Applications\_crx_aohghmighlieiainnegkcijnfilokake\Google Docs.ico --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Web Applications\_crx_aohghmighlieiainnegkcijnfilokake\Google Docs.ico.md5 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\Extension Rules\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\000003.log --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\CURRENT --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\LOCK --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\LOG --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\LOG.old --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ChromeDefaultData\IndexedDB\https_www.google.at_0.indexeddb.leveldb\MANIFEST-000001 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Crashpad --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Crashpad\metadata --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Crashpad\settings.dat --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Crashpad\reports --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\_metadata --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\_metadata\verified_contents.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\_platform_specific --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\_platform_specific\all --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\EVWhitelist\7\_platform_specific\all\ev_hashes_whitelist.bin --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\FileTypePolicies --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\FileTypePolicies\7 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\FileTypePolicies\7\download_file_types.pb --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\FileTypePolicies\7\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\FileTypePolicies\7\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\OriginTrials --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PepperFlash --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PepperFlash\23.0.0.207 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PepperFlash\23.0.0.207\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PepperFlash\23.0.0.207\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PepperFlash\23.0.0.207\pepflashplayer.dll --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_metadata --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_metadata\verified_contents.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_pnacl_json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\pnacl\0.56.43.1616\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_sz_nexe --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache\data_0 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache\data_1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache\data_2 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache\data_3 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\PnaclTranslationCache\index --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\ShaderCache --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Indexed Rules --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Indexed Rules\10 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Indexed Rules\10\4 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Indexed Rules\10\4\LICENSE --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Indexed Rules\10\4\Ruleset Data --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules\4 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules\4\Filtering Rules --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules\4\LICENSE --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules\4\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Subresource Filter\Unindexed Rules\4\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwiftShader --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\13.79.1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\13.79.1\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\13.79.1\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\13.79.1\software_reporter_tool.exe --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\14.81.1 --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\14.81.1\manifest.fingerprint --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\14.81.1\manifest.json --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\SwReporter\14.81.1\software_reporter_tool.exe --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\Webstore Downloads --> [Adware.Elex]
Infected: C:\Users\*****\AppData\Local\Anifesh\WidevineCDM --> [Adware.Elex]
Infected: C:\Program Files (x86)\Girerght --> [Adware.Elex]
Infected: C:\Program Files (x86)\Girerght\CrashReport.dll --> [Adware.Elex]
Infected: C:\Program Files (x86)\Girerght\FriNov --> [Adware.Elex]
Infected: C:\Program Files (x86)\Girerght\launcher_3.dll --> [Adware.Elex]
Infected: C:\Program Files (x86)\Girerght\norerent.exe --> [Adware.Elex]
Scan finished
Creating System Restore point...
Cleaning up...
Executing an action reg.exe...
Success!
Executing an action reg.exe...
Success!
Executing an action cmd.exe...
Success!
Queuing an action cmd.exe
Queuing an action cmd.exe
Queuing an action cmd.exe
Queuing an action cmd.exe
Removal scheduling successful. System shutdown needed.
System shutdown occurred
=======================================
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.3.1001
(c) Malwarebytes Corporation 2011-2012
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
Account is Administrative
Internet Explorer version: 8.0.7601.17514
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.389000 GHz
Memory total: 8311640064, free: 6042124288
Downloaded database version: v2017.01.29.03
Downloaded database version: v2016.11.20.01
Downloaded database version: v2017.01.23.01
=======================================
Initializing...
Driver version: 0.3.0.4
------------ Kernel report ------------
01/29/2017 16:27:52
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\Drivers\AppleMNT.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\AppleHFS.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\nvsmu.sys
\SystemRoot\system32\drivers\usbohci.sys
\SystemRoot\system32\drivers\USBPORT.SYS
\SystemRoot\system32\drivers\usbehci.sys
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\drivers\1394ohci.sys
\SystemRoot\system32\DRIVERS\bcmwl664.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\b57nd60a.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\drivers\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\dtlitescsibus.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\umbus.sys
\SystemRoot\system32\DRIVERS\dtliteusbbus.sys
\SystemRoot\system32\drivers\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\CS420x64.sys
\SystemRoot\system32\drivers\HdAudio.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\DRIVERS\KeyMagic.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\applemtp.sys
\SystemRoot\system32\DRIVERS\applemtm.sys
\SystemRoot\system32\drivers\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\IRFilter.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\acpials.sys
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\DRIVERS\aksdf.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\??\C:\Windows\system32\drivers\hardlock.sys
\??\C:\Windows\system32\drivers\KeyAgent.sys
\??\C:\Windows\system32\drivers\MacHALDriver.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\SystemRoot\system32\drivers\spsys.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
Scan started
Database versions:
main: v2017.01.29.03
rootkit: v2016.11.20.01
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa80078544e0, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007855040, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa80078544e0, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80076ed580, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa80076ef060, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: E563C332
Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 409639
Partition is not bootable
Partition 1 type is Other (0xaf)
Partition is NOT ACTIVE.
Partition starts at LBA: 409640 Numsec = 353905456
Partition is not bootable
Partition file system is HFS
Partition 2 type is Other (0xab)
Partition is NOT ACTIVE.
Partition starts at LBA: 354315096 Numsec = 1269536
Partition is not bootable
Partition 3 type is Other (0xc)
Partition is ACTIVE.
Partition starts at LBA: 355586048 Numsec = 132810752
Partition is bootable
Partition file system is NTFS
Disk Size: 250059350016 bytes
Sector size: 512 bytes
Done!
Physical Sector Size: 0
Drive: 1, DevicePointer: 0xfffffa8008923790, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8008868040, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8008923790, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8008854b60, DeviceName: \Device\00000070\, DriverName: \Driver\USBSTOR\
------------ End ----------
Infected: HKLM\SOFTWARE\WOW6432NODE\WinArcher --> [Adware.Elex]
Scan finished
Creating System Restore point...
Cleaning up...
Removal successful. No system shutdown is required.
=======================================
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.3.1001
(c) Malwarebytes Corporation 2011-2012
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
Account is Administrative
Internet Explorer version: 8.0.7601.17514
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.389000 GHz
Memory total: 8311640064, free: 4339941376
Downloaded database version: v2017.01.29.03
Downloaded database version: v2016.11.20.01
Downloaded database version: v2017.01.23.01
=======================================
Initializing...
Driver version: 0.3.0.4
------------ Kernel report ------------
01/29/2017 16:40:13
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\Drivers\AppleMNT.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\AppleHFS.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\nvsmu.sys
\SystemRoot\system32\drivers\usbohci.sys
\SystemRoot\system32\drivers\USBPORT.SYS
\SystemRoot\system32\drivers\usbehci.sys
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\drivers\1394ohci.sys
\SystemRoot\system32\DRIVERS\bcmwl664.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\b57nd60a.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\drivers\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\dtlitescsibus.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\umbus.sys
\SystemRoot\system32\DRIVERS\dtliteusbbus.sys
\SystemRoot\system32\drivers\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\CS420x64.sys
\SystemRoot\system32\drivers\HdAudio.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\DRIVERS\KeyMagic.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\applemtp.sys
\SystemRoot\system32\DRIVERS\applemtm.sys
\SystemRoot\system32\drivers\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\IRFilter.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\acpials.sys
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\DRIVERS\aksdf.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\??\C:\Windows\system32\drivers\hardlock.sys
\??\C:\Windows\system32\drivers\KeyAgent.sys
\??\C:\Windows\system32\drivers\MacHALDriver.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-1-409640-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-2-354315096-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-3-355586048-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removal finished
Done!
Scan started
Database versions:
main: v2017.01.29.03
rootkit: v2016.11.20.01
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa80078544e0, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007855040, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa80078544e0, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80076ed580, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa80076ef060, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: E563C332
Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 409639
Partition is not bootable
Partition 1 type is Other (0xaf)
Partition is NOT ACTIVE.
Partition starts at LBA: 409640 Numsec = 353905456
Partition is not bootable
Partition file system is HFS
Partition 2 type is Other (0xab)
Partition is NOT ACTIVE.
Partition starts at LBA: 354315096 Numsec = 1269536
Partition is not bootable
Partition 3 type is Other (0xc)
Partition is ACTIVE.
Partition starts at LBA: 355586048 Numsec = 132810752
Partition is bootable
Partition file system is NTFS
Disk Size: 250059350016 bytes
Sector size: 512 bytes
Done!
Physical Sector Size: 0
Drive: 1, DevicePointer: 0xfffffa8008923790, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8008868040, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8008923790, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8008854b60, DeviceName: \Device\00000070\, DriverName: \Driver\USBSTOR\
------------ End ----------
Scan finished
=======================================
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-1-409640-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-2-354315096-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-3-355586048-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removal finished
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.3.1001
(c) Malwarebytes Corporation 2011-2012
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
Account is Administrative
Internet Explorer version: 8.0.7601.17514
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.389000 GHz
Memory total: 8311640064, free: 3329540096
Downloaded database version: v2017.01.29.04
Downloaded database version: v2017.01.29.05
=======================================
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.3.1001
(c) Malwarebytes Corporation 2011-2012
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
Account is Administrative
Internet Explorer version: 8.0.7601.17514
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.389000 GHz
Memory total: 8311640064, free: 3345354752
=======================================
Initializing...
Driver version: 0.3.0.4
------------ Kernel report ------------
01/29/2017 20:31:56
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\Drivers\AppleMNT.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\AppleHFS.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\nvsmu.sys
\SystemRoot\system32\drivers\usbohci.sys
\SystemRoot\system32\drivers\USBPORT.SYS
\SystemRoot\system32\drivers\usbehci.sys
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\drivers\1394ohci.sys
\SystemRoot\system32\DRIVERS\bcmwl664.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\b57nd60a.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\drivers\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\dtlitescsibus.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\umbus.sys
\SystemRoot\system32\DRIVERS\dtliteusbbus.sys
\SystemRoot\system32\drivers\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\CS420x64.sys
\SystemRoot\system32\drivers\HdAudio.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\KeyMagic.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\applemtp.sys
\SystemRoot\system32\DRIVERS\applemtm.sys
\SystemRoot\system32\drivers\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\IRFilter.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\acpials.sys
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\DRIVERS\aksdf.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\??\C:\Windows\system32\drivers\hardlock.sys
\??\C:\Windows\system32\drivers\KeyAgent.sys
\??\C:\Windows\system32\drivers\MacHALDriver.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
Scan started
Database versions:
main: v2017.01.29.05
rootkit: v2016.11.20.01
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8007c78060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007c78b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8007c78060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80078bb580, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa80078bd060, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: E563C332
Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 409639
Partition is not bootable
Partition 1 type is Other (0xaf)
Partition is NOT ACTIVE.
Partition starts at LBA: 409640 Numsec = 353905456
Partition is not bootable
Partition file system is HFS
Partition 2 type is Other (0xab)
Partition is NOT ACTIVE.
Partition starts at LBA: 354315096 Numsec = 1269536
Partition is not bootable
Partition 3 type is Other (0xc)
Partition is ACTIVE.
Partition starts at LBA: 355586048 Numsec = 132810752
Partition is bootable
Partition file system is NTFS
Disk Size: 250059350016 bytes
Sector size: 512 bytes
Done!
Physical Sector Size: 0
Drive: 1, DevicePointer: 0xfffffa80092d6060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8009232b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa80092d6060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80091c7550, DeviceName: \Device\00000075\, DriverName: \Driver\USBSTOR\
------------ End ----------
Scan finished
=======================================
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-1-409640-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-2-354315096-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-3-355586048-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removal finished
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.09.3.1001
(c) Malwarebytes Corporation 2011-2012
OS version: 6.1.7601 Windows 7 Service Pack 1 x64
Account is Administrative
Internet Explorer version: 8.0.7601.17514
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.389000 GHz
Memory total: 8311640064, free: 5033332736
=======================================
Initializing...
Driver version: 0.3.0.4
------------ Kernel report ------------
01/29/2017 21:44:29
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\Drivers\AppleMNT.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\drivers\CLASSPNP.SYS
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\AppleHFS.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\nvsmu.sys
\SystemRoot\system32\drivers\usbohci.sys
\SystemRoot\system32\drivers\USBPORT.SYS
\SystemRoot\system32\drivers\usbehci.sys
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\drivers\1394ohci.sys
\SystemRoot\system32\DRIVERS\bcmwl664.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\b57nd60a.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\drivers\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\dtlitescsibus.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\umbus.sys
\SystemRoot\system32\DRIVERS\dtliteusbbus.sys
\SystemRoot\system32\drivers\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\CS420x64.sys
\SystemRoot\system32\drivers\HdAudio.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\nvhda64v.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\KeyMagic.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\applemtp.sys
\SystemRoot\system32\DRIVERS\applemtm.sys
\SystemRoot\system32\drivers\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\IRFilter.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\acpials.sys
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\DRIVERS\aksdf.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\??\C:\Windows\system32\drivers\hardlock.sys
\??\C:\Windows\system32\drivers\KeyAgent.sys
\??\C:\Windows\system32\drivers\MacHALDriver.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\SystemRoot\system32\DRIVERS\MpFilter.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
Scan started
Database versions:
main: v2017.01.29.05
rootkit: v2016.11.20.01
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8007c78060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8007c78b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8007c78060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80078bb580, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa80078bd060, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
This is a System drive
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: E563C332
Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 409639
Partition is not bootable
Partition 1 type is Other (0xaf)
Partition is NOT ACTIVE.
Partition starts at LBA: 409640 Numsec = 353905456
Partition is not bootable
Partition file system is HFS
Partition 2 type is Other (0xab)
Partition is NOT ACTIVE.
Partition starts at LBA: 354315096 Numsec = 1269536
Partition is not bootable
Partition 3 type is Other (0xc)
Partition is ACTIVE.
Partition starts at LBA: 355586048 Numsec = 132810752
Partition is bootable
Partition file system is NTFS
Disk Size: 250059350016 bytes
Sector size: 512 bytes
Done!
Physical Sector Size: 0
Drive: 1, DevicePointer: 0xfffffa80092d6060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8009232b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa80092d6060, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa80091c7550, DeviceName: \Device\00000075\, DriverName: \Driver\USBSTOR\
------------ End ----------
Scan finished
=======================================
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-1-409640-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-2-354315096-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-3-355586048-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removal finished Und anbei der letze Log nach dem ich das System gereinigt habe: Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2017.01.29.03
rootkit: v2016.11.20.01
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
****** :: *****-PC [administrator]
29.01.2017 16:40:25
mbar-log-2017-01-29 (16-40-25).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 338026
Time elapsed: 8 minute(s), 33 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) |