Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 7/17/2016
Scan Time: 9:19 AM
Logfile:
Administrator: Yes
Version: 2.2.1.1043
Malware Database: v2016.07.17.03
Rootkit Database: v2016.05.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7
CPU: x64
File System: NTFS
User: Sheroo
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 422883
Time Elapsed: 22 min, 12 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 1
PUP.Optional.CloudScout, HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b, Quarantined, [42d578ad6238cc6ad341249ed0336e92],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 6
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: (user_pref("browser.search.defaultenginename", "youndoo");), Replaced,[5cbb31f4e1b9d95d62e37f2ba75d27d9]
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: (
*
* If you make changes to this file overwritten when the application exiuser_pref("app.update.enabled", false);
user_pref("browser.search.defaulteng), Replaced,[a7706fb67b1f73c36fd66d3d63a1ae52]
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: ( overwritten when the application exiuser_pref("app.update.enabled", false);
user_pref("browser.search.defaultenginename", "youndoo");
user_pref("browser.search.order.1", "Searc), Replaced,[49ced64f2c6e8bab14313f6b4db7d32d]
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: (wser.search.defaultenginename", "youndoo");
user_pref("browser.search.order.1", "Searcher");
user_pref("browser.search.searchengine.hp", "http://www.youndoo.com/?z=8bd1e0a6e6fd536b), Replaced,[19feab7a9901bb7b172ee1c97094f010]
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: (pplication exiuser_pref("app.update.enabled", false);
), Replaced,[01163ee7f3a7122488bda3072cd803fd]
PUP.Optional.Youndoo, C:\Users\Sheroo\AppData\Roaming\Profiles\cvks63eh.default\prefs.js, Good: (), Bad: ( * If you make changes to this file overwritten when the application exiuser_pref("app.update.enabled", false);
user_pref("browser.search.defaulteng), Replaced,[8f8838ed6a303ef810351991e61ed927]
Physical Sectors: 0
(No malicious items detected)
(end)