@AdvancedSetup
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 3/27/18
Scan Time: 2:24 AM
Log File: 980ada1c-31a0-11e8-af1f-d43d7e942b19.json
Administrator: Yes
-Software Information-
Version: 3.4.4.2398
Components Version: 1.0.322
Update Package Version: 1.0.4504
License: Trial
-System Information-
OS: Windows 10 (Build 16299.309)
CPU: x64
File System: NTFS
User: System
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 301454
Threats Detected: 7
Threats Quarantined: 7
Time Elapsed: 3 min, 58 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 2
Adware.GorillaPrice, C:\PROGRAMDATA\MICROSOFT\WINDOWS\MKEEPERSTAT\MKEEPER.EXE, Quarantined, [10188], [504078],1.0.4504
Adware.GorillaPrice, C:\PROGRAMDATA\MICROSOFT\WINDOWS\MKEEPERSTAT\MKEEPER.EXE, Quarantined, [10188], [504078],1.0.4504
Module: 2
Adware.GorillaPrice, C:\PROGRAMDATA\MICROSOFT\WINDOWS\MKEEPERSTAT\MKEEPER.EXE, Quarantined, [10188], [504078],1.0.4504
Adware.GorillaPrice, C:\PROGRAMDATA\MICROSOFT\WINDOWS\MKEEPERSTAT\MKEEPER.EXE, Quarantined, [10188], [504078],1.0.4504
Registry Key: 2
PUP.Optional.SpecialSearchOffer.ShrtCln, HKU\S-1-5-21-1762275692-3809005646-2960898959-1001\SOFTWARE\SpecialSearchOffer, Quarantined, [5613], [405205],1.0.4504
Adware.GorillaPrice, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\mkeeper, Quarantined, [10188], [504078],1.0.4504
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Adware.GorillaPrice, C:\PROGRAMDATA\MICROSOFT\WINDOWS\MKEEPERSTAT\MKEEPER.EXE, Delete-on-Reboot, [10188], [504078],1.0.4504
Physical Sector: 0
(No malicious items detected)
(end)
^^^this was the scan it did in the middle of the night^^^
this is the scan from just right now---------------
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 3/27/18
Scan Time: 8:24 AM
Log File: f092fd36-31d2-11e8-ae67-d43d7e942b19.json
Administrator: Yes
-Software Information-
Version: 3.4.4.2398
Components Version: 1.0.322
Update Package Version: 1.0.4510
License: Trial
-System Information-
OS: Windows 10 (Build 16299.309)
CPU: x64
File System: NTFS
User: DESKTOP-IP552SD\Kane
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 301482
Threats Detected: 4
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 2 min, 3 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 1
Adware.SearchProvide, C:\PROGRAM FILES (X86)\COMMON FILES\LONAFORG\LONAFORG.EXE, No Action By User, [332], [504192],1.0.4510
Module: 1
Adware.SearchProvide, C:\PROGRAM FILES (X86)\COMMON FILES\LONAFORG\LONAFORG.EXE, No Action By User, [332], [504192],1.0.4510
Registry Key: 1
Adware.SearchProvide, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Lonaforg, No Action By User, [332], [504192],1.0.4510
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Adware.SearchProvide, C:\PROGRAM FILES (X86)\COMMON FILES\LONAFORG\LONAFORG.EXE, No Action By User, [332], [504192],1.0.4510
Physical Sector: 0
(No malicious items detected)
(end)