FRST.txtAddition.txtscan.txt
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/2/23
Scan Time: 1:08 PM
Log File: 7bc66a10-8a5b-11ed-890a-e884a5cbce55.json
-Software Information-
Version: 4.5.19.229
Components Version: 1.0.1860
Update Package Version: 1.0.64140
License: Trial
-System Information-
OS: Windows 10 (Build 19044.1766)
CPU: x64
File System: NTFS
User: DESKTOP-2CL8L9V\tomgr
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 356601
Threats Detected: 13
Threats Quarantined: 0
Time Elapsed: 1 min, 58 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 6
Trojan.MalPack.GO, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\CHJubPBUwK, No Action By User, 6789, 1097822, , , , , ,
Trojan.MalPack.GO, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4D09CD94-E5E8-4882-864F-247595A4B853}, No Action By User, 6789, 1097822, , , , , ,
Trojan.MalPack.GO, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{4D09CD94-E5E8-4882-864F-247595A4B853}, No Action By User, 6789, 1097822, , , , , ,
Trojan.BitCoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\GoogleUpdateTaskMachineQC, No Action By User, 556, 1047226, , , , , ,
Trojan.BitCoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{8C0D5396-F81C-4C4A-B3CD-DCD59A6EB26B}, No Action By User, 556, 1047226, , , , , ,
Trojan.BitCoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{8C0D5396-F81C-4C4A-B3CD-DCD59A6EB26B}, No Action By User, 556, 1047226, , , , , ,
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 7
Trojan.MalPack.GO, C:\WINDOWS\SYSTEM32\TASKS\CHJubPBUwK, No Action By User, 6789, 1097822, , , , , 069D21CACD509881445E3A635A21DF0A, 511BE898E0B658160648101FB9035409525BFE783509CB044F17F63C93C2D97D
Trojan.MalPack.GO, C:\USERS\LITTL\APPDATA\ROAMING\CHJUBPBUWK\SVCUPDATER.EXE, No Action By User, 6789, 1097822, 1.0.64140, 10D67D5EE8B4883A62B14127, dds, 02105481, 3AFB4573DEA2DBAC4BB5F1915F7A4DCE, 52901DC481D1BE2129725E3C4810AE895F9840E27A1DCE69630DEDCF71B6C021
Trojan.BitCoinMiner, C:\WINDOWS\SYSTEM32\TASKS\GoogleUpdateTaskMachineQC, No Action By User, 556, 1047226, 1.0.64140, , ame, , 3BE04F9D7C5E70EFB96C0F37340C29AA, A494A4E3FA20889A159AA2DF83485B0A368453785DABACF2A488B24D389D621F
Malware.AI.463480657, C:\USERS\LITTL\APPDATA\ROAMING\GOOGLE\CHROME\UPDATER.EXE, No Action By User, 1000000, 463480657, 1.0.64140, 00000000000004881BA02751, dds, 02105481, 8BD82C462DF24FF04F8B5B0506C0DD8C, 0351E43E4A275D2B6D7AD7B1F3A4788885B8979EB47DACCEAE757F82DBFFB6D6
Trojan.MalPack.GO, C:\USERS\LITTL\APPDATA\LOCAL\TEMP\SMART.EXE, No Action By User, 6789, 1097822, 1.0.64140, 10D67D5EE8B4883A62B14127, dds, 02105481, 3AFB4573DEA2DBAC4BB5F1915F7A4DCE, 52901DC481D1BE2129725E3C4810AE895F9840E27A1DCE69630DEDCF71B6C021
Malware.AI.463480657, C:\USERS\LITTL\APPDATA\LOCAL\TEMP\NETSVC4.EXE, No Action By User, 1000000, 463480657, 1.0.64140, 00000000000004881BA02751, dds, 02105481, 8BD82C462DF24FF04F8B5B0506C0DD8C, 0351E43E4A275D2B6D7AD7B1F3A4788885B8979EB47DACCEAE757F82DBFFB6D6
Malware.AI.3331930301, C:\USERS\LITTL\ONEDRIVE\DESKTOP\STUFF\GALAXYSWAPPERV29.04.27\GALAXYSWAPPERV29.04.27.EXE, No Action By User, 1000000, -963036995, 1.0.64140, 7298F649C90887EEC69938BD, dds, 02105481, 03959112F0C1701AB3A3CF17A1909FE2, D3E84AFBC6A31C732DA5DEE4BF1DA9683DC70B562D073352EED1BAFDA5EBD98A
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)