Jump to content

I installed windows 10 then got this on my malwarebytes scan


Recommended Posts

Malwarebytes Anti-Malware

www.malwarebytes.org

 

Scan Date: 2015-07-30

Scan Time: 02:34

Logfile: HELP.txt

Administrator: Yes

 

Version: 2.1.8.1057

Malware Database: v2015.07.29.07

Rootkit Database: v2015.07.29.02

License: Premium

Malware Protection: Enabled

Malicious Website Protection: Enabled

Self-protection: Disabled

 

OS: Windows 10

CPU: x64

File System: NTFS

User: hajar

 

Scan Type: Threat Scan

Result: Completed

Objects Scanned: 609164

Time Elapsed: 33 min, 23 sec

 

Memory: Enabled

Startup: Enabled

Filesystem: Enabled

Archives: Enabled

Rootkits: Enabled

Heuristics: Enabled

PUP: Enabled

PUM: Enabled

 

Processes: 0

(No malicious items detected)

 

Modules: 0

(No malicious items detected)

 

Registry Keys: 4

Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUPDATE.EXE, , [a0eb01e67f0bdb5b31ac52806a991ae6], 

Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUTOUPDATE.EXE, , [8605786f404ae4529753844e56ad33cd], 

Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUPDATE.EXE, , [f4978a5dc1c988ae32ab7959a55ef808], 

Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUTOUPDATE.EXE, , [2e5d8661fa900f277674ffd3bb48fe02], 

 

Registry Values: 4

Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUPDATE.EXE|Debugger, C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoReactivator.exe, , [a0eb01e67f0bdb5b31ac52806a991ae6]

Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUTOUPDATE.EXE|Debugger, C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoReactivator.exe, , [8605786f404ae4529753844e56ad33cd]

Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUPDATE.EXE|Debugger, C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoReactivator.exe, , [f4978a5dc1c988ae32ab7959a55ef808]

Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AUTOUPDATE.EXE|Debugger, C:\Program Files (x86)\IObit\Advanced SystemCare 8\AutoReactivator.exe, , [2e5d8661fa900f277674ffd3bb48fe02]

 

Registry Data: 0

(No malicious items detected)

 

Folders: 0

(No malicious items detected)

 

Files: 0

(No malicious items detected)

 

Physical Sectors: 0

(No malicious items detected)

 

 

(end)

Link to post
Share on other sites

:welcome:

 

You have signs of obvious infection.

Let me suggest, if you're an MBAM licensed customer, you contact the consumer help desk here.
If you are in an organization or a corporate customer, contact Corporate Support for assistance.

Otherwise, Please print out, read and follow the directions here, skipping any steps you are unable to complete.  Then post a NEW topic here.
One of the expert helpers there will give you one-on-one assistance when one becomes available.
After posting your new post make sure under options that you select Follow this topic and choose one of the Email options so that you're alerted when someone has replied to your post.

Please post the logs there.   just not here.

 

NOTE: Use of Iobit software is ill-advised.  That "enitity" was caught stealing from us in the past.

 

NOTE: This sub-forum is not one for help on how to deal with active infection cases.  It is only for things like how to use the software.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.