Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 6/10/17 Scan Time: 9:53 PM Log File: malwarebytes.txt Administrator: Yes -Software Information- Version: 3.1.2.1733 Components Version: 1.0.141 Update Package Version: 1.0.2092 License: Free -System Information- OS: Windows XP Service Pack 3 CPU: x86 File System: NTFS User: PANX-PC1462\essemtec -Scan Summary- Scan Type: Threat Scan Result: Completed Objects Scanned: 264782 Threats Detected: 81 Threats Quarantined: 81 Time Elapsed: 2 min, 3 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 0 (No malicious items detected) Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 43 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-1, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-10, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-11, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-12, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-13, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-14, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-15, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-16, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-17, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-18, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-19, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-2, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-20, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-21, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-22, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-23, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-24, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-25, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-26, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-27, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-28, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-29, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-3, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-30, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-31, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-4, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-5, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-6, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-7, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-8, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-9, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok.Generic, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\LOCAL SETTINGS\APPLICATION DATA\Loc.Mail.Bron.Tok, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-11, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-12, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-15, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-16, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-19, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-22, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-30, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-31, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-5, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Bron.tok-12-7, Quarantined, [4618], [172457],1.0.2092 Worm.Brontok.Generic, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\Loc.Mail.Bron.Tok, Quarantined, [2986], [370221],1.0.2092 File: 38 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\anmar@gmx.net.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\charsets@apple.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\daniel@haxx.se.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\J.Koenig@adg.de.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\Joerg.Koenig@rhein-neckar.de.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\legal@teamviewer.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\mspss@gto.net.om.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\mts@lebanon-online.com.lb.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\paj@pajhome.org.uk.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\pomoc@tvn.pl.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\privacy@amd.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\privacy@amd.comt.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\essemtec\Local Settings\Application Data\Loc.Mail.Bron.Tok\tjw@cs.Stanford.EDU.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\anmar@gmx.net.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\charsets@apple.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\daniel@haxx.se.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\J.Koenig@adg.de.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\Joerg.Koenig@rhein-neckar.de.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\legal@teamviewer.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\mspss@gto.net.om.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\mts@lebanon-online.com.lb.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\paj@pajhome.org.uk.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\pomoc@tvn.pl.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\privacy@amd.com.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\privacy@amd.comt.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok.Generic, C:\Documents and Settings\NetworkService\Local Settings\Application Data\Loc.Mail.Bron.Tok\tjw@cs.Stanford.EDU.ini, Quarantined, [2986], [370221],1.0.2092 Worm.Brontok, C:\BRENGKOLANG.COM, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\WINDOWS\SYSTEM32\ESSEMTEC'S SETTING.SCR, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\WINDOWS\SYSTEM32\SYSTEM'S SETTING.SCR, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\SERVICES.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\ESSEMTEC\TEMPLATES\BRENGKOLANG.COM, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok.Generic, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\KOSONG.BRON.TOK.TXT, Quarantined, [2986], [370222],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\CSRSS.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\WINLOGON.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\LSASS.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\WINDOWS\EKSPLORASI.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\DOCUMENTS AND SETTINGS\NETWORKSERVICE\LOCAL SETTINGS\APPLICATION DATA\INETINFO.EXE, Quarantined, [4618], [273877],1.0.2092 Worm.Brontok, C:\WINDOWS\SHELLNEW\SEMPALONG.EXE, Quarantined, [4618], [207563],1.0.2092 Physical Sector: 0 (No malicious items detected) (end)