Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 2014-12-11 Scan Time: 05:17:22 Logfile: anti-malware.txt Administrator: Yes Version: 2.00.4.1028 Malware Database: v2014.12.10.10 Rootkit Database: v2014.12.08.03 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 8 CPU: x64 File System: NTFS User: Jakub Scan Type: Threat Scan Result: Completed Objects Scanned: 345064 Time Elapsed: 44 min, 3 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 5 PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, , [280ac39ec3b98ea80428606bc53dfc04], PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, , [280ac39ec3b98ea80428606bc53dfc04], PUP.Optional.Quiknowledge.A, HKLM\SOFTWARE\WOW6432NODE\QUIKNOWLEDGE, , [9a98bca51f5d66d0a12e7a0a7e852dd3], PUP.Optional.CouponDownloader.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Coupon Downloader, , [58da5e0344384aec662a81f658abbe42], PUP.Optional.CouponDownloader.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\CouponDownloader, , [df535f02e597dd598b064f2820e3847c], Registry Values: 1 PUP.Optional.Quiknowledge.A, HKLM\SOFTWARE\WOW6432NODE\QUIKNOWLEDGE|ie-ver, 10.0.9200.16721, , [9a98bca51f5d66d0a12e7a0a7e852dd3] Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 4 PUP.Optional.CouponDownloader.A, C:\Temp\t_ff.exe, , [4ae877ea8af2ce68504ac2816b95da26], PUP.Optional.CouponDownloader.A, C:\Temp\t_ie.exe, , [0230a2bf0973f244a0fa2a198e72c33d], PUP.Optional.OpenCandy, C:\Users\Jakub\Downloads\opera_ni_stable.exe, , [171b9fc2e29a53e36c4c820d15f0629e], RiskWare.Tool.CK, C:\Windows\KMService.exe, , [7bb7164b97e5b284bf887ec08979ff01], Physical Sectors: 0 (No malicious items detected) (end)