Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 10-Nov-16 Scan Time: 8:40 PM Logfile: mbam.txt Administrator: Yes Version: 2.2.1.1043 Malware Database: v2016.11.10.02 Rootkit Database: v2016.10.31.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 10 CPU: x64 File System: NTFS User: giyomu Scan Type: Threat Scan Result: Completed Objects Scanned: 296244 Time Elapsed: 5 min, 11 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 1 Trojan.Agent.Trace, HKU\S-1-5-21-4122877414-3997298003-4144928055-1001\SOFTWARE\VB AND VBA PROGRAM SETTINGS\SrvID, , [3c5e1da18d0d8ea837152f7f9f63629e], Registry Values: 1 Trojan.Agent, HKU\S-1-5-21-4122877414-3997298003-4144928055-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|explorer.exe, C:\Users\giyomu\AppData\Roaming\explorer.exe, , [d8c2724ca1f986b0eff666c63fc38f71] Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 2 Trojan.StolenData, C:\Users\giyomu\AppData\Roaming\data.dat, , [5644348a75254de93a7f268e2bd7f010], Trojan.Agent, C:\Users\giyomu\AppData\Roaming\explorer.exe, , [d8c2724ca1f986b0eff666c63fc38f71], Physical Sectors: 0 (No malicious items detected) (end)