Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 12/3/17 Scan Time: 8:10 PM Log File: 2e676d37-d855-11e7-ba6b-5c260a1a4a7d.json Administrator: Yes -Software Information- Version: 3.3.1.2183 Components Version: 1.0.236 Update Package Version: 1.0.3402 License: Free -System Information- OS: Windows 8.1 CPU: x64 File System: NTFS User: TITo\TAHER -Scan Summary- Scan Type: Threat Scan Result: Completed Objects Scanned: 258222 Threats Detected: 31 Threats Quarantined: 31 Time Elapsed: 4 min, 1 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Detect PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 0 (No malicious items detected) Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 5 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\_metadata, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\USERS\TAHER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\NKNFHHMHOFLKCIJAODALBNCNMIDOCCED, Quarantined, [8230], [441142],1.0.3402 File: 26 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\_metadata\computed_hashes.json, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\_metadata\verified_contents.json, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\analitics.js, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\background.html, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\background.min.js, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\content.min.js, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\icon_128.png, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\jquery-3.2.2.js, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\manifest.json, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknfhhmhoflkcijaodalbncnmidocced\1.9_0\sizzle.js, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\USERS\TAHER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, Replaced, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\USERS\TAHER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Replaced, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\000003.log, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\CURRENT, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOCK, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOG, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOG.old, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\MANIFEST-000001, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\000003.log, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\CURRENT, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOCK, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOG, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\LOG.old, Quarantined, [8230], [441142],1.0.3402 PUP.Optional.MultiLogon.NFCS, C:\Users\TAHER\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\nknfhhmhoflkcijaodalbncnmidocced\MANIFEST-000001, Quarantined, [8230], [441142],1.0.3402 RiskWare.DontStealOurSoftware, C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS, Replaced, [655], [353142],1.0.3402 PUP.Optional.AdvancedSystemCare, C:\WINDOWS\SYSTEM32\REGISTRYDEFRAGBOOTTIME.EXE, Quarantined, [1114], [396386],1.0.3402 Physical Sector: 0 (No malicious items detected) (end)