Grazie , solo per un chekup ! :)
Malwarebytes
www.malwarebytes.com-Dettagli log-
Data scansione: 16/01/22
Ora scansione: 08:32
File di log: 6c115c8c-769e-11ec-9b5d-ac220b1dedc8.json
-Informazioni software-
Versione: 4.5.0.152
Versione componenti: 1.0.1538
Aggiorna versione pacchetto: 1.0.49873
Licenza: Periodo di prova
-Informazioni sistema-
SO: Windows 10 (Build 19043.1165)
CPU: x64
File system: NTFS
Utente: DESKTOP-I7LVQQ7\Kundalini
-Riepilogo scansione-
Tipo di scansione: Ricerca elementi nocivi
Scansione avviata da: Manuale
Risultati: Completata
Elementi analizzati: 335980
Minacce rilevate: 45
Minacce messe in quarantena: 0
Tempo impiegato: 8 min, 32 sec
-Opzioni di scansione-
Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Attivata
Analisi euristica: Attivata
PUP: Rilevare
PUM (modifica potenzialmente indesiderata): Rilevare
-Dettagli scansione-
Processo: 0
(Nessun elemento nocivo rilevato)
Modulo: 0
(Nessun elemento nocivo rilevato)
Chiave di registro: 10
PUP.Optional.GarbageCleaner, HKU\S-1-5-21-1641062853-3667648398-1858719796-1001\SOFTWARE\WOW6432NODE\GCleaner, Nessuna azione intrapresa, 1264, 676886, 1.0.49873, , ame, , ,
PUP.Optional.DriverPack, HKU\S-1-5-21-1641062853-3667648398-1858719796-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\ZONEMAP\DOMAINS\drp.su, Nessuna azione intrapresa, 652, 472299, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, HKU\S-1-5-21-1641062853-3667648398-1858719796-1001\SOFTWARE\INNOVATIVE SOLUTIONS\DriverMax, Nessuna azione intrapresa, 3480, 811919, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, HKLM\SOFTWARE\CLASSES\.dmx-info, Nessuna azione intrapresa, 3480, 811914, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, HKLM\SOFTWARE\CLASSES\dmx-info-file, Nessuna azione intrapresa, 3480, 811915, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, HKLM\SOFTWARE\CLASSES\innodmx, Nessuna azione intrapresa, 3480, 811916, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, HKLM\SOFTWARE\WOW6432NODE\INNOVATIVE SOLUTIONS\DriverMax, Nessuna azione intrapresa, 3480, 811917, 1.0.49873, , ame, , ,
HackTool.KMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\KMS_VL_ALL, Nessuna azione intrapresa, 1334, 812204, , , , , ,
HackTool.KMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BC252548-1010-4833-BB57-9FAD0ADA1278}, Nessuna azione intrapresa, 1334, 812204, , , , , ,
HackTool.KMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{BC252548-1010-4833-BB57-9FAD0ADA1278}, Nessuna azione intrapresa, 1334, 812204, , , , , ,
Valore di registro: 0
(Nessun elemento nocivo rilevato)
Dati di registro: 0
(Nessun elemento nocivo rilevato)
Flusso di dati: 0
(Nessun elemento nocivo rilevato)
Cartella: 4
PUP.Optional.DriverMax, C:\USERS\KUNDALINI\APPDATA\LOCAL\INNOVATIVE SOLUTIONS\DRIVERMAX, Nessuna azione intrapresa, 3480, 812461, 1.0.49873, , ame, , ,
PUP.Optional.DriverMax, C:\USERS\KUNDALINI\APPDATA\ROAMING\INNOVATIVE SOLUTIONS\DRIVERMAX, Nessuna azione intrapresa, 3480, 812462, 1.0.49873, , ame, , ,
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove, Nessuna azione intrapresa, 956, 542290, , , , , ,
PUP.Optional.WinYahoo.TskLnk, C:\USERS\KUNDALINI\APPDATA\LOCAL\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}, Nessuna azione intrapresa, 956, 542290, 1.0.49873, , ame, , ,
File: 30
Legit.MisusedLegit, C:\USERS\KUNDALINI\APPDATA\LOCALLOW\uS0wV5wY9qH3\mozglue.dll, Nessuna azione intrapresa, 3680, 965519, 1.0.49873, , ame, , EAE9273F8CDCF9321C6C37C244773139, A0C6630D4012AE0311FF40F4F06911BCF1A23F7A4762CE219B8DFFA012D188CC
Legit.MisusedLegit, C:\USERS\KUNDALINI\APPDATA\LOCALLOW\uS0wV5wY9qH3\freebl3.dll, Nessuna azione intrapresa, 3680, 965515, 1.0.49873, , ame, , 60ACD24430204AD2DC7F148B8CFE9BDC, 9876C53134DBBEC4DCCA67581F53638EBA3FEA3A15491AA3CF2526B71032DA97
Legit.MisusedLegit, C:\USERS\KUNDALINI\APPDATA\LOCALLOW\uS0wV5wY9qH3\softokn3.dll, Nessuna azione intrapresa, 3680, 965521, 1.0.49873, , ame, , 4E8DF049F3459FA94AB6AD387F3561AC, 25A4DAE37120426AB060EBB39B7030B3E7C1093CC34B0877F223B6843B651871
Legit.MisusedLegit, C:\USERS\KUNDALINI\APPDATA\LOCALLOW\uS0wV5wY9qH3\nss3.dll, Nessuna azione intrapresa, 3680, 965520, 1.0.49873, , ame, , 02CC7B8EE30056D5912DE54F1BDFC219, 1989526553FD1E1E49B0FEA8036822CA062D3D39C4CAB4A37846173D0F1753D5
PUP.Optional.WinYahoo.TskLnk, C:\USERS\KUNDALINI\APPDATA\ROAMING\Microsoft\Windows\Start Menu\Programs\HowToRemove.lnk, Nessuna azione intrapresa, 956, 542290, , , , , 148CEBD166C25A06D630A9CF69A065A6, DEEDEB38991CEE739C15F8C142C83087A2010BE1E1A2CF332344201E834CC11F
PUP.Optional.WinYahoo.TskLnk, C:\USERS\KUNDALINI\APPDATA\LOCAL\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HOWTOREMOVE\HOWTOREMOVE.HTML, Nessuna azione intrapresa, 956, 542290, 1.0.49873, , ame, , 92A56BD431B8EC678C73844C916017CA, 47BFA64B49B9ABF0C2DCA4F400E0137E1C29211CE6ED4196EDE1560149D13FF2
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\chromium-min.jpg, Nessuna azione intrapresa, 956, 542290, , , , , 63BC75E5CF5CBA301C0A333A493C1E6C, AECF7E9F8EA60035CF8E255B99ADDBC4739C357BC9773273B682B06073AE2BBC
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\control panel-min-min.JPG, Nessuna azione intrapresa, 956, 542290, , , , , D3317C08A7FD5C68AF7607B56365D7EF, E0DF11EDFC606871F3FA3E825D0A346D895CF2246372E1919F3F6B6F823855EA
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\down.png, Nessuna azione intrapresa, 956, 542290, , , , , BD28C167E200A3B28D65FAD11067F767, 782AEE35F1473A0818E85C7888276AB1A92A2C6650420A6914C11D4A87017959
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\ff menu.JPG, Nessuna azione intrapresa, 956, 542290, , , , , 0ACF64A62398FD3E28C0F776E080E02E, A7E228427AFE421EE317EECF714464E5ED346B2032C98F4076B01EB61D92F11F
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\ff search engine-min.png, Nessuna azione intrapresa, 956, 542290, , , , , 98167327578F423AD62775F9C0DA1C08, 95E4B167F0173DB00F6BCDDE9864CC2E5DDED171506F8AB8E7B9F7863D913680
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\hp-min ff.png, Nessuna azione intrapresa, 956, 542290, , , , , AFE6FD269F10B4FB4055028CE2E0F70C, F0403DEBED00E906EE26EFE1463A63347D5B7CD6EB60BB38AE0E3C3460F71693
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\hp-min ie.png, Nessuna azione intrapresa, 956, 542290, , , , , C76F780F7CDEDA6D63A72E00719EAE53, 0A53A6F7C61B73B40061A401ED4C5D1E520C1D1DEC270617C5C25C8EE64A95C6
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\search engine.gif, Nessuna azione intrapresa, 956, 542290, , , , , D2665D24334093AFB3D3E64E22346AC4, E5CA26785BDB836C3C234A67E991BF1C70D4E87CAA75EC43747619E64DECAA57
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\setup pages.gif, Nessuna azione intrapresa, 956, 542290, , , , , D8957AB88B51AC3D91DB06AC96369BE4, 6BB5388E49AAB90AB7C85A736EAABDEB9A78CDCCA4D7A4138B00DBC1C657C8D5
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\sp-min.png, Nessuna azione intrapresa, 956, 542290, , , , , C4A8846B0AAC9BEF78F6A001514ECFF5, 4E9A05BDB43137235913F0BBB1F21C35DF34E62D33F2A4F4FC9C0F15FA1346E3
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\start-min.jpg, Nessuna azione intrapresa, 956, 542290, , , , , 7A52610FBA6935C9ACF2A2F38CA86F6A, 677001B0CFD9F6C824E422C5EBBC5C042ABB0CF156990064DD3170CF6F3379C8
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\HowToRemove\up.png, Nessuna azione intrapresa, 956, 542290, , , , , 45B1D3F523A38E29419DC26AE6BDD253, 892E25F7363B1C4EFA5FFACD5F4CDADD01833F49EF5CEF335676D84DA871EBA0
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\canecirit, Nessuna azione intrapresa, 956, 542290, , , , , DBC66A23EE25949E68778EB816342AB5, 6401A6A972C7646F84F59BC3CBD5BBF52E6AFEEB3B2A67CFBD8D62C59E28D03C
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\celolicat, Nessuna azione intrapresa, 956, 542290, , , , , F185E864B0F3532A799B8576CA2D75EC, B0EF04F5D81E56F85843CD9D28EB1EDC229FE2DAF56A8D9DAA6518660E59164A
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\uninst.exe, Nessuna azione intrapresa, 956, 542290, , , , , 4ED777A5428F68EFA0A9D84FEB06D056, 59EE7AA430827FED2DCE7D0765AA95560094D864A811AB3611E30EA1B2CB4293
PUP.Optional.WinYahoo.TskLnk, C:\Users\Kundalini\AppData\Local\{9F6DA931-BBC5-C589-D65D-E061F2351CF9}\uninstp.dat, Nessuna azione intrapresa, 956, 542290, , , , , 3A8C80C60507B431FC41FDB520DF4613, 8D64C8795405AF3A51694B3FD49896BA71F7910B7ECEA58D460E277969F1E2AB
HackTool.KMS, C:\WINDOWS\SYSTEM32\TASKS\KMS_VL_ALL, Nessuna azione intrapresa, 1334, 812204, 1.0.49873, , ame, , 536492AF5EAC26129D40831F315E0054, 391253A856F8709EC8B5EBE40FEF84B323AD1EF66FBE41F40302A0CACDA0DEB3
Trojan.Dropper, C:\USERS\KUNDALINI\APPDATA\ROAMING\MIRC\DOWNLOADS\ARCHIVES\BANDICAM.V4.5.6.1647-GBM.RAR, Nessuna azione intrapresa, 548, 648276, 1.0.49873, 7F55563CA333AE800A501B86, dds, 01600204, A62B37CB279375A421A07942A936028D, E8FA2764C66461D84D1E5E4C97AF051D9E8FC2F77A470C8F1E6D1C37CD3BE716
PUP.Optional.BundleInstaller, C:\USERS\KUNDALINI\DOWNLOADS\UTORRENT.EXE, Nessuna azione intrapresa, 510, 875791, 1.0.49873, , ame, , C7D8BE7EEF6EF338B9D43013A8C103F1, 639D692C2F72E28A4991C5C2BB5E69BC3420B2DF63EA2112A6CD73EF83415BB1
PUP.Optional.DriverMax, C:\USERS\KUNDALINI\DOWNLOADS\DRIVERMAX.EXE, Nessuna azione intrapresa, 3480, 812463, 1.0.49873, , ame, , 11AD53A9529A5BCB20F68F93D90E5300, 983F85849877BCA42F3F374F5618E71B2BBE973FBB600885045BC4F3B9106004
Adware.DownloadAssistant, C:\USERS\KUNDALINI\DOWNLOADS\CCCAM-IPK-VIX_703213918.ZIP, Nessuna azione intrapresa, 748, 1013780, 1.0.49873, 8509A66CCC0725DA071D908E, dds, 01600204, 8D030B48D427F92100D0033E46C05A33, E7E109325BE7042E3DCA11F0B0C9F986F5C5432CE51136BD959A63F68F02BFC3
Trojan.Injector, C:\PROGRAM FILES (X86)\WONDERSHARE\PDFELEMENT 6 PRO\PATCH.EXE, Nessuna azione intrapresa, 727, 589852, 1.0.49873, , ame, , 2F44945298B78C7227187EFB7F746E3D, 0BF97B07F1D26DA87B9377879F0C195BEA374080E5BA9428861195D71D9BB18C
RiskWare.Tool.CK, C:\USERS\KUNDALINI\DOCUMENTS\VUZE DOWNLOADS\DRIVEREASY PROFESSIONAL V4.9.15.21942.RAR, Nessuna azione intrapresa, 7048, 297065, 1.0.49873, FC92510CB29BC7F0F2414FD3, dds, 01600204, F7EA6875141779F72385FD62175DA71B, B7771C597DF00E6416BC0610735EF8611F83B8E0C688C2FFAB4088789A320CD2
Spyware.PasswordStealer, C:\USERS\KUNDALINI\DOCUMENTS\VUZE DOWNLOADS\GREENPASS_GENERATOR.ZIP, Nessuna azione intrapresa, 537, 989827, 1.0.49873, 53E6B28C2CB3342DFF49366A, dds, 01600204, D5CAC4F9D13B21D4A75DA7C7A0DA42F6, 76FE5E77D54D5D033C5B7639015C43C798D6C4FE838E0E9FABBCE107210125DB
Settore fisico: 1
Rootkit.Pitou.c.MBR, 0, Nessuna azione intrapresa, 16934, 514127, 0.0.0, , ame, , ,
WMI: 0
(Nessun elemento nocivo rilevato)
(end)