Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 9/4/17 Scan Time: 4:38 PM Log File: mbam4.txt Administrator: Yes -Software Information- Version: 3.1.2.1733 Components Version: 1.0.160 Update Package Version: 1.0.2724 License: Free -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Bart-PC\Bart -Scan Summary- Scan Type: Threat Scan Result: Completed Objects Scanned: 393394 Threats Detected: 10 Threats Quarantined: 0 (No malicious items detected) Time Elapsed: 5 min, 33 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 1 Trojan.BitCoinMiner, HKU\S-1-5-21-4238196658-422620013-1050771535-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{B1E414B9-EBB1-4940-B64B-83D18C2DB853}}_is1, No Action By User, [78], [430356],1.0.2724 Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 1 Trojan.BitCoinMiner, C:\PROGRAMDATA\MICRO FOUNDATION 2, No Action By User, [78], [430356],1.0.2724 File: 8 Trojan.BitCoinMiner, C:\PROGRAMDATA\MICRO FOUNDATION 2\UNINS000.DAT, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\3.data, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\databackup.exe, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\license.xml4.txt, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\readme.xml2.txt, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\readme.xml3.txt, No Action By User, [78], [430356],1.0.2724 Trojan.BitCoinMiner, C:\ProgramData\Micro Foundation 2\unins000.exe, No Action By User, [78], [430356],1.0.2724 Adware.Linkury.Generic, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\LOCAL\PO.DB, No Action By User, [1878], [418250],1.0.2724 Physical Sector: 0 (No malicious items detected) (end)