Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 11/9/2014 Scan Time: 4:20:32 PM Logfile: Malwarebyteslog.txt Administrator: Yes Version: 2.00.3.1025 Malware Database: v2014.11.09.07 Rootkit Database: v2014.11.08.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: TeamTkac Scan Type: Threat Scan Result: Completed Objects Scanned: 363702 Time Elapsed: 42 min, 22 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 6 Trojan.Ransom.ED, C:\ProgramData\Windows Genuine Advantage\{2BEAD886-D9B8-45DE-855F-8AF1FBBCA8F4}\msiexec.exe, , [3d7eb188eb9195a1697d3aa60df46a96], Trojan.Ransom.ED, C:\ProgramData\Windows Genuine Advantage\{695DD13D-3AF4-48FE-AD68-AA0EC8D6C90C}\msiexec.exe, , [55664eeb4636ea4cc22406da48b9a15f], CryptoWall.Trace, C:\Users\TeamTkac\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DECRYPT_INSTRUCTION.HTML, , [12a92217f9831620b73ae95148bb7e82], CryptoWall.Trace, C:\Users\TeamTkac\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DECRYPT_INSTRUCTION.TXT, , [6e4dc178611bdf5713deb1890ef55aa6], CryptoWall.Trace, C:\Users\TeamTkac\Desktop\DECRYPT_INSTRUCTION.HTML, , [ae0d7bbe59237abce80a6dcdf90a51af], CryptoWall.Trace, C:\Users\TeamTkac\Desktop\DECRYPT_INSTRUCTION.TXT, , [d6e53ffa3f3d60d67b7798a227dc40c0], Physical Sectors: 0 (No malicious items detected) (end)