Jump to content

Welcome to Geeks to Go
Geeks to Go Welcome
Create Account Login to Account
Photo

Removal instructions for Fast!

- - - - - Fast Corporate LTD

  • Please log in to reply
No replies to this topic

#1
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 33,101 posts
Content is republished with permission from Malwarebytes.

What is Fast!?

Fast! is a system optimizer that triggers our PUP detection rules. By doing so we offer users a choice to consider whether they want to use this software. More information can be found on our Malwarebytes Labs blog.

How do I know if I am affected by Fast!?

This is how the main screen of the system optimizer looks:

main.png

You will find these icons in your taskbar, your startmenu, and on your desktop:

icons.png

and see these types of windows during install:

warning1.png

warning2.png

and this type of screens during operations:

warning5.png

You may see this entry in your list of installed programs:

warning4.png

How did Fast! get on my computer?

These so-called system optimizers use different methods of getting installed. This particular one was downloaded from their website.

website.png

How do I remove Fast!?

Our program Malwarebytes can detect and remove this PUP.
  • Please download Malwarebytes for Windows to your desktop.
  • Double-click MBSetup.exe and follow the prompts to install the program.
  • When your Malwarebytes for Windows installation completes, the program opens to the Welcome to Malwarebytes screen.
  • Click on the Get started button.
  • Click Scan to start a Threat Scan.
  • When the scan is finished click Quarantine to remove the found threats.
  • Reboot the system if prompted to complete the removal process.
Is there anything else I need to do to get rid of Fast!?
  • No, Malwarebytes removes Fast! completely.
What if I want to keep Fast!?

Should users wish to keep this program and exclude it from being detected in future scans, they can add the program to the exclusions list. Heres how to do it.
  • Open Malwarebytes for Windows.
  • Click the Detection History
  • Click the Allow List
  • To add an item to the Allow List, click Add.
  • Select the exclusion type Allow a file or folder and use the Select a folder button to select the main folder for the software that you wish to keep.
  • Repeat this for any secondary files or folder(s) that belong to the software.
If you want to allow the program to connect to the Internet, for example to fetch updates, also add an exclusion of the type Allow an application to connect to the internet and use the Browse button to select the file you wish to grant access.

How would the full version of Malwarebytes help protect me?

We hope our application and this guide have helped you in dealing with this registry cleaner.

As you can see below the full version of Malwarebytes would have warned you against the Fast! installer.

protection1.png


and we block access to their domain:

protection2.png


Technical details for experts

You may see these entries in FRST logs:

(Fast Corporate LTD -> ) C:\Program Files (x86)\Fast!\fast!.exe
(Fast Corporate LTD -> ) C:\Program Files (x86)\Fast!\FastSRV.exe
(Fast Corporate LTD -> The NWJS Community) C:\Program Files (x86)\Fast!\nwjs\nw.exe <3>
R2 FastSRV; C:\Program Files (x86)\Fast!\FastSRV.exe [83912 2019-09-03] (Fast Corporate LTD -> )
C:\Users\{username}\Desktop\Fast!.lnk
C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast!
C:\Users\{username}\AppData\Local\FAST!
C:\Program Files (x86)\Fast!

Fast! (HKLM-x32\...\Fast!) (Version: 2.172tu - Fast!)
() [File not signed] C:\Program Files (x86)\Fast!\nwjs\ffmpeg.dll
() [File not signed] C:\Program Files (x86)\Fast!\nwjs\node.dll
(The NWJS Community) [File not signed] C:\Program Files (x86)\Fast!\nwjs\nw.dll
(The NWJS Community) [File not signed] C:\Program Files (x86)\Fast!\nwjs\nw_elf.dll
Alterations made by the installer:

File system details [View: All details] (Selection)
---------------------------------------------------
    Adds the folder C:\Program Files (x86)\Fast!
       Adds the file fast!.exe"="9/3/2019 7:41 AM, 1810888 bytes, A
       Adds the file FastSRV.exe"="9/3/2019 7:41 AM, 83912 bytes, A
       Adds the file uninstaller.exe"="10/20/2020 8:54 AM, 169801 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\nwjs
       Adds the file credits.html"="11/14/2017 2:12 PM, 1922937 bytes, A
       Adds the file d3dcompiler_47.dll"="11/14/2017 2:12 PM, 3661112 bytes, A
       Adds the file ffmpeg.dll"="11/14/2017 2:12 PM, 1157120 bytes, A
       Adds the file icudtl.dat"="11/14/2017 2:12 PM, 10196592 bytes, A
       Adds the file libEGL.dll"="11/14/2017 2:12 PM, 79872 bytes, A
       Adds the file libGLESv2.dll"="11/14/2017 2:12 PM, 3175936 bytes, A
       Adds the file natives_blob.bin"="11/14/2017 2:12 PM, 218275 bytes, A
       Adds the file node.dll"="11/14/2017 2:12 PM, 5777408 bytes, A
       Adds the file nw.dll"="11/14/2017 2:12 PM, 71894528 bytes, A
       Adds the file nw.exe"="11/18/2017 8:01 PM, 4127368 bytes, A
       Adds the file nw_100_percent.pak"="11/14/2017 2:12 PM, 762897 bytes, A
       Adds the file nw_200_percent.pak"="11/14/2017 2:12 PM, 1019602 bytes, A
       Adds the file nw_elf.dll"="11/14/2017 2:12 PM, 422400 bytes, A
       Adds the file resources.pak"="11/14/2017 2:12 PM, 5755269 bytes, A
       Adds the file snapshot_blob.bin"="11/14/2017 2:12 PM, 1198536 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\nwjs\locales
    Adds the folder C:\Program Files (x86)\Fast!\nwjs\swiftshader
       Adds the file libEGL.dll"="11/14/2017 2:12 PM, 107520 bytes, A
       Adds the file libGLESv2.dll"="11/14/2017 2:12 PM, 2013184 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\ui
       Adds the file index.html"="8/30/2019 7:20 AM, 8013 bytes, A
       Adds the file notify.html"="8/30/2019 7:30 AM, 1738 bytes, A
       Adds the file package.json"="8/30/2019 7:20 AM, 312 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\ui\css
       Adds the file font-awesome.min.css"="7/3/2019 9:25 PM, 31000 bytes, A
       Adds the file opensans.css"="1/4/2018 8:27 AM, 1800 bytes, A
       Adds the file opensans1.woff2"="1/4/2018 8:27 AM, 16868 bytes, A
       Adds the file opensans2.woff2"="1/4/2018 8:27 AM, 9676 bytes, A
       Adds the file opensans3.woff2"="1/4/2018 8:27 AM, 2332 bytes, A
       Adds the file opensans4.woff2"="1/4/2018 8:27 AM, 8160 bytes, A
       Adds the file opensans5.woff2"="1/4/2018 8:27 AM, 5740 bytes, A
       Adds the file opensans6.woff2"="1/4/2018 8:27 AM, 12288 bytes, A
       Adds the file opensans7.woff2"="1/4/2018 8:27 AM, 15572 bytes, A
       Adds the file style.css"="7/11/2019 5:19 PM, 751 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\ui\images
    Adds the folder C:\Program Files (x86)\Fast!\ui\js
       Adds the file chart.min.js"="8/30/2019 7:20 AM, 158750 bytes, A
       Adds the file circle-progress.js"="1/4/2018 8:27 AM, 15899 bytes, A
       Adds the file jquery-2.1.4.min.js"="1/4/2018 8:27 AM, 84349 bytes, A
       Adds the file ui.bin"="9/3/2019 7:41 AM, 67048 bytes, A
       Adds the file ui.js"="3/13/2018 3:12 AM, 45 bytes, A
    Adds the folder C:\Program Files (x86)\Fast!\ui\vid
       Adds the file fast.webm"="10/24/2018 10:56 AM, 1160514 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data
       Adds the file BrowserMetrics-active.pma"="10/20/2020 8:54 AM, 8388608 bytes, A
       Adds the file BrowserMetrics-spare.pma"="10/20/2020 8:56 AM, 8388608 bytes, A
       Adds the file CrashpadMetrics-active.pma"="10/20/2020 8:54 AM, 1048576 bytes, A
       Adds the file First Run"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Local State"="10/20/2020 8:58 AM, 12045 bytes, A
       Adds the file lockfile"="10/20/2020 8:54 AM, 0 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Crashpad
       Adds the file metadata"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file settings.dat"="10/20/2020 8:54 AM, 40 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Crashpad\reports
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default
       Adds the file Favicons"="10/20/2020 8:54 AM, 20480 bytes, A
       Adds the file Favicons-journal"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Google Profile.ico"="10/20/2020 8:54 AM, 151668 bytes, A
       Adds the file History"="10/20/2020 8:54 AM, 114688 bytes, A
       Adds the file History-journal"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Login Data"="10/20/2020 8:54 AM, 18432 bytes, A
       Adds the file Login Data-journal"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Preferences"="10/20/2020 8:58 AM, 1748 bytes, A
       Adds the file previews_opt_out.db"="10/20/2020 8:54 AM, 16384 bytes, A
       Adds the file previews_opt_out.db-journal"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file README"="10/20/2020 8:54 AM, 162 bytes, A
       Adds the file Secure Preferences"="10/20/2020 8:54 AM, 4629 bytes, A
       Adds the file Top Sites"="10/20/2020 8:54 AM, 20480 bytes, A
       Adds the file Top Sites-journal"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Visited Links"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file Web Data"="10/20/2020 8:54 AM, 65536 bytes, A
       Adds the file Web Data-journal"="10/20/2020 8:54 AM, 0 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\data_reduction_proxy_leveldb
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000002"="10/20/2020 8:54 AM, 50 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Extension Rules
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000001"="10/20/2020 8:54 AM, 41 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Extension State
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000001"="10/20/2020 8:54 AM, 41 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\GPUCache
       Adds the file data_0"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file data_1"="10/20/2020 8:54 AM, 270336 bytes, A
       Adds the file data_2"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file data_3"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file index"="10/20/2020 8:54 AM, 262512 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Local Storage\leveldb
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000001"="10/20/2020 8:54 AM, 41 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Sync Data\LevelDB
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000001"="10/20/2020 8:54 AM, 41 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Thumbnails
       Adds the file 000003.log"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file CURRENT"="10/20/2020 8:54 AM, 16 bytes, A
       Adds the file LOCK"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file LOG"="10/20/2020 8:54 AM, 0 bytes, A
       Adds the file MANIFEST-000001"="10/20/2020 8:54 AM, 41 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\Default\Web Applications\_crx_npaimmhhjcfhbdogdfcmlldgglpldhbm
       Adds the file FAST!.ico"="10/20/2020 8:54 AM, 28134 bytes, A
       Adds the file FAST!.ico.md5"="10/20/2020 8:54 AM, 16 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\FAST!\User Data\ShaderCache\GPUCache
       Adds the file data_0"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file data_1"="10/20/2020 8:54 AM, 270336 bytes, A
       Adds the file data_2"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file data_3"="10/20/2020 8:54 AM, 8192 bytes, A
       Adds the file index"="10/20/2020 8:54 AM, 262512 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast!
       Adds the file Fast!.lnk"="10/20/2020 8:54 AM, 1865 bytes, A
       Adds the file Uninstall.lnk"="10/20/2020 8:54 AM, 1911 bytes, A
    In the existing folder C:\Users\{username}\Desktop
       Adds the file Fast!.lnk"="10/20/2020 8:54 AM, 963 bytes, A

Registry details [View: All details] (Selection)
------------------------------------------------
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{86E24423-5711-2747-923C-315FC585C98E}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Fast!]
       "bios_releasedate"="REG_SZ", "20061201000000.000000+000"
       "cpu_cores"="REG_SZ", "1"
       "cpu_logicalproc"="REG_SZ", "1"
       "cpu_maxclock"="REG_SZ", "2808"
       "cpu_name"="REG_SZ", "Intel(R) Core(TM) i7-7700HQ CPU @ 2.80GHz"
       "DisplayName"="REG_SZ", "Fast!"
       "DisplayVersion"="REG_SZ", "2.172tu"
       "dsk_iosec"="REG_SZ", "7590"
       "dsk_mbsec"="REG_SZ", "29"
       "gpu_name"="REG_SZ", "VirtualBox Graphics Adapter (WDDM)"
       "gpu_ram"="REG_SZ", ""
       "os_architecture"="REG_SZ", "64-bit"
       "os_installdate"="REG_SZ", "20160208125900.000000+060"
       "os_mem"="REG_SZ", "2096696"
       "os_name"="REG_SZ", "Microsoft Windows 7 Ultimate "
       "os_virtmem"="REG_SZ", "4193392"
       "pc_vendor"="REG_SZ", "innotek GmbH"
       "pc_version"="REG_SZ", "1.2"
       "Publisher"="REG_SZ", "Fast!"
       "SettingV1"="REG_SZ", "0,0,0,1,3,16384,2,5,256,1,3,16384,1"
       "UninstallString"="REG_SZ", ""C:\Program Files (x86)\Fast!\uninstaller.exe""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\nwjs\FirstNotDefault]
       "S-1-5-21-1350903546-318028887-1286703239-1003"="REG_QWORD, .../
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FastSRV]
       "DisplayName"="REG_SZ", "Fast Engine Service"
       "ErrorControl"="REG_DWORD", 1
       "ImagePath"="REG_EXPAND_SZ, "C:\Program Files (x86)\Fast!\FastSRV.exe"
       "ObjectName"="REG_SZ", "LocalSystem"
       "Start"="REG_DWORD", 2
       "Type"="REG_DWORD", 16
       "WOW64"="REG_DWORD", 1
    [HKEY_CURRENT_USER\Software\nwjs\BLBeacon]
       "failed_count"="REG_DWORD", 0
       "state"="REG_DWORD", 1
       "version"="REG_SZ", "62.0.3202.94"
    [HKEY_CURRENT_USER\Software\nwjs\PreferenceMACs\Default]
       "browser.show_home_button"="REG_SZ", "D4AE6B748030C65B37203BF504F4BAB6B7189D30A8068E933D27D272B9825121"
       "default_search_provider_data.template_url_data"="REG_SZ", "577902E48778C2084EA38A666D6F118AC7A10E564E6D2C614157FE4553B1CDF1"
       "google.services.account_id"="REG_SZ", "6FD09700B4A149D948B55F3C0AB72673D5C367B9E751454C6202DC1D3DFA6802"
       "google.services.last_account_id"="REG_SZ", "6AF24852E27EDB5DFA7E36D3AC87D5EBDB6B1A2ACB4AF4E651C22798B2394A67"
       "google.services.last_username"="REG_SZ", "BF235C9F83153EC2D71D60021ED0AA56728D62A5264E811DCEBFF589EA33BE81"
       "google.services.username"="REG_SZ", "A70B5C736433139A005D3E49D73AB8574672434936A4FA21F55757B0E4882F3C"
       "homepage"="REG_SZ", "6BEC350ECF8125372A826D71D2DB258A636A08AF0C652D9E774072EFB372A346"
       "homepage_is_newtabpage"="REG_SZ", "71E415DF84698054516E68295FA7E443543243920785F715BF71F2641FD03239"
       "pinned_tabs"="REG_SZ", "988BA7AF49CBEED46002524FB1DC5972CCCEE6DF03B77A755B3E322D74E33697"
       "prefs.preference_reset_time"="REG_SZ", "3BB6D1CF1E2266580804D7B343EB3D436157898CC157308C74F704B5D85BFEB3"
       "safebrowsing.incidents_sent"="REG_SZ", "749D4F2A5067553DBA6E47E7C37A086D83F1623F54420951FD2646E8E8E27C80"
       "search_provider_overrides"="REG_SZ", "D868509C983E4D4868450576F8A3D3E7E05C68568CF8D7DF91589972AEF37E93"
       "session.restore_on_startup"="REG_SZ", "43A753CE09B9BF0DC9660872B81B90FD2A0D9B708609FE84D2B964F6828053EA"
       "session.startup_urls"="REG_SZ", "5622145A2429114A31AC87D39A6757FFC8802A76D4158BC08DC268C76568D401"
       "settings_reset_prompt.last_triggered_for_default_search"="REG_SZ", "1B7549747E6FD7C37E6D498A93AB6980CF3A2002D339CFD5D09C6997B37FA7E3"
       "settings_reset_prompt.last_triggered_for_homepage"="REG_SZ", "3937DC165E7432A408A1AEAC832766F0C8D5A7C7ADB070399FE60CB887003332"
       "settings_reset_prompt.last_triggered_for_startup_urls"="REG_SZ", "9CA5289F21296A288C9A358716171FDF673C04D4A30D443BB97A408B83B08135"
       "settings_reset_prompt.prompt_wave"="REG_SZ", "8E49A1A3D2AA3456F777518FDCC2BA30722E089ECFD7B7265C2EE8BB90D3EF15"
       "software_reporter.prompt_seed"="REG_SZ", "CC15095EDB89D7530910B1296F1D27AF2AC038D4F6B627A0668381488E697535"
       "software_reporter.prompt_version"="REG_SZ", "04FFA133961EA613587BC3C40EBACF2A6F42BCECBCEAE1CE4312993E3A3E752E"
    [HKEY_CURRENT_USER\Software\nwjs\PreferenceMACs\Default\extensions.settings]
       "mhjfbmdgcfjbbpaeojofohoefgiehjai"="REG_SZ", "5FF64602E3F06004392A11842FC04522E5ADE5B63AEA17EABCF2EEB97FDFC1DE"
       "npaimmhhjcfhbdogdfcmlldgglpldhbm"="REG_SZ", "86FF77A0549467C8A0144D73D858AF794BC4C81B51C0238D57D6CA4E865D2056"
    [HKEY_CURRENT_USER\Software\nwjs\StabilityMetrics]
       "user_experience_metrics.stability.exited_cleanly"="REG_DWORD", 0
Malwarebytes log:

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 10/20/20
Scan Time: 9:05 AM
Log File: a6d80188-12a2-11eb-9007-080027235d76.json

-Software Information-
Version: 4.2.1.89
Components Version: 1.0.1070
Update Package Version: 1.0.31662
License: Premium

-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: {computername}\{username}

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 231859
Threats Detected: 26
Threats Quarantined: 24
Time Elapsed: 2 min, 26 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 2
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FASTSRV.EXE, Quarantined, 9565, 747937, , , , , 5D766FC9AE1BDC437A5E5BFC1671705A, 7F722DDE7C511F8D6383D942009950E0AD1C0E332E6ED9047C76FD7DABB4BE0B
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FAST!.EXE, Quarantined, 9565, 867559, , , , , 0F05D5E48CCA584A459D95BE0990FDF1, A588B7FF30A9C5C967743692D1D51FF671DE4D3ED7C71416FD3495C0F73687AC

Module: 8
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FASTSRV.EXE, Quarantined, 9565, 747937, , , , , 5D766FC9AE1BDC437A5E5BFC1671705A, 7F722DDE7C511F8D6383D942009950E0AD1C0E332E6ED9047C76FD7DABB4BE0B
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FAST!.EXE, Quarantined, 9565, 867559, , , , , 0F05D5E48CCA584A459D95BE0990FDF1, A588B7FF30A9C5C967743692D1D51FF671DE4D3ED7C71416FD3495C0F73687AC
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NW_ELF.DLL, Quarantined, 9565, 867556, , , , , A2AFC1508381E830303542A1B8AE591D, 4EED53297A5F418B5CA6F70329DA3CD6B2ADF6C799AC04916109C177C49A27FA
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NW_ELF.DLL, Quarantined, 9565, 867556, , , , , A2AFC1508381E830303542A1B8AE591D, 4EED53297A5F418B5CA6F70329DA3CD6B2ADF6C799AC04916109C177C49A27FA
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NW_ELF.DLL, Quarantined, 9565, 867556, , , , , A2AFC1508381E830303542A1B8AE591D, 4EED53297A5F418B5CA6F70329DA3CD6B2ADF6C799AC04916109C177C49A27FA
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\FFMPEG.DLL, Quarantined, 9565, 867556, , , , , 1A5F9ED8803FBB93655A123C208DB365, EED485D2D5D5D731AA34F7C2A25691BB4EFFD0CBAF4E77A95D8FE704DFD01538
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\FFMPEG.DLL, Quarantined, 9565, 867556, , , , , 1A5F9ED8803FBB93655A123C208DB365, EED485D2D5D5D731AA34F7C2A25691BB4EFFD0CBAF4E77A95D8FE704DFD01538
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NODE.DLL, Quarantined, 9565, 867556, , , , , F89681A61E9A1BC85B02867D0008C190, 7C058B8643EC33B1FD46C099A48A8F1D7E1E380AD488111F2007651C84F37F7B

Registry Key: 2
PUP.Optional.VeryFast, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\FASTSRV, Quarantined, 9565, 747937, 1.0.31662, , ame, , , 
PUP.Optional.VeryFast, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Fast!, Quarantined, 9565, 747938, 1.0.31662, , ame, , , 

Registry Value: 1
PUP.Optional.VeryFast, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\FASTSRV|IMAGEPATH, Quarantined, 9565, 747937, 1.0.31662, , ame, , , 

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 3
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!, Removal Failed, 9565, 867556, 1.0.31662, , ame, , , 
PUP.Optional.VeryFast, C:\USERS\{username}\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\FAST!, Quarantined, 9565, 452162, 1.0.31662, , ame, , , 
PUP.Optional.VeryFast, C:\USERS\{username}\APPDATA\LOCAL\FAST!, Removal Failed, 9565, 867557, 1.0.31662, , ame, , , 

File: 10
PUP.Optional.VeryFast, C:\USERS\{username}\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\FAST!\FAST!.LNK, Quarantined, 9565, 452162, 1.0.31662, , ame, , 3D643D3C7412679EB6B746E87E9082CF, 1572CA91FABE1BF8D26652524EDD393B1DC1354F61FE9B0CEFAFC065CD46A592
PUP.Optional.VeryFast, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast!\Uninstall.lnk, Quarantined, 9565, 452162, , , , , D074BCEC4AC44C8D3802DE623D438972, 6BCFFC2FECE64EB0DBF21870F2034802A8643BDA0FA1E3624267F93D310FE4E4
PUP.Optional.VeryFast, C:\USERS\{username}\DESKTOP\FAST!.LNK, Quarantined, 9565, 452161, 1.0.31662, , ame, , 2E7ACAD083EF6855C44349DB237DDE02, 7F8FA0F95F105D169425264BB47F58196C411A07241366C731A0CB75B6E0C226
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FASTSRV.EXE, Quarantined, 9565, 747937, , , , , 5D766FC9AE1BDC437A5E5BFC1671705A, 7F722DDE7C511F8D6383D942009950E0AD1C0E332E6ED9047C76FD7DABB4BE0B
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\FAST!.EXE, Quarantined, 9565, 867559, 1.0.31662, , ame, , 0F05D5E48CCA584A459D95BE0990FDF1, A588B7FF30A9C5C967743692D1D51FF671DE4D3ED7C71416FD3495C0F73687AC
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NW_ELF.DLL, Quarantined, 9565, 867556, 1.0.31662, , ame, , A2AFC1508381E830303542A1B8AE591D, 4EED53297A5F418B5CA6F70329DA3CD6B2ADF6C799AC04916109C177C49A27FA
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\FFMPEG.DLL, Quarantined, 9565, 867556, 1.0.31662, , ame, , 1A5F9ED8803FBB93655A123C208DB365, EED485D2D5D5D731AA34F7C2A25691BB4EFFD0CBAF4E77A95D8FE704DFD01538
PUP.Optional.VeryFast, C:\PROGRAM FILES (X86)\FAST!\NWJS\NODE.DLL, Quarantined, 9565, 867556, 1.0.31662, , ame, , F89681A61E9A1BC85B02867D0008C190, 7C058B8643EC33B1FD46C099A48A8F1D7E1E380AD488111F2007651C84F37F7B
PUP.Optional.VeryFast, C:\USERS\{username}\APPDATA\LOCAL\TEMP\SETUPENGINE.EXE, Quarantined, 9565, 867559, 1.0.31662, , ame, , E2C0B6AC4CDA6AA40F8C7B6A4E8A7D8B, 52F77078A983F6BB4280093C2646000A28B5E8AFA312649E592F698161214459
PUP.Optional.VeryFast, C:\USERS\{username}\DESKTOP\SETUP.EXE, Quarantined, 9565, 867559, 1.0.31662, , ame, , 1C7DFAAA589D3A15285703CF71A75D47, 9F820BF73900A6F019951FFFE0CAE7A859D196AD76208D54F442E98471170C97

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)
As mentioned before the full version of Malwarebytes could have protected your computer against this threat.
We use different ways of protecting your computer(s):
  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
  • 0

Advertisements





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

featured
Malware Removal How to Guides Windows 7 System Building Download Files Register welcome

Never used a forum? Learn how.