Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 9.05.2025
Scan Time: 20:40
Log File: c496291a-2cfc-11f0-b92a-382c4a727262.json
-Software Information-
Version: 5.2.11.183
Components Version: 131.0.5227
Update Package Version: 1.0.98835
License: Free
-System Information-
OS: Windows 10 (Build 19045.3803)
CPU: x64
File System: NTFS
User: DESKTOP-64K3414\Umut Can Aslan
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 217802
Threats Detected: 15
Threats Quarantined: 12
Time Elapsed: 0 min, 53 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
File system: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 1
Malware.AI.4132867233, C:\PROGRAMDATA\WINDOWSSERVICE.{D20EA4E1-3957-11D2-A40B-0C5020524153}\USEROOBEBROKER.EXE, No Action By User, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, AB5C190E18C3F905A0EEE184AD9E1BD3, 4DE79DD2024EFD948DA17385714B97776DAE0564F579DFB6AF72925F373911F0
Module: 1
Malware.AI.4132867233, C:\PROGRAMDATA\WINDOWSSERVICE.{D20EA4E1-3957-11D2-A40B-0C5020524153}\USEROOBEBROKER.EXE, No Action By User, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, AB5C190E18C3F905A0EEE184AD9E1BD3, 4DE79DD2024EFD948DA17385714B97776DAE0564F579DFB6AF72925F373911F0
Registry Key: 6
Malware.AI.4132867233, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WinServiceTask, Quarantined, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, ,
Malware.AI.4132867233, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BEFF1FC9-0FFC-4748-9FAF-93B01BA08206}, Quarantined, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, ,
Malware.AI.4132867233, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{BEFF1FC9-0FFC-4748-9FAF-93B01BA08206}, Quarantined, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, ,
Trojan.CoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemOneDriveUpdateTaskMachineCoreTask, Quarantined, 5885, 1325270, 1.0.98835, , ame, , ,
Trojan.CoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CAD9C6D6-A4CF-448F-BCA4-EAB2C3A30525}, Quarantined, 5885, 1325270, 1.0.98835, , ame, , ,
Trojan.CoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{CAD9C6D6-A4CF-448F-BCA4-EAB2C3A30525}, Quarantined, 5885, 1325270, 1.0.98835, , ame, , ,
Registry Value: 0
(No malicious items detected)
Registry Data: 1
Malware.AI.4132867233, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON|Userinit, Replaced, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, ,
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 6
Malware.AI.4132867233, C:\PROGRAMDATA\WINDOWSSERVICE.{D20EA4E1-3957-11D2-A40B-0C5020524153}\USEROOBEBROKER.EXE, No Action By User, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, AB5C190E18C3F905A0EEE184AD9E1BD3, 4DE79DD2024EFD948DA17385714B97776DAE0564F579DFB6AF72925F373911F0
Malware.AI.4132867233, C:\WINDOWS\SYSTEM32\TASKS\WinServiceTask, Quarantined, 1000000, 0, 1.0.98835, E63560607962C7B2F6568CA1, dds, 03341772, 90BECEF9E9F2CC28852AC96A3522C90D, B3EFCFA0ACF4D97FEFE402F7454673050B912B440C456E55CB6098C2D7C7D7F0
Trojan.CoinMiner, C:\PROGRAMDATA\MICROSOFT\WBEM.{208D2C60-3AEA-1069-A2D7-08002B30309D}\WMIPRVSE.EXE, Quarantined, 5885, 1325270, 1.0.98835, , ame, , 5681606D4BAA438C1C903703A19129AE, 45436C055F27937297EB37433A92DD6C22C630467100F5171D62F5058FFA3C99
Trojan.CoinMiner, C:\WINDOWS\SYSTEM32\TASKS\SystemOneDriveUpdateTaskMachineCoreTask, Quarantined, 5885, 1325270, 1.0.98835, , ame, , 36D2369C331B233494DB2CB1C06EB432, 6D35B6F6B80A889F840E5ACF64E770DD0688E51A7001EDEAF5EB1DDDE4A16824
Malware.Heuristic.2025, C:\USERS\UMUT CAN ASLAN\APPDATA\LOCAL\TEMP\6FFY5G9UR928HHERDRTD7WWGGG5I857FAK138E38KF2F4W116K.EXE, Quarantined, 1000001, 1163561, 1.0.98835, 0000000000000000000007E9, dds, 03341772, 189E6253BFA5DC854959FA0C89029B1E, 880FC1D129BE9879902DE9EC52688021B57EE75E5D66890B102D9301477DB52C
Malware.Heuristic.2025, C:\USERS\UMUT CAN ASLAN\APPDATA\LOCAL\TEMP\ETH9S63JH8EAHSRDI66T4DYRE7FKHKKWA1EQQ54SRT7D88R1RA.EXE, Quarantined, 1000001, 1163561, 1.0.98835, 0000000000000000000007E9, dds, 03341772, 189E6253BFA5DC854959FA0C89029B1E, 880FC1D129BE9879902DE9EC52688021B57EE75E5D66890B102D9301477DB52C
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)