Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Databasversion: 5320
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
2010-12-15 19:00:39
mbam-log-2010-12-15 (19-00-39).txt
Skanningstyp: Fullständig skanning (C:\|)
Antal skannade objekt: 178543
Förfluten tid: 1 timme(ar), 13 minut(er), 57 sekund(er)
Infekterade minnesprocesser: 0
Infekterade minnesmoduler: 0
Infekterade registernycklar: 12
Infekterade registervärden: 2
Infekterade registerdataposter: 0
Infekterade mappar: 2
Infekterade filer: 28
Infekterade minnesprocesser:
(Inga illasinnade poster hittades)
Infekterade minnesmoduler:
(Inga illasinnade poster hittades)
Infekterade registernycklar:
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Reporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Reporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ResultBar (Adware.ResultBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\ResultBar (Adware.ResultBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\R oot\LEGACY_RESULTBAR_SERVICE (Adware.ResultBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\ResultBar Service (Adware.ResultBar) -> Quarantined and deleted successfully.
Infekterade registervärden:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\btpSTJvAQv.exe (Trojan.Agent) -> Value: btpSTJvAQv.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790477B77654513EA193 (Malware.Trace) -> Value: SRS_IT_E8790477B77654513EA193 -> Quarantined and deleted successfully.
Infekterade registerdataposter:
(Inga illasinnade poster hittades)
Infekterade mappar:
c:\documents and settings\all users\application data\resultbar (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\Program\resultbar (Adware.ResultBar) -> Quarantined and deleted successfully.
Infekterade filer:
c:\documents and settings\LG\lokala inställningar\Temp\btpstjvaqv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\LG\lokala inställningar\Temp\kdkqjfuccl.dll (Trojan.Crypt) -> Quarantined and deleted successfully.
c:\documents and settings\LG\lokala inställningar\Temp\SHO1C.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\LG\lokala inställningar\Temp\32190968.exe (Rogue.HDDScan) -> Quarantined and deleted successfully.
c:\documents and settings\LG\lokala inställningar\Temp\nsz24.tmp\uninstaller.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\LG\mina dokument\downloads\xvidsetup (1).exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\LG\mina dokument\downloads\xvidsetup (2).exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\LG\mina dokument\downloads\xvidsetup.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\Program\resultbar\resultbar.dll (Adware.Agent.Gen) -> Quarantined and deleted successfully.
c:\Program\resultbar\resultbar.exe (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP205\A0188278.exe (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP205\A0188301.dll (Adware.Agent.Gen) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP205\A0188302.exe (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP205\A0188303.exe (Adware.ResultBar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189833.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189828.exe (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189829.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189830.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189831.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP215\A0189832.exe (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190404.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190405.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190406.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190408.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190410.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190411.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190412.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\system volume information\_restore{fc0248d1-cdca-45f9-a576-cff8d507d440}\RP217\A0190413.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.