Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Wersja bazy: 7056 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 8.0.6001.18702 2011-07-09 11:49:40 mbam-log-2011-07-09 (11-49-39).txt Typ skanowania: Pełne skanowanie (C:\|D:\|E:\|) Przeskanowano obiektów: 341103 Upłynęło: 38 minut(y), 29 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 4 Zainfekowanych folderów: 0 Zainfekowanych plików: 12 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowHelp (PUM.Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Zainfekowanych folderów: (Nie znaleziono zagrożeń) Zainfekowanych plików: c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP20\A0004215.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP20\A0005252.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP23\A0006602.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP23\A0006603.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP23\A0006604.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP23\A0006605.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\system volume information\_restore{69887486-849e-44e9-967e-d7749f544d10}\RP26\A0006915.exe (PUP.Casino) -> Quarantined and deleted successfully. e:\Download\mirc.v6.35.incl.keygen.incl.patch-f4cg\keygen.exe (Trojan.Dropper.PGen) -> Quarantined and deleted successfully. e:\Download\mirc.v6.35.incl.keygen.incl.patch-f4cg\patch.exe (Backdoor.IRCBot) -> Quarantined and deleted successfully. e:\program files\mIRC\patch.exe (Backdoor.IRCBot) -> Quarantined and deleted successfully. e:\Ultra\u96.exe (Trojan.Agent) -> Quarantined and deleted successfully. e:\Ultra\U98.exe (Adware.UltraReach) -> Quarantined and deleted successfully.