Malwarebytes' Anti-Malware 1.45 www.malwarebytes.org Databaseversjon: 4050 Windows 6.0.6000 Internet Explorer 7.0.6000.16851 29.04.2010 14:33:01 mbam-log-2010-04-29 (14-33-01).txt Skanntype: Hurtigsøk Objekter skannet: 110987 Tid tilbakelagt: 9 minutt(er), 7 sekund(er) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 0 Registerverdier infisert: 1 Registerfiler infisert: 5 Mapper infisert: 2 Filer infisert 4 Minneprosesser infisert: (Ingen skadelige objekter funnet) Minnemoduler infisert: (Ingen skadelige objekter funnet) Registernøkler infisert: (Ingen skadelige objekter funnet) Registerverdier infisert: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdll (Worm.AutoRun) -> Quarantined and deleted successfully. Registerfiler infisert: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2e487640-22b3-4996-89fd-e6dc2969f3fe}\NameServer (Trojan.DNSChanger) -> Data: 213.174.139.72,10.0.0.11 -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a50d8d9e-c84b-476f-a139-1b1d8940ff5e}\NameServer (Trojan.DNSChanger) -> Data: 213.174.139.72,10.0.0.11 -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{d8932e52-6a6f-11db-b6ab-806e6f6e6963}\DhcpNameServer (Trojan.DNSChanger) -> Data: 213.174.139.72 10.0.0.11 -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{d8932e52-6a6f-11db-b6ab-806e6f6e6963}\NameServer (Trojan.DNSChanger) -> Data: 213.174.139.72,10.0.0.11 -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{f68d849d-8728-4359-8481-4511b849760e}\NameServer (Trojan.DNSChanger) -> Data: 213.174.139.72,10.0.0.11 -> Quarantined and deleted successfully. Mapper infisert: C:\Program Files\websrvx (Trojan.Downloader) -> Quarantined and deleted successfully. C:\Windows\System32\sysloc (Trojan.BHO) -> Quarantined and deleted successfully. Filer infisert C:\Program Files\Common Files\InternetAntivirusPro.exe (Rogue.IEAntiVirus) -> Quarantined and deleted successfully. C:\Windows\9g2234wesdf3dfgjf23 (Worm.KoobFace) -> Quarantined and deleted successfully. C:\Windows\sonce122688.dat (Worm.KoobFace) -> Quarantined and deleted successfully. C:\Windows\sonce123198.dat (Worm.KoobFace) -> Quarantined and deleted successfully.