Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Databaseversjon: 6053 Windows 6.1.7601 Service Pack 1 Internet Explorer 8.0.7601.17514 14.03.2011 17:19:04 mbam-log-2011-03-14 (17-19-04).txt Skanntype: Hurtigsøk Objekter skannet: 169074 Tid tilbakelagt: 3 minutt(er), 38 sekund(er) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 17 Registerverdier infisert: 0 Registerfiler infisert: 0 Mapper infisert: 0 Filer infisert 6 Minneprosesser infisert: (Ingen skadelige objekter funnet) Minnemoduler infisert: (Ingen skadelige objekter funnet) Registernøkler infisert: HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971} (Adware.Bandoo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5} (Adware.Bandoo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{4410C118-B23C-406C-9F52-9CDABD90A5EA} (Adware.Bandoo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{01222E21-6BD0-4EB3-94F1-967EB09CCED5} (Adware.Bandoo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bandoo Coordinator (Adware.Bandoo) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\KUGHGZXAKT (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\ (Hijack.Zones) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EF1BAF9-1988-42a1-82BC-5CB6197AED28} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{2EF1BAF9-1988-42a1-82BC-5CB6197AED28} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{F93F1322-4B46-4FF0-AB85-71203EAC72D6} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{54C41463-D3B0-4CDB-A85F-056F06508375} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\IEBHO.BHO.1 (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\IEBHO.BHO (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EF1BAF9-1988-42A1-82BC-5CB6197AED28} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EF1BAF9-1988-42A1-82BC-5CB6197AED28} (Trojan.BHO) -> Quarantined and deleted successfully. Registerverdier infisert: (Ingen skadelige objekter funnet) Registerfiler infisert: (Ingen skadelige objekter funnet) Mapper infisert: (Ingen skadelige objekter funnet) Filer infisert c:\Program Files (x86)\Bandoo\BndCore.exe (Adware.Bandoo) -> Quarantined and deleted successfully. c:\program files (x86)\Bandoo\Bandoo.exe (Adware.Bandoo) -> Quarantined and deleted successfully. c:\extracted\password.txt (Malware.Trace) -> Quarantined and deleted successfully. c:\Windows\Tasks\{22116563-108c-42c0-a7ce-60161b75e508}.job (Trojan.Downloader) -> Quarantined and deleted successfully. c:\Windows\Tasks\{bbaeaeaf-1275-40e2-bd6c-bc8f88bd114a}.job (Trojan.Downloader) -> Quarantined and deleted successfully. c:\program files (x86)\telenor norway\telenorhjelpen\BHO\IEBHO.dll (Trojan.BHO) -> Quarantined and deleted successfully.