Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Databaseversjon: 6905 Windows 6.1.7601 Service Pack 1 (Safe Mode) Internet Explorer 9.0.8112.16421 21.06.2011 00:03:51 mbam-log-2011-06-21 (00-03-51).txt Skanntype: Hurtigsøk Objekter skannet: 146847 Tid tilbakelagt: 2 minutt(er), 42 sekund(er) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 0 Registerverdier infisert: 1 Registerfiler infisert: 3 Mapper infisert: 0 Filer infisert 2 Minneprosesser infisert: (Ingen skadelige objekter funnet) Minnemoduler infisert: (Ingen skadelige objekter funnet) Registernøkler infisert: (Ingen skadelige objekter funnet) Registerverdier infisert: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\JtSWvJfiQpeA (Trojan.FakeHDD) -> Value: JtSWvJfiQpeA -> Quarantined and deleted successfully. Registerfiler infisert: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallPaper (PUM.Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (PUM.Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (PUM.Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Mapper infisert: (Ingen skadelige objekter funnet) Filer infisert c:\programdata\29089528.exe (Trojan.Agent.PF) -> Quarantined and deleted successfully. c:\programdata\jtswvjfiqpea.exe (Trojan.FakeHDD) -> Quarantined and deleted successfully.