Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Datenbank Version: 6469
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19048
29.04.2011 08:57:13
mbam-log-2011-04-29 (08-57-13).txt
Art des Suchlaufs: Quick-Scan
Durchsuchte Objekte: 149892
Laufzeit: 9 Minute(n), 5 Sekunde(n)
Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 9
Infizierte Registrierungswerte: 1
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 6
Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
HKEY_CLASSES_ROOT\CLSID\{33E387E7-1CD4-F313-1DC5-8D3E2E8BCDD4} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33E387E7-1CD4-F313-1DC5-8D3E2E8BCDD4} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{33E387 E7-1CD4-F313-1DC5-8D3E2E8BCDD4} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{33E387E7-1CD4-F313-1DC5-8D3E2E8BCDD4} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\nkketphqm eydgktqs (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0b3d059a-bd6d-bf08-c272-6af5eedc117c} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0B3D059A-BD6D-BF08-C272-6AF5EEDC117C} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{0B3D059A-BD6D-BF08-C272-6AF5EEDC117C} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\4030819c (Adware.Agent) -> Quarantined and deleted successfully.
Infizierte Registrierungswerte:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nokhajlnbksq (Adware.Adrotator) -> Value: nokhajlnbksq -> Quarantined and deleted successfully.
Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)
Infizierte Dateien:
c:\Windows\System32\lmyzxxzprmqlp.dll (Adware.Adrotator) -> Quarantined and deleted successfully.
c:\Windows\System32\627fcde5.dll (Adware.Agent) -> Quarantined and deleted successfully.
c:\Windows\System32\4030819c.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\Windows\System32\nkketphqmeydgktqs.exe (Adware.Creadnet) -> Quarantined and deleted successfully.
c:\Users\Vegas\AppData\Local\Temp\netsvc.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
c:\Users\Vegas\AppData\Local\Temp\aspnetstate.exe (Adware.Agent) -> Quarantined and deleted successfully.