Malwarebytes' Anti-Malware 1.33 Database versie: 1675 Windows 5.1.2600 Service Pack 3 21-1-2009 21:47:33 mbam-log-2009-01-21 (21-47-33).txt Scan type: Snelle Scan Objecten gescand: 78515 Verstreken tijd: 8 minute(s), 37 second(s) Geheugenprocessen geïnfecteerd: 0 Geheugenmodulen geïnfecteerd: 2 Registersleutels geïnfecteerd: 10 Registerwaarden geïnfecteerd: 1 Registerdata bestanden geïnfecteerd: 0 Mappen geïnfecteerd: 2 Bestanden geïnfecteerd: 14 Geheugenprocessen geïnfecteerd: (Geen kwaadaardige items gevonden) Geheugenmodulen geïnfecteerd: C:\WINDOWS\system32\ykjqdgcp.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\fhkoex.dll (Trojan.Vundo) -> Delete on reboot. Registersleutels geïnfecteerd: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a6c54318-5ac7-477d-b0a7-49af5189300c} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\videosoft (Trojan.DNSChanger) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\videosoft (Trojan.DNSChanger) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\videosoft (Trojan.DNSChanger) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully. Registerwaarden geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{a6c54318-5ac7-477d-b0a7-49af5189300c} (Trojan.Vundo) -> Quarantined and deleted successfully. Registerdata bestanden geïnfecteerd: (Geen kwaadaardige items gevonden) Mappen geïnfecteerd: C:\resycled (Trojan.DNSChanger) -> Quarantined and deleted successfully. C:\Program Files\videosoft (Trojan.DNSChanger) -> Quarantined and deleted successfully. Bestanden geïnfecteerd: C:\WINDOWS\system32\ykjqdgcp.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\pcgdqjky.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\fhkoex.dll (Trojan.Vundo) -> Delete on reboot. C:\WINDOWS\system32\msqpdxjdpbivrt.dll (Trojan.TDSS) -> Delete on reboot. C:\WINDOWS\system32\nkmwobgs.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Documents and Settings\fret en co\Local Settings\Temporary Internet Files\Content.IE5\4PMJSD67\upd105320[1] (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Documents and Settings\fret en co\Local Settings\Temporary Internet Files\Content.IE5\OFI68MEU\CA9WQ117 (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Documents and Settings\fret en co\Local Settings\Temporary Internet Files\Content.IE5\QSC065CO\index[1] (Trojan.Vundo) -> Quarantined and deleted successfully. C:\resycled\boot.com (Trojan.DNSChanger) -> Quarantined and deleted successfully. C:\Program Files\videosoft\Uninstall.exe (Trojan.DNSChanger) -> Quarantined and deleted successfully. C:\WINDOWS\system32\drivers\msqpdxrpxytlme.sys (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\drivers\msqpdxstjlkmpq.sys (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\temp\tempo-C53.tmp (Trojan.DNSChanger) -> Quarantined and deleted successfully. C:\WINDOWS\temp\tempo-CEF.tmp (Trojan.DNSChanger) -> Quarantined and deleted successfully.