Malwarebytes' Anti-Malware 1.39 Database versie: 2421 Windows 5.1.2600 Service Pack 3 23-7-2009 15:12:07 mbam-log-2009-07-23 (15-12-07).txt Scan type: Snelle Scan Objecten gescand: 82351 Verstreken tijd: 2 minute(s), 45 second(s) Geheugenprocessen geïnfecteerd: 0 Geheugenmodulen geïnfecteerd: 0 Registersleutels geïnfecteerd: 5 Registerwaarden geïnfecteerd: 1 Registerdata bestanden geïnfecteerd: 1 Mappen geïnfecteerd: 0 Bestanden geïnfecteerd: 13 Geheugenprocessen geïnfecteerd: (Geen kwaadaardige items gevonden) Geheugenmodulen geïnfecteerd: (Geen kwaadaardige items gevonden) Registersleutels geïnfecteerd: HKEY_CLASSES_ROOT\xml.xml (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\xml.xml.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{500bca15-57a7-4eaf-8143-8c619470b13d} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\ColdWare (Malware.Trace) -> Quarantined and deleted successfully. Registerwaarden geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\taskman (Backdoor.Bot) -> Quarantined and deleted successfully. Registerdata bestanden geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.Userinit) -> Bad: (C:\WINDOWS\SYSTEM32\Userinit.exe,C:\DOCUME~1\smits\LOCALS~1\Temp\init.exe) Good: (Userinit.exe) -> Quarantined and deleted successfully. Mappen geïnfecteerd: (Geen kwaadaardige items gevonden) Bestanden geïnfecteerd: c:\mxminxt.exe (Trojan.Agent) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\6T1NAXX2\eaobp[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\6T1NAXX2\vfsgxkbpt[2].htm (Trojan.Downloader) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\6T1NAXX2\yvsfjx[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\HNPHI032\aasuper0[1].htm (Trojan.Dropper) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\HNPHI032\aasuper2[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\OC1NGG9Z\tzmna[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\RS7TNFT2\aasuper3[1].htm (Trojan.Agent) -> Quarantined and deleted successfully. c:\documents and settings\smits\local settings\temporary internet files\Content.IE5\RS7TNFT2\foyzdquv[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully. C:\WINDOWS\msa.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\Documents and Settings\smits\Local Settings\Temp\init.exe (Trojan.Agent) -> Delete on reboot. c:\WINDOWS\Tasks\{5B57CF47-0BFA-43c6-ACF9-3B3653DCADBA}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\Documents and Settings\smits\Local Settings\Temp\db.exe (Trojan.Downloader) -> Quarantined and deleted successfully.