Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Wersja bazy: 6957 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2011-06-27 10:04:52 mbam-log-2011-06-27 (10-04-52).txt Typ skanowania: Szybkie skanowanie Przeskanowano obiektów: 167674 Upłynęło: 2 minut(y), 14 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 1 Zainfekowanych kluczy rejestru: 4 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 3 Zainfekowanych folderów: 0 Zainfekowanych plików: 11 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: c:\WINDOWS\system32\antiwpa.dll (PUP.Wpakill) -> Not selected for removal. Zainfekowanych kluczy rejestru: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Antiwpa (PUP.Wpakill) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\W1WIWQ1NPG (Trojan.FakeAlert.SA) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\YDZ1QVAGOJ (Trojan.FakeAlert.SA) -> Quarantined and deleted successfully. Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Zainfekowanych folderów: (Nie znaleziono zagrożeń) Zainfekowanych plików: c:\WINDOWS\system32\antiwpa.dll (PUP.Wpakill) -> Not selected for removal. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (1).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (2).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (3).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (4).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (5).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231 (6).exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\moje dokumenty\downloads\pack_windows6i_231.exe (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\dane aplikacji\microsoft\internet explorer\quick launch\system smart security.lnk (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\menu start\Programy\system smart security.lnk (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully. c:\documents and settings\Rodzice\menu start\system smart security.lnk (Rogue.SystemSmartSecurity) -> Quarantined and deleted successfully.