Malwarebytes' Anti-Malware 1.40 Database versie: 2598 Windows 5.1.2600 Service Pack 3 11/08/2009 12:14:24 mbam-log-2009-08-11 (12-14-24).txt Scan type: Snelle Scan Objecten gescand: 98112 Verstreken tijd: 20 minute(s), 42 second(s) Geheugenprocessen geïnfecteerd: 0 Geheugenmodulen geïnfecteerd: 0 Registersleutels geïnfecteerd: 1 Registerwaarden geïnfecteerd: 1 Registerdata bestanden geïnfecteerd: 1 Mappen geïnfecteerd: 4 Bestanden geïnfecteerd: 13 Geheugenprocessen geïnfecteerd: (Geen kwaadaardige items gevonden) Geheugenmodulen geïnfecteerd: (Geen kwaadaardige items gevonden) Registersleutels geïnfecteerd: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{cf5c6a80-c938-478c-bc8b-8d7b00788154} (Rogue.Installer) -> Quarantined and deleted successfully. Registerwaarden geïnfecteerd: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Agent.exe (Trojan.Fraudtool) -> Quarantined and deleted successfully. Registerdata bestanden geïnfecteerd: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (C:\Program Files\PCenter\pc.exe) Good: (Explorer.exe) -> Quarantined and deleted successfully. Mappen geïnfecteerd: C:\Documents and Settings\erw\Application Data\PCenter (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\temp (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\keys (Rogue.PCenter) -> Quarantined and deleted successfully. Bestanden geïnfecteerd: C:\Documents and Settings\wi\Local Settings\Temp\~nsu.tmp\Au_.exe (Rogue.Installer) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\cg.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\mw.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\rd.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\sc.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\sm.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\dbases\sp.dat (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\temp\settings.ini (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\temp\spfilter (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\keys\cg.key (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\keys\rd.key (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\keys\sc.key (Rogue.PCenter) -> Quarantined and deleted successfully. C:\Documents and Settings\erw\Application Data\PCenter\keys\sp.key (Rogue.PCenter) -> Quarantined and deleted successfully.