Malwarebytes' Anti-Malware 1.11 Database versie: 599 Scan type: Snelle Scan Objecten gescand: 31878 Verstreken tijd: 1 minute(s), 44 second(s) Geheugenprocessen geïnfecteerd: 0 Geheugenmodulen geïnfecteerd: 2 Registersleutels geïnfecteerd: 15 Registerwaarden geïnfecteerd: 1 Registerdata bestanden geïnfecteerd: 1 Mappen geïnfecteerd: 3 Bestanden geïnfecteerd: 13 Geheugenprocessen geïnfecteerd: (Geen kwaadaardige items gevonden) Geheugenmodulen geïnfecteerd: D:\WINDOWS\system32\ddcArOhH.dll (Trojan.Vundo) -> Unloaded module successfully. D:\WINDOWS\system32\nygfnvus.dll (Trojan.Vundo) -> Unloaded module successfully. Registersleutels geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ba8cc9bc-015a-497d-b267-ea8c272d10f0} (Trojan.Vundo) -> Delete on reboot. HKEY_CLASSES_ROOT\CLSID\{ba8cc9bc-015a-497d-b267-ea8c272d10f0} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\AdwareAlert (Rogue.AdwareAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\jkwslist (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\aldd (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\affltid (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affltid (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Juan (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully. Registerwaarden geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\54666259 (Trojan.Agent) -> Quarantined and deleted successfully. Registerdata bestanden geïnfecteerd: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: d:\windows\system32\ddcarohh -> Quarantined and deleted successfully. Mappen geïnfecteerd: D:\Documents and Settings\Joost\Application Data\AdwareAlert (Rogue.AdwareAlert) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Application Data\AdwareAlert\Log (Rogue.AdwareAlert) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Application Data\AdwareAlert\Settings (Rogue.AdwareAlert) -> Quarantined and deleted successfully. Bestanden geïnfecteerd: D:\WINDOWS\system32\bfgpmlyd.dll (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\dylmpgfb.ini (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\bsjeggsi.dll (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\isggejsb.ini (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\ddcArOhH.dll (Trojan.Vundo) -> Delete on reboot. D:\WINDOWS\system32\HhOrAcdd.ini (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\HhOrAcdd.ini2 (Trojan.Vundo) -> Quarantined and deleted successfully. D:\WINDOWS\system32\nygfnvus.dll (Trojan.Vundo) -> Delete on reboot. D:\WINDOWS\system32\suvnfgyn.ini (Trojan.Vundo) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Local Settings\Temp\~DF6460.tmp (Malware.trace) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Application Data\AdwareAlert\rs.dat (Rogue.AdwareAlert) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Application Data\AdwareAlert\Log\2008 Apr 15 - 01_00_49 AM_203.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully. D:\Documents and Settings\Joost\Application Data\AdwareAlert\Settings\ScanResults.pie (Rogue.AdwareAlert) -> Quarantined and deleted successfully.