Pastebin launched a little side project called VERYVIRAL.com, check it out ;-) Want more features on Pastebin? Sign Up, it's FREE!
Guest

Untitled

By: a guest on Oct 30th, 2011  |  syntax: None  |  size: 4.04 KB  |  views: 483  |  expires: Never
download  |  raw  |  embed  |  report abuse  |  print
Text below is selected. Please press Ctrl+C to copy to your clipboard. (⌘+C on Mac)
  1. Malwarebytes' Anti-Malware 1.51.2.1300
  2. www.malwarebytes.org
  3.  
  4. Database version: 8046
  5.  
  6. Windows 6.1.7601 Service Pack 1
  7. Internet Explorer 9.0.8112.16421
  8.  
  9. 10/30/2011 9:07:04 AM
  10. mbam-log-2011-10-30 (09-07-04).txt
  11.  
  12. Scan type: Full scan (C:\|D:\|M:\|)
  13. Objects scanned: 911198
  14. Time elapsed: 2 hour(s), 18 minute(s), 51 second(s)
  15.  
  16. Memory Processes Infected: 0
  17. Memory Modules Infected: 0
  18. Registry Keys Infected: 3
  19. Registry Values Infected: 1
  20. Registry Data Items Infected: 1
  21. Folders Infected: 1
  22. Files Infected: 21
  23.  
  24. Memory Processes Infected:
  25. (No malicious items detected)
  26.  
  27. Memory Modules Infected:
  28. (No malicious items detected)
  29.  
  30. Registry Keys Infected:
  31. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IEXPLORE.EXE (Trojan.Dropper) -> Quarantined and deleted successfully.
  32. HKEY_CLASSES_ROOT\CLSID\{I855C222-U023-8E46-PQ25-H0SDH8QOY56X} (Backdoor.Agent) -> Quarantined and deleted successfully.
  33. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{I855C222-U023-8E46-PQ25-H0SDH8QOY56X} (Backdoor.Agent) -> Quarantined and deleted successfully.
  34.  
  35. Registry Values Infected:
  36. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies (Backdoor.Agent) -> Value: Policies -> Quarantined and deleted successfully.
  37.  
  38. Registry Data Items Infected:
  39. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.StartPage) -> Bad: (http://startsear.ch/?aff=3) Good: (http://www.google.com) -> Quarantined and deleted successfully.
  40.  
  41. Folders Infected:
  42. c:\programdata\192837465 (Rogue.Multiple) -> Quarantined and deleted successfully.
  43.  
  44. Files Infected:
  45. c:\poker\pbo\iexplore.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
  46. c:\program files (x86)\IObit\game booster\iobit.game.booster.v2.3.0.113-patch.exe (PUP.Hacktool.Patcher) -> Not selected for removal.
  47. c:\program files (x86)\MegaDev\md-trainers\MT-X\mt-experience.exe (Trojan.AVKiller.Gen) -> Quarantined and deleted successfully.
  48. c:\Users\Rick\AppData\Local\Temp\1D7A.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
  49. c:\Users\Rick\AppData\Local\Temp\AD2B.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
  50. c:\Users\Rick\AppData\Local\Temp\CA7B.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
  51. c:\Users\Rick\Desktop\exclusions\black cipher.exe (Trojan.Agent) -> Not selected for removal.
  52. c:\Users\Rick\Desktop\exclusions\cnc generals zero hour +3 trainer\c&c generals zero hour +3 trainer.exe (HackTool.GamesCheat.Gen) -> Not selected for removal.
  53. c:\Users\Rick\Desktop\exclusions\company of heroes - tales of valor v2.601 + 8 trainer fix\company of heroes - tales of valor v2.601 + 8 trainer fix.exe (HackTool.GamesCheat) -> Not selected for removal.
  54. c:\Users\Rick\Desktop\exclusions\mtw2 trainer\chmed2trn.exe (Malware.Packer.as) -> Not selected for removal.
  55. c:\Users\Rick\Desktop\exclusions\mtw2 traineri 2\chmed2trn.exe (Malware.Packer.as) -> Not selected for removal.
  56. c:\Users\Rick\Desktop\exclusions\rtw trainer\pztrain.exe (Malware.Gen) -> Not selected for removal.
  57. c:\Users\Rick\Desktop\exclusions\skrillexmpgh\Skrillex.dll (Malware.Packer.T) -> Not selected for removal.
  58. c:\Users\Rick\Desktop\exclusions\Trainer\mw2 sp trainer v3 by koen.exe (HackTool.GamesCheat.Gen) -> Not selected for removal.
  59. c:\Users\Rick\Desktop\exclusions\zero hour v1.4 english plus3 trainer\c&c zero hour +3 trainer english v 1.4.exe (PUP.HackTool.HotKeysHook) -> Not selected for removal.
  60. c:\Users\Rick\Desktop\steam cracking\Tools\proxy finder enterprise v2.5\proxyfinderenterprise.exe (Worm.P2P) -> Not selected for removal.
  61. c:\Windows\System32\h4x0r.dll (HackTool.GamesCheat) -> Quarantined and deleted successfully.
  62. c:\Windows\SysWOW64\h4x0r.dll (HackTool.GamesCheat) -> Quarantined and deleted successfully.
  63. c:\Windows\System32\h@tkeysh@@k.dll (Trojan.Agent) -> Quarantined and deleted successfully.
  64. c:\Windows\SysWOW64\h@tkeysh@@k.dll (Trojan.Agent) -> Quarantined and deleted successfully.
  65. c:\Windows\install\winupdate.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
  66.  
  67.