Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Wersja bazy: 5363 Windows 6.0.6000 Internet Explorer 8.0.6001.18702 2011-02-21 14:07:04 mbam-log-2011-02-21 (14-07-04).txt Typ skanowania: Pełne skanowanie (C:\|D:\|F:\|) Przeskanowano obiektów: 300077 Upłynęło: 1 godzin(y), 5 minut(y), 41 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 18 Zainfekowanych wartości rejestru: 4 Zainfekowane informacje rejestru systemowego: 0 Zainfekowanych folderów: 3 Zainfekowanych plików: 14 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\ShoppingReport.RprtCtrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully. Zainfekowanych wartości rejestru: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully. Zainfekowane informacje rejestru systemowego: (Nie znaleziono zagrożeń) Zainfekowanych folderów: c:\program files\shoppingreport (Adware.ShopperReports) -> Quarantined and deleted successfully. c:\program files\shoppingreport\Bin (Adware.ShopperReports) -> Quarantined and deleted successfully. c:\program files\shoppingreport\Bin\2.5.0 (Adware.ShopperReports) -> Quarantined and deleted successfully. Zainfekowanych plików: c:\Windows\Temp\~os9558.tmp\rlls.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~os9558.tmp\rlls64.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~os9558.tmp\rlservice.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~os9558.tmp\rlvknlg.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~os9558.tmp\rlvknlg64.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlls.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlls64.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlph.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlservice.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlvknlg.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlvknlg64.exe (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlxf.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\Windows\Temp\~osDE1F.tmp\rlxg.dll (Adware.RelevantKnowledge) -> Quarantined and deleted successfully. c:\program files\shoppingreport\Uninst.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.