Malwarebytes Anti-Malware (Trial) 1.62.0.1300 www.malwarebytes.org Database version: v2012.08.23.06 Windows XP Service Pack 3 x86 NTFS Internet Explorer 7.0.5730.13 Administrator :: CHANGEME [administrator] Protection: Enabled 8/23/2012 11:17:44 AM mbam-log-2012-08-23 (12-58-39).txt Scan type: Full scan (C:\|D:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 421551 Time elapsed: 1 hour(s), 26 minute(s), 51 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (PUP.MyWebSearch) -> No action taken. Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 2 HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. Folders Detected: 0 (No malicious items detected) Files Detected: 10 C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0001807.exe (Trojan.Agent.CK) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002423.exe (Trojan.Downloader) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002426.exe (Trojan.Downloader) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002427.exe (Trojan.Downloader) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002428.exe (Trojan.Downloader) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002431.exe (PUP.RiskWareTool.CK) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002434.exe (Trojan.Dropper.PGen) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002435.exe (RiskWare.Tool.CK) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002757.exe (RiskWare.Tool.CK) -> No action taken. C:\System Volume Information\_restore{17DACDE1-A3E6-4A38-82CE-593991485D90}\RP12\A0002758.exe (RiskWare.Tool.CK) -> No action taken. (end)