btw, co s toho prec ?
fuuj
asi vsetko co ?
pomylil som si pocitace... teraz riesime dalsi ktory ma smejdov
Malwarebytes Anti-Malware (Trial) 1.75.0.1300
http://www.malwarebytes.org
Database version: v2013.12.20.05
Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.6001.18702
Anubrother :: ANUBROTH [administrator]
Protection: Disabled
20. 12. 2013 18:35:26
MBAM-log-2013-12-20 (19-26-57).txt
Scan type: Full scan (C:\|D:\|E:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 299414
Time elapsed: 48 minute(s), 2 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 3
HKCR\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1} (PUP.Optional.Conduit) -> No action taken.
HKCU\Software\Conduit\FF (PUP.Optional.Conduit.A) -> No action taken.
HKCU\SOFTWARE\XTREMERAT (Malware.Trace) -> No action taken.
Registry Values Detected: 2
HKCU\Software\Microsoft\Windows\CurrentVersion\Run| (Trojan.Agent) -> Data: C:\Documents and Settings\Anubrother\Application Data\iexplorer.exe -> No action taken.
HKCU\Software\XtremeRAT|Mutex (Malware.Trace) -> Data: AjhwWuUp4 -> No action taken.
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 12
C:\Documents and Settings\Anubrother\Application Data\OpenCandy (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\5A0580050D394FC1AA14D40146EFC715 (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\772C5743B4B64252B19773E74DD07C1B (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\7EA67622EA2E43AC8E9B28E961AA7379 (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\OpenCandy_772C5743B4B64252B19773E74DD07C1B (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\OpenCandy_7EA67622EA2E43AC8E9B28E961AA7379 (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468 (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075 (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\xpi\defaults (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\xpi\defaults\preferences (PUP.Optional.Conduit.A) -> No action taken.
Files Detected: 36
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\OpenCandy_7EA67622EA2E43AC8E9B28E961AA7379\LatestDLMgr.exe (PUP.Optional.OpenCandy.A) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\OpenCandy_7EA67622EA2E43AC8E9B28E961AA7379\OpenCandyU1Dlm.dll (PUP.Optional.OpenCandy.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\9wFcXfcE.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\H20ythHR.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\iroePDlo.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\M7Hq_LkF.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\PowerPack-VoiceChanger-257-1.0.0.1040.exe (Adware.Linkular) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\pY_Dfxp3.exe.part (PUP.Optional.Topmedia) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\QfcX14bu.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\r478l8Nh.exe.part (PUP.Optional.Bandoo) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\Ul4Fw5we.exe.part (PUP.Optional.Installex) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\_pdbKHRb.exe.part (PUP.Optional.Installrex) -> No action taken.
C:\Program Files\Conduit\Community Alerts\Alert.dll (PUP.Optional.Conduit) -> No action taken.
C:\System Volume Information\_restore{4482FDAC-FF46-4B14-92BD-7CE30D891B0F}\RP198\A0071181.exe (PUP.Optional.OpenCandy.A) -> No action taken.
D:\Archív\Adobe\cs2\keygen.exe (Trojan.Agent.CK) -> No action taken.
D:\Archív\BurnCD\Nero\Nero6x_KEYGEN.rar (Backdoor.Sdbot) -> No action taken.
D:\Archív\Instant Chats\ventrilo-2.1.4-Windows-i386.exe (Trojan.Dropper) -> No action taken.
D:\System Volume Information\_restore{4482FDAC-FF46-4B14-92BD-7CE30D891B0F}\RP194\A0070582.exe (PUP.Optional.OpenCandy) -> No action taken.
D:\System Volume Information\_restore{4482FDAC-FF46-4B14-92BD-7CE30D891B0F}\RP199\A0071232.exe (PUP.Optional.OpenCandy) -> No action taken.
E:\System Volume Information\_restore{4482FDAC-FF46-4B14-92BD-7CE30D891B0F}\RP201\A0072582.exe (Spyware.OnlineGames) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\5A0580050D394FC1AA14D40146EFC715\Trial-14.0.1000.88_en-US_1004739_ROW-EN.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\772C5743B4B64252B19773E74DD07C1B\TuneUpUtilities2013_2200319_en-US.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\7EA67622EA2E43AC8E9B28E961AA7379\3596.ico (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Application Data\OpenCandy\7EA67622EA2E43AC8E9B28E961AA7379\TuneUpUtilities2013_2200319_en-US.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\conduitStatistics.csf (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\CT3220468.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\CT3220468.xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\initData.json (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\manifest.json (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\version.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3220468\xpi\install.rdf (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\conduit.xml (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\CT3289075.xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\version.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\xpi\install.rdf (PUP.Optional.Conduit.A) -> No action taken.
C:\Documents and Settings\Anubrother\Local Settings\Temp\CT3289075\xpi\defaults\preferences\defaults.js (PUP.Optional.Conduit.A) -> No action taken.
(end)