Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 21.02.2015
Scan Time: 11:44:00
Logfile: лог.txt
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.02.21.02
Rootkit Database: v2015.02.20.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows XP Service Pack 3
CPU: x86
File System: NTFS
User: ????????????N?N?N??°N???N?
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 442948
Time Elapsed: 43 min, 34 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 63
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\funmoods.funmoodsHlpr.1, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\funmoods.funmoodsHlpr, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439}, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\escort.escortIEPane.1, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\escort.escortIEPane, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Funmoods, HKLM\SOFTWARE\CLASSES\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7}\INPROCSERVER32, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\CLSID\{2DA0C6B8-8A27-4CBC-AF49-F8C0FD63D954}, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\TYPELIB\{4ECB0173-D952-42C3-802A-E3B04E5AD127}, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\INTERFACE\{CAFDA1CA-DD5F-41DC-BE5D-9E06E01E510C}, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\LinkPlacing.LPBHOImpl.1, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\LinkPlacing.LPBHOImpl, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{2DA0C6B8-8A27-4CBC-AF49-F8C0FD63D954}, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
Adware.LinkPlacing, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{2DA0C6B8-8A27-4CBC-AF49-F8C0FD63D954}, Quarantined, [d83edc457f0b2214bd36a88215ee20e0],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\CLSID\{75A4D144-506D-4BE5-81DB-EC7DA1E7F840}, Quarantined, [49cdb66b83078fa7b289152d38cbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}, Quarantined, [49cdb66b83078fa7b289152d38cbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\esrv.funmoodsESrvc.1, Quarantined, [49cdb66b83078fa7b289152d38cbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\esrv.funmoodsESrvc, Quarantined, [49cdb66b83078fa7b289152d38cbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Quarantined, [e13537ea800a53e31923f34fa3603bc5],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\funmoods.dskBnd.1, Quarantined, [e13537ea800a53e31923f34fa3603bc5],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\funmoods.dskBnd, Quarantined, [e13537ea800a53e31923f34fa3603bc5],
PUP.Optional.Funmoods.A, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Quarantined, [e13537ea800a53e31923f34fa3603bc5],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13}, Quarantined, [68ae9889eb9f1e18a09d45fd2bd8eb15],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\funmoodsApp.appCore.1, Quarantined, [68ae9889eb9f1e18a09d45fd2bd8eb15],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\funmoodsApp.appCore, Quarantined, [68ae9889eb9f1e18a09d45fd2bd8eb15],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\CLSID\{B2150688-1AA5-4698-90BE-C3CBECBB5786}, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\TYPELIB\{067EFEAA-D591-4BB1-8981-6C759B6102AB}, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\INTERFACE\{0F481D7A-5C11-4A2B-9FFB-36A5BC7CAA2B}, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\JS_Hijack.BHOImpl.1, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\JS_Hijack.BHOImpl, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{B2150688-1AA5-4698-90BE-C3CBECBB5786}, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
Adware.LinkPlacing, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{B2150688-1AA5-4698-90BE-C3CBECBB5786}, Quarantined, [a5716eb38cfec175fafaf73346bde11f],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9}, Quarantined, [e92dcd54abdfa78fc87663df48bbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\f, Quarantined, [e92dcd54abdfa78fc87663df48bbfe02],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0D80F1C5-D17B-4177-AC68-955F3EF9F191}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{23C70BCA-6E23-4A65-AD2E-1389062074F1}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{295CACB4-51F5-46FD-914E-C72BAAE1B672}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C0585B2F-74D7-4734-88DE-6C150C5D4036}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{EF0588D6-1621-4A75-B8BE-F4BC34794136}, Quarantined, [eb2b2100cfbbb08634a3c05d60a3e31d],
PUP.Optional.FaceMoods.A, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0D7562AE-8EF6-416d-A838-AB665251703A}, Quarantined, [fa1ca67baedc72c4923a7897e81b3ec2],
PUP.Optional.FaceMoods.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0D7562AE-8EF6-416D-A838-AB665251703A}, Quarantined, [fa1ca67baedc72c4923a7897e81b3ec2],
PUP.Optional.BestToolbar.A, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}, Quarantined, [6fa7130e2466280e7e4b20eda06355ab],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C87FC351-A80D-43E9-9A86-CF1E29DC443A}, Quarantined, [be58cb56c1c98caa65d58ab824dfb848],
Backdoor.Bifrose, HKLM\SOFTWARE\System32, Quarantined, [70a649d8dab0de58ef31343f57ad6e92],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\APPID\JS_Hijack.DLL, Quarantined, [d83ebf628505300685e7ee5b788c916f],
Adware.LinkPlacing, HKLM\SOFTWARE\CLASSES\APPID\LinkPlacing.DLL, Quarantined, [1cfa37ea1f6bd066da975fead52f09f7],
PUP.Optional.FunMoods.A, HKLM\SOFTWARE\FUNMOODS\funmoods, Quarantined, [f91dd64b99f1ff370b64fad6de25fd03],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\fdloijijlkoblmigdofommgnheckmaki, Quarantined, [0a0c4ad790faab8bbf91bef5ed176c94],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FUNMOODS, Quarantined, [29ed25fcb2d8a78ff8576f44758f1ce4],
PUP.FunMoods, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Funmoods, Quarantined, [0c0a978a008a9b9b17edab3dfd06a060],
CrackTool.Agent, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\HISOFT\CrackDownloader, Quarantined, [c353021f02883ff77a33cf7fdb29817f],
Trojan.Agent.VBS, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Mic 1.51, Quarantined, [b85ebf627a10e353615c80da22e135cb],
Registry Values: 4
Trojan.MSIL.ED, HKU\S-1-5-21-606747145-2052111302-725345543-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|A25B69E4, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\A25B69E4\bin.exe, Quarantined, [58bef52cfe8c84b20584db4054aedc24]
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Funmoods Toolbar, Quarantined, [e13537ea800a53e31923f34fa3603bc5]
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}, Quarantined, [8d895cc52862b4822d0f9fa3e91aae52],
PUP.Optional.Funmoods.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FUNMOODS|UninstallString, "C:\Program Files\Funmoods\funmoods\1.5.11.16\uninstall.exe", Quarantined, [29ed25fcb2d8a78ff8576f44758f1ce4]
Registry Data: 3
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|AntiVirusDisableNotify, 1, Good: (0), Bad: (1),Replaced,[e72ff22f305a310515f119aba95c43bd]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|FirewallDisableNotify, 1, Good: (0), Bad: (1),Replaced,[5fb7e43d43475dd9798ec8fc58ad619f]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|UpdatesDisableNotify, 1, Good: (0), Bad: (1),Replaced,[779f948d0d7d092d26e22b99947130d0]
Folders: 14
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Funmoods\UpdateProc, Quarantined, [b462928fc2c8fb3b5d74e001fe051ce4],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods\funmoods, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\bh, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic, Quarantined, [b85ebf627a10e353615c80da22e135cb],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected], Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Funmoods\Funmoods, Quarantined, [6aac2ff2503ae551862897cb946ff60a],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Local Settings\Temp\mt_ffx\Funmoods, Quarantined, [1ff769b8f49679bd2b84471bae553ec2],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Local Settings\Temp\mt_ffx\Funmoods\funmoods, Quarantined, [1ff769b8f49679bd2b84471bae553ec2],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Local Settings\Temp\mt_ffx\Funmoods\funmoods\1.5.11.16, Quarantined, [1ff769b8f49679bd2b84471bae553ec2],
Files: 63
Trojan.MSIL.ED, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\A25B69E4\bin.exe, Quarantined, [58bef52cfe8c84b20584db4054aedc24],
PUP.Funmoods, C:\Program Files\Funmoods\funmoods\1.5.11.16\bh\funmoods.dll, Quarantined, [ee28e938a5e56cca737ebcf6857b8b75],
PUP.Optional.Funmoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\funmoodssrv.exe, Quarantined, [49cdb66b83078fa7b289152d38cbfe02],
PUP.Optional.Funmoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\funmoodsTlbr.dll, Quarantined, [e13537ea800a53e31923f34fa3603bc5],
PUP.Optional.Funmoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\funmoodsApp.dll, Quarantined, [68ae9889eb9f1e18a09d45fd2bd8eb15],
PUP.Optional.Funmoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\funmoodsEng.dll, Quarantined, [e92dcd54abdfa78fc87663df48bbfe02],
Trojan.MSIL.ED, c:\documents and settings\?°??????????N?N?N??°N???N?\local settings\temp\91a.tmp, Quarantined, [ff17859cb8d270c68700879408fac63a],
Trojan.MSIL.ED, c:\documents and settings\?°??????????N?N?N??°N???N?\local settings\temp\91b.tmp, Quarantined, [69ad26fbb2d8f0463b4c30eba260e917],
Trojan.MSIL.ED, c:\documents and settings\?°??????????N?N?N??°N???N?\local settings\temp\906.tmp, Quarantined, [58be869b6a2044f27710c3587b8722de],
Trojan.MSIL.ED, c:\documents and settings\?°??????????N?N?N??°N???N?\local settings\temp\907.tmp, Quarantined, [e234df423753f93dadda66b522e0d22e],
PUP.Optional.NewTab.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\{5ebdca98-43b3-45bb-87e0-716029fb42ab}.xpi, Quarantined, [2de9f42ddbafe650e3f82972fa092dd3],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\searchplugins\funmoods.xml, Quarantined, [4dc962bf701a2e08635effd643c03dc3],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Funmoods\UpdateProc\config.dat, Quarantined, [b462928fc2c8fb3b5d74e001fe051ce4],
Hijack.Trace, C:\WINDOWS\system32\drivers\etc\h??sts, Quarantined, [dc3a4dd499f14aec56420dc11aea0af6],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\funmoodsOEM.crx, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
PUP.Optional.FunMoods.A, C:\Program Files\Funmoods\funmoods\1.5.11.16\uninstall.exe, Quarantined, [e43256cb4149340256f5eb6eb1528b75],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic\eblan_more.ka, Quarantined, [b85ebf627a10e353615c80da22e135cb],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic\naletai_na_maromoiku.bat, Quarantined, [b85ebf627a10e353615c80da22e135cb],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic\sdergivat.zp, Quarantined, [b85ebf627a10e353615c80da22e135cb],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic\Uninstall.exe, Quarantined, [b85ebf627a10e353615c80da22e135cb],
Trojan.Agent.VBS, C:\Program Files\Ro\Mic\Uninstall.ini, Quarantined, [b85ebf627a10e353615c80da22e135cb],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\chrome.manifest, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\install.rdf, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\funmoods.css, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\funmoods.xul, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\loader.xul, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\mtstart.js, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\tmplt.js, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\uninsthk.js, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\arwDwn.gif, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\help_16.gif, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\home.gif, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\logo.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\privecy_16_hot.gif, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\tellafriend.gif, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ae.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\bg.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ch.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\cn.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\cz.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\de.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\eg.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\en.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\es.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\fr.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\gr.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\he.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\il.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\it.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ja.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\jp.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\nl.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\no.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\pl.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\pt.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ro.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ru.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\sa.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\se.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\sv.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\tr.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\ua.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
PUP.Optional.FunMoods.A, C:\Documents and Settings\????????????N?N?N??°N???N?\Application Data\Mozilla\Firefox\Profiles\9gvmfxri.default\extensions\
[email protected]\content\imgs\flgs\us.png, Quarantined, [869077aa494158de2c6f82dd27dc0cf4],
Physical Sectors: 0
(No malicious items detected)
(end)
Скрыть