هذي النتيجة
Malwarebytes' Anti-Malware 1.51.2.1300
Database version: 7622
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
23/02/12 02:08:45 م
mbam-log-2012-02-23 (14-08-45).txt
Scan type: Full scan (C:\|D:\|G:\|)
Objects scanned: 370428
Time elapsed: 50 minute(s), 54 second(s)
Memory Processes Infected: 1
Memory Modules Infected: 5
Registry Keys Infected: 74
Registry Values Infected: 2
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 40
Memory Processes Infected:
c:\program files\cieonetutilities_0e\bar\1.bin\0ebrmon.exe (Adware.MyWebSearch) -> 2984 -> Unloaded process successfully.
Memory Modules Infected:
c:\program files\cieonetutilities_0e\bar\1.bin\0ebrstub.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eauxstb.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eSrcAs.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0edlghk.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eieovr.dll (Adware.MyWebSearch) -> Delete on reboot.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CieoNetUtilities_0eService (Adware.MyWebSearch) -> Quarantined and
deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4cbfd6a0-f21b-4d52-bf56-c57a37625141} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4CBFD6A0-F21B-4D52-
BF56-C57A37625141} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4CBFD6A0-F21B-4D52-BF56-C57A37625141}
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4CBFD6A0-F21B-4D52-BF56-C57A37625141}
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c5818d18-4d28-4e42-bde6-1460f5d29628} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{2a7e74c8-7cc3-4656-903b-c16b5419e393} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{DF3A1434-9497-4938-8EED-C77C5493097B} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CLSID\{1b3cf572-0d15-4e95-bd03-c59a653b30cd} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{b4fc519f-3f98-450d-8a16-cc92916420f4} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{0E6A5ADB-B294-4B4F-81D3-3F7DF3FA7A2E} (Adware.MyWebSearch) -> Quarantined and
deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.SettingsPlugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.SettingsPlugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1B3CF572-0D15-4E95-BD03-C59A653B30CD}
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1B3CF572-0D15-4E95-BD03-
C59A653B30CD} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CieoNetUtilities_0ebar Uninstall
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8ca6701f-b8e8-43b9-b206-b2a9ee3216cf} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8CA6701F-B8E8-43B9-
B206-B2A9EE3216CF} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{8CA6701F-B8E8-43B9-B206-B2A9EE3216CF}
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8CA6701F-B8E8-43B9-B206-B2A9EE3216CF}
(Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d0aceac7-b205-4a51-804b-53ba679ab30b} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.MultipleButton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.MultipleButton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{227c2234-107f-41d3-8be5-7f9180e7dd6c} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{b4f710e6-e773-481b-bb85-3540a21db4d5} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{1C4CB152-4A39-454E-8355-DA786E41FED3} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CLSID\{4d9e6a3f-f05d-4f96-a826-87c38aec5599} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.DynamicBarButton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.DynamicBarButton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c0ccafac-ea0a-4e33-8a94-51a25453a40e} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{319c598d-febe-437e-9823-173b89169e63} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{3628CFBA-DCF1-41FF-A01D-C0CBEEA56107} (Adware.MyWebSearch) -> Quarantined and
deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.FeedManager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.FeedManager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0b08513a-0187-4746-93dc-dedae21b8ab2} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{a05732e8-9b6a-4d61-956d-707ad06779ca} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{3F149704-B93D-4E37-842F-AD2713A663A0} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.HTMLPanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.HTMLPanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0B08513A-0187-4746-93DC-
DEDAE21B8AB2} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6EC936E8-224E-41AB-8A5D-E5D62EB3B6F3} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.HTMLMenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.HTMLMenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6EC936E8-224E-41AB-8A5D-
E5D62EB3B6F3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{719a0e21-6b15-468e-b4d8-d453c3ee5aab} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{a48591ff-203f-4844-b6c7-4cd8b715a16b} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{1E037492-2389-47CB-9E6B-E09AE6A67682} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CLSID\{07e92310-4028-4869-abe8-3b94fd5e317f} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{b65d3fec-897d-4cc2-8214-9e867d6623f8} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{4C157D89-1118-44D3-86AB-B18F57EFAF18} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.XMLSessionPlugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.XMLSessionPlugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07E92310-4028-4869-ABE8-
3B94FD5E317F} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a5796feb-f4ab-43d2-8143-5dcff93dc172} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.Radio.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.Radio (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e2d12817-fbc7-41ee-8835-20e4de3ca5d9} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.ScriptButton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.ScriptButton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9be25e48-df8d-475a-9939-a6716ee36d79} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{0894c686-3d9f-470f-a808-28ddb348d559} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{5EB589AD-AA1F-4B04-B5F0-04B83C83061E} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.PseudoTransparentPlugin.1 (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.PseudoTransparentPlugin (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9BE25E48-DF8D-475A-9939-
A6716EE36D79} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{23bcc7f2-0782-4d1f-af18-75dc5e7ea3f1} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\TypeLib\{fc2ae03d-efef-467d-9809-eea341538c0b} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\Interface\{45B85E52-997A-44E4-BCA5-14F26C18DC5B} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.ThirdPartyInstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.ThirdPartyInstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{23BCC7F2-0782-4D1F-AF18-
75DC5E7EA3F1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{f51c5954-93cc-468c-bf62-d7ad2df5e6f9} (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.UrlAlertButton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CieoNetUtilities_0e.UrlAlertButton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\CieoNetUtilities_0e Browser Plugin Loader
(Adware.MyWebSearch) -> Value: CieoNetUtilities_0e Browser Plugin Loader -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\CieoNet Utilities Search Scope Monitor
(Adware.MyWebSearch) -> Value: CieoNet Utilities Search Scope Monitor -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\program files\cieonetutilities_0e\bar\1.bin\0ebrstub.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0ebrmon.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\Program Files\CieoNetUtilities_0e\bar\1.bin\0ebarsvc.exe (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eauxstb.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eSrcAs.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0edlghk.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eieovr.dll (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\cieonetutilities_0e\bar\1.bin\0eSrchMn.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ebar.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0emlbtn.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0edatact.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0edyn.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0efeedmg.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ehighin.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ehkstub.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ehtml.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ehtmlmu.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ehttpct.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eidle.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eimpipe.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0emedint.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0emsg.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ePlugin.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eradio.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eregfft.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0ereghk.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eregiet.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0escript.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eskin.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0eskplay.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0etpinst.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\0euabtn.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\NP0eStub.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\cieonetutilities_0e\bar\1.bin\T8RES.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\Users\User\AppData\LocalLow\cieonetutilities_0eei\Installr\Cache\008DAE0C.exe (Adware.MyWebSearch) -> Quarantined and deleted
successfully.
d:\أ-عمر\Software\corll draw\keygen.exe (Trojan.Dropper.PGen) -> Quarantined and deleted successfully.
d:\البحث2\البرنامج\visual basic\mariam\windowsapplication2\windowsapplication2\bin\Debug\windowsapplication2.exe (Trojan.Agent) ->
Quarantined and deleted successfully.
d:\البحث2\البرنامج\visual basic\mariam\windowsapplication2\windowsapplication2\obj\Debug\windowsapplication2.exe (Trojan.Agent) ->
Quarantined and deleted successfully.
d:\البحث2\البرنامج\visual basic\my trining\13-8\windowsapplication2\windowsapplication2\bin\Debug\windowsapplication2.exe
(Trojan.Agent) -> Quarantined and deleted successfully.
d:\البحث2\البرنامج\visual basic\my trining\13-8\windowsapplication2\windowsapplication2\obj\Debug\windowsapplication2.exe
(Trojan.Agent) -> Quarantined and deleted successfully.