انتهى الفحص وهذه صوره
وهذا ملف التكست بعد حفظه
Malwarebytes' Anti-Malware 1.51.2.1300
Database version: 7622
Windows 5.1.2600 Service Pack 3, v.3244
Internet Explorer 7.0.5730.13
2012/06/20 02:28:18 م
mbam-log-2012-06-20 (14-28-13).txt
Scan type: Full scan (C:\|)
Objects scanned: 267028
Time elapsed: 46 minute(s), 17 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 3
Registry Data Items Infected: 3
Folders Infected: 0
Files Infected: 26
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Coffin Of Evil (Backdoor.Bifrose) -> No action taken.
HKEY_CURRENT_USER\Software\Topckit (PUP.Topckit) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\SPYNET (Backdoor.Trace) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Coffin Of Evil (Backdoor.Bifrose) -> No action taken.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xcrx (Backdoor.Bot) -> Value: xcrx -> No action taken.
HKEY_CURRENT_USER\Software\SpyNet\StartPersist (Backdoor.Trace) -> Value: StartPersist -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xdocx (Backdoor.Bot) -> Value: xdocx -> No action taken.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
c:\documents and settings\my pc\local settings\temp\1a1.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1a2.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1a5.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1a6.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1ac.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1ad.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1b8.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\1b9.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\18a.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\18b.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\190.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\191.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\199.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\19a.tmp (Trojan.Dropper) -> No action taken.
c:\documents and settings\my pc\local settings\temp\19d.tmp (Backdoor.Poison) -> No action taken.
c:\documents and settings\my pc\local settings\temp\19e.tmp (Trojan.Dropper) -> No action taken.
c:\program files\Arabic2\webedit\r.exe (Trojan.LVBP) -> No action taken.
c:\system volume information\_restore{58cd0956-245a-4705-9d99-a8125d359793}\RP12\A0001631.EXE (Dont.Steal.Our.Software) -> No action taken.
c:\system volume information\_restore{58cd0956-245a-4705-9d99-a8125d359793}\RP12\A0001632.exe (RiskWare.Tool.HCK) -> No action taken.
c:\system volume information\_restore{58cd0956-245a-4705-9d99-a8125d359793}\RP30\A0017655.exe (Trojan.Backdoor) -> No action taken.
c:\system volume information\_restore{58cd0956-245a-4705-9d99-a8125d359793}\RP30\A0017656.exe (Trojan.Backdoor) -> No action taken.
c:\documents and settings\MY PC\application data\logs.dat (Bifrose.Trace) -> No action taken.
c:\WINDOWS\system32\coffin of evil.exe (Backdoor.Bifrose) -> No action taken.
c:\WINDOWS\system32\plugin.dat (Malware.Trace) -> No action taken.
c:\documents and settings\MY PC\local settings\Temp\UuU.uUu (Malware.Trace) -> No action taken.
c:\documents and settings\MY PC\local settings\Temp\XxX.xXx (Malware.Trace) -> No action taken.