تفضل اخي
Malwarebytes Anti-Malware 1.75.0.1300
Database version: v2014.02.13.05
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16798
TWO :: ONE-PC2 [administrator]
13/04/35 04:37:08 م
mbam-log-2014-02-13 (16-37-08).txt
Scan type: Full scan (C:\|D:\|E:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 456014
Time elapsed: 1 hour(s), 57 minute(s), 16 second(s)
Memory Processes Detected: 1
C:\Users\TWO\AppData\Local\FilesFrog Update Checker\update_checker.exe (PUP.Optional.FilesFrog.A) -> 5092 -> Delete on reboot.
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 34
HKCR\CLSID\{16107275-E50A-83A3-3507-7AEAB8B06CF6} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16107275-E50A-83A3-3507-7AEAB8B06CF6} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{16107275-E50A-83A3-3507-7AEAB8B06CF6} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{16107275-E50A-83A3-3507-7AEAB8B06CF6} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{16107275-E50A-83A3-3507-7AEAB8B06CF6} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{877D2059-F2D2-B274-4648-EA70028248CF} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{877D2059-F2D2-B274-4648-EA70028248CF} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{877D2059-F2D2-B274-4648-EA70028248CF} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{877D2059-F2D2-B274-4648-EA70028248CF} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{877D2059-F2D2-B274-4648-EA70028248CF} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{FAFF7D08-FD6C-62F5-1F45-ACAC50AD94BA} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FAFF7D08-FD6C-62F5-1F45-ACAC50AD94BA} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{FAFF7D08-FD6C-62F5-1F45-ACAC50AD94BA} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{FAFF7D08-FD6C-62F5-1F45-ACAC50AD94BA} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FAFF7D08-FD6C-62F5-1F45-ACAC50AD94BA} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{AB9778AB-BAEF-49B9-96EE-D6E4BD0BCE68} (PUP.OPtional.LyricsAd) -> Quarantined and deleted successfully.
HKCR\TypeLib\{D1986455-FCFB-44CC-BE69-14A644133FC8} (PUP.OPtional.LyricsAd) -> Quarantined and deleted successfully.
HKCR\Interface\{AFC69CF2-C652-4B44-9F6B-A0DB666B4A98} (PUP.OPtional.LyricsAd) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AB9778AB-BAEF-49B9-96EE-D6E4BD0BCE68} (PUP.OPtional.LyricsAd) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AB9778AB-BAEF-49B9-96EE-D6E4BD0BCE68} (PUP.OPtional.LyricsAd) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} (PUP.Optional.OptimzerPro.A) -> Quarantined and deleted successfully.
HKCR\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1} (PUP.Optional.Conduit) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\
lrcspal@lyricspal.co (PUP.Optional.LyricsAd) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{01B91C29-337A-1FFD-7CFC-473451D2F861} (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
HKCU\Software\delta LTD (PUP.Optional.Delta.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\BI (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\SOMOTO\SDP (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
Registry Values Detected: 3
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SDP (PUP.Optional.FilesFrog.A) -> Data: C:\Users\TWO\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto -> Quarantined and deleted successfully.
HKCU\Software\BI|ui_path_filesfrog (PUP.Optional.FilesFrog.A) -> Data: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker -> Quarantined and deleted successfully.
HKCU\Software\Somoto\SDP|affid (PUP.Optional.Somoto.A) -> Data: network_smb_dardarkom -> Quarantined and deleted successfully.
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 16
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\464E1FF1E3D44C53A56FC6694118B1C2 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\59CE111B39F441788735CCBEE3B9CF54 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\5F6FEAA74D69457B8065A77EC3A1F854 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\65B76AC46987430D96BE5BC1FA340974 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\9662731350914BF48624149FBF9A6864 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\ADB7565733FD4AD0B5871E75B70D6E94 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\C47EEDB032DF4B02B17E91FD564D9AD1 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\FA4AA92F223E4FA9A53AD98CC8BE2CDD (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\OpenCandy_65B76AC46987430D96BE5BC1FA340974 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\OpenCandy_C47EEDB032DF4B02B17E91FD564D9AD1 (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\OpenCandy_FA4AA92F223E4FA9A53AD98CC8BE2CDD (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Delete on reboot.
C:\Users\TWO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal (PUP.Optional.LyricsPal.A) -> Quarantined and deleted successfully.
Files Detected: 57
C:\Users\TWO\AppData\Local\FilesFrog Update Checker\update_checker.exe (PUP.Optional.FilesFrog.A) -> Delete on reboot.
C:\ProgramData\SavoerrPRo\Wube7G_.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\ProgramData\AppptooU\N5Qfw.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\ProgramData\TableeVIewer\1VwlI.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\adobe.cs6.all.products.(x32.y.x64).exe (CrackTool.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\adobe.cs6.all.products.(x32.y.x64).exe (CrackTool.Agent) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Conduit\Community Alerts\Alert.dll (PUP.Optional.Conduit) -> Quarantined and deleted successfully.
C:\Program Files (x86)\FreeTime\FormatFactory\FFModules\Package\BaiDu\hao123inst-saudi-forf.exe (PUP.Optional.Hao123.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal\Uninstall.exe (PUP.Optional.LyricsAd) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProGuard.exe (PUP.Optional.OptimizerPro) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe (PUP.Optional.OptimizePro.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (PUP.Optional.OptimizerPro) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProSchedule.exe (PUP.Optional.OptimizerPro) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProSmartScan.exe (PUP.Optional.OptimizerPro) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Optimizer Pro\OptProStart.exe (PUP.Optional.OptimizerPro) -> Quarantined and deleted successfully.
C:\ProgramData\AppptooU\N5Qfw.exe (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\ProgramData\AppptooU\N5Qfw.x64.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\ProgramData\SavoerrPRo\Wube7G_.x64.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\ProgramData\TableeVIewer\1VwlI.x64.dll (PUP.Optional.MultiPlug.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Conduit\CT1561552\Hotspot_ShieldAutoUpdateHelper.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\FilesFrog Update Checker\uninstall.exe (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000 (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Google\Chrome\User Data\Default\File System\002\t\00\00000000 (PUP.Optional.OneClickDownloader.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KFL92GKA\FLVPlayerUpdate_downloader_by_FLVPlayerUpdate[1].exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Temp\FLVPlayerUpdate_downloader_by_FLVPlayerUpdate.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Local\Temp\PIPInstaller_PTV_.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\59CE111B39F441788735CCBEE3B9CF54\DeltaTB.exe (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\65B76AC46987430D96BE5BC1FA340974\frostwire-5.6.2.windows.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\9662731350914BF48624149FBF9A6864\LatestDLMgr.exe (PUP.Optional.OpenCandy.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\OpenCandy_FA4AA92F223E4FA9A53AD98CC8BE2CDD\LatestDLMgr.exe (PUP.Optional.OpenCandy.A) -> Quarantined and deleted successfully.
C:\Users\TWO\Desktop\البرامج\فوتو6\adobe.cs6.all.products.(x32.y.x64).rar (CrackTool.Agent) -> Quarantined and deleted successfully.
C:\Users\TWO\Desktop\البرامج\فوتو6\adobe.cs6.all.products.(x32.y.x64)\adobe.cs6.all.products.(x32.y.x64).exe (CrackTool.Agent) -> Quarantined and deleted successfully.
C:\Users\TWO\Downloads\mplayerc_20070918-oc-jd.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\Downloads\SumatraPDFSetup-8ZYkHSZ.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\TWO\Downloads\vlc-2.1.0-win64-aoc-jd.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\Downloads\VLCMediaPlayerSetup-cAf6jrX.exe (PUP.Optional.Somoto) -> Quarantined and deleted successfully.
C:\Users\TWO\Local Settings\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Quarantined and deleted successfully.
C:\Windows\Temp\Optimizer_Pro.exe (PUP.Optional.PCOptimizerPro) -> Quarantined and deleted successfully.
D:\BaiduDownloads\GOMPLAYER_2.2.53.5169.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro on the Web.lnk (PUP.Optional.OptimizerPro.A) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Help.lnk (PUP.Optional.OptimizerPro.A) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Uninstall Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\464E1FF1E3D44C53A56FC6694118B1C2\HSS-2.88-install-p76-335-conduit.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\5F6FEAA74D69457B8065A77EC3A1F854\Mobogenie_Setup_2.1.27_507.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\9662731350914BF48624149FBF9A6864\3204.ico (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\9662731350914BF48624149FBF9A6864\speedupmypcROW.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\ADB7565733FD4AD0B5871E75B70D6E94\TuneUpUtilities2013-2200319_en-US.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\C47EEDB032DF4B02B17E91FD564D9AD1\RegistryReviverSetup_AFF.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\FA4AA92F223E4FA9A53AD98CC8BE2CDD\3596.ico (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\OpenCandy\FA4AA92F223E4FA9A53AD98CC8BE2CDD\TuneUpUtilities2013-2200319_en-US.exe (PUP.Optional.OpenCandy) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Check for Updates.lnk (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Users\TWO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Uninstall.lnk (PUP.Optional.FilesFrog.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal\125.crx (PUP.Optional.LyricsPal.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal\125.dat (PUP.Optional.LyricsPal.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal\125.xpi (PUP.Optional.LyricsPal.A) -> Quarantined and deleted successfully.
C:\Program Files (x86)\LyricsPal\sqlite3.dll (PUP.Optional.LyricsPal.A) -> Quarantined and deleted successfully.
(end)