عندي هذا البرنامج .. وسويت فحص أمس ..
وحفظت التقرير ..
Malwarebytes Anti-Malware 1.75.0.1300
Database version: v2014.06.08.06
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17107
Yanoo :: YANOO-PC [administrator]
10/08/35 01:51:15 ص
mbam-log-2014-06-08 (01-51-15).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 497898
Time elapsed: 2 hour(s), 1 minute(s), 46 second(s)
Memory Processes Detected: 1
C:\Users\Yanoo\AppData\Local\Temp\UsageTemp.exe (Trojan.BitcoinMiner) -> 1660 -> Delete on reboot.
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 6
HKCR\CLSID\{F6C07882-D703-4DD5-905A-2C4E815A5066} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
HKCR\TypeLib\{9186135C-5067-4BD3-A886-B0A533744D5D} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
HKCR\Interface\{2BFF5187-8BA1-4469-91B9-2FC1B6DD7F8C} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F6C07882-D703-4DD5-905A-2C4E815A5066} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{F6C07882-D703-4DD5-905A-2C4E815A5066} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F6C07882-D703-4DD5-905A-2C4E815A5066} (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
Registry Values Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|UsageTemp (Trojan.BitcoinMiner) -> Data: "C:\Users\Yanoo\AppData\Local\Temp\UsageTemp.exe" -> Quarantined and deleted successfully.
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 11
C:\Users\Yanoo\AppData\Local\Temp\UsageTemp.exe (Trojan.BitcoinMiner) -> Delete on reboot.
C:\Users\Yanoo\AppData\Roaming\D394D188-BAC7-4e03-8FAF-389A4D7EC6F4\Shopping Suggestion.dll (PUP.Optional.ShoppingSuggestion.A) -> Quarantined and deleted successfully.
C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\amtlib.dll (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
C:\Program Files (x86)\AVS4YOU\AVSVideoConverter\avs4you.all.products.activator.2011.(v1.1)-mpt.exe (CrackTool.Agent) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Internet Download Manager\Patch.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Program Files (x86)\VLC Player GPU+\deinstaller.exe (Trojan.BitMiner) -> Quarantined and deleted successfully.
C:\Program Files (x86)\VLC Player GPU+\Installer.exe (Trojan.BitMiner) -> Quarantined and deleted successfully.
C:\temp\WCOMPUTE.EXE.5323bc43 (PUP.Optional.MutualPublic) -> Quarantined and deleted successfully.
C:\Users\Yanoo\Desktop\idm\Id.3 By MR ! HERO.rar (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
C:\Users\Yanoo\Desktop\idm\N.p.Id.3 By MR ! HERO.rar (PUP.Riskware.Patcher) -> Quarantined and deleted successfully.
C:\Users\Yanoo\Downloads\Torrents\Windows 7 Ultimate SP1 x86 Multi-Language Including Latest Updates Incl Activator[MafiaSSS][Team OS][HKRG]\Windows 7 Loader + Activator v2.0.6 Reloaded - DAZ [Team Rjaa].rar (Hacktool.Agent) -> Quarantined and deleted successfully.
(end)