Hi Chris! Below is the log. Thanks!Malwarebytes' Anti-Malware 1.41Database version: 3001Windows 6.0.6001 Service Pack 110/20/2009 7:49:25 PMmbam-log-2009-10-20 (19-49-25).txtScan type: Full Scan (C:\|D:\|E:\|F:\|)Objects scanned: 259826Time elapsed: 2 hour(s), 24 minute(s), 15 second(s)Memory Processes Infected: 1Memory Modules Infected: 0Registry Keys Infected: 9Registry Values Infected: 1Registry Data Items Infected: 0Folders Infected: 0Files Infected: 8Memory Processes Infected:C:\Windows\msa.exe (Trojan.Agent) -> Failed to unload process.Memory Modules Infected
No malicious items detected)Registry Keys Infected:HKEY_CLASSES_ROOT\xml.xml (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\xml.xml.1 (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\CLSID\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\Typelib\{9233c3c0-1472-4091-a505-5580a23bb4ac} (Trojan.FakeAlert) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\Microsoft\ Windows\CurrentVersion\Ext\Stats\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft \Windows\CurrentVersion\Explorer\Browser Helper Objects\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\NordBull (Malware.Trace) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\poprock (Trojan.Downloader) -> Quarantined and deleted successfully.Registry Values Infected:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Wind ows\CurrentVersion\Run\poprock (Trojan.Downloader) -> Quarantined and deleted successfully.Registry Data Items Infected
No malicious items detected)Folders Infected
No malicious items detected)Files Infected:C:\Users\tuesday\AppData\Local\Microsoft\ Windows\Temporary Internet Files\Content.IE5\4J6KB46P\A-Install-fc9e_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-137082_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-27ab1_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-83cd30b_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Windows\msa.exe (Trojan.Agent) -> Delete on reboot.C:\Windows\Tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job (Trojan.Downloader) -> Quarantined and deleted successfully.C:\Windows\Tasks\{BB65B0FB-5712-401b-B616-E69AC55E2757}.job (Trojan.Downloader) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Temp\b .exe (Trojan.Downloader) -> Delete on reboot.
No malicious items detected)Registry Keys Infected:HKEY_CLASSES_ROOT\xml.xml (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\xml.xml.1 (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\CLSID\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CLASSES_ROOT\Typelib\{9233c3c0-1472-4091-a505-5580a23bb4ac} (Trojan.FakeAlert) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\Microsoft\ Windows\CurrentVersion\Ext\Stats\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft \Windows\CurrentVersion\Explorer\Browser Helper Objects\{500bca15-57a7-4eaf-8143-8c619470b13d} (Worm.Allaple) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\NordBull (Malware.Trace) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.HKEY_CURRENT_USER\SOFTWARE\poprock (Trojan.Downloader) -> Quarantined and deleted successfully.Registry Values Infected:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Wind ows\CurrentVersion\Run\poprock (Trojan.Downloader) -> Quarantined and deleted successfully.Registry Data Items Infected
No malicious items detected)Folders Infected
No malicious items detected)Files Infected:C:\Users\tuesday\AppData\Local\Microsoft\ Windows\Temporary Internet Files\Content.IE5\4J6KB46P\A-Install-fc9e_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-137082_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-27ab1_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Micros oft\Windows\Temporary Internet Files\Content.IE5\92QXGPMZ\A-Install-83cd30b_2001-41[1].exe (Rogue.Installer) -> Quarantined and deleted successfully.C:\Windows\msa.exe (Trojan.Agent) -> Delete on reboot.C:\Windows\Tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job (Trojan.Downloader) -> Quarantined and deleted successfully.C:\Windows\Tasks\{BB65B0FB-5712-401b-B616-E69AC55E2757}.job (Trojan.Downloader) -> Quarantined and deleted successfully.C:\Users\tuesday\AppData\Local\Temp\b .exe (Trojan.Downloader) -> Delete on reboot.











From the Menu Bar in Notepad, click on Edit > Word Wrap. The check mark will disappear, indicating the feature is turned off.

















Linear Mode

