I must restart my Computer now .
Don't wondering why i have Cheat engine
I have it for the Flash game : http://www.schuelervz.net/Gadgets/Canvas/101510/profileId/q9LU_f1jQiKUn131SUs8s5bDsuHkc0nytW5-Ap9BREM
Here is the Log :Malwarebytes' Anti-Malware 1.46
Datenbank Version: 4103
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
15.05.2010 12:28:01
mbam-log-2010-05-15 (12-28-01).txt
Art des Suchlaufs: Quick-Scan
Durchsuchte Objekte: 143797
Laufzeit: 27 Minute(n), 43 Sekunde(n)
Infizierte Speicherprozesse: 1
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 10
Infizierte Registrierungswerte: 19
Infizierte Dateiobjekte der Registrierung: 4
Infizierte Verzeichnisse: 29
Infizierte Dateien: 291
Infizierte Speicherprozesse:
C:\WINDOWS\system32\winhost.exe (Trojan.Agent) -> Unloaded process successfully.
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0djy06x7-r48m-0ch3-6575-nb785g0mvuy3} (Generic.Bot.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0mmpa7d4-fmg2-mxm4-81nc-qg7h7a287nq0} (Generic.Bot.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{b3k0o322-v13l-k3ei-307p-fjk0ri4q4gae} (Generic.Bot.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{dqpl3h5i-16nr-80j5-mg3d-4eglyv8yjrnp} (Generic.Bot.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{q8xsp2k5-1el4-q2an-1q82-etvrqefi0f3l} (Generic.Bot.H) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Cheat Engine (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Refog Software (Refog.Keylogger) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ntndis (Rootkit.Agent) -> Quarantined and deleted successfully.
Infizierte Registrierungswerte:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\windows task runner (Worm.P2P) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\windows task runner (Worm.P2P) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\winlogon (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\windows firewall (Spyware.Passwords) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\shell (Worm.AutoRun) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\windows firewall (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\windows firewall (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\aarc (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\policies (Backdoor.Bot) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\policies (Backdoor.Bot) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\microsoft host (Trojan.Agent) -> Delete on reboot.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\microsoft windows hosting service login (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\uid (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\taskman (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\firewall administrating (Backdoor.IRCBot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\firewall administrating (Backdoor.IRCBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run\firewall administrating (Backdoor.IRCBot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\microsoft windows hosting service login (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\microsoft windows hosting service login (Backdoor.Bot) -> Quarantined and deleted successfully.
Infizierte Dateiobjekte der Registrierung:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Rootkit.Agent) -> Data: c:\windows\system32\drivers\ntndis.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Rootkit.Agent) -> Data: system32\drivers\ntndis.exe -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (explorer.exe,C:\RECYCLER\S-1-5-21-7662903068-7285210882-692705969-3770\rundll32.exe) Good: (Explorer.exe) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (Explorer.exe C:\WINDOWS\system32\drivers\ntndis.exe) Good: (Explorer.exe) -> Quarantined and deleted successfully.
Infizierte Verzeichnisse:
C:\Dokumente und Einstellungen\All Users.WINDOWS\Anwendungsdaten\MPK (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Dokumente und Einstellungen\All Users.WINDOWS\Anwendungsdaten\MPK\1 (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Dokumente und Einstellungen\All Users.WINDOWS\Anwendungsdaten\MPK\2 (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Dokumente und Einstellungen\All Users.WINDOWS\Anwendungsdaten\MPK\CPDA (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Dokumente und Einstellungen\All Users.WINDOWS\Anwendungsdaten\MPK\CPDM (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Programme\Bargain Buddy (Adware.Bargain.Buddy) -> Quarantined and deleted successfully.
C:\Programme\Bargain Buddy\bin (Adware.Bargain.Buddy) -> Quarantined and deleted successfully.
C:\Programme\Bargain Buddy\bin2 (Adware.Bargain.Buddy) -> Quarantined and deleted successfully.
C:\Programme\Save (Adware.WhenU) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\kazaabackupfiles (Worm.Archive) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lowsec (Stolen.data) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK\Help (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK\Help\English (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK\Help\German (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK\Help\Spanish (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\MPK\Images (Refog.Keylogger) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\example scripts (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\include (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\DebugEventLog (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\DebugEventLog\src (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example packet editor (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example packet editor\inject (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example packet editor\inject\src (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example packet editor\src (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example-c (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Programme\Cheat Engine\Plugins\example-delphi (Backdoor.Bot) -> Quarantined and deleted successfully.