Malwarebytes Anti-Malware (PRO) 1.75.0.1300 www.malwarebytes.org Database version: v2013.08.05.09 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 SuperUser :: SUPERUSE-8CC609 [administrator] Protection: Disabled 8/5/2013 10:07:53 PM mbam-log-2013-08-05 (22-07-53).txt Scan type: Full scan (C:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 284720 Time elapsed: 1 hour(s), 15 minute(s), 12 second(s) Memory Processes Detected: 1 C:\Program Files\IB Updater\ExtensionUpdaterService.exe (PUP.Optional.SweetPacks.A) -> 608 -> Delete on reboot. Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 2 HKLM\SYSTEM\CurrentControlSet\Services\IB Updater (PUP.Optional.SweetPacks.A) -> Quarantined and deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SETUP.EXE (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 6 C:\Documents and Settings\SuperUser\Application Data\Babylon (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504} (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Cache (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Cache (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. Files Detected: 16 C:\Program Files\IB Updater\ExtensionUpdaterService.exe (PUP.Optional.SweetPacks.A) -> Delete on reboot. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\SuperUser\My Documents\Downloads\Setup.exe (PUP.Optional.IBryte.A) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP598\A0045310.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP602\A0045705.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP602\A0045727.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP610\A0047755.exe (PUP.Optional.MyWebSearch) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP612\A0048024.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{598279C3-2B86-4133-B588-AB550E4DA5A1}\RP612\A0048035.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Documents and Settings\SuperUser\Application Data\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.dat (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.ico (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setup.dll (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico (PUP.Optional.Tarma.A) -> Quarantined and deleted successfully. (end)