Just a heads up, at first windows didn't start successfully - it wouldn't even go to the user selection screen. However, it's probably just a deleted rootkit scheduled to run on boot.
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 07/02/2007 at 02:37 AM
Application Version : 3.9.1008
Core Rules Database Version : 3263
Trace Rules Database Version: 1274
Scan type : Complete Scan
Total Scan Time : 03:03:45
Memory items scanned : 666
Memory threats detected : 7
Registry items scanned : 7554
Registry threats detected : 189
File items scanned : 208204
File threats detected : 233
Unclassified.Unknown Origin/System
C:\WINDOWS\SYSTEM32\MLJGE.DLL
C:\WINDOWS\SYSTEM32\MLJGE.DLL
Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\mljge
C:\WINDOWS\SYSTEM32\DWDSREGT.EXE
C:\WINDOWS\Prefetch\DWDSREGT.EXE-0DC2E041.pf
Trojan.Downloader-Gen/HitItQuitIt
C:\WINDOWS\SYSTEM32\DDCYXXX.DLL
C:\WINDOWS\SYSTEM32\DDCYXXX.DLL
Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\ddcyxxx
C:\WINDOWS\SYSTEM32\DDCYVTQ.DLL
C:\WINDOWS\SYSTEM32\RQRRQOM.DLL
C:\WINDOWS\SYSTEM32\VTURRQN.DLL
C:\WINDOWS\SYSTEM32\WVUSRRQ.DLL
C:\WINDOWS\SYSTEM32\YAYAWXV.DLL
Trojan.Downloader-SysMon
C:\WINDOWS\RLAJSCL.EXE
C:\WINDOWS\RLAJSCL.EXE
Trojan.Downloader-Gen/RetAd
C:\WINDOWS\RETADPU2000219.EXE
C:\WINDOWS\RETADPU2000219.EXE
[runner1] C:\WINDOWS\RETADPU2000219.EXE
HKLM\Software\Microsoft\Windows\CurrentVersion\Run#runner1 [ C:\WINDOWS\retadpu2000219.exe 61A847B5BBF72810329B385473F001F0B3E35B6638993F4661AA4EBD86D67C56389B284534F 310 ]
C:\WINDOWS\RETADPU1000106.EXE
C:\WINDOWS\Prefetch\RETADPU2000219.EXE-2F7A3452.pf
Adware.SysMon
C:\WINDOWS\RLAJSCLA.EXE
C:\WINDOWS\RLAJSCLA.EXE
[rlajsclA] C:\WINDOWS\RLAJSCLA.EXE
C:\WINDOWS\SYSTEM32\F1\BK53.EXE
C:\WINDOWS\Prefetch\BK53.EXE-339EFB05.pf
C:\WINDOWS\Prefetch\RLAJSCLA.EXE-1C0AD116.pf
Adware.SearchClickAds
C:\WINDOWS\CFG32.EXE
C:\WINDOWS\CFG32.EXE
C:\WINDOWS\CFG32A.EXE
C:\WINDOWS\CFG32A.EXE
[Configuration Manager] C:\WINDOWS\CFG32.EXE
HKLM\Software\Classes\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}#AppID
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\InprocServer32
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\InprocServer32#ThreadingModel
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\ProgID
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\Programmable
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\TypeLib
HKCR\CLSID\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}\VersionIndependentProgID
C:\WINDOWS\CFG32O.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C68AE9C0-0909-4DDC-B661-C1AFB9F59898}
HKLM\SOFTWARE\zAbstract
HKLM\SOFTWARE\zAbstract#r
HKLM\SOFTWARE\zAbstract#App1
HKLM\SOFTWARE\zAbstract#App3
HKLM\SOFTWARE\zAbstract#App4
HKLM\SOFTWARE\zAbstract#App5
HKLM\SOFTWARE\zAbstract#Version
HKLM\SOFTWARE\zAbstract#BundleID
HKLM\SOFTWARE\zAbstract#Parent
HKLM\SOFTWARE\zAbstract#App2
HKLM\SOFTWARE\zAbstract#CList
C:\WINDOWS\CFG32R.DLL
C:\WINDOWS\CFG32S.DLL
C:\WINDOWS\STUB_MMA2.EXE
C:\WINDOWS\Prefetch\CFG32.EXE-2CD5C964.pf
C:\WINDOWS\Prefetch\CFG32A.EXE-0AC98EBC.pf
C:\WINDOWS\Prefetch\STUB_MMA2.EXE-281977E7.pf
Trojan.ZenoSearch
[{ZN}] C:\WINDOWS\ITPB_11.EXE
C:\WINDOWS\ITPB_11.EXE
C:\WINDOWS\system32\msnav32.ax
C:\DOCUMENTS AND SETTINGS\JESSE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\09MFCXYZ\DT[1].EXE
C:\WINDOWS\SYSTEM32\KWINONDT.EXE
C:\WINDOWS\Prefetch\ITPB_11.EXE-03DA9B57.pf
Adware.ClickSpring/Outer Info Network
HKLM\Software\Classes\CLSID\{2E9D4C81-9F27-4c14-B804-7B0F6BC88A4F}
HKCR\CLSID\{2E9D4C81-9F27-4C14-B804-7B0F6BC88A4F}
HKCR\CLSID\{2E9D4C81-9F27-4C14-B804-7B0F6BC88A4F}\InprocServer32
HKCR\CLSID\{2E9D4C81-9F27-4C14-B804-7B0F6BC88A4F}\InprocServer32#ThreadingModel
HKCR\CLSID\{2E9D4C81-9F27-4C14-B804-7B0F6BC88A4F}\Programmable
HKCR\CLSID\{2E9D4C81-9F27-4C14-B804-7B0F6BC88A4F}\TypeLib
C:\PROGRAM FILES\OUTERINFO\OUTERINFO.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E9D4C81-9F27-4c14-B804-7B0F6BC88A4F}
C:\Documents and Settings\Compaq_Administrator\Start Menu\Programs\Outerinfo\Terms.lnk
C:\Documents and Settings\Compaq_Administrator\Start Menu\Programs\Outerinfo\Uninstall.lnk
C:\Documents and Settings\Compaq_Administrator\Start Menu\Programs\Outerinfo
Trojan.WinFixer
HKLM\Software\Classes\CLSID\{7D912A87-F750-4426-B00B-5CB22F239577}
HKCR\CLSID\{7D912A87-F750-4426-B00B-5CB22F239577}
HKCR\CLSID\{7D912A87-F750-4426-B00B-5CB22F239577}\InprocServer32
HKCR\CLSID\{7D912A87-F750-4426-B00B-5CB22F239577}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7D912A87-F750-4426-B00B-5CB22F239577}
C:\WINDOWS\SYSTEM32\PMNLK.DLL
Adware.Mirar/NetNucleus
HKLM\Software\Classes\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32#ThreadingModel
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Version
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#BuildName
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Affiliate
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Show3X
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#ShowType
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#PopupCount
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#BlockEnable
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Ticket
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#WalkThrough
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\TypeLib
C:\WINDOWS\SYSTEM32\WINNB58.DLL
HKLM\Software\Classes\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32
HKCR\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32#ThreadingModel
HKCR\CLSID\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}\TypeLib
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}
HKLM\Software\Microsoft\Internet Explorer\Toolbar#{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\0
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\0\win32
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\FLAGS
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\HELPDIR
HKU\S-1-5-21-558834497-3157352443-2344169147-1008\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser#{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InprocServer32
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InprocServer32#ThreadingModel
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\ProgID
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Programmable
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\TypeLib
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\VersionIndependentProgID
C:\WINDOWS\SYSTEM32\WINATS.DLL
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\ProxyStubClsid
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\ProxyStubClsid32
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\TypeLib
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\TypeLib#Version
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\ProxyStubClsid
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\ProxyStubClsid32
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\TypeLib
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\TypeLib#Version
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\ProxyStubClsid
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\ProxyStubClsid32
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\TypeLib
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\TypeLib#Version
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1\CLSID
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1\CurVer
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1.1
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1.1\CLSID
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll#.Owner
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll#{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}#UninstallString
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}#SystemComponent
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}#Installer
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains\Files
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains\Files#C:\WINDOWS\system32\WinATS.dll
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation#CODEBASE
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation#INF
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InstalledVersion
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InstalledVersion#LastModified
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs#C:\WINDOWS\System 32\WinATS.dll [ ]
C:\WINDOWS\Downloaded Program Files\WinATS.inf
C:\DOCUMENTS AND SETTINGS\COMPAQ_ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\Q9ABUMEO\WINATS[1].CAB
Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{DC192567-65F9-4AB6-ADB7-E13575F81726}
HKCR\CLSID\{DC192567-65F9-4AB6-ADB7-E13575F81726}
HKCR\CLSID\{DC192567-65F9-4AB6-ADB7-E13575F81726}\InprocServer32
HKCR\CLSID\{DC192567-65F9-4AB6-ADB7-E13575F81726}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DC192567-65F9-4AB6-ADB7-E13575F81726}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{ DC192567-65F9-4AB6-ADB7-E13575F81726}
HKCR\CLSID\{DC192567-65F9-4AB6-ADB7-E13575F81726}
Trojan.ZQuest
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2327A512-BFE2-48FB-A1BE-6783753D4D31}
HKCR\CLSID\{2327A512-BFE2-48FB-A1BE-6783753D4D31}
HKCR\CLSID\{2327A512-BFE2-48FB-A1BE-6783753D4D31}
HKCR\CLSID\{2327A512-BFE2-48FB-A1BE-6783753D4D31}\InProcServer32
HKCR\CLSID\{2327A512-BFE2-48FB-A1BE-6783753D4D31}\InProcServer32#ThreadingModel
C:\PROGRAM FILES\INTERNET EXPLORER\HONEPA83122.DLL
Browser Hijacker.Internet Explorer Zone Hijack
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com\click
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com\click#http
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\getmirar.com\click#https
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\click
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\click#http
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\click#https
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\redirect
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\redirect#http
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mirarsearch.com\redirect#https
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com\awbeta
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com\awbeta#http
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com\awbeta#https
Trojan.Unknown Origin
HKLM\System\ControlSet001\Services\Windows Overlay Components
HKLM\System\ControlSet003\Services\Windows Overlay Components
HKLM\System\CurrentControlSet\Services\Windows Overlay Components
Adware.Tracking Cookie
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@go.winantispywar e[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@stats.driveclean er[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ad.yieldmanager[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@html[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@perf.overture[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@adinterax[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@revsci[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@www.drivecleaner[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@hitbox[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ehg-samsungusa.hitbox[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@advertising[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@tacoda[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@cpvfeed[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ehg-kasperskylab.hitbox[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@questionmarket[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ex=0_[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@toseeka[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@localsrv[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ex=0_[3].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@lynxtrack[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@bluestreak[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@hc2.humanclick[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@trafficmp[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@go.winantivirus[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ads.allthatsearc h[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@drivecleaner[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@amaena[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@winantispyware[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ad.outerinfo[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@mediaplex[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@adlegend[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@winantivirus[2].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ads.pointroll[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@pch.122.2o7[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@2o7[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@atwola[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@ads.k8l[1].txt
C:\Documents and Settings\Compaq_Administrator\Cookies\compaq_administrator@stats1.reliables tats[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@2o7[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ad.yieldmanager[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@adbrite[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ads.adbrite[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ads.addynamix[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ads.k8l[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ads.uncoverthenet[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@ads3.think-adz[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@advertising[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@atdmt[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@atwola[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@cpvfeed[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@doubleclick[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@edge.ru4[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@electronicarts.112.2o7[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@enhance[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@fastclick[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@media.top-banners[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@mediaplex[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@publishers.clickbooth[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@realmedia[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@revsci[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@specificclick[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@statcounter[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@stats1.reliablestats[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@stats[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@trafficmp[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@www.jackpotmadness[1].txt
C:\Documents and Settings\Jesse\Cookies\jesse@www.xctrk[2].txt
C:\Documents and Settings\Jesse\Cookies\jesse@zedo[1].txt
C:\Documents and Settings\root\Cookies\root@2o7[1].txt
C:\Documents and Settings\root\Cookies\root@4.adbrite[1].txt
C:\Documents and Settings\root\Cookies\root@ad.yieldmanager[1].txt
C:\Documents and Settings\root\Cookies\root@adbrite[2].txt
C:\Documents and Settings\root\Cookies\root@adinterax[2].txt
C:\Documents and Settings\root\Cookies\root@adlegend[1].txt
C:\Documents and Settings\root\Cookies\root@adrevolver[1].txt
C:\Documents and Settings\root\Cookies\root@adrevolver[3].txt
C:\Documents and Settings\root\Cookies\root@ads.adbrite[1].txt
C:\Documents and Settings\root\Cookies\root@ads.buddyprofile[1].txt
C:\Documents and Settings\root\Cookies\root@ads.cnn[1].txt
C:\Documents and Settings\root\Cookies\root@ads.pointroll[2].txt
C:\Documents and Settings\root\Cookies\root@adserver[1].txt
C:\Documents and Settings\root\Cookies\root@advertising[1].txt
C:\Documents and Settings\root\Cookies\root@atdmt[2].txt
C:\Documents and Settings\root\Cookies\root@atwola[2].txt
C:\Documents and Settings\root\Cookies\root@bizrate[1].txt
C:\Documents and Settings\root\Cookies\root@bluestreak[1].txt
C:\Documents and Settings\root\Cookies\root@casalemedia[2].txt
C:\Documents and Settings\root\Cookies\root@cnn.122.2o7[1].txt
C:\Documents and Settings\root\Cookies\root@cpvfeed[2].txt
C:\Documents and Settings\root\Cookies\root@doubleclick[1].txt
C:\Documents and Settings\root\Cookies\root@drivecleaner[1].txt
C:\Documents and Settings\root\Cookies\root@edge.ru4[2].txt
C:\Documents and Settings\root\Cookies\root@ehg-kasperskylab.hitbox[1].txt
C:\Documents and Settings\root\Cookies\root@fastclick[1].txt
C:\Documents and Settings\root\Cookies\root@hitbox[2].txt
C:\Documents and Settings\root\Cookies\root@mediaplex[1].txt
C:\Documents and Settings\root\Cookies\root@overture[2].txt
C:\Documents and Settings\root\Cookies\root@questionmarket[2].txt
C:\Documents and Settings\root\Cookies\root@realmedia[1].txt
C:\Documents and Settings\root\Cookies\root@revsci[2].txt
C:\Documents and Settings\root\Cookies\root@spylog[1].txt
C:\Documents and Settings\root\Cookies\root@stat.onestat[2].txt
C:\Documents and Settings\root\Cookies\root@statcounter[2].txt
C:\Documents and Settings\root\Cookies\root@stats1.reliablestats[1].txt
C:\Documents and Settings\root\Cookies\root@toplist[1].txt
C:\Documents and Settings\root\Cookies\root@tribalfusion[1].txt
C:\Documents and Settings\root\Cookies\root@warez-files[1].txt
C:\Documents and Settings\root\Cookies\root@www.romnation[1].txt
C:\Documents and Settings\root\Cookies\root@www.warezenergy[1].txt
C:\Documents and Settings\root\Cookies\root@yadro[2].txt
C:\Documents and Settings\root\Cookies\root@zedo[2].txt
Trojan.Windows Overlay Components/SysMon
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#Type
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#Start
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#ErrorControl
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#ImagePath
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#DisplayName
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components#ObjectName
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Security
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Security#Security
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Enum
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Enum#0
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Enum#Count
HKLM\SYSTEM\CurrentControlSet\Services\Windows Overlay Components\Enum#NextInstance
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS#N extInstance
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#Service
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#Legacy
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#ConfigFlags
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#Class
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#ClassGUID
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000#DeviceDesc
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000\Control
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WINDOWS_OVERLAY_COMPONENTS\0 000\Control#ActiveService
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OvMon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OvMon#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OvMon#UninstallStr ing
C:\WINDOWS\offun.exe
Adware.BookedSpace
HKCR\AppID\Scaggy.DLL
HKCR\AppID\Scaggy.DLL#AppID
HKCR\Scaggy.Insert
HKCR\Scaggy.Insert\CLSID
HKCR\Scaggy.Insert\CurVer
HKCR\Scaggy.Insert.1
HKCR\Scaggy.Insert.1\CLSID
HKCR\AppID\{90A52F08-64AC-4DC6-9D7D-451667029898}
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}\1.0
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}\1.0\0
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}\1.0\0\win32
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}\1.0\FLAGS
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-451667029898}\1.0\HELPDIR
Adware.Web Buying
HKU\S-1-5-21-558834497-3157352443-2344169147-1008\Software\WebBuying
Trojan.WinAntiSpyware/WinAntiVirus 2006
C:\DOCUMENTS AND SETTINGS\COMPAQ_ADMINISTRATOR\LOCAL SETTINGS\TEMP\ICD1.TMP\UWA7P_0001_N91M0809NETINSTALLER.EXE
C:\DOCUMENTS AND SETTINGS\JESSE\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WWXAPQ8L.DEFAULT\CACHE\A23E4567D01
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.1\UWA7P_0001_N91M0809NETINSTALLER.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\UWA7P_0001_N91M0809NETINSTALLER.EXE
C:\WINDOWS\Prefetch\UWA7P_0001_N91M0809NETINSTALL-0A7249E2.pf
C:\WINDOWS\Prefetch\UWA7P_0001_N91M0809NETINSTALL-37605A5E.pf
Adware.RAC
C:\DOCUMENTS AND SETTINGS\COMPAQ_ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\XDKFVKR4\ACDT-PID67N[1].EXE
C:\DOCUMENTS AND SETTINGS\JESSE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KDYR8L6F\ACDT-PID67N[1].EXE
Adware.ClickSpring/Yazzle
C:\PROGRAM FILES\COMMON FILES\YAZZLE1281OINADMIN.EXE
C:\PROGRAM FILES\COMMON FILES\YAZZLE1281OINUNINSTALLER.EXE
C:\WINDOWS\PREFETCH\YAZZLE1281OINADMIN.EXE-27312430.PF
Adware.k8l
C:\PROGRAM FILES\WINDOWSUPDATE\PROJYWUINE.HTML
Unclassified.Unknown Origin
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP215\A0094728.NFO
Adware.WhenU
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP225\A0110120.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP226\A0110167.EXE
Adware.eZula
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP226\A0110169.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP226\A0110170.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP226\A0110179.EXE
C:\WINDOWS\SYSTEM32\NIKSHKVL.EXE
C:\WINDOWS\SYSTEM32\UGNFXSUK.EXE
Adware.ClickSpring/Resident
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110304.DLL
Adware.WebBuying-Installer
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110305.EXE
Trojan.Downloader-WebBuying/PopEngine
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110306.DLL
Adware.WebBuying Assistant-Installer
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110307.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110308.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110332.EXE
Spyware.RelevantKnowledge
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110324.EXE
C:\WINDOWS\ITPB_3.EXE
C:\WINDOWS\Prefetch\ITPB_3.EXE-04B4C769.pf
Trojan.Downloader-Gen/BasicMath
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B9823275-D858-498B-A4DC-C4EEDA322F67}\RP227\A0110331.EXE
Trojan.Rootkit-TnCore
C:\WINDOWS\SYSTEM32\DRIVERS\CORE.SYS
Trojan.Rootkit-TnCore/Installer
C:\WINDOWS\SYSTEM32\F4\WEN2.EXE
C:\WINDOWS\Prefetch\WEN2.EXE-30F138D2.pf
Trojan.Downloader-SpyTool
C:\WINDOWS\SYSTEM32\HUWWPUTA.DLL
Adware.ZenoSearch
C:\WINDOWS\SYSTEM32\MNDSREGM.EXE
Trojan.Downloader-Gen/BundleBase
C:\WINDOWS\SYSTEM32\O02PREZ\O02PREZ1065.EXE
C:\WINDOWS\Prefetch\O02PREZ1065.EXE-12A37521.pf
Trojan.Downloader-Gen/Blah
C:\WINDOWS\SYSTEM32\RQRQRPO.DLL
Trojan.Downloader-Gen
C:\WINDOWS\SYSTEM32\WINPFZ32.SYS
Adware.ClickSpring/PuritySCAN
C:\WINDOWS\SYSTEM32\WNSCPSU.EXE
Adware.Unknown Origin
C:\WINDOWS\SYSTEM32\ZXDNT3D.CFG