SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 09/15/2007 at 03:09 PM
Application Version : 3.9.1008
Core Rules Database Version : 3307
Trace Rules Database Version: 1313
Scan type : Complete Scan
Total Scan Time : 00:47:51
Memory items scanned : 534
Memory threats detected : 0
Registry items scanned : 6212
Registry threats detected : 69
File items scanned : 37446
File threats detected : 139
Adware.Mirar/NetNucleus
HKLM\Software\Classes\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\InprocServer32#ThreadingModel
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Version
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#BuildName
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Affiliate
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Show3X
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#ShowType
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#PopupCount
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#BlockEnable
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#Ticket
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\Properties#WalkThrough
HKCR\CLSID\{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}\TypeLib
C:\WINDOWS\SYSTEM32\WINNB58.DLL
HKLM\Software\Microsoft\Internet Explorer\Toolbar#{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\0
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\0\win32
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\FLAGS
HKCR\TypeLib\{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}\1.0\HELPDIR
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InprocServer32
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InprocServer32#ThreadingModel
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\ProgID
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Programmable
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\TypeLib
HKCR\CLSID\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\VersionIndependentProgID
C:\WINDOWS\SYSTEM32\WINATS.DLL
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\ProxyStubClsid
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\ProxyStubClsid32
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\TypeLib
HKCR\Interface\{1037B06C-84B7-4240-8D80-485810A0497D}\TypeLib#Version
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\ProxyStubClsid
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\ProxyStubClsid32
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\TypeLib
HKCR\Interface\{54B287F9-FD90-4457-B65E-CB91560C021D}\TypeLib#Version
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\ProxyStubClsid
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\ProxyStubClsid32
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\TypeLib
HKCR\Interface\{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}\TypeLib#Version
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1\CLSID
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1\CurVer
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1.1
HKCR\Mirar_Dummy_ATS.Mirar_Dummy_ATS1.1\CLSID
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll#.Owner
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WinATS.dll#{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}#UninstallString
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}#SystemComponent
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}#Installer
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains\Files
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\Contains\Files#C:\WINDOWS\system32\WinATS.dll
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation#CODEBASE
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\DownloadInformation#INF
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InstalledVersion
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8A0DCBDB-6E20-489C-9041-C1E8A0352E75}\InstalledVersion#LastModified
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs#C:\WINDOWS\System 32\WinATS.dll [ ]
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\WINNB58.DLL.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP285\A0277155.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP307\A0302539.EXE
Adware.Tracking Cookie
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@mediaplex[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adserv01[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@id12117[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@server.lon.liveperson[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@specificclick[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@doubleclick[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@casalemedia[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@questionmarket[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@www.nicheflixxx[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@perf.overture[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.addynamix[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@xiti[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@videos[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ad.yieldmanager[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@onlysexhere[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@247realmedia[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@exchange.ggmedia[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@hitbox[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@4.adbrite[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ad1.clickhype[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adserver.easyad[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@server.iad.liveperson[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@2o7[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@eas.apm.emediate[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@enhance[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@pornorip[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@stats.adbrite[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@www.movixxx[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@realmedia[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adserving.muppetism[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adecn[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adserver.adreactor[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@pornevo[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@zedo[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adgoto[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cpvfeed[6].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cgi-bin[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@try.screensavers[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@i.screensavers[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adrevolver[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@trafficmp[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@stats1.reliablestats[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.mediamayhemcorp[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adultadworld[4].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adultfriendfinder[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@view-10558[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@stats[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@screensavers[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@edge.ru4[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@freepornlessons[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adopt.specificclick[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@bluestreak[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cgi-bin[4].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.pointroll[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@fastclick[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@atdmt[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adbrite[5].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@view-10555[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@advertising[6].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@2.adbrite[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ehg-utilityboardsupplyllc.hitbox[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@drivecleaner[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@tremor.adbureau[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ehg-globalgamingleague.hitbox[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cgi-bin[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@twelvefifteen[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads3.blastro[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@3.adbrite[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@html[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@audit.median[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@humornsex[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@yadro[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@statcounter[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@1535[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@sexbuddies[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@www.onlysexhere[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@tribalfusion[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adlegend[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@clicksor[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adrevolver[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adbrite[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@804[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@2.marketbanker[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@kinxxx[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@atwola[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@revsci[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@pornoinside[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adsrevenue[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adinterax[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ero-advertising[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@winantispyware[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@AdRotator[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@focalex[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adengage[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@beporn[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@movixxx[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@66702201[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ad.bannerconnect[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ad.yieldmanager[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adinterax[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adlegend[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adbrite[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adbrite[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@ads.adbrite[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adultadworld[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@adultadworld[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@advertising[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@advertising[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@advertising[4].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@advertising[5].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@casalemedia[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cpvfeed[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cpvfeed[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cpvfeed[4].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@cpvfeed[5].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@drivecleaner[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@exitexchange[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@interclick[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@trafficmp[2].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@winantivirus[1].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@winantivirus[3].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@winantivirus[4].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@winantivirus[5].txt
C:\Documents and Settings\Aaron Cano\Cookies\aaron cano@www.xctrk[2].txt
Adware.eZula
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\KLKOYIQJ.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP309\A0303672.EXE
Trojan.Downloader-Gen/TStamp
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\PQYOEBCR.EXE.VIR
C:\QOOBOX\QUARANTINE\C\WINDOWS\SYSTEM32\SEEWRUHU.EXE.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP285\A0277145.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP285\A0277146.EXE
Trojan.Downloader-Gen/HardFall
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP285\A0277163.DLL
Adware.Vundo Variant
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP285\A0277164.DLL
Trojan.Downloader-Gen/HitItQuitIt
C:\SYSTEM VOLUME INFORMATION\_RESTORE{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP309\A0303685.DLL