SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 09/15/2008 at 07:45 AM
Application Version : 4.21.1004
Core Rules Database Version : 3566
Trace Rules Database Version: 1554
Scan type : Complete Scan
Total Scan Time : 00:58:36
Memory items scanned : 503
Memory threats detected : 4
Registry items scanned : 5516
Registry threats detected : 30
File items scanned : 20184
File threats detected : 52
Trojan.Vundo-Variant/Small-GEN
C:\WINDOWS\SYSTEM32\JKKJAWWU.DLL
C:\WINDOWS\SYSTEM32\JKKJAWWU.DLL
C:\WINDOWS\SYSTEM32\LJJYPHFG.DLL
Adware.Vundo Variant/Resident
C:\WINDOWS\SYSTEM32\QOMCAXWX.DLL
C:\WINDOWS\SYSTEM32\QOMCAXWX.DLL
Adware.AdSponsor/ISM-GetPack
C:\PROGRAM FILES\GETPACK\GETPACK21.EXE
C:\PROGRAM FILES\GETPACK\GETPACK21.EXE
[GetPack21] C:\PROGRAM FILES\GETPACK\GETPACK21.EXE
Trojan.Downloader-CREW
C:\WINDOWS\SYSTEM32\RYAUYHXL.DLL
C:\WINDOWS\SYSTEM32\RYAUYHXL.DLL
HKLM\Software\Classes\CLSID\{01807D47-C937-4847-9760-BE63780B6C34}
HKCR\CLSID\{01807D47-C937-4847-9760-BE63780B6C34}
HKCR\CLSID\{01807D47-C937-4847-9760-BE63780B6C34}\InprocServer32
HKCR\CLSID\{01807D47-C937-4847-9760-BE63780B6C34}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01807D47-C937-4847-9760-BE63780B6C34}
C:\WINDOWS\SYSTEM32\GDVDISED.DLL
Adware.AdSponsor/ISM-GetModule
[GetModule23] C:\PROGRAM FILES\GETMODULE\GETMODULE23.EXE
C:\PROGRAM FILES\GETMODULE\GETMODULE23.EXE
Trojan.Vundo-Variant/NextGen
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1BC5E68A-EDAE-4F12-BE0E-A548DCC388D3}
HKCR\CLSID\{1BC5E68A-EDAE-4F12-BE0E-A548DCC388D3}
HKCR\CLSID\{1BC5E68A-EDAE-4F12-BE0E-A548DCC388D3}\InprocServer32
HKCR\CLSID\{1BC5E68A-EDAE-4F12-BE0E-A548DCC388D3}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7336D32-62F7-43B5-8B8C-3963C72CA498}
HKCR\CLSID\{D7336D32-62F7-43B5-8B8C-3963C72CA498}
HKCR\CLSID\{D7336D32-62F7-43B5-8B8C-3963C72CA498}\InprocServer32
HKCR\CLSID\{D7336D32-62F7-43B5-8B8C-3963C72CA498}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{D7336D32-62F7-43B5-8B8C-3963C72CA498}
Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\jkkJawwU
Trojan.Vundo-Variant/NextGen-Six
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f13c481d-9627-4871-9ab4-cceb290a8b80}
HKCR\CLSID\{F13C481D-9627-4871-9AB4-CCEB290A8B80}
HKCR\CLSID\{F13C481D-9627-4871-9AB4-CCEB290A8B80}\InprocServer32
HKCR\CLSID\{F13C481D-9627-4871-9AB4-CCEB290A8B80}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\ZXNQIP.DLL
Adware.Tracking Cookie
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ar.atwola[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ads.addynamix[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@cache.trafficmp[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@xiti[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@trafficmp[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.googleadservices[3].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@media.vlzserver[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@2o7[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ads.revsci[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.googleadservices[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@stopzilla[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@tracking.dsmmadvantage[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ad.yieldmanager[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@atwola[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@eas.apm.emediate[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@clickbank[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@revsci[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@smartadserver[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@media6degrees[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@adserver.adtechus[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.googleadservices[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@bluestreak[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ads.pointroll[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@at.atwola[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@tagiq.clickforensics[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.stopzilla[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@mediaplex[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@adtrafficdriver[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@toplist[1].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.googleadservices[4].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@advertising[2].txt
C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@www.googleadservices[5].txt
Trojan.DNSChanger-Codec
HKU\S-1-5-21-416308895-2433930753-3315868822-1009\Software\GetModule
HKU\S-1-5-21-416308895-2433930753-3315868822-1009\Software\GetPack
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iCheck
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iCheck#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iCheck#UninstallString
Adware.AdSponsor/ISM
C:\Program Files\GetModule\dicik.gz
C:\Program Files\GetModule\kwdik.gz
C:\Program Files\GetModule\ozadik.gz
C:\Program Files\GetModule
C:\Program Files\GetPack\dictame.gz
C:\Program Files\GetPack\trgtame.gz
C:\Program Files\GetPack
C:\Program Files\iCheck\iCheck.exe
C:\Program Files\iCheck\Uninstall.exe
C:\Program Files\iCheck
Adware.Vundo Variant/Rel
HKLM\SOFTWARE\Microsoft\aoprndtws
HKLM\SOFTWARE\Microsoft\FCOVM
HKLM\SOFTWARE\Microsoft\RemoveRP
HKU\S-1-5-21-416308895-2433930753-3315868822-1009\Software\Microsoft\rdfa
Adware.CouponBar
C:\SYSTEM VOLUME INFORMATION\_RESTORE{55AD45FB-8993-4F27-867B-0B74F04FFF84}\RP67\A0010176.DLL
C:\WINDOWS\COUPONBARIE.DLL