After I sent my last message, I went back into regular mode, and was able to run the SAS scan. I downloaded the mbam file and attempted to run it, but midway through, it stopped and wouldn't allow me to access it again. I'll try to reload and run the mbam again after I send this. I have all the suspect files listed below quarantined but was afraid if I reboot now I may lose some files I need to save. Here are the SAS results:
SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 09/10/2009 at 08:44 PM
Application Version : 4.28.1010
Core Rules Database Version : 4085
Trace Rules Database Version: 1978
Scan type : Quick Scan
Total Scan Time : 00:16:46
Memory items scanned : 517
Memory threats detected : 1
Registry items scanned : 611
Registry threats detected : 8
File items scanned : 9230
File threats detected : 93
Trojan.Unclassified/BraviaX
C:\WINDOWS\SYSTEM32\BRAVIAX.EXE
C:\WINDOWS\SYSTEM32\BRAVIAX.EXE
[braviax] C:\WINDOWS\SYSTEM32\BRAVIAX.EXE
HKU\s-1-5-21-3457135837-99430031-1591245725-1006\Software\Microsoft\Windows\CurrentVersion\Run#braviax [ C:\WINDOWS\system32\braviax.exe ]
HKLM\Software\Microsoft\Windows\CurrentVersion\Run#braviax [ C:\WINDOWS\system32\braviax.exe ]
Rootkit.Cloaked/Service-GEN
HKLM\system\controlset001\services\d250ed6e
C:\WINDOWS\SYSTEM32\DRIVERS\D250ED6E.SYS
HKLM\system\controlset003\services\d250ed6e
Adware.Tracking Cookie
c:\documents and settings\henry\cookies\henry@lfstmedia[2].txt
c:\documents and settings\henry\cookies\henry@questionmarket[2].txt
c:\documents and settings\henry\cookies\henry@socialmedia[2].txt
c:\documents and settings\henry\cookies\henry@ads.pointroll[2].txt
c:\documents and settings\henry\cookies\henry@content.yieldmanager[3].txt
c:\documents and settings\henry\cookies\henry@collective-media[1].txt
c:\documents and settings\henry\cookies\henry@mediaplex[2].txt
c:\documents and settings\henry\cookies\henry@stat.dealtime[1].txt
c:\documents and settings\henry\cookies\henry@ad.yieldmanager[2].txt
c:\documents and settings\henry\cookies\henry@dealtime[1].txt
c:\documents and settings\henry\cookies\henry@casalemedia[2].txt
c:\documents and settings\henry\cookies\henry@specificmedia[1].txt
c:\documents and settings\henry\cookies\henry@adrevolver[2].txt
c:\documents and settings\henry\cookies\henry@www.burstbeacon[1].txt
c:\documents and settings\henry\cookies\henry@media.adrevolver[1].txt
c:\documents and settings\henry\cookies\henry@atdmt[1].txt
c:\documents and settings\henry\cookies\henry@bs.serving-sys[1].txt
c:\documents and settings\henry\cookies\henry@yadro[2].txt
c:\documents and settings\henry\cookies\henry@imrworldwide[2].txt
c:\documents and settings\henry\cookies\henry@insightexpressai[1].txt
c:\documents and settings\henry\cookies\henry@specificclick[1].txt
c:\documents and settings\henry\cookies\henry@tribalfusion[2].txt
c:\documents and settings\henry\cookies\henry@fastclick[1].txt
c:\documents and settings\henry\cookies\henry@adbrite[1].txt
c:\documents and settings\henry\cookies\henry@cache.trafficmp[1].txt
c:\documents and settings\henry\cookies\henry@serving-sys[2].txt
c:\documents and settings\henry\cookies\henry@apmebf[2].txt
c:\documents and settings\henry\cookies\henry@247realmedia[2].txt
c:\documents and settings\henry\cookies\henry@foundbanner[1].txt
c:\documents and settings\henry\cookies\henry@burstbeacon[1].txt
c:\documents and settings\henry\cookies\henry@cdn4.specificclick[2].txt
c:\documents and settings\henry\cookies\henry@edge.ru4[1].txt
c:\documents and settings\henry\cookies\henry@adserver.adtechus[1].txt
c:\documents and settings\henry\cookies\henry@dmtracker[1].txt
c:\documents and settings\henry\cookies\henry@ad1.clickhype[1].txt
c:\documents and settings\henry\cookies\henry@trafficmp[1].txt
c:\documents and settings\henry\cookies\henry@eyewonder[2].txt
c:\documents and settings\henry\cookies\henry@find.diadoraamerica[2].txt
c:\documents and settings\henry\cookies\henry@a1.interclick[1].txt
c:\documents and settings\henry\cookies\henry@revsci[2].txt
c:\documents and settings\henry\cookies\henry@www.burstnet[1].txt
c:\documents and settings\henry\cookies\henry@realmedia[2].txt
c:\documents and settings\henry\cookies\henry@media.adrevolver[2].txt
c:\documents and settings\henry\cookies\henry@tunebanner352[1].txt
c:\documents and settings\henry\cookies\henry@zedo[2].txt
c:\documents and settings\henry\cookies\henry@content.yieldmanager[2].txt
c:\documents and settings\henry\cookies\henry@shopping.112.2o7[1].txt
c:\documents and settings\henry\cookies\henry@media6degrees[1].txt
c:\documents and settings\henry\cookies\henry@advertising[1].txt
c:\documents and settings\henry\cookies\henry@dominionenterprises.112.2o7[1].txt
c:\documents and settings\henry\cookies\henry@interclick[1].txt
c:\documents and settings\henry\cookies\henry@burstnet[2].txt
c:\documents and settings\henry\cookies\henry@doubleclick[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwindows.112.2o7[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@interclick[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ad.yieldmanager[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@fastclick[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@atdmt[1].txt
.doubleclick.net [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.track.cbs.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.cbs.112.2o7.net [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.bs.serving-sys.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.247realmedia.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.atdmt.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.casalemedia.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\891y7pz0.default\cookies.txt ]
Trojan.Unknown Origin
HKLM\Software\xpre
HKLM\Software\xpre#execount
Rogue.XP AntiSpyware2009-Trace
C:\WINDOWS\system32\_scui.cpl
Rogue.XP AntiSpyware 2009
HKU\s-1-5-21-3457135837-99430031-1591245725-1006\Control Panel\don't load#wscui.cpl [ No ]
Trojan.Dropper/Gen
C:\DOCUMENTS AND SETTINGS\HENRY\LOCAL SETTINGS\TEMP\~.EXE
C:\WINDOWS\SYSTEM32\~.EXE
C:\WINDOWS\Prefetch\~.EXE-10AA984B.pf
Trojan.Agent/Gen-FakeDrop[BraviaX]
C:\UDTCNN.EXE
Rootkit.Agent/Gen-UAC
C:\WINDOWS\SYSTEM32\DRIVERS\UACD.SYS