Greetings Cryptodan,
Here are the log files in the following order: Malwarebytes, SuperAntiSpyware (2 logs, I had to shut the computer down when I was leaving for the weekend. Full scan took 13 hours!), GMER.
Thanks, DebitsAndCredits
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 6164
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
3/25/2011 8:34:29 AM
mbam-log-2011-03-25 (08-34-29).txt
Scan type: Full scan (C:\|D:\|E:\|)
Objects scanned: 396210
Time elapsed: 2 hour(s), 2 minute(s), 27 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\documents and settings\Ryan\local settings\Temp\ms0cfg32.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\system volume information\_restore{d5341f9c-33f7-43cf-8bd2-1ae937c9ba1b}\RP300\A0056571.exe (Rogue.FakeHDD) -> Quarantined and deleted successfully.
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 03/25/2011 at 02:38 PM
Application Version : 4.50.1002
Core Rules Database Version : 6673
Trace Rules Database Version: 4485
Scan type : Complete Scan
Total Scan Time : 04:14:12
Memory items scanned : 246
Memory threats detected : 0
Registry items scanned : 6950
Registry threats detected : 0
File items scanned : 38186
File threats detected : 384
Adware.Tracking Cookie
C:\Documents and Settings\Ryan\Cookies\ryan@yieldmanager[1].txt
C:\Documents and Settings\Ryan\Cookies\ryan@mediaplex[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@invitemedia[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@content.yieldmanager[1].txt
C:\Documents and Settings\Ryan\Cookies\ryan@ad.yieldmanager[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@doubleclick[1].txt
C:\Documents and Settings\Ryan\Cookies\ryan@advertising[1].txt
C:\Documents and Settings\Ryan\Cookies\ryan@ad.wsod[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@collective-media[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@interclick[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@imrworldwide[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@atdmt[2].txt
C:\Documents and Settings\Ryan\Cookies\ryan@apmebf[1].txt
C:\Documents and Settings\Adia\Cookies\adia@sales.liveperson[2].txt
udn.specificclick.net [ C:\Documents and Settings\Jessie\Application Data\Macromedia\Flash Player\#SharedObjects\FFJ9ZUB9 ]
C:\Documents and Settings\Jessie\Cookies\jessie@a1.interclick[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@ad.wsod[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@ad.yieldmanager[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@adbrite[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@adinterax[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@advertising[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@adxpose[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@apmebf[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@at.atwola[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@atdmt[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@bs.serving-sys[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@collective-media[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@content.yieldmanager[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@content.yieldmanager[3].txt
C:\Documents and Settings\Jessie\Cookies\jessie@doubleclick[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@fastclick[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@imrworldwide[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@interclick[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@invitemedia[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@liveperson[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@liveperson[3].txt
C:\Documents and Settings\Jessie\Cookies\jessie@lucidmedia[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@media6degrees[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@mediaplex[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@overture[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@pro-market[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@questionmarket[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@revsci[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@ru4[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@sales.liveperson[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@serving-sys[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@specificclick[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@specificmedia[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@tacoda[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@tribalfusion[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@versiontracker[2].txt
C:\Documents and Settings\Jessie\Cookies\jessie@www.googleadservices[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@www.versiontracker[1].txt
C:\Documents and Settings\Jessie\Cookies\jessie@yieldmanager[2].txt
C:\Documents and Settings\LocalService\Cookies\system@a1.interclick[2].txt
C:\Documents and Settings\LocalService\Cookies\system@ad.yieldmanager[2].txt
C:\Documents and Settings\LocalService\Cookies\system@adbrite[2].txt
C:\Documents and Settings\LocalService\Cookies\system@admarketplace[1].txt
C:\Documents and Settings\LocalService\Cookies\system@ads.ad4game[2].txt
C:\Documents and Settings\LocalService\Cookies\system@ads.pointroll[1].txt
C:\Documents and Settings\LocalService\Cookies\system@adserver.adtechus[1].txt
C:\Documents and Settings\LocalService\Cookies\system@advertising[2].txt
C:\Documents and Settings\LocalService\Cookies\system@apmebf[2].txt
C:\Documents and Settings\LocalService\Cookies\system@atdmt[1].txt
C:\Documents and Settings\LocalService\Cookies\system@bizzclick[1].txt
C:\Documents and Settings\LocalService\Cookies\system@bridge1.admarketplace[1].txt
C:\Documents and Settings\LocalService\Cookies\system@casalemedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@content.yieldmanager[2].txt
C:\Documents and Settings\LocalService\Cookies\system@content.yieldmanager[3].txt
C:\Documents and Settings\LocalService\Cookies\system@dc.tremormedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@doubleclick[1].txt
C:\Documents and Settings\LocalService\Cookies\system@fastclick[2].txt
C:\Documents and Settings\LocalService\Cookies\system@fidelity.rotator.hadj7.adjuggler[2].txt
C:\Documents and Settings\LocalService\Cookies\system@findology[1].txt
C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[2].txt
C:\Documents and Settings\LocalService\Cookies\system@insightexpressai[1].txt
C:\Documents and Settings\LocalService\Cookies\system@interclick[2].txt
C:\Documents and Settings\LocalService\Cookies\system@invitemedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@media6degrees[2].txt
C:\Documents and Settings\LocalService\Cookies\system@mediabrandsww[1].txt
C:\Documents and Settings\LocalService\Cookies\system@mediaplex[2].txt
C:\Documents and Settings\LocalService\Cookies\system@pointroll[2].txt
C:\Documents and Settings\LocalService\Cookies\system@ru4[1].txt
C:\Documents and Settings\LocalService\Cookies\system@serving-sys[2].txt
C:\Documents and Settings\LocalService\Cookies\system@technoratimedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@user.lucidmedia[1].txt
C:\Documents and Settings\LocalService\Cookies\system@yieldmanager[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@ad.yieldmanager[2].txt
C:\Documents and Settings\Makayla\Cookies\makayla@advertising[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@at.atwola[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@atdmt[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@bluestreak[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@collective-media[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@doubleclick[2].txt
C:\Documents and Settings\Makayla\Cookies\makayla@fastclick[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@interclick[2].txt
C:\Documents and Settings\Makayla\Cookies\makayla@microsoftwindows.112.2o7[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@questionmarket[1].txt
C:\Documents and Settings\Makayla\Cookies\makayla@service.liveperson[2].txt
crackle.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\6V89XFTE ]
C:\Documents and Settings\NetworkService\Cookies\system@247realmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@a.tribalfusion[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adbrite[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@admarketplace[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.blogtalkradio[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pubmatic[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adserver.adtechus[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertise[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@advertising[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@adxpose[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@apmebf[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@at.atwola[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@atdmt[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@bridge2.admarketplace[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@bs.serving-sys[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@click.fastpartner[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@clickpayz10.91469.information-seeking[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@clickpayz10.91469.information-seeking[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@clickpayz10.91498.information-seeking[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@clicksor[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@clickthrough.kanoodle[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[3].txt
C:\Documents and Settings\NetworkService\Cookies\system@crackle[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@d.mediaforge[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@dc.tremormedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@digitalentertainment.122.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@findology[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediaforge[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@mediaplex[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mm.chitika[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@p285t1s1917364.kronos.bravenetmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@pointroll[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@pro-market[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@realmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ru4[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.amazeclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.clicksthis[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.hippofind[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@serving-sys[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@statcounter[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@technoratimedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@user.lucidmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.finditquick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.trackimizer[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.trackimizer[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@zedo[1].txt
bc.youporn.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
broadcast.piximedia.fr [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
cdn4.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
cloudfront.mediamatters.org [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
convoad.technoratimedia.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
core.insightexpressai.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
crackle.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
googleads.g.doubleclick.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
ia.media-imdb.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
interclick.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
ll.media.abc.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
m1.2mdn.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.cnbc.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.ign.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.mtvnservices.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.scanscout.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.socialvibe.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media.tattomedia.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
media1.break.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
msnbcmedia.msn.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
msntest.serving-sys.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
naiadsystems.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
objects.tremormedia.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
s0.2mdn.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
secure-us.imrworldwide.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
serving-sys.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
sftrack.searchforce.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
spe.atdmt.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
static.2mdn.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
static.sexsearch.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
static.sexsearchcom.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
static.xxxmatch.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
static.youporn.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
tour.collegebleepfest.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
udn.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
www.naiadsystems.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
www.pornstarnetwork.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
youporn.videobox.com [ C:\Documents and Settings\Ryan\Application Data\Macromedia\Flash Player\#SharedObjects\M4BGUHLN ]
ads.bridgetrack.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
ads.bridgetrack.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
ads.bridgetrack.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
www.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
www.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
www.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.theaccountspayablenetwork.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.apmebf.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.dynamic.media.adrevolver.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.dynamic.media.adrevolver.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.dynamic.media.adrevolver.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.specificmedia.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.adopt.specificclick.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
sales.liveperson.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
sales.liveperson.net [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.edge.ru4.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.edge.ru4.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
.edge.ru4.com [ C:\Documents and Settings\Ryan\Application Data\Mozilla\Firefox\Profiles\lgb7qvod.default\cookies.txt ]
C:\Documents and Settings\Ryan and Jessie\Cookies\ryan_and_jessie@adinterax[2].txt
C:\Documents and Settings\Ryan and Jessie\Cookies\ryan_and_jessie@atwola[1].txt
C:\Documents and Settings\Ryan and Jessie\Cookies\ryan_and_jessie@ehg-foxsports.hitbox[2].txt
C:\Documents and Settings\Ryan and Jessie\Cookies\ryan_and_jessie@interclick[1].txt
C:\Documents and Settings\Ryan and Jessie\Cookies\ryan_and_jessie@richmedia.yahoo[1].txt
105-bmp.googleadservices.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
ads1.msn.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
chat.youporn.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
files.youporn.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
interclick.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
m1.2mdn.net [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
media.monster.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
media.pampers.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
mediaonenetwork.net [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
mediaplex.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
naiadsystems.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
serving-sys.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
static.youporn.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
traffic.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
vhss-a.oddcast.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
web.adknowledge.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
www.pornhub.com [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
yieldmanager.edgesuite.net [ C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\33S2S6HJ ]
ad.doubleclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
ads.revsci.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.insightexpressai.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
www.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.hornymatches.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.richmedia.yahoo.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.socialmedia.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.apmebf.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.adultfriendfinder.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.adultfriendfinder.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.adultfriendfinder.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.adultfriendfinder.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
ads-dev.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.youporn.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.dmtracker.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
.dynamic.media.adrevolver.com [ C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\rsgusx59.default\cookies.txt ]
C:\Documents and Settings\User\Cookies\user@dynamic.media.adrevolver[2].txt
2mdn.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
bannerfarm.ace.advertising.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
cdn.eyewonder.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
cdn2.invitemedia.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
cdn4.specificclick.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
content.oddcast.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
content.yieldmanager.edgesuite.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
core.insightexpressai.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
ec.atdmt.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
googleads.g.doubleclick.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
ia.media-imdb.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
interclick.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
m1.2mdn.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
macromedia.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
media.resulthost.org [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
media.scanscout.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
media.tattomedia.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
media.tnfvideo.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
media1.break.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
objects.tremormedia.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
secure-us.imrworldwide.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
spe.atdmt.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
speed.pointroll.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
static.2mdn.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
udn.specificclick.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Macromedia\Flash Player\#SharedObjects\RCT4LPSK ]
.apmebf.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
.specificmedia.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
rotator.adjuggler.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
rotator.adjuggler.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
rotator.adjuggler.com [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
.skype.122.2o7.net [ C:\Documents and Settings\User.PC113824047319\Application Data\Mozilla\Firefox\Profiles\1tbwezfl.default\cookies.sqlite ]
C:\Documents and Settings\User.PC113824047319\Cookies\user@a1.interclick[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@ad.wsod[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@ad.yieldmanager[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@adinterax[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@ads.nba[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@ads.pointroll[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@advertising[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@adxpose[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@apmebf[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@at.atwola[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@atdmt[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@bs.serving-sys[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@collective-media[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@content.yieldmanager[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@content.yieldmanager[3].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@doubleclick[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@edgeadx[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@fastclick[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@imrworldwide[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@insightexpressai[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@interclick[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@invitemedia[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@kaspersky.122.2o7[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@media6degrees[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@mediaplex[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@pointroll[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@questionmarket[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@revsci[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@ru4[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@serving-sys[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@tacoda.at.atwola[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@www.googleadservices[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@www.windowsmedia[2].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@yieldmanager[1].txt
C:\Documents and Settings\User.PC113824047319\Cookies\user@zedo[1].txt
Trojan.Agent/Gen-Faldesc
C:\DOCUMENTS AND SETTINGS\USER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\RSGUSX59.DEFAULT\EXTENSIONS\MOVEPLAYER@MOVENETWORKS.COM\PLATFORM\WINNT_X86-MSVC\PLUGINS\NPMNQMP07074039.DLL
------------------------------------
SuperAntiSpyware log #2 below
------------------------------------
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 03/27/2011 at 07:34 AM
Application Version : 4.50.1002
Core Rules Database Version : 6673
Trace Rules Database Version: 4485
Scan type : Complete Scan
Total Scan Time : 13:06:45
Memory items scanned : 251
Memory threats detected : 0
Registry items scanned : 6952
Registry threats detected : 0
File items scanned : 163425
File threats detected : 40
Adware.Tracking Cookie
media.mtvnservices.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\6V89XFTE ]
secure-us.imrworldwide.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\6V89XFTE ]
C:\Documents and Settings\NetworkService\Cookies\system@2o7[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@a1.interclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.flux[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.lycos[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.pointroll[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@ads.undertone[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@beacon.dmsinsights[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@bs.serving-sys[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@burstnet[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@cdn.jemamedia[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@click.fastpartner[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@collective-media[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@educationcom.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@ehg-players.hitbox[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@fastclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@findology[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@hitbox[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@interclick[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@kontera[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@mtvn.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@revsci[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@search.findxml[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@server.cpmstar[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@totalbeauty.112.2o7[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@tracking.foxnews[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@tracking.hostgator[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@trafficmp[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@viacom.adbureau[1].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstbeacon[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@www.burstnet[2].txt
C:\Documents and Settings\NetworkService\Cookies\system@zedo[2].txt
GMER 1.0.15.15570 -
http://www.gmer.net
Rootkit scan 2011-03-27 09:30:54
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdePort0 FUJITSU_MHV2080AT_PL rev.008300A1
Running: r2koxvno.exe; Driver: C:\DOCUME~1\Ryan\LOCALS~1\Temp\agdirpoc.sys
---- System - GMER 1.0.15 ----
SSDT \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) ZwTerminateProcess [0xB2E18620]
---- User code sections - GMER 1.0.15 ----
.text C:\WINDOWS\System32\svchost.exe[1212] ntdll.dll!NtProtectVirtualMemory 7C90D6EE 5 Bytes JMP 006E000A
.text C:\WINDOWS\System32\svchost.exe[1212] ntdll.dll!NtWriteVirtualMemory 7C90DFAE 5 Bytes JMP 006F000A
.text C:\WINDOWS\System32\svchost.exe[1212] ntdll.dll!KiUserExceptionDispatcher 7C90E47C 5 Bytes JMP 006D000C
.text C:\WINDOWS\System32\svchost.exe[1212] USER32.dll!GetCursorPos 7E42974E 5 Bytes JMP 0184000A
.text C:\WINDOWS\System32\svchost.exe[1212] USER32.dll!WindowFromPoint 7E429766 5 Bytes JMP 01C0000A
.text C:\WINDOWS\System32\svchost.exe[1212] USER32.dll!GetForegroundWindow 7E429823 5 Bytes JMP 01E1000A
.text C:\WINDOWS\System32\svchost.exe[1212] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 00DD000A
.text C:\WINDOWS\Explorer.EXE[2064] ntdll.dll!NtProtectVirtualMemory 7C90D6EE 5 Bytes JMP 00CE000A
.text C:\WINDOWS\Explorer.EXE[2064] ntdll.dll!NtWriteVirtualMemory 7C90DFAE 5 Bytes JMP 00CF000A
.text C:\WINDOWS\Explorer.EXE[2064] ntdll.dll!KiUserExceptionDispatcher 7C90E47C 5 Bytes JMP 00CD000C
---- Devices - GMER 1.0.15 ----
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 EABFiltr.sys (QLB PS/2 Keyboard filter driver/Hewlett-Packard Development Company, L.P.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 EABFiltr.sys (QLB PS/2 Keyboard filter driver/Hewlett-Packard Development Company, L.P.)
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort0 8336B27F
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdePort1 8336B27F
Device \Driver\atapi -> DriverStartIo \Device\Ide\IdeDeviceP1T0L0-e 8336B27F
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device \Device\Ide\IdeDeviceP0T0L0-3 -> \??\IDE#DiskFUJITSU_MHV2080AT_PL____________________008300A1#5&1ca618f4&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b} device not found
---- Disk sectors - GMER 1.0.15 ----
Disk \Device\Harddisk0\DR0 TDL4@MBR code has been found <-- ROOTKIT !!!
Disk \Device\Harddisk0\DR0 sector 00: rootkit-like behavior
---- EOF - GMER 1.0.15 ----