SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 05/03/2009 at 05:42 PM
Application Version : 4.26.1002
Core Rules Database Version : 3875
Trace Rules Database Version: 1823
Scan type : Complete Scan
Total Scan Time : 01:18:03
Memory items scanned : 471
Memory threats detected : 4
Registry items scanned : 4624
Registry threats detected : 76
File items scanned : 344169
File threats detected : 77
Adware.Vundo/Variant-0201a
C:\WINDOWS\SYSTEM32\AHUYFSRR.DLL
C:\WINDOWS\SYSTEM32\AHUYFSRR.DLL
Adware.Vundo/Variant-F13
C:\WINDOWS\SYSTEM32\JFOKZM.DLL
C:\WINDOWS\SYSTEM32\JFOKZM.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{ea1723e4-f56e-4c13-b55d-bd419b257e98}
HKCR\CLSID\{EA1723E4-F56E-4C13-B55D-BD419B257E98}
HKCR\CLSID\{ea1723e4-f56e-4c13-b55d-bd419b257e98}\inprocserver32
HKCR\CLSID\{ea1723e4-f56e-4c13-b55d-bd419b257e98}\inprocserver32#ThreadingModel
C:\WINDOWS\SYSTEM32\PYYAUQQE.DLL
Trojan.Dropper/Sys-NV
C:\WINDOWS\SYSTEM32\NVRSK.DLL
C:\WINDOWS\SYSTEM32\NVRSK.DLL
Trojan.Vundo-Variant/Small-GEN
C:\WINDOWS\SYSTEM32\WVULLCDT.DLL
C:\WINDOWS\SYSTEM32\WVULLCDT.DLL
Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}
HKCR\CLSID\{6D794CB4-C7CD-4C6F-BFDC-9B77AFBDC02C}
HKCR\CLSID\{6D794CB4-C7CD-4C6F-BFDC-9B77AFBDC02C}\InprocServer32
HKCR\CLSID\{6D794CB4-C7CD-4C6F-BFDC-9B77AFBDC02C}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\RQRJATUS.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}
HKU\s-1-5-21-1659004503-1637723038-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D794CB4-C7CD-4C6F-BFDC-9B77AFBDC02C}
HKCR\CLSID\{6D794CB4-C7CD-4C6F-BFDC-9B77AFBDC02C}
Trojan.Vundo-Variant/NextGen
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ce12cb62-5ad7-466b-b9be-13148ffdfc62}
HKCR\CLSID\{CE12CB62-5AD7-466B-B9BE-13148FFDFC62}
HKCR\CLSID\{CE12CB62-5AD7-466B-B9BE-13148FFDFC62}\inprocserver32
HKCR\CLSID\{CE12CB62-5AD7-466B-B9BE-13148FFDFC62}\inprocserver32#ThreadingModel
Trojan.Downloader/ZLob
HKU\s-1-5-21-1659004503-1637723038-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\inprocserver32
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\inprocserver32#ThreadingModel
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\progid
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\programmable
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\typelib
HKCR\CLSID\{E7F15AC4-E0A9-43F0-921B-70DFEA621220}\versionindependentprogid
HKCR\y537.y537mgr.1
HKCR\y537.y537mgr.1\CLSID
HKCR\y537.y537mgr
HKCR\y537.y537mgr\CLSID
HKCR\y537.y537mgr\CurVer
HKCR\TypeLib\{E63648F7-3933-440E-AAAA-A8584DD7B7EB}
C:\WINDOWS\SYSTEM32\796525\796525.DLL
Trojan.Unknown Origin
HKLM\Software\AGProtect
HKLM\Software\AGProtect#Cfg
C:\WINDOWS\SYSTEM32\AZTON.MT
C:\WINDOWS\TEMP\C3775038.EXE
C:\XIPR.EXE
C:\XMRGYCJ.EXE
Trojan.DNSChanger-Codec
HKLM\Software\1
HKLM\Software\1#31AC70412E939D72A9234CDEBB1AF5867B
HKLM\Software\1#31897356954C2CD3D41B221E3F24F99BBA
HKLM\Software\1#31C2E1E4D78E6A11B88DFA803456A1FFA5
HKLM\Software\6
HKLM\Software\6#31AC70412E939D72A9234CDEBB1AF5867B
HKLM\Software\6#31897356954C2CD3D41B221E3F24F99BBA
HKLM\Software\6#31C2E1E4D78E6A11B88DFA803456A1FFA5
HKLM\Software\7
HKLM\Software\7#31AC70412E939D72A9234CDEBB1AF5867B
HKLM\Software\7#31897356954C2CD3D41B221E3F24F99BBA
HKLM\Software\7#31C2E1E4D78E6A11B88DFA803456A1FFA5
HKLM\Software\8
HKLM\Software\8#31AC70412E939D72A9234CDEBB1AF5867B
HKLM\Software\8#31897356954C2CD3D41B221E3F24F99BBA
HKLM\Software\8#31C2E1E4D78E6A11B88DFA803456A1FFA5
HKLM\Software\9
HKLM\Software\9#31AC70412E939D72A9234CDEBB1AF5867B
HKLM\Software\9#31897356954C2CD3D41B221E3F24F99BBA
HKLM\Software\9#31C2E1E4D78E6A11B88DFA803456A1FFA5
Trojan.VideoCach/Gen
HKCR\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}
HKCR\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}\ProxyStubClsid
HKCR\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}\ProxyStubClsid32
HKCR\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}\TypeLib
HKCR\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}\TypeLib#Version
HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}
HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\ProxyStubClsid
HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\ProxyStubClsid32
HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\TypeLib
HKCR\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}\TypeLib#Version
Adware.E404 Helper/Hij
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}\1.0
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}\1.0\0
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}\1.0\0\win32
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}\1.0\FLAGS
HKCR\TypeLib\{E63648F7-3933-440E-B4F6-A8584DD7B7EB}\1.0\HELPDIR
HKCR\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}
HKCR\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}\ProxyStubClsid
HKCR\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}\ProxyStubClsid32
HKCR\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}\TypeLib
HKCR\Interface\{F7D09218-46D7-4D3D-9B7F-315204CD0836}\TypeLib#Version
Adware.Vundo Variant/Rel
HKLM\SOFTWARE\Microsoft\FCOVM
HKLM\SOFTWARE\Microsoft\RemoveRP
Trojan.Unclassified/UserInit-Fake
C:\USERINIT.EXE
Unclassified.Unknown Origin/System
C:\WINDOWS\SYSTEM32\DIGEST32.DLL