SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 05/03/2008 at 05:57 PM
Application Version : 4.0.1154
Core Rules Database Version : 3452
Trace Rules Database Version: 1444
Scan type : Complete Scan
Total Scan Time : 04:43:03
Memory items scanned : 951
Memory threats detected : 2
Registry items scanned : 6718
Registry threats detected : 14
File items scanned : 851832
File threats detected : 92
Trojan.Unclassified/Multi-Dropper
C:\PROGRAMDATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\FFUEVPOB\OHEJURQB.EXE
[ffuevpob] C:\PROGRAMDATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\PROGRAMDATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\APPLICATION DATA\FFUEVPOB\OHEJURQB.EXE
C:\USERS\ALL USERS\FFUEVPOB\OHEJURQB.EXE
Trojan.Unclassified/Multi-Dropper (Packed)
C:\PROGRAMDATA\EHUXGHGL\MLAHEVKZ.EXE
[JTNFda024Z] C:\PROGRAMDATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\DOCUMENTS AND SETTINGS\ALL USERS\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\PROGRAMDATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\APPLICATION DATA\EHUXGHGL\MLAHEVKZ.EXE
C:\USERS\ALL USERS\EHUXGHGL\MLAHEVKZ.EXE
Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{0656A137-B161-CADD-9777-E37A75727E78}
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\Classes\CLSID\{0656A137-B161-CADD-9777-E37A75727E78}
HKCR\CLSID\{0656A137-B161-CADD-9777-E37A75727E78}
Adware.Casino Games (Golden Palace Casino)
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\Golden Palace Casino PT
Trojan.DNSChanger-Codec
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\uninstall
Rogue.PC-Cleaner
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\dpcproxy
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\fwbd
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\HolLol
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\Inet Delivery
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\Invictus
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\mwc
HKU\S-1-5-21-1976649330-736865991-1343540341-1001\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad#SystemCheck2
C:\Users\Chad & Joe\Desktop\virii\Trojan-Downloader.Win32.Agent.bl.exe
C:\Users\Chad & Joe\Desktop\virii\Trojan-Downloader.Win32.Agent.p.exe
C:\Users\Chad & Joe\Desktop\virii\Trojan-Downloader.Win32.Agent.r.exe
C:\Users\Chad & Joe\Desktop\virii\Trojan-Downloader.Win32.Agent.t.exe
C:\Users\Chad & Joe\Desktop\virii\Trojan-Downloader.Win32.Agent.v.exe
C:\Users\Chad & Joe\Desktop\virii
C:\Users\Chad & Joe\Desktop\blackbird.jpg
C:\Users\Chad & Joe\Desktop\EditorFKWP2.0.exe
C:\Users\Chad & Joe\Desktop\filemanagerclient.exe
C:\Users\Chad & Joe\Desktop\fkwp1.5.exe
C:\Users\Chad & Joe\Desktop\fkwp2.0.exe
C:\Users\Chad & Joe\Desktop\fwebd.exe
C:\Users\Chad & Joe\Desktop\FWebdEditor.exe
C:\Users\Chad & Joe\Desktop\Trojan.Win32.BlackBird.exe