heres my logs from the programs
Nod32
27/05/2008 9:33:08 PM Real-time file system protection file C:\WINDOWS\system32\nxlrqsue.exe Win32/PrivacySet.B trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe.
"superantispyware"
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 05/27/2008 at 07:52 PM
Application Version : 4.1.1046
Core Rules Database Version : 3469
Trace Rules Database Version: 1460
Scan type : Complete Scan
Total Scan Time : 02:02:36
Memory items scanned : 171
Memory threats detected : 1
Registry items scanned : 5879
Registry threats detected : 13
File items scanned : 17754
File threats detected : 45
Adware.Vundo Variant/Resident
C:\WINDOWS\SYSTEM32\GEBSPNNL.DLL
C:\WINDOWS\SYSTEM32\GEBSPNNL.DLL
Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9}
HKCR\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9}
HKCR\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9}\InprocServer32
HKCR\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\SSQQJIYW.DLL
HKCR\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9}
Trojan.Vundo-Variant/Small
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91E9FA44-A61D-41A1-88ED-334BCA49E446}
HKCR\CLSID\{91E9FA44-A61D-41A1-88ED-334BCA49E446}
HKCR\CLSID\{91E9FA44-A61D-41A1-88ED-334BCA49E446}\InprocServer32
HKCR\CLSID\{91E9FA44-A61D-41A1-88ED-334BCA49E446}\InprocServer32#ThreadingModel
Adware.Tracking Cookie
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@burstnet[1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@tacoda[1].txt
C:\Documents and Settings\Zach\Cookies\zach@kontera[1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@hitbox[2].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@clickbank[2].txt
C:\Documents and Settings\Zach\Cookies\zach@casalemedia[1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@adrevolver[2].txt
C:\Documents and Settings\Zach\Cookies\zach@media6degrees[2].txt
C:\Documents and Settings\Zach\Cookies\zach@fastclick[1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@antispywaresuite[1].txt
C:\Documents and Settings\Zach\Cookies\zach@indextools[2].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@atdmt[2].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][1].txt
C:\Documents and Settings\Zach\Cookies\zach@overture[2].txt
C:\Documents and Settings\Zach\Cookies\zach@advertising[2].txt
C:\Documents and Settings\Zach\Cookies\zach@realmedia[2].txt
C:\Documents and Settings\Zach\Cookies\[email protected][2].txt
C:\Documents and Settings\Zach\Cookies\zach@doubleclick[1].txt
C:\Documents and Settings\Zach\Cookies\zach@tribalfusion[2].txt
C:\Documents and Settings\Zach\Cookies\zach@revsci[1].txt
C:\Documents and Settings\Zach\Cookies\zach@2o7[1].txt
C:\Documents and Settings\Zach\Cookies\[email protected][2].txt
C:\Documents and Settings\Zach\Cookies\[email protected][2].txt
C:\Documents and Settings\Zach\Cookies\zach@trafficmp[2].txt
C:\Documents and Settings\Zach\Cookies\zach@apmebf[2].txt
C:\Documents and Settings\Zach\Cookies\zach@mediaplex[2].txt
C:\Documents and Settings\Zach\Cookies\zach@atwola[1].txt
C:\Documents and Settings\Zach\Cookies\zach@adnetserver[1].txt
C:\Documents and Settings\Zach\Cookies\zach@questionmarket[1].txt
.2o7.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.revenue.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.kontera.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.kontera.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.fastclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.fastclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.fastclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.doubleclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.fastclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.fastclick.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.apmebf.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.toplist.cz [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
2.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
www.madtracker.org [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
www.madtracker.org [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.madtracker.org [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.madtracker.org [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
eas.apm.emediate.eu [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
eas.apm.emediate.eu [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
eas.apm.emediate.eu [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.media6degrees.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.media6degrees.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.e-2dj6wgkosodjagp.stats.esomniture.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
4.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
4.adbrite.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ad1.clickhype.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
www.googleadservices.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads.revsci.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
www.googleadservices.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
digitalmedia.oreilly.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
clicktorrent.info [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads3.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads2.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads3.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads4.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tremor.adbureau.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.tremor.adbureau.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads4.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
ads4.blastro.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
tremor.adbureau.net [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.soundclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.soundclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
.soundclick.com [ C:\Documents and Settings\Zach\Application Data\Mozilla\Firefox\Profiles\74lnn0fq.default\cookies.txt ]
Adware.Vundo Variant/Rel
HKLM\SOFTWARE\Microsoft\aoprndtws
HKLM\SOFTWARE\Microsoft\FCOVM
HKLM\SOFTWARE\Microsoft\RemoveRP
HKU\S-1-5-21-3555808789-2655381727-310253540-1008\Software\Microsoft\rdfa
Trojan.Vundo-Variant/F
C:\WINDOWS\SYSTEM32\LJJDTQQH.DLL
C:\WINDOWS\SYSTEM32\VTUNKIJD.DLL
Trojan.Vundo-Variant/Small-GEN
C:\WINDOWS\SYSTEM32\URQQJHWT.DLL
i dont know who messed with my comp but, i think it might have been my bro...somethings wrong with it
i cant get the other logs because they arent there anymore......i just dont know what direction to go in now
ohh yea and it said i had a "tenga" virus also...this all started when i downloaded a free desktop theme called "greenerytheme" now that i remember that
i run winxp pro sp2, intell core duo processor 140 gigs hd and 1 gig of ram
Edited by blitzzy, 28 May 2008 - 12:37 AM.