Under Attack!

ID: Outerinfo.com adware silent installer
File under: Internet Explorer vulnerabilities.

C:\Documents and Settings\luser\Local Settings\Temporary Internet Files
Date: June 2007

Name Internet Address Type Size Expires Last Modified Last Accessed Last Checked
 as_noscript.php?name=vct  http://fc.webmasterpro.de/as_noscript.php?name=vct  HTML Document  1 KB  None  None  2007-06-25 06:26 PM  2007-06-25 06:26 PM
 MBDownloader_876919.exe  http://adxtend.net/MBDownloader_876919.exe  Application  100 KB  None  2007-06-07 06:31 AM  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 wr-1-2000219.exe  http://adxtend.net/wr-1-2000219.exe  Application  31 KB  None  2007-06-21 02:45 AM  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 is67678.exe  http://adxtend.net/is67678.exe  Application  38 KB  None  2007-06-18 02:44 PM  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 const.php  http://adxtend.net/code/const.php  HTML Document  1 KB  None  None  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 Outerinfo-1281.exe  http://adxtend.net/Outerinfo-1281.exe  Application  942 KB  None  2007-06-12 01:12 AM  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 snapsnet.exe  http://adxtend.net/snapsnet.exe  Application  108 KB  None  2007-06-12 03:20 AM  2007-06-25 06:25 PM  2007-06-25 06:25 PM
 list_test.asp&dc_aff_id=&keys=JavaScript;currency calculator;hard drive;text box&kids=5219;433089;2191;352236&iit=1;1;1;1&sids=8_1326;8_1009;400-7157;7753;400-7157;7753;400-400&index=0&cbl=0&ab=0&onf=1&omk=1&resultNum=1&time=5500&tag=0&dc_aff_id=&bt=1&tt=5189  http://te100.kontera.com/ContentLink/ContentLink?publisherId=5033&searchid=8&layout=adlinks&sId=187,142&cb=1182820720&creative=L&cn=us&pRfr=http%3A//www.jsmadeeasy.com/javascripts/Math%2520Related/list_test.asp&dc_aff_id=&keys=JavaScript;currency%20calculator;hard%20drive;text%20box&kids=5219;433089;2191;352236&iit=1;1;1;1&sids=8_1326;8_1009;400-7157;7753;400-7157;7753;400-400&index=0&cbl=0&ab=0&onf=1&omk=1&resultNum=1&time=5500&tag=0&dc_aff_id=&bt=1&tt=51891  HTML Document  8 KB  None  None  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 Cookie:luser@kontera.com/  Cookie:luser@kontera.com/  Text Document  1 KB  2008-06-24 06:18 PM  2007-06-25 06:20 PM  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 konaImagesRM.mht  http://kona.kontera.com/javascript/lib/imgs/konaImagesRM.mht  MHTML Document  134 KB  2007-06-25 08:53 PM  2007-06-11 08:37 AM  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 as_noscript.php?name=load3  http://fc.webmasterpro.de/as_noscript.php?name=load3  HTML Document  1 KB  None  None  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 list_test.asp&t=Javascript+Math+Related+Scripts+with+Example+Source+Code&m1=javascript+,+jsmadeeasy+,+script+,+source+code+,+code+,+source+,+online+,+internet+,+programing+,+DHMTL+,+Navi&i=14&n=0&dc_aff_id=&cl=0&mp=0&rm=1&st=0&rt=0  http://kona12.kontera.com/KonaGet.js?u=1182820760125&p=5033&k=WiaanFseymnertutAnuCutDLeMensdnMcteauitctounaoueeotl%3AaseCueheiooytspnrnfogbtl%21spnumDwbeapeaerau%A9iIE&al=1&l=http%3A//www.jsmadeeasy.com/javascripts/Math%2520Related/list_test.asp&t=Javascript+Math+Related+Scripts+with+Example+Source+Code&m1=javascript+%2C+jsmadeeasy+%2C+script+%2C+source+code+%2C+code+%2C+source+%2C+online+%2C+internet+%2C+programing+%2C+DHMTL+%2C+Navi&i=14&n=0&dc_aff_id=&cl=0&mp=0&rm=1&st=0&rt=0  HTML Document  1 KB  None  None  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 ?CodeDownloadErrorLog!name={AB9BCEDD-EC7E-47E1-9322-D4A210617116}  ?CodeDownloadErrorLog!name={AB9BCEDD-EC7E-47E1-9322-D4A210617116}  HTML Document  2 KB  None  2007-06-25 06:20 PM  2007-06-25 06:20 PM  2007-06-25 06:20 PM
 as_noscript.php?name=x3  http://fc.webmasterpro.de/as_noscript.php?name=x3  HTML Document  1 KB  None  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 Cookie:luser@microsoft.com/  Cookie:luser@microsoft.com/  Text Document  1 KB  2037-06-22 10:25 PM  2007-06-22 10:26 PM  2007-06-25 06:19 PM  2007-06-22 10:26 PM
 as_noscript.php?name=x2  http://fc.webmasterpro.de/as_noscript.php?name=x2  HTML Document  1 KB  None  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 Cookie:luser@www.iefjios.net/  Cookie:luser@www.iefjios.net/  Text Document  1 KB  2007-07-02 06:18 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 10296080-4.gif  http://www.yceml.net/0784/10296080-4.gif  GIF Image  12 KB  2007-06-27 03:01 PM  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 01  http://spe.atdmt.com/ds/7BBSFTOYOSCI/2007_SCION_PurePricing_120_600.swf?ver=1&clickTag1=http://media.fastclick.net/w/click.here?cid=80401;mid=158092;sid=18969;m=3;c=0;forced_click=http://clk.atdmt.com/go/vlclcsci0010003647bsf/direct;ai.26309337;ct.1/01&clickTag=http://media.fastclick.net/w/click.here?cid=80401;mid=158092;sid=18969;m=3;c=0;forced_click=http://clk.atdmt.com/go/vlclcsci0010003647bsf/direct;ai.26309337;ct.1/01  Flash Movie  28 KB  2007-06-26 06:05 PM  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 DocumentDotWrite.js  http://rmd.atdmt.com/tl/DocumentDotWrite.js  JScript Script File  1 KB  2007-06-29 06:33 PM  None  2007-06-25 06:19 PM  2007-06-23 09:20 PM
 mydish.jsp%3FWT.mc_id%3DCF00141  http://m1.2mdn.net/1104060/slide_overcable_180x150.swf?clickTag=http%3A//ad.doubleclick.net/click%253Bh%3Dv8/357d/f/5c/%252a/e%253B94297648%253B0-0%253B0%253B16531299%253B2928-180/150%253B20588081/20605975/1%253B%253B%257Esscs%253D%253fhttp%3A//media.fastclick.net/w/click.here%3Fcid%3D57044%26mid%3D147579%26sid%3D18969%26m%3D7%26c%3D0%26forced_click%3Dhttp%253a%252f%252fwww.dishtv.com/mydish.jsp%253FWT.mc_id%253DCF00141  Flash Movie  21 KB  None  2007-03-29 11:01 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 vcss.gif  http://www.miislita.com/searchito/images-marketing/vcss.gif  GIF Image  2 KB  None  2003-07-05 04:23 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 valid-xhtml11.gif  http://www.miislita.com/searchito/images-marketing/valid-xhtml11.gif  GIF Image  3 KB  None  2003-07-05 04:23 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 KonaGatewayCheck.js  http://kona.kontera.com/javascript/lib/KonaGatewayCheck.js  JScript Script File  3 KB  None  2007-06-06 01:10 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 KonaLib_RangeCoreRM.js?0000000020  http://kona.kontera.com/javascript/lib/KonaLib_RangeCoreRM.js?0000000020  JScript Script File  14 KB  None  2007-06-18 09:46 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 pr.css  http://www.miislita.com/css/pr.css  Cascading Style Sheet Document  7 KB  None  2007-05-21 09:25 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 right.js  http://www.miislita.com/searchito/sc-marketing/right.js  JScript Script File  3 KB  None  2007-06-14 05:58 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 KonaLibBaseRM.js?0000000020  http://kona.kontera.com/javascript/lib/KonaLibBaseRM.js?0000000020  JScript Script File  157 KB  None  2007-06-18 09:46 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 flashwrite_1_2.js  http://m1.2mdn.net/879366/flashwrite_1_2.js  JScript Script File  1 KB  None  2006-03-06 03:04 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 click.here?cid=57044&mid=147579&sid=18969&m=7&c=0&forced_click=;ord=20070626011757?  http://ad.doubleclick.net/adi/N2790.ValueClick/B2204150.2;sz=180x150;click=http://media.fastclick.net/w/click.here?cid=57044&mid=147579&sid=18969&m=7&c=0&forced_click=;ord=20070626011757?  HTML Document  4 KB  None  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 abg-en-100c-000000.png  http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png  PNG Image  1 KB  2007-06-27 06:19 PM  2007-05-03 01:40 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 javascript-math-faqs.html  http://www.miislita.com/searchito/javascript-math-faqs.html  HTML Document  26 KB  None  2007-05-15 07:43 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 KonaLibInline.js  http://kona.kontera.com/javascript/lib/KonaLibInline.js  JScript Script File  19 KB  None  2007-06-18 10:43 AM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 ads?client=ca-pub-7590227562986566&dt=1182820759718&lmt=1182820759&prev_fmts=468x15_0ads_al&format=180x150_as&output=html&correlator=1182820758890&url=http://www.jsmadeeasy.com/javascripts/Math%20Related/list_test.asp&color_bg=FFFFFF&color_text=000000&color_l  http://pagead2.googlesyndication.com/pagead/ads?client=ca-pub-7590227562986566&dt=1182820759718&lmt=1182820759&prev_fmts=468x15_0ads_al&format=180x150_as&output=html&correlator=1182820758890&url=http%3A%2F%2Fwww.jsmadeeasy.com%2Fjavascripts%2FMath%2520Related%2Flist_test.asp&color_bg=FFFFFF&color_text=000000&color_link=0000FF&color_url=008000&color_border=FFFFFF&ad_type=text_image&ref=http%3A%2F%2Fwww.google.com%2Fsearch%3Fhl%3Den%26q%3Djavascript%2Bmath&cc=316&flash=8&u_h=1024&u_w=1280&u_ah=960&u_aw=1280&u_cd=32&u_tz=-420&u_java=true  HTML Document  5 KB  None  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 Cookie:luser@jsmadeeasy.com/  Cookie:luser@jsmadeeasy.com/  Text Document  1 KB  2038-01-17 05:00 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 urchin.js  http://www.google-analytics.com/urchin.js  JScript Script File  21 KB  2007-06-27 03:57 PM  2007-06-18 04:00 PM  2007-06-25 06:19 PM  2007-06-20 03:57 PM
 Cookie:luser@doubleclick.net/  Cookie:luser@doubleclick.net/  Text Document  1 KB  2010-06-18 03:23 PM  2007-06-19 03:25 PM  2007-06-25 06:19 PM  2007-06-19 03:25 PM
 Cookie:luser@fastclick.net/  Cookie:luser@fastclick.net/  Text Document  1 KB  2009-06-24 06:17 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 Cookie:luser@atdmt.com/  Cookie:luser@atdmt.com/  Text Document  1 KB  2012-06-16 05:00 PM  2007-06-19 03:25 PM  2007-06-25 06:19 PM  2007-06-19 03:25 PM
 ypn.js  http://ypn-js.overture.com/partner/js/ypn.js  JScript Script File  7 KB  2007-06-26 06:19 PM  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 show_ads.js  http://pagead2.googlesyndication.com/pagead/show_ads.js  JScript Script File  13 KB  2007-06-27 06:19 PM  2007-06-18 03:49 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 ads?client=ca-pub-7590227562986566&dt=1182820758953&lmt=1182820758&alternate_ad_url=http://www.jsmadeeasy.com/shared/fastclick_468x60.htm&format=468x15_0ads_al&output=html&correlator=1182820758890&url=http://www.jsmadeeasy.com/javascripts/Math%20Related/list_  http://pagead2.googlesyndication.com/pagead/ads?client=ca-pub-7590227562986566&dt=1182820758953&lmt=1182820758&alternate_ad_url=http%3A%2F%2Fwww.jsmadeeasy.com%2Fshared%2Ffastclick_468x60.htm&format=468x15_0ads_al&output=html&correlator=1182820758890&url=http%3A%2F%2Fwww.jsmadeeasy.com%2Fjavascripts%2FMath%2520Related%2Flist_test.asp&color_bg=FFFFFF&color_text=000000&color_link=0000FF&color_url=008000&color_border=FFFFFF&ref=http%3A%2F%2Fwww.google.com%2Fsearch%3Fhl%3Den%26q%3Djavascript%2Bmath&cc=316&flash=8&u_h=1024&u_w=1280&u_ah=960&u_aw=1280&u_cd=32&u_tz=-420&u_java=true  HTML Document  5 KB  None  None  2007-06-25 06:19 PM  2007-06-25 06:19 PM
 dotomiNet.html  http://ads.dotomi.com/publisher/realtechnetwork/dotomiNet.html  HTML Document  6 KB  None  2007-06-20 04:12 PM  2007-06-25 06:19 PM  2007-06-25 06:19 PM

File:
Created by assafa@kontera.com ( kona.kontera.com )
Content-Location: file://C:\Documents%20and%20Settings\assafa\Desktop\JS-workDir\production\lib\imgs\mhtMakerRM.html

Exported Items Snapshot Created Using SysExporter, June 25 2007 by Liberty.