Ad-Aware SE Build 1.06r1 Logfile Created on:Tuesday, July 12, 2005 2:21:41 PM Created with Ad-Aware SE Personal, free for private use. Using definitions file:SE1R53 07.07.2005 »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» References detected during the scan: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» AltnetBDE(TAC index:4):19 total references Claria(TAC index:7):100 total references Coulomb Dialer(TAC index:5):1 total references eUniverse(TAC index:10):11 total references MRU List(TAC index:0):36 total references Other(TAC index:5):1 total references »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Definition File: ========================= Definitions File Loaded: Reference Number : SE1R47 24.05.2005 Internal build : 55 File location : C:\PROGRA~1\Lavasoft\AD-AWA~1\defs.ref File size : 476246 Bytes Total size : 1439523 Bytes Signature data size : 1408291 Bytes Reference data size : 30720 Bytes Signatures total : 40174 CSI Fingerprints total : 886 CSI data size : 30371 Bytes Target categories : 15 Target families : 679 7-12-2005 2:17:13 PM Performing WebUpdate... Installing Update... Definitions File Loaded: Reference Number : SE1R53 07.07.2005 Internal build : 62 File location : C:\PROGRA~1\Lavasoft\AD-AWA~1\defs.ref File size : 488774 Bytes Total size : 1479419 Bytes Signature data size : 1447409 Bytes Reference data size : 31498 Bytes Signatures total : 41230 CSI Fingerprints total : 943 CSI data size : 32889 Bytes Target categories : 15 Target families : 704 7-12-2005 2:17:23 PM Success Update successfully downloaded and installed. Memory + processor status: ========================== Number of processors : 1 Processor architecture : Intel Pentium IV Memory available:34 % Total physical memory:260592 kb Available physical memory:86368 kb Total page file size:638284 kb Available on page file:360920 kb Total virtual memory:2097024 kb Available virtual memory:2044104 kb OS:Microsoft Windows XP Home Edition Service Pack 2 (Build 2600) Ad-Aware SE Settings =========================== Set : Search for negligible risk entries Set : Safe mode (always request confirmation) Set : Scan active processes Set : Scan registry Set : Deep-scan registry Set : Scan my IE Favorites for banned URLs Set : Scan within archives Set : Scan my Hosts file Extended Ad-Aware SE Settings =========================== Set : Unload recognized processes & modules during scan Set : Obtain command line of scanned processes Set : Scan registry for all users instead of current user only Set : Always try to unload modules before deletion Set : During removal, unload Explorer and IE if necessary Set : Let Windows remove files in use at next reboot Set : Delete quarantined objects after restoring Set : Write-protect system files after repair (Hosts file, etc.) Set : Include basic Ad-Aware settings in log file Set : Include additional Ad-Aware settings in log file Set : Include reference summary in log file Set : Include alternate data stream details in log file Set : Play sound at scan completion if scan locates critical objects 7-12-2005 2:21:41 PM - Scan started. (Custom mode) Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] ModuleName : \SystemRoot\System32\smss.exe Command Line : n/a ProcessID : 384 ThreadCreationTime : 7-12-2005 6:03:04 PM BasePriority : Normal #:2 [csrss.exe] ModuleName : \??\C:\WINDOWS\system32\csrss.exe Command Line : C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestTh ProcessID : 432 ThreadCreationTime : 7-12-2005 6:03:07 PM BasePriority : Normal #:3 [winlogon.exe] ModuleName : \??\C:\WINDOWS\system32\winlogon.exe Command Line : winlogon.exe ProcessID : 456 ThreadCreationTime : 7-12-2005 6:03:08 PM BasePriority : High #:4 [services.exe] ModuleName : C:\WINDOWS\system32\services.exe Command Line : C:\WINDOWS\system32\services.exe ProcessID : 500 ThreadCreationTime : 7-12-2005 6:03:08 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Services and Controller app InternalName : services.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : services.exe #:5 [lsass.exe] ModuleName : C:\WINDOWS\system32\lsass.exe Command Line : C:\WINDOWS\system32\lsass.exe ProcessID : 512 ThreadCreationTime : 7-12-2005 6:03:09 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : LSA Shell (Export Version) InternalName : lsass.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : lsass.exe #:6 [svchost.exe] ModuleName : C:\WINDOWS\system32\svchost.exe Command Line : C:\WINDOWS\system32\svchost -k DcomLaunch ProcessID : 660 ThreadCreationTime : 7-12-2005 6:03:09 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:7 [svchost.exe] ModuleName : C:\WINDOWS\system32\svchost.exe Command Line : C:\WINDOWS\system32\svchost -k rpcss ProcessID : 716 ThreadCreationTime : 7-12-2005 6:03:10 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:8 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k netsvcs ProcessID : 784 ThreadCreationTime : 7-12-2005 6:03:10 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:9 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k NetworkService ProcessID : 836 ThreadCreationTime : 7-12-2005 6:03:10 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:10 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k LocalService ProcessID : 936 ThreadCreationTime : 7-12-2005 6:03:11 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:11 [explorer.exe] ModuleName : C:\WINDOWS\Explorer.EXE Command Line : C:\WINDOWS\Explorer.EXE ProcessID : 1156 ThreadCreationTime : 7-12-2005 6:03:13 PM BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows Explorer InternalName : explorer LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : EXPLORER.EXE #:12 [spoolsv.exe] ModuleName : C:\WINDOWS\system32\spoolsv.exe Command Line : C:\WINDOWS\system32\spoolsv.exe ProcessID : 1232 ThreadCreationTime : 7-12-2005 6:03:13 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Spooler SubSystem App InternalName : spoolsv.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : spoolsv.exe #:13 [cisvc.exe] ModuleName : C:\WINDOWS\system32\cisvc.exe Command Line : C:\WINDOWS\system32\cisvc.exe ProcessID : 1356 ThreadCreationTime : 7-12-2005 6:03:14 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Content Index service InternalName : cisvc.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : cisvc.exe #:14 [mcvsrte.exe] ModuleName : c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe Command Line : c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe /Embedding ProcessID : 1392 ThreadCreationTime : 7-12-2005 6:03:14 PM BasePriority : Normal FileVersion : 4, 4, 0, 10 ProductVersion : 4, 4, 0, 0 ProductName : McAfee.com VirusScan Online CompanyName : Mcafee.com Corporation FileDescription : McAfee.com VirusScan Online Realtime Engine InternalName : mcvsrte LegalCopyright : Copyright © 1998-2002 McAfee.com Corporation OriginalFilename : mcvsrte.exe #:15 [svchost.exe] ModuleName : C:\WINDOWS\System32\svchost.exe Command Line : C:\WINDOWS\System32\svchost.exe -k imgsvc ProcessID : 1480 ThreadCreationTime : 7-12-2005 6:03:15 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:16 [hkcmd.exe] ModuleName : C:\WINDOWS\System32\hkcmd.exe Command Line : "C:\WINDOWS\System32\hkcmd.exe" ProcessID : 1824 ThreadCreationTime : 7-12-2005 6:03:17 PM BasePriority : Normal FileVersion : 3,0,0,1715 ProductVersion : 7,0,0,1715 ProductName : Intel(R) Common User Interface CompanyName : Intel Corporation FileDescription : hkcmd Module InternalName : HKCMD LegalCopyright : Copyright 1999-2002, Intel Corporation OriginalFilename : HKCMD.EXE #:17 [dsentry.exe] ModuleName : C:\WINDOWS\System32\DSentry.exe Command Line : "C:\WINDOWS\System32\DSentry.exe" ProcessID : 1832 ThreadCreationTime : 7-12-2005 6:03:17 PM BasePriority : Normal FileVersion : 1, 0, 2, 0 ProductVersion : 1, 0, 2, 0 ProductName : Dell - DVDSentry CompanyName : Dell - Advanced Desktop Engineering FileDescription : DVDSentry InternalName : DVDSentry LegalCopyright : Copyright © 2002 Dell OriginalFilename : DSentry.exe Comments : DVDSentry launches your software DVD player when a DVD is inserted. #:18 [mm_tray.exe] ModuleName : C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe Command Line : "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" ProcessID : 1840 ThreadCreationTime : 7-12-2005 6:03:17 PM BasePriority : Normal FileVersion : 9.00.2063 ProductVersion : 9.00.2063 ProductName : Musicmatch Jukebox CompanyName : Musicmatch, Inc. FileDescription : mm_tray InternalName : mm_tray LegalCopyright : Copyright © Musicmatch 1998-2004 LegalTrademarks : OriginalFilename : mm_tray.exe #:19 [mcagent.exe] ModuleName : C:\Program Files\McAfee.com\Agent\mcagent.exe Command Line : "C:\Program Files\McAfee.com\Agent\mcagent.exe" ProcessID : 1848 ThreadCreationTime : 7-12-2005 6:03:17 PM BasePriority : Normal FileVersion : 4, 0, 0, 26 ProductVersion : 4, 1, 0, 0 ProductName : McAfee.com SecurityCenter CompanyName : McAfee.com Corporation FileDescription : McAfee.com SecurityCenter Agent InternalName : mcagent LegalCopyright : Copyright © 1998-2002 McAfee.com Corporation OriginalFilename : mcagent.exe #:20 [directcd.exe] ModuleName : C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe Command Line : "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" ProcessID : 1868 ThreadCreationTime : 7-12-2005 6:03:18 PM BasePriority : Normal FileVersion : 5.2.0.91 ProductVersion : 5.2.0.91 ProductName : DirectCD CompanyName : Roxio FileDescription : DirectCD Application InternalName : DirectCD LegalCopyright : Copyright (c) 2001-2002, Roxio, Inc. OriginalFilename : Directcd.exe #:21 [mcvsshld.exe] ModuleName : C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe Command Line : "C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe" ProcessID : 1880 ThreadCreationTime : 7-12-2005 6:03:18 PM BasePriority : Normal FileVersion : 4, 4, 0, 10 ProductVersion : 4, 4, 0, 0 ProductName : McAfee.com VirusScan Online CompanyName : Mcafee.com Corporation FileDescription : McAfee.com ActiveShield InternalName : msvcshld LegalCopyright : Copyright © 1998-2002 McAfee.com Corporation OriginalFilename : mcvsshld.exe #:22 [wkufind.exe] ModuleName : C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe Command Line : "C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" ProcessID : 1888 ThreadCreationTime : 7-12-2005 6:03:18 PM BasePriority : Normal FileVersion : 7.00.0716.0 ProductVersion : 7.00.0716.0 ProductName : Update Detection Module CompanyName : Microsoft® Corporation FileDescription : Microsoft® Works Update Detection InternalName : WkUFind LegalCopyright : Copyright © 1987-2002 Microsoft Corporation. OriginalFilename : WkUFind.exe #:23 [hpgs2wnd.exe] ModuleName : C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe Command Line : "C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" ProcessID : 1960 ThreadCreationTime : 7-12-2005 6:03:19 PM BasePriority : Normal FileVersion : 2,3,0,0\ 162 ProductVersion : 2,3,0,0\ 162 ProductName : Hewlett-Packard hpgs2wnd CompanyName : Hewlett-Packard FileDescription : hpgs2wnd InternalName : hpgs2wnd LegalCopyright : Copyright © 2001 OriginalFilename : hpgs2wnd.exe #:24 [hpqcmon.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe" ProcessID : 1968 ThreadCreationTime : 7-12-2005 6:03:19 PM BasePriority : Normal FileVersion : 2.0.0.133 ProductVersion : 2.0.0.133 ProductName : HpqCmon Application FileDescription : HpqCmon MFC Application InternalName : HpqCmon LegalCopyright : Copyright (C) 2001 OriginalFilename : HpqCmon.EXE #:25 [qttask.exe] ModuleName : C:\Program Files\QuickTime\qttask.exe Command Line : "C:\Program Files\QuickTime\qttask.exe" -atboottime ProcessID : 1976 ThreadCreationTime : 7-12-2005 6:03:19 PM BasePriority : Normal FileVersion : 6.3 ProductVersion : QuickTime 6.3 ProductName : QuickTime CompanyName : Apple Computer, Inc. InternalName : QuickTime Task LegalCopyright : © Apple Computer, Inc. 2001-2003 OriginalFilename : QTTask.exe #:26 [aolsp scheduler.exe] ModuleName : C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe Command Line : "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe" ProcessID : 1992 ThreadCreationTime : 7-12-2005 6:03:20 PM BasePriority : Normal FileVersion : 1, 0, 0, 69 ProductVersion : 1, 0, 0, 69 ProductName : AOLSP Scheduler FileDescription : AOLSP Scheduler InternalName : AOLSP Scheduler LegalCopyright : Copyright (C) America Online, Inc. 2004 OriginalFilename : AOLSP Scheduler.exe #:27 [realsched.exe] ModuleName : C:\Program Files\Common Files\Real\Update_OB\realsched.exe Command Line : "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot ProcessID : 2032 ThreadCreationTime : 7-12-2005 6:03:20 PM BasePriority : Normal FileVersion : 0.1.0.3208 ProductVersion : 0.1.0.3208 ProductName : RealPlayer (32-bit) CompanyName : RealNetworks, Inc. FileDescription : RealNetworks Scheduler InternalName : schedapp LegalCopyright : Copyright © RealNetworks, Inc. 1995-2004 LegalTrademarks : RealAudio(tm) is a trademark of RealNetworks, Inc. OriginalFilename : realsched.exe #:28 [mmtask.exe] ModuleName : C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe Command Line : "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe" ProcessID : 2040 ThreadCreationTime : 7-12-2005 6:03:20 PM BasePriority : Normal FileVersion : 9.0.0.1 ProductVersion : 9.0.0.1 ProductName : Musicmatch Jukebox CompanyName : Musicmatch Inc. FileDescription : InternalName : mmtask.exe LegalCopyright : (c) Musicmatch Inc.. All rights reserved. OriginalFilename : mmtask.exe #:29 [ebaytbdaemon.exe] ModuleName : C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe Command Line : "C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe" ProcessID : 156 ThreadCreationTime : 7-12-2005 6:03:20 PM BasePriority : Normal FileVersion : 2, 0, 6, 0 ProductVersion : 2, 0, 6, 0 ProductName : eBay Toolbar Daemon CompanyName : eBay FileDescription : eBay Toolbar Daemon InternalName : eBayTBDa LegalCopyright : Copyright (C) eBay Inc. 2005 OriginalFilename : eBayTBDa.exe #:30 [viewmgr.exe] ModuleName : C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe Command Line : "C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe" ProcessID : 148 ThreadCreationTime : 7-12-2005 6:03:21 PM BasePriority : Normal FileVersion : 2, 0, 0, 42 ProductVersion : 2, 0, 0, 42 ProductName : Viewpoint Manager CompanyName : Viewpoint Corporation FileDescription : ViewMgr InternalName : Viewpoint Manager LegalCopyright : Copyright © 2004 OriginalFilename : ViewMgr.exe Comments : Viewpoint Manager #:31 [hpgs2wnf.exe] ModuleName : C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe Command Line : "C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe" -Embedding ProcessID : 248 ThreadCreationTime : 7-12-2005 6:03:21 PM BasePriority : Normal FileVersion : 2, 6, 0, 162 ProductVersion : 2, 6, 0, 162 ProductName : hpgs2wnf Module FileDescription : hpgs2wnf Module InternalName : hpgs2wnf LegalCopyright : Copyright 2001 OriginalFilename : hpgs2wnf.EXE #:32 [msmsgs.exe] ModuleName : C:\Program Files\Messenger\msmsgs.exe Command Line : "C:\Program Files\Messenger\msmsgs.exe" /background ProcessID : 300 ThreadCreationTime : 7-12-2005 6:03:22 PM BasePriority : Normal FileVersion : 4.7.3001 ProductVersion : Version 4.7.3001 ProductName : Messenger CompanyName : Microsoft Corporation FileDescription : Windows Messenger InternalName : msmsgs LegalCopyright : Copyright (c) Microsoft Corporation 2004 LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries. OriginalFilename : msmsgs.exe #:33 [dsagnt.exe] ModuleName : C:\Program Files\Dell Support\DSAgnt.exe Command Line : "C:\Program Files\Dell Support\DSAgnt.exe" /startup ProcessID : 344 ThreadCreationTime : 7-12-2005 6:03:23 PM BasePriority : Below Normal FileVersion : 1, 1, 0, 73 ProductVersion : 1, 1, 0, 73 ProductName : Dell Support CompanyName : Gteko Ltd. FileDescription : Dell Support InternalName : AUAgent LegalCopyright : Copyright (C) 2000 - 2004 Gteko Ltd. OriginalFilename : AUAgent.exe #:34 [kazaa.exe] ModuleName : C:\Program Files\Kazaa\kazaa.exe Command Line : "C:\Program Files\Kazaa\kazaa.exe" /SYSTRAY ProcessID : 368 ThreadCreationTime : 7-12-2005 6:03:24 PM BasePriority : Normal FileVersion : 2, 7, 2, 0 ProductVersion : 2, 7, 2, 0 ProductName : Kazaa CompanyName : Sharman Networks FileDescription : Kazaa InternalName : kazaa LegalCopyright : Copyright (C) 2002-2004 OriginalFilename : Kazaa.exe #:35 [dlg.exe] ModuleName : C:\Program Files\Digital Line Detect\DLG.exe Command Line : "C:\Program Files\Digital Line Detect\DLG.exe" ProcessID : 436 ThreadCreationTime : 7-12-2005 6:03:27 PM BasePriority : Normal FileVersion : 1, 0, 0, 1 ProductVersion : 1, 0, 0, 1 ProductName : BVRP Software TestLine CompanyName : BVRP Software FileDescription : Digital Line Detection InternalName : TestLine LegalCopyright : Copyright © 2001 OriginalFilename : TestLine.exe #:36 [hpomau08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpomau08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpomau08.exe" ProcessID : 516 ThreadCreationTime : 7-12-2005 6:03:27 PM BasePriority : Normal FileVersion : 4.2.0.020 ProductVersion : 2.4.1.020 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet COM Device Objects InternalName : HPOMAU08 LegalCopyright : Copyright (C) Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOMAU08.EXE Comments : HP OfficeJet Series COM Device Objects #:37 [hpotdd01.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe" ProcessID : 692 ThreadCreationTime : 7-12-2005 6:03:27 PM BasePriority : Normal FileVersion : 1, 0, 0, 1 ProductVersion : 1, 0, 0, 1 ProductName : Hewlett-Packard hpotdd01 CompanyName : Hewlett-Packard FileDescription : hpotdd01 InternalName : hpotdd01 LegalCopyright : Copyright © 2002 OriginalFilename : hpotdd01.exe #:38 [hpoevm08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe" -Embedding ProcessID : 1368 ThreadCreationTime : 7-12-2005 6:03:33 PM BasePriority : Normal FileVersion : 4.2.0.020 ProductVersion : 2.4.1.020 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet COM Event Manager InternalName : HPOEVM08 LegalCopyright : Copyright (C) Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOEVM08.EXE Comments : HP OfficeJet COM Event Manager #:39 [mcshield.exe] ModuleName : c:\PROGRA~1\mcafee.com\vso\mcshield.exe Command Line : c:\PROGRA~1\mcafee.com\vso\mcshield.exe ProcessID : 2396 ThreadCreationTime : 7-12-2005 6:04:42 PM BasePriority : High #:40 [wscntfy.exe] ModuleName : C:\WINDOWS\system32\wscntfy.exe Command Line : C:\WINDOWS\system32\wscntfy.exe ProcessID : 2624 ThreadCreationTime : 7-12-2005 6:04:47 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows Security Center Notification App InternalName : wscntfy.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : wscntfy.exe #:41 [hpzipm12.exe] ModuleName : C:\WINDOWS\System32\HPZipm12.exe Command Line : C:\WINDOWS\System32\HPZipm12.exe ProcessID : 2768 ThreadCreationTime : 7-12-2005 6:04:49 PM BasePriority : Normal FileVersion : 6, 0, 0, 0 ProductVersion : 6, 0, 0, 0 ProductName : HP PML CompanyName : HP FileDescription : PML Driver InternalName : PmlDrv LegalCopyright : Copyright © 1998, 1999 Hewlett-Packard Company OriginalFilename : PmlDrv.exe #:42 [alg.exe] ModuleName : C:\WINDOWS\System32\alg.exe Command Line : C:\WINDOWS\System32\alg.exe ProcessID : 2860 ThreadCreationTime : 7-12-2005 6:04:55 PM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Application Layer Gateway Service InternalName : ALG.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : ALG.exe #:43 [hposts08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe" /CtxID "#Hewlett-Packard#hp officejet 4100 series#1087326097" /Startup ProcessID : 3824 ThreadCreationTime : 7-12-2005 6:06:31 PM BasePriority : Normal FileVersion : 4.2.0.020 ProductVersion : 2.4.1.020 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP OfficeJet Status InternalName : HPOSTS08 LegalCopyright : Copyright (C) Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOSTS08.EXE Comments : HP OfficeJet Status #:44 [hpofxm08.exe] ModuleName : C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoFXM08.exe Command Line : "C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoFXM08.exe" /CtxID "#Hewlett-Packard#hp officejet 4100 series#1087326097" ProcessID : 3932 ThreadCreationTime : 7-12-2005 6:06:41 PM BasePriority : Normal FileVersion : 4.2.0.020 ProductVersion : 2.4.1.020 ProductName : hp digital imaging - hp all-in-one series CompanyName : Hewlett-Packard Co. FileDescription : HP AiO Fax Manager InternalName : HPOFXM08 LegalCopyright : Copyright (C) Hewlett-Packard Co. 1995-2001 OriginalFilename : HPOFXM08.EXE Comments : HP AiO Fax Manager #:45 [cidaemon.exe] ModuleName : C:\WINDOWS\system32\cidaemon.exe Command Line : "cidaemon.exe" DownLevelDaemon "c:\system volume information\catalog.wci" 196672l 1356l ProcessID : 1804 ThreadCreationTime : 7-12-2005 6:10:55 PM BasePriority : Idle FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Indexing Service filter daemon InternalName : cidaemon.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : cidaemon.exe #:46 [iexplore.exe] ModuleName : C:\Program Files\Internet Explorer\iexplore.exe Command Line : "C:\Program Files\Internet Explorer\iexplore.exe" ProcessID : 2656 ThreadCreationTime : 7-12-2005 6:13:53 PM BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Internet Explorer InternalName : iexplore LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : IEXPLORE.EXE #:47 [ad-aware.exe] ModuleName : C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Aware.exe Command Line : "C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Aware.exe" +483832 ProcessID : 3748 ThreadCreationTime : 7-12-2005 6:17:02 PM BasePriority : Normal FileVersion : 6.2.0.236 ProductVersion : SE 106 ProductName : Lavasoft Ad-Aware SE CompanyName : Lavasoft Sweden FileDescription : Ad-Aware SE Core application InternalName : Ad-Aware.exe LegalCopyright : Copyright © Lavasoft AB Sweden OriginalFilename : Ad-Aware.exe Comments : All Rights Reserved Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Claria Object Recognized! Type : Regkey Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : GMI64 Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : GEF Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : GMG Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : uets Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : GMI Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : SSeq Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : SEvt Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : SiSeq Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Value : SiH Claria Object Recognized! Type : Regkey Data : TAC Rating : 7 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\gator.com AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\altnet AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\appid\adm.exe AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\appid\altnet signing module.exe AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\appid\{8b0fef15-54dc-49f5-8377-8172de975f75} AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\clsid\{9bbcf06c-dcd7-495d-80df-cdd5399d0ff8} AltnetBDE Object Recognized! Type : RegValue Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\clsid\{9bbcf06c-dcd7-495d-80df-cdd5399d0ff8} Value : AppID AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\microsoft\windows\currentversion\uninstall\altnetdm AltnetBDE Object Recognized! Type : RegValue Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\microsoft\windows\currentversion\uninstall\altnetdm Value : UnInstallString eUniverse Object Recognized! Type : Regkey Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : EXEName eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : VersionNumber eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : cid eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : installDate eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : puid eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\searchupgrader Value : LastUpdateAttempt Claria Object Recognized! Type : RegValue Data : TAC Rating : 7 Category : Data Miner Comment : "CMESys" Rootkey : HKEY_LOCAL_MACHINE Object : software\microsoft\windows\currentversion\run Value : CMESys Registry Scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 27 Objects found so far: 27 Started deep registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» eUniverse Object Recognized! Type : RegValue Data : TAC Rating : 10 Category : Data Miner Comment : "SearchUpgrader" Rootkey : HKEY_LOCAL_MACHINE Object : Software\Microsoft\Windows\CurrentVersion\Run Value : SearchUpgrader eUniverse Object Recognized! Type : File Data : searchupgrader.exe TAC Rating : 10 Category : Data Miner Comment : Object : c:\program files\common files\searchupgrader\ FileVersion : 1, 5, 6, 0 ProductVersion : 1, 5, 6, 0 ProductName : SearchUpgrader FileDescription : Application InternalName : SearchUpgrader Deep registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 1 Objects found so far: 29 MRU List Object Recognized! Location: : C:\Documents and Settings\Paige Neeley\Application Data\microsoft\office\recent Description : list of recently opened documents using microsoft office MRU List Object Recognized! Location: : C:\Documents and Settings\Paige Neeley\recent Description : list of recently opened documents MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\10.0\common\open find\microsoft word\settings\open\file name mru Description : list of recent documents opened by microsoft word MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\10.0\common\open find\microsoft word\settings\save as\file name mru Description : list of recent documents saved by microsoft word MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\9.0\common\open find\microsoft word\settings\open\file name mru Description : list of recent documents opened by microsoft word MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\9.0\common\open find\microsoft word\settings\save as\file name mru Description : list of recent documents saved by microsoft word MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\internet explorer\main Description : last save directory used in microsoft internet explorer MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct3d MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct X MRU List Object Recognized! Location: : software\microsoft\directdraw\mostrecentapplication Description : most recent application to use microsoft directdraw MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\directinput\mostrecentapplication Description : most recent application to use microsoft directinput MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\mediaplayer\preferences Description : last playlist index loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\mediaplayer\preferences Description : last playlist loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\windows\currentversion\applets\regedit Description : last key accessed using the microsoft registry editor MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\directinput\mostrecentapplication Description : most recent application to use microsoft directinput MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\internet explorer Description : last download directory used in microsoft internet explorer MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\realnetworks\realplayer\6.0\preferences Description : list of recent skins in realplayer MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\realnetworks\realplayer\6.0\preferences Description : list of recent clips in realplayer MRU List Object Recognized! Location: : software\musicmatch\musicmatch jukebox\4.0\mmradio Description : information on the last station listened to using musicmatch radio MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\realnetworks\realplayer\6.0\preferences Description : last login time in realplayer MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\kazaa\search Description : list of recent searches performed with sharman networks kazaa MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\clipart gallery\2.0\mrudescription Description : most recently used description in microsoft clipart gallery MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\mediaplayer\player\recentfilelist Description : list of recently used files in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\microsoft management console\recent file list Description : list of recent snap-ins used in the microsoft management console MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\9.0\excel\recent files Description : list of recent files used by microsoft excel MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\9.0\powerpoint\recent file list Description : list of recent files used by microsoft powerpoint MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\office\9.0\publisher\recent file list Description : list of recent files used by microsoft publisher MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru Description : list of recent programs opened MRU List Object Recognized! Location: : software\musicmatch\musicmatch jukebox\4.0\fileconv Description : file conversion location settings in musicmatch jukebox MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\adobe\acrobat reader\6.0\avgeneral\crecentfiles Description : list of recently used files in adobe reader MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\search assistant\acmru Description : list of recent search terms used with the search assistant MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru Description : list of recently saved files, stored according to file extension MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\windows\currentversion\explorer\recentdocs Description : list of recent documents opened MRU List Object Recognized! Location: : .DEFAULT\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Location: : S-1-5-18\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Location: : S-1-5-21-759141220-2351162563-1872517104-1006\software\microsoft\windows media\wmsdk\general Description : windows media sdk Started Tracking Cookie scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Tracking cookie scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 65 Deep scanning and examining files (C:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Claria Object Recognized! Type : File Data : CMEIIAPI.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMEIIAPI.DLL LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : CMEIIAPI.DLL Claria Object Recognized! Type : File Data : CMESys.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMESys.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : CMESys.exe Claria Object Recognized! Type : File Data : GAppMgr.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GAppMgr.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GAppMgr.dll Claria Object Recognized! Type : File Data : GController.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GController.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GController.dll Claria Object Recognized! Type : File Data : GDwldEng.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GDlwdEng.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GDlwdEng.dll Claria Object Recognized! Type : File Data : GIocl.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIocl.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GIocl.dll Claria Object Recognized! Type : File Data : GIoclClient.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIoclClient.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GIoclClient.dll Claria Object Recognized! Type : File Data : GMTProxy.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GMTProxy.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GMTProxy.dll Claria Object Recognized! Type : File Data : GObjs.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GObjs.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GObjs.dll Claria Object Recognized! Type : File Data : GStore.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStore.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GStore.dll Claria Object Recognized! Type : File Data : GStoreServer.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStoreServer.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GStoreServer.dll Claria Object Recognized! Type : File Data : Gtools.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\CMEII\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GTools.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GTools.dll Claria Object Recognized! Type : File Data : lqfrcmlpq.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\dtnfnabd\dmrbsrfbto\ Claria Object Recognized! Type : File Data : rffacltr.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\dtnfnabd\fldbulnf\ Claria Object Recognized! Type : File Data : EGGCEngine.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGGCEngine Dynamic Link Library InternalName : EGGCEngine dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGGCEngine dll Claria Object Recognized! Type : File Data : egIEEngine.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : egIEClient Dynamic Link Library InternalName : egIEClient.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : egIEClient.dll Claria Object Recognized! Type : File Data : EGIEProcess.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGIEProcess Dynamic Link Library InternalName : EGIEProcess dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGIEProcess dll Claria Object Recognized! Type : File Data : EGNSEngine.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGNSEngine Dynamic Link Library InternalName : EGNSEngine dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGNSEngine dll Claria Object Recognized! Type : File Data : GatorRes.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GatorRes Dynamic Link Library InternalName : GatorRes DLL LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GatorRes DLL Claria Object Recognized! Type : File Data : GatorStubSetup.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : Gator Client Application InternalName : Gator.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : Gator.exe Claria Object Recognized! Type : File Data : GMT.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GAIN Application InternalName : GMT.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GMT.exe Claria Object Recognized! Type : File Data : GUninstaller.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\GMT\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GAIN Uninstaller applet InternalName : GUninstaller.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GUninstaller.exe AltnetBDE Object Recognized! Type : File Data : A0074268.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 1, 2, 4, 3 ProductVersion : 1, 0, 0, 0 ProductName : ADM CompanyName : Altnet FileDescription : ADM InternalName : ADM LegalCopyright : Copyright 2002 OriginalFilename : ADM25.dll AltnetBDE Object Recognized! Type : File Data : A0074269.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 4, 0, 0, 6 ProductVersion : 4, 0, 0, 0 ProductName : ADM CompanyName : Altnet FileDescription : ADM InternalName : ADM LegalCopyright : Copyright © 2003 Altnet OriginalFilename : ADM4.dll AltnetBDE Object Recognized! Type : File Data : A0074270.exe TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 4, 0, 0, 5 ProductVersion : 4, 0, 0, 0 ProductName : ADM CompanyName : Altnet FileDescription : ADM InternalName : ADM LegalCopyright : Copyright © 2003, 2004 Altnet OriginalFilename : ADM.exe AltnetBDE Object Recognized! Type : File Data : A0074271.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 1, 0, 1, 10 ProductVersion : 1, 0, 0, 0 ProductName : ADMData CompanyName : Altnet FileDescription : ADMData InternalName : ADMData LegalCopyright : Copyright 1999 OriginalFilename : ADMData.dll AltnetBDE Object Recognized! Type : File Data : A0074272.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 3, 0, 39, 2 ProductVersion : 3, 0, 0, 0 ProductName : ADMDloader CompanyName : Altnet FileDescription : BDEDownloader InternalName : ADMDloader LegalCopyright : Copyright © 2001 Altnet OriginalFilename : ADMDloader.dll AltnetBDE Object Recognized! Type : File Data : A0074273.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 1, 0, 0, 8 ProductVersion : 1, 0, 0, 0 ProductName : ADMFdi CompanyName : Altnet FileDescription : ADMFdi InternalName : ADMFdi LegalCopyright : Copyright © 2000 OriginalFilename : ADMFdi AltnetBDE Object Recognized! Type : File Data : A0074274.dll TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 4, 0, 0, 4 ProductVersion : 4, 0, 0, 0 ProductName : ADMProg CompanyName : Altnet InternalName : ADMProg LegalCopyright : Copyright © 2003 Altnet OriginalFilename : ADMProg.dll AltnetBDE Object Recognized! Type : File Data : A0074275.exe TAC Rating : 4 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 1, 0, 0, 17 ProductVersion : 1, 0, 0, 0 ProductName : Altnet Uninstaller CompanyName : Altnet, Inc. FileDescription : Uninstaller InternalName : AltnetUninstall.exe LegalCopyright : Copyright © 2003,2004 OriginalFilename : AltnetUninstall.exe Claria Object Recognized! Type : File Data : A0074505.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGGCEngine Dynamic Link Library InternalName : EGGCEngine dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGGCEngine dll Claria Object Recognized! Type : File Data : A0074506.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : egIEClient Dynamic Link Library InternalName : egIEClient.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : egIEClient.dll Claria Object Recognized! Type : File Data : A0074507.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGIEProcess Dynamic Link Library InternalName : EGIEProcess dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGIEProcess dll Claria Object Recognized! Type : File Data : A0074508.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGNSEngine Dynamic Link Library InternalName : EGNSEngine dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : EGNSEngine dll Claria Object Recognized! Type : File Data : A0074509.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GatorRes Dynamic Link Library InternalName : GatorRes DLL LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GatorRes DLL Claria Object Recognized! Type : File Data : A0074510.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : Gator Client Application InternalName : Gator.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : Gator.exe Claria Object Recognized! Type : File Data : A0074511.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GAIN Application InternalName : GMT.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GMT.exe Claria Object Recognized! Type : File Data : A0074512.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GAIN Uninstaller applet InternalName : GUninstaller.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GUninstaller.exe Claria Object Recognized! Type : File Data : A0074694.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMEIIAPI.DLL LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : CMEIIAPI.DLL Claria Object Recognized! Type : File Data : A0074695.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMESys.exe LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : CMESys.exe Claria Object Recognized! Type : File Data : A0074696.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GAppMgr.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GAppMgr.dll Claria Object Recognized! Type : File Data : A0074697.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GController.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GController.dll Claria Object Recognized! Type : File Data : A0074698.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GDlwdEng.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GDlwdEng.dll Claria Object Recognized! Type : File Data : A0074699.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIocl.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GIocl.dll Claria Object Recognized! Type : File Data : A0074700.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIoclClient.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GIoclClient.dll Claria Object Recognized! Type : File Data : A0074701.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GMTProxy.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GMTProxy.dll Claria Object Recognized! Type : File Data : A0074702.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GObjs.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GObjs.dll Claria Object Recognized! Type : File Data : A0074704.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStore.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GStore.dll Claria Object Recognized! Type : File Data : A0074705.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStoreServer.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GStoreServer.dll Claria Object Recognized! Type : File Data : A0074706.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ FileVersion : 7.0.3.5 ProductVersion : 7.0.3.5 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GTools.dll LegalCopyright : Copyright © 1999-2005 GAIN Publishing OriginalFilename : GTools.dll Claria Object Recognized! Type : File Data : A0074713.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ Claria Object Recognized! Type : File Data : A0074714.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP797\ Claria Object Recognized! Type : File Data : A0076401.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMEIIAPI.DLL LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : CMEIIAPI.DLL Claria Object Recognized! Type : File Data : A0076402.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : CMESys.exe LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : CMESys.exe Claria Object Recognized! Type : File Data : A0076403.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGGCEngine Dynamic Link Library InternalName : EGGCEngine dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : EGGCEngine dll Claria Object Recognized! Type : File Data : A0076404.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : egIEClient Dynamic Link Library InternalName : egIEClient.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : egIEClient.dll Claria Object Recognized! Type : File Data : A0076405.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGIEProcess Dynamic Link Library InternalName : EGIEProcess dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : EGIEProcess dll Claria Object Recognized! Type : File Data : A0076406.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : EGNSEngine Dynamic Link Library InternalName : EGNSEngine dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : EGNSEngine dll Claria Object Recognized! Type : File Data : A0076407.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GAppMgr.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GAppMgr.dll Claria Object Recognized! Type : File Data : A0076408.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GatorRes Dynamic Link Library InternalName : GatorRes DLL LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GatorRes DLL Claria Object Recognized! Type : File Data : A0076409.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : Gator Client Application InternalName : Gator.exe LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : Gator.exe Claria Object Recognized! Type : File Data : A0076410.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GController.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GController.dll Claria Object Recognized! Type : File Data : A0076411.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GDlwdEng.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GDlwdEng.dll Claria Object Recognized! Type : File Data : A0076412.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIocl.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GIocl.dll Claria Object Recognized! Type : File Data : A0076413.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GIoclClient.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GIoclClient.dll Claria Object Recognized! Type : File Data : A0076415.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GMTProxy.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GMTProxy.dll Claria Object Recognized! Type : File Data : A0076416.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GObjs.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GObjs.dll Claria Object Recognized! Type : File Data : A0076417.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStore.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GStore.dll Claria Object Recognized! Type : File Data : A0076418.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GStoreServer.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GStoreServer.dll Claria Object Recognized! Type : File Data : A0076419.dll TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : CME CompanyName : GAIN Publishing FileDescription : CME II Client Application InternalName : GTools.dll LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GTools.dll Claria Object Recognized! Type : File Data : A0076420.exe TAC Rating : 7 Category : Data Miner Comment : Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP824\ FileVersion : 6.0.5.3 ProductVersion : 6.0.5.3 ProductName : GAIN CompanyName : GAIN Publishing FileDescription : GAIN Uninstaller applet InternalName : GUninstaller.exe LegalCopyright : Copyright © 1999-2004 GAIN Publishing OriginalFilename : GUninstaller.exe Coulomb Dialer Object Recognized! Type : File Data : Groove.x32 TAC Rating : 5 Category : Dialer Comment : Object : C:\WINDOWS\SYSTEM32\Macromed\Shockwave 8\Xtras\download\TheGrooveAlliance\3DGrooveXtrav18\ FileVersion : 1, 8, 0, 0 ProductVersion : 1, 8, 0, 0 ProductName : GROOVE FileDescription : GROOVE InternalName : GROOVE LegalCopyright : Copyright 2001 OriginalFilename : GROOVE.x32 Disk Scan Result for C:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 137 Scanning Hosts file...... Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts". »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Hosts file scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» 1 entries scanned. New critical objects:0 Objects found so far: 137 Performing conditional scans... »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Claria Object Recognized! Type : Folder TAC Rating : 7 Category : Data Miner Comment : Claria Object : C:\Program Files\Gator.com Claria Object Recognized! Type : Folder TAC Rating : 7 Category : Data Miner Comment : Claria Object : C:\Program Files\Common Files\GMT Claria Object Recognized! Type : Folder TAC Rating : 7 Category : Data Miner Comment : Claria Object : C:\Program Files\Common Files\CMEII Claria Object Recognized! Type : File Data : GatorPatch.log TAC Rating : 7 Category : Data Miner Comment : Object : C:\WINDOWS\ Claria Object Recognized! Type : File Data : GatorPdpSetup.log TAC Rating : 7 Category : Data Miner Comment : Object : C:\WINDOWS\ Claria Object Recognized! Type : File Data : FillIn.wav TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : Gator.log TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : GMT.exe.manifest TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : gtrawbm.fil TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : Helper.wav TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepbs.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepcat.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepcatne.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepcme.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepcmeft.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepconv.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepgh.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepimg.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : meprca.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : mepsi.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : meptafi.dat TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\gmt\ Claria Object Recognized! Type : File Data : CMEDiagnostics.log TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\cmeii\ Claria Object Recognized! Type : File Data : GatorSupportInfo.txt TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\cmeii\ Claria Object Recognized! Type : File Data : gOps.bac TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\cmeii\ Claria Object Recognized! Type : File Data : gReg.reg TAC Rating : 7 Category : Data Miner Comment : Object : C:\Program Files\Common Files\cmeii\ AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\signingmodule.signingmodule AltnetBDE Object Recognized! Type : Regkey Data : TAC Rating : 4 Category : Data Miner Comment : Rootkey : HKEY_LOCAL_MACHINE Object : software\classes\signingmodule.signingmodule.1 AltnetBDE Object Recognized! Type : Folder TAC Rating : 4 Category : Data Miner Comment : AltnetBDE Object : C:\Program Files\Altnet eUniverse Object Recognized! Type : Folder TAC Rating : 10 Category : Data Miner Comment : eUniverse Object : C:\Program Files\PerfectNav eUniverse Object Recognized! Type : Folder TAC Rating : 10 Category : Data Miner Comment : eUniverse Object : C:\Program Files\perfectnav\BHO Other Object Recognized! Type : File Data : GMT.EXE-3182804D.pf TAC Rating : 7 Category : Malware Comment : Object : C:\WINDOWS\prefetch\ Conditional scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 31 Objects found so far: 168 2:39:29 PM Scan Complete Summary Of This Scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Total scanning time:00:17:48.453 Objects scanned:142679 Objects identified:133 Objects ignored:0 New critical objects:133