Ad-Aware SE Build 1.05 Logfile Created on:10 May 2005 19:06:26 Created with Ad-Aware SE Personal, free for private use. Using definitions file:SE1R44 10.05.2005 »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» References detected during the scan: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» CommonName(TAC index:7):3 total references »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Definition File: ========================= Definitions File Loaded: Reference Number : SE1R43 06.05.2005 Internal build : 51 File location : C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref File size : 467649 Bytes Total size : 1414672 Bytes Signature data size : 1383852 Bytes Reference data size : 30308 Bytes Signatures total : 39494 Fingerprints total : 847 Fingerprints size : 28739 Bytes Target categories : 15 Target families : 663 10-05-2005 19:02:44 Performing WebUpdate... Installing Update... Definitions File Loaded: Reference Number : SE1R44 10.05.2005 Internal build : 52 File location : C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref File size : 470885 Bytes Total size : 1423894 Bytes Signature data size : 1392940 Bytes Reference data size : 30442 Bytes Signatures total : 39753 Fingerprints total : 872 Fingerprints size : 29756 Bytes Target categories : 15 Target families : 668 10-05-2005 19:03:37 Success Update successfully downloaded and installed. Memory + processor status: ========================== Number of processors : 1 Processor architecture : Intel Pentium IV Memory available:44 % Total physical memory:523808 kb Available physical memory:226040 kb Total page file size:1019016 kb Available on page file:765812 kb Total virtual memory:2097024 kb Available virtual memory:2031132 kb OS:Microsoft Windows XP Home Edition (Build 2600) Ad-Aware SE Settings =========================== Set : Safe mode (always request confirmation) Set : Scan active processes Set : Scan registry Set : Deep-scan registry Set : Scan my IE Favorites for banned URLs Set : Scan my Hosts file Extended Ad-Aware SE Settings =========================== Set : Unload recognized processes & modules during scan Set : Obtain command line of scanned processes Set : Scan registry for all users instead of current user only Set : Always try to unload modules before deletion Set : During removal, unload Explorer and IE if necessary Set : Let Windows remove files in use at next reboot Set : Delete quarantined objects after restoring Set : Include basic Ad-Aware settings in log file Set : Include additional Ad-Aware settings in log file Set : Include reference summary in log file Set : Play sound at scan completion if scan locates critical objects 10-05-2005 19:06:26 - Scan started. (Full System Scan) Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] ModuleName : \SystemRoot\System32\smss.exe Command Line : n/a ProcessID : 708 ThreadCreationTime : 10-05-2005 18:00:16 BasePriority : Normal #:2 [csrss.exe] ModuleName : \??\C:\windows\system32\csrss.exe Command Line : C:\windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestTh ProcessID : 768 ThreadCreationTime : 10-05-2005 18:00:19 BasePriority : Normal #:3 [winlogon.exe] ModuleName : \??\C:\windows\system32\winlogon.exe Command Line : winlogon.exe ProcessID : 792 ThreadCreationTime : 10-05-2005 18:00:20 BasePriority : High #:4 [services.exe] ModuleName : C:\windows\system32\services.exe Command Line : C:\windows\system32\services.exe ProcessID : 848 ThreadCreationTime : 10-05-2005 18:00:21 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Services and Controller app InternalName : services.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : services.exe #:5 [lsass.exe] ModuleName : C:\windows\system32\lsass.exe Command Line : C:\windows\system32\lsass.exe ProcessID : 860 ThreadCreationTime : 10-05-2005 18:00:21 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : LSA Shell (Export Version) InternalName : lsass.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : lsass.exe #:6 [svchost.exe] ModuleName : C:\windows\system32\svchost.exe Command Line : C:\windows\system32\svchost -k rpcss ProcessID : 1044 ThreadCreationTime : 10-05-2005 18:00:24 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:7 [svchost.exe] ModuleName : C:\windows\System32\svchost.exe Command Line : C:\windows\System32\svchost.exe -k netsvcs ProcessID : 1184 ThreadCreationTime : 10-05-2005 18:00:24 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:8 [svchost.exe] ModuleName : C:\windows\System32\svchost.exe Command Line : C:\windows\System32\svchost.exe -k NetworkService ProcessID : 1340 ThreadCreationTime : 10-05-2005 18:00:25 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:9 [svchost.exe] ModuleName : C:\windows\System32\svchost.exe Command Line : C:\windows\System32\svchost.exe -k LocalService ProcessID : 1356 ThreadCreationTime : 10-05-2005 18:00:26 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:10 [spoolsv.exe] ModuleName : C:\windows\system32\spoolsv.exe Command Line : C:\windows\system32\spoolsv.exe ProcessID : 1472 ThreadCreationTime : 10-05-2005 18:00:26 BasePriority : Normal FileVersion : 5.1.2600.0 (XPClient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Spooler SubSystem App InternalName : spoolsv.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : spoolsv.exe #:11 [ccevtmgr.exe] ModuleName : C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe Command Line : "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe" ProcessID : 1500 ThreadCreationTime : 10-05-2005 18:00:26 BasePriority : Normal FileVersion : 1.03.4 ProductVersion : 1.03.4 ProductName : Event Manager CompanyName : Symantec Corporation FileDescription : Event Manager Service InternalName : ccEvtMgr LegalCopyright : Copyright (c) 2000-2002 Symantec Corporation. All rights reserved. OriginalFilename : ccEvtMgr.exe #:12 [explorer.exe] ModuleName : C:\windows\Explorer.EXE Command Line : C:\windows\Explorer.EXE ProcessID : 340 ThreadCreationTime : 10-05-2005 18:00:34 BasePriority : Normal FileVersion : 6.00.2600.0000 (xpclient.010817-1148) ProductVersion : 6.00.2600.0000 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows Explorer InternalName : explorer LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : EXPLORER.EXE #:13 [alg.exe] ModuleName : C:\windows\System32\alg.exe Command Line : C:\windows\System32\alg.exe ProcessID : 516 ThreadCreationTime : 10-05-2005 18:00:37 BasePriority : Normal FileVersion : 5.1.2600.0 (xpclient.010817-1148) ProductVersion : 5.1.2600.0 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Application Layer Gateway Service InternalName : ALG.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : ALG.exe #:14 [navapsvc.exe] ModuleName : C:\Program Files\Norton AntiVirus\navapsvc.exe Command Line : "C:\Program Files\Norton AntiVirus\navapsvc.exe" ProcessID : 552 ThreadCreationTime : 10-05-2005 18:00:37 BasePriority : Normal FileVersion : 9.07.1013 ProductVersion : 9.07.1013 ProductName : Norton AntiVirus CompanyName : Symantec Corporation FileDescription : Norton AntiVirus Auto-Protect Service InternalName : NAVAPSVC LegalCopyright : Copyright (c) 2000-2002 Symantec Corporation. All rights reserved. OriginalFilename : NAVAPSVC.EXE #:15 [nvsvc32.exe] ModuleName : C:\windows\System32\nvsvc32.exe Command Line : C:\windows\System32\nvsvc32.exe ProcessID : 592 ThreadCreationTime : 10-05-2005 18:00:38 BasePriority : Normal FileVersion : 6.13.10.3082 ProductVersion : 6.13.10.3082 ProductName : NVIDIA Driver Helper Service, Version 30.82 CompanyName : NVIDIA Corporation FileDescription : NVIDIA Driver Helper Service, Version 30.82 InternalName : NVSVC LegalCopyright : (c) NVIDIA Corporation. All rights reserved. OriginalFilename : nvsvc32.exe #:16 [slpservice.exe] ModuleName : C:\windows\System32\slpservice.exe Command Line : C:\windows\System32\slpservice.exe ProcessID : 772 ThreadCreationTime : 10-05-2005 18:00:40 BasePriority : Normal FileVersion : 1, 0, 0, 3 ProductVersion : 4, 51, 228, 0 ProductName : Smart Label Printer CompanyName : ProdEx Technologies FileDescription : Slpmonx Service InternalName : slpservice LegalCopyright : Copyright © 2000 ProdEx Technologies OriginalFilename : slpservice.exe #:17 [msmsgs.exe] ModuleName : C:\Program Files\Messenger\msmsgs.exe Command Line : "C:\Program Files\Messenger\msmsgs.exe" ProcessID : 820 ThreadCreationTime : 10-05-2005 18:00:40 BasePriority : Normal FileVersion : 4.7.2009 ProductVersion : Version 4.7 ProductName : Messenger CompanyName : Microsoft Corporation FileDescription : Messenger InternalName : msmsgs LegalCopyright : Copyright (c) Microsoft Corporation 1997-2003 LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries. OriginalFilename : msmsgs.exe #:18 [slpmonx.exe] ModuleName : C:\windows\System32\slpmonx.exe Command Line : "C:\windows\System32\slpmonx.exe" ProcessID : 1064 ThreadCreationTime : 10-05-2005 18:00:41 BasePriority : Normal FileVersion : 0.2.1.219 ProductVersion : 4.55 ProductName : Seiko SLP Printer Driver CompanyName : Seiko Instruments USA, Inc. FileDescription : Seiko SLP Client Port Monitor InternalName : SLPMONX.EXE LegalCopyright : Copyright (C) Microsoft Corp. 1981-1999 OriginalFilename : SLPMONX.EXE #:19 [xl.exe] ModuleName : C:\windows\System32\xl.exe Command Line : C:\windows\System32\xl.exe ProcessID : 1080 ThreadCreationTime : 10-05-2005 18:00:41 BasePriority : Normal FileVersion : 1, 5, 1, 149 ProductVersion : 1, 5, 1, 149 ProductName : XtreamLok License Manager FileDescription : XtreamLok License Manager InternalName : XL LegalCopyright : Copyright 2002 OriginalFilename : XL.EXE #:20 [msole32.exe] ModuleName : C:\windows\System32\msole32.exe Command Line : "C:\windows\System32\msole32.exe" ProcessID : 1128 ThreadCreationTime : 10-05-2005 18:00:42 BasePriority : Normal #:21 [shnlog.exe] ModuleName : C:\windows\System32\shnlog.exe Command Line : "C:\windows\System32\shnlog.exe" ProcessID : 1172 ThreadCreationTime : 10-05-2005 18:00:44 BasePriority : Normal ProductVersion : 1.7 #:22 [popuper.exe] ModuleName : C:\windows\popuper.exe Command Line : "C:\windows\popuper.exe" ProcessID : 1308 ThreadCreationTime : 10-05-2005 18:00:44 BasePriority : Normal FileVersion : 1, 0, 0, 217 ProductVersion : 1, 0, 0, 217 ProductName : Popuper Application FileDescription : Popuper Application InternalName : Popuper LegalCopyright : Copyright (C) 2005 OriginalFilename : Popuper.exe #:23 [intmonp.exe] ModuleName : C:\windows\System32\intmonp.exe Command Line : intmonp.exe ProcessID : 1348 ThreadCreationTime : 10-05-2005 18:00:45 BasePriority : Normal #:24 [ltsmmsg.exe] ModuleName : C:\windows\LTSMMSG.exe Command Line : "C:\windows\LTSMMSG.exe" ProcessID : 1396 ThreadCreationTime : 10-05-2005 18:00:45 BasePriority : Normal FileVersion : 3.1.114 3.1.114 07/20/2002 09:22:07 ProductVersion : 3.1.114 3.1.114 07/20/2002 09:22:07 ProductName : Lucent SoftModem Messaging Applet CompanyName : Lucent Technologies FileDescription : SoftModem Messaging Applet InternalName : smdmstat.exe LegalCopyright : Copyright © Lucent Technologies 1998-2000 OriginalFilename : smdmstat.exe #:25 [ezsp_px.exe] ModuleName : C:\WINDOWS\System32\ezSP_Px.exe Command Line : "C:\WINDOWS\System32\ezSP_Px.exe" ProcessID : 1424 ThreadCreationTime : 10-05-2005 18:00:45 BasePriority : Normal #:26 [quicksys.exe] ModuleName : C:\HYPER\QUICKSYS.EXE Command Line : "C:\HYPER\QUICKSYS.EXE" ProcessID : 1520 ThreadCreationTime : 10-05-2005 18:00:46 BasePriority : Normal FileVersion : 2.0.200.3 ProductVersion : 2.0.0.0 ProductName : HyperOS 2003 CompanyName : Hyperdrive Computers Ltd FileDescription : HyperOS Quick System Selector InternalName : QUICKSYS LegalCopyright : Copyright © 2000-2002 Hyperdrive Computers Ltd, London OriginalFilename : QUICKSYS.EXE #:27 [activsys.exe] ModuleName : C:\HYPER\ACTIVSYS.EXE Command Line : "C:\HYPER\ACTIVSYS.EXE" ProcessID : 1560 ThreadCreationTime : 10-05-2005 18:00:46 BasePriority : Normal #:28 [ccapp.exe] ModuleName : C:\Program Files\Common Files\Symantec Shared\ccApp.exe Command Line : "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" ProcessID : 1628 ThreadCreationTime : 10-05-2005 18:00:46 BasePriority : Normal FileVersion : 1.0.10.006 ProductVersion : 1.0.10.006 ProductName : Common Client CompanyName : Symantec Corporation FileDescription : Common Client CC App InternalName : ccApp LegalCopyright : Copyright (c) 2000-2002 Symantec Corporation. All rights reserved. OriginalFilename : ccApp.exe #:29 [intmon.exe] ModuleName : C:\windows\System32\intmon.exe Command Line : intmon.exe ProcessID : 1632 ThreadCreationTime : 10-05-2005 18:00:46 BasePriority : Normal #:30 [prodsl.exe] ModuleName : C:\Program Files\INTEL\DSLSetup\ProDsl.exe Command Line : "C:\Program Files\INTEL\DSLSetup\ProDsl.exe" ProcessID : 1664 ThreadCreationTime : 10-05-2005 18:00:47 BasePriority : Normal FileVersion : 3.00.02.34 ProductVersion : 1.8.0.0 (TIC 6192) ProductName : Intel(R) AnyPoint(R) Modem CompanyName : Intel Corporation FileDescription : Intel(R) AnyPoint(R) Connection Manager InternalName : ProDsl.exe LegalCopyright : Copyright (c) 2002 Intel Corp. All Rights Reserved. LegalTrademarks : Intel(R) OriginalFilename : ProDsl.exe Comments : Management application for DSL #:31 [directcd.exe] ModuleName : C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe Command Line : "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe" ProcessID : 1704 ThreadCreationTime : 10-05-2005 18:00:48 BasePriority : Normal FileVersion : 5.1.0.209 ProductVersion : 5.1.0.209 ProductName : DirectCD CompanyName : Roxio FileDescription : DirectCD Application InternalName : DirectCD LegalCopyright : Copyright © 2001-2002, Roxio, Inc. OriginalFilename : Directcd.exe #:32 [qttask.exe] ModuleName : C:\Program Files\QuickTime\qttask.exe Command Line : "C:\Program Files\QuickTime\qttask.exe" -atboottime ProcessID : 1720 ThreadCreationTime : 10-05-2005 18:00:49 BasePriority : Normal FileVersion : 6.0.2 ProductVersion : QuickTime 6.0.2 ProductName : QuickTime CompanyName : Apple Computer, Inc. InternalName : QuickTime Task LegalCopyright : © Apple Computer, Inc. 2001-2002 OriginalFilename : QTTask.exe #:33 [sm1bg.exe] ModuleName : C:\windows\SM1BG.EXE Command Line : "C:\windows\SM1BG.EXE" ProcessID : 1728 ThreadCreationTime : 10-05-2005 18:00:49 BasePriority : Normal FileVersion : 6.01.1000.0 ProductVersion : 6.01.1000.0 ProductName : Cypress USB Mass Storage Adapter CompanyName : Cypress Semiconductor FileDescription : Cypress USB Mass Storage Driver Background Application InternalName : SM1BG.EXE LegalCopyright : Copyright (C) 1998-2003 Cypress Semiconductor OriginalFilename : SM1BG.EXE #:34 [gcasserv.exe] ModuleName : C:\Program Files\Microsoft AntiSpyware\gcasServ.exe Command Line : "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe" ProcessID : 1776 ThreadCreationTime : 10-05-2005 18:00:51 BasePriority : Idle FileVersion : 1.00.0509 ProductVersion : 1.00.0509 ProductName : Microsoft AntiSpyware (Beta 1) CompanyName : Microsoft Corporation FileDescription : Microsoft AntiSpyware Service InternalName : gcasServ LegalCopyright : Copyright © 2004-2005 Microsoft Corporation. All rights reserved. LegalTrademarks : Microsoft® and Windows® are registered trademarks of Microsoft Corporation. SpyNet(tm) is a trademark of Microsoft Corporation. OriginalFilename : gcasServ.exe #:35 [wcescomm.exe] ModuleName : C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE Command Line : "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE" ProcessID : 1800 ThreadCreationTime : 10-05-2005 18:00:52 BasePriority : Normal FileVersion : 3.7.1.4034 ProductVersion : 3.7.4034 ProductName : Microsoft ActiveSync CompanyName : Microsoft Corporation FileDescription : ActiveSync Connection Manager InternalName : wcescomm LegalCopyright : Copyright © 1995-2004 Microsoft Corp. All rights reserved. LegalTrademarks : Microsoft® and Windows® are registered trademarks of Microsoft Corporation. OriginalFilename : WCESCOMM.EXE #:36 [swdoctor.exe] ModuleName : C:\Program Files\Spyware Doctor\swdoctor.exe Command Line : "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q ProcessID : 1808 ThreadCreationTime : 10-05-2005 18:00:53 BasePriority : Normal FileVersion : 3.2.1.359 ProductVersion : 3.1 ProductName : Spyware Doctor CompanyName : PCTools FileDescription : Spyware Doctor InternalName : Spyware Doctor LegalCopyright : Copyright (c) 2004. Distributed by PC Tools Pty Ltd OriginalFilename : swdr.exe #:37 [vaserv.exe] ModuleName : C:\Program Files\Sony\VAIO Action Setup\VAServ.exe Command Line : "C:\Program Files\Sony\VAIO Action Setup\VAServ.exe" ProcessID : 1912 ThreadCreationTime : 10-05-2005 18:00:54 BasePriority : Normal #:38 [wzqkpick.exe] ModuleName : C:\Program Files\WinZip\WZQKPICK.EXE Command Line : "C:\Program Files\WinZip\WZQKPICK.EXE" ProcessID : 1980 ThreadCreationTime : 10-05-2005 18:00:56 BasePriority : Normal FileVersion : 1.0 (32-bit) ProductVersion : 8.1 (4319) ProductName : WinZip CompanyName : WinZip Computing, Inc. FileDescription : WinZip Executable InternalName : WZQKPICK.EXE LegalCopyright : Copyright (c) WinZip Computing, Inc. 1991-2001 - All Rights Reserved LegalTrademarks : WinZip is a registered trademark of WinZip Computing, Inc OriginalFilename : WZQKPICK.EXE Comments : StringFileInfo: U.S. English #:39 [gcasdtserv.exe] ModuleName : C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe Command Line : "C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe" ProcessID : 168 ThreadCreationTime : 10-05-2005 18:00:57 BasePriority : Normal FileVersion : 1.00.0509 ProductVersion : 1.00.0509 ProductName : Microsoft AntiSpyware (Beta 1) CompanyName : Microsoft Corporation FileDescription : Microsoft AntiSpyware Data Service InternalName : gcasDtServ LegalCopyright : Copyright © 2004-2005 Microsoft Corporation. All rights reserved. LegalTrademarks : Microsoft® and Windows® are registered trademarks of Microsoft Corporation. SpyNet(tm) is a trademark of Microsoft Corporation. OriginalFilename : gcasDtServ.exe #:40 [hotsync.exe] ModuleName : C:\Palm\HOTSYNC.EXE Command Line : "C:\Palm\HOTSYNC.EXE" ProcessID : 2072 ThreadCreationTime : 10-05-2005 18:01:18 BasePriority : Normal FileVersion : 4.0 ProductVersion : 4.0 ProductName : HotSync® Manager, Palm Desktop CompanyName : Palm, Inc. FileDescription : HotSync® Manager Application InternalName : HotSync® LegalCopyright : Copyright © 1995-2001 Palm, Inc. LegalTrademarks : HotSync® is a registered trademark of Palm, Inc. OriginalFilename : Hotsync.exe #:41 [slpcap.exe] ModuleName : C:\WINDOWS\Seiko\slpcap.exe Command Line : "C:\WINDOWS\Seiko\slpcap.exe" ProcessID : 2152 ThreadCreationTime : 10-05-2005 18:01:20 BasePriority : Normal FileVersion : 4.57 ProductVersion : 4.57.246.00 ProductName : Smart Label Printer CompanyName : Seiko Instruments USA Inc. FileDescription : SLP Text Capture Application InternalName : SLPCAP LegalCopyright : Copyright © 1991, 1999 Seiko Instruments USA Inc. LegalTrademarks : Smart Label Printer?, SmartCapture?, SmartCopy?, and SmartCode? are Trademarks of Seiko Instruments USA Inc. #:42 [plauto.exe] ModuleName : C:\Program Files\CASIO\Photo Loader\Plauto.exe Command Line : "C:\Program Files\CASIO\Photo Loader\Plauto.exe" ProcessID : 2232 ThreadCreationTime : 10-05-2005 18:01:22 BasePriority : Normal FileVersion : 2.0.1E ProductVersion : 2.0.1E ProductName : Photo Loader CompanyName : CASIO COMPUTER CO.,LTD. FileDescription : Watcher for Photo Loader InternalName : Plauto LegalCopyright : Copyright (C) 2001 CASIO COMPUTER CO., LTD OriginalFilename : PLAUTO.EXE #:43 [iexplore.exe] ModuleName : C:\Program Files\Internet Explorer\iexplore.exe Command Line : "C:\Program Files\Internet Explorer\iexplore.exe" ProcessID : 2236 ThreadCreationTime : 10-05-2005 18:01:22 BasePriority : Normal FileVersion : 6.00.2600.0000 (xpclient.010817-1148) ProductVersion : 6.00.2600.0000 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Internet Explorer InternalName : iexplore LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : IEXPLORE.EXE #:44 [snagit32.exe] ModuleName : C:\Program Files\TechSmith\SnagIt 7\SnagIt32.exe Command Line : "C:\Program Files\TechSmith\SnagIt 7\SnagIt32.exe" ProcessID : 2460 ThreadCreationTime : 10-05-2005 18:01:31 BasePriority : Normal #:45 [tschelp.exe] ModuleName : C:\Program Files\TechSmith\SnagIt 7\TSCHelp.exe Command Line : "C:\Program Files\TechSmith\SnagIt 7\TSCHelp.exe" ProcessID : 2640 ThreadCreationTime : 10-05-2005 18:01:37 BasePriority : Normal FileVersion : 1.0.0 ProductVersion : 1, 0, 0, 0 CompanyName : TechSmith Corporation FileDescription : TechSmith HTML Help Helper InternalName : TechSmith HTML Help Helper LegalCopyright : Copyright © 2002-2005 TechSmith Corp. All rights reserved. OriginalFilename : TscHelp.exe #:46 [wuauclt.exe] ModuleName : C:\windows\System32\wuauclt.exe Command Line : "C:\windows\System32\wuauclt.exe" /RunStoreAsComServer Local\[4a0]SUSDS28a8e327fef82c41ba5526b186a9dff5 ProcessID : 3472 ThreadCreationTime : 10-05-2005 18:01:56 BasePriority : Normal FileVersion : 5.4.3790.2182 built by: srv03_rtm(ntvbl04) ProductVersion : 5.4.3790.2182 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Automatic Updates InternalName : wuauclt.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : wuauclt.exe #:47 [ad-aware.exe] ModuleName : C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe Command Line : "C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe" ProcessID : 3972 ThreadCreationTime : 10-05-2005 18:02:19 BasePriority : Normal FileVersion : 6.2.0.206 ProductVersion : VI.Second Edition ProductName : Lavasoft Ad-Aware SE CompanyName : Lavasoft Sweden FileDescription : Ad-Aware SE Core application InternalName : Ad-Aware.exe LegalCopyright : Copyright © Lavasoft Sweden OriginalFilename : Ad-Aware.exe Comments : All Rights Reserved #:48 [wuauclt.exe] ModuleName : C:\windows\System32\wuauclt.exe Command Line : "C:\windows\System32\wuauclt.exe" ProcessID : 4028 ThreadCreationTime : 10-05-2005 18:02:25 BasePriority : Normal FileVersion : 5.4.3790.2182 built by: srv03_rtm(ntvbl04) ProductVersion : 5.4.3790.2182 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Automatic Updates InternalName : wuauclt.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : wuauclt.exe Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 0 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» CommonName Object Recognized! Type : Regkey Data : Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : interface\{1e1b2878-88ff-11d2-8d96-d7acac95951f} CommonName Object Recognized! Type : RegValue Data : Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : interface\{1e1b2878-88ff-11d2-8d96-d7acac95951f} Value : CommonName Object Recognized! Type : Regkey Data : Category : Data Miner Comment : Rootkey : HKEY_CLASSES_ROOT Object : typelib\{1e1b286c-88ff-11d2-8d96-d7acac95951f} Registry Scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 3 Objects found so far: 3 Started deep registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Deep registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Started Tracking Cookie scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Tracking cookie scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (C:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for C:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (D:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for D:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (E:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for E:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (F:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for F:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (G:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for G:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (H:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for H:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Deep scanning and examining files (I:) »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for I:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 Scanning Hosts file...... Hosts file location:"C:\windows\system32\drivers\etc\hosts". »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Hosts file scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» 44 entries scanned. New critical objects:0 Objects found so far: 3 Performing conditional scans... »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Conditional scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 3 19:25:43 Scan Complete Summary Of This Scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Total scanning time:00:19:16.485 Objects scanned:269251 Objects identified:3 Objects ignored:0 New critical objects:3