Ad-Aware SE Build 1.05
Logfile Created on:Wednesday, May 04, 2005 4:09:49 PM
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R42 28.04.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Alexa(TAC index:5):9 total references
MRU List(TAC index:0):10 total references
Security iGuard(TAC index:9):3 total references
Tracking Cookie(TAC index:3):179 total references
Windows(TAC index:3):1 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
5-4-05 4:09:49 PM - Scan started. (Full System Scan)
MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\internet explorer\typedurls
Description : list of recently entered addresses in microsoft internet explorer
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\mediaplayer\player\recentfilelist
Description : list of recently used files in microsoft windows media player
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\mediaplayer\player\recenturllist
Description : list of recently used web addresses in microsoft windows media player
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\mediaplayer\player\settings
Description : last open directory used in jasc paint shop pro
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\mediaplayer\preferences
Description : last playlist loaded in microsoft windows media player
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\windows\currentversion\applets\wordpad\recent file list
Description : list of recent files opened using wordpad
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\windows\currentversion\explorer\doc find spec mru
Description : list of recently used search terms for locating files using the microsoft windows operating system
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\windows\currentversion\explorer\runmru
Description : mru list for items opened in start | run
MRU List Object Recognized!
Location: : .DEFAULT\software\microsoft\windows media\wmsdk\general
Description : windows media sdk
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [KERNEL32.DLL]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4279237469
Threads : 4
Priority : High
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Win32 Kernel core component
InternalName : KERNEL32
LegalCopyright : Copyright © Microsoft Corp. 1991-1999
OriginalFilename : KERNEL32.DLL
#:2 [MSGSRV32.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294946785
Threads : 1
Priority : Normal
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows 32-bit VxD Message Server
InternalName : MSGSRV32
LegalCopyright : Copyright © Microsoft Corp. 1992-1998
OriginalFilename : MSGSRV32.EXE
#:3 [MPREXE.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294948977
Threads : 1
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : WIN32 Network Interface Service Process
InternalName : MPREXE
LegalCopyright : Copyright © Microsoft Corp. 1993-1998
OriginalFilename : MPREXE.EXE
#:4 [MWSSW32.EXE]
FilePath : C:\WINDOWS\MWW32\MANAGER\
ProcessID : 4294848753
Threads : 7
Priority : Normal
FileVersion : 2.60.38.0
ProductVersion : 2.60.38.0
ProductName : ThinkPad Modem
CompanyName : IBM Corporation
FileDescription : ThinkPad Modem Software
InternalName : mwssw32
LegalCopyright : Copyright © 1992, 1999, IBM Corporation
OriginalFilename : mwssw32.exe
#:5 [MSTASK.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294849613
Threads : 2
Priority : Normal
FileVersion : 4.71.1972.1
ProductVersion : 4.71.1972.1
ProductName : Microsoft® Windows® Task Scheduler
CompanyName : Microsoft Corporation
FileDescription : Task Scheduler Engine
InternalName : TaskScheduler
LegalCopyright : Copyright © Microsoft Corp. 2000
OriginalFilename : mstask.exe
#:6 [XPAGENT.EXE]
FilePath : C:\PROGRAM FILES\XPOINT\AGENT\
ProcessID : 4294843037
Threads : 6
Priority : Normal
#:7 [XPCLIENT.EXE]
FilePath : C:\PROGRAM FILES\XPOINT\EECLIENT\
ProcessID : 4294842285
Threads : 5
Priority : Normal
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
ProductName : Xpoint Technologies Uptime!
CompanyName : Xpoint Technologies
FileDescription : Uptime
InternalName : Uptime!
LegalCopyright : Copyright © 2001
#:8 [CSINJECT.EXE]
FilePath : C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\
ProcessID : 4294874425
Threads : 1
Priority : Normal
FileVersion : 6.01.0012
ProductVersion : 6.01
ProductName : Norton CleanSweep
CompanyName : Symantec Corporation
FileDescription : csinject
InternalName : CSInject
LegalCopyright : Copyright © 1992-2001 Symantec Corporation
OriginalFilename : CSInject.exe
#:9 [NPROTECT.EXE]
FilePath : C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON UTILITIES\
ProcessID : 4294796429
Threads : 5
Priority : Normal
FileVersion : 15.03.0.36
ProductVersion : 15.03.0.36
ProductName : Norton Utilities
CompanyName : Symantec Corporation
FileDescription : Norton Protection Status
InternalName : NPROTECT
LegalCopyright : Copyright © 2002 Symantec Corporation
LegalTrademarks : Norton Utilities
OriginalFilename : NPROTECT.EXE
#:10 [mmtask.tsk]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294793821
Threads : 1
Priority : Normal
FileVersion : 4.03.1998
ProductVersion : 4.03.1998
ProductName : Microsoft Windows
CompanyName : Microsoft Corporation
FileDescription : Multimedia background task support module
InternalName : mmtask.tsk
LegalCopyright : Copyright © Microsoft Corp. 1991-1998
OriginalFilename : mmtask.tsk
#:11 [EXPLORER.EXE]
FilePath : C:\WINDOWS\
ProcessID : 4294732705
Threads : 15
Priority : Normal
FileVersion : 4.72.3110.1
ProductVersion : 4.72.3110.1
ProductName : Microsoft® Windows NT® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : Copyright © Microsoft Corp. 1981-1997
OriginalFilename : EXPLORER.EXE
#:12 [TASKMON.EXE]
FilePath : C:\WINDOWS\
ProcessID : 4294705853
Threads : 1
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Task Monitor
InternalName : TaskMon
LegalCopyright : Copyright © Microsoft Corp. 1998
OriginalFilename : TASKMON.EXE
#:13 [SYSTRAY.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294709709
Threads : 2
Priority : Normal
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : System Tray Applet
InternalName : SYSTRAY
LegalCopyright : Copyright © Microsoft Corp. 1993-1998
OriginalFilename : SYSTRAY.EXE
#:14 [IRMON.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294712313
Threads : 1
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft Infrared Support
CompanyName : Microsoft Corporation
FileDescription : Microsoft Infrared Control Panel
InternalName : Infrared
LegalCopyright : © 1998 Microsoft. Portions © Hewlett-Packard
OriginalFilename : irmon.exe
#:15 [TPHKMGR.EXE]
FilePath : C:\PROGRAM FILES\THINKPAD\UTILITIES\
ProcessID : 4294713253
Threads : 2
Priority : Normal
#:16 [TP98TRAY.EXE]
FilePath : C:\PROGRAM FILES\THINKPAD\UTILITIES\
ProcessID : 4294748125
Threads : 1
Priority : Normal
FileVersion : 1, 0, 0, 0
ProductVersion : 1, 0, 0, 0
ProductName : IBM ThinkPad Tray Utility
CompanyName : IBM Corp.
FileDescription : IBM ThinkPad Tray Utility
InternalName : IBM ThinkPad Tray Utility
LegalCopyright : Copyright © IBM Corp. 1998,2002.
OriginalFilename : Tp98Tray.exe
#:17 [DIRECTCD.EXE]
FilePath : C:\PROGRAM FILES\ADAPTEC\DIRECTCD\
ProcessID : 4294719897
Threads : 1
Priority : Normal
FileVersion : 3.05 (210)
ProductVersion : 3.05 (210)
ProductName : DirectCD
CompanyName : Adaptec
FileDescription : DirectCD Application
InternalName : DirectCD
LegalCopyright : Copyright © 1996-2001 Adaptec, Inc.
OriginalFilename : DirectCD.EXE
#:18 [XICON.EXE]
FilePath : C:\PROGRAM FILES\XPOINT\AGENT\
ProcessID : 4294718981
Threads : 1
Priority : Normal
#:19 [PCRECSA.EXE]
FilePath : C:\PROGRAM FILES\XPOINT\PE\
ProcessID : 4294668933
Threads : 3
Priority : Normal
#:20 [RUNDLL32.EXE]
FilePath : C:\WINDOWS\
ProcessID : 4294716521
Threads : 2
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
LegalCopyright : Copyright © Microsoft Corp. 1991-1998
OriginalFilename : RUNDLL.EXE
#:21 [VIEWMGR.EXE]
FilePath : C:\PROGRAM FILES\VIEWPOINT\VIEWPOINT MANAGER\
ProcessID : 4294700853
Threads : 1
Priority : Normal
FileVersion : 2, 0, 0, 42
ProductVersion : 2, 0, 0, 42
ProductName : Viewpoint Manager
CompanyName : Viewpoint Corporation
FileDescription : ViewMgr
InternalName : Viewpoint Manager
LegalCopyright : Copyright © 2004
OriginalFilename : ViewMgr.exe
Comments : Viewpoint Manager
#:22 [LOADQM.EXE]
FilePath : C:\WINDOWS\
ProcessID : 4294703165
Threads : 3
Priority : Normal
FileVersion : 5.4.1103.3
ProductVersion : 5.4.1103.3
ProductName : QMgr Loader
CompanyName : Microsoft Corporation
FileDescription : Microsoft QMgr
InternalName : LOADQM.EXE
LegalCopyright : Copyright © Microsoft Corp. 1981-1999
OriginalFilename : LOADQM.EXE
#:23 [KODAKCCS.EXE]
FilePath : C:\WINDOWS\SYSTEM32\DRIVERS\
ProcessID : 4294686693
Threads : 2
Priority : Normal
FileVersion : 1.1.5100.4
ProductVersion : 4.4.0.0
ProductName : Kodak DC File System Driver (Win32)
CompanyName : Eastman Kodak Company
FileDescription : Kodak DC Ring 3 Conduit (Win32)
InternalName : KodakCCS.exe
LegalCopyright : Copyright © Eastman Kodak Co. 2000-2004
OriginalFilename : DcFsSvc.exe
#:24 [QTTASK.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294605829
Threads : 5
Priority : Normal
FileVersion : 6.4
ProductVersion : QuickTime 6.4
ProductName : QuickTime
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
LegalCopyright : © Apple Computer, Inc. 2001-2003
OriginalFilename : QTTask.exe
#:25 [JAVAW.EXE]
FilePath : C:\PROGRAM FILES\XPOINT\SAS\JRE\BIN\
ProcessID : 4294582841
Threads : 24
Priority : Normal
#:26 [STIMON.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294588337
Threads : 3
Priority : Normal
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Still Image Devices Monitor
InternalName : STIMON
LegalCopyright : Copyright © Microsoft Corp. 1996-1998
OriginalFilename : STIMON.EXE
#:27 [NAVAPW32.EXE]
FilePath : C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON ANTIVIRUS\
ProcessID : 4294691461
Threads : 9
Priority : Normal
FileVersion : 8.07.17
ProductVersion : 8.07.17
ProductName : Norton AntiVirus
CompanyName : Symantec Corporation
FileDescription : Norton AntiVirus Agent
InternalName : NAVAPW32
LegalCopyright : Copyright © 2000-2002 Symantec Corporation. All rights reserved.
OriginalFilename : NAVAPW32.EXE
#:28 [CREATECD.EXE]
FilePath : C:\PROGRAM FILES\ADAPTEC\EASY CD CREATOR 4\CREATECD\
ProcessID : 4294519001
Threads : 1
Priority : Normal
FileVersion : 4.05 (409)
ProductVersion : 4.05 (409)
ProductName : Easy CD Creator
CompanyName : Roxio
FileDescription : Adaptec Create CD
InternalName : createcd.exe
LegalCopyright : Copyright © 1996-2001 Roxio, Inc.
OriginalFilename : createcd.exe
#:29 [MSNMSGR.EXE]
FilePath : C:\PROGRAM FILES\MSN MESSENGER\
ProcessID : 4294619481
Threads : 1
Priority : Normal
FileVersion : 6.2.0205
ProductVersion : Version 6.2
ProductName : MSN Messenger
CompanyName : Microsoft Corporation
FileDescription : MSN Messenger
InternalName : msnmsgr
LegalCopyright : Copyright © Microsoft Corporation 1997-2004
LegalTrademarks : Microsoft® is a registered trademark of Microsoft Corporation in the U.S. and/or other countries.
OriginalFilename : msnmsgr.exe
#:30 [WMIEXE.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294533169
Threads : 3
Priority : Normal
FileVersion : 5.00.1755.1
ProductVersion : 5.00.1755.1
ProductName : Microsoft® Windows NT® Operating System
CompanyName : Microsoft Corporation
FileDescription : WMI service exe housing
InternalName : wmiexe
LegalCopyright : Copyright © Microsoft Corp. 1981-1998
OriginalFilename : wmiexe.exe
#:31 [WZQKPICK.EXE]
FilePath : C:\PROGRAM FILES\WINZIP\
ProcessID : 4294551185
Threads : 1
Priority : Normal
FileVersion : 1.0 (32-bit)
ProductVersion : 8.1 (4319)
ProductName : WinZip
CompanyName : WinZip Computing, Inc.
FileDescription : WinZip Executable
InternalName : WZQKPICK.EXE
LegalCopyright : Copyright © WinZip Computing, Inc. 1991-2001 - All Rights Reserved
LegalTrademarks : WinZip is a registered trademark of WinZip Computing, Inc
OriginalFilename : WZQKPICK.EXE
Comments : StringFileInfo: U.S. English
#:32 [DDHELP.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294557625
Threads : 5
Priority : Realtime
FileVersion : 4.06.03.0518
ProductVersion : 4.06.03.0518
ProductName : Microsoft® DirectX for Windows® 95 and 98
CompanyName : Microsoft Corporation
FileDescription : Microsoft DirectX Helper
InternalName : ddhelp.exe
LegalCopyright : Copyright © Microsoft Corp. 1994-1999
OriginalFilename : ddhelp.exe
#:33 [EASYSHARE.EXE]
FilePath : C:\PROGRAM FILES\KODAK\KODAK EASYSHARE SOFTWARE\BIN\
ProcessID : 4294472161
Threads : 4
Priority : Normal
FileVersion : 5, 0, 4, 128
ProductVersion : 4, 0, 2, 134
ProductName : Kodak EasyShare software
CompanyName : Eastman Kodak Company
FileDescription : Kodak EasyShare software
InternalName : EasyShare
LegalCopyright : Copyright © Eastman Kodak Company 2002
LegalTrademarks : EasyShare
OriginalFilename : EasyShare.exe
#:34 [KODAK SOFTWARE UPDATER.EXE]
FilePath : C:\PROGRAM FILES\KODAK\KODAK SOFTWARE UPDATER\7288971\PROGRAM\
ProcessID : 4294567205
Threads : 5
Priority : Normal
#:35 [CSINSM32.EXE]
FilePath : C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\
ProcessID : 4294489845
Threads : 4
Priority : Normal
FileVersion : 6.01.0012
ProductVersion : 6.01
ProductName : Norton CleanSweep
CompanyName : Symantec Corporation
FileDescription : Norton CleanSweep Install Monitor
InternalName : CSINSM
LegalCopyright : Copyright © 1992-2001 Symantec Corporation
LegalTrademarks : SmartSweep is a trademark of Symantec Corporation.
OriginalFilename : CSINSM*.EXE
#:36 [Monwow.exe]
FilePath : C:\Program Files\Norton SystemWorks\Norton CleanSweep\
ProcessID : 4294441529
Threads : 1
Priority : Normal
FileVersion : 6.01.0012
ProductVersion : 6.01
ProductName : Norton CleanSweep
CompanyName : Symantec Corporation
FileDescription : Norton SmartSweep for NT WOW monitor
InternalName : MONWOW
LegalCopyright : Copyright © 2001-2002 Symantec Corporation
OriginalFilename : MonWOW.EXE
#:37 [PSTORES.EXE]
FilePath : C:\WINDOWS\SYSTEM\
ProcessID : 4294098409
Threads : 3
Priority : Normal
FileVersion : 5.00.1877.3
ProductVersion : 5.00.1877.3
ProductName : Microsoft® Windows NT® Operating System
CompanyName : Microsoft Corporation
FileDescription : Protected storage server
InternalName : Protected storage server
LegalCopyright : Copyright © Microsoft Corp. 1981-1998
OriginalFilename : Protected storage server
#:38 [AD-AWARE.EXE]
FilePath : C:\PROGRAM FILES\LAVASOFT\AD-AWARE SE PERSONAL\
ProcessID : 4293988161
Threads : 3
Priority : Normal
FileVersion : 6.2.0.206
ProductVersion : VI.Second Edition
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 10
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Alexa Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : MenuText
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : MenuStatusBar
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : Script
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : clsid
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : Icon
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : HotIcon
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : ButtonText
Security iGuard Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\rex-services
Security iGuard Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\rex-services
Value : MGuid
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : "{c95fe080-8f5d-11d2-a20b-00aa003c157a}"
Rootkey : HKEY_USERS
Object : .DEFAULT\software\microsoft\internet explorer\extensions\cmdmapping
Value : {c95fe080-8f5d-11d2-a20b-00aa003c157a}
Windows Object Recognized!
Type : RegData
Data : explorer.exe, msmsgs.exe
Category : Vulnerability
Comment : Shell Possibly Compromised
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows nt\currentversion\winlogon
Value : Shell
Data : explorer.exe, msmsgs.exe
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 12
Objects found so far: 22
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 22
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@serving-sys[2].txt
Category : Data Miner
Comment : Hits:17
Value : Cookie:[email protected]/
Expires : 12-31-37 10:00:00 PM
LastSync : Hits:17
UseCount : 0
Hits : 17
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@fastclick[3].txt
Category : Data Miner
Comment : Hits:4
Value : Cookie:[email protected]/
Expires : 4-23-07 8:44:16 PM
LastSync : Hits:4
UseCount : 0
Hits : 4
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment : Hits:1
Value : Cookie:[email protected]/
Expires : 6-2-05 9:03:52 PM
LastSync : Hits:1
UseCount : 0
Hits : 1
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@2o7[3].txt
Category : Data Miner
Comment : Hits:22
Value : Cookie:[email protected]/
Expires : 5-2-10 9:03:54 PM
LastSync : Hits:22
UseCount : 0
Hits : 22
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tribalfusion[1].txt
Category : Data Miner
Comment : Hits:6
Value : Cookie:[email protected]/
Expires : 12-31-37 5:00:00 PM
LastSync : Hits:6
UseCount : 0
Hits : 6
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@atdmt[3].txt
Category : Data Miner
Comment : Hits:14
Value : Cookie:[email protected]/
Expires : 5-1-10 5:00:00 PM
LastSync : Hits:14
UseCount : 0
Hits : 14
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][3].txt
Category : Data Miner
Comment : Hits:8
Value : Cookie:[email protected]/
Expires : 12-31-09 5:00:00 PM
LastSync : Hits:8
UseCount : 0
Hits : 8
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment : Hits:1
Value : Cookie:[email protected]/
Expires : 12-31-37 10:00:00 PM
LastSync : Hits:1
UseCount : 0
Hits : 1
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@advertising[1].txt
Category : Data Miner
Comment : Hits:1
Value : Cookie:[email protected]/
Expires : 5-2-10 9:03:52 PM
LastSync : Hits:1
UseCount : 0
Hits : 1
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@zedo[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@zedo[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@atdmt[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@atdmt[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tripod[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@tripod[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@findwhat[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@findwhat[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@versiontracker[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@versiontracker[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@realmedia[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@realmedia[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@0[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@0[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@casalemedia[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@casalemedia[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@sextracker[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@sextracker[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@qsrch[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@qsrch[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tribalfusion[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@tribalfusion[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@doubleclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@doubleclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@linksynergy[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@linksynergy[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@apmebf[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@apmebf[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@valueclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@valueclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@2o7[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@2o7[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@questionmarket[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@questionmarket[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[6].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[6].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@adtech[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@adtech[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@247realmedia[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@247realmedia[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@valueclick[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@valueclick[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@maxserving[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@maxserving[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@trafficmp[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@trafficmp[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@bluemountain[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@bluemountain[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@revenue[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@revenue[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tickle[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@tickle[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@domainsponsor[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@domainsponsor[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@overstock[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@overstock[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@advertising[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@advertising[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment : www.searchtraffic.com
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@hitbox[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@hitbox[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@clickagents[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@clickagents[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@xxxcounter[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@xxxcounter[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@serving-sys[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@serving-sys[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@centrport[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@centrport[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@targetnet[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@targetnet[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@qksrv[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@qksrv[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@adrevolver[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@adrevolver[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@mediaplex[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@mediaplex[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[5].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[5].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@bluestreak[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@bluestreak[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@paycounter[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@paycounter[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@bravenet[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@bravenet[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@cgi-bin[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@statcounter[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@statcounter[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@bfast[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@bfast[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@commission-junction[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@commission-junction[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@overture[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@overture[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@fastclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\user@fastclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\[email protected][1].txt
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 91
Objects found so far: 113
Deep scanning and examining files (c:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@zedo[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@zedo[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@atdmt[2].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@atdmt[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tripod[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@tripod[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@findwhat[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@findwhat[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@versiontracker[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@versiontracker[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@realmedia[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@realmedia[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@0[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@0[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@casalemedia[2].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@casalemedia[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@sextracker[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@sextracker[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@cgi-bin[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@cgi-bin[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@qsrch[1].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies\user@qsrch[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : user@tribalfusion[2].txt
Category : Data Miner
Comment :
Value : c:\WINDOWS\Cookies