Hi,
Can you help diagnose the log enclosed ?.
With thanks !
Ad-Aware SE Build 1.05
Logfile Created on:08 May 2005 07:55:02
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R8 13.09.2004
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
404search(TAC index:5):5 total references
Alexa(TAC index:5):8 total references
BroadCastPC(TAC index:7):2 total references
Claria(TAC index:7):2 total references
CoolWebSearch(TAC index:10):14 total references
Holystic-Dialer(TAC index:5):7 total references
istbar(TAC index:6):5 total references
iWon(TAC index:5):43 total references
Possible Browser Hijack attempt(TAC index:3):6 total references
SysWeb-Telecom Dialer(TAC index:5):3 total references
Tracking Cookie(TAC index:3):312 total references
VX2(TAC index:10):8 total references
WinFavorites(TAC index:6):3 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Definition File:
=========================
Definitions File Loaded:
Reference Number : SE1R8 13.09.2004
Internal build : 12
File location : C:\PROGRAM FILES\LAVASOFT\AD-AWARE SE
PERSONAL\defs.ref
File size : 344723 Bytes
Total size : 1092481 Bytes
Signature data size : 1068971 Bytes
Reference data size : 22998 Bytes
Signatures total : 30122
Fingerprints total : 154
Fingerprints size : 7129 Bytes
Target categories : 15
Target families : 560
Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Non Intel
Memory available:46 %
Total physical memory:130524 kb
Available physical memory:31736 kb
Total page file size:1421952 kb
Available on page file:1409392 kb
Total virtual memory:2093056 kb
Available virtual memory:2051520 kb
OS:Microsoft Windows 98
Ad-Aware SE Settings
===========================
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Obtain command line of scanned processes
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Play sound at scan completion if scan locates critical objects
08-05-2005 07:55:02 - Scan started. (Full System Scan)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [KERNEL32.DLL]
ModuleName : C:\WINDOWS\SYSTEM\KERNEL32.DLL
Command Line : n/a
ProcessID : 4279214727
Threads : 4
Priority : High
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Win32 Kernel core component
InternalName : KERNEL32
LegalCopyright : Copyright © Microsoft Corp. 1991-1999
OriginalFilename : KERNEL32.DLL
#:2 [MSGSRV32.EXE]
ModuleName : C:\WINDOWS\SYSTEM\MSGSRV32.EXE
Command Line : n/a
ProcessID : 4294964835
Threads : 1
Priority : Normal
FileVersion : 4.10.2222
ProductVersion : 4.10.2222
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows 32-bit VxD Message Server
InternalName : MSGSRV32
LegalCopyright : Copyright © Microsoft Corp. 1992-1998
OriginalFilename : MSGSRV32.EXE
#:3 [MPREXE.EXE]
ModuleName : C:\WINDOWS\SYSTEM\MPREXE.EXE
Command Line : C:\WINDOWS\SYSTEM\MPREXE.EXE
ProcessID : 4294959603
Threads : 1
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : WIN32 Network Interface Service Process
InternalName : MPREXE
LegalCopyright : Copyright © Microsoft Corp. 1993-1998
OriginalFilename : MPREXE.EXE
#:4 [EXPLORER.EXE]
ModuleName : C:\WINDOWS\EXPLORER.EXE
Command Line : C:\WINDOWS\Explorer.exe
ProcessID : 4294952123
Threads : 4
Priority : Normal
FileVersion : 4.72.3110.1
ProductVersion : 4.72.3110.1
ProductName : Microsoft® Windows NT® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : Copyright © Microsoft Corp. 1981-1997
OriginalFilename : EXPLORER.EXE
#:5 [RPCSS.EXE]
ModuleName : C:\WINDOWS\SYSTEM\RPCSS.EXE
Command Line : RPCSS
ProcessID : 4294863255
Threads : 4
Priority : Normal
FileVersion : 4.71.2900
ProductVersion : 4.71.2900
ProductName : Microsoft® Windows NT Operating System
CompanyName : Microsoft Corporation
FileDescription : Distributed COM Services
InternalName : rpcss.exe
LegalCopyright : Copyright © Microsoft Corp. 1981-1998
OriginalFilename : rpcss.exe
#:6 [SPOOL32.EXE]
ModuleName : C:\WINDOWS\SYSTEM\SPOOL32.EXE
Command Line : C:\WINDOWS\SYSTEM\spool32.exe
ProcessID : 4294825427
Threads : 4
Priority : Normal
FileVersion : 4.10.1998
ProductVersion : 4.10.1998
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler Sub System Process
InternalName : spool32
LegalCopyright : Copyright © Microsoft Corp. 1994 - 1998
OriginalFilename : spool32.exe
#:7 [LEXBCES.EXE]
ModuleName : C:\WINDOWS\SYSTEM\LEXBCES.EXE
Command Line : LEXBCES.EXE
ProcessID : 4294731423
Threads : 6
Priority : Normal
FileVersion : 5,12,00,00
ProductVersion : 5,12,00,00
ProductName : MarkVision for Windows (32 bit)
CompanyName : Lexmark International, Inc.
FileDescription : LexBce Service
InternalName : LexBce Service
LegalCopyright : © 1993 - 2000 Lexmark International, Inc.
OriginalFilename : LexBceS.exe
#:8 [AD-AWARE.EXE]
ModuleName : C:\PROGRAM FILES\LAVASOFT\AD-AWARE SE PERSONAL\AD-AWARE.EXE
Command Line : "C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe"
ProcessID : 4294825959
Threads : 2
Priority : Normal
FileVersion : 6.2.0.206
ProductVersion : VI.Second Edition
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
404search Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : appid\{f03a19f6-a511-49c4-ae3d-160e3465ccfb}
404search Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : appid\{f03a19f6-a511-49c4-ae3d-160e3465ccfb}
Value :
404search Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : appid\search.dll
404search Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : appid\search.dll
Value : AppID
404search Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_USERS
Object : .Default\software\search404
Alexa Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : MenuText
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : MenuStatusBar
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : Script
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : clsid
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : Icon
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : HotIcon
Alexa Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
Value : ButtonText
Holystic-Dialer Object Recognized!
Type : Regkey
Data : hol1
Category : Data Miner
Comment :
Rootkey : HKEY_USERS
Object : .Default\software\local appwizard-generated applications\HOL1941981
Holystic-Dialer Object Recognized!
Type : Regkey
Data : hol1
Category : Data Miner
Comment :
Rootkey : HKEY_USERS
Object : Software\software\local appwizard-generated applications\HOL1941981
Holystic-Dialer Object Recognized!
Type : Regkey
Data : hol2
Category : Data Miner
Comment :
Rootkey : HKEY_USERS
Object : .Default\software\local appwizard-generated applications\HOL2011338
Holystic-Dialer Object Recognized!
Type : Regkey
Data : hol2
Category : Data Miner
Comment :
Rootkey : HKEY_USERS
Object : Software\software\local appwizard-generated applications\HOL2011338
istbar Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_USERS
Object : .Default\software\iesearchbar
istbar Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\iesearchbariesearchbar
istbar Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\iesearchbariesearchbar
Value : DisplayName
istbar Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\iesearchbariesearchbar
Value : UninstallString
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : clsid\{07b18ea2-a523-4961-b6bb-170de4475cca}
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : clsid\{07b18ea2-a523-4961-b6bb-170de4475cca}
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearch.outlookaddin
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearch.outlookaddin
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearch.outlookaddin.1
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearch.outlookaddin.1
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearchtoolbar.settingsplugin
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearchtoolbar.settingsplugin
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearchtoolbar.settingsplugin.1
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.0.0
Rootkey : HKEY_CLASSES_ROOT
Object : mywebsearchtoolbar.settingsplugin.1
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswatterbarbutton
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswatterbarbutton
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswattersettingscontrol.1
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswattersettingscontrol.1
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswattersettingscontrol
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswattersettingscontrol
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu.2
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu.2
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu.1
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.htmlmenu.1
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswatterbarbutton.1
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : funwebproducts.popswatterbarbutton.1
Value :
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\mywebsearch
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\word\addins\mywebsearch.outlookaddin
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\word\addins\mywebsearch.outlookaddin
Value : Description
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\word\addins\mywebsearch.outlookaddin
Value : FriendlyName
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\word\addins\mywebsearch.outlookaddin
Value : LoadBehavior
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\outlook\addins\mywebsearch.outlookaddin
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\outlook\addins\mywebsearch.outlookaddin
Value : Description
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\outlook\addins\mywebsearch.outlookaddin
Value : FriendlyName
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\office\outlook\addins\mywebsearch.outlookaddin
Value : LoadBehavior
iWon Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value : DisplayName
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value : UninstallString
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value :
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value : HelpLink
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value : Publisher
iWon Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : SmileyCentralPFSetup2.0.2.1
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\mywebsearch bar uninstall
Value : UrlInfoAbout
SysWeb-Telecom Dialer Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : syswebtelecom.syswebtelecom
SysWeb-Telecom Dialer Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : syswebtelecom.syswebtelecom
Value :
SysWeb-Telecom Dialer Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_USERS
Object : .Default\software\syswebtelecom
WinFavorites Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : typelib\{c094876d-1b0e-46fa-b6a6-7ffc0f970c27}
Claria Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : "StashedGEF"
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion
Value : StashedGEF
Claria Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment : "StashedGMG"
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion
Value : StashedGMG
CoolWebSearch Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment : "HOMEOldSP"
Rootkey : HKEY_USERS
Object : .Default\software\microsoft\internet explorer\main
Value : HOMEOldSP
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 68
Objects found so far: 68
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Possible Browser Hijack attempt : Software\Microsoft\Internet ExplorerSearchout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer
Value : Search
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Possible Browser Hijack attempt : .Default\Software\Microsoft\Internet Explorer\MainDefault_Search_URLout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_USERS
Object : .Default\Software\Microsoft\Internet Explorer\Main
Value : Default_Search_URL
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Possible Browser Hijack attempt : .Default\Software\Microsoft\Internet Explorer\MainDefault_Page_URLout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%61/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_USERS
Object : .Default\Software\Microsoft\Internet Explorer\Main
Value : Default_Page_URL
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%61/?%31%30%31"
Possible Browser Hijack attempt : .Default\Software\Microsoft\Internet Explorer\SearchCustomizeSearchout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_USERS
Object : .Default\Software\Microsoft\Internet Explorer\Search
Value : CustomizeSearch
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Possible Browser Hijack attempt : .Default\Software\Microsoft\Internet ExplorerSearchURLout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_USERS
Object : .Default\Software\Microsoft\Internet Explorer
Value : SearchURL
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Possible Browser Hijack attempt : .Default\Software\Microsoft\Internet ExplorerSearchout.true-counter.co
Possible Browser Hijack attempt Object Recognized!
Type : RegData
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Category : Malware
Comment : Possible Browser Hijack attempt
Rootkey : HKEY_USERS
Object : .Default\Software\Microsoft\Internet Explorer
Value : Search
Data : "http://%6f%75%74%2e%74%72%75%65%2d%63%6f%75%6e%74%65%72%2e%63%6f%6d/%62/?%31%30%31"
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 6
Objects found so far: 74
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@fastclick[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@fastclick[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@doubleclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@doubleclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@valueclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@valueclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bfast[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bfast[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@doubleclick[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@doubleclick[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@fortunecity[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@fortunecity[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@admonitor[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@admonitor[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@cgi-bin[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@cgi-bin[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@trafficmp[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@trafficmp[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@x10[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@x10[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@tribalfusion[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@tribalfusion[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@hitbox[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@hitbox[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@tmpad[1].txt
Category : Data Miner
Comment : www.searchtraffic.com
Value : C:\WINDOWS\Cookies\\dwiltshi@tmpad[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bfast[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bfast[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@trafficmp[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@trafficmp[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@doubleclick[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@doubleclick[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@euniverseads[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@euniverseads[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@mediaplex[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@mediaplex[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@adviva[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@adviva[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@hitbox[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@hitbox[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@fastclick[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@fastclick[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@ajrotator[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@ajrotator[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bravenet[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bravenet[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bluestreak[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bluestreak[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@atdmt[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@atdmt[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@cgi-bin[5].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@cgi-bin[5].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@ad-flow[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@ad-flow[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@cgi-bin[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@cgi-bin[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@trafficmp[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@trafficmp[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@tripod[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@tripod[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@valueclick[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@valueclick[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@targetnet[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@targetnet[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@cgi-bin[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@cgi-bin[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@centrport[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@centrport[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@ajrotator[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@ajrotator[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@fastclick[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@fastclick[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@adviva[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@adviva[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@peel[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@peel[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@clickagents[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@clickagents[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@fortunecity[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@fortunecity[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@atdmt[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@atdmt[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@euniverseads[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@euniverseads[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@questionmarket[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@questionmarket[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bfast[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bfast[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@realmedia[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@realmedia[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@valueclick[4].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@valueclick[4].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment : www.searchtraffic.com
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@admonitor[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@admonitor[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@tmpad[3].txt
Category : Data Miner
Comment : www.searchtraffic.com
Value : C:\WINDOWS\Cookies\\dwiltshi@tmpad[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@overture[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@overture[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@zedo[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@zedo[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@tribalfusion[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@tribalfusion[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@doubleclick[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@doubleclick[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@bluestreak[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@bluestreak[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@hitbox[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@hitbox[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@x10[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@x10[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@mediaplex[1].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@mediaplex[1].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@kelkoo[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@kelkoo[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@ajrotator[3].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@ajrotator[3].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : [email protected][2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\[email protected][2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@clickagents[2].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@clickagents[2].txt
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : dwiltshi@cgi-bin[6].txt
Category : Data Miner
Comment :
Value : C:\WINDOWS\Cookies\\dwiltshi@cgi-bin[6].txt
Tracking Cookie Object Recognized