As a generally internet and technology savy person, I pride myself on having had no bad system infections in over a year on my computer. My mom on the otherhand "fails at the internet." We had to reformat about 4 days ago due to an infection. After the reformat it took her less than a DAY to get a MASSIVE infection.
I have spent the last 2 days repeatedly removing the spy/malware, running ad-aware, microsoft anti-spyware, search and destroy, and even trying the uninstall files that came with these damned programs. Every time the problem is fixed, I come back a few hours later because my mom is yelling and lo and behold. All the same crap is back, plus a few of their friends. It started out as just navisearch, ad-destroyer and virtual bouncer, but now the list has grown to immense proportions.
Current folders believed to be spyware residing in program files:
NaviSearch, CashBack, BullsEyeNetwork, SurfSideKick3, AdDestroyer, VBouncer, Media Access, Rebate Retriever, eZula, and Web Offer.
Here is my Ad-Aware logfile:
Lavasoft Ad-aware Personal Build 6.181
Logfile created on :Tuesday, August 02, 2005 11:03:37 AM
Created with Ad-aware Personal, free for private use.
Using reference-file :01R347 26.10.2004
______________________________________________________
Reffile status:
=========================
Reference file loaded:
Reference Number : 01R347 26.10.2004
Internal build : 281
File location : C:\Program Files\Lavasoft\Ad-aware 6\reflist.ref
Total size : 1379284 Bytes
Signature data size : 1356739 Bytes
Reference data size : 22481 Bytes
Signatures total : 29961
Target categories : 10
Target families : 587
Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Non Intel
Memory available:43 %
Total physical memory:523764 kb
Available physical memory:222708 kb
Total page file size:1278276 kb
Available on page file:970240 kb
Total virtual memory:2097024 kb
Available virtual memory:2044356 kb
OS:
Ad-aware Settings
=========================
Set : Activate in-depth scan (Recommended)
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file
8-2-2005 11:03:37 AM - Scan started. (Smart mode)
Listing running processes
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 8-2-2005 10:07:57 AM
BasePriority : Normal
#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:09 AM
BasePriority : High
#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:09 AM
BasePriority : Normal
FileSize : 105 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:04 PM
Last modified : 8/4/2004 7:56:55 AM
#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:09 AM
BasePriority : Normal
FileSize : 13 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:04 PM
Last modified : 8/4/2004 7:56:50 AM
#:5 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:10 AM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:03 PM
Last modified : 8/4/2004 7:56:57 AM
#:6 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-2-2005 10:08:10 AM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:03 PM
Last modified : 8/4/2004 7:56:57 AM
#:7 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:11 AM
BasePriority : Normal
FileSize : 56 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:05 PM
Last modified : 8/4/2004 7:56:57 AM
#:8 [sagent2.exe]
FilePath : C:\Program Files\Common Files\EPSON\EBAPI\
ThreadCreationTime : 8-2-2005 10:08:11 AM
BasePriority : Normal
FileSize : 112 KB
FileVersion : 1, 1, 0, 0
ProductVersion : 1, 0, 0, 0
Copyright : Copyright © SEIKO EPSON CORP. 2000
CompanyName : SEIKO EPSON CORPORATION
FileDescription : EPSON Printer Status Agent
InternalName : SAgent2
OriginalFilename : SAgent2.exe
ProductName : EPSON Bidirectional Printer
Created on : 11/23/2003 2:10:26 AM
Last accessed : 8/2/2005 5:50:04 PM
Last modified : 7/13/2000 9:01:00 AM
#:9 [kodakccs.exe]
FilePath : C:\WINDOWS\system32\drivers\
ThreadCreationTime : 8-2-2005 10:08:11 AM
BasePriority : Normal
FileSize : 288 KB
FileVersion : 1.1.4900.0
ProductVersion : 4.3.1.0
Copyright : Copyright © Eastman Kodak Co. 2000-2003
CompanyName : Eastman Kodak Company
FileDescription : Kodak DC Ring 3 Conduit (Win32)
InternalName : DcFsSvc.exe
OriginalFilename : DcFsSvc.exe
ProductName : Kodak DC File System Driver (Win32)
Created on : 6/18/2003 4:54:10 PM
Last accessed : 8/2/2005 5:50:04 PM
Last modified : 6/18/2003 4:54:10 PM
#:10 [scsiaccess.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-2-2005 10:08:42 AM
BasePriority : Normal
FileSize : 177 KB
Created on : 2/4/2003 3:22:30 PM
Last accessed : 8/2/2005 5:50:04 PM
Last modified : 2/4/2003 3:22:30 PM
#:11 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-2-2005 10:08:42 AM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:50:03 PM
Last modified : 8/4/2004 7:56:57 AM
#:12 [quznsvc.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-2-2005 10:08:42 AM
BasePriority : Normal
FileSize : 59 KB
Created on : 8/1/2005 6:17:30 PM
Last accessed : 8/2/2005 5:50:05 PM
Last modified : 12/12/1989 5:10:10 PM
#:13 [rundll32.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:50 AM
BasePriority : Normal
FileSize : 32 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:54:10 PM
Last modified : 8/4/2004 7:56:55 AM
#:14 [wscntfy.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:51 AM
BasePriority : Normal
FileSize : 13 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Windows Security Center Notification App
InternalName : wscntfy.exe
OriginalFilename : wscntfy.exe
ProductName : Microsoft
Created on : 8/4/2004 7:56:57 AM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 8/4/2004 7:56:57 AM
#:15 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-2-2005 10:08:53 AM
BasePriority : Normal
FileSize : 1008 KB
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:51:17 PM
Last modified : 8/4/2004 7:56:49 AM
#:16 [onetouch.exe]
FilePath : C:\PROGRA~1\Maxtor\OneTouch\Utils\
ThreadCreationTime : 8-2-2005 10:08:58 AM
BasePriority : Normal
FileSize : 44 KB
FileVersion : 2, 0, 0, 0
ProductVersion : 2, 0, 0, 0
Copyright : Copyright © 2003 Maxtor Corp.
CompanyName : Maxtor
FileDescription : Maxtor OneTouch Detection
InternalName : ComboButton
OriginalFilename : OneTouch.EXE
ProductName : Maxtor OneTouch
Created on : 5/21/2003 10:30:52 PM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 5/21/2003 10:30:52 PM
#:17 [mxoaldr.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-2-2005 10:08:58 AM
BasePriority : Normal
FileSize : 116 KB
FileVersion : 6.00.1010.0
ProductVersion : 6.00.1010.0
Copyright : Copyright © 1998-2002 Cypress Semiconductor
CompanyName : Cypress Semiconductor
FileDescription : Maxtor MXO Auto Loader Application
InternalName : MXOALDR.EXE
OriginalFilename : MXOALDR.EXE
ProductName : MXO Storage Adapter
Created on : 4/8/2003 1:09:48 AM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 4/8/2003 1:09:48 AM
#:18 [jbaqra.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:08:58 AM
BasePriority : Normal
FileSize : 60 KB
Created on : 8/1/2005 3:55:02 AM
Last accessed : 8/2/2005 5:28:49 PM
Last modified : 8/1/2005 3:55:02 AM
#:19 [pokapoka62.exe]
FilePath : C:\WINDOWS\etb\
ThreadCreationTime : 8-2-2005 10:08:59 AM
BasePriority : Normal
#:20 [ufbbdll.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-2-2005 10:08:59 AM
BasePriority : Normal
FileSize : 18 KB
FileVersion : 1.00
ProductVersion : 1.00
CompanyName : UpdateMonitor
FileDescription : Update Monitor
InternalName : UpdMon
OriginalFilename : UpdMon.exe
ProductName : Update Monitor
Created on : 8/1/2005 6:17:31 PM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 12/12/1989 5:10:10 PM
#:21 [ufbbenc.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-2-2005 10:08:59 AM
BasePriority : Normal
FileSize : 30 KB
FileVersion : 1.00
ProductVersion : 1.00
CompanyName : System Service
FileDescription : SysMon
InternalName : SysMon
OriginalFilename : SysMon.exe
ProductName : System Monitor Service
Created on : 8/1/2005 6:17:31 PM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 12/12/1989 5:10:10 PM
#:22 [cicetlib.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:09:00 AM
BasePriority : Normal
FileSize : 244 KB
Created on : 8/1/2005 7:05:58 PM
Last accessed : 8/2/2005 6:03:37 PM
Last modified : 8/1/2005 7:05:50 PM
#:23 [msmsgs.exe]
FilePath : C:\Program Files\Messenger\
ThreadCreationTime : 8-2-2005 10:09:02 AM
BasePriority : Normal
FileSize : 1628 KB
FileVersion : 4.7.3000
ProductVersion : Version 4.7.3000
Copyright : Copyright © Microsoft Corporation 2004
CompanyName : Microsoft Corporation
FileDescription : Windows Messenger
InternalName : msmsgs
OriginalFilename : msmsgs.exe
ProductName : Messenger
Created on : 7/28/2005 8:25:20 PM
Last accessed : 8/2/2005 5:48:12 PM
Last modified : 8/4/2004 7:56:53 AM
#:24 [gcasdtserv.exe]
FilePath : C:\Program Files\Microsoft AntiSpyware\
ThreadCreationTime : 8-2-2005 10:09:02 AM
BasePriority : Normal
FileSize : 738 KB
FileVersion : 1.00.0615
ProductVersion : 1.00.0615
Copyright : Copyright
CompanyName : Microsoft Corporation
FileDescription : Microsoft AntiSpyware Data Service
InternalName : gcasDtServ
OriginalFilename : gcasDtServ.exe
ProductName : Microsoft AntiSpyware (Beta 1)
Created on : 7/12/2005 10:35:20 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 7/12/2005 10:35:20 PM
#:25 [onlo.exe]
FilePath : C:\Program Files\manw\
ThreadCreationTime : 8-2-2005 10:09:06 AM
BasePriority : Normal
FileSize : 65 KB
Created on : 8/1/2005 5:35:55 AM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 10:09:06 AM
#:26 [cergn32.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:09:21 AM
BasePriority : Normal
FileSize : 100 KB
Created on : 8/1/2005 7:05:57 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/1/2005 7:05:50 PM
#:27 [mmod.exe]
FilePath : C:\PROGRA~1\ezula\
ThreadCreationTime : 8-2-2005 10:09:23 AM
BasePriority : Normal
FileSize : 188 KB
FileVersion : 3, 0, 70, 11
ProductVersion : 1, 0, 0, 1
Copyright : Copyright 2000
CompanyName : BundlewareWO
FileDescription : mmod Module
InternalName : mmod
OriginalFilename : mmod.EXE
ProductName : mmod Module
Created on : 8/2/2005 9:10:42 AM
Last accessed : 8/2/2005 5:09:01 PM
Last modified : 6/24/2005 9:45:30 PM
#:28 [wo.exe]
FilePath : C:\PROGRA~1\Web Offer\
ThreadCreationTime : 8-2-2005 10:09:25 AM
BasePriority : Normal
FileSize : 136 KB
FileVersion : 3, 0, 80, 0
ProductVersion : 1, 0, 0, 1
Copyright : Copyright 2000
CompanyName : BundlewareWO
FileDescription : wo Module
InternalName : wo
OriginalFilename : wo.EXE
ProductName : wo Module
Created on : 8/2/2005 9:11:04 AM
Last accessed : 8/2/2005 5:47:57 PM
Last modified : 3/25/2005 6:13:34 PM
#:29 [casclient.exe]
FilePath : C:\Program Files\Cas\Client\
ThreadCreationTime : 8-2-2005 10:09:26 AM
BasePriority : Normal
FileSize : 280 KB
Created on : 6/22/2005 7:04:38 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 6/22/2005 7:04:38 PM
#:30 [backweb-7288971.exe]
FilePath : C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\
ThreadCreationTime : 8-2-2005 10:09:30 AM
BasePriority : Normal
FileSize : 16 KB
Created on : 6/9/2003 12:48:18 AM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 6/9/2003 12:48:18 AM
#:31 [wuauclt.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 10:09:48 AM
BasePriority : Normal
FileSize : 121 KB
FileVersion : 5.8.0.2469 built by: lab01_n(wmbla)
ProductVersion : 5.8.0.2469
CompanyName : Microsoft Corporation
FileDescription : Automatic Updates
InternalName : wuauclt.exe
OriginalFilename : wuauclt.exe
ProductName : Microsoft
Created on : 7/28/2005 8:24:58 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 5/26/2005 11:16:30 AM
#:32 [nls.exe]
FilePath : C:\Program Files\NaviSearch\bin\
ThreadCreationTime : 8-2-2005 11:29:02 AM
BasePriority : Normal
FileSize : 84 KB
FileVersion : 1, 0, 0, 5
ProductVersion : 1, 0, 0, 5
Copyright : Copyright
CompanyName : eXact Advertising
FileDescription : NLS Module
InternalName : NLS
OriginalFilename : nls.exe
ProductName : NAVISearch Module
Created on : 8/2/2005 11:29:01 AM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 11/12/2004 9:18:45 PM
#:33 [wintask.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 11:40:55 AM
BasePriority : Normal
FileSize : 2 KB
Created on : 8/2/2005 11:40:55 AM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 11:40:55 AM
#:34 [rundll32.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 11:58:55 AM
BasePriority : Normal
FileSize : 32 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:54:10 PM
Last modified : 8/4/2004 7:56:55 AM
#:35 [exp.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 12:04:59 PM
BasePriority : Normal
FileSize : 2 KB
Created on : 8/2/2005 12:04:59 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 12:04:59 PM
#:36 [mediaacck.exe]
FilePath : C:\Program Files\Media Access\
ThreadCreationTime : 8-2-2005 12:04:59 PM
BasePriority : Normal
FileSize : 20 KB
Created on : 8/2/2005 12:04:59 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 12:04:59 PM
#:37 [wmdpst.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 2:04:00 PM
BasePriority : Normal
FileSize : 64 KB
FileVersion : 1.00.0329
ProductVersion : 1.00.0329
CompanyName : mcsft
InternalName : skytown
OriginalFilename : skytown.exe
Created on : 8/2/2005 2:03:56 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 2:03:57 PM
#:38 [wmdpst.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 2:04:00 PM
BasePriority : Normal
FileSize : 64 KB
FileVersion : 1.00.0329
ProductVersion : 1.00.0329
CompanyName : mcsft
InternalName : skytown
OriginalFilename : skytown.exe
Created on : 8/2/2005 2:03:56 PM
Last accessed : 8/2/2005 6:03:38 PM
Last modified : 8/2/2005 2:03:57 PM
#:39 [mediaaccess.exe]
FilePath : C:\Program Files\Media Access\
ThreadCreationTime : 8-2-2005 5:48:24 PM
BasePriority : Normal
FileSize : 47 KB
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
Copyright : Copyright 2005
FileDescription : LoaderX Module
InternalName : LoaderX
OriginalFilename : LoaderX.EXE
ProductName : LoaderX Module
Created on : 8/2/2005 12:04:59 PM
Last accessed : 8/2/2005 5:47:48 PM
Last modified : 8/2/2005 12:04:59 PM
#:40 [firefox.exe]
FilePath : C:\PROGRA~1\MOZILL~1\
ThreadCreationTime : 8-2-2005 5:48:47 PM
BasePriority : Normal
FileSize : 6466 KB
FileVersion : 1.0
ProductVersion : 1.7.5: 2004110711
Copyright : Mozilla
CompanyName : Mozilla
FileDescription : Firefox
InternalName : Firefox
OriginalFilename : firefox.exe
ProductName : Firefox
Created on : 12/20/2004 12:45:34 AM
Last accessed : 8/2/2005 5:57:17 PM
Last modified : 11/7/2004 8:57:00 PM
#:41 [notepad.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-2-2005 5:53:04 PM
BasePriority : Normal
FileSize : 67 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Notepad
InternalName : Notepad
OriginalFilename : NOTEPAD.EXE
ProductName : Microsoft
Created on : 8/18/2001 12:00:00 PM
Last accessed : 8/2/2005 5:52:04 PM
Last modified : 8/4/2004 7:56:54 AM
#:42 [iexplore.exe]
FilePath : C:\Program Files\Internet Explorer\
ThreadCreationTime : 8-2-2005 5:53:55 PM
BasePriority : Normal
FileSize : 91 KB
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
OriginalFilename : IEXPLORE.EXE
ProductName : Microsoft
Created on : 7/28/2005 8:26:45 PM
Last accessed : 8/2/2005 5:48:08 PM
Last modified : 8/4/2004 7:56:50 AM
#:43 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-aware 6\
ThreadCreationTime : 8-2-2005 5:59:10 PM
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 5/9/2004 1:35:37 AM
Last accessed : 8/2/2005 5:59:10 PM
Last modified : 7/13/2003 4:00:20 AM
Memory scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 0
Started registry scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
AdDestroyer Object recognized!
Type : RegKey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\addestroyer
AdDestroyer Object recognized!
Type : RegKey
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\vb and vba program settings\addestroyer
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Bargains
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BargainBuddy
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : cb.urlcatcher.1
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : cb.urlcatcher
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : nls.urlcatcher.1
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : nls.urlcatcher
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : adp.urlcatcher.1
BargainBuddy Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : adp.urlcatcher
BookedSpace Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : BookedSpace.Extension
BookedSpace Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : BookedSpace.Extension.5
ClickSpring Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\ClickSpring
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{07f0a543-47ba-11d4-8a6d-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{07f0a545-47ba-11d4-8a6d-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{19dfb2cb-9b27-11d4-b192-0050dab79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{2079884b-6ef3-11d4-8a74-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{2306abe4-4d42-11d4-8a6d-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{2babd334-5c3f-11d4-b184-0050dab79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{3d7247e8-5db8-11d4-8a72-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{55910916-8b4e-4c1e-9253-cce296ea71eb}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{58359010-bf36-11d3-99a2-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{b1dd8a69-1b96-11d4-b175-0050dab79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{c03351a4-6755-11d4-8a73-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{c4fee4a7-4b8b-11d4-8a6d-0050da2ee1be}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{d290d6e7-bf9d-42f0-9c1b-3bc8ae769b57}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.ezulactrlhost
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.ezulactrlhost.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.ieobject
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.ieobject.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.plugprot
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.plugprot.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.toolbarband
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulaagent.toolbarband.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulabootexe.installctrl
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulabootexe.installctrl.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulacode
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulacode.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulahash
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulahash.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulasearch
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.ezulasearch.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.popupdisplay
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.popupdisplay.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.resulthelper
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.resulthelper.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.searchhelper
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulafsearcheng.searchhelper.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulamain.ezulasearchpipe
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulamain.ezulasearchpipe.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulamain.trayiconm
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : ezulamain.trayiconm.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\AppID\eZulaBootExe.EXE
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\AppID\eZulaMain.EXE
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\AppID\{8A044397-5DA2-11D4-B185-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\AppID\{C0335198-6755-11D4-8A73-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{07F0A543-47BA-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{07F0A545-47BA-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{19DFB2CB-9B27-11D4-B192-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{2079884B-6EF3-11D4-8A74-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{2306ABE4-4D42-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{2BABD334-5C3F-11D4-B184-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{3D7247E8-5DB8-11D4-8A72-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{55910916-8B4E-4C1E-9253-CCE296EA71EB}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{58359010-BF36-11d3-99A2-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{B1DD8A69-1B96-11D4-B175-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{C03351A4-6755-11D4-8A73-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{C4FEE4A7-4B8B-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\CLSID\{D290D6E7-BF9D-42F0-9C1B-3BC8AE769B57}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaAgent.eZulaCtrlHost
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaAgent.eZulaCtrlHost.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\eZulaAgent.IEObject
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\eZulaAgent.IEObject.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaAgent.PlugProt
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaAgent.PlugProt.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\eZulaAgent.ToolBarBand
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\eZulaAgent.ToolBarBand.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaBootExe.InstallCtrl
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaBootExe.InstallCtrl.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaCode
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaCode.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaHash
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaHash.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaSearch
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.eZulaSearch.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.PopupDisplay
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.PopupDisplay.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.ResultHelper
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.ResultHelper.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.SearchHelper
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaFSearchEng.SearchHelper.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaMain.eZulaSearchPipe
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaMain.eZulaSearchPipe.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaMain.TrayIConM
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\EZulaMain.TrayIConM.1
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{07F0A542-47BA-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{07F0A544-47BA-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{1823BC4B-A253-4767-9CFC-9ACA62A6B136}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{19DFB2CA-9B27-11D4-B192-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{27BC6871-4D5A-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{3D7247F1-5DB8-11D4-8A72-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{4FD8645F-9B3E-46C1-9727-9837842A84AB}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{58359012-BF36-11D3-99A2-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{7EDC96E1-5DD3-11D4-B185-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{8A0443A2-5DA2-11D4-B185-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{8EBB1743-9A2F-11D4-8A7E-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{C03351A3-6755-11D4-8A73-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{C4FEE4A6-4B8B-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{EF0372DC-F552-11D3-8528-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\Interface\{EF0372DE-F552-11D3-8528-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\TypeLib\{07F0A536-47BA-11D4-8A6D-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\TypeLib\{083FA8F4-84F4-11D4-8A77-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\TypeLib\{58359011-BF36-11D3-99A2-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\TypeLib\{8A044396-5DA2-11D4-B185-0050DAB79376}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Classes\TypeLib\{C0335197-6755-11D4-8A73-0050DA2EE1BE}
EzuLa Object recognized!
Type : RegKey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : Software\Ezula
EzuLa Object recognized!
Type : RegKey
Data