Type : File
Data : Jobs Online.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...rk&sstring=job
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Career-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Learn Computers.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...tring=education
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Career-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Relocate.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=employment
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Career-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Resume Help.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=resume
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Career-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : 11 CD's free.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=cd club
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Burn CD's.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...tring=cd burner
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Buy CD's.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...mark&sstring=cd
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Concert Tickets.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=concert
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : MP3 - Get them now!.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=mp3
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Music Downloads.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...=music download
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Music for Free.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=free music
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Free Music-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Buy Movies.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=buy movies
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Home Video Equipment.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=home video
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movie Downloads.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...=download movie
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movie posters.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=posters
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movie Showtimes.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...movie showtimes
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movies for Rent.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ing=rent movies
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movies on DVD.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=dvd
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Movies Reviews.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=movies
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : VHS.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=vhs
Object : C:\Documents and Settings\Ali\Favorites\-Popular Sites-\-Movies-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Buy it at auction.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=auction
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Computers.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...tring=computers
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Digital Camera.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...digital cameras
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Fine Jewerly.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=jewerly
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Flowers.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=flowers
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Gourmet Foods.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=gourmet
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Holiday & Special Occasion.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=holiday
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Housewares.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=housewares
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Personal Electronics.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ing=electronics
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Specialty Items.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...g=special gifts
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Stereos.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=stereo
Object : C:\Documents and Settings\Ali\Favorites\-Shopping-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : College sports.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...=college sports
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Fantasy Sports.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=betting
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Major League Baseball.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...string=baseball
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Nascar.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=nascar
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : NBA.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=nba
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : NFL.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=nfl
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : NHL.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ark&sstring=nhl
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Online Bets (18 over +).url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=betting
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Soccer.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=soccer
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Sports Merchandise.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...rts merchandise
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : TV Game Schedules.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...string=tv guide
Object : C:\Documents and Settings\Ali\Favorites\-Sports-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Buy Luggage.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=luggage
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Cheap travel.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ng=cheap travel
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Cruises.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=cruises
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Las Vegas.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...tring=las vegas
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Plan a trip.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...k&sstring=trips
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Save on Car rentals.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...ring=car rental
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Save on Hotels.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...&sstring=hotels
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Save on Plane tickets.url
Category : Misc
Comment : Problematic URL discovered: http://search.search...sstring=tickets
Object : C:\Documents and Settings\Ali\Favorites\-Travel-\
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
VX2 Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : system\controlset001\control\print\monitors\zepmon
VX2 Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : system\controlset001\control\print\monitors\zepmon
Value : Driver
VX2 Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : system\currentcontrolset\control\print\monitors\zepmon
VX2 Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : system\currentcontrolset\control\print\monitors\zepmon
Value : Driver
VX2 Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\toolbar\webbrowser
Value : {0E5CBF21-D15F-11D0-8301-00AA005B4383}
VX2 Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\main\featurecontrol\feature_window_restrictions
Value : iexplore.exe
VX2 Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\window restrictions
Value : iexplore.exe
VX2 Object Recognized!
Type : Folder
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\DrTemp
VX2 Object Recognized!
Type : File
Data : twaintec.inf
Category : Malware
Comment :
Object : C:\WINDOWS\inf\
VX2 Object Recognized!
Type : File
Data : twaintec.PNF
Category : Malware
Comment :
Object : C:\WINDOWS\inf\
VX2 Object Recognized!
Type : File
Data : farmmext.ini
Category : Malware
Comment :
Object : C:\WINDOWS\
midADdle Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\main
Value : Updater
midADdle Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\main
Value : Updater2
midADdle Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\main
Value : Enable Browser Extensions
midADdle Object Recognized!
Type : RegData
Data : no
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\main
Value : Show_StatusBar
Data : no
midADdle Object Recognized!
Type : Folder
Category : Malware
Comment : Warning!
Object : C:\Program Files\common files\midaddle
midADdle Object Recognized!
Type : File
Data : License_Agreement.txt
Category : Malware
Comment : Warning!
Object : C:\Program Files\common files\midaddle\
midADdle Object Recognized!
Type : File
Data : midaddle.dll
Category : Malware
Comment : Warning!
Object : C:\Program Files\common files\midaddle\
FileVersion : 1.0.0.16
ProductVersion : 1.0.0.16
InternalName : clicks.dll
LegalCopyright : All rights reserved.
OriginalFilename : clicks.dll
midADdle Object Recognized!
Type : File
Data : WildWinTracker.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
DyFuCA Object Recognized!
Type : File
Data : cln3ae.tmp
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
istbar Object Recognized!
Type : File
Data : feghyef.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
istbar Object Recognized!
Type : File
Data : fndwv0b.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
BroadCastPC Object Recognized!
Type : File
Data : i36a.tmp
Category : Data Miner
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
BlazeFind Object Recognized!
Type : File
Data : installer2.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
FileVersion : 1.0.0.34
ProductVersion : 1.0.0.0
CompanyName : Kalptaru Infotech Ltd.
istbar Object Recognized!
Type : File
Data : istsv_.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
Lycos Sidesearch Object Recognized!
Type : File
Data : lycos_ss.exe
Category : Misc
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
midADdle Object Recognized!
Type : File
Data : midaddle.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
DyFuCA Object Recognized!
Type : File
Data : optimize.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
VX2 Object Recognized!
Type : File
Data : polmx.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
ProductName : Calling Home
CompanyName : callinghome.biz
FileDescription : Installation utility for www.callinghome.biz
InternalName : Calling Home
LegalCopyright : callinghome.biz © 2004
OriginalFilename : Caller.exe
VX2 Object Recognized!
Type : File
Data : poltt.exe
Category : Malware
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
ProductName : Calling Home
CompanyName : callinghome.biz
FileDescription : Installation utility for www.callinghome.biz
InternalName : Calling Home
LegalCopyright : callinghome.biz © 2004
OriginalFilename : Caller.exe
Lycos Sidesearch Object Recognized!
Type : File
Data : sepinst.exe
Category : Misc
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
StatBlaster Object Recognized!
Type : File
Data : update_1.exe
Category : Data Miner
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
TopMoxie Object Recognized!
Type : File
Data : webrebates_auto_installsilent.exe
Category : Data Miner
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
WhenU Object Recognized!
Type : File
Data : whenu.exe
Category : Misc
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
FileVersion : 0, 1, 5, 1
ProductVersion : 0, 1, 5, 1
ProductName : DownloadApp
CompanyName : WhenU.com, Inc.
FileDescription : DownloadApp
InternalName : DownloadApp
LegalCopyright : Copyright 2000
OriginalFilename : dnldapp.exe
StatBlaster Object Recognized!
Type : File
Data : winwildapp.exe
Category : Data Miner
Comment :
Object : C:\DOCUME~1\Ali\LOCALS~1\Temp\
ClickSpring Object Recognized!
Type : File
Data : wintsvcc.exe
Category : Malware
Comment :
Object : C:\WINDOWS\system32\
ClickSpring Object Recognized!
Type : File
Data : crash.txt
Category : Malware
Comment :
Object : c:\
Rads01.Quadrogram Object Recognized!
Type : RegData
Data : no
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\new windows
Value : PopupMgr
Data : no
AdRotator Object Recognized!
Type : File
Data : hiwinnager.dat
Category : Malware
Comment :
Object : C:\WINDOWS\system32\
Softomate Toolbar Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\besttoolbars
Zango Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\shareddlls
Value : C:\WINDOWS\Downloaded Program Files\ZangoInstaller.dll
Zango Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\Zango
Zango Object Recognized!
Type : File
Data : zango.log
Category : Data Miner
Comment :
Object : C:\Program Files\zango\
Zango Object Recognized!
Type : File
Data : zangoau.dat
Category : Data Miner
Comment :
Object : C:\Program Files\zango\
Zango Object Recognized!
Type : File
Data : zango_kyf.dat
Category : Data Miner
Comment :
Object : C:\Program Files\zango\
Zango Object Recognized!
Type : File
Data : Zango.lnk
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Ali\Start Menu\Programs\
Zango Object Recognized!
Type : File
Data : ZangoInstaller.dll
Category : Data Miner
Comment :
Object : C:\WINDOWS\downloaded program files\
FileVersion : 5,12,13,0
ProductVersion : 5, 12, 13, 0
ProductName : ZangoInstaller Module
CompanyName : Zango
FileDescription : ZangoInstaller Module
InternalName : ZangoInstaller
LegalCopyright : Copyright© Zango. 2002-2003
OriginalFilename : ZangoInstaller.DLL
Zango Object Recognized!
Type : File
Data : ZangoInstaller.inf
Category : Data Miner
Comment :
Object : C:\WINDOWS\downloaded program files\
Zango Object Recognized!
Type : File
Data : ZangoLib.dll
Category : Data Miner
Comment :
Object : C:\WINDOWS\downloaded program files\
PromulGate Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\WINDOWS\system32\pcs
PromulGate Object Recognized!
Type : File
Data : delfinAD.ebd
Category : Data Miner
Comment :
Object : C:\Documents and Settings\All Users\Start Menu\..\application data\pcsvc\
PromulGate Object Recognized!
Type : File
Data : preference.dat
Category : Data Miner
Comment :
Object : C:\Documents and Settings\All Users\Start Menu\..\application data\pcsvc\
PromulGate Object Recognized!
Type : File
Data : init.dll
Category : Data Miner
Comment :
Object : C:\WINDOWS\system32\pcs\
WhenU Object Recognized!
Type : Folder
Category : Misc
Comment :
Object : C:\Program Files\Save
WhenU Object Recognized!
Type : Folder
Category : Misc
Comment :
Object : C:\Documents and Settings\Ali\Start Menu\Programs\WhenU
WhenU Object Recognized!
Type : File
Data : Learn More About Save!.url
Category : Misc
Comment :
Object : C:\Documents and Settings\Ali\Start Menu\Programs\whenu\
WhenU Object Recognized!
Type : File
Data : Learn More About SaveNow.url
Category : Misc
Comment :
Object : C:\Documents and Settings\Ali\Start Menu\Programs\whenu\
WhenU Object Recognized!
Type : File
Data : WhenU.com Website.url
Category : Misc
Comment :
Object : C:\Documents and Settings\Ali\Start Menu\Programs\whenu\
Elitum.ElitebarBHO Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\WINDOWS\EliteToolBar
Elitum.ElitebarBHO Object Recognized!
Type : File
Data : EliteToolBar version 60.dll
Category : Data Miner
Comment :
Object : C:\WINDOWS\elitetoolbar\
FileVersion : 1, 0, 0, 60
ProductVersion : 1, 0, 0, 60
ProductName : EliteToolBar Dynamic Link Library
FileDescription : EliteToolBar DLL
InternalName : EliteToolBar
LegalCopyright : Copyright © 2004
OriginalFilename : EliteToolBar.DLL
TVMedia Object Recognized!
Type : Folder
Category : Malware
Comment :
Object : C:\Program Files\TV Media
TVMedia Object Recognized!
Type : File
Data : Tvm.exe
Category : Malware
Comment :
Object : C:\Program Files\tv media\
TVMedia Object Recognized!
Type : File
Data : TvmBho.dll
Category : Malware
Comment :
Object : C:\Program Files\tv media\
TVMedia Object Recognized!
Type : File
Data : TvmCore.dll
Category : Malware
Comment :
Object : C:\Program Files\tv media\
WurldMedia Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\fenx
WurldMedia Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\fenx
Value : inst
DyFuCA Object Recognized!
Type : Folder
Category : Malware
Comment :
Object : C:\Program Files\Power Scan
DyFuCA Object Recognized!
Type : Folder
Category : Malware
Comment :
Object : C:\Program Files\Internet Optimizer
istbar Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : aspfile\persistenthandler
istbar Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : aspfile\persistenthandler
Value :
istbar Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\downloadmanager
istbar Object Recognized!
Type : RegData
Data : Never
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\main
Value : BandRest
Data : Never
istbar Object Recognized!
Type : RegData
Data : Never
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\main
Value : BandRest
Data : Never
BlazeFind Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\windows sr 2.0
BlazeFind Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\windows sr 2.0
Value : DisplayName
BlazeFind Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\uninstall\windows sr 2.0
Value : UninstallString
BlazeFind Object Recognized!
Type : File
Data : UnstSA3.exe
Category : Malware
Comment :
Object : C:\WINDOWS\
FileVersion : 1.0.0.15
ProductVersion : 1.0.0.0
CompanyName : Kalptaru Infotech Ltd.
Lycos Sidesearch Object Recognized!
Type : Folder
Category : Misc
Comment :
Object : C:\Program Files\lycos\SideSearch
BookedSpace Object Recognized!
Type : Regkey
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\new windows
BookedSpace Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\new windows
Value : PopupMgr
BookedSpace Object Recognized!
Type : RegValue
Data :
Category : Malware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\media
Value : data
StatBlaster Object Recognized!
Type : File
Data : TempWM_FUINS.bat
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Ali\local settings\
TopMoxie Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\main\ins
Value : 1150
TopMoxie Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\Web_Rebates
TopMoxie Object Recognized!
Type : File
Data : disp1150.exe
Category : Data Miner
Comment :
Object : C:\Program Files\web_rebates\
TopMoxie Object Recognized!
Type : File
Data : README.txt
Category : Data Miner
Comment :
Object : C:\Program Files\web_rebates\
TopMoxie Object Recognized!
Type : File
Data : WebRebates0.exe
Category : Data Miner
Comment :
Object : C:\Program Files\web_rebates\
TopMoxie Object Recognized!
Type : File
Data : WebRebates1.exe
Category : Data Miner
Comment :
Object : C:\Program Files\web_rebates\
IBIS Toolbar Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrShadow
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrHighlight
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrForeColor
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrBackColor
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrDownload
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrViewed
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\mediaplayer\control\playbar
Value : ClrStatic
IBIS Toolbar Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\northcode inc
IBIS Toolbar Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\main
Value : CustomizeSearch
Ebates MoneyMaker Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\Ebates_MoeMoneyMaker
EzuLa Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\eZula
eUniverse Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\IncrediFind
eUniverse Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\incredifind\BHO
ClearSearch Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\ClearSearch
ImIServer IEPlugin Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\internet explorer\toolbar
Value : {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB}
180Solutions Object Recognized!
Type : Regkey
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\explorer bars\{30d02401-6a81-11d0-8274-00c04fd5ae38}
180Solutions Object Recognized!
Type : RegValue
Data :
Category : Data Miner
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet explorer\explorer bars\{30d02401-6a81-11d0-8274-00c04fd5ae38}
Value : BarSize
180Solutions Object Recognized!
Type : File
Data : didduid.ini
Category : Data Miner
Comment :
Object : C:\WINDOWS\
SecondThought Object Recognized!
Type : Folder
Category : Malware
Comment :
Object : c:\\temporary
SecondThought Object Recognized!
Type : File
Data : install113.exe
Category : Malware
Comment :
Object : c:\temporary\
AltnetBDE Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\Program Files\Altnet
AltnetBDE Object Recognized!
Type : Folder
Category : Data Miner
Comment :
Object : C:\WINDOWS\temp\Altnet
AltnetBDE Object Recognized!
Type : File
Data : dmfiles.cab
Category : Data Miner
Comment :
Object : C:\WINDOWS\temp\altnet\
AltnetBDE Object Recognized!
Type : File
Data : dminstall3.cab
Category : Data Miner
Comment :
Object : C:\WINDOWS\temp\altnet\
AltnetBDE Object Recognized!
Type : File
Data : msvcirt.dll
Category : Data Miner
Comment :
Object : C:\WINDOWS\temp\altnet\
FileVersion : 6.00.8168.0
ProductVersion : 6.00.8168.0
ProductName : Microsoft ® Visual C++
CompanyName : Microsoft Corporation
FileDescription : Microsoft ® C++ Runtime Library
InternalName : MSVCIRT.DLL
LegalCopyright : Copyright © Microsoft Corp. 1981-1998
OriginalFilename : MSVCIRT.DLL
AltnetBDE Object Recognized!
Type : File
Data : mysearch.cab
Category : Data Miner
Comment :
Object