Home
Forums
Gallery
Pages
open all | close all
  • Categories
  • Article Navigation
    « Previous
    Wednesday December 17th 2003
    Ad-aware Report 2 11:23 pm-
    Categories Adaware Permalink Permalink
    1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)

    Lavasoft Ad-aware Personal Build 6.181
    Logfile created on :Wednesday, December 17, 2003 10:49:52 PM
    Created with Ad-aware Personal, free for private use.
    Using reference-file :01R238 18.12.2003
    ______________________________________________________

    Ad-aware Settings
    =========================
    Set : Activate in-depth scan (Recommended)
    Set : Safe mode (always request confirmation)
    Set : Scan active processes
    Set : Scan registry

    12-17-03 10:49:52 PM – Scan started. (Smart mode)

    Listing running processes
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    #:1 [smss.exe]
    FilePath : \SystemRoot\System32\
    ThreadCreationTime : 12-11-03 5:45:28 PM
    BasePriority : Normal

    #:2 [winlogon.exe]
    FilePath : \??\C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:29 PM
    BasePriority : High

    #:3 [services.exe]
    FilePath : C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:29 PM
    BasePriority : Normal
    FileSize : 99 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Services and Controller app
    InternalName : services.exe
    OriginalFilename : services.exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:4 [lsass.exe]
    FilePath : C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:29 PM
    BasePriority : Normal
    FileSize : 11 KB
    FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
    ProductVersion : 5.1.2600.1106
    CompanyName : Microsoft Corporation
    FileDescription : LSA Shell (Export Version)
    InternalName : lsass.exe
    OriginalFilename : lsass.exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:5 [svchost.exe]
    FilePath : C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:30 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:6 [svchost.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:30 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:7 [explorer.exe]
    FilePath : C:\WINDOWS\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 980 KB
    FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
    ProductVersion : 6.00.2800.1106
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    OriginalFilename : EXPLORER.EXE
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:8 [spoolsv.exe]
    FilePath : C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 50 KB
    FileVersion : 5.1.2600.0 (XPClient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Spooler SubSystem App
    InternalName : spoolsv.exe
    OriginalFilename : spoolsv.exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:9 [igfxtray.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 152 KB
    FileVersion : 3,0,0,1915
    ProductVersion : 7,0,0,1915
    Copyright : Copyright 1999-2002, Intel Corporation
    CompanyName : Intel Corporation
    FileDescription : igfxTray Module
    InternalName : IGFXTRAY
    OriginalFilename : IGFXTRAY.EXE
    ProductName : Intel(R) Common User Interface
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 10/15/02 8:54:50 PM

    #:10 [hkcmd.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 112 KB
    FileVersion : 3,0,0,1915
    ProductVersion : 7,0,0,1915
    Copyright : Copyright 1999-2002, Intel Corporation
    CompanyName : Intel Corporation
    FileDescription : hkcmd Module
    InternalName : HKCMD
    OriginalFilename : HKCMD.EXE
    ProductName : Intel(R) Common User Interface
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 10/15/02 8:42:26 PM

    #:11 [promon.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 72 KB
    FileVersion : 5.3.42.0
    ProductVersion : 5.3.42.0
    Copyright : Copyright (C) 1998-2002 Intel Corporation.
    CompanyName : Intel Corporation
    FileDescription : Intel(R) PROSet Tray Icon
    InternalName : Intel(R) PROMonitor
    OriginalFilename : PROMon.exe
    ProductName : Intel(R) PROMonitor
    Created on : 04/19/02 1:32:36 AM
    Last accessed : 12/18/03 4:48:42 AM
    Last modified : 04/19/02 1:32:36 AM

    #:12 [smtray.exe]
    FilePath : C:\Program Files\Analog Devices\SoundMAX\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 88 KB
    FileVersion : 3, 2, 10, 0
    ProductVersion : 3, 2, 10, 0
    Copyright : Copyright
    CompanyName : Analog Devices, Inc.
    FileDescription : SoundMAX System Tray
    InternalName : SMTray
    OriginalFilename : SMTray.exe
    ProductName : SoundMAX Integrated Digital Audio
    Created on : 03/22/03 1:09:10 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 06/26/02 11:36:58 PM

    #:13 [xicon.exe]
    FilePath : C:\PROGRA~1\Xpoint\agent\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 52 KB
    Created on : 06/28/03 6:51:33 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/07/02 4:25:18 PM

    #:14 [pcrecsa.exe]
    FilePath : C:\PROGRA~1\Xpoint\PE\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 2500 KB
    Created on : 06/28/03 6:51:35 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/14/02 9:37:36 PM

    #:15 [avsynmgr.exe]
    FilePath : C:\Program Files\Network Associates\VirusScan\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Normal
    FileSize : 152 KB
    Created on : 04/30/01 10:51:00 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 04/30/01 10:51:00 AM

    #:16 [wcmdmgr.exe]
    FilePath : C:\WINDOWS\wt\updater\
    ThreadCreationTime : 12-11-03 5:45:35 PM
    BasePriority : Idle
    FileSize : 140 KB
    FileVersion : 1.6.0.37
    ProductVersion : 1.6.0.37
    Copyright : Copyright
    CompanyName : WildTangent, Inc.
    FileDescription : wcmdmgr
    InternalName : WildTangent Updater Service
    OriginalFilename : wcmdmgr.exe
    ProductName : WildTangent Updater Service
    Created on : 11/06/03 12:05:30 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 09/27/02 8:47:32 PM

    #:17 [qttask.exe]
    FilePath : C:\Program Files\QuickTime\
    ThreadCreationTime : 12-11-03 5:45:36 PM
    BasePriority : Normal
    FileSize : 76 KB
    FileVersion : 6.4
    ProductVersion : QuickTime 6.4
    CompanyName : Apple Computer, Inc.
    InternalName : QuickTime Task
    OriginalFilename : QTTask.exe
    ProductName : QuickTime
    Created on : 11/18/03 1:41:31 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 11/18/03 1:41:31 AM

    #:18 [winampa.exe]
    FilePath : C:\Program Files\Winamp3\
    ThreadCreationTime : 12-11-03 5:45:36 PM
    BasePriority : Normal
    FileSize : 12 KB
    Created on : 07/23/02 4:58:06 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 07/23/02 4:58:06 PM

    #:19 [msdtc.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:36 PM
    BasePriority : Normal
    FileSize : 6 KB
    FileVersion : 2001.12.4414.42
    ProductVersion : 03.01.00.4414
    Copyright : Copyright (C) Microsoft Corp. 1995-1998
    CompanyName : Microsoft Corporation
    FileDescription : MS DTC console program
    InternalName : MSDTC.EXE
    ProductName : Microsoft Distributed Transaction Coordinator
    Created on : 09/23/02 8:29:35 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/29/02 12:00:00 PM

    #:20 [dw.exe]
    FilePath : C:\Program Files\DownloadWare\
    ThreadCreationTime : 12-11-03 5:45:36 PM
    BasePriority : Normal
    FileSize : 183 KB
    FileVersion : 1.0.0.116
    ProductVersion : 1.0.0.116
    Copyright : DownloadWare
    FileDescription : DownloadWare
    ProductName : DownloadWare
    Created on : 12/08/03 9:22:36 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 12/08/03 9:22:33 PM
    Warning! DownloadWare object found in memory(C:\Program Files\DownloadWare\dw.exe)

    DownloadWare Object recognized!
    Type : Process
    Data : dw.exe
    Object : C:\Program Files\DownloadWare\
    FileSize : 183 KB
    FileVersion : 1.0.0.116
    ProductVersion : 1.0.0.116
    Copyright : DownloadWare
    FileDescription : DownloadWare
    ProductName : DownloadWare
    Created on : 12/08/03 9:22:36 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 12/08/03 9:22:33 PM

    “dw.exe”Process terminated successfully.

    #:21 [smagent.exe]
    FilePath : C:\Program Files\Analog Devices\SoundMAX\
    ThreadCreationTime : 12-11-03 5:45:38 PM
    BasePriority : Normal
    FileSize : 44 KB
    FileVersion : 3, 2, 5, 0
    ProductVersion : 3, 2, 5, 0
    Copyright : Copyright
    CompanyName : Analog Devices, Inc.
    FileDescription : SoundMAX service agent component
    InternalName : SMAgent
    OriginalFilename : SMAgent.exe
    ProductName : SoundMAX service agent
    Created on : 03/22/03 1:09:10 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 07/15/02 10:36:54 PM

    #:22 [xpadmin.exe]
    FilePath : C:\PROGRA~1\Xpoint\xpadmin\
    ThreadCreationTime : 12-11-03 5:45:38 PM
    BasePriority : Normal
    FileSize : 28 KB
    Created on : 06/28/03 6:51:33 PM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 08/07/02 4:22:18 PM

    #:23 [bargains.exe]
    FilePath : C:\Program Files\Bargain Buddy\bin2\
    ThreadCreationTime : 12-11-03 5:45:38 PM
    BasePriority : Normal
    FileSize : 348 KB
    FileVersion : 1, 8, 18, 0
    ProductVersion : 1, 8, 18, 0
    Copyright : Copyright
    FileDescription : bargains
    InternalName : bargains
    OriginalFilename : bargains.exe
    ProductName : bargains buddy
    Created on : 12/11/03 4:30:19 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 10/15/03 3:52:20 AM

    Other Object recognized!
    Type : Process
    Data : bargains.exe
    Object : C:\Program Files\Bargain Buddy\bin2\
    FileSize : 348 KB
    FileVersion : 1, 8, 18, 0
    ProductVersion : 1, 8, 18, 0
    Copyright : Copyright
    FileDescription : bargains
    InternalName : bargains
    OriginalFilename : bargains.exe
    ProductName : bargains buddy
    Created on : 12/11/03 4:30:19 AM
    Last accessed : 12/18/03 4:49:52 AM
    Last modified : 10/15/03 3:52:20 AM

    Warning! Other object found in memory(bargains.exe)
    “bargains.exe”Process terminated successfully.

    #:24 [xpagent.exe]
    FilePath : C:\PROGRA~1\Xpoint\agent\
    ThreadCreationTime : 12-11-03 5:45:39 PM
    BasePriority : Normal
    FileSize : 96 KB
    Created on : 06/28/03 6:51:33 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 08/07/02 4:24:42 PM

    #:25 [vsstat.exe]
    FilePath : C:\Program Files\Network Associates\VirusScan\
    ThreadCreationTime : 12-11-03 5:45:39 PM
    BasePriority : Normal
    FileSize : 96 KB
    Created on : 04/30/01 10:51:00 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 04/30/01 10:51:00 AM

    #:26 [vshwin32.exe]
    FilePath : C:\Program Files\Network Associates\VirusScan\
    ThreadCreationTime : 12-11-03 5:45:40 PM
    BasePriority : Normal
    FileSize : 116 KB
    Created on : 04/30/01 10:51:00 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 04/30/01 10:51:00 AM

    #:27 [xpclient.exe]
    FilePath : C:\PROGRA~1\Xpoint\EEClient\
    ThreadCreationTime : 12-11-03 5:45:41 PM
    BasePriority : Normal
    FileSize : 808 KB
    FileVersion : 1, 0, 0, 1
    ProductVersion : 1, 0, 0, 1
    Copyright : Copyright
    CompanyName : Xpoint Technologies
    FileDescription : Uptime
    InternalName : Uptime!
    ProductName : Xpoint Technologies Uptime!
    Created on : 06/28/03 6:51:36 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 08/07/02 4:23:42 PM

    #:28 [winnet.exe]
    FilePath : C:\PROGRA~1\COMMON~2\ADDRES~1\
    ThreadCreationTime : 12-11-03 5:45:41 PM
    BasePriority : Normal
    FileSize : 84 KB
    FileVersion : 5, 0, 0, 3
    ProductVersion : 5, 0, 0, 3
    Copyright : Copyright
    CompanyName : CommonName
    FileDescription : Winnet
    InternalName : Winnet
    OriginalFilename : Winnet
    ProductName : Winnet
    Created on : 11/26/03 5:25:05 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 11/26/03 5:25:05 PM

    #:29 [cmd.exe]
    FilePath : C:\WINDOWS\system32\
    ThreadCreationTime : 12-11-03 5:45:42 PM
    BasePriority : Normal
    FileSize : 367 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Windows Command Processor
    InternalName : cmd
    OriginalFilename : Cmd.Exe
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 08/29/02 12:00:00 PM

    #:30 [rundll32.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-11-03 5:45:42 PM
    BasePriority : Normal
    FileSize : 31 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-1148)
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Run a DLL as an App
    InternalName : rundll
    OriginalFilename : RUNDLL.EXE
    ProductName : Microsoft
    Created on : 01/01/80 7:00:00 AM
    Last accessed : 12/18/03 4:48:48 AM
    Last modified : 08/29/02 12:00:00 PM

    #:31 [javaw.exe]
    FilePath : C:\PROGRA~1\Xpoint\SAS\jre\bin\
    ThreadCreationTime : 12-11-03 5:45:42 PM
    BasePriority : Normal
    FileSize : 20 KB
    Created on : 06/28/03 6:51:37 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 08/07/02 3:27:34 PM

    #:32 [purrrint.exe]
    FilePath : C:\
    ThreadCreationTime : 12-11-03 5:45:42 PM
    BasePriority : Normal
    FileSize : 85 KB
    FileVersion : 1, 0, 0, 9
    ProductVersion : 1, 0, 0, 9
    Copyright : Copyright
    CompanyName : angeldust
    FileDescription : PrintScreen extension
    InternalName : purrint
    OriginalFilename : purrint.exe
    ProductName : Purrint
    Created on : 06/28/03 5:41:07 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 06/03/02 2:56:16 PM

    #:33 [comwiz.exe]
    FilePath : C:\PROGRA~1\COMMON~2\ADDRES~1\
    ThreadCreationTime : 12-11-03 5:45:43 PM
    BasePriority : Normal
    FileSize : 20 KB
    FileVersion : 4, 6, 6, 0
    ProductVersion : 4, 6, 6, 0
    Copyright : Copyright
    FileDescription : comwiz
    InternalName : comwiz
    OriginalFilename : comwiz.exe
    ProductName : comwiz
    Created on : 11/26/03 5:23:00 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 11/26/03 5:23:00 PM

    CommonName Object recognized!
    Type : Process
    Data : comwiz.exe
    Object : C:\PROGRA~1\COMMON~2\ADDRES~1\
    FileSize : 20 KB
    FileVersion : 4, 6, 6, 0
    ProductVersion : 4, 6, 6, 0
    Copyright : Copyright
    FileDescription : comwiz
    InternalName : comwiz
    OriginalFilename : comwiz.exe
    ProductName : comwiz
    Created on : 11/26/03 5:23:00 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 11/26/03 5:23:00 PM

    Warning! CommonName object found in memory(comwiz.exe)
    “comwiz.exe”Process terminated successfully.

    #:34 [avconsol.exe]
    FilePath : C:\Program Files\Network Associates\VirusScan\
    ThreadCreationTime : 12-11-03 5:45:45 PM
    BasePriority : Normal
    FileSize : 160 KB
    Created on : 04/30/01 10:51:00 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 04/30/01 10:51:00 AM

    #:35 [mcshield.exe]
    FilePath : C:\Program Files\Common Files\Network Associates\McShield\
    ThreadCreationTime : 12-11-03 5:45:53 PM
    BasePriority : High
    FileSize : 224 KB
    Created on : 04/30/01 10:51:00 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 04/30/01 10:51:00 AM

    #:36 [iexplore.exe]
    FilePath : C:\Program Files\Internet Explorer\
    ThreadCreationTime : 12-16-03 8:42:40 PM
    BasePriority : Normal
    FileSize : 89 KB
    FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
    ProductVersion : 6.00.2800.1106
    CompanyName : Microsoft Corporation
    FileDescription : Internet Explorer
    InternalName : iexplore
    OriginalFilename : IEXPLORE.EXE
    ProductName : Microsoft
    Created on : 09/23/02 8:31:00 PM
    Last accessed : 12/18/03 4:49:41 AM
    Last modified : 08/29/02 12:00:00 PM

    #:37 [rrvyrqwz.exe]
    FilePath : C:\WINDOWS\
    ThreadCreationTime : 12-17-03 12:39:47 AM
    BasePriority : Normal
    FileSize : 112 KB
    Created on : 09/23/02 8:29:37 PM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 08/29/02 12:00:00 PM

    #:38 [av.exe]
    FilePath : C:\WINDOWS\
    ThreadCreationTime : 12-17-03 12:43:16 AM
    BasePriority : Normal
    FileSize : 19 KB
    Created on : 12/17/03 12:39:45 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 12/17/03 12:43:16 AM

    #:39 [msbb.exe]
    FilePath : C:\WINDOWS\
    ThreadCreationTime : 12-18-03 12:41:10 AM
    BasePriority : Normal
    FileSize : 192 KB
    FileVersion : 4.2
    ProductVersion : 4.2
    Copyright : Copyright
    CompanyName : 180Solutions Inc
    FileDescription : msbb
    InternalName : msbb
    OriginalFilename : msbb.exe
    ProductName : n-CASE
    Created on : 12/17/03 12:40:05 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 12/17/03 12:40:27 AM
    Warning! NCase object found in memory(C:\WINDOWS\msbb.exe)

    NCase Object recognized!
    Type : Process
    Data : msbb.exe
    Object : C:\WINDOWS\
    FileSize : 192 KB
    FileVersion : 4.2
    ProductVersion : 4.2
    Copyright : Copyright
    CompanyName : 180Solutions Inc
    FileDescription : msbb
    InternalName : msbb
    OriginalFilename : msbb.exe
    ProductName : n-CASE
    Created on : 12/17/03 12:40:05 AM
    Last accessed : 12/18/03 4:49:53 AM
    Last modified : 12/17/03 12:40:27 AM

    “msbb.exe”Process terminated successfully.

    #:40 [ad-aware.exe]
    FilePath : \W01-14096\Ad-aware 6\
    ThreadCreationTime : 12-18-03 4:49:27 AM
    BasePriority : Normal
    FileSize : 668 KB
    FileVersion : 6.0.1.181
    ProductVersion : 6.0.0.0
    Copyright : Copyright
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-aware 6 core application
    InternalName : Ad-aware.exe
    OriginalFilename : Ad-aware.exe
    ProductName : Lavasoft Ad-aware Plus
    Created on : 08/03/03 5:49:13 AM
    Last accessed : 12/18/03 4:09:45 AM
    Last modified : 07/13/03 3:00:20 AM

    #:41 [winhost32.exe]
    FilePath : C:\WINDOWS\System32\
    ThreadCreationTime : 12-18-03 4:49:38 AM
    BasePriority : Normal
    FileSize : 96 KB
    FileVersion : 0, 310, 14, 1115
    ProductVersion : 1, 0, 0, 0
    OriginalFilename : winhost32.exe
    ProductName : TargetSoft
    Created on : 12/08/03 11:58:41 PM
    Last accessed : 12/18/03 4:08:38 AM
    Last modified : 12/08/03 11:58:41 PM

    Memory scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 4
    Objects found so far: 4

    Started registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TypeLib\{4EB7BBE8-2E15-424B-9DDB-2CDB9516A2A3}

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bargain Buddy

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Bargains

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{C6906A23-4717-4E1F-B6FD-F06EBED14177}

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Apuc.UrlCatcher.1

    BargainBuddy Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Apuc.UrlCatcher

    BookedSpace Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\BookedSpace

    BookedSpace Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BookedSpace.Extension.5

    BookedSpace Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BookedSpace.Extension

    BrowserAid Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate

    ClipGenie Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\TrayNotifier\ClipGenie

    ClipGenie Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\TrayNotifier\ClipGenie

    ClipGenie Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClipGenie

    ClipGenie Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\ClipGenie

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TypeLib\{D879D743-E2CC-4161-8034-2234203681C9}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CommonName

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000000-0000-0000-0000-000000000000}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\MenuExt\Search using CommonName

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\MenuExt\Email This Link

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\MenuExt\Bookmark This Page

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\MenuExt\Add A Page Note

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\AdvancedOptions\CommonName

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\CommonName

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\CommonName

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\PROTOCOLS\Handler\cn

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\Interface\{2D0F5208-3198-49A4-86A7-D65E9E582751}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\BabeIE.Helper.1

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\BabeIE.Helper

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\BabeIE.Handler.1

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\CLASSES\BabeIE.Handler

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{99908473-1135-4009-BE4F-32B921F86ED9}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{9346A6BB-1ED0-4174-AFB4-13CD4EC0AA40}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{6656b666-992f-4d74-8588-8ca69e97d90c}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.AgentIE.1

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.AgentIE

    DownloadWare Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}

    DownloadWare Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\DownloadWare

    DownloadWare Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : SOFTWARE\DownloadWare

    DownloadWare Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TYPELIB\{6d3f5de4-e980-4407-a10f-9ac771abaae6}

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : pugi.pugiobj.1

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : pugi.pugiobj

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{7B9A715E-9D87-4C21-BF9E-F914F2FA953F}

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{71ed4fba-4024-4bbe-91dc-9704c93f453e}

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\IESearchbar

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IESearchbarIESearchbar

    istbar Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71ED4FBA-4024-4bbe-91DC-9704C93F453E}

    MSView Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TypeLib\{690BCCB4-6B83-4203-AE77-038C116594EC}

    NCase Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\nCASE

    NCase Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\msbb

    NCase Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : SOFTWARE\180solutions\msbb

    NCase Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : SOFTWARE\180solutions

    NetworkEssentials Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\WebInstall

    NetworkEssentials Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Hopper

    RemanentBHO Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : AppID\BookedSpace.DLL

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.websearch.1

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.websearch

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.webcommand.1

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.webcommand

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.webbho.1

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : webcom.webbho

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TYPELIB\{a8f92c35-530b-4907-922c-ce31d4b6b14a}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{F5F0A448-2BCD-459E-8743-C39154EE1CA8}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{42BD9965-303D-4CFB-AAE0-DCADCB791A55}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{1EB48AA7-D3FE-4E4C-AC8E-B01594496AC0}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{9368d063-44be-49b9-bd14-bb9663fd38fc}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{49de8655-4d15-4536-b67c-2aa6c1106740}

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{00041A26-7033-432C-94C7-6371DE343822}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : _ATL_GENERATED.SearchToolbarName.1

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : _ATL_GENERATED.SearchToolbarName

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : _ATL_GENERATED.SearchToolbarBHO.1

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : _ATL_GENERATED.SearchToolbarBHO

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TypeLib\{2CF0B992-5EEB-4143-99C0-5297EF71F445}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\{2CF0B992-5EEB-4143-99C0-5297EF71F444}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\{2CF0B992-5EEB-4143-99C0-5297EF71F444}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2CF0B992-5EEB-4143-99C0-5297EF71F443}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2CF0B992-5EEB-4143-99C0-5297EF71F444}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{2CF0B992-5EEB-4143-99C0-5297EF71F444}

    SearchAndClick Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{2CF0B992-5EEB-4143-99C0-5297EF71F443}

    StopPop Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{4534CD6B-59D6-43FD-864B-06A0D843444A}

    UpdateLoader Malware Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : TypeLib\{0B1B2B3B-4B5B-6B7B-8B9B-BBBBCBDBEBFB}

    UpdateLoader Malware Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : Interface\{0C1C2C3C-4C5C-6C7C-8C9C-CCBCCCDCECFC}

    UpdateLoader Malware Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : download_ul.downloadul.1

    UpdateLoader Malware Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : download_ul.downloadul

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : vx2.vx2obj

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006b1-19b5-414a-849f-2a3c64ae6939}

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{000006b1-19b5-414a-849f-2a3c64ae6939}

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : bidll.bidllobj.1

    BargainBuddy Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Value : Bargains

    DownloadWare Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Run
    Value : DownloadWare

    SCBAR Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\URLSearchHooks
    Value : {9368D063-44BE-49B9-BD14-BB9663FD38FC}

    SearchAndClick Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\run
    Value : {2CF0B992-5EEB-4143-99C0-5297EF71F444}

    Registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 94
    Objects found so far: 98

    Started deep registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Page.blazefind.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://www.blazefind.com”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Search Page
    Data : “http://www.blazefind.com”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainStart Page.blazefind.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://www.blazefind.com/”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Start Page
    Data : “http://www.blazefind.com/”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Bar.blazefind.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://www.blazefind.com/search.php?search=%s”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Search Bar
    Data : “http://www.blazefind.com/search.php?search=%s”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURL.blazefind.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://www.blazefind.com”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\SearchURL
    Value :
    Data : “http://www.blazefind.com”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistant.blazefind.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://www.blazefind.com/search_page.php”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\Search
    Value : SearchAssistant
    Data : “http://www.blazefind.com/search_page.php”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistant.searchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\Search
    Value : SearchAssistant
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Page.searchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Search Page
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainDefault_Search_URL.searchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Default_Search_URL
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURL.searchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\SearchURL
    Value :
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistantsearchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_CURRENT_USER
    Object : Software\Microsoft\Internet Explorer\Search
    Value : SearchAssistant
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Pagesearchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Search Page
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainDefault_Search_URLsearchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\Main
    Value : Default_Search_URL
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURLsearchenhancement.com

    Possible Browser Hijack attempt Object recognized!
    Type : RegData
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Internet Explorer\SearchURL
    Value :
    Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : CLSID\{00000000-0000-0000-0000-000000000000}

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.Handler

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.Handler.1

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.Helper

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : BabeIE.Helper.1

    istbar Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Internet Explorer\Toolbar
    Value : {71ED4FBA-4024-4bbe-91DC-9704C93F453E}

    Possible browser hijack attempt : {A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52} (http://public.searchbarcash.com/cab/016/gsqimkqo.cab)

    Possible Browser Hijack attempt Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Code Store Database\Distribution Units\{A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52}

    Possible browser hijack attempt : {A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52} (http://public.searchbarcash.com/cab/016/gsqimkqo.cab)

    NCase Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Run
    Value : msbb

    NCase Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Run
    Value : BHOUELR

    NCase Object recognized!
    Type : File
    Data : bhouelr.exe
    Object : c:\windows\
    FileSize : 92 KB
    Created on : 12/11/03 4:26:04 AM
    Last accessed : 12/18/03 4:50:32 AM
    Last modified : 12/11/03 4:26:07 AM

    WinFavorites Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Run
    Value : WinFavorites

    WinFavorites Object recognized!
    Type : File
    Data : winfavorites.exe
    Object : c:\program files\winfavorites\
    FileSize : 72 KB
    FileVersion : 1.01.0002
    ProductVersion : 1.01.0002
    InternalName : WinFavorites
    OriginalFilename : WinFavorites.exe
    ProductName : Win Favorites
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:50:32 AM
    Last modified : 12/18/03 12:41:11 AM

    CommonName Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CLASSES_ROOT
    Object : PROTOCOLS\Handler\cn

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00041A26-7033-432C-94C7-6371DE343822}

    Newton Knows Object recognized!
    Type : LSP
    Data : c:\windows\system32\inetadpt.dll
    Layered Service Provider: inetadpt over [MSAFD Tcpip [TCP/IP]]

    Newton Knows Object recognized!
    Type : File
    Data : inetadpt.dll
    Object : c:\windows\system32\
    FileSize : 216 KB
    FileVersion : 0, 311, 11, 1522
    ProductVersion : 1, 0, 0, 0
    Copyright : Copyright 2003
    InternalName : inetadpt.dll
    OriginalFilename : inetadpt.dll
    ProductName : TargetSoft
    Created on : 12/08/03 9:22:42 PM
    Last accessed : 12/18/03 4:08:37 AM
    Last modified : 12/08/03 9:22:42 PM

    Newton Knows Object recognized!
    Type : LSP
    Data : c:\windows\system32\inetadpt.dll
    Layered Service Provider: inetadpt over [MSAFD Tcpip [UDP/IP]]

    Newton Knows Object recognized!
    Type : LSP
    Data : c:\windows\system32\inetadpt.dll
    Layered Service Provider: inetadpt over [MSAFD Tcpip [RAW/IP]]

    Newton Knows Object recognized!
    Type : LSP
    Data : c:\windows\system32\inetadpt.dll
    Layered Service Provider: inetadpt

    Deep registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 29
    Objects found so far: 130

    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@2o7[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\
    FileSize : 1 KB
    Created on : 12/10/03 7:19:38 PM
    Last accessed : 12/18/03 4:50:36 AM
    Last modified : 12/10/03 7:28:06 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@ads.180solutions[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/13/03 11:24:29 AM
    Last accessed : 12/18/03 4:50:36 AM
    Last modified : 12/13/03 11:24:29 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@ads.specificpop[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/04/03 9:32:33 PM
    Last accessed : 12/18/03 4:50:36 AM
    Last modified : 12/04/03 9:32:33 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@adserving.autotrader[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/08/03 2:14:33 AM
    Last accessed : 12/18/03 4:50:36 AM
    Last modified : 12/08/03 2:14:33 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@advertising[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/12/03 1:13:02 PM
    Last accessed : 12/18/03 4:50:36 AM
    Last modified : 12/17/03 8:08:57 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@atdmt[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/13/03 6:56:15 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/13/03 6:56:15 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@bfast[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/08/03 12:32:57 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/08/03 1:04:35 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@bis.180solutions[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/18/03 12:41:25 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/18/03 12:41:25 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@bisads.180solutions[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/18/03 1:57:58 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/18/03 1:57:58 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@bluestreak[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/08/03 2:26:21 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/08/03 2:26:21 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@bravenet[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/06/03 2:07:26 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/06/03 2:14:28 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@centrport[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/17/03 12:02:45 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/17/03 12:02:45 AM

    Other Object recognized!
    Type : File
    Data : node3@cgi-bin[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/18/03 1:21:27 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/18/03 1:21:27 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@clickagents[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/17/03 8:30:58 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/17/03 8:30:58 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@counter.hitslink[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/15/03 7:31:30 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/15/03 7:31:30 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@data.coremetrics[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/02/03 1:44:50 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/02/03 1:44:50 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@doubleclick[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/13/03 8:01:25 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/13/03 8:01:25 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@ehg-aol.hitbox[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/16/03 4:54:48 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/16/03 4:54:48 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@ehg-bareweb.hitbox[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/07/03 7:02:26 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/07/03 7:02:57 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@ehg-dig.hitbox[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\
    FileSize : 1 KB
    Created on : 12/07/03 5:01:07 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/07/03 5:01:07 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@fastclick[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/18/03 1:58:09 AM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/18/03 1:58:09 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@hc2.humanclick[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/15/03 7:26:14 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 11/15/03 7:26:16 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@hitbox[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/16/03 4:34:41 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/16/03 4:54:48 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@internetfuel[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/09/03 9:09:30 PM
    Last accessed : 12/18/03 4:50:37 AM
    Last modified : 12/09/03 9:09:30 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@linksynergy[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/30/03 3:52:10 AM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 11/30/03 3:52:10 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@mediaplex[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/13/03 8:29:14 PM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 11/13/03 8:29:14 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@overture[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/02/03 3:54:55 PM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/15/03 9:53:23 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@pro-market[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/15/03 5:42:18 PM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/08/03 4:12:44 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@qksrv[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/08/03 12:18:04 AM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/08/03 12:18:06 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@servedby.advertising[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\
    FileSize : 1 KB
    Created on : 12/18/03 1:57:47 AM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/18/03 1:57:47 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@tmpad[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/08/03 2:15:31 AM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/08/03 2:15:31 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@trafficmp[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/16/03 3:58:21 PM
    Last accessed : 12/18/03 4:50:38 AM
    Last modified : 12/17/03 8:09:32 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@valueclick[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/16/03 3:56:21 PM
    Last accessed : 12/18/03 4:50:39 AM
    Last modified : 12/16/03 3:56:21 PM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@www2.skoobidoo[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/18/03 12:40:36 AM
    Last accessed : 12/18/03 4:50:40 AM
    Last modified : 12/18/03 12:40:36 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@z1.adserver[1].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 11/30/03 9:02:45 AM
    Last accessed : 12/18/03 4:50:40 AM
    Last modified : 12/14/03 4:28:28 AM

    Tracking Cookie Object recognized!
    Type : File
    Data : node3@zedo[2].txt
    Object : C:\Documents and Settings\Node3\Cookies\

    Created on : 12/03/03 11:21:09 PM
    Last accessed : 12/18/03 4:50:40 AM
    Last modified : 12/09/03 12:07:59 AM

    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Deep scanning and examining files (C:)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    UpdateLoader Malware Object recognized!
    Type : File
    Data : randomiser.exe
    Object : C:\WINDOWS\System32\
    FileSize : 7 KB
    Created on : 12/17/03 12:39:42 AM
    Last accessed : 12/18/03 4:51:03 AM
    Last modified : 12/17/03 12:48:10 AM

    Performing conditional scans..
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    DownloadWare Object recognized!
    Type : Folder
    Object : c:\program files\DownloadWare

    DownloadWare Object recognized!
    Type : File
    Data : digital signature 20031208.htm
    Object : c:\windows\

    Created on : 12/08/03 9:22:36 PM
    Last accessed : 12/18/03 4:51:10 AM
    Last modified : 12/08/03 11:58:52 PM

    DownloadWare Object recognized!
    Type : File
    Data : digital signature 20031216.htm
    Object : c:\windows\

    Created on : 12/16/03 2:00:17 AM
    Last accessed : 12/18/03 4:51:10 AM
    Last modified : 12/16/03 2:00:17 AM

    DownloadWare Object recognized!
    Type : File
    Data : cfg
    Object : c:\program files\downloadware\

    Created on : 12/08/03 9:22:36 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/16/03 2:00:18 AM

    DownloadWare Object recognized!
    Type : File
    Data : downloads
    Object : c:\program files\downloadware\

    Created on : 12/08/03 9:22:36 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/16/03 2:00:20 AM

    DownloadWare Object recognized!
    Type : File
    Data : temp
    Object : c:\program files\downloadware\

    Created on : 12/08/03 9:23:11 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/16/03 2:00:17 AM

    CommonName Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Value : Winnet

    CommonName Object recognized!
    Type : Folder
    Object : c:\program files\CommonName

    CommonName Object recognized!
    Type : File
    Data : winnet.ini
    Object : c:\windows\system32\

    Created on : 12/11/03 4:26:06 AM
    Last accessed : 12/18/03 4:51:10 AM
    Last modified : 12/11/03 4:27:13 AM

    NCase Object recognized!
    Type : Folder
    Object : c:\program files\n-CASE

    NCase Object recognized!
    Type : Folder
    Object : c:\windows\FLEOK

    NCase Object recognized!
    Type : File
    Data : fiz1
    Object : c:\program files\n-case\
    FileSize : 10 KB
    Created on : 12/11/03 5:51:38 PM
    Last accessed : 12/18/03 4:51:10 AM
    Last modified : 12/16/03 6:38:01 PM

    NCase Object recognized!
    Type : File
    Data : fleok
    Object : c:\program files\n-case\

    Created on : 12/11/03 4:25:46 AM
    Last accessed : 12/18/03 4:50:52 AM
    Last modified : 12/11/03 4:26:10 AM

    NCase Object recognized!
    Type : File
    Data : kyf.dat
    Object : c:\program files\n-case\
    FileSize : 2162 KB
    Created on : 12/11/03 4:25:55 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/13/03 9:33:51 PM

    NCase Object recognized!
    Type : File
    Data : msbb.exe
    Object : c:\program files\n-case\
    FileSize : 192 KB
    FileVersion : 4.2
    ProductVersion : 4.2
    Copyright : Copyright
    CompanyName : 180Solutions Inc
    FileDescription : msbb
    InternalName : msbb
    OriginalFilename : msbb.exe
    ProductName : n-CASE
    Created on : 04/10/02 7:14:13 PM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/11/03 4:25:51 AM

    NCase Object recognized!
    Type : File
    Data : ncmyb.dll
    Object : c:\program files\n-case\
    FileSize : 40 KB
    Created on : 12/11/03 4:26:10 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/11/03 4:26:10 AM

    NCase Object recognized!
    Type : File
    Data : ncmyb.dll
    Object : c:\windows\
    FileSize : 40 KB
    Created on : 12/17/03 12:40:43 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/17/03 12:40:43 AM

    NCase Object recognized!
    Type : File
    Data : kyf.dat
    Object : c:\windows\
    FileSize : 1939 KB
    Created on : 12/17/03 12:40:11 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/18/03 12:41:32 AM

    NCase Object recognized!
    Type : File
    Data : msbb.exe
    Object : c:\windows\fleok\
    FileSize : 192 KB
    FileVersion : 4.2
    ProductVersion : 4.2
    Copyright : Copyright
    CompanyName : 180Solutions Inc
    FileDescription : msbb
    InternalName : msbb
    OriginalFilename : msbb.exe
    ProductName : n-CASE
    Created on : 12/17/03 12:40:19 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/17/03 12:40:27 AM

    NCase Object recognized!
    Type : File
    Data : fiz1
    Object : c:\windows\
    FileSize : 4 KB
    Created on : 12/17/03 12:43:04 AM
    Last accessed : 12/18/03 4:08:44 AM
    Last modified : 12/18/03 4:08:44 AM

    BargainBuddy Object recognized!
    Type : Folder
    Object : c:\program files\bargain buddy\bin

    BargainBuddy Object recognized!
    Type : Folder
    Object : c:\program files\Bargain Buddy

    BargainBuddy Object recognized!
    Type : File
    Data : apuc.dll
    Object : c:\program files\bargain buddy\bin\
    FileSize : 68 KB
    FileVersion : 1, 0, 0, 1
    ProductVersion : 1, 0, 0, 1
    Copyright : Copyright 2001
    FileDescription : apuc Module
    InternalName : apuc
    OriginalFilename : apuc.DLL
    ProductName : apuc Module
    Created on : 12/11/03 4:25:41 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 08/13/02 6:27:44 AM

    BargainBuddy Object recognized!
    Type : File
    Data : bargains.exe
    Object : c:\program files\bargain buddy\bin\
    FileSize : 248 KB
    Created on : 12/11/03 4:25:41 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 10/07/02 2:13:38 AM

    BargainBuddy Object recognized!
    Type : File
    Data : ad.dat
    Object : c:\program files\bargain buddy\
    FileSize : 1132 KB
    Created on : 12/11/03 4:25:42 AM
    Last accessed : 12/18/03 4:37:38 AM
    Last modified : 12/18/03 4:37:38 AM

    BargainBuddy Object recognized!
    Type : File
    Data : bbchk.exe
    Object : c:\program files\bargain buddy\
    FileSize : 12 KB
    FileVersion : 5.101.1663.1
    ProductVersion : 5.101.1663.1
    Copyright : Copyright (C) Microsoft Corp. 1981-1997
    CompanyName : Microsoft Corporation
    FileDescription : ECM ChkTrust
    InternalName : CHKTRUST.EXE
    OriginalFilename : CHKTRUST.EXE
    ProductName : Microsoft(R) Windows NT(R) Operating System
    Created on : 01/28/02 3:24:42 PM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 01/28/02 3:24:42 PM

    BargainBuddy Object recognized!
    Type : File
    Data : bin
    Object : c:\program files\bargain buddy\

    Created on : 12/11/03 4:25:41 AM
    Last accessed : 12/18/03 4:50:50 AM
    Last modified : 12/11/03 4:25:41 AM

    BargainBuddy Object recognized!
    Type : File
    Data : bin2
    Object : c:\program files\bargain buddy\

    Created on : 12/11/03 4:25:41 AM
    Last accessed : 12/18/03 4:08:37 AM
    Last modified : 12/11/03 4:30:19 AM

    BargainBuddy Object recognized!
    Type : File
    Data : secret guide to free xxx passwords!.url
    Object : c:\program files\bargain buddy\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/17/03 12:40:25 AM

    BargainBuddy Object recognized!
    Type : File
    Data : ub.dat
    Object : c:\program files\bargain buddy\
    FileSize : 14 KB
    Created on : 12/11/03 4:25:42 AM
    Last accessed : 12/18/03 4:50:34 AM
    Last modified : 12/18/03 2:17:01 AM

    BargainBuddy Object recognized!
    Type : File
    Data : uninst.exe
    Object : c:\program files\bargain buddy\
    FileSize : 36 KB
    Created on : 12/11/03 4:25:42 AM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/11/03 4:30:19 AM

    BookedSpace Object recognized!
    Type : File
    Data : bsx32.ini
    Object : c:\windows\

    Created on : 12/08/03 9:22:23 PM
    Last accessed : 12/18/03 4:50:34 AM
    Last modified : 12/18/03 4:50:34 AM

    BrowserAid Object recognized!
    Type : File
    Data : uptodate.exe
    Object : c:\windows\
    FileSize : 77 KB
    Created on : 12/11/03 5:44:26 PM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/11/03 5:44:26 PM

    ClipGenie Object recognized!
    Type : Folder
    Object : c:\program files\ClipGenie

    ClipGenie Object recognized!
    Type : File
    Data : clipgenie.lnk
    Object : c:\documents and settings\node3\start menu\programs\
    FileSize : 1 KB
    Created on : 12/08/03 9:23:12 PM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 12/08/03 9:23:12 PM

    ClipGenie Object recognized!
    Type : File
    Data : cg.ini
    Object : c:\program files\clipgenie\

    Created on : 09/10/02 6:45:16 PM
    Last accessed : 12/18/03 4:51:11 AM
    Last modified : 09/10/02 6:45:16 PM

    ClipGenie Object recognized!
    Type : File
    Data : clipgenie
    Object : c:\program files\clipgenie\

    Created on : 12/08/03 9:23:11 PM
    Last accessed : 12/18/03 4:50:50 AM
    Last modified : 12/08/03 9:23:11 PM

    ClipGenie Object recognized!
    Type : File
    Data : download
    Object : c:\program files\clipgenie\

    Created on : 12/08/03 9:23:11 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/08/03 9:23:11 PM

    ClipGenie Object recognized!
    Type : File
    Data : notify
    Object : c:\program files\clipgenie\

    Created on : 12/08/03 9:23:11 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/08/03 9:23:11 PM

    ClipGenie Object recognized!
    Type : File
    Data : user.ini
    Object : c:\program files\clipgenie\

    Created on : 07/24/02 6:14:51 PM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 07/24/02 6:14:51 PM

    ClipGenie Object recognized!
    Type : File
    Data : v1
    Object : c:\program files\clipgenie\

    Created on : 12/08/03 9:23:11 PM
    Last accessed : 12/18/03 4:50:51 AM
    Last modified : 12/08/03 9:23:11 PM

    istbar Object recognized!
    Type : Folder
    Object : c:\program files\IESearchbar

    SCBAR Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\SearchEnhancement

    SCBAR Object recognized!
    Type : RegValue
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Value : SearchEnhancement

    SCBAR Object recognized!
    Type : Folder
    Object : c:\program files\scbar

    SCBAR Object recognized!
    Type : File
    Data : data
    Object : c:\program files\scbar\

    Created on : 12/08/03 9:23:22 PM
    Last accessed : 12/18/03 4:08:37 AM
    Last modified : 12/08/03 9:23:32 PM

    SCBAR Object recognized!
    Type : File
    Data : v2
    Object : c:\program files\scbar\

    Created on : 12/08/03 9:23:22 PM
    Last accessed : 12/18/03 4:08:37 AM
    Last modified : 12/08/03 9:23:22 PM

    SearchAndClick Object recognized!
    Type : Folder
    Object : c:\documents and settings\node3\application data\{2CF0B992-5EEB-4143-99C0-5297EF71F444}

    SearchAndClick Object recognized!
    Type : File
    Data : stlbdist.xml
    Object : c:\windows\system32\
    FileSize : 3 KB
    Created on : 12/11/03 4:26:13 AM
    Last accessed : 12/18/03 4:08:17 AM
    Last modified : 12/11/03 4:26:13 AM

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\Dbi

    VX2.BetterInternet Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : Software\Dbi

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.inf
    Object : c:\windows\inf\
    FileSize : 1 KB
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 11/19/03 4:56:38 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : biprep.exe
    Object : c:\windows\
    FileSize : 44 KB
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 07/04/03 12:51:14 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.ini
    Object : c:\windows\
    FileSize : 224 KB
    Created on : 12/17/03 12:43:07 AM
    Last accessed : 12/18/03 4:08:17 AM
    Last modified : 12/13/03 4:48:18 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.dll
    Object : c:\windows\
    FileSize : 148 KB
    FileVersion : 0, 0, 4, 19
    ProductVersion : 0, 0, 4, 19
    Copyright : Copyright
    CompanyName : Better Internet, Inc.
    FileDescription : www.abetterinternet.com
    InternalName : Win32 Bi Application
    OriginalFilename : BI.DLL
    ProductName : Win32 BI Application
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:08:37 AM
    Last modified : 09/16/03 6:05:40 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : biprep.exe
    Object : c:\docume~1\node3\locals~1\temp\
    FileSize : 44 KB
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 07/04/03 12:51:14 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.inf
    Object : c:\docume~1\node3\locals~1\temp\
    FileSize : 1 KB
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 11/19/03 4:56:38 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.dll
    Object : c:\docume~1\node3\locals~1\temp\
    FileSize : 148 KB
    FileVersion : 0, 0, 4, 19
    ProductVersion : 0, 0, 4, 19
    Copyright : Copyright
    CompanyName : Better Internet, Inc.
    FileDescription : www.abetterinternet.com
    InternalName : Win32 Bi Application
    OriginalFilename : BI.DLL
    ProductName : Win32 BI Application
    Created on : 12/17/03 12:40:10 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 09/16/03 6:05:40 PM

    VX2.BetterInternet Object recognized!
    Type : File
    Data : bi.cab
    Object : c:\docume~1\node3\locals~1\temp\
    FileSize : 85 KB
    Created on : 12/17/03 12:40:09 AM
    Last accessed : 12/18/03 4:51:12 AM
    Last modified : 12/18/03 12:41:12 AM

    WinFavorites Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_CURRENT_USER
    Object : Software\WinFavorites

    WinFavorites Object recognized!
    Type : RegKey
    Data :
    Rootkey : HKEY_LOCAL_MACHINE
    Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Win Favorites

    WinFavorites Object recognized!
    Type : Folder
    Object : c:\program files\WinFavorites

    WinFavorites Object recognized!
    Type : Folder
    Object : c:\documents and settings\node3\favorites\Discount Adult Pass

    WinFavorites Object recognized!
    Type : Folder
    Object : c:\documents and settings\node3\favorites\Adult Entertainment

    WinFavorites Object recognized!
    Type : File
    Data : url.txt
    Object : c:\

    Created on : 12/17/03 12:40:12 AM
    Last accessed : 12/18/03 4:51:20 AM
    Last modified : 12/18/03 12:42:18 AM

    WinFavorites Object recognized!
    Type : File
    Data : amateur
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : asian
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : ass & anal
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : bisexual
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : blowjob
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : boobs & titties
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : brunettes
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : celebrity & hollywood sex
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : cum
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : drunk
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : ebony & black
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : farm
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : fat
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : fetish
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:26 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : gangbang
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : gay
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : hardcore stuff
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : indian
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : interracial
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : latin porn
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : lesbians
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : m.i.l.f. & wives
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : mature & old
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : reality sites – new!
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : redheads
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : russian sex
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:25 AM

    WinFavorites Object recognized!
    Type : File
    Data : teen sex
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : tranny
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    WinFavorites Object recognized!
    Type : File
    Data : voyeur & cams
    Object : c:\documents and settings\node3\favorites\adult entertainment\

    Created on : 12/17/03 12:40:25 AM
    Last accessed : 12/17/03 12:40:29 AM
    Last modified : 12/17/03 12:40:26 AM

    Newton Knows Object recognized!
    Type : Folder
    Object : c:\docume~1\node3\locals~1\temp\vupd

    Conditional scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 95
    Objects found so far: 262

    10:51:21 PM Scan complete

    Summary of this scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Total scanning time :00:01:28:828
    Objects scanned :35761
    Objects identified :262
    Objects ignored :0
    New objects :262

    Views: 1,177
    On this day...

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    Note: This post is over 5 years old. You may want to check later in this blog to see if there is new information relevant to your comment.

    Article Navigation
    « Previous
    December 2003
    S M T W T F S
     123456
    78910111213
    14151617181920
    21222324252627
    28293031  
    »Ad-aware Report (43.87)
    »Sim Shatner (5.30)
    »Fuck NBC! (5.29)
    »Privacy Policy (5.23)
    »Spore (4.92)
    »Inventory Expanded (4.65)
    »XP Is Back? (4.41)
    »Fair Use (4.06)
    »Downtime (3.79)
    »Damn! (3.72)
    Mastodon me on Mastodon
    ooh.directory a place to find good blogs that interest you.
    Acolytes of Destruction a Bors Server Guild
    Gawain the Blind The new home of Gawain on the internet.
    Penny Arcade News Fucker 3000
    Zero Punctuation The Escapist’s groundbreaking video review series starring Yahtzee
    The Awful Forums The Something Awful Forums
    Broken Toys A blog about stuff, by a guy who breaks and sometimes fixes stuff.
    TWiT This WEEK in TECH
    Evil Avatar Daily Gaming News… With Attitude
    Kotaku Kotaku: a gamer’s guide that goes beyond the press release.
    Voodoo Extreme IGN.com is the #1 gaming site on the web! Reviews, ratings, etc.
    Blue’s News All the carnage that’s fit to post!

    Is Sarah Palin Still Retarded?

    View Results

    Loading ... Loading ...
    Polls Archive
    Bad Behavior has blocked 226 access attempts in the last 7 days.
    Akismet has protected Hotelblues.com from 10,684 spam comments.
    Boycott Staforce
    left.gif
    Copyright © 2024 Hotelblues.com All Rights Reserved | 119 queries, 1.355 seconds
    right.gif

    Powered by WordPress/ WordPress Plugins Used
    Hosted by Pas-Com Web Hosting