Ad-Aware SE Build 1.06r1
Logfile Created on:Miércoles, 20 de Julio de 2005 08:42:33 p.m.
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R55 19.07.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» »
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie(TAC index:3):1 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
20-07-2005 08:42:33 p.m. - Scan started. (Full System Scan)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [smss.exe]
* * FilePath* * * * * : \SystemRoot\System32\
* * ProcessID* * * * * : 604
* * ThreadCreationTime : 21-07-2005 01:37:05 a.m.
* * BasePriority* * * : Normal
#:2 [csrss.exe]
* * FilePath* * * * * : \??\C:\WINDOWS\system32\
* * ProcessID* * * * * : 652
* * ThreadCreationTime : 21-07-2005 01:37:08 a.m.
* * BasePriority* * * : Normal
#:3 [winlogon.exe]
* * FilePath* * * * * : \??\C:\WINDOWS\system32\
* * ProcessID* * * * * : 676
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : High
#:4 [services.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 720
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Sistema operativo Microsoft® Windows®
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Aplicación de servicios y controlador
* * InternalName* * * : services.exe
* * LegalCopyright* * : Copyright © Microsoft Corporation. Reservados todos los derechos.
* * OriginalFilename* : services.exe
#:5 [lsass.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 732
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : LSA Shell (Export Version)
* * InternalName* * * : lsass.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : lsass.exe
#:6 [dfservex.exe]
* * FilePath* * * * * : C:\Archivos de programa\HyperTechnologies\Deep Freeze\
* * ProcessID* * * * * : 908
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 4.20.020.0598
* * ProductVersion* * : 4.20.020.0598
* * ProductName* * * * : Deep Freeze
* * CompanyName* * * * : Hyper Technologies Inc.
* * FileDescription* * : DeepFreeze4 Project
* * InternalName* * * : dfservex
* * LegalCopyright* * : Copyright© 1999-2001 Hyper Technologies Inc.
* * OriginalFilename* : dfservex.exe
#:7 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 932
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:8 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1000
* * ThreadCreationTime : 21-07-2005 01:37:09 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:9 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\System32\
* * ProcessID* * * * * : 1088
* * ThreadCreationTime : 21-07-2005 01:37:10 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:10 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1272
* * ThreadCreationTime : 21-07-2005 01:37:10 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:11 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1308
* * ThreadCreationTime : 21-07-2005 01:37:10 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:12 [spoolsv.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1524
* * ThreadCreationTime : 21-07-2005 01:37:10 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Spooler SubSystem App
* * InternalName* * * : spoolsv.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : spoolsv.exe
#:13 [explorer.exe]
* * FilePath* * * * * : C:\WINDOWS\
* * ProcessID* * * * * : 1704
* * ThreadCreationTime : 21-07-2005 01:37:12 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 6.00.2900.2180
* * ProductName* * * * : Sistema operativo Microsoft® Windows®
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Explorador de Windows
* * InternalName* * * : explorer
* * LegalCopyright* * : © Microsoft Corporation. Reservados todos los derechos.
* * OriginalFilename* : EXPLORER.EXE
#:14 [frzstate.exe]
* * FilePath* * * * * : C:\Archivos de programa\HyperTechnologies\Deep Freeze\_$Df\
* * ProcessID* * * * * : 1764
* * ThreadCreationTime : 21-07-2005 01:37:12 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 4.10.020.0448
* * ProductVersion* * : 4.10.020.0448
* * ProductName* * * * : Deep Freeze
* * CompanyName* * * * : Hyper Technologies Inc.
* * FileDescription* * : DeepFreeze4 Project
* * InternalName* * * : FrzState
* * LegalCopyright* * : Copyright© 1999-2002 Hyper Technologies Inc.
* * OriginalFilename* : FrzState.exe
#:15 [jusched.exe]
* * FilePath* * * * * : C:\Archivos de programa\Java\jre1.5.0_02\bin\
* * ProcessID* * * * * : 1900
* * ThreadCreationTime : 21-07-2005 01:37:14 a.m.
* * BasePriority* * * : Normal
#:16 [msgplus.exe]
* * FilePath* * * * * : D:\Archivos de programa\MessengerPlus! 3\
* * ProcessID* * * * * : 1916
* * ThreadCreationTime : 21-07-2005 01:37:14 a.m.
* * BasePriority* * * : Normal
#:17 [freeram.exe]
* * FilePath* * * * * : C:\Archivos de programa\MindSoft\MindSoft Utilities XP 8.2\
* * ProcessID* * * * * : 1924
* * ThreadCreationTime : 21-07-2005 01:37:14 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 8.01.2004
* * ProductVersion* * : 8.01.2004
* * ProductName* * * * : MindSoft FreeRAM
* * CompanyName* * * * : MindSoft
* * FileDescription* * : MindSoft FreeRAM
* * InternalName* * * : freeram
* * OriginalFilename* : freeram.exe
* * Comments* * * * * : Mejora el rendimiento de la memoria RAM en Windows
#:18 [lvcomsx.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1932
* * ThreadCreationTime : 21-07-2005 01:37:14 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 8.4.1.1092
* * ProductVersion* * : 8.4.1.1092
* * ProductName* * * * : Logitech QuickCam
* * CompanyName* * * * : Logitech Inc.
* * FileDescription* * : LVCom Server
* * InternalName* * * : LVComS.exe
* * LegalCopyright* * : © 1996-2004 Logitech.* All rights reserved.
* * OriginalFilename* : LVComS.exe
#:19 [smagent.exe]
* * FilePath* * * * * : C:\Archivos de programa\Analog Devices\SoundMAX\
* * ProcessID* * * * * : 324
* * ThreadCreationTime : 21-07-2005 01:37:18 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 3, 2, 6, 0
* * ProductVersion* * : 3, 2, 6, 0
* * ProductName* * * * : SoundMAX service agent
* * CompanyName* * * * : Analog Devices, Inc.
* * FileDescription* * : SoundMAX service agent component
* * InternalName* * * : SMAgent
* * LegalCopyright* * : Copyright © 2002
* * OriginalFilename* : SMAgent.exe
#:20 [svchost.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 412
* * ThreadCreationTime : 21-07-2005 01:37:18 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Generic Host Process for Win32 Services
* * InternalName* * * : svchost.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : svchost.exe
#:21 [alg.exe]
* * FilePath* * * * * : C:\WINDOWS\System32\
* * ProcessID* * * * * : 1716
* * ThreadCreationTime : 21-07-2005 01:37:28 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Application Layer Gateway Service
* * InternalName* * * : ALG.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : ALG.exe
#:22 [wscntfy.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1196
* * ThreadCreationTime : 21-07-2005 01:37:29 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
* * ProductVersion* * : 5.1.2600.2180
* * ProductName* * * * : Microsoft® Windows® Operating System
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Windows Security Center Notification App
* * InternalName* * * : wscntfy.exe
* * LegalCopyright* * : © Microsoft Corporation. All rights reserved.
* * OriginalFilename* : wscntfy.exe
#:23 [firefox.exe]
* * FilePath* * * * * : D:\Archivos de Programa\Mozilla Firefox\
* * ProcessID* * * * * : 1604
* * ThreadCreationTime : 21-07-2005 01:37:50 a.m.
* * BasePriority* * * : Normal
#:24 [wuauclt.exe]
* * FilePath* * * * * : C:\WINDOWS\system32\
* * ProcessID* * * * * : 1864
* * ThreadCreationTime : 21-07-2005 01:38:04 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 5.8.0.2469 built by: lab01_n(wmbla)
* * ProductVersion* * : 5.8.0.2469
* * ProductName* * * * : Sistema operativo Microsoft® Windows®
* * CompanyName* * * * : Microsoft Corporation
* * FileDescription* * : Actualizaciones automáticas
* * InternalName* * * : wuauclt.exe
* * LegalCopyright* * : © Microsoft Corporation. Reservados todos los derechos.
* * OriginalFilename* : wuauclt.exe
#:25 [ad-aware.exe]
* * FilePath* * * * * : D:\ARCHIV~1\Lavasoft\AD-AWA~1\
* * ProcessID* * * * * : 1352
* * ThreadCreationTime : 21-07-2005 01:42:16 a.m.
* * BasePriority* * * : Normal
* * FileVersion* * * * : 6.2.0.236
* * ProductVersion* * : SE 106
* * ProductName* * * * : Lavasoft Ad-Aware SE
* * CompanyName* * * * : Lavasoft Sweden
* * FileDescription* * : Ad-Aware SE Core application
* * InternalName* * * : Ad-Aware.exe
* * LegalCopyright* * : Copyright © Lavasoft AB Sweden
* * OriginalFilename* : Ad-Aware.exe
* * Comments* * * * * : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
* * Type* * * * * * * : IECache Entry
* * Data* * * * * * * : dina@atdmt[2].txt
* * TAC Rating* * * * : 3
* * Category* * * * * : Data Miner
* * Comment* * * * * * : Hits:6
* * Value* * * * * * * : Cookie:dina@atdmt.com/
* * Expires* * * * * * : 10-07-2010 07:00:00 p.m.
* * LastSync* * * * * : Hits:6
* * UseCount* * * * * : 0
* * Hits* * * * * * * : 6
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 1
Objects found so far: 1
Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
Deep scanning and examining files (D:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for D:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
Deep scanning and examining files (E:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for E:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» »»»»»»»»»»»»»»»»»»»»»»»»»»
Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 1
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
08:48:06 p.m. Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:05:33.219
Objects scanned:135570
Objects identified:1
Objects ignored:0
New critical objects:1