Spyware Scan Details
Start Date: 5/18/2005 11:12:36 AM
End Date: 5/18/2005 11:17:00 AM
Total Time: 4 mins 24 secs
Detected Threats
WindUpdates Browser Plug-in more information...
Details: WindUpdates downloads additional adware and displays pop-up advertising.
Status: Removed
Severe threat - Severe-risk items have an extreme potential for harm, such as a security exploit, and should be removed.
Infected files detected
c:\winnt\system32\ide21201.vxd
SearchMiracle.EliteBar Browser Plug-in more information...
Details: SearchMiracle.EliteBar adds a search redirection toolbar to Internet Explorer called Elite Bar.
Status: Removed
High threat - High-risk items have a large potential for harm, such as loss of computer control, and should be removed unless knowingly installed.
Infected files detected
C:\protas.exe
c:\documents and settings\rohan\favorites\casino & carrers\online gaming.url
c:\documents and settings\rohan\favorites\casino & carrers\poker.url
c:\documents and settings\rohan\favorites\casino & carrers\roulette.url
c:\documents and settings\rohan\favorites\casino & carrers\slot machines.url
c:\documents and settings\rohan\favorites\casino & carrers\sport betting.url
c:\documents and settings\rohan\favorites\casino & carrers\sportsbooks.url
c:\documents and settings\rohan\favorites\finances & business\advertising.url
c:\documents and settings\rohan\favorites\finances & business\asset protection.url
c:\documents and settings\rohan\favorites\finances & business\bad credit.url
c:\documents and settings\rohan\favorites\finances & business\bankruptcy.url
c:\winnt\protector.exe
c:\documents and settings\rohan\favorites\finances & business\business opportunity.url
c:\documents and settings\rohan\favorites\finances & business\business.url
c:\documents and settings\rohan\favorites\finances & business\cash advance.url
c:\documents and settings\rohan\favorites\finances & business\credit reports.url
c:\documents and settings\rohan\favorites\finances & business\credit.url
c:\documents and settings\rohan\favorites\finances & business\debt consolidation.url
c:\documents and settings\rohan\favorites\finances & business\debt relief.url
c:\documents and settings\rohan\favorites\finances & business\e commerce.url
c:\documents and settings\rohan\favorites\finances & business\home mortgages.url
c:\documents and settings\rohan\favorites\finances & business\human resources.url
c:\documents and settings\rohan\favorites\casino & carrers\baccarat.url
c:\documents and settings\rohan\favorites\finances & business\insurance.url
c:\documents and settings\rohan\favorites\finances & business\loans.url
c:\documents and settings\rohan\favorites\finances & business\marketing.url
c:\documents and settings\rohan\favorites\finances & business\project management.url
c:\documents and settings\rohan\favorites\finances & business\refinance.url
c:\documents and settings\rohan\favorites\finances & business\small business.url
c:\documents and settings\rohan\favorites\finances & business\work at home.url
c:\documents and settings\rohan\favorites\health & insurance\adipex.url
c:\documents and settings\rohan\favorites\health & insurance\auto insurance.url
c:\documents and settings\rohan\favorites\health & insurance\business insurance.url
c:\documents and settings\rohan\favorites\casino & carrers\betting.url
c:\documents and settings\rohan\favorites\health & insurance\dental insurance.url
c:\documents and settings\rohan\favorites\health & insurance\diet pills.url
c:\documents and settings\rohan\favorites\health & insurance\hair loss.url
c:\documents and settings\rohan\favorites\health & insurance\health insurance.url
c:\documents and settings\rohan\favorites\health & insurance\home insurance.url
c:\documents and settings\rohan\favorites\health & insurance\insurance.url
c:\documents and settings\rohan\favorites\health & insurance\life insurance.url
c:\documents and settings\rohan\favorites\health & insurance\nutrition.url
c:\documents and settings\rohan\favorites\health & insurance\penis enlargement.url
c:\documents and settings\rohan\favorites\health & insurance\phentermine.url
c:\documents and settings\rohan\favorites\casino & carrers\bingo.url
c:\documents and settings\rohan\favorites\health & insurance\prozac.url
c:\documents and settings\rohan\favorites\health & insurance\quit smoking.url
c:\documents and settings\rohan\favorites\health & insurance\term life insurance.url
c:\documents and settings\rohan\favorites\health & insurance\travel insurance.url
c:\documents and settings\rohan\favorites\health & insurance\valtrex.url
c:\documents and settings\rohan\favorites\health & insurance\viagra.url
c:\documents and settings\rohan\favorites\health & insurance\weight loss.url
c:\documents and settings\rohan\favorites\health & insurance\xenical.url
c:\documents and settings\rohan\favorites\homelife & travel\adventure travel.url
c:\documents and settings\rohan\favorites\homelife & travel\air conditioning.url
c:\documents and settings\rohan\favorites\casino & carrers\blackjack.url
c:\documents and settings\rohan\favorites\homelife & travel\air purifiers.url
c:\documents and settings\rohan\favorites\homelife & travel\air travel.url
c:\documents and settings\rohan\favorites\homelife & travel\blinds.url
c:\documents and settings\rohan\favorites\homelife & travel\celebrity cruises.url
c:\documents and settings\rohan\favorites\homelife & travel\cheap hotels.url
c:\documents and settings\rohan\favorites\homelife & travel\hawaii travel.url
c:\documents and settings\rohan\favorites\homelife & travel\home equity loans.url
c:\documents and settings\rohan\favorites\homelife & travel\home mortgages.url
c:\documents and settings\rohan\favorites\homelife & travel\international travel.url
c:\documents and settings\rohan\favorites\homelife & travel\las vegas hotels.url
c:\documents and settings\rohan\favorites\casino & carrers\horse racing.url
c:\documents and settings\rohan\favorites\homelife & travel\lighting.url
c:\documents and settings\rohan\favorites\homelife & travel\mattress.url
c:\documents and settings\rohan\favorites\homelife & travel\moving.url
c:\documents and settings\rohan\favorites\homelife & travel\refinance.url
c:\documents and settings\rohan\favorites\homelife & travel\relocation.url
c:\documents and settings\rohan\favorites\homelife & travel\travel agents.url
c:\documents and settings\rohan\favorites\homelife & travel\travel insurance.url
c:\documents and settings\rohan\favorites\homelife & travel\travel.url
c:\documents and settings\rohan\favorites\casino & carrers\online betting.url
c:\documents and settings\rohan\favorites\casino & carrers\online casinos.url
Infected folders detected
c:\documents and settings\rohan\favorites\casino & carrers
c:\documents and settings\rohan\favorites\finances & business
c:\documents and settings\rohan\favorites\health & insurance
c:\documents and settings\rohan\favorites\homelife & travel
Infected registry keys/values detected
HKEY_CLASSES_ROOT\clsid\{0A1D22C3-37BE-470C-9C29-E3074EE0574B}
HKEY_CLASSES_ROOT\clsid\{825CF5BD-8862-4430-B771-0C15C5CA8DEF} &EliteBar
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar maxshow 6
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar Activated 1
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar AccountNumber visaid
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar uninstalled no
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar _show 1
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar FirstTimeStarted 1
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar SearchIndex 0
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar AutoComplete 1
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar ac1 adult
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar adult.tbr 9
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar popupblocker no
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar popups no
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar pthreshold 5
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar default.tbr 9
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar search.mnu 9
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar version 60
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar path C:\WINNT\EliteToolBar\
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar UpdateDate 18050500
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar UpdateAttempt 18050510
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\InprocServer32 C:\WINNT\EliteSideBar\EliteSideBar 08.dll
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar guid fb8754c6-04a3-4ffe-bb08-aa431a0ba3fe
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar dnsc yes
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar searchkeys |
http://www.yupsearch.com/search.php
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar purl
http://yupsearch.com/link.php?k=
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar keywordlist C:\WINNT\EliteToolBar\elitelist
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar kwver 2
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar errorreport yes
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar excluded google.com,yahoo.com,searchmiracle.com
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar axparam &msbb=&protector_tool=1
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\InprocServer32 ThreadingModel Apartment
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar city Mohali
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar state 16
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar country India
HKEY_LOCAL_MACHINE\Software\Elitum\EliteToolBar Activated 1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {825CF5BD-8862-4430-B771-0C15C5CA8DEF}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{28CAEFF3-0F18-4036-B504-51D73BD81ABC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{28CAEFF3-0F18-4036-B504-51D73BD81ABC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run checkrun
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\MiscStatus\1 131473
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\EliteBar Internet Explorer Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\EliteBar Internet Explorer Toolbar UninstallString regsvr32 /s /u "C:\WINNT\EliteToolBar\EliteToolBar version 60.dll"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\EliteBar Internet Explorer Toolbar DisplayName EliteBar Internet Explorer Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\EliteBar Internet Explorer Toolbar DisplayIcon "C:\WINNT\EliteToolBar\EliteToolBar version 60.dll", 1
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\MiscStatus 0
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\ProgID CGBand.CGBandObj.1
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\TypeLib {8AA59E15-6E81-415C-B299-1ADFB50C8E1A}
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\Version 1.0
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647}\VersionIndependentProgID CGBand.CGBandObj
HKEY_CLASSES_ROOT\clsid\{0A1D22C3-37BE-470C-9C29-E3074EE0574B}\InprocServer32 C:\WINNT\EliteSideBar\EliteSideBar 08.dll
HKEY_CLASSES_ROOT\clsid\{BE8D0059-D24D-4919-B76F-99F4A2203647} Elite SideBar
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}\InprocServer32 ThreadingModel Apartment
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}\InprocServer32 C:\WINNT\EliteSideBar\EliteSideBar 08.dll
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}\Instance\InitPropertyBag 0
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}\MiscStatus\1 131473
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41}\MiscStatus 0
HKEY_CLASSES_ROOT\clsid\{ED103D9F-3070-4580-AB1E-E5C179C1AE41} &EliteSideBar
HKEY_CURRENT_USER\Software\LQ
HKEY_CURRENT_USER\Software\LQ TM 10
HKEY_CLASSES_ROOT\clsid\{28CAEFF3-0F18-4036-B504-51D73BD81ABC}
HKEY_CURRENT_USER\Software\LQ U 0
HKEY_CURRENT_USER\Software\LQ AD 5
HKEY_CURRENT_USER\Software\LQ AC 1250
HKEY_CURRENT_USER\Software\LQ I {FBF210DE-5709-4CF5-B85A-4A124DCADF2B}
HKEY_CURRENT_USER\Software\LQ AT 86400
HKEY_CURRENT_USER\Software\LQ AM 6
HKEY_CURRENT_USER\Software\LQ TR 86400
HKEY_CURRENT_USER\Software\LQ leck trump
HKEY_CURRENT_USER\Software\LQ country India
HKEY_CURRENT_USER\Software\LQ city Mohali
HKEY_CLASSES_ROOT\clsid\{28CAEFF3-0F18-4036-B504-51D73BD81ABC}\InprocServer32 C:\WINNT\EliteToolBar\EliteToolBar version 60.dll
HKEY_CURRENT_USER\Software\LQ state 16
HKEY_CURRENT_USER\Software\LQ RX 1
HKEY_CURRENT_USER\Software\LQ RX2.8 1
HKEY_CURRENT_USER\Software\LQ RX2.9 1
HKEY_CURRENT_USER\Software\LQ RX3.0 1
HKEY_CURRENT_USER\Software\LQ RX3.1 1
HKEY_CURRENT_USER\Software\LQ RX3.2 1
HKEY_CURRENT_USER\Software\LQ RX3.3 1
HKEY_CURRENT_USER\Software\LQ FU3.4 1
HKEY_CURRENT_USER\Software\LQ FU3.5 1
HKEY_CLASSES_ROOT\clsid\{28CAEFF3-0F18-4036-B504-51D73BD81ABC}\InprocServer32 ThreadingModel Apartment
HKEY_CURRENT_USER\Software\LQ FU3.6 1
HKEY_CURRENT_USER\Software\LQ LU3.7 1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28CAEFF 3-0F18-4036-B504-51D73BD81ABC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28CAEFF 3-0F18-4036-B504-51D73BD81ABC}\InprocServer32 C:\WINNT\EliteToolBar\EliteToolBar version 60.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28CAEFF 3-0F18-4036-B504-51D73BD81ABC}\InprocServer32 ThreadingModel Apartment
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28CAEFF 3-0F18-4036-B504-51D73BD81ABC} &EliteBar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{825CF5B D-8862-4430-B771-0C15C5CA8DEF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{825CF5B D-8862-4430-B771-0C15C5CA8DEF}\InprocServer32 C:\WINNT\EliteToolBar\EliteToolBar version 60.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{825CF5B D-8862-4430-B771-0C15C5CA8DEF}\InprocServer32 ThreadingModel Apartment
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{825CF5B D-8862-4430-B771-0C15C5CA8DEF} &EliteBar
HKEY_CLASSES_ROOT\clsid\{28CAEFF3-0F18-4036-B504-51D73BD81ABC} &EliteBar
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar AccountNumber visaid
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar uninstalled no
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar _show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar FirstTimeStarted 1
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar SearchIndex 0
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar AutoComplete 1
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar ac1 adult
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar adult.tbr 9
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar popupblocker no
HKEY_CLASSES_ROOT\clsid\{825CF5BD-8862-4430-B771-0C15C5CA8DEF}
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar popups no
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar pthreshold 5
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar default.tbr 9
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar search.mnu 9
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar version 60
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar path C:\WINNT\EliteToolBar\
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar UpdateDate 18050500
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar UpdateAttempt 18050510
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar guid fb8754c6-04a3-4ffe-bb08-aa431a0ba3fe
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar dnsc yes
HKEY_CLASSES_ROOT\clsid\{825CF5BD-8862-4430-B771-0C15C5CA8DEF}\InprocServer32 C:\WINNT\EliteToolBar\EliteToolBar version 60.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar searchkeys |
http://www.yupsearch.com/search.php
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar purl
http://yupsearch.com/link.php?k=
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar keywordlist C:\WINNT\EliteToolBar\elitelist
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar kwver 2
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar errorreport yes
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar excluded google.com,yahoo.com,searchmiracle.com
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar axparam &msbb=&protector_tool=1
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar city Mohali
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar state 16
HKEY_CLASSES_ROOT\clsid\{825CF5BD-8862-4430-B771-0C15C5CA8DEF}\InprocServer32 ThreadingModel Apartment
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar country India
HKEY_LOCAL_MACHINE\SOFTWARE\Elitum\EliteToolBar Activated 1
HKEY_LOCAL_MACHINE\Software\Elitum
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar UpdateDate 17050500
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar FirstTimeStarted 1
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar version 08
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar path C:\WINNT\EliteSideBar\
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar UpdateAttempt 18050511
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar excluded google.com,yahoo.com,searchmiracle.com
HKEY_LOCAL_MACHINE\Software\Elitum\EliteSideBar url
http://yupsearch.com/sb.php?qq=
Windows TaskAd Adware more information...
Details: Windows TaskAd is advertisement delivery software that provides targeted advertising offers.
Status: Removed
High threat - High-risk items have a large potential for harm, such as loss of computer control, and should be removed unless knowingly installed.
Infected files detected
C:\Program Files\Windows TaskAd\WinTaskAd.exe
c:\program files\windows taskad\info.txt
c:\program files\windows taskad\winproject.dll
c:\program files\windows taskad\winsched.exe
Infected folders detected
c:\program files\windows taskad
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run Windows TaskAd
Detected Spyware Cookies
No spyware cookies were found during this scan.