WELL YEAH IVE BEEN HAVING TROUBLE REMOVING "HOME SEARCH ASSISTENT" ITS A BROWSER HIJACKER!! WELL.. YEAH!! IAM VERY MAD KNOW!! IVE TRIED ADWARE... SPYBOT AND IT DONES'T REMOVE IT.. WELL.. YEAH HERES MY LOG FROM1!! ADWARE I RAN IT.. CUSTOM. SCAN..!!Lavasoft Ad-aware Personal Build 6.181
Logfile created on :Tuesday, August 03, 2004 1:06:11 PM
Created with Ad-aware Personal, free for private use.
Using reference-file :01R334 24.07.2004
______________________________________________________
Reffile status:
=========================
Reference file loaded:
Reference Number : 01R334 24.07.2004
Internal build : 268
File location : C:\PROGRA~1\Lavasoft\AD-AWA~1\reflist.ref
Total size : 1316091 Bytes
Signature data size : 1295051 Bytes
Reference data size : 20976 Bytes
Signatures total : 28648
Target categories : 10
Target families : 528
Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Non Intel
Memory available:32 %
Total physical memory:228724 kb
Available physical memory:71800 kb
Total page file size:560212 kb
Available on page file:387680 kb
Total virtual memory:2097024 kb
Available virtual memory:2045668 kb
OS:
Ad-aware Settings
=========================
Set : Activate in-depth scan (Recommended)
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file
Extended Ad-aware Settings
=========================
Set : Unload recognized processes during scanning
Set : Include basic Ad-aware settings in logfile
Set : Include additional Ad-aware settings in logfile
Set : Let windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Always back up reference file, before updating
Set : Play sound if scan produced a result
8-3-2004 1:06:11 PM - Scan started. (Custom mode)
Listing running processes
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 8-3-2004 7:42:42 PM
BasePriority : Normal
#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 7:42:44 PM
BasePriority : High
#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 7:42:44 PM
BasePriority : Normal
FileSize : 99 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 4/30/2002 1:38:16 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 7:42:44 PM
BasePriority : Normal
FileSize : 11 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 4/30/2002 1:37:03 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:5 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 7:42:45 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 4/30/2002 1:38:28 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:6 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:42:45 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 4/30/2002 1:38:28 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:7 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 7:42:47 PM
BasePriority : Normal
FileSize : 50 KB
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 4/30/2002 1:38:24 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:8 [navapsvc.exe]
FilePath : c:\Program Files\Norton AntiVirus\
ThreadCreationTime : 8-3-2004 7:42:47 PM
BasePriority : Normal
FileSize : 113 KB
FileVersion : 8.07.17
ProductVersion : 8.07.17
Copyright : Copyright (c) 2000-2002 Symantec Corporation. All rights reserved.
CompanyName : Symantec Corporation
FileDescription : Norton AntiVirus Auto-Protect Service
InternalName : NAVAPSVC
OriginalFilename : NAVAPSVC.EXE
ProductName : Norton AntiVirus
Created on : 2/28/2002 1:29:26 AM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 2/28/2002 1:29:26 AM
#:9 [nprotect.exe]
FilePath : C:\Program Files\Norton Utilities\
ThreadCreationTime : 8-3-2004 7:42:47 PM
BasePriority : Normal
FileSize : 132 KB
FileVersion : 15.0.0.20
ProductVersion : 15.0.0.20
Copyright : Copyright (C) 2001 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : Norton Protection Status
InternalName : NPROTECT
OriginalFilename : NPROTECT.EXE
ProductName : Norton Utilities
Created on : 1/15/2003 8:22:18 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/10/2001 2:00:00 PM
#:10 [nvsvc32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:42:47 PM
BasePriority : Normal
FileSize : 60 KB
FileVersion : 6.13.10.2880
ProductVersion : 6.13.10.2880
Copyright : (c) NVIDIA Corporation. All rights reserved.
CompanyName : NVIDIA Corporation
FileDescription : NVIDIA Driver Helper Service, Version 28.80
InternalName : NVSVC
OriginalFilename : nvsvc32.exe
ProductName : NVIDIA Driver Helper Service, Version 28.80
Created on : 3/26/2002 6:29:00 AM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 3/26/2002 6:29:00 AM
#:11 [tcpsvcs.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:42:47 PM
BasePriority : Normal
FileSize : 19 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : TCP/IP Services Application
InternalName : TCPSVCS.EXE
OriginalFilename : TCPSVCS.EXE
ProductName : Microsoft
Created on : 4/30/2002 1:39:47 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:12 [snmp.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:42:48 PM
BasePriority : Normal
FileSize : 29 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : SNMP Service
InternalName : snmp.exe
OriginalFilename : snmp.exe
ProductName : Microsoft
Created on : 1/14/2003 3:58:25 AM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:13 [nopdb.exe]
FilePath : C:\Program Files\Speed Disk\
ThreadCreationTime : 8-3-2004 7:42:49 PM
BasePriority : Normal
FileSize : 172 KB
FileVersion : 6.0.0.20
ProductVersion : 6.0.0.20
Copyright : Copyright (C) 2001
CompanyName : Symantec Corporation
FileDescription : NOPDB
InternalName : NOPDB
OriginalFilename : NOPDB.dll
ProductName : Norton Speed Disk
Created on : 1/15/2003 8:23:29 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/9/2001 2:00:00 PM
#:14 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:42:49 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 4/30/2002 1:38:28 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/18/2001 12:00:00 PM
#:15 [uphclean.exe]
FilePath : C:\Program Files\UPHClean\
ThreadCreationTime : 8-3-2004 7:42:49 PM
BasePriority : Normal
FileSize : 188 KB
FileVersion : 1.5.5.21
ProductVersion : 1.5e
Copyright : Copyright
CompanyName : Microsoft Corporation
FileDescription : User Profile Hive Cleanup Service
InternalName : UPHClean
OriginalFilename : uphclean.exe
ProductName : User Profile Hive Cleanup Service
Created on : 3/5/2004 7:45:34 AM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 3/5/2004 7:45:34 AM
#:16 [atlgr.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-3-2004 7:42:49 PM
BasePriority : Normal
FileSize : 9 KB
Created on : 7/13/2004 4:44:35 PM
Last accessed : 8/3/2004 7:43:08 PM
Last modified : 7/13/2004 4:44:35 PM
#:17 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-3-2004 7:43:06 PM
BasePriority : Normal
FileSize : 977 KB
FileVersion : 6.00.2600.0000 (xpclient.010817-1148)
ProductVersion : 6.00.2600.0000
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 4/30/2002 1:36:31 PM
Last accessed : 8/3/2004 7:43:07 PM
Last modified : 8/18/2001 12:00:00 PM
#:18 [realsched.exe]
FilePath : C:\Program Files\Common Files\Real\Update_OB\
ThreadCreationTime : 8-3-2004 7:43:28 PM
BasePriority : Normal
FileSize : 148 KB
FileVersion : 0.1.0.1622
ProductVersion : 0.1.0.1622
Copyright : Copyright
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks Scheduler
InternalName : schedapp
OriginalFilename : realsched.exe
ProductName : RealOne Player (32-bit)
Created on : 8/2/2003 10:21:29 PM
Last accessed : 8/3/2004 7:43:27 PM
Last modified : 8/2/2003 10:21:29 PM
#:19 [s3apphk.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:43:28 PM
BasePriority : Normal
FileSize : 28 KB
Created on : 3/16/2002 5:51:02 AM
Last accessed : 8/3/2004 7:43:28 PM
Last modified : 3/16/2002 5:51:02 AM
#:20 [rnathchk.exe]
FilePath : C:\Program Files\Common Files\Real\Update_OB\
ThreadCreationTime : 8-3-2004 7:43:29 PM
BasePriority : Normal
FileSize : 56 KB
FileVersion : 7.0.0.1176
ProductVersion : 7.0.0.1176
Copyright : Copyright
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks ATH Check App
InternalName : rnathchk
OriginalFilename : rnathchk.EXE
ProductName : RealOne Player (32-bit)
Created on : 8/2/2003 10:21:29 PM
Last accessed : 8/3/2004 7:42:42 PM
Last modified : 8/2/2003 10:21:29 PM
#:21 [navapw32.exe]
FilePath : C:\PROGRA~1\NORTON~1\
ThreadCreationTime : 8-3-2004 7:43:34 PM
BasePriority : Normal
FileSize : 73 KB
FileVersion : 8.07.17
ProductVersion : 8.07.17
Copyright : Copyright (c) 2000-2002 Symantec Corporation. All rights reserved.
CompanyName : Symantec Corporation
FileDescription : Norton AntiVirus Agent
InternalName : NAVAPW32
OriginalFilename : NAVAPW32.EXE
ProductName : Norton AntiVirus
Created on : 2/28/2002 1:27:58 AM
Last accessed : 8/3/2004 7:43:33 PM
Last modified : 2/28/2002 1:27:58 AM
#:22 [kbd.exe]
FilePath : C:\HP\KBD\
ThreadCreationTime : 8-3-2004 7:43:34 PM
BasePriority : High
FileSize : 60 KB
FileVersion : 1.0.2.0
ProductVersion : 1.0.2.0
Copyright : Copyright
CompanyName : Hewlett-Packard Company
FileDescription : KBD EXE
InternalName : KBD EXE
OriginalFilename : Kbd.exe
ProductName : Hewlett-Packard Company KBD EXE
Created on : 4/20/2002 5:42:13 AM
Last accessed : 8/3/2004 7:43:34 PM
Last modified : 7/7/2001 3:56:56 AM
#:23 [hpsysdrv.exe]
FilePath : C:\windows\system\
ThreadCreationTime : 8-3-2004 7:43:39 PM
BasePriority : Normal
FileSize : 51 KB
FileVersion : 1, 7, 0, 0
ProductVersion : 1, 7, 0, 0
Copyright : Copyright
CompanyName : Hewlett-Packard Company
FileDescription : hpsysdrv
InternalName : hpsysdrv
OriginalFilename : hpsysdrv.exe
ProductName : hpsysdrv
Created on : 4/20/2002 5:28:41 AM
Last accessed : 8/3/2004 7:43:36 PM
Last modified : 5/7/1998 11:04:38 PM
#:24 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 8-3-2004 7:43:47 PM
BasePriority : Normal
FileSize : 31 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 4/30/2002 1:38:12 PM
Last accessed : 8/3/2004 7:44:41 PM
Last modified : 8/18/2001 12:00:00 PM
#:25 [winjv.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 8-3-2004 7:43:48 PM
BasePriority : Normal
FileSize : 26 KB
Created on : 7/11/2004 6:22:31 AM
Last accessed : 8/3/2004 7:43:48 PM
Last modified : 7/11/2004 6:22:31 AM
#:26 [ypager.exe]
FilePath : C:\Program Files\Yahoo!\Messenger\
ThreadCreationTime : 8-3-2004 7:43:50 PM
BasePriority : Normal
FileSize : 2444 KB
FileVersion : 6,0,0,1710
ProductVersion : 6,0,0,1710
Copyright : Copyright 1998-2004
CompanyName : Yahoo! Inc.
FileDescription : Yahoo! Messenger
InternalName : Yahoo! Messengerr
OriginalFilename : YPager.exe
ProductName : Yahoo! Messenger
Created on : 4/6/2004 10:38:08 PM
Last accessed : 8/3/2004 7:43:50 PM
Last modified : 7/6/2004 6:26:38 PM
#:27 [weather.exe]
FilePath : C:\PROGRA~1\AWS\WEATHE~1\
ThreadCreationTime : 8-3-2004 7:43:52 PM
BasePriority : Normal
FileSize : 1556 KB
FileVersion : 6, 3, 0, 1
ProductVersion : 6, 3, 0, 1
Copyright : Copyright
CompanyName : AWS Convergence Technologies, Inc.
FileDescription : WeatherBug
InternalName : Desktop Weather
OriginalFilename : Weather.exe
ProductName : WeatherBug
Created on : 4/20/2002 6:22:31 AM
Last accessed : 8/3/2004 7:44:09 PM
Last modified : 6/26/2004 8:25:16 PM
#:28 [exec.exe]
FilePath : C:\Program Files\Netzero\
ThreadCreationTime : 8-3-2004 7:43:52 PM
BasePriority : Normal
FileSize : 88 KB
FileVersion : 4, 3, 0, 0
ProductVersion : 4, 3, 0, 0
Copyright : Copyright
CompanyName : NetZero
FileDescription : ZCast
InternalName : ZCOM_exec
Created on : 11/4/2003 2:51:06 PM
Last accessed : 8/3/2004 7:48:14 PM
Last modified : 11/4/2003 2:51:06 PM
#:29 [msnmsgr.exe]
FilePath : C:\Program Files\MSN Messenger\
ThreadCreationTime : 8-3-2004 7:43:53 PM
BasePriority : Normal
FileSize : 4768 KB
FileVersion : 6.2.0137
ProductVersion : Version 6.2
Copyright : Copyright (c) Microsoft Corporation 1997-2004
CompanyName : Microsoft Corporation
FileDescription : MSN Messenger
InternalName : msnmsgr
OriginalFilename : msnmsgr.exe
ProductName : MSN Messenger
Created on : 5/28/2004 10:22:04 PM
Last accessed : 8/3/2004 7:43:53 PM
Last modified : 5/28/2004 10:22:04 PM
#:30 [sgmain.exe]
FilePath : C:\Program Files\SpywareGuard\
ThreadCreationTime : 8-3-2004 7:43:59 PM
BasePriority : Normal
FileSize : 352 KB
FileVersion : 2.02.0001
ProductVersion : 2.02.0001
Copyright : Copyright (C) 2002-2003 Javacool Software LLC
FileDescription : SpywareGuard
InternalName : sgmain
OriginalFilename : sgmain.exe
ProductName : SpywareGuard
Created on : 8/30/2003 2:05:35 AM
Last accessed : 8/3/2004 7:44:14 PM
Last modified : 8/30/2003 2:05:35 AM
#:31 [sgbhp.exe]
FilePath : C:\Program Files\SpywareGuard\
ThreadCreationTime : 8-3-2004 7:44:17 PM
BasePriority : Normal
FileSize : 228 KB
FileVersion : 2.02.0001
ProductVersion : 2.02.0001
Copyright : Copyright (C) 2002-2003 Javacool Software LLC.
FileDescription : SG Browser Hijacking Protection
InternalName : sgbhp
OriginalFilename : sgbhp.exe
ProductName : SG Browser Hijacking Protection
Created on : 8/29/2003 6:14:56 PM
Last accessed : 8/3/2004 7:44:18 PM
Last modified : 8/29/2003 6:14:56 PM
#:32 [ad-aware.exe]
FilePath : C:\PROGRA~1\Lavasoft\AD-AWA~1\
ThreadCreationTime : 8-3-2004 8:01:33 PM
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 5/26/2004 12:21:32 AM
Last accessed : 8/3/2004 8:01:33 PM
Last modified : 7/13/2003 4:00:20 AM
#:33 [mshtmler.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 8-3-2004 8:01:52 PM
BasePriority : Normal
FileSize : 51 KB
Created on : 4/27/2002 1:02:03 AM
Last accessed : 8/3/2004 8:01:52 PM
Last modified : 4/27/2002 1:02:03 AM
Memory scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 0
Objects found so far: 0
Started registry scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Registry scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 0
Objects found so far: 0
Started deep registry scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Deep registry scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 0
Objects found so far: 0
Deep scanning and examining files (C
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Disk scan result for C:\
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 0
Objects found so far: 0
1:22:47 PM Scan complete
Summary of this scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Total scanning time :00:16:36:344
Objects scanned :218175
Objects identified :0
Objects ignored :0
New objects :0
!