My System, My Results, would MS like this?

F

fox

My dearest microsoft,

I am trying the new MS Antispyware beta1 program. I put
it in 2 days ago, I ran it, the results are listed at the
bottom of the email, I ran it again, these results are
also below. Then I ran Lavasoft Adaware and it found
about 20 items that your beta1 did not find.

I am using a Dell Optiplex gx110, 14gb hard drive,
Windows XP Pro (w/o sp1 or 2) updates are off, never been
updated since install. P3 processor, 3com fast ethernet
and cable modem with optimum online, mozilla firefox,
explorer 6 and AOL 9.0. Also the following programs are
used on a regular basis. Limewire, ulead photoimpact 10,
freeza empee three, boletrice AOL tools, Prevx, Sygate
firewall, Mcafee fierwall, Spybot with Teatimer, boost
xp, adobe reader 7, Javas latest jre, creative webcam
software, msn messenger, aim messenger(aol), yahoo
messenger and logitech keyboard and mouse wireless
software(itouch). Also : RAM = 256mb, lavasoft and spybot
run weekly, no antivirus (too time consuming), about 10
downloads of various programs per week, 100 emails a week
in AOL.

I ran msconfig eliminating all but sygate, mcafee and
itouch from start, and was selective with the services
programs in computer administration. My harddrive is an
IBM dtla 3015c or something and has on occasion failed do
to unreadable file sectors, chkdsk/f delayed the
inevitable crash. i have not gone through this weekly
fiasco after installing both sygate and mcafee, which
with mcafee i turned off the upnp or something to stop
broadcasting my ip, not sure, also I turned on the
firewalling of the connection tcp/ip through the cable in
the connections options in xp's control panel.

Web page caching is minimal, as are history and cookie
savings allocations, the primary use of the computer is
for chatting on aol, occasional email and research. It is
also used for the playing of music as there is a
collection of 700 mp3 files (80's mostly, top 40's)
(perhaps its the rap music thats messing up the pc, there
are 3 or 4 rap songs also, smh).

If you would like further information please ask. If you
would like to have this entire system for testing
purposes I would be more than happy to trade with you for
a new system. I'm happy with what I have actually, but
ignorance is bliss, aye.


Kenneth Kelly


718-872-6060


8735 Bay Parkway #A51


Brooklyn, NY 11214




ArchiveData(auto-quarantine- 2005-01-18 12-32-21.bckp)
Referencefile : SE1R25 11.01.2005
======================================================

MRU LIST
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\runmru
obj[1]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\recent
docs\.HLP
obj[2]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\*
obj[3]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\exe
obj[4]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\jpg
obj[5]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5001
obj[6]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5603
obj[7]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5604
obj[8]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\txt
obj[9]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\microsoft management
console\recent file list
obj[11]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\preferences lastplaylist
obj[12]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\medialibraryui
mllastselectednode
obj[10]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\preferences
lastplaylistindex
obj[13]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\internet
explorer\typedurls
obj[14]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\internet explorer
download directory
obj[15]=MRU RegReference :
software\microsoft\directdraw\mostrecentapplication name
obj[16]=MRU FileReference : C:\Documents and
Settings\fox\recent\3C90XENG.lnk
obj[17]=MRU FileReference : C:\Documents and
Settings\fox\recent\stan_3.lnk
obj[18]=MRU FileReference : C:\Documents and
Settings\fox\recent\README.lnk

SOFTOMATE TOOLBAR
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[17]=Regkey : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff}
obj[18]=RegValue : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff} ""

TRACKING COOKIE
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[19]=IECache Entry : Cookie:[email protected]/
obj[20]=IECache Entry : Cookie:[email protected]/cgi-
bin
obj[21]=IECache Entry : Cookie:[email protected]/
obj[22]=IECache Entry : Cookie:[email protected]/
obj[23]=IECache Entry : Cookie:[email protected]/
obj[24]=IECache Entry :
Cookie:[email protected]/
obj[25]=IECache Entry : Cookie:[email protected]/
obj[26]=IECache Entry : Cookie:[email protected]/


=================================================
above = lavasoft adaware results below =
microsoft antispyware beta1 results
==========================================================
=============================

Spyware Scan Details
Start Date: 1/18/2005 12:12:43 PM
End Date: 1/18/2005 12:20:19 PM
Total Time: 7 mins 36 secs

Detected Threats

SearchIt Toolbar Adware more information...
Details: SearchIt Toolbar is a search toolbar that
displays pop-up advertising in Internet Explorer once it
is installed.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
\CLSID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
ToolbarAOLToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\CL
SID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\Cu
rVer Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
ToolbarAOLToolbar


Detected Spyware Cookies
No spyware cookies were found during this scan.
=================================================
passing of one
day read up ^^^
=================================================
Spyware Scan Details
Start Date: 1/17/2005 12:44:02 AM
End Date: 1/17/2005 12:51:41 AM
Total Time: 7 mins 39 secs

Detected Threats

SearchSquire Adware more information...
Details: SearchSquire is an Internet Explorer sidebar
containing paid links that open when you use search
engines.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.

Infected registry keys/values detected
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersio
n\Internet Settings\ZoneMap\Domains\searchsquire.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersio
n\Internet Settings\ZoneMap\Domains\searchsquire.com * 4


Grokster Adware Bundler more information...
Details: Grokster (free version) installs adware and
spyware including GAIN, CyDoor, My Search, WebRebates,
and Relivant Knowledge.
Status: Removed
Moderate threat - Moderate threats may profile users
online habits or broadcast data back to a server
with 'opt-out' permission. In most cases this type of
threat is more along the lines of commercial type adware
that offer a premium service in exchange for tracking
your user online performance.

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\comm
and
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\comm
and "C:\Program Files\LimeWire\LimeWire 4.2.6
\LimeWire.exe" "%L"


Detected Spyware Cookies
No spyware cookies were found during this scan.
 
S

Steve Dodson [MSFT]

Kenneth,

Is there a potential issue, question, or feature request which you can
reply back with? Let me know and I will try and assist.

-steve

Steve Dodson [MSFT]
MCSE, CISSP
PSS Security

--

This posting is provided "AS IS" with no warranties, and confers no rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
--------------------
Content-Class: urn:content-classes:message
From: "fox" <[email protected]>
Sender: "fox" <[email protected]>
Subject: My System, My Results, would MS like this?
Date: Tue, 18 Jan 2005 10:14:57 -0800
Lines: 254
Message-ID: <[email protected]>
MIME-Version: 1.0
Content-Type: text/plain;
charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
X-Newsreader: Microsoft CDO for Windows 2000
Thread-Index: AcT9iZ3SQtcIuH5hS+S5IULyPbOLoQ==
X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4910.0300
Newsgroups: microsoft.private.security.spyware.onlinecommunity
Path: cpmsftngxa10.phx.gbl
Xref: cpmsftngxa10.phx.gbl microsoft.private.security.spyware.onlinecommunity:771
NNTP-Posting-Host: tk2msftngxa13.phx.gbl 10.40.1.165
X-Tomcat-NG: microsoft.private.security.spyware.onlinecommunity

My dearest microsoft,
I am trying the new MS Antispyware beta1 program. I put
it in 2 days ago, I ran it, the results are listed at the
bottom of the email, I ran it again, these results are
also below. Then I ran Lavasoft Adaware and it found
about 20 items that your beta1 did not find.
I am using a Dell Optiplex gx110, 14gb hard drive,
Windows XP Pro (w/o sp1 or 2) updates are off, never been
updated since install. P3 processor, 3com fast ethernet
and cable modem with optimum online, mozilla firefox,
explorer 6 and AOL 9.0. Also the following programs are
used on a regular basis. Limewire, ulead photoimpact 10,
freeza empee three, boletrice AOL tools, Prevx, Sygate
firewall, Mcafee fierwall, Spybot with Teatimer, boost
xp, adobe reader 7, Javas latest jre, creative webcam
software, msn messenger, aim messenger(aol), yahoo
messenger and logitech keyboard and mouse wireless
software(itouch). Also : RAM = 256mb, lavasoft and spybot
run weekly, no antivirus (too time consuming), about 10
downloads of various programs per week, 100 emails a week
in AOL.
I ran msconfig eliminating all but sygate, mcafee and
itouch from start, and was selective with the services
programs in computer administration. My harddrive is an
IBM dtla 3015c or something and has on occasion failed do
to unreadable file sectors, chkdsk/f delayed the
inevitable crash. i have not gone through this weekly
fiasco after installing both sygate and mcafee, which
with mcafee i turned off the upnp or something to stop
broadcasting my ip, not sure, also I turned on the
firewalling of the connection tcp/ip through the cable in
the connections options in xp's control panel.
Web page caching is minimal, as are history and cookie
savings allocations, the primary use of the computer is
for chatting on aol, occasional email and research. It is
also used for the playing of music as there is a
collection of 700 mp3 files (80's mostly, top 40's)
(perhaps its the rap music thats messing up the pc, there
are 3 or 4 rap songs also, smh).
If you would like further information please ask. If you
would like to have this entire system for testing
purposes I would be more than happy to trade with you for
a new system. I'm happy with what I have actually, but
ignorance is bliss, aye.

Kenneth Kelly


718-872-6060


8735 Bay Parkway #A51


Brooklyn, NY 11214
ArchiveData(auto-quarantine- 2005-01-18 12-32-21.bckp)
Referencefile : SE1R25 11.01.2005
======================================================
MRU LIST
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\runmru
obj[1]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\recent
docs\.HLP
obj[2]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\*
obj[3]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\exe
obj[4]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\jpg
obj[5]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5001
obj[6]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5603
obj[7]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\search
assistant\acmru\5604
obj[8]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\comdlg
32\opensavemru\txt
obj[9]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\microsoft management
console\recent file list
obj[11]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\preferences lastplaylist
obj[12]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\medialibraryui
mllastselectednode
obj[10]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\mediaplayer\preferences
lastplaylistindex
obj[13]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\internet
explorer\typedurls
obj[14]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003\software\microsoft\internet explorer
download directory
obj[15]=MRU RegReference :
software\microsoft\directdraw\mostrecentapplication name
obj[16]=MRU FileReference : C:\Documents and
Settings\fox\recent\3C90XENG.lnk
obj[17]=MRU FileReference : C:\Documents and
Settings\fox\recent\stan_3.lnk
obj[18]=MRU FileReference : C:\Documents and
Settings\fox\recent\README.lnk
SOFTOMATE TOOLBAR
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[17]=Regkey : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff}
obj[18]=RegValue : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff} ""
TRACKING COOKIE
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[19]=IECache Entry : Cookie:[email protected]/
obj[20]=IECache Entry : Cookie:[email protected]/cgi-
bin
obj[21]=IECache Entry : Cookie:[email protected]/
obj[22]=IECache Entry : Cookie:[email protected]/
obj[23]=IECache Entry : Cookie:[email protected]/
obj[24]=IECache Entry :
Cookie:[email protected]/
obj[25]=IECache Entry : Cookie:[email protected]/
obj[26]=IECache Entry : Cookie:[email protected]/
=================================================
above = lavasoft adaware results below =
microsoft antispyware beta1 results
==========================================================
=============================
Spyware Scan Details
Start Date: 1/18/2005 12:12:43 PM
End Date: 1/18/2005 12:20:19 PM
Total Time: 7 mins 36 secs
Detected Threats
SearchIt Toolbar Adware more information...
Details: SearchIt Toolbar is a search toolbar that
displays pop-up advertising in Internet Explorer once it
is installed.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
\CLSID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
ToolbarAOLToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\CL
SID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\Cu
rVer Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
ToolbarAOLToolbar
Detected Spyware Cookies
No spyware cookies were found during this scan.
=================================================
passing of one
day read up ^^^
=================================================
Spyware Scan Details
Start Date: 1/17/2005 12:44:02 AM
End Date: 1/17/2005 12:51:41 AM
Total Time: 7 mins 39 secs
Detected Threats
SearchSquire Adware more information...
Details: SearchSquire is an Internet Explorer sidebar
containing paid links that open when you use search
engines.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.
Infected registry keys/values detected
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersio
n\Internet Settings\ZoneMap\Domains\searchsquire.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersio
n\Internet Settings\ZoneMap\Domains\searchsquire.com * 4
Grokster Adware Bundler more information...
Details: Grokster (free version) installs adware and
spyware including GAIN, CyDoor, My Search, WebRebates,
and Relivant Knowledge.
Status: Removed
Moderate threat - Moderate threats may profile users
online habits or broadcast data back to a server
with 'opt-out' permission. In most cases this type of
threat is more along the lines of commercial type adware
that offer a premium service in exchange for tracking
your user online performance.
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\comm
and
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\comm
and "C:\Program Files\LimeWire\LimeWire 4.2.6
\LimeWire.exe" "%L"
Detected Spyware Cookies
No spyware cookies were found during this scan.
 
U

user

(reply mixed with message)
-----Original Message-----
ArchiveData(auto-quarantine- 2005-01-18 12-32-21.bckp)
Referencefile : SE1R25 11.01.2005
======================================================

MRU LIST
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[0]=MRU RegReference : S-1-5-21-343818398-1580818891-
1060284298-1003
\software\microsoft\windows\currentversion\explorer\runmr u
..............................................
obj[18]=MRU FileReference : C:\Documents and
Settings\fox\recent\README.lnk

MRU detections should be excluded from reports, they are
not ad/spyware

SOFTOMATE TOOLBAR
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
obj[17]=Regkey : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff}
obj[18]=RegValue : interface\{cabbb49a-4d7b-415b-8250-
15c3b854e9ff} ""

Seems to be a false detection (by ad-aware) related to
aol, see:
http://www.lavasoftsupport.com/index.php?showtopic=52952
=================================================
above = lavasoft adaware results below =
microsoft antispyware beta1 results
========================================================= =
=============================

Spyware Scan Details
Start Date: 1/18/2005 12:12:43 PM
End Date: 1/18/2005 12:20:19 PM
Total Time: 7 mins 36 secs

Detected Threats

SearchIt Toolbar Adware more information...
Details: SearchIt Toolbar is a search toolbar that
displays pop-up advertising in Internet Explorer once it
is installed.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
\CLSID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar.1
ToolbarAOLToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\C L
SID {4982D40A-C53B-4615-B15B-B5B5E98D167C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar\C u
rVer Softomate.IEToolbar.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Softomate.IEToolbar
ToolbarAOLToolbar

same false detection (this time by MS-AS), see:
http://www.lavasoftsupport.com/index.php?showtopic=52952
Detected Spyware Cookies
No spyware cookies were found during this scan.
=================================================
passing of one
day read up ^^^
=================================================
Spyware Scan Details
Start Date: 1/17/2005 12:44:02 AM
End Date: 1/17/2005 12:51:41 AM
Total Time: 7 mins 39 secs

Detected Threats

SearchSquire Adware more information...
Details: SearchSquire is an Internet Explorer sidebar
containing paid links that open when you use search
engines.
Status: Removed
Elevated threat - Elevated threats are usually threats
that fall into the range of adware in which data about a
user's habits are tracked and sent back to a server for
analysis without your consent or knowledge.

Infected registry keys/values detected
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersi o
n\Internet Settings\ZoneMap\Domains\searchsquire.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersi o
n\Internet Settings\ZoneMap\Domains\searchsquire.com * 4

false detection, searchsquire.com is in your restricted
zone, this should be resolved at some point
Grokster Adware Bundler more information...
Details: Grokster (free version) installs adware and
spyware including GAIN, CyDoor, My Search, WebRebates,
and Relivant Knowledge.
Status: Removed
Moderate threat - Moderate threats may profile users
online habits or broadcast data back to a server
with 'opt-out' permission. In most cases this type of
threat is more along the lines of commercial type adware
that offer a premium service in exchange for tracking
your user online performance.

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\com m
and
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\magnet\shell\open\com m
and "C:\Program Files\LimeWire\LimeWire 4.2.6
\LimeWire.exe" "%L"

This is a false detection of magnet link support, which
is falsely attributed to Grokster.
See this message for more information:
http://search.communities.microsoft.com/newsgroups/preview
Frame.asp?
ICP=spyware&sLCID=US&sgroupURL=microsoft.private.security.
spyware.signatures&sMessageID=%253C1b4401c4fb35%
248a657580%[email protected]%253E
search for subject "magnet URL handler false positives"
in the Signatures section if this link doesn't work.
I see the status is "removed", you may have to reinstall
limewire to regain magnet functionality.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top