4 Posts

September 4th, 2008 17:00

Spy Sweeper scan from above entry detail below for 16 traces. Each line starts with the time stamp, wrapped here. Note all are in the Webroot folder.

 

10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøßÊÙß‹ûÊÌÎ (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷øÎÊÙÈÃèÞØßÄÆÂÑÎøÎÊÙÈà (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷øÎÊÙÈÃøÎÊÙÈÃêØØÂØßÊÅß (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøÎÊÙÈËûÊÌÎ (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøÎÊÙÈËéÊÙ (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅçÄÈÊÇ‹ûÊÌÎ (ID = 0)
10:57 AM:   HKU\S-1-5-21-1177238915-1390067357-839522115-1109\Software\Webroot\SpySweeper\IEH || ™šŸœŸ“˜Ÿ’÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷øÎÊÙÈÃþùç (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷øÎÊÙÈÃèÞØßÄÆÂÑÎøÎÊÙÈà (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷øÎÊÙÈÃøÎÊÙÈÃêØØÂØßÊÅß (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøÎÊÙÈËéÊÙ (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøßÊÙß‹ûÊÌÎ (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅ (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅøÎÊÙÈËûÊÌÎ (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅçÄÈÊÇ‹ûÊÌÎ (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅïÎÍÊÞÇßôøÎÊÙÈÃôþùç (ID = 0)
10:57 AM:   HKLM\SOFTWARE\Webroot\SpySweeper\IEH || ™šŸœŸ“˜ž›÷øÄÍßÜÊÙÎ÷æÂÈÙÄØÄÍß÷âÅßÎÙÅÎß‹îÓÛÇÄÙÎÙ÷æÊÂÅïÎÍÊÞÇßôûÊÌÎôþùç (ID = 0)

4 Posts

September 8th, 2008 13:00

F-Secure Blacklight scan indicates,

 

Scan Complete

No Hidden Items Found

 

Is Spy Sweeper showing a false positive?

 

Thanks

4 Posts

September 8th, 2008 14:00

F-Secure Blacklight Scan Log for above

 

09/08/08 10:26:20 [Info]: BlackLight Engine 1.0.70 initialized
09/08/08 10:26:20 [Info]: OS: 5.1 build 2600 (Service Pack 2)
09/08/08 10:26:20 [Note]: 7019 4
09/08/08 10:26:20 [Note]: 7005 0
09/08/08 10:26:26 [Note]: 7006 0
09/08/08 10:26:26 [Note]: 7011 2996
09/08/08 10:26:26 [Note]: 7035 0
09/08/08 10:26:27 [Note]: 7026 0
09/08/08 10:26:27 [Note]: 7026 0
09/08/08 10:26:31 [Note]: FSRAW library version 1.7.1024
09/08/08 10:31:35 [Note]: 2000 1012
09/08/08 10:58:07 [Note]: 7007 0

2nd log ( I started up F-secure, but closed the program)

09/08/08 11:08:21 [Info]: BlackLight Engine 1.0.70 initialized
09/08/08 11:08:21 [Info]: OS: 5.1 build 2600 (Service Pack 2)
09/08/08 11:08:21 [Note]: 7019 4
09/08/08 11:08:21 [Note]: 7005 0
09/08/08 11:08:21 [Error]: 6027 5
09/08/08 11:08:22 [Error]: 6002 0
09/08/08 11:08:28 [Note]: 7007 0

Thanks,

 

No Events found!

Top