Microsoft klassifiziert Spyware neu

ich_bins

New member
Hab ich grade gefunden und finde es die Höhe...naja M$ halt
To deinstall or not deinstall is für mich da keine Frage mehr!

Gerüchte über heimliche Zugeständnisse in Microsofts Antispyware gegenüber dem Spyware-Hersteller Claria lassen sich nicht bestätigen. Kurz nachdem Meldungen auftauchten, die Redmonder planten die Übernahme des Gator-Nachfolgers Claria, fiel der Bericht von Eric Howes, dass die Redmonder Antispyware entdeckte Claria-Hintergrundprogramme neuerdings nicht mehr zur Beseitigung vorschlägt, auf fruchtbaren Boden. Demnach empfiehlt das Programm seit dem Update von Ende März, verschiedene als mäßig gefährlich klassifizierte Claria-Produkte ebenso wie solche der Spywareschmieden WhenU und 180solutions zu ignorieren. In früheren Fassungen wurden diese Schädlinge zur Quarantäne vorgeschlagen.

Microsoft hat die naheliegende Schlussfolgerung, man bereite sich schon auf eine Zusammenarbeit mit Claria vor, bestritten. Dort wird auf die seit langem zugängliche Beschreibung verwiesen, an welchen Kriterien die Entwickler die Bedrohlichkeit einer "womöglich unerwünschten Software" messen. Diese eigentlich vorbildliche Bewertungs-Dokumentation lässt zwar bei genauerer Betrachtung immer noch offen, wie die Default-Vorschläge der Antispyware zustande kommen, aber Microsofts Behauptung, man habe eine gleiche Behandlung für die vergleichbaren Programme von Claria und Konsorten im Sinn gehabt, lässt sich daran sauber nachvollziehen.

Doch auch wenn man dieser offen erklärten Haltung nicht Unlauteres nachsagen darf, bleiben ihre Konsequenzen sehr bedenklich. Offenbar schwenkt der Konzern auf die angestrebte Geisteshaltung der Spyware-Branche ein, dass Anzeigen-vermittelnde Hintergrundprogramme an sich legitim seien. Das mag man in einem Fall wie bei 180solutions gelten lassen, wo der Urheber selbst offenbar konsequent gegen unlautere Software-Verteiler vorgeht. Doch gerade Claria hat diese Argumentation mit geradezu hanebüchenen Argumenten in Misskredit gebracht. Bedauerlich, wenn eine Marktmacht wie Microsoft solchen Argumenten folgt und sogar gefürchtete Schädlinge wie WebHancer und eZula Toptext verharmlost.

Quelle
 

Mackz

Member of Honour
Response to questions about Claria software: http://www.microsoft.com/athome/security/spyware/software/claria_letter.mspx


Claria wird bei einem Scan weiterhin gefunden und kann auch weiterhin entfernt werden. Alles was sich geändert hat ist, dass der Bedrohungslevel herabgesetzt wurde und deshalb nun nicht mehr automatisch zum löschen empfohlen wird. Es wird aber weiterhin gefunden und im Ergebnis angezeigt, wo man die Möglichkeit hat dies zum Löschen auszuwählen.


Übrigens mal so als Anmerkung:
http://www.techsupportforum.com/computer/topic/39280-1.html
http://www.lavasoftusa.com/news/press/ News vom: 2005-02-15
 

Mackz

Member of Honour
Nach dem Posting von Rushjo heute >hier< habe ich mich entschlossen das ganze mal zu testen um etwas Licht ins Dunkel zu bringen.

Hier das Ergebnis. Bildet Euch selbst ein Urteil.

Auf meinem sauberen Testsystem installierte ich die "Free-Versionen" von "Gator eWallet", "DashBar", "GotSmiley" und "ScreenScenes" von "Gain Publishing / Claria" (zu finden unter www.gainpublishing.com/global/software/ ).
Danach installierte ich die neueste Version von Microsoft AntiSpyware und führte ein Update der Spyware Definitionen durch.

Nach starten von Microsoft AntiSpyware meldet die Real-time Protection erste Warnungen mit der Möglichkeit diese Elemente zu blocken.

claria1.jpg


Das Scanergebnis.
Wie erwartet wird die Software von Claria als "moderate" eingestuft. Man beachte aber auch das Advice rechts im blauen Kasten.

claria2.jpg


Die Verwendete Version.

claria3.jpg



Die Scan Details mit Auflistung aller gefundenen Elemente:

Code:
Spyware Scan Details
Start Date: 17.07.2005 17:10:34
End Date: 17.07.2005 17:12:11
Total Time: 1 mins 37 secs 

Detected Threats

Claria.GAIN.Trickler Adware  more information...
Details: Claria (Gator) may automatically fill in passwords and other information on Web forms. Its main purpose is to load an advertising module called OfferCompanion that displays pop-up advertisements when you visit some Web sites.
Status: Ignored
Moderate threat - Moderate-risk items have some potential for harm, but may be part of a wanted service. Users may decide to ignore such programs after review.

Infected registry keys/values detected
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SEvt 71
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GEF 1741
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMG 0C0637DC-BB9C-47A6-8178-A5773A9636AD
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI64 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI 566990622
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} uets 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} LastInstall 1121610580
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SSeq 14
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GEF 1741
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SEvt 71
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMG 0C0637DC-BB9C-47A6-8178-A5773A9636AD
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI64 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI 566990622
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} uets 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} LastInstall 1121610580
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SSeq 14


Claria.DashBar Software Bundler  more information...
Details: DashBar is provided free by GAIN Publishing. DashBar displays pop-up advertisements on your computer based on your Web browsing behavior. It also changes your browser settings.
Status: Ignored
Moderate threat - Moderate-risk items have some potential for harm, but may be part of a wanted service. Users may decide to ignore such programs after review.

Infected files detected
d:\programme\dashbar\dashbar30.dll
d:\programme\dashbar\dbkw.dat
d:\programme\dashbar\dbuninstaller.exe.manifest
d:\programme\dashbar\icons\icon_af.ico
d:\programme\dashbar\icons\icon_cust.ico
d:\programme\dashbar\icons\icon_def.ico
d:\programme\dashbar\icons\icon_fi.ico
d:\programme\dashbar\icons\icon_map.ico
d:\programme\dashbar\icons\icon_new.ico
d:\programme\dashbar\icons\icon_pc.ico
d:\programme\dashbar\icons\icon_people.ico
d:\dokumente und einstellungen\all users\startmenü\programme\dashbar\dashbar website.lnk
d:\programme\dashbar\icons\icon_ref.ico
d:\programme\dashbar\icons\icon_sport.ico
d:\programme\dashbar\icons\icon_tv.ico
d:\programme\dashbar\icons\icon_wp.ico
d:\programme\dashbar\icons\icon_ws.ico
d:\programme\dashbar\icons\icon_yp.ico
d:\programme\dashbar\dbuninstaller.exe
d:\programme\dashbar\dashbarsetup.log
d:\programme\dashbar\dashbarwebsite.url
d:\programme\dashbar\dbau.exe
d:\programme\dashbar\dbbuttons.dat
d:\programme\dashbar\dbcat.dat
d:\programme\dashbar\dbconfig.dat

Infected folders detected
d:\dokumente und einstellungen\all users\startmenü\programme\dashbar
d:\programme\dashbar
d:\programme\dashbar\icons

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}\InprocServer32 D:\Programme\DashBar\DashBar30.dll
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}\InprocServer32 ThreadingModel Apartment
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}\ProgID DashBarToolBar.SearchScoutBandObj.1
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}\TypeLib {8642D0F2-37CC-46b7-AA5B-399E6E68C626}
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}\VersionIndependentProgID DashBarToolbar.SearchScoutBandObj
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8} DashBar Toolbar
HKEY_CURRENT_USER\Software\Gator.com\DashBar\History 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings NumHSearchStrs 10
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings FRC 1
HKEY_CLASSES_ROOT\DashBarToolBar.SearchScoutBandObj.1 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DefSearchPaneUrl www.google.com
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DefSearchPaneUse 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DoAutosearch 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DoErrorRedirect 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings EnableHistory 1
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings UID 1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}\InprocServer32 D:\Programme\DashBar\DashBar30.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}\InprocServer32 ThreadingModel Apartment
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}\ProgID DashBarToolBar.SearchScoutBandObj.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolBar.SearchScoutBandObj.1 
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}\TypeLib {8642D0F2-37CC-46b7-AA5B-399E6E68C626}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}\VersionIndependentProgID DashBarToolbar.SearchScoutBandObj
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} DashBar Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj.1 
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj.1\CLSID {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj.1 DashBar Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj 
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj\CLSID {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj\CurVer DashBarToolBar.SearchScoutBandObj.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolbar.SearchScoutBandObj DashBar Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\AU Bver 1.0.0.0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\DynSettings TckRt 25
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\DynSettings UFR 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\Install ARQ 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\Settings UID 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar\ST STI 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar appPath D:\PROGRA~1\DashBar\DashBar30.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar Version 3018
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\DashBar Lastupdate 1121609535
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_CLASSES_ROOT\DashBarToolBar.SearchScoutBandObj.1 
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DashBarToolBar.SearchScoutBandObj.1 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} 
HKEY_CLASSES_ROOT\clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8} 


Claria.GAIN Adware  more information...
Details: GAIN (Gator) automatically fills in passwords and other elements on Web forms. Its main purpose is to install an advertising module called OfferCompanion, which displays pop-up advertisements when you view certain Web sites.
Status: Ignored
Moderate threat - Moderate-risk items have some potential for harm, but may be part of a wanted service. Users may decide to ignore such programs after review.

Infected files detected
D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe
d:\dokumente und einstellungen\all users\startmenü\programme\gator ewallet\gator website.url
D:\Programme\Gemeinsame Dateien\GMT\GMT.exe
D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\GStartup.lnk
D:\Programme\Gator.com\Gator\Gator.exe
d:\windows\gatorpdpsetup.log
d:\windows\gatorsetup.log
d:\dokumente und einstellungen\all users\startmenü\programme\gain publishing\about gain publishing.lnk
d:\dokumente und einstellungen\all users\startmenü\programme\gain publishing\gain publishing web site.url
d:\dokumente und einstellungen\all users\startmenü\programme\gator ewallet\gator ewallet.lnk

Infected folders detected
d:\dokumente und einstellungen\all users\startmenü\programme\gain publishing
d:\dokumente und einstellungen\all users\startmenü\programme\gator ewallet
d:\programme\gator.com
d:\programme\gator.com\gator

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run CMESys 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22105 DefMenu 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL 0 49152
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL MRU 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL Last 1121612459
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL First 1121609745
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL 0 49152
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL MRU 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL Last 1121612459
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Starts 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS OpenIH 1
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22106 DefMenu 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS BannerFetchAttempts2 4
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS ContentFetchAttempts 46
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS ScriptFetchAttempts 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS RTSFetchAttempts2 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS _BW 2243857661151-60
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS _PMI Q0L/FX8AAABC2WJytURkgTimcR5g3kQyj2oMvhv0z0EirmPZ64x+7UX6rhvbO1WD0lNaARvGuf2AigFsyD0hs4moNoQr3TtG+y/0H7vH5WEB2LV8RwMEdHY0VEFznwyKkuasWdb3qU3ycL8gsJpLvn08Hzhf1pkCWLnO7IOb8GUvOTM7GgZjSg==
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS _PMIt 1121610608
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Shutdowns 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Exits 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS ScriptMatches 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22106 Show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SearchFetchAttempts 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SearchFetchFailures 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS ScriptFetchFailures 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS IH_DragDrops 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS IH_DoubleClicks 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS GreatDealsClicks 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS HyperlinkFailures 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SLAttempts 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SLSeqOK 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SLFailures 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22106 Position 4
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS BannerFetchFailures2 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS ContentFetchFailures 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SH- 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SH 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS SH+ 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS LH- 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS LH 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS LH+ 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS IH 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Import 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22107 DefMenu 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Export 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS RTSFetchFailures2 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS UpdateMyInfoShown 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS UserPrefShown 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS AutoTune4Login 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS AutoTune4Form 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS CciShellFailures 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS WLHB 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS WFHB 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS Brow 4
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22107 Show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Banners\17486 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Banners\23306 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1\ADS\511 LastDisplayed 07/17/2005 16:16:36
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1\ADS\511 NumDisplayed 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1 VER 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1079 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\1079 VER 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\177 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\177 VER 3
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22107 Position 7
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\429 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\429 VER 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\446 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\446 VER 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\919 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\919 VER 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\980 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\GA\980 VER 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\gtd 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\gtd gtd 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22108 DefMenu 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\gtd lf 07/17/2005 16:15:38
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings DAS 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings WorkingDir D:\Programme\Gemeinsame Dateien\GMT
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings GMTExe D:\Programme\Gemeinsame Dateien\GMT\GMT.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings GatorExe D:\Programme\Gator.com\Gator\Gator.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings IMU_Delay 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings AU_DelayHrs 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings GFD 34c822buup
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings SegBucket 47
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22108 Show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings bosk 8327
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings SiteRetryTime 3600
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings MaxGBDDownloadTime 600
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings SIR 689
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\GMT\Settings IMU_OFFCAP 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22108 Position 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 SiteInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run CMESys 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22109 DefMenu 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 SiteInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22109 Show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users CurrentUser User1
HKEY_LOCAL_MACHINE\software\gator.com 
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\CME event Global\GainAppRunning_CME
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\CME timeout_secs_ui 20
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\CME timeout_secs_full 60
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\CME restart D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\CME lockfiles D:\Programme\Gemeinsame Dateien\CMEII\cmesys.exe;D:\Programme\Gemeinsame Dateien\CMEII\gtools.dll
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\Gator event Global\GainAppRunning_Gator
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\Gator timeout_secs_ui 20
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22109 Position 6
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\Gator timeout_secs_full 30
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\Gator lockfiles D:\Programme\Gator.com\Gator\Gator.exe
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\Gator restart D:\Programme\Gator.com\Gator\Gator.exe
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GMT event Global\GainAppRunning_GMT
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GMT timeout_secs_ui 30
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GMT timeout_secs_full 300
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GMT restart D:\Programme\Gemeinsame Dateien\GMT\GMT.exe
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GMT 
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GotSmiley event Global\GainAppRunning_GotSmiley
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GotSmiley timeout_secs_ui 5
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22110 Show 1
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GotSmiley timeout_secs_full 10
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GotSmiley lockfiles D:\PROGRA~1\GOTSMI~1\GotSmiley.exe
HKEY_LOCAL_MACHINE\software\gator.com\AppInfo\GotSmiley restart D:\PROGRA~1\GOTSMI~1\GotSmiley.exe /hidden
HKEY_LOCAL_MACHINE\software\gator.com\CMEII appPath D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe
HKEY_LOCAL_MACHINE\software\gator.com\CMEII Uninstall D:\Programme\Gemeinsame Dateien\GMT\GUninstaller.exe
HKEY_LOCAL_MACHINE\software\gator.com\CMEII runcnt 3
HKEY_LOCAL_MACHINE\software\gator.com\CMEII lastrun 1121612302
HKEY_LOCAL_MACHINE\software\gator.com\CMEII RunApps 
HKEY_LOCAL_MACHINE\software\gator.com\CMEII firstRunSent 1
HKEY_LOCAL_MACHINE\software\gator.com\CMEII numInst 1
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22110 Position 1
HKEY_LOCAL_MACHINE\software\gator.com\CMEII 
HKEY_LOCAL_MACHINE\software\gator.com\CMEII InstApps GotSmiley:BIC_GotSmiley Gator:AIC_GatorMiniSetup DashBar:BIC_GatorDB
HKEY_LOCAL_MACHINE\software\gator.com\CMEII PreInstApps BeachIslands
HKEY_LOCAL_MACHINE\software\gator.com\CMEII TransitApps 
HKEY_LOCAL_MACHINE\software\gator.com\CMEII UnInstApps 
HKEY_LOCAL_MACHINE\software\gator.com\CMEII AppDisplayNameList GotSmiley:Gator(R) eWallet:DashBar(SM)
HKEY_LOCAL_MACHINE\software\gator.com\CMEII LowAppInfo BIC_GatorDB:
HKEY_LOCAL_MACHINE\software\gator.com\CMEII hbt 1121610606
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\AU Bver 1.0.0.0
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\DynSettings TckRt 25
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22111 DefMenu 6
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\DynSettings UFR 1
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\Install ARQ 
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\Settings UID 2
HKEY_LOCAL_MACHINE\software\gator.com\DashBar\ST STI 1
HKEY_LOCAL_MACHINE\software\gator.com\DashBar appPath D:\PROGRA~1\DashBar\DashBar30.dll
HKEY_LOCAL_MACHINE\software\gator.com\DashBar Version 3018
HKEY_LOCAL_MACHINE\software\gator.com\DashBar Lastupdate 1121609535
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\AppSetup OemInstall 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\AutoUpdate DefaultCheckIntervalHours 24
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\AutoUpdate NextCheck 2005-07-18 14:15:17 GMT
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22112 DefMenu 4
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\AutoUpdate TmpUpdaterApplet 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\BannerManager LastHashDownload 1121609735
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\BannerManager AELLastHashDownload 1121609736
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\BannerManager MaxSiteHashAgeSecondsDef 86400
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\EventLog\Msgs Next 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD StartTime 1121609717
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD 1121609744.0 28051.000
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD 1121609744.1 33825.000
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD 1121609748.0 33353.000
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD 1121609859.0 29741.500
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22113 DefMenu 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\BD 1121612963.0 32249.1210002367501000236750
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\EL StartTime 1121609714
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL StartTime 1121609717
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121609737.0 200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121609745.0 gainpublishing.com200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121609746.0 gator.com200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121609757.0 screenscenes.com200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121612415.0 google.com200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121612921.0 billiger-telefonieren.de200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121612921.1 googlesyndication.com200
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22114 DefMenu 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\GBL 1121612961.0 searchscout.com200
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bc2 StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bc2 OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bc2 197-200 65
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bc2 197-bytes 133812
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bg2 StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bg2 OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bg2 197-200 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_bg2 197-bytes 60856
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gatorcme StartTime 197
HKEY_CURRENT_USER\Software\Gator.com\DashBar\DynSettings UFR 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gatorcme OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gatorcme 197-200 7
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gatorcme 197-bytes 21816
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gatorcme 197-304 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gbs StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gbs OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gbs 197-200 8
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gbs 197-bytes 3640
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gi StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gi OldestTime 197
HKEY_CURRENT_USER\Software\Gator.com 
HKEY_CURRENT_USER\Software\Gator.com\DashBar\DynSettings Country United States
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gi 197-200 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gi 197-bytes 134
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs 197-200 17
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs 197-bytes 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gt StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gt OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gt 197-200 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gt 197-bytes 41
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings NumHSearchStrs 10
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_regserver StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_regserver OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_regserver 197-200 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_regserver 197-bytes 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_rs StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_rs OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_rs 197-200 8
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_rs 197-bytes 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_sio.belnk.com StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_sio.belnk.com OldestTime 197
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings FRC 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_sio.belnk.com 197-200 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_sio.belnk.com 197-bytes 685
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ss StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ss OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ss 197-200 5
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ss 197-bytes 13036
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_trickle StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_trickle OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_trickle 197-206 259
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_trickle 197-bytes 3787150
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DefSearchPaneUrl www.google.com
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ts StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ts OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ts 197-200 4
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_ts 197-bytes 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_www StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_www OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_www 197-200 4
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_www 197-bytes 4021859
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS\HOL First 1121609745
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS\HOL 0 49152
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DefSearchPaneUse 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS\HOL MRU 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS\HOL Last 1121612459
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Starts 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS OpenIH 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS BannerFetchAttempts2 4
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS ContentFetchAttempts 46
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS ScriptFetchAttempts 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS RTSFetchAttempts2 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS _BW 2243857661151-60
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS _PMI Q0L/FX8AAABC2WJytURkgTimcR5g3kQyj2oMvhv0z0EirmPZ64x+7UX6rhvbO1WD0lNaARvGuf2AigFsyD0hs4moNoQr3TtG+y/0H7vH5WEB2LV8RwMEdHY0VEFznwyKkuasWdb3qU3ycL8gsJpLvn08Hzhf1pkCWLnO7IOb8GUvOTM7GgZjSg==
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DoAutosearch 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS _PMIt 1121610608
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Shutdowns 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Exits 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS ScriptMatches 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SearchFetchAttempts 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SearchFetchFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS ScriptFetchFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS IH_DragDrops 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS IH_DoubleClicks 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS GreatDealsClicks 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings DoErrorRedirect 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS HyperlinkFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SLAttempts 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SLSeqOK 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SLFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS BannerFetchFailures2 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS ContentFetchFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SH- 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SH 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS SH+ 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS LH- 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings EnableHistory 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS LH 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS LH+ 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS IH 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Import 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Export 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS RTSFetchFailures2 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS UpdateMyInfoShown 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS UserPrefShown 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS AutoTune4Login 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS AutoTune4Form 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Settings UID 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS CciShellFailures 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS WLHB 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS WFHB 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GUS Brow 4
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\NS CDBRNEID 9460
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\NS CH 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\NS RC 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdEvent 1121610574
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdStart 1121610574
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdOpTime 1121612349
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Generator TempFileName em640216.htm
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdOp ExitInstance Done.
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdTermOK 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\SD SdEnd 1121612349
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\Settings RequirePassword 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\Settings MinPasswordLength 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\Settings AppHasRun 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\Settings GatorVersion 7.1.0.6
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn PdpFirstStart 842:NOUSER
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn AppPath D:\Programme\Gemeinsame Dateien\GMT
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn AppExe GMT.exe
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22103 DefMenu 4
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\LetterOptions ImageLink http://www.gotsmiley.com/redirect/smileylink
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn AppRunMode 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn ResDll GatorRes.dll
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn DonePageUrl http://www.gator.com/download/done.html
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\28051 LastDisplayed 07/17/2005 16:15:44
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\28051 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\29741 LastDisplayed 07/17/2005 16:16:36
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\29741 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\29741 DisplayTimes 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\29741 Rotation 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\31115 CreativePercent 78
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\LetterOptions ImageAlt GotSmiley for FREE! Click Here
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\31931 CreativePercent 97
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\32249 CreativePercent 78
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\32249 LastDisplayed 07/17/2005 17:09:20
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\32249 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\32249 DisplayTimes 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\32249 Rotation 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\33353 LastDisplayed 07/17/2005 16:15:46
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\33353 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\33825 LastDisplayed 07/17/2005 16:15:44
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Banners\33825 NumDisplayed 1
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AppX 437
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1\ADS\511 LastDisplayed 07/17/2005 16:16:36
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1\ADS\511 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1012 VER 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1079 VER 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\120 VER 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1400 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1562 VER 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\177 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\1833 VER 1
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AppY 235
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\429 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\446 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\653 VER 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\699 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\749 VER 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\757 VER 3
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\919 VER 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GA\980 VER 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\0 OSFGD 14400
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\0 OSFGDS 07/17/2005 17:09:19
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AppWidth 425
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\0 OSBGD 14400
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\0 OSBGDS 07/17/2005 17:09:19
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\35087 OSFGD 3559
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\35087 OSFGDS 07/17/2005 17:09:19
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\35087 OSBGD 14400
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GC\35087 OSBGDS 07/17/2005 17:09:19
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0QQsuHfGAAAAJcCSdIwaS8nUnkDMWgSO48vq9Y54m+JbA== LF 07/17/2005 17:08:41
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0R9gnyrCgAAABlWKNV9Sq+z-I8FsxCtGBE=== LF 07/17/2005 17:00:15
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0RFh7FaCQAAACxknc6-IlDsIZ0-5NocXaE=== LF 07/17/2005 16:15:46
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0RgAv8CFQAAAOC51Pedcp4jPBzEPOhmDU4L+2zZ7PEvOg== LF 07/17/2005 17:08:41
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AppHeight 455
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0SMq04pEgAAAHP8x8AQkz4aOtqaRhx1+V-8jwWzEK0YEQ== LF 07/17/2005 16:15:45
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0TASJbQBgAAALeq-toBgnpj LF 07/17/2005 16:15:37
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0TLIyviDwAAAAuvqzzjoFxyQq5HSVcCJg0=== LF 07/17/2005 17:09:21
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GD\Q0Tt49BfEAAAAEjr3FGxw-MGbdENVe-dako=== LF 07/17/2005 16:15:57
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GDS OSBGD 30
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\GDS OSBGDS 07/17/2005 17:09:19
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Groups\1209 LastDisplayed 07/17/2005 16:16:36
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Groups\1209 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Groups\1209 DisplayTimes 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Groups\1238 LastDisplayed 07/17/2005 17:09:20
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AppAllowResize 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Groups\1238 NumDisplayed 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\gtd gtd 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\gtd lf 07/17/2005 16:15:38
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings DAS 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings WorkingDir D:\Programme\Gemeinsame Dateien\GMT
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings GMTExe D:\Programme\Gemeinsame Dateien\GMT\GMT.exe
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings GatorExe D:\Programme\Gator.com\Gator\Gator.exe
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings IMU_Delay 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings AU_DelayHrs 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings GFD 34c822buup
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings MailerType 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings SegBucket 47
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings bosk 8327
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings SiteRetryTime 3600
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings MaxGBDDownloadTime 600
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings SIR 689
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT\Settings IMU_OFFCAP 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT Uninstaller D:\Programme\Gemeinsame Dateien\GMT\GUninstaller.exe
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\GMT TGNStat 268435456
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsAlwaysOnTop 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 SiteInfo 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsHideAfterInsert 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users CurrentUser User1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat Guid 0C0637DC-BB9C-47A6-8178-A5773A9636AD
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat MID64 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat MID 566990622
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat InstallDate 1121609708
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat AIC AIC_GatorMiniSetup
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat GainTid 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat GainDid 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat InstAppHist Setup7106(gain=7.1.0.6,aic=AIC_GatorMiniSetup,tm=17jul05@16:15);PdpSetup5105(gain=7.1.0.6,aic=BIC_GatorDB,tm=17jul05@16:29)
HKEY_LOCAL_MACHINE\software\gator.com\GInternet\Proxy Enabled 0
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22103 Show 1
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsDisplayHelperWindow 1
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\AutoUpdate AutoUpdateWnd 1245496
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\AutoUpdate LastResponseTime 1121610256
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand HomePage http://www.gotsmiley.com/
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand BuyPage http://www.gotsmiley.com/redirect/upgrade
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand SupportPage http://www.gotsmiley.com/redirect/support
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand DisplayedHomePage www.gotsmiley.com
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand CompName GainPublishing Inc.
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand AppName GotSmiley
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Brand LongAppName GotSmiley
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator PreInstalledImagesDir D:\PROGRA~1\GOTSMI~1\Images
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings AddSysTrayIcon 1
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator PreInstalledImagesSite http://smileys.gotsmiley.com/Images
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator ErrorFileName crt_err.htm
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator ImageHSpace 5
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator ImageVSpace 5
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator ImageAlt GotSmiley for FREE! Click Here
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator ImagesStatisticDir D:\PROGRA~1\GOTSMI~1\Images\00001000
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Generator SkinDir D:\PROGRA~1\GOTSMI~1\Skins
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\InternalSettings ProgramPath D:\PROGRA~1\GOTSMI~1\GotSmiley.exe
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\InternalSettings InstallDir D:\PROGRA~1\GOTSMI~1\
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\InternalSettings MainWnds 524532;1179970;
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsHideAfterError 0
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Settings IsLaunchAppAtStartup 1
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley\Settings ShowNewLibIntroMessage 0
HKEY_LOCAL_MACHINE\software\gator.com\GotSmiley AppPath D:\PROGRA~1\GOTSMI~1\GotSmiley.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run CMESys 
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} 
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} DisplayName Gator eWallet
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} UninstallString D:\Programme\Gemeinsame Dateien\GMT\GUninstaller.exe /gator
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} InstallLocation D:\Programme\Gemeinsame Dateien\GMT
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} HelpLink http://www.gator.com/help/
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} Publisher GAIN Publishing
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsInsertPictureAlt 1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} URLInfoAbout http://www.gator.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} InstallDate July 17, 2005
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} DisplayVersion 7.1.0.6
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} UninstallPath D:\Programme\Gator.com\Gator\Gator.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c} DisplayIcon D:\Programme\Gemeinsame Dateien\GMT\GUninstaller.exe,-10025
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsInsertPictureUrl 1
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings SelectedCategory emdir://D:\PROGRA~1\GOTSMI~1\Images/Emotions/Teasing
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings SelectedCategoryId teasing_emotions
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings ExpandedCategoryIds wordbubbles_root;emotions_root
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings DefaultCategory 
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings ShowAppShortcut Ctrl+F11
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22103 Position 2
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsOulookMode 0
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsDisableSysTrayAlert 0
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings SysTrayAlertCount 2
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsDisableOfflineAlert 0
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings MainWnd 1179970
HKEY_CURRENT_USER\Software\Gator.com\GotSmiley\Settings IsDisableRichTextAlert 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gbs 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gbs StartTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gbs OldestTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gbs 197-200 8
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22104 DefMenu 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gbs 197-bytes 3640
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gi 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gi StartTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gi OldestTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gi 197-200 3
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_gi 197-bytes 134
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_regserver 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_regserver StartTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_regserver OldestTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_regserver 197-200 2
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22104 Show 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_regserver 197-bytes 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_ss 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_ss StartTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_ss OldestTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_ss 197-200 5
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_ss 197-bytes 13036
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_trickle 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_trickle StartTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_trickle OldestTime 197
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_trickle 197-206 259
HKEY_CURRENT_USER\Software\Gator.com\DashBar\Buttons\22104 Position 5
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\_trickle 197-bytes 3787150
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD StartTime 1121609717
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 1121609744.0 28051.000
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 1121609744.1 33825.000
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 1121609748.0 33353.000
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 1121609859.0 29741.500
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GCH\BD 1121612963.0 32249.1210002367501000236750
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\dyn\GUS\HOL First 1121609745


Detected Spyware Cookies
No spyware cookies were found during this scan.


Nach Deinstallation aller Claria Programme die in Systemsteuerung -> Software zu finden waren (es war dort jedes Programm aufgeführt, was ich auch im Vorfeld installierte), führte ich erneut einen Scan durch. Es wurden weiterhin Elemente gefunden.


Das Scanergebnis:
Code:
Spyware Scan Details
Start Date: 17.07.2005 17:38:09
End Date: 17.07.2005 17:40:02
Total Time: 1 mins 53 secs 

Detected Threats

Claria.GAIN.Trickler Adware  more information...
Details: Claria (Gator) may automatically fill in passwords and other information on Web forms. Its main purpose is to load an advertising module called OfferCompanion that displays pop-up advertisements when you visit some Web sites.
Status: Removed
Moderate threat - Moderate-risk items have some potential for harm, but may be part of a wanted service. Users may decide to ignore such programs after review.

Infected registry keys/values detected
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SEvt 83
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GEF 1757
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMG 0C0637DC-BB9C-47A6-8178-A5773A9636AD
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI64 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI 566990622
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} uets 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} LastInstall 1121610580
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SSeq 17
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GEF 1757
HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SEvt 83
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMG 0C0637DC-BB9C-47A6-8178-A5773A9636AD
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI64 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} GMI 566990622
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} uets 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} LastInstall 1121610580
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} 
HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} SSeq 17


Claria.GAIN Adware  more information...
Details: GAIN (Gator) automatically fills in passwords and other elements on Web forms. Its main purpose is to install an advertising module called OfferCompanion, which displays pop-up advertisements when you view certain Web sites.
Status: Removed
Moderate threat - Moderate-risk items have some potential for harm, but may be part of a wanted service. Users may decide to ignore such programs after review.

Infected files detected
d:\windows\gatorpdpsetup.log
d:\windows\gatorsetup.log
d:\windows\gatoruninstaller_cme.log
d:\windows\gatoruninstaller_cme_u.log
d:\windows\gatoruninstaller_gator.log
d:\windows\gatoruninstaller_gator_u.log

Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 SiteInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users CurrentUser User1
HKEY_LOCAL_MACHINE\software\gator.com 
HKEY_LOCAL_MACHINE\software\gator.com\CMEII 
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_LOCAL_MACHINE\software\gator.com\CMEII numInst 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs StartTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs OldestTime 197
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs 197-200 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\dyn\GCH\_gs 197-bytes 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 Empty 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 ShowWelcomeFormHelper 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 ShowWelcomeLoginHelper 0
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 SiteInfo 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 UserPrefForm 8
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 AutoTuneLoginInfo 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users\User1 InfoSiteForms 
HKEY_LOCAL_MACHINE\software\gator.com\Gator\stat\Users CurrentUser User1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 PromptCaptureLogin 1
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 UpdateInfoLastTab 0
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 Name sfsdf sdf
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 RegStatus 2
HKEY_LOCAL_MACHINE\SOFTWARE\Gator.com\Gator\stat\Users\User1 SiteInfo 


Detected Spyware Cookies
No spyware cookies were found during this scan.



Damit dürfte zweifelsfrei bewiesen sein, das Software von Claria weiterhin erkannt wird und entfernt werden kann. Es wird auch weiterhin als Adware gekennzeichnet.



Abschließend die Einschätzung von Claria durch Lavasoft.
http://www.lavasoftnews.com/ms/display_main.php?tac=Claria

Und das Scanergebnis der aktuellen Version von Adaware mit den aktuellsten Spyware Definitionen (gekürzt auf gefundene Elemente).

Code:
Ad-Aware SE Build 1.06r1
Logfile Created on:Sonntag, 17. Juli 2005 17:17:51
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R54 14.07.2005
???????????????????????????????????????????????????

References detected during the scan:
???????????????????????????????????????
Claria(TAC index:7):95 total references
MRU List(TAC index:0):32 total references
Tracking Cookie(TAC index:3):18 total references

Listing running processes
??????????????????????????????????????

#:23 [cmesys.exe]
    FilePath           : D:\Programme\Gemeinsame Dateien\CMEII\
    ProcessID          : 3992
    ThreadCreationTime : 17.07.2005 14:58:09
    BasePriority       : Normal
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : CMESys.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : CMESys.exe

 Claria Object Recognized!
    Type               : Process
    Data               : CMESys.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : (CSI MATCH)
    Object             : D:\Programme\Gemeinsame Dateien\CMEII\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : CMESys.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : CMESys.exe

Warning! Claria Object found in memory(D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe)

"D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe"Process terminated successfully
"D:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe"Process terminated successfully

#:25 [gmt.exe]
    FilePath           : D:\Programme\Gemeinsame Dateien\GMT\
    ProcessID          : 3936
    ThreadCreationTime : 17.07.2005 14:58:09
    BasePriority       : Normal
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GAIN Application
    InternalName       : GMT.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GMT.exe

 Claria Object Recognized!
    Type               : Process
    Data               : GatorRes.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : (CSI MATCH)
    Object             : D:\Programme\Gemeinsame Dateien\GMT\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GatorRes Dynamic Link Library
    InternalName       : GatorRes DLL
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GatorRes DLL

Warning! Claria Object found in memory(D:\Programme\Gemeinsame Dateien\GMT\GatorRes.dll)


 Claria Object Recognized!
    Type               : Process
    Data               : EGNSEngine.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : (CSI MATCH)
    Object             : D:\Programme\Gemeinsame Dateien\GMT\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : EGNSEngine Dynamic Link Library
    InternalName       : EGNSEngine dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : EGNSEngine dll

Warning! Claria Object found in memory(D:\Programme\Gemeinsame Dateien\GMT\EGNSEngine.dll)


Started registry scan
??????????????????????????????????????

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : typelib\{8642d0f2-37cc-46b7-aa5b-399e6e68c626}

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : dashbartoolbar.searchscoutbandobj.1

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : dashbartoolbar.searchscoutbandobj

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{cc90cda0-74a0-45b4-80ef-d89ca8c249b8}

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : GMG

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : GMI64

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : GMI

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : uets

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : LastInstall

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : PAK

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : SSeq

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}
    Value              : SEvt

 
 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_USERS
    Object             : S-1-5-21-854245398-1292428093-839522115-1003\software\gator.com

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : UninstallString

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : InstallLocation

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : HelpLink

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : Publisher

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : URLInfoAbout

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : InstallDate

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : DisplayVersion

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : UninstallPath

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\{6c8dbec0-8052-11d5-a9d5-00500413153c}
    Value              : DisplayIcon

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\gator.com

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_USERS
    Object             : S-1-5-21-854245398-1292428093-839522115-1003\\software\gator.com

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : "CMESys"
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\run
    Value              : CMESys

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : "{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}"
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\internet explorer\toolbar
    Value              : {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}

Deep scanning and examining files (D:)
??????????????????????????????????????

  Claria Object Recognized!
    Type               : File
    Data               : trickler4104_bic_gatordb_1234_4104.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\WINDOWS\Temp\
    FileVersion        :  4.1.0.4
    ProductVersion     : 4.1.0.4
    OriginalFilename   : Trickler.exe



Performing conditional scans...
??????????????????????????????????????

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_CLASSES_ROOT
    Object             : interface\{a2ba5e71-5be3-4007-ac48-157823fb63fb}

 Claria Object Recognized!
    Type               : Regkey
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\dashbar

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\dashbar
    Value              : DisplayName

 Claria Object Recognized!
    Type               : RegValue
    Data               : 
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Rootkey            : HKEY_LOCAL_MACHINE
    Object             : software\microsoft\windows\currentversion\uninstall\dashbar
    Value              : UninstallString

 Claria Object Recognized!
    Type               : Folder
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : Claria
    Object             : D:\Programme\Gator.com

 Claria Object Recognized!
    Type               : Folder
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : Claria
    Object             : D:\Programme\DashBar

 Claria Object Recognized!
    Type               : Folder
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : Claria
    Object             : D:\Programme\Gemeinsame Dateien\GMT

 Claria Object Recognized!
    Type               : Folder
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : Claria
    Object             : D:\Programme\Gemeinsame Dateien\CMEII

 Claria Object Recognized!
    Type               : File
    Data               : GatorGainInstaller.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\WINDOWS\



 Claria Object Recognized!
    Type               : File
    Data               : GatorMiniSetup.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\WINDOWS\



 Claria Object Recognized!
    Type               : File
    Data               : GatorPdpSetup.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\WINDOWS\



 Claria Object Recognized!
    Type               : File
    Data               : GatorSetup.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\WINDOWS\



 Claria Object Recognized!
    Type               : File
    Data               : GatorSetup.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\DOKUME~1\admin\LOKALE~1\Temp\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : Gator Setup applet
    InternalName       : Setup.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : Setup.exe


 Claria Object Recognized!
    Type               : File
    Data               : DashBar30.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\
    FileVersion        : 3, 0, 1, 8
    ProductVersion     : 3, 0, 1, 8
    ProductName        : DashBar Toolbar Module
    CompanyName        : GAIN Publishing
    FileDescription    : DashBar Toolbar Module
    InternalName       : DashBar
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : DashBar30.dll
    Comments           : An internet search toolbar


 Claria Object Recognized!
    Type               : File
    Data               : DashBarSetup.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DASHBARWEBSITE.URL
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DbAu.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\
    FileVersion        : 3, 0, 0, 0
    ProductVersion     : 3, 0, 0, 0
    ProductName        : Toolbar Autoupdate Application
    FileDescription    : Toolbar Autoupdate Application
    InternalName       : Autoupdate
    LegalCopyright     : Copyright (C) 2004 Claria Corporation
    OriginalFilename   : DBAu.exe


 Claria Object Recognized!
    Type               : File
    Data               : DBButtons.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DBcat.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DBconfig.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DBkw.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DBUninstaller.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DBUninstaller.exe.manifest
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\dashbar\



 Claria Object Recognized!
    Type               : File
    Data               : DashBar.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        : 3, 0, 1, 8
    ProductVersion     : 3, 0, 1, 8
    ProductName        : DashBar Toolbar Module
    CompanyName        : GAIN Publishing
    FileDescription    : DashBar Toolbar Module
    InternalName       : DashBar
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : DashBar30.dll
    Comments           : An internet search toolbar


 Claria Object Recognized!
    Type               : File
    Data               : EGGCEngine.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : EGGCEngine Dynamic Link Library
    InternalName       : EGGCEngine dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : EGGCEngine dll


 Claria Object Recognized!
    Type               : File
    Data               : egIEEngine.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : egIEClient Dynamic Link Library
    InternalName       : egIEClient.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : egIEClient.dll


 Claria Object Recognized!
    Type               : File
    Data               : EGIEProcess.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : EGIEProcess Dynamic Link Library
    InternalName       : EGIEProcess dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : EGIEProcess dll


 Claria Object Recognized!
    Type               : File
    Data               : EGNSEngine.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : EGNSEngine Dynamic Link Library
    InternalName       : EGNSEngine dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : EGNSEngine dll


 Claria Object Recognized!
    Type               : File
    Data               : FillIn.wav
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : Gator.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : GatorRes.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GatorRes Dynamic Link Library
    InternalName       : GatorRes DLL
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GatorRes DLL


 Claria Object Recognized!
    Type               : File
    Data               : GatorStubSetup.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : Gator Client Application
    InternalName       : Gator.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : Gator.exe


 Claria Object Recognized!
    Type               : File
    Data               : GInstaller.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GAIN Installer library
    InternalName       : GInstaller.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GInstaller.dll


 Claria Object Recognized!
    Type               : File
    Data               : GMT.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GAIN Application
    InternalName       : GMT.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GMT.exe


 Claria Object Recognized!
    Type               : File
    Data               : GMT.exe.manifest
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : gtrawbm.fil
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : GUninstaller.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : GAIN
    CompanyName        : GAIN Publishing
    FileDescription    : GAIN Uninstaller applet
    InternalName       : GUninstaller.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GUninstaller.exe


 Claria Object Recognized!
    Type               : File
    Data               : Helper.wav
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepbs.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepcat.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepcatne.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepcme.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepcmeft.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepconv.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepgh.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepimg.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : meprca.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : mepsi.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : meptafi.dat
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\gmt\



 Claria Object Recognized!
    Type               : File
    Data               : CMEDiagnostics.log
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\



 Claria Object Recognized!
    Type               : File
    Data               : CMEIIAPI.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : CMEIIAPI.DLL
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : CMEIIAPI.DLL


 Claria Object Recognized!
    Type               : File
    Data               : CMESys.exe
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : CMESys.exe
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : CMESys.exe


 Claria Object Recognized!
    Type               : File
    Data               : GAppMgr.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GAppMgr.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GAppMgr.dll


 Claria Object Recognized!
    Type               : File
    Data               : GatorSupportInfo.txt
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\



 Claria Object Recognized!
    Type               : File
    Data               : GController.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GController.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GController.dll


 Claria Object Recognized!
    Type               : File
    Data               : GDwldEng.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GDlwdEng.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GDlwdEng.dll


 Claria Object Recognized!
    Type               : File
    Data               : GIocl.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GIocl.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GIocl.dll


 Claria Object Recognized!
    Type               : File
    Data               : GIoclClient.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GIoclClient.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GIoclClient.dll


 Claria Object Recognized!
    Type               : File
    Data               : GMTProxy.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GMTProxy.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GMTProxy.dll


 Claria Object Recognized!
    Type               : File
    Data               : GObjs.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GObjs.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GObjs.dll


 Claria Object Recognized!
    Type               : File
    Data               : GStore.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GStore.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GStore.dll


 Claria Object Recognized!
    Type               : File
    Data               : GStoreServer.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GStoreServer.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GStoreServer.dll


 Claria Object Recognized!
    Type               : File
    Data               : Gtools.dll
    TAC Rating         : 7
    Category           : Data Miner
    Comment            : 
    Object             : D:\Programme\Gemeinsame Dateien\cmeii\
    FileVersion        :  7.1.0.6
    ProductVersion     : 7.1.0.6
    ProductName        : CME
    CompanyName        : GAIN Publishing
    FileDescription    : CME II Client Application
    InternalName       : GTools.dll
    LegalCopyright     : Copyright ? 1999-2005 GAIN Publishing
    OriginalFilename   : GTools.dll



Conditional scan result:
??????????????????????????????????????
New critical objects: 67
Objects found so far: 201

17:26:25 Scan Complete

Summary Of This Scan
??????????????????????????????????????
Total scanning time:00:08:34.328
Objects scanned:119349
Objects identified:167
Objects ignored:0
New critical objects:167
 

+++ATH0

Member of Honour
Danke für die Recherchen, Mackz.
Nichtsdestotrotz vertaue ich nicht alleine auf jegliche AntiSpyware-Lösungen sondern mache mich auch ohne zusätzliche Hilfsmittel alleine auf die Suche nach den Überltätern.
 

SUID:root

Member of Honour
Merci Mackz. :)

Endlich mal eine vernünftige und vor allem klare Information. Nicht immer nur dieses Wischi-Waschi (könnte, hätte, vielleicht, oder auch nicht?)

Original von +++ATH0
Danke für die Recherchen, Mackz.
Nichtsdestotrotz vertaue ich nicht alleine auf jegliche AntiSpyware-Lösungen sondern mache mich auch ohne zusätzliche Hilfsmittel alleine auf die Suche nach den Überltätern.

Richtig. In vielen Fällen bleibt einem auch nichts anderes übrig, da die Spyware sich mittlerweile verdammt gut schützen kann.

Hatte neulich wieder mal so einen Rechner. Drei Anti-Spy-Tools (Adaware, S&D, MS-AntiSpy)

Alle drei Tools fanden verschiedene Komponenten, keins fand alle.
Entfernen ließen sich auch nur rund 70% per Knopfdruck. Der Rest ließ sich nur per Hand und mühevoller Kleinarebit aufspüren und entfernen.

Grüsse

root
 
R

Rushjo

Guest
@Mackz

Welches Windows mit welchem Patch-Level? Kann teste ich das bei mir mal auf WindowsXP SP2 (aktuelles Patch-Level) mit Spybot als Referenz/Vergleichswert.

rushjo
 

Mackz

Member of Honour
Original von Rushjo
@Mackz
Welches Windows mit welchem Patch-Level?
Was spielt das für eine Rolle? Das ist doch irrelevant. Die Suchkriterien/Funktion von MS Antispy oder irgendeiner anderen Anti-Spyware Software werden doch nicht durch irgendwelche Windows Patches beeinflusst. Einzig entscheidend ist doch nur die Antispy Version und die Version der Spywaredefinitionen.

Das war ein XP SP2 (Slipstream) ohne weitere zusätzliche Patches.
 
Oben