haven't run adaware for about a month until today.
a bunch of bigfoot ldap similar to:
Adware.BHO(generic) Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CURRENT_USER
Object : software\microsoft\internet account manager\accounts\bigfoot
Value : LDAP Timeout
these sounds like bigfoot "directory search" in the default installed "accounts" in oe, which
have been there since about 1997.
but maybe a recent oe patch altered the location of these features?
Windows Object Recognized!
Type : RegData
Data :
TAC Rating : 3
Category : Vulnerability
Comment :
Rootkey : HKEY_USERS
Object : S-1-5-21-1960408961-484763869-1202660629-
1004\software\policies\microsoft\internet explorer\control panel
Value : Homepage
Data :
Name:Windows
Category:Vulnerability
Object Type:RegData
Size:4 Bytes
Location:...\software\policies\microsoft\internet explorer\control panel "Homepage" ()
Last Activity:05-Nov-2006
Relevance:Low
TAC index:3
Comment:
Description:General Windows Security Issue. Your system security may be compromised.
The specifics of the possible compromised item are listed in the comments section.
Windows Object Recognized!
Type : RegData
Data :
TAC Rating : 3
Category : Vulnerability
Comment :
Rootkey : HKEY_USERS
Object : S-1-5-21-1960408961-484763869-1202660629-
1004\software\policies\microsoft\internet explorer\restrictions
Value : NoBrowserOptions
Data :
Name:Windows
Category:Vulnerability
Object Type:RegData
Size:4 Bytes
Location:...\software\policies\microsoft\internet explorer\restrictions "NoBrowserOptions" ()
Last Activity:05-Nov-2006
Relevance:Low
TAC index:3
Comment:
Description:General Windows Security Issue. Your system security may be compromised.
The specifics of the possible compromised item are listed in the comments section.
this is an old spybot setting, but perhaps spybot usees a different reg edit to accomplish
this old feature? google sample:
restriction on access to internet options on dropdown menu
.... I did run spy bot. ... Doc, Did you by chance run SpyBot's Immunize feature? ...
Policies\Microsoft\Internet Explorer\Restrictions] "NoBrowserOptions"=dword:00000001 ...
microsoft.public.windows.inetexplorer.ie6.browser - May 21 2003,
a few hijack urls. this seems least likely:
Possible Browser Hijack attempt Object Recognized!
Type : File
Data : Catalog of Fishes Genera.URL
TAC Rating : 3
Category : Misc
Comment : Problematic URL discovered:
http://www.calacademy.org/research/i...ishcatmain.asp
i understand how infospace or clusty or any other ad-driven site could have potential
spyware associations, but calacademy seems unlikely.
CA Academy of Sciences
http://www.calacademy.org/geninfo/privacy_policy.php


Reply With Quote