http://www.google.com/search?q=%22EBlaster%22&btnG=Google+Search&domains=http%3A%2F%2Fmyegot.fatcow.com%2F&domains=http%3A%2F%2Fwww.myegotimes.com%2F&sitesearch= http://www.myegotimes.com/TM/ http://www.eblaster.com/ http://www.spectorsoft.com/ http://securityresponse.symantec.com/avcenter/venc/data/spyware.eblaster.html http://vil.nai.com/vil/content/v_100972.htm http://www.pestpatrol.com/pestinfo/e/eblaster.asp %System%\nvrcr32.dll %System%\rmashlex.dll HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ ShellServiceObjectDelayLoad\XmLdrKLocation = {0C887F38-5178-43DA-B9F0-B856141FCDA4} HKEY_LOCAL_MACHINE\Software\CLASSES\CLSID\{6A6A1EAE-13E1-4DC7-8014-B7677EF6D47A} HKEY_LOCAL_MACHINE\Software\CLASSES\CLSID\{0C887F38-5178-43DA-B9F0-B856141FCDA4} HKEY_LOCAL_MACHINE\Software\CLASSES\CLSID\{2BE166ED-F16C-46DE-B623-3575FD985D6D} http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090687 5.0 biosboot.exe eb50setup.exe systemroot+\system32\chkdisk.exe systemroot+\system32\logmon.exe systemroot+\system32\netbcam.exe systemroot+\system32\netutil.exe systemroot+\system32\profwin.exe systemroot+\system32\svrwin.exe systemroot+\system32\v32wsock.exe usbw32.exe w32sub.exe ceract.dll chkcer.dll hosthex32.dll netras.dll perfboot.dll rtfmidi.dll statslink.dll systemroot+\system32\autprof.dll systemroot+\system32\biosuni.dll systemroot+\system32\catmidi.dll systemroot+\system32\cfgtcp.dll systemroot+\system32\cfgvga.dll systemroot+\system32\compserver.dll systemroot+\system32\conflib32.dll systemroot+\system32\ctldde.dll systemroot+\system32\ctldll.dll systemroot+\system32\ddectl.dll systemroot+\system32\devcrypt.dll systemroot+\system32\dhcpkbd.dll systemroot+\system32\dllcmd.dll systemroot+\system32\httpsserver32.dll systemroot+\system32\ipdll32.dll systemroot+\system32\kbdman.dll systemroot+\system32\macnetb32.dll systemroot+\system32\midical.dll systemroot+\system32\modipx.dll systemroot+\system32\modstats.dll systemroot+\system32\msdde.dll systemroot+\system32\netbaut.dll systemroot+\system32\netipx.dll systemroot+\system32\odbckey.dll systemroot+\system32\olehost.dll systemroot+\system32\regdb.dll systemroot+\system32\rtfftp.dll systemroot+\system32\sqlhost32.dll systemroot+\system32\statip.dll systemroot+\system32\tcpterm.dll systemroot+\system32\uniserver.dll systemroot+\system32\vgalog.dll systemroot+\system32\xmlbot32.dll systemroot+\system32\xpcmd.dll HKEY_LOCAL_MACHINE\software\classes\clsid\{0e289927-69b7-4c4c-8502-354e048c8e92} HKEY_LOCAL_MACHINE\software\classes\clsid\{0e289927-69b7-4c4c-8502-354e048c8e92}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{191922d9-d5ae-453d-b290-f26a9c270402} HKEY_LOCAL_MACHINE\software\classes\clsid\{191922d9-d5ae-453d-b290-f26a9c270402}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{27474baa-705f-4769-a44f-e13a8be4e610} HKEY_LOCAL_MACHINE\software\classes\clsid\{27474baa-705f-4769-a44f-e13a8be4e610}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{2be166ed-f16c-46de-b623-3575fd9b5d6d}\wivdevenum HKEY_LOCAL_MACHINE\software\classes\clsid\{2efe6983-b0bf-4ebf-9637-a7c10ec3eebb} HKEY_LOCAL_MACHINE\software\classes\clsid\{2efe6983-b0bf-4ebf-9637-a7c10ec3eebb}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{30b92215-0e32-400e-a05d-e583bf1d6c49} HKEY_LOCAL_MACHINE\software\classes\clsid\{30b92215-0e32-400e-a05d-e583bf1d6c49}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{5343160f-29a0-49e3-8782-c08b11e0675f} HKEY_LOCAL_MACHINE\software\classes\clsid\{5343160f-29a0-49e3-8782-c08b11e0675f}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{75c3efc9-45ba-48f4-96a9-f4708a4b32db} HKEY_LOCAL_MACHINE\software\classes\clsid\{75c3efc9-45ba-48f4-96a9-f4708a4b32db}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{812e1c52-8b82-4bc7-bdfa-cfdaedb63f41} HKEY_LOCAL_MACHINE\software\classes\clsid\{812e1c52-8b82-4bc7-bdfa-cfdaedb63f41}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{81cdda69-0eec-4142-8eb4-de2a433c91a2} HKEY_LOCAL_MACHINE\software\classes\clsid\{81cdda69-0eec-4142-8eb4-de2a433c91a2}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{855edf42-f91b-4818-8df1-b58ca6043290} HKEY_LOCAL_MACHINE\software\classes\clsid\{855edf42-f91b-4818-8df1-b58ca6043290}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{99c193ba-d72b-4934-8612-6bc25640cb1f} HKEY_LOCAL_MACHINE\software\classes\clsid\{99c193ba-d72b-4934-8612-6bc25640cb1f}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{b7013911-76cf-4750-b174-2b573bc2f14c} HKEY_LOCAL_MACHINE\software\classes\clsid\{b7013911-76cf-4750-b174-2b573bc2f14c}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{ce0babb4-3a61-4dbb-a6c7-f69896a47540} HKEY_LOCAL_MACHINE\software\classes\clsid\{ce0babb4-3a61-4dbb-a6c7-f69896a47540}\"" HKEY_LOCAL_MACHINE\software\classes\clsid\{e4b58522-89aa-45ed-bf8d-ebe7207a5d2a} HKEY_LOCAL_MACHINE\software\classes\clsid\{e4b58522-89aa-45ed-bf8d-ebe7207a5d2a}\"" HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload\caleng HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload\lanras HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload\netbcab appms.drv biosboot.exe ceract.dll chkcer.dll eb50setup.exe eblaster 5.0.txt hosthex32.dll msqkvowin.msj msqkvowin.rcv msquf32.msj msquf32.rcv netras.dll perfboot.dll rtfmidi.dll statslink.dll systemroot+\system32\autprof.dll systemroot+\system32\biosuni.dll systemroot+\system32\catmidi.dll systemroot+\system32\cfgtcp.dll systemroot+\system32\cfgvga.dll systemroot+\system32\chkdisk.exe systemroot+\system32\compserver.dll systemroot+\system32\conflib32.dll systemroot+\system32\ctldde.dll systemroot+\system32\ctldll.dll systemroot+\system32\ddecom\ctlstats.drv systemroot+\system32\ddectl.dll systemroot+\system32\devcrypt.dll systemroot+\system32\dhcpkbd.dll systemroot+\system32\dllcmd.dll systemroot+\system32\httpsserver32.dll systemroot+\system32\ipdll32.dll systemroot+\system32\ipxip\statfat.drv systemroot+\system32\kbdman.dll systemroot+\system32\logmon.exe systemroot+\system32\macnetb32.dll systemroot+\system32\midical.dll systemroot+\system32\modipx.dll systemroot+\system32\modnetb\diskstats.drv systemroot+\system32\modstats.dll systemroot+\system32\msdde.dll systemroot+\system32\netbaut.dll systemroot+\system32\netbcam.exe systemroot+\system32\netipx.dll systemroot+\system32\netutil.exe systemroot+\system32\niccam\docmfc.drv systemroot+\system32\odbckey.dll systemroot+\system32\olehost.dll systemroot+\system32\profwin.exe systemroot+\system32\regdb.dll systemroot+\system32\rtfftp.dll systemroot+\system32\sqlhost32.dll systemroot+\system32\statip.dll systemroot+\system32\submon\diskmod.drv systemroot+\system32\svrwin.exe systemroot+\system32\tcpterm.dll systemroot+\system32\termme\macreg.drv systemroot+\system32\uniserver.dll systemroot+\system32\usbdel\termlink.drv systemroot+\system32\v32wsock.exe systemroot+\system32\vgalog.dll systemroot+\system32\xmlbot32.dll systemroot+\system32\xpcmd.dll usbw32.exe w32sub.exe systemroot+\system32\ddecom systemroot+\system32\ipxip systemroot+\system32\modnetb systemroot+\system32\niccam systemroot+\system32\submon systemroot+\system32\termme 2.1 http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077075 Main http://www3.ca.com/securityadvisor/pest/pest.aspx?id=55479 Some paranoid's idea to spy on his "girlfriend" one day I guess. Page 170 of Playboy inNov. 2003 is another reference. Sadly a positive reviewing.