It alternately flashes a yellow exclamation triangle and a minesweeper bomb. Context click does not present a menu to disable. Either mouseclick brings up this URL:
So some enthusiastic, or broke, affiliate wrote what seems to be a trojan horse to pimp this product! It regenerates registry entries after every boot, maybe during shutdown. It takes forever to shutdown. Some example strings in the registry are "baloon", and "virusbursters". It also seems to append strings to: SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters, without them being visible to regedit! I'm using RegSeeker to find these strings. Oh, and the strings are offshore havens, such as Trinidad and Tobago.
Last edited by tashi; 2006-11-26 at 18:17.
Reason: Disabled malicious url