Bazooka Adware and Spyware Scanner Log 467

****************************************
Bazooka Adware and Spyware Scanner v1.12
Log created 01:56:34.
OS: Windows NT 5.1
Database version: 2.060000
Database format version: 1.020000
Database date: 20040603
Current date: 2004-06-07 01:56

****************************************
Auto start entries:
C:\Documents and Settings\All Users.WINDOWS\Menuen Start\Programmer\Start\desktop.ini
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpohmr08.exe
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpotdd01.exe
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE -b -l
C:\Programmer\MyWebSearch\bar\1.bin\MWSOEMON.EXE
C:\PROGRA~1\SITECO~1\WLANUTL.exe autorun
C:\Documents and Settings\All Users.WINDOWS\Menuen Start\Programmer\Start\desktop.ini
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpohmr08.exe
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpotdd01.exe
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE -b -l
C:\Programmer\MyWebSearch\bar\1.bin\MWSOEMON.EXE
C:\PROGRA~1\SITECO~1\WLANUTL.exe autorun
C:\Documents and Settings\PL A. I. GJEVNØE\Menuen Start\Programmer\Start\desktop.ini
C:\Programmer\MyWebSearch\bar\1.bin\MWSOEMON.EXE
C:\Documents and Settings\PL A. I. GJEVNØE\Menuen Start\Programmer\Start\desktop.ini
C:\Programmer\MyWebSearch\bar\1.bin\MWSOEMON.EXE

****************************************
Run entries:
AdaptecDirectCD "C:\Programmer\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
NvCplDaemon RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
Apoint C:\Programmer\Apoint\Apoint.exe
LVCOMS C:\WINDOWS\System32\LVComS.exe
wcmdmgr C:\WINDOWS\wt\updater\wcmdmgrl.exe -launch
SNPT513 C:\WINDOWS\vsnpt513.exe
SunJavaUpdateSched C:\Programmer\Java\j2re1.4.2_04\bin\jusched.exe
TkBellExe "C:\Programmer\Fælles filer\Real\Update_OB\realsched.exe" -osboot
QuickTime Task "C:\Programmer\QuickTime\qttask.exe" -atboottime
cpidzzirsw C:\WINDOWS\System32\otbnew.exe
Jugs help C:\PROGRA~1\ShimThatDeaf\ThunkTrans.exe
CTFMON.EXE C:\WINDOWS\System32\ctfmon.exe
MsnMsgr "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
MyWebSearch Email Plugin C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
Mozilla Quick Launch "C:\Programmer\Netscape\Netscape\Netscp.exe" -turbo
ClockSync C:\Programmer\ClockSync\Sync.exe

****************************************
Browser helper objects:

{000020DD-C72E-4113-AF77-DD56626C6C42} not set C:\WINDOWS\twaintec.dll
{00A6FAF1-072E-44cf-8957-5838F569A31D} MyWebSearch Search Assistant BHO C:\Programmer\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} not set C:\Programmer\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
{07B18EA1-A523-4961-B6BB-170DE4475CCA} mwsBar BHO C:\Programmer\MyWebSearch\bar\1.bin\MWSBAR.DLL
{0E5F4BED-70EF-F8B6-A23E-CD6A64F5F640} not set C:\PROGRA~1\Showdent\Gram Anti.dll
{F7F808F0-6F7D-442C-93E3-4A4827C2E4C8} not set C:\WINDOWS\nem218.dll

****************************************
Toolbars:

{8E718888-423F-11D2-876E-00A0C9082467} C:\WINDOWS\System32\msdxm.ocx
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} C:\Programmer\MSN Toolbar\01.01.1629.0\da\msntb.dll
{07B18EA9-A523-4961-B6BB-170DE4475CCA} C:\Programmer\MyWebSearch\bar\1.bin\MWSBAR.DLL
{3837EF2F-8058-F89D-7D20-D353B9CCF3C8} C:\PROGRA~1\Showdent\Gram Anti.dll
{07B18EA9-A523-4961-B6BB-170DE4475CCA} C:\Programmer\MyWebSearch\bar\1.bin\MWSBAR.DLL
{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINDOWS\System32\browseui.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINDOWS\system32\SHELL32.dll
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} C:\Programmer\MSN Toolbar\01.01.1629.0\da\msntb.dll
{1C78AB3F-A857-482E-80C0-3A1E5238A565} Error when opening a registry key,
the key doesn't exist. Key:
HKEY_CLASSES_ROOT\CLSID\{1C78AB3F-A857-482E-80C0-3A1E5238A565}\InprocServer32

System error message: Den angivne fil blev ikke fundet.

{3837EF2F-8058-F89D-7D20-D353B9CCF3C8} C:\PROGRA~1\Showdent\Gram Anti.dll
{4D5C8C25-D075-11d0-B416-00C04FB90376} C:\WINDOWS\System32\shdocvw.dll
{32683183-48a0-441b-a342-7c2a440a9478} C:\WINDOWS\System32\browseui.dll
{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} C:\WINDOWS\system32\SHELL32.dll
{EFA24E62-B078-11D0-89E4-00C04FC9E26E} C:\WINDOWS\System32\shdocvw.dll
{EFA24E64-B078-11D0-89E4-00C04FC9E26E} C:\WINDOWS\System32\shdocvw.dll

****************************************
All processes:

0 [System Process]
4 System
648 smss.exe
696 csrss.exe
720 winlogon.exe
764 services.exe
776 lsass.exe
928 svchost.exe
976 svchost.exe
1176 svchost.exe
1200 svchost.exe
1468 spoolsv.exe
1588 nvsvc32.exe
1668 svchost.exe
2000 explorer.exe
160 Directcd.exe
172 rundll32.exe
180 Apoint.exe
168 LVComS.exe
216 vsnpt513.exe
228 jusched.exe
236 realsched.exe
240 wcmdmgr.exe
248 qttask.exe
252 otbnew.exe
268 ThunkTrans.exe
280 ctfmon.exe
292 msnmsgr.exe
352 Netscp.exe
380 hpohmr08.exe
388 hpotdd01.exe
484 ApntEx.exe
600 WLANUTL.exe
692 hpoevm08.exe
1236 hposts08.exe
3720 spywarescanner.exe

****************************************
Result when scanning:

ClockSync 847.700.000 ClockSync
Internet Optimizer 123.000.001 {F7F808F0-6F7D-442C-93E3-4A4827C2E4C8}
ISearch Toolbar 125.666.000 {1C78AB3F-A857-482E-80C0-3A1E5238A565}
MS Media Player GUID 404.888.000
My Search Bar 777.777.778 %ProgramsDir%\MyWay\
PowerScan 070.000.001 %ProgramsDir%\Power Scan\
Twaintech 523.888.001 {000020DD-C72E-4113-AF77-DD56626C6C42}
WebSearch Toolbar.Emailplug 474.900.000 MyWebSearch Email Plugin
WebSearch Toolbar.bho1 475.900.000 {00A6FAF1-072E-44cf-8957-5838F569A31D}
WebSearch Toolbar.bho2 476.900.000 {07B18EA1-A523-4961-B6BB-170DE4475CCA}
WebSearch Toolbar.b 477.900.000 {07B18EA9-A523-4961-B6BB-170DE4475CCA}

***************************************




Related links

Bazooka - Free scan for spyware, adware, trojan horses, keyloggers, etc. Detects more than 500 potentially unwanted applications. Freeware!

The File Database - Search the file database for more information. Free!

PopUp Blocker Test - Find out if your pop-up killer can handle all pop-ups. Free!

Kephyr Labs - Find out what is going on at Kephyr. Try products in an early stage of development.



FreeFixer
Read more about FreeFixer, Kephyr's latest spyware removal tool.
Home & Products |  Legal |  Privacy |  Search

© Kephyr, 2003-2012. HtmlTidy, HTML 4.01, CSS andy@kephyr.com