Bazooka Adware and Spyware Scanner Log 73

****************************************
Bazooka Adware and Spyware Scanner v1.12
Log created 19:03:02.
OS: Windows NT 5.0
Database version: 1.790000
Database format version: 1.020000
Database date: 20040220
Current date: 2004-02-22 19:03

****************************************
Auto start entries:
C:\PROGRA~1\Logitech\DESKTO~1\8876480\Program\LDMConf.exe /start
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE -b -l
C:\PROGRA~1\Logitech\DESKTO~1\8876480\Program\LDMConf.exe /start
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE -b -l

****************************************
Run entries:
Synchronization Manager mobsync.exe /logon
NvCplDaemon RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
nwiz nwiz.exe /install
AdaptecDirectCD "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
HPDJ Taskbar Utility C:\WINNT\System32\spool\drivers\w32x86\3\hpztsb04.exe
WinampAgent "C:\Program Files\Winamp\Winampa.exe"
QuickTime Task "C:\Program Files\QuickTime\qttask.exe" -atboottime
Hpppta C:\Program Files\Hewlett-Packard\HP PrecisionScan\PrecisionScan\hpppta.exe /ICON
Logitech Utility Logi_MwX.Exe
TkBellExe "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
ccApp "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
ccRegVfy "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
Advanced Tools Check C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
Smiley Faces For AIM C:\Program Files\Smiley Faces\smiley_demo.exe
UpdateStats C:\Program Files\Media\Media\UpdateStats.exe
ClrSchLoader C:\Program Files\ClearSearch\Loader.exe
AMSRVS C:\WINNT\system32\AMSRVS.exe
CMD cmd32.exe
msnmsgr "C:\Program Files\MSN Messenger\msnmsgr.exe" /background

LDM \Program\BackWeb-8876480.exe
MCClient C:\WINNT\4424.exe
Buss C:\Documents and Settings\Administrator\Application Data\dwtn.exe
AIM C:\Program Files\AIM\aim.exe -cnetwait.odl

****************************************
Browser helper objects:

{00000000-0000-0000-0000-000000000240} Clear Search C:\Program Files\ClearSearch\IE_ClrSch.DLL
{5D60FF48-95BE-4956-B4C6-6BB168A70310} NavErrRedir Class C:\PROGRA~1\INCRED~1\BHO\INCFIN~1.DLL

****************************************
Toolbars:

{8E718888-423F-11D2-876E-00A0C9082467} C:\WINNT\System32\msdxm.ocx
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton AntiVirus\NavShExt.dll
{2CF0B992-5EEB-4143-99C0-5297EF71F444} C:\WINNT\system32\stlbdist.DLL
{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINNT\System32\browseui.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton AntiVirus\NavShExt.dll
{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINNT\System32\browseui.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton AntiVirus\NavShExt.dll
{5F1ABCDB-A875-46C1-8345-B72A4567E486} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{5F1ABCDB-A875-46C1-8345-B72A4567E486}\InprocServer32

System error message: The system cannot find the file specified.

{2CF0B992-5EEB-4143-99C0-5297EF71F444} C:\WINNT\system32\stlbdist.DLL
{4528BBE0-4E08-11D5-AD55-00010333D0AD} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{4528BBE0-4E08-11D5-AD55-00010333D0AD}\InprocServer32

System error message: The system cannot find the file specified.

{4D5C8C25-D075-11d0-B416-00C04FB90376} C:\WINNT\System32\shdocvw.dll
{30D02401-6A81-11D0-8274-00C04FD5AE38} C:\WINNT\System32\browseui.dll
{32683183-48a0-441b-a342-7c2a440a9478} C:\WINNT\System32\browseui.dll
{4528BBE0-4E08-11D5-AD55-00010333D0AD} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{4528BBE0-4E08-11D5-AD55-00010333D0AD}\InprocServer32

System error message: The system cannot find the file specified.

{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} C:\WINNT\system32\shell32.dll
{EFA24E61-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
{EFA24E62-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
{EFA24E64-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
{F26409AD-ACFE-11D4-A2DC-0010B544C2A7} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{F26409AD-ACFE-11D4-A2DC-0010B544C2A7}\InprocServer32

System error message: The system cannot find the file specified.


****************************************
All processes:

0 [System Process]
8 System
164 smss.exe
192 csrss.exe
212 winlogon.exe
240 services.exe
252 lsass.exe
436 svchost.exe
460 spoolsv.exe
488 ccEvtMgr.exe
576 svchost.exe
596 navapsvc.exe
628 NPROTECT.EXE
672 nvsvc32.exe
692 regsvc.exe
744 MSTask.exe
788 stisvc.exe
864 WinMgmt.exe
884 mspmspsv.exe
896 svchost.exe
996 Explorer.exe
1140 DirectCD.exe
1228 realsched.exe
1236 ccApp.exe
1256 em_exec.exe
1276 UpdateStats.exe
1320 Loader.exe
1384 dwtn.exe
1392 aim.exe
1268 AMSRVS.exe
968 msimn.exe
768 spywarescanner.

****************************************
Result when scanning:

ClearSearch.bho1 729.977.000 {00000000-0000-0000-0000-000000000240}
Favoriteman 692.118.338 mpz300.dll
IGetNet 192.198.888 ClrSchLoader
IGetNet 692.118.337 bho001.dll
IGetNet 692.118.540 %ProgramsDir%\ClearSearch\
IncrediFind 342.900.000 {5D60FF48-95BE-4956-B4C6-6BB168A70310}
MPGCom Toolbar 386.000.002 %WinDir%\iempg.dll
n-CASE 102.165.198 msbb.dll
PromulGate 837.700.001 %ProgramsDir%\Common Files\Dpi\
WildTangent 999.888.998 %Windir%\wt
Winpup 340.800.002

***************************************




Related links

Bazooka - Free scan for spyware, adware, trojan horses, keyloggers, etc. Detects more than 500 potentially unwanted applications. Freeware!

The File Database - Search the file database for more information. Free!

PopUp Blocker Test - Find out if your pop-up killer can handle all pop-ups. Free!

Kephyr Labs - Find out what is going on at Kephyr. Try products in an early stage of development.



FreeFixer
Read more about FreeFixer, Kephyr's latest spyware removal tool.
Home & Products |  Legal |  Privacy |  Search

© Kephyr, 2003-2012. HtmlTidy, HTML 4.01, CSS andy@kephyr.com