Bazooka Adware and Spyware Scanner Log 104

****************************************
Bazooka Adware and Spyware Scanner v1.13b1
http://www.kephyr.com/spywarescanner/
http://www.kephyr.com/spywarescanner/library/
Log created 16:32:31.
OS: Windows NT 5.0
Database version: 1.670000
Database format version: 1.020000
Database date: 20040131
Current date: 2004-03-07 16:32


****************************************
Result when scanning:

A Better Internet 777.777.000 bi.dll
http://www.kephyr.com/spywarescanner/library/abetterinternet/index.phtml

A Better Internet 777.777.001 {000006B1-19B5-414A-849F-2A3C64AE6939}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}
http://www.kephyr.com/spywarescanner/library/abetterinternet/index.phtml

A Better Internet.C 779.000.000 %WinDir%\mypbutn.exe
C:\WINNT\mypbutn.exe
http://www.kephyr.com/spywarescanner/library/abetterinternet.c/index.phtml

A Better Internet.D 780.000.000 %WinDir%\cgetaway.exe
C:\WINNT\cgetaway.exe
http://www.kephyr.com/spywarescanner/library/abetterinternet.d/index.phtml

A Better Internet.F 782.900.000 %ProgramsDir%\FlashTalk\
C:\Program\FlashTalk\
http://www.kephyr.com/spywarescanner/library/abetterinternet.f/index.phtml

ActualNames 544.744.001 %ProgramsDir%\AdvSearch\
C:\Program\AdvSearch\
http://www.kephyr.com/spywarescanner/library/actualnames/index.phtml

AdRoar 192.900.000 {BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}
http://www.kephyr.com/spywarescanner/library/adroar/index.phtml

AdRoar 192.900.001 %WinDir%\ARUpdate.exe
C:\WINNT\ARUpdate.exe
http://www.kephyr.com/spywarescanner/library/adroar/index.phtml

AdRoar 192.900.002 AdRoarUpdate
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AdRoarUpdate
http://www.kephyr.com/spywarescanner/library/adroar/index.phtml

AutoStarter 583.200.000 %WinDir%\AST.EXE
C:\WINNT\AST.EXE
http://www.kephyr.com/spywarescanner/library/autostarter/index.phtml

AutoStarter 583.200.001 AST
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AST
http://www.kephyr.com/spywarescanner/library/autostarter/index.phtml

Bargain Buddy 102.498.947
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bargain Buddy\DisplayName
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml

Bargain Buddy 102.997.947 Bargains
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Bargains
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml

Bargain Buddy 102.997.949 %ProgramsDir%\Bargain Buddy\
C:\Program\Bargain Buddy\
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml

Bargain Buddy 102.997.950 {CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml

BlowSearch 123.300.001 %ProgramsDir%\BlowsearchToolbar\
C:\Program\BlowsearchToolbar\
http://www.kephyr.com/spywarescanner/library/blowsearch/index.phtml

BookedSpace 100.200.300 bxxs5
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\bxxs5
http://www.kephyr.com/spywarescanner/library/bookedspace/index.phtml

BookedSpace 100.200.301 bxxs5.dll
http://www.kephyr.com/spywarescanner/library/bookedspace/index.phtml

BookedSpace 100.200.302 {0019C3E2-DD48-4A6D-ABCD-8D32436323D9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9}
http://www.kephyr.com/spywarescanner/library/bookedspace/index.phtml

BroadcastPC 177.977.917 RVP
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\RVP
http://www.kephyr.com/spywarescanner/library/broadcastpc/index.phtml

BroadcastPC 888.997.947 RVP
http://www.kephyr.com/spywarescanner/library/broadcastpc/index.phtml

BroadcastPC 888.997.948 %ProgramsDir%\RVP\
C:\Program\RVP\
http://www.kephyr.com/spywarescanner/library/broadcastpc/index.phtml

ClipGenie 152.997.940
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClipGenie\DisplayName
http://www.kephyr.com/spywarescanner/library/clipgenie/index.phtml

ClipGenie 102.444.947
HKEY_CURRENT_USER\SOFTWARE\ClipGenie\Prefs\DisplayName
http://www.kephyr.com/spywarescanner/library/clipgenie/index.phtml

ClipGenie 102.444.948 %ProgramsDir%\ClipGenie\
C:\Program\ClipGenie\
http://www.kephyr.com/spywarescanner/library/clipgenie/index.phtml

ClockSync 847.700.001 %ProgramsDir%\ClockSync\
C:\Program\ClockSync\
http://www.kephyr.com/spywarescanner/library/clocksync/index.phtml

Cydoor 399.000.000 %SystemDir%\AdCache\
C:\WINNT\system32\\AdCache\
http://www.kephyr.com/spywarescanner/library/cydoor/index.phtml

Cydoor 399.000.001 Cd_clint.dll
http://www.kephyr.com/spywarescanner/library/cydoor/index.phtml

DownloadWare 825.997.947 DownloadWare
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\DownloadWare
http://www.kephyr.com/spywarescanner/library/downloadware/index.phtml

DownloadWare 825.997.949 %ProgramsDir%\DownloadWare\
C:\Program\DownloadWare\
http://www.kephyr.com/spywarescanner/library/downloadware/index.phtml

Ebates Moe Money Maker 612.294.123 EbatesMoeMoneyMaker
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\EbatesMoeMoneyMaker
http://www.kephyr.com/spywarescanner/library/ebatesmoemoneymaker/index.phtml

Ebates Moe Money Maker 199.217.147
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ebatesver2.xml\DisplayName
http://www.kephyr.com/spywarescanner/library/ebatesmoemoneymaker/index.phtml

Ebates Moe Money Maker 612.294.124 %ProgramsDir%\EbatesMoeMoneyMaker\
C:\Program\EbatesMoeMoneyMaker\
http://www.kephyr.com/spywarescanner/library/ebatesmoemoneymaker/index.phtml

eXact Search Bar 617.299.124 %ProgramsDir%\eXact\
C:\Program\eXact\
http://www.kephyr.com/spywarescanner/library/exactsearchbar/index.phtml

eXact Search Bar.B 618.299.127 {224530A0-C9CB-4AEE-9C0F-54AC1B533211}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}
http://www.kephyr.com/spywarescanner/library/exactsearchbar.b/index.phtml

eXact Search Bar.B 618.299.127 {224530A0-C9CB-4AEE-9C0F-54AC1B533211}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}
http://www.kephyr.com/spywarescanner/library/exactsearchbar.b/index.phtml

eZula 122.227.147
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\eZula\DisplayName
http://www.kephyr.com/spywarescanner/library/ezula/index.phtml

eZula 122.927.147 eZmmod
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\eZmmod
http://www.kephyr.com/spywarescanner/library/ezula/index.phtml

eZula 122.927.149 eZmmod
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\eZmmod
http://www.kephyr.com/spywarescanner/library/ezula/index.phtml

eZula 122.927.150 %SystemDir%\ezstub.exe
C:\WINNT\system32\\ezstub.exe
http://www.kephyr.com/spywarescanner/library/ezula/index.phtml

FlashTrack 128.293.000
HKEY_LOCAL_MACHINE\SOFTWARE\Flt\
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

FlashTrack 128.293.001 {665ACD90-4541-4836-9FE4-062386BB8F05}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{665ACD90-4541-4836-9FE4-062386BB8F05}
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

FlashTrack 128.293.002 %ProgramsDir%\Flt\
C:\Program\Flt\
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

Free History Cleaner 312.800.001 %SystemDir%\fhcprogress.exe
C:\WINNT\system32\\fhcprogress.exe
http://www.kephyr.com/spywarescanner/library/freehistorycleaner/index.phtml

Gator 112.997.000 GMT.exe
http://www.kephyr.com/spywarescanner/library/gain/index.phtml

Gator 102.098.947 CMESys
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\CMESys
http://www.kephyr.com/spywarescanner/library/gain/index.phtml

Gator 112.198.918 %WinDir%\temp\adware\
C:\WINNT\temp\adware\
http://www.kephyr.com/spywarescanner/library/gain/index.phtml

Httper 931.000.002 %ProgramsDir%\Httper\
C:\Program\Httper\
http://www.kephyr.com/spywarescanner/library/httper/index.phtml

IEDriver 292.000.000 %SystemDir%\IEDriver\
C:\WINNT\system32\\IEDriver\
http://www.kephyr.com/spywarescanner/library/iedriver/index.phtml

IEDriver 292.000.001 IEDriver
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\IEDriver
http://www.kephyr.com/spywarescanner/library/iedriver/index.phtml

IGetNet 692.118.337 install_all.dll
http://www.kephyr.com/spywarescanner/library/igetnet/index.phtml

IncrediFind 342.900.000 {5D60FF48-95BE-4956-B4C6-6BB168A70310}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D60FF48-95BE-4956-B4C6-6BB168A70310}
http://www.kephyr.com/spywarescanner/library/incredifind/index.phtml

Instant Access Dialer 847.000.001 %ProgramsDir%\Instant Access\
C:\Program\Instant Access\
http://www.kephyr.com/spywarescanner/library/instantaccessdialer/index.phtml

Instant Access Dialer.B 848.000.000 EGDial.dll
http://www.kephyr.com/spywarescanner/library/instantaccessdialer.b/index.phtml

Instant Access Dialer.C 849.000.001 EGDHTML_1024.dll
http://www.kephyr.com/spywarescanner/library/instantaccessdialer.c/index.phtml

KeenValue.Updater 643.000.000 updater
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\updater
http://www.kephyr.com/spywarescanner/library/keenvalue.updater/index.phtml

KeenValue.Updater 643.000.001 %ProgramsDir%\Common Files\updater\
C:\Program\Common Files\updater\
http://www.kephyr.com/spywarescanner/library/keenvalue.updater/index.phtml

KeySpec 895.300.001 %ProgramsDir%\Keyboard Spectator Pro\
C:\Program\Keyboard Spectator Pro\
http://www.kephyr.com/spywarescanner/library/keyspec/index.phtml

Look2Me 349.000.000
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDFFA75A-E81D-4454-89FC-B9FD0631E726}\InprocServer32\ThreadingModel
http://www.kephyr.com/spywarescanner/library/look2me/index.phtml

LimeShop 120.120.002 %ProgramsDir%\LimeShop\
C:\Program\LimeShop\
http://www.kephyr.com/spywarescanner/library/limeshop/index.phtml

My Search Bar 132.098.655
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\My Way Speedbar Uninstall\DisplayName
http://www.kephyr.com/spywarescanner/library/mysearchbar/index.phtml

My Search Bar 132.098.656
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWaySearchAssistant\DisplayName
http://www.kephyr.com/spywarescanner/library/mysearchbar/index.phtml

My Search Bar 777.777.778 %ProgramsDir%\MyWay\
C:\Program\MyWay\
http://www.kephyr.com/spywarescanner/library/mysearchbar/index.phtml

My Search Bar.B 778.777.000 {0494D0D9-F8E0-41ad-92A3-14154ECE70AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}
http://www.kephyr.com/spywarescanner/library/mysearchbar.b/index.phtml

My Search Bar.B 778.777.001 {04079851-5845-4dea-848C-3ECD647AA554}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{04079851-5845-4dea-848C-3ECD647AA554}
http://www.kephyr.com/spywarescanner/library/mysearchbar.b/index.phtml

My Search Bar.C 779.777.001 {0494D0D1-F8E0-41ad-92A3-14154ECE70AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}
http://www.kephyr.com/spywarescanner/library/mysearchbar.c/index.phtml

n-CASE 098.098.098 msbb
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\msbb
http://www.kephyr.com/spywarescanner/library/ncase/index.phtml

n-CASE 102.165.198 ncmyb.dll
http://www.kephyr.com/spywarescanner/library/ncase/index.phtml

n-CASE 102.165.199 %SystemDir%\msbb.exe
C:\WINNT\system32\\msbb.exe
http://www.kephyr.com/spywarescanner/library/ncase/index.phtml

P2P Networking 126.652.451 P2P Networking
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\P2P Networking
http://www.kephyr.com/spywarescanner/library/p2pnetworking/index.phtml

P2P Networking 123.000.334
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\P2P Networking\DisplayName
http://www.kephyr.com/spywarescanner/library/p2pnetworking/index.phtml

Points Manager 126.693.451 AltnetPointsManager
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AltnetPointsManager
http://www.kephyr.com/spywarescanner/library/peerpoints/index.phtml

Points Manager 123.321.334
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AltnetDM\DisplayName
http://www.kephyr.com/spywarescanner/library/peerpoints/index.phtml

PerfectNav 352.900.001 %ProgramsDir%\PerfectNav\
C:\Program\PerfectNav\
http://www.kephyr.com/spywarescanner/library/perfectnav/index.phtml

PowerSearch 342.300.000 {4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

PowerSearch 342.300.000 {4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

PowerSearch 342.300.001 %ProgramsDir%\PowerSearch\
C:\Program\PowerSearch\
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

Real Spy Monitor 740.900.001 %WinDir%\RSM\
C:\WINNT\RSM\
http://www.kephyr.com/spywarescanner/library/realspymonitor/index.phtml

SaveNow 090.090.090 WhenUSave
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WhenUSave
http://www.kephyr.com/spywarescanner/library/savenow/index.phtml

SaveNow 555.666.777 Save.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WhenUSave
http://www.kephyr.com/spywarescanner/library/savenow/index.phtml

SaveNow 090.090.091 %ProgramsDir%\Save\
C:\Program\Save\
http://www.kephyr.com/spywarescanner/library/savenow/index.phtml

Scbar 190.092.390 SearchEnhancement
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\SearchEnhancement
http://www.kephyr.com/spywarescanner/library/scbar/index.phtml

Scbar 190.092.391 %ProgramsDir%\scbar\
C:\Program\scbar\
http://www.kephyr.com/spywarescanner/library/scbar/index.phtml

Scbar 190.092.392 {00041A26-7033-432C-94C7-6371DE343822}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00041A26-7033-432C-94C7-6371DE343822}
http://www.kephyr.com/spywarescanner/library/scbar/index.phtml

ShopAtHomeSelect 111.777.666 SAHAgent
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\SAHAgent
http://www.kephyr.com/spywarescanner/library/shopathomeselect/index.phtml

ShopAtHomeSelect 123.000.444
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopAtHomeSelect Agent\DisplayName
http://www.kephyr.com/spywarescanner/library/shopathomeselect/index.phtml

ShopAtHomeSelect 123.000.445 %SystemDir%\SahAgent.exe
C:\WINNT\system32\\SahAgent.exe
http://www.kephyr.com/spywarescanner/library/shopathomeselect/index.phtml

SpyBan 243.700.000 %ProgramsDir%\SpyBan\
C:\Program\SpyBan\
http://www.kephyr.com/spywarescanner/library/spyban/index.phtml

SpyBan 243.700.001 SpyBan
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\SpyBan
http://www.kephyr.com/spywarescanner/library/spyban/index.phtml

SpyAgent 199.700.000 %ProgramsDir%\Spytech Software\Spytech SpyAgent\
C:\Program\Spytech Software\Spytech SpyAgent\
http://www.kephyr.com/spywarescanner/library/spyagent/index.phtml

SpyAgent 199.700.001 SystemSA32.dll
http://www.kephyr.com/spywarescanner/library/spyagent/index.phtml

SystemSoap Pro 957.500.001 %ProgramsDir%\System Soap Pro\
C:\Program\System Soap Pro\
http://www.kephyr.com/spywarescanner/library/systemsoappro/index.phtml

Tiny Key Logger 342.800.000 %SystemDir%\tikl.log
C:\WINNT\system32\\tikl.log
http://www.kephyr.com/spywarescanner/library/tinykeylogger/index.phtml

Tiny Key Logger 342.800.002
HKEY_CURRENT_USER\SOFTWARE\TiKL\ExeName
http://www.kephyr.com/spywarescanner/library/tinykeylogger/index.phtml

Transponder 616.000.002 {000006B1-19B5-414A-849F-2A3C64AE6939}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}
http://www.kephyr.com/spywarescanner/library/transponder/index.phtml

Viewpoint Media Player 666.555.444
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer\DisplayName
http://www.kephyr.com/spywarescanner/library/viewpointmediaplayer/index.phtml

WeatherCast 342.000.000 WeatherCast
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\WeatherCast
http://www.kephyr.com/spywarescanner/library/weathercast/index.phtml

WeatherCast 342.000.001 %ProgramsDir%\WeatherCast\
C:\Program\WeatherCast\
http://www.kephyr.com/spywarescanner/library/weathercast/index.phtml

WebHancer 888.333.111 webHancer
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\webHancer Agent
http://www.kephyr.com/spywarescanner/library/webhancer/index.phtml

WebHancer 888.333.111 webHancer
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\webHancer Survey Companion
http://www.kephyr.com/spywarescanner/library/webhancer/index.phtml

WebHancer 321.123.321
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webHancer Agent\DisplayName
http://www.kephyr.com/spywarescanner/library/webhancer/index.phtml

WebHancer 321.123.322 %Windir%\whInstaller.exe
C:\WINNT\whInstaller.exe
http://www.kephyr.com/spywarescanner/library/webhancer/index.phtml

WebHancer 321.123.323 {c900b400-cdfe-11d3-976a-00e02913a9e0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c900b400-cdfe-11d3-976a-00e02913a9e0}
http://www.kephyr.com/spywarescanner/library/webhancer/index.phtml

WebSavings 523.900.001 %ProgramsDir%\WebSavingsfromEbates\
C:\Program\WebSavingsfromEbates\
http://www.kephyr.com/spywarescanner/library/websavings/index.phtml

WhenUSearch 534.000.001 %ProgramsDir%\WhenUSearch\
C:\Program\WhenUSearch\
http://www.kephyr.com/spywarescanner/library/whenusearch/index.phtml

WildTangent 999.333.999 wcmdmgr
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\wcmdmgr
http://www.kephyr.com/spywarescanner/library/wildtangent/index.phtml

WildTangent 999.888.999 WT GameChannel
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WT GameChannel
http://www.kephyr.com/spywarescanner/library/wildtangent/index.phtml

WildTangent 999.888.998 %Windir%\wt
C:\WINNT\wt
http://www.kephyr.com/spywarescanner/library/wildtangent/index.phtml

Winpup 340.800.001
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\comms\ren
http://www.kephyr.com/spywarescanner/library/winpup/index.phtml

****************************************
Auto start entries:
C:\Program\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe
C:\Program\Delade filer\GMT\GMT.exe /startup
C:\Program\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe
C:\Program\Delade filer\GMT\GMT.exe /startup
C:\Documents and Settings\testadmin\Application Data\Microsoft\Installer\{B136C09A-59F2-4AE1-9863-92341AEDCD5D}\IconB136C09A.exe -h
C:\WINNT\system32\rundll32.exe C:\PROGRAM\THESEA~1\UCMTSAIE.dll,DllShowTB
C:\WINNT\system32\EStartLinkRotater.exe
C:\Program\Grokster\WiseUpdt.exe /c
C:\Program\FlashTalk\FlashTalk.exe -s
C:\Documents and Settings\testadmin\Application Data\Microsoft\Installer\{B136C09A-59F2-4AE1-9863-92341AEDCD5D}\IconB136C09A.exe -h
C:\WINNT\system32\rundll32.exe C:\PROGRAM\THESEA~1\UCMTSAIE.dll,DllShowTB
C:\WINNT\system32\EStartLinkRotater.exe
C:\Program\Grokster\WiseUpdt.exe /c
C:\Program\FlashTalk\FlashTalk.exe -s

Go here to analyse the startup entries and the associated files:
http://www.kephyr.com/filedb/index.php

****************************************
Run entries:
Synchronization Manager mobsync.exe /logon
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Synchronization Manager

windowsremote C:\Program\Windows Remote Server\bin\winremoteserv.exe -reportwithmessagebox
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\windowsremote

Systems.exe C:\Program\Keyboard Spectator Pro\Systems.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Systems.exe

System32dodw˙˙˙˙  C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\System32dodw˙˙˙˙ 

System32dodw˙˙˙˙  C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\System32dodw˙˙˙˙ 

C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\

AST C:\WINNT\AST
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AST

RVP "C:\Program\RVP\bpc.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\RVP

AdRoarUpdate C:\WINNT\ARUpdate.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AdRoarUpdate

WhenUSave C:\Program\Save\Save.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WhenUSave

updmgr C:\Program\Common files\updmgr\updmgr.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\updmgr

AltnetPointsManager c:\program files\altnet\points manager\points manager.exe -s
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AltnetPointsManager

CMESys "C:\Program\Delade filer\CMEII\CMESys.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\CMESys

SAHAgent C:\WINNT\system32\SahAgent.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\SAHAgent

bxxs5 RunDLL32.EXE C:\WINNT\bxxs5.dll,DllRun
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\bxxs5

EbatesMoeMoneyMaker wjview /cp:p "C:\Program\EbatesMoeMoneyMaker\System\Code" Main lp: "C:\Program\EbatesMoeMoneyMaker"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\EbatesMoeMoneyMaker

updater C:\Program\Common files\updater\wupdater.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\updater

msbb C:\WINNT\system32\msbb.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\msbb

IEDriver C:\WINNT\system32\IEDriver\IEDriver.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\IEDriver

DownloadWare "C:\Program\DownloadWare\dw.exe" /H
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\DownloadWare

SearchEnhancement "C:\Program\scbar\v2\scbar.exe" /U
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\SearchEnhancement

PWEL C:\WINNT\PWEL.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\PWEL

eDonkey2000 C:\Program\eDonkey2000\eDonkey2000.exe -t
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\eDonkey2000

Bargains C:\Program\Bargain Buddy\bin2\bargains.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Bargains

EasyFreeWebCam C:\PROGRAM\EASYWE~1\easywebcam.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\EasyFreeWebCam

webHancer Agent "C:\Program Files\webHancer\Programs\whAgent.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\webHancer Agent

webHancer Survey Companion "C:\Program Files\webHancer\Programs\whSurvey.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\webHancer Survey Companion

BearShare "C:\Program\BearShare\BearShare.exe" /pause
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\BearShare

WT GameChannel C:\Program\WildTangent\Apps\GameChannel.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WT GameChannel

wcmdmgr C:\WINNT\wt\updater\wcmdmgrl.exe -launch
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\wcmdmgr

SpyHunter C:\Program\SpyHunter\SpyHunter.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\SpyHunter

P2P Networking C:\WINNT\system32\P2P Networking\P2P Networking.exe /AUTOSTART
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\P2P Networking

GroksterSupport wjview /cp:p "C:\Program\GroksterSupport\System\Code" Main lp: "C:\Program\GroksterSupport"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\GroksterSupport

tmsevtn C:\WINNT\system32\tmsevtn.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\tmsevtn

inrnrw C:\WINNT\system32\inrnrw.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\inrnrw

internat.exe internat.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\internat.exe

SpyBan "C:\Program\SpyBan\SpyBan.exe" /s
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\SpyBan

WeatherCast C:\Program\WEATHE~1\Weather.exe /q
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\WeatherCast

SpyKiller C:\Program\SpyKiller\spykiller.exe /startup
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\SpyKiller

eZmmod C:\PROGRAM\ezula\mmod.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\eZmmod


Go here to analyse the run entries and the associated files:
http://www.kephyr.com/filedb/index.php

****************************************
Browser helper objects:

{000006B1-19B5-414A-849F-2A3C64AE6939} not set C:\WINNT\bi.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}

{00041A26-7033-432C-94C7-6371DE343822} not set C:\Program\scbar\v2\scbar.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00041A26-7033-432C-94C7-6371DE343822}

{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} not set C:\WINNT\bxxs5.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9}

{04079851-5845-4dea-848C-3ECD647AA554} MyWay Search Assistant BHO C:\Program\MyWay\SrchAstt\1.bin\MYSRCHAS.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{04079851-5845-4dea-848C-3ECD647AA554}

{0428FFC7-1931-45b7-95CB-3CBB919777E1} NavErrRedir Class C:\Program\PERFEC~1\BHO\PERFEC~1.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0428FFC7-1931-45b7-95CB-3CBB919777E1}

{0494D0D1-F8E0-41ad-92A3-14154ECE70AC} myBar BHO C:\Program\MyWay\myBar\1.bin\MYBAR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}

{4C12361F-3431-4A69-B0CA-CA788A8F7C12} MereSurfer Band C:\Program\MereSurfer 2003 Free\MereSurfInstall.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4C12361F-3431-4A69-B0CA-CA788A8F7C12}

{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E} not set C:\WINNT\DOWNLO~1\APHelper.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E}

{5D60FF48-95BE-4956-B4C6-6BB168A70310} NavErrRedir Class C:\Program\INCRED~1\BHO\INCFIN~1.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D60FF48-95BE-4956-B4C6-6BB168A70310}

{665ACD90-4541-4836-9FE4-062386BB8F05} not set Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{665ACD90-4541-4836-9FE4-062386BB8F05}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{665ACD90-4541-4836-9FE4-062386BB8F05}

{8786386E-4B22-11D6-9C60-E5DA06D87378} not set C:\WINNT\system32\BandObjs1,0,0,3.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8786386E-4B22-11D6-9C60-E5DA06D87378}

{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} not set C:\WINNT\AdRoar.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}

{c900b400-cdfe-11d3-976a-00e02913a9e0} not set C:\Program Files\webHancer\programs\whiehlpr.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c900b400-cdfe-11d3-976a-00e02913a9e0}

{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1} Url Catcher C:\Program\BARGAI~1\bin2\apuc.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}


****************************************
Toolbars:

{8E718888-423F-11D2-876E-00A0C9082467} C:\WINNT\system32\msdxm.ocx
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8E718888-423F-11D2-876E-00A0C9082467}

{224530A0-C9CB-4AEE-9C0F-54AC1B533211} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}

{340166BC-786B-401F-96AC-7C8821EFA9CD} C:\Program\MereSurfer 2003 Free\MereSurferF.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{340166BC-786B-401F-96AC-7C8821EFA9CD}

{62999427-33FC-4baf-9C9C-BCE6BD127F08} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{62999427-33FC-4baf-9C9C-BCE6BD127F08}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{62999427-33FC-4baf-9C9C-BCE6BD127F08}

{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D} C:\Program\PowerSearch\Toolbar\pwrs0102.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}

{0494D0D9-F8E0-41ad-92A3-14154ECE70AC} C:\Program\MyWay\myBar\1.bin\MYBAR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}

{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} C:\WINNT\AdRoar.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}

{44BE0690-5429-47f0-85BB-3FFD8020233E} C:\Program\TheSearchAccelerator\UCMTSAIE.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{44BE0690-5429-47f0-85BB-3FFD8020233E}

{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D} C:\Program\PowerSearch\Toolbar\pwrsbikd.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D}

{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ShellBrowser\{01E04581-4EEE-11D0-BFE9-00AA005B4383}

{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ShellBrowser\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}

{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{01E04581-4EEE-11D0-BFE9-00AA005B4383}

{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0E5CBF21-D15F-11D0-8301-00AA005B4383}

{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}

{224530A0-C9CB-4AEE-9C0F-54AC1B533211} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}\InprocServer32

System error message: Det går inte att hitta filen.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}

{340166BC-786B-401F-96AC-7C8821EFA9CD} C:\Program\MereSurfer 2003 Free\MereSurferF.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{340166BC-786B-401F-96AC-7C8821EFA9CD}

{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D} C:\Program\PowerSearch\Toolbar\pwrs0102.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}

{44BE0690-5429-47F0-85BB-3FFD8020233E} C:\Program\TheSearchAccelerator\UCMTSAIE.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{44BE0690-5429-47F0-85BB-3FFD8020233E}

{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D} C:\Program\PowerSearch\Toolbar\pwrsbikd.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D}

{4D5C8C25-D075-11d0-B416-00C04FB90376} C:\WINNT\System32\shdocvw.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4D5C8C25-D075-11d0-B416-00C04FB90376}

{32683183-48a0-441b-a342-7c2a440a9478} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478}

{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} C:\WINNT\system32\shell32.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1}

{EFA24E62-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{EFA24E62-B078-11D0-89E4-00C04FC9E26E}

{EFA24E64-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{EFA24E64-B078-11D0-89E4-00C04FC9E26E}


****************************************
All processes:

[System Process]
System
smss.exe
csrss.exe
winlogon.exe
services.exe
lsass.exe
svchost.exe
spoolsv.exe
svchost.exe
regsvc.exe
MSTask.exe
vsmon.exe
WinMgmt.exe
svchost.exe
Explorer.EXE
AST.exe
bpc.exe
ARUpdate.exe
Save.exe
updmgr.exe
svchost.exe
CMESys.exe
SahAgent.exe
msbb.exe
IEDriver.exe
dw.exe
eDonkey2000.exe
bargains.exe
GMT.exe
easywebcam.exe
whAgent.exe
GameChannel.exe
wcmdmgr.exe
P2P Networking.
internat.exe
Weather.exe
tmsevtn.exe
mmod.exe
inrnrw.exe
zonealarm.exe
winhost32.exe
warez.exe
EStartLinkRotat
FlashTalk.exe
offer.exe
spywarescanner.
wjview.exe
wjview.exe

Go here to analyse the running processes:
http://www.kephyr.com/filedb/index.php

****************************************
Internet Explorer Settings:

http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl\

Default_Page_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL

Default_Search_URL http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL

Local Page C:\WINNT\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page

Search Bar http://www.searchenhancement.com/searchbar/iev1.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar

Search Page http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page

Start Page http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page

Default_Search_URL http://minisearch.startnow.com
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\Default_Search_URL

SearchAssistant http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant

CustomizeSearch http://minisearch.startnow.com
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch

http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\

provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider

Local Page C:\WINNT\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page

Search Bar file://C:\WINNT\system32\sb.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar

Search Page http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page

Start Page www.myfunstart.com/index.cfm?pc=bdhp
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page

Use Search Asst no
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use Search Asst

SearchAssistant http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant

CustomizeSearch http://minisearch.startnow.com
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch


****************************************




Related links

Bazooka - Free scan for spyware, adware, trojan horses, keyloggers, etc. Detects more than 500 potentially unwanted applications. Freeware!

The File Database - Search the file database for more information. Free!

PopUp Blocker Test - Find out if your pop-up killer can handle all pop-ups. Free!

Kephyr Labs - Find out what is going on at Kephyr. Try products in an early stage of development.



FreeFixer
Read more about FreeFixer, Kephyr's latest spyware removal tool.
Home & Products |  Legal |  Privacy |  Search

© Kephyr, 2003-2012. HtmlTidy, HTML 4.01, CSS andy@kephyr.com