Bazooka Adware and Spyware Scanner Log 41

****************************************
Bazooka Adware and Spyware Scanner v1.12
Log created 06:23:50.
OS: Windows NT 5.1
Database version: 1.600000
Database format version: 1.020000
Database date: 20040119
Current date: 2004-01-23 06:23

****************************************
Auto start entries:
C:\PROGRA~1\NORTON~2\NORTON~2\CsinsmNT.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini
C:\FA-950\BIN\Klslink.exe
C:\Program Files\hp center\137903\Program\BackWeb-137903.exe -startup
C:\PROGRA~1\NORTON~2\NORTON~3\GBTray.exe
C:\PROGRA~1\COMMON~1\SYMANT~1\NMAIN.EXE /nosysworks /dat:C:\Program Files\Norton Internet Security\NISPLUG.NSI
C:\PROGRA~1\yProxy\yProxy.exe
C:\PROGRA~1\NORTON~2\NORTON~2\CsinsmNT.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini
C:\FA-950\BIN\Klslink.exe
C:\Program Files\hp center\137903\Program\BackWeb-137903.exe -startup
C:\PROGRA~1\NORTON~2\NORTON~3\GBTray.exe
C:\PROGRA~1\COMMON~1\SYMANT~1\NMAIN.EXE /nosysworks /dat:C:\Program Files\Norton Internet Security\NISPLUG.NSI
C:\PROGRA~1\yProxy\yProxy.exe
C:\Documents and Settings\Owner\Start Menu\Programs\Startup\desktop.ini
C:\Documents and Settings\Owner\Start Menu\Programs\Startup\desktop.ini

****************************************
Run entries:
UMonit C:\WINDOWS\System32\umonit.exe
TkBellExe C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe -osboot
RoxioEngineUtility "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
RoxioDragToDisc "C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
RoxioAudioCentral "C:\Program Files\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
Recguard C:\WINDOWS\SMINST\RECGUARD.EXE
QuickTime Task "C:\Program Files\QuickTime\qttask.exe" -atboottime
PS2 C:\WINDOWS\system32\ps2.exe
Omnipage C:\Program Files\ScanSoft\OmniPageSE\opware32.exe
NvCplDaemon RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
NeroCheck C:\WINDOWS\System32\NeroCheck.exe
KBD C:\HP\KBD\KBD.EXE
IntelliPoint "C:\Program Files\Microsoft IntelliPoint\point32.exe"
IgfxTray C:\WINDOWS\System32\igfxtray.exe
hpsysdrv c:\windows\system\hpsysdrv.exe
HPDJ Taskbar Utility C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb06.exe
HotKeysCmds C:\WINDOWS\System32\hkcmd.exe
GTBLVDR C:\WINDOWS\GTBLVDR.exe
ccApp "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
URLLSTCK.exe C:\Program Files\Norton Internet Security\UrlLstCk.exe
AcctMgr C:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe /startup
QD FastAndSafe C:\Program Files\Norton SystemWorks\Norton CleanSweep\QDCSFS.exe /startup
ctfmon.exe C:\WINDOWS\System32\ctfmon.exe
MSMSGS "C:\Program Files\Messenger\msmsgs.exe" /background
MoneyAgent "C:\Program Files\Microsoft Money\System\mnyexpr.exe"

****************************************
Browser helper objects:

{00000000-0000-0000-0000-000000000240} Clear Search C:\Program Files\ClearSearch\IE_ClrSch.DLL
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} not set C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
{9ECB9560-04F9-4bbc-943D-298DDF1699E1} Web assistant C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
{BDF3E430-B101-42AD-A544-FADC6B084872} NAV Helper C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll

****************************************
Toolbars:

{8E718888-423F-11D2-876E-00A0C9082467} C:\WINDOWS\System32\msdxm.ocx
{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
{B195B3B3-8A05-11D3-97A4-0004ACA6948E} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{B195B3B3-8A05-11D3-97A4-0004ACA6948E}\InprocServer32

System error message: The system cannot find the file specified.

{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINDOWS\System32\browseui.dll
{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINDOWS\System32\browseui.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINDOWS\system32\SHELL32.dll
{0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
{4D5C8C25-D075-11d0-B416-00C04FB90376} C:\WINDOWS\System32\shdocvw.dll
{30D02401-6A81-11D0-8274-00C04FD5AE38} C:\WINDOWS\System32\browseui.dll
{32683183-48a0-441b-a342-7c2a440a9478} C:\WINDOWS\System32\browseui.dll
{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} C:\WINDOWS\system32\SHELL32.dll
{EFA24E61-B078-11D0-89E4-00C04FC9E26E} C:\WINDOWS\System32\shdocvw.dll
{EFA24E62-B078-11D0-89E4-00C04FC9E26E} C:\WINDOWS\System32\shdocvw.dll
{EFA24E64-B078-11D0-89E4-00C04FC9E26E} C:\WINDOWS\System32\shdocvw.dll

****************************************
All processes:

0 [System Process]
4 System
620 smss.exe
744 csrss.exe
780 winlogon.exe
824 services.exe
836 lsass.exe
1008 svchost.exe
1128 svchost.exe
1316 svchost.exe
1328 svchost.exe
1492 CCSETMGR.EXE
1524 CCEVTMGR.EXE
1680 spoolsv.exe
648 explorer.exe
752 CCPROXY.EXE
1104 GBPoll.exe
1196 umonit.exe
1204 evntsvc.exe
1220 DrgToDsc.exe
1164 RxMon.exe
1300 NAVAPSVC.EXE
1348 NPROTECT.EXE
1800 opware32.exe
1868 KBD.EXE
1876 point32.exe
1904 hpsysdrv.exe
2000 hpztsb06.exe
2004 SAVSCAN.EXE
352 SNDSrvc.exe
356 CCAPP.EXE
608 ACCTMGR.EXE
1036 NOPDB.exe
1408 svchost.exe
1460 ctfmon.exe
1708 symlcsvc.exe
1368 MsPMSPSv.exe
2288 Klslink.exe
2520 GBTray.exe
2600 Playlist.exe
2904 yProxy.exe
3744 wmiprvse.exe
660 iexplore.exe
3264 msimn.exe
344 WINWORD.EXE
3600 ntvdm.exe
304 PE4.EXE
500 Photoshop.exe
3276 ~e5d141.tmp
3048 Adobelmsvc.exe
3624 ~e5d141.tmp
3940 OPSCAN.EXE
280 msmsgs.exe
628 spywarescanner.exe

****************************************
Result when scanning:

HoHBBLOCKar 177.778.978 {B195B3B3-8A05-11D3-97A4-0004ACA6948E}
IGetNet 692.118.540 %ProgramsDir%\ClearSearch\
My Search Bar 777.777.778 c:\Program Files\MyWay\
n-CASE 102.165.198 ncmyb.dll
Viewpoint Media Player 666.555.444
WildTangent 999.888.998 %Windir%\wt

***************************************




Related links

Bazooka - Free scan for spyware, adware, trojan horses, keyloggers, etc. Detects more than 500 potentially unwanted applications. Freeware!

The File Database - Search the file database for more information. Free!

PopUp Blocker Test - Find out if your pop-up killer can handle all pop-ups. Free!

Kephyr Labs - Find out what is going on at Kephyr. Try products in an early stage of development.



FreeFixer
Read more about FreeFixer, Kephyr's latest spyware removal tool.
Home & Products |  Legal |  Privacy |  Search

© Kephyr, 2003-2012. HtmlTidy, HTML 4.01, CSS andy@kephyr.com