Computing.Net > Forums > Security and Virus > My first spybot log

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

My first spybot log

Reply to Message Icon

Name: lexi30
Date: November 29, 2003 at 19:01:04 Pacific
OS: Windows XP Home
CPU/Ram: Presario S4300NX
Comment:

Running processes:
1: \SystemRoot\System32\smss.exe
2: \??\C:\WINDOWS\system32\winlogon.exe
3: C:\WINDOWS\system32\services.exe
4: C:\WINDOWS\system32\lsass.exe
5: C:\WINDOWS\system32\svchost.exe
6: C:\WINDOWS\System32\svchost.exe
7: C:\WINDOWS\system32\spoolsv.exe
8: C:\Program Files\Softex\OmniPass\Omniserv.exe
9: C:\Program Files\Softex\OmniPass\OPXPApp.exe
10: C:\WINDOWS\Explorer.exe
11: C:\windows\system\hpsysdrv.exe
12: C:\WINDOWS\System32\hkcmd.exe
13: C:\HP\KBD\KBD.exe
14: C:\WINDOWS\ALCXMNTR.exe
15: C:\Program Files\Common Files\CMEII\CMESys.exe
16: C:\Program Files\Messenger\msmsgs.exe
17: C:\Program Files\Compaq Connections\1940576\Program\BackWeb-1940576.exe
18: C:\Program Files\Date Manager\DateManager.exe
19: C:\Program Files\Common Files\GMT\GMT.exe
20: C:\Program Files\PrecisionTime\PrecisionTime.exe
21: C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe
22: C:\Program Files\Internet Explorer\iexplore.exe
23: C:\Program Files\Internet Explorer\iexplore.exe
24: C:\Program Files\Internet Explorer\iexplore.exe
25: C:\WINDOWS\wt\updater\wcmdmgr.exe
26: C:\Program Files\SpyKiller\spykiller.exe

Identified Process:

1: WinGuardian - C:\Program Files\Common Files\CMEII\CMESys.exe - Spy - Webroot Software Inc.
2: Gator - C:\Program Files\Common Files\GMT\GMT.exe - SpyWare - Gator

Memory scan result:
Total modules found:26
Suspicious modules found: 2

Started registry scan
====================
WinGuardian HKEY_LOCAL_MACHINE\Software\Gator.com\AppInfo\CME--C:\Program Files\Common Files\CMEII\cmesys.exe;C:\Program Files\Common Files\CMEII\gtools.dll--lockfiles
Spy - Webroot Software Inc.
Gator HKEY_LOCAL_MACHINE\Software\Gator.com\AppInfo\GMT--C:\Program Files\Common Files\GMT\GMT.exe--restart
Adware - Gator
Gator HKEY_LOCAL_MACHINE\Software\Gator.com\AppInfo\GMT--C:\Program Files\Common Files\GMT\GMT.exe;C:\Program Files\Common Files\GMT\GatorRes.dll;C:\Program Files\Common Files\GMT\GatorOemRes*.dll;C:\Program Files\Common Files\GMT\egIEEngine.dll;C:\Program Files\Common Files\GMT\EGIEProcess.dll;C:\Program Files\Common Files\GMT\CTBRTE2.dll;C:\Program Files\Common Files\GMT\EGNSEngine.dll--lockfiles
Adware - Gator
Gator HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn--GMT.exe--AppExe
Adware - Gator
Gator HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn--GatorRes.dll--ResDll
Adware - Gator
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1059198622.0
Adware - doubleclick
Advertising.com HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--advertising.com200--1059243558.0
SpyWare - Advertising.com
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1059277471.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1059490638.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1059605739.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1060225046.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1060456034.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1068912415.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1069459809.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1069805996.0
Adware - doubleclick
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\dyn\GCH\GBL--doubleclick.net200--1069990370.0
Adware - doubleclick
Gator HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\stat\GMT\Settings--C:\Program Files\Common Files\GMT\GMT.exe--GMTExe
Adware - Gator
doubleclick HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\stat\GMT\Sites--11/27/2003 22:32:50--doubleclick.net
Adware - doubleclick
Advertising.com HKEY_LOCAL_MACHINE\Software\Gator.com\Gator\stat\GMT\Sites--07/26/2003 02:24:48--advertising.com
SpyWare - Advertising.com
WebPI HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\54EE7B3C6A3169B4B9D15B2BA5E2F9B6--c:\Program Files\Microsoft Works\msworks.exe--8D60D467ED8DE1141A8C9D9E83F0A848
Spy - Softec Software
WebPI HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache--wtlaunch Module--C:\Program Files\WildTangent\Apps\GameChannel\Notifications\hpwelcome\gamelinks.exe
Spy - Softec Software
WebPI HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache--Microsoft® Works Task Launcher--C:\Program Files\Microsoft Works\msworks.exe
Spy - Softec Software
Gator HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache--Gator Client Application--C:\Program Files\Common Files\GMT\GMT.exe
Adware - Gator
WebPI HKEY_CURRENT_USER\Software\Microsoft\Works Suite--2003--C:\Program Files\Microsoft Works\msworks.exe
Spy - Softec Software
Registry scan result:
Suspicious keys found: 24

Started folder scan
====================
BDE C:\WINDOWS\system32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}
Adware - Brilliant Digital

BDE C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}
Adware - Brilliant Digital


Folder scan result:
Folder processed: 0
Suspicious folders found: 2

Started file scan
====================
doubleclick C:\Documents and Settings\Owner\Cookies\owner@doubleclick[2].txt
Adware - doubleclick

Gator C:\Program Files\Common Files\CMEII\GatorSupportInfo.txt
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\CMEDiagnostics.log
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\CMEIIAPI.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GAppMgr.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GController.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GDwldEng.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GIoclClient.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GIocl.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GObjs.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GStore.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\GStoreServer.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\CMEII\Gtools.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\egIEEngine.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\EGIEProcess.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\EGNSEngine.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\GatorRes.dll
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\Gator.log
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\mepcme.dat
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\meprca.dat
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\mepgh.dat
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\GatorStubSetup.exe
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\GUninstaller.exe
SpyWare - Gator

Gator C:\Program Files\Common Files\GMT\EGGCEngine.dll
SpyWare - Gator

Gator C:\WINDOWS\GatorPdpSetup.log
SpyWare - Gator

EmployeeWatcher C:\WINDOWS\SMINST\START.exe
Spy - UserFriendlyProducts, Inc.

EmployeeWatcher D:\MiniNT\system32\start.exe
Spy - UserFriendlyProducts, Inc.

EmployeeWatcher D:\I386\SYSTEM32\start.exe
Spy - UserFriendlyProducts, Inc.


File scan result:
Suspicious files found: 28

Scanning finished
====================
Suspicious modules found: 2
Suspicious keys found: 24
Suspicious folders found: 2
Suspicious files found: 28
====================

Components ignored:0
Total components found:56

Any advise on how to correct this problem?? Please be detailed, I am a bit slow when it comes to computers.

Thank you.



Sponsored Link
Ads by Google

Response Number 1
Name: smithdk
Date: November 29, 2003 at 19:32:07 Pacific
Reply:

http://www.computing.net/security/wwwboard/forum/6433.html


0

Response Number 2
Name: dw226
Date: November 29, 2003 at 19:42:32 Pacific
Reply:

I feel for you, truly. Gator is one of the worst spyware components to get, I know because I endured it. Fortunately it isn't TOO bad to get rid of.

Let SpyBot and Ad-Aware get rid of what they can, then, you'll probably notice a file associated with Gator that when you try to delete it, it renames itself and sits there thumbing its nose at you.

In that situation, a safe mode deletion will do it usually. I also believe the Gator Corporation, which by the way, is no longer going by the name Gator (Nice attempt by them I think, lol), has instructions on their website for removing their product, which I don't put too much faith in really.


0

Response Number 3
Name: JohnO
Date: November 30, 2003 at 12:13:05 Pacific
Reply:

Delete everything SpyBot and AdAware find, then d/l and install either RegCrawler or RegSeeker (both have 30 day free trial) and type Gator in the search box of the program. This will bring up all registry references to Gator, and you can delete them. This is the easiest way I've found to get rid of it.


0

Sponsored Link
Ads by Google
Reply to Message Icon

Related Posts

See More







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home


Sponsored links

Ads by Google


Results for: My first spybot log

My first Hijackthis log www.computing.net/answers/security/my-first-hijackthis-log/7665.html

trying to recover my system www.computing.net/answers/security/trying-to-recover-my-system/8156.html

My first virus...HELP! www.computing.net/answers/security/my-first-virushelp/4013.html