| Line: |
Status: |
Comments: |
Actions: |
C:\WINDOWS\System32\smss.exe More info about file smss.exe |
Legitimate |
|
Change status |
C:\WINDOWS\system32\winlogon.exe More info about file winlogon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\services.exe More info about file services.exe |
Legitimate |
In most of cases it is legitimate system process, only sometimes can be used by malicious software |
Change status |
C:\WINDOWS\system32\lsass.exe More info about file lsass.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\Explorer.EXE More info about file explorer.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Internet Explorer\IEXPLORE.EXE More info about file iexplore.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe More info about file hijackthis.exe |
Legitimate |
Item found in 2-spyware.com library This is the main component of HijackThis security application, designed to perform system scans and... |
Change status |
| R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ |
Not necessary |
http://www.yahoo.com/ is your start page. If you do not like this fact, fix this item. |
Change status |
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 |
Not necessary |
http://go.microsoft.com/fwlink/?LinkId=69157 is your Default Page URL. If you do not like this fact, fix this item. |
Change status |
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 |
Not necessary |
http://go.microsoft.com/fwlink/?LinkId=54896 is your Default Search URL. If you do not like this fact, fix this item. |
Change status |
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 |
Not necessary |
http://go.microsoft.com/fwlink/?LinkId=54896 is your Search Page. If you do not like this fact, fix this item. |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/ |
Not necessary |
http://www.comcast.net/ is your start page. If you do not like this fact, fix this item. |
Change status |
| R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = |
Not necessary |
Fix this item because it points to nowhere |
Change status |
| R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0 |
Not necessary |
:0 is your Proxy Server. If you do not like this fact, fix this item. |
Change status |
| R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll |
Questionable |
If you do not recognize this entry name "Yahoo! Toolbar" and this path "C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll", then fix this item |
Change status |
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll More info about file acroiehelper.dll |
Legitimate |
Application program item according to inner database File related to Adobe Acrobat Reader program. |
Change status
|
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll More info about file yiesrvc.dll |
Legitimate |
Application program item according to inner database The file is related to Yahoo! software. |
Change status
|
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL More info about file dlashx_w.dll |
Legitimate |
System item according to inner database
|
Change status
|
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll More info about file jp2ssv.dll |
Legitimate |
System item according to inner database
|
Change status
|
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll More info about file jqs_plugin.dll |
Legitimate |
System item according to inner database
|
Change status
|
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll More info about file yt.dll |
Legitimate |
Application program item according to inner database Yahoo! Toolbar |
Change status
|
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE More info about file rthdcpl.exe |
Legitimate |
Application program item according to inner database The file is related to Realtek HD Audio software. |
Change status
|
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" More info about file atiptaxx.exe |
Legitimate |
System item according to inner database ATI Desktop Control Panel from ATI Technologies, Inc. Located in "C:\Program Files\ATI... |
Change status
|
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe More info about file syntplpr.exe |
Legitimate |
System item according to inner database syntplpr.exe is a legitimate process related to Synaptics touch pads. Located in "C:\Program... |
Change status
|
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe More info about file syntpenh.exe |
Legitimate |
System item according to inner database System tray access for Synaptics touch pads. Located in "C:\Program Files\Synaptics\SynTP\".<br... |
Change status
|
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe More info about file thotkey.exe |
Legitimate |
Application program item according to inner database The file is related to Toshiba laptop software. |
Change status
|
| O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe |
Questionable |
questionable item according to our database |
Change status
|
O4 - HKLM\..\Run: [Tvs] C:\Program Files\Toshiba\Tvs\TvsTray.exe More info about file tvstray.exe |
Legitimate |
Application program item according to inner database TvsTray.exe is related to Toshiba laptop software. |
Change status
|
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe More info about file ltmoh.exe |
Legitimate |
This entry runs the Modem On Hold utility, which handles incoming and outgoing calls while being connected to the Internet. |
Change status
|
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe More info about file agrsmmsg.exe |
Legitimate |
System item according to inner database Modem software from Agere.com. AGRSMMSG.exe is located in "C:\WINDOWS\" on Windows 95/98/ME/XP and... |
Change status
|
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE More info about file dlactrlw.exe |
Legitimate |
Application program item according to inner database The file is a part of Sonic Drive Letter Access (DLA) application. |
Change status
|
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe More info about file tfncky.exe |
Legitimate |
Application program item according to inner database tfncky.exe is related to Toshiba laptop software. If you have a Toshiba laptop, leave this process... |
Change status
|
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe More info about file tpsmain.exe |
Legitimate |
Application program item according to inner database The file is related to Toshiba laptop application which is responsible for power saving. |
Change status
|
| O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe More info about file smoothview.exe |
Legitimate |
Application program item according to inner database The file is related to Toshiba application. |
Change status
|
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run More info about file pinger.exe |
Legitimate |
System item according to inner database This file is related to Pinger - a system tool, which comes pre-installed on Toshiba computers. It... |
Change status
|
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER More info about file realplay.exe |
Legitimate |
Application program item according to inner database File realplay.exe, which starts a process with the same name, is the main executive component of... |
Change status
|
| O4 - HKLM\..\Run: [LyraUpdates] "C:\Program Files\RCA\Auto Updater\Auto Updater.exe" |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [Corel File Shell Monitor] C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [BarbieGirlsTray] C:\Program Files\Mattel\Barbie Girls\Mattel.BarbieGirls.Tray.exe |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime More info about file qttask.exe |
Legitimate |
Application program item according to inner database Provides system tray access to Apple's Quicktime Player. Located in "C:\Program Files\QuickTime\".... |
Change status
|
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" More info about file jusched.exe |
Legitimate |
Application program item according to inner database Checks if there are new versions of Java available. |
Change status
|
| O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" More info about file reader_sl.exe |
Legitimate |
Application program item according to inner database reader_sl.exe is Related to Adobe Acrobat Reader. |
Change status
|
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Application program item according to inner database When you run a Microsoft Office XP or Microsoft Office 2003 program, the file Ctfmon.exe (Ctfmon)... |
Change status
|
| O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKUS\S-1-5-18\..\Run: [iLike] C:\Program Files\iLike\1.2.11\ilikesidebar.exe /checkforupdate (User ''SYSTEM'') |
Unknown |
No exact entries found |
Change status
|
| O4 - HKUS\.DEFAULT\..\Run: [iLike] C:\Program Files\iLike\1.2.11\ilikesidebar.exe /checkforupdate (User ''Default user'') |
Unknown |
No exact entries found |
Change status
|
O4 - Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE More info about file onenotem.exe |
Legitimate |
Application program item according to inner database This is the note taking program that ships with Microsoft Office 2003. It is located in "C:\Program... |
Change status
|
| O4 - Startup: PowerReg Scheduler.exe |
Not necessary |
A registration scheduler. In most cases useless. Sometimes it is malicious and used by parasites. |
Change status
|
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe More info about file ramasst.exe |
Legitimate |
Application program item according to inner database This is a part of the drivers for DVD drives, manufactured by several companies. File ramasst.exe... |
Change status
|
| O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe |
Not necessary |
This item represents extra button in your IE toolbar with a name 'PokerStars' and points to file 'C:\Program Files\PokerStars\PokerStarsUpdate.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll |
Legitimate |
Legitimate extra button in your browser - related to Yahoo! Services. |
Change status
|
| O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Research' and points to file 'C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Real.com' and points to file 'C:\WINDOWS\system32\Shdocvw.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll |
Not necessary |
This item represents extra button in your IE toolbar without name and points to file 'C:\PROGRA~1\SPYBOT~1\SDHelper.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'Spybot' and points to file '{DFB852A3-47F8-48C4-A200-58CAB36FD2A2}'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe |
Not necessary |
This item represents extra button in your IE toolbar without name and points to file 'C:\WINDOWS\Network Diagnostic\xpnetdiag.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name '@xpsp3res.dll,-20001' and points to file 'C:\WINDOWS\Network Diagnostic\xpnetdiag.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe |
Legitimate |
Legitimate extra button in your browser - related to windows messenger. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe |
Legitimate |
Legitimate extra tools menu item - related to Windows Messenger. |
Change status
|
| O9 - Extra button: Odds Maker - b3cab7b9-eb43-46a2-8e15-02cc298dec71 - C:\Documents and Settings\CARLO WHEATON\Start Menu\Programs\Odds Maker\Odds Maker.lnk (HKCU) |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Odds Maker' and points to file 'C:\Documents and Settings\CARLO WHEATON\Start Menu\Programs\Odds Maker\Odds Maker.lnk (HKCU)'. If you do not want it to be there, fix this item. |
Change status
|
| O14 - IERESET.INF: START_PAGE_URL=http://www.toshibadirect.com/dpdstart |
Questionable |
This item changes your "default" Start page in IE. It will appear if you Restore default web settings. If you are an administrator and you do not recognize address "", fix this item. |
Change status
|
| O15 - Trusted Zone: http://mailcenter2.comcast.net |
Questionable |
Do you want URL pattern "http://mailcenter2.comcast.net" to be in your trusted zone of IE? If not, fix this item. |
Change status
|
| O15 - Trusted Zone: http://www.comcast.net |
Questionable |
Do you want URL pattern "http://www.comcast.net" to be in your trusted zone of IE? If not, fix this item. |
Change status
|
| O15 - Trusted Zone: http://home.myspace.com |
Questionable |
Do you want URL pattern "http://home.myspace.com" to be in your trusted zone of IE? If not, fix this item. |
Change status
|
| O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab |
Questionable |
Are you using an ActiveX object with a name 'Facebook Photo Uploader 5 Control' located in 'http://upload.facebook.com/controls/2008.10 .10_v5.5.8/FacebookPhotoUploader5.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {195B4BBF-E1E4-4020-9773-0A8C6F65EA35} (CPlayFirstCookingDasControl Object) - http://www.shockwave.com/content/cookingdash/sis/CookingDashWeb.1.0.0.9.cab |
Questionable |
Are you using an ActiveX object with a name 'CPlayFirstCookingDasControl Object' located in 'http://www.shockwave.com/content/cookingdash/sis/CookingDashWeb.1.0.0.9.cab'? If not, fix this item. |
Change status
|
O16 - DPF: {2DFF31F9-7893-4922-AF66-C9A1EB4EBB31} (Rhapsody Player Engine) - http://forms.real.com/real/player/download.html?f=windows /mrkt/rhapx/RhapsodyPlayerEngine_Inst_Win.cab |
Questionable |
Are you using an ActiveX object with a name 'Rhapsody Player Engine' located in 'http://forms.real.com/real/player/download.html?f=windows /mrkt/rhapx/RhapsodyPlayerEngine_Inst_Win.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll |
Questionable |
Are you using an ActiveX object with a name 'Installation Support' located in 'C:\Program Files\Yahoo!\Common\Yinsthelper.dll'? If not, fix this item. |
Change status
|
| O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab |
Questionable |
Are you using an ActiveX object with a name 'Snapfish Activia' located in 'http://photos.walmart.com/WalmartActivia.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab |
Questionable |
Are you using an ActiveX object with a name 'MySpace Uploader Control' located in 'http://lads.myspace.com/upload/MySpaceUploader1006.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://static.slide.com/uploader/SlideImageUploader.cab |
Questionable |
Are you using an ActiveX object with a name 'Slide Image Uploader Control' located in 'http://static.slide.com/uploader/SlideImageUploader.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - http://www.eset.eu/buxus/docs/OnlineScanner.cab |
Questionable |
Are you using an ActiveX object with no name located in 'http://www.eset.eu/buxus/docs/OnlineScanner.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/DivXBrowserPlugin.cab |
Questionable |
Are you using an ActiveX object with a name 'DivXBrowserPlugin Object' located in 'http://download.divx.com/webplayer/stage6/windows/DivXBrowserPlugin.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {67DC7B05-C9B9-4213-9C37-E9C8AF65F23A} (Alxp1 Control) - https://systemsontap.com/go/alxp1x.cab |
Questionable |
Are you using an ActiveX object with a name 'Alxp1 Control' located in 'https://systemsontap.com/go/alxp1x.cab'? If not, fix this item. |
Change status
|
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls /en/x86/client/muweb_site.cab?1152576711921 |
Legitimate |
Legitimate ActiveX item from site http://update.microsoft.com/ |
Change status
|
| O16 - DPF: {74EF5274-F439-2168-B543-14745B625C72} (CPlayFirstWeddingDasControl Object) - http://www.gamehouse.com/games/WeddingDash2.cab |
Questionable |
Are you using an ActiveX object with a name 'CPlayFirstWeddingDasControl Object' located in 'http://www.gamehouse.com/games/WeddingDash2.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {B516CA4E-A5BA-405C-AFCF-A97F08CC7429} (GoBit Games Player) - http://www.shockwave.com/content/burgershop/sis/GoBitGamesPlayer_v4.cab |
Questionable |
Are you using an ActiveX object with a name 'GoBit Games Player' located in 'http://www.shockwave.com/content/burgershop/sis/GoBitGamesPlayer_v4.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://games.myspace.com/Gameshell/GameHost/1.0/OberonGameHost.cab |
Questionable |
Are you using an ActiveX object with a name 'Oberon Flash Game Host' located in 'http://games.myspace.com/Gameshell/GameHost/1.0/OberonGameHost.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab |
Questionable |
Are you using an ActiveX object with a name 'Shockwave Flash Object' located in 'http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {D71F9A27-723E-4B8B-B428-B725E47CBA3E} (Imikimi_activex_plugin Control) - http://imikimi.com/download/imikimi_plugin_0.5.1.cab |
Questionable |
Are you using an ActiveX object with a name 'Imikimi_activex_plugin Control' located in 'http://imikimi.com/download/imikimi_plugin_0.5.1.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.com/Register/Branding/olr3313/OCX/flashax.cab |
Questionable |
Are you using an ActiveX object with a name 'FlashXControl Object' located in 'https://signin3.valueactive.com/Register/Branding/olr3313/OCX/flashax.cab'? If not, fix this item. |
Change status
|
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe More info about file acs.exe |
Legitimate |
Item found in 2-spyware.com database. The file is related to Atheros Wireless LAN... |
Change status
|
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe More info about file ati2evxx.exe |
Legitimate |
Item found in 2-spyware.com database. File ati2evxx.exe, which starts a process with the same name, is the standard component of video... |
Change status
|
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\system32\drivers\CDAC11BA.EXE More info about file cdac11ba.exe |
Legitimate |
Item found in 2-spyware.com database. This file is an internal component of SafeCast copy protection program, published by MacroVision... |
Change status
|
| O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe More info about file cfsvcs.exe |
Legitimate |
Item found in 2-spyware.com database. The file is related to Toshiba Notebooks software. This is not a crucial system component, so... |
Change status
|
| O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe More info about file dvdramsv.exe |
Legitimate |
Item found in 2-spyware.com database. dvdramsv.exe is related to DVD-RAM Utility... |
Change status
|
| O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe More info about file swupdtmr.exe |
Legitimate |
Item found in 2-spyware.com database. It is a software update manager for Toshiba... |
Change status
|
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe More info about file tappsrv.exe |
Legitimate |
Item found in 2-spyware.com database. The file is related to Toshiba computer... |
Change status
|