| Line: |
Status: |
Comments: |
Actions: |
C:\WINDOWS\System32\smss.exe More info about file smss.exe |
Legitimate |
|
Change status |
C:\WINDOWS\system32\winlogon.exe More info about file winlogon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\services.exe More info about file services.exe |
Legitimate |
In most of cases it is legitimate system process, only sometimes can be used by malicious software |
Change status |
C:\WINDOWS\system32\lsass.exe More info about file lsass.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\nvsvc32.exe More info about file nvsvc32.exe |
Legitimate |
Item found in 2-spyware.com library NVIDIA related software. nvsvc32.exe is an executable file that is responsible for launching... |
Change status |
C:\WINDOWS\system32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\System32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\spoolsv.exe More info about file spoolsv.exe |
Legitimate |
Process found in system process library |
Change status |
| C:\Program Files\Creative\Shared Files\CTAudSvc.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgchsvx.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgrsx.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgcsrvx.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\System32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\CTsvcCDA.exe More info about file ctsvccda.exe |
Legitimate |
Item found in 2-spyware.com library Creative CD-ROM Services tool, started by ctsvccda.exe executable, is a common component of some... |
Change status |
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe More info about file dkservice.exe |
Legitimate |
Item found in 2-spyware.com library File dkservice.exe is related to disk defragmenter, known as Diskeeper. This program uses the... |
Change status |
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe More info about file incdsrv.exe |
Legitimate |
Item found in 2-spyware.com library Ahead Nero InCD Service. Allows to format writeable CDs and DVDs and use them as regular hard... |
Change status |
| C:\Program Files\Java\jre6\bin\jqs.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\system32\HPZipm12.exe More info about file hpzipm12.exe |
Legitimate |
Item found in 2-spyware.com library This is a standard component of Hewlett-Packard device drivers. The presence of this file means,... |
Change status |
| C:\WINDOWS\system32\PnkBstrA.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\system32\PnkBstrB.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\system32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\Explorer.EXE More info about file explorer.exe |
Legitimate |
Process found in system process library |
Change status |
| C:\WINDOWS\system32\CTXFIHLP.EXE |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe More info about file superantispyware.exe |
Legitimate |
Item found in 2-spyware.com library SAS is one of the best as-programs |
Change status |
C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Logitech\SetPoint\SetPoint.exe More info about file setpoint.exe |
Legitimate |
Item found in 2-spyware.com library The file is associated with Logitech Mouse/Keyboard application. |
Change status |
| C:\WINDOWS\SYSTEM32\CTXFISPI.EXE |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe More info about file lcdclock.exe |
Legitimate |
Item found in 2-spyware.com library lcdclock.exe is the main process for the Logitech G-series LCD Clock application. It is a... |
Change status |
| C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE More info about file khalmnpr.exe |
Legitimate |
Item found in 2-spyware.com library khalmnpr.exe is associated with Logitech Mouse/Keyboard application. |
Change status |
| C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgwdsvc.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgam.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgnsx.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\AVG\AVG9\avgemc.exe More info about file avgemc.exe |
Legitimate |
Item found in 2-spyware.com library It is a part of the AVG Anti-Virus program made by Grisoft. It is also related to other Grisoft... |
Change status |
| C:\Program Files\AVG\AVG9\avgfws9.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgcsrvx.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgtray.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\AVG\AVG9\avgcsrvx.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Xfire\xfire.exe More info about file xfire.exe |
Legitimate |
Item found in 2-spyware.com library Xfire.exe stands for the main process of Xfire [ http://www.xfire.com ], a gaming utility and its... |
Change status |
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe More info about file hijackthis.exe |
Legitimate |
Item found in 2-spyware.com library This is the main component of HijackThis security application, designed to perform system scans and... |
Change status |
| R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.msn.com/ |
Not necessary |
http://my.msn.com/ is your start page. If you do not like this fact, fix this item. |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = |
Not necessary |
Fix this item because it points to nowhere |
Change status |
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll More info about file acroiehelpershim.dll |
Legitimate |
Application program item according to inner database adobe acrobat activex |
Change status
|
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll More info about file avgssie.dll |
Legitimate |
Application program item according to inner database Related to AVG Antivirus 8.0 |
Change status
|
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll More info about file windowslivelogin.dll |
Legitimate |
Application program item according to inner database The file belongs to Microsoft Windows Live application. |
Change status
|
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll More info about file jqs_plugin.dll |
Legitimate |
System item according to inner database
|
Change status
|
| O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE More info about file khalmnpr.exe |
Legitimate |
Application program item according to inner database khalmnpr.exe is associated with Logitech Mouse/Keyboard application. |
Change status
|
| O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit More info about file nvmctray.dll |
Legitimate |
System item according to inner database nVidia graphics cards related. NVMCTRAY.DLL is located in "C:\WINDOWS\SYSTEM\" on Windows 95/98/ME,... |
Change status
|
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup More info about file nvcpl.dll |
Legitimate |
System item according to inner database Related to nVidia cards. NvCpl.dll is located in "C:\WINDOWS\SYSTEM\" on Windows 95/98/ME,... |
Change status
|
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe More info about file superantispyware.exe |
Legitimate |
System item according to inner database SAS is one of the best as-programs |
Change status
|
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Application program item according to inner database When you run a Microsoft Office XP or Microsoft Office 2003 program, the file Ctfmon.exe (Ctfmon)... |
Change status
|
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe More info about file setpoint.exe |
Legitimate |
Application program item according to inner database The file is associated with Logitech Mouse/Keyboard application. |
Change status
|
| O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab |
Questionable |
Are you using an ActiveX object with a name 'Facebook Photo Uploader 5 Control' located in 'http://upload.facebook.com/controls/2008.10 .10_v5.5.8/FacebookPhotoUploader5.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab |
Questionable |
Are you using an ActiveX object with a name 'Musicnotes Viewer' located in 'http://www.musicnotes.com/download/mnviewer.cab'? If not, fix this item. |
Change status
|
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload /srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab |
Questionable |
Are you using an ActiveX object with a name 'System Requirements Lab' located in 'http://www.nvidia.com/content/DriverDownload /srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.9.113.cab |
Questionable |
Are you using an ActiveX object with no name located in 'http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.9.113.cab'? If not, fix this item. |
Change status
|
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls /en/x86/client/wuweb_site.cab?1260583283546 |
Questionable |
Are you using an ActiveX object with a name 'WUWebControl Class' located in 'http://www.update.microsoft.com/microsoftupdate/v6/V5Controls /en/x86/client/wuweb_site.cab?1260583283546'? If not, fix this item. |
Change status
|
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls /en/x86/client/muweb_site.cab?1259724085707 |
Questionable |
Are you using an ActiveX object with a name 'MUWebControl Class' located in 'http://www.update.microsoft.com/microsoftupdate/v6/V5Controls /en/x86/client/muweb_site.cab?1259724085707'? If not, fix this item. |
Change status
|
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07 .28_v5.5.8.1/FacebookPhotoUploader55.cab |
Questionable |
Are you using an ActiveX object with a name 'Facebook Photo Uploader 5 Control' located in 'http://upload.facebook.com/controls/2009.07 .28_v5.5.8.1/FacebookPhotoUploader55.cab'? If not, fix this item. |
Change status
|
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD7/JSCDL/jdk/6u12-b04/jinstall-6u12-windows-i586-jc.cab?e=1235732820755&h=18778792fdd5f02a3a47d594a2a73fe5 /&filename=jinstall-6u12-windows-i586-jc.cab |
Questionable |
Are you using an ActiveX object with a name 'Java Runtime Environment 1.6.0' located in 'http://dl8-cdn-01.sun.com/s/ESD7/JSCDL/jdk/6u12-b04/jinstall-6u12-windows-i586-jc.cab?e=1235732820755&h=18778792fdd5f02a3a47d594a2a73fe5 /&filename=jinstall-6u12-windows-i586-jc.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {A5A76EA0-7B92-4707-9DBF-6F6FE56A6800} (Pure Networks Security Scan) - http://scan.networkmagic.com/nmscan/download/WebDiag.4.5.8056.1-ship-WD.V1.cab |
Questionable |
Are you using an ActiveX object with a name 'Pure Networks Security Scan' located in 'http://scan.networkmagic.com/nmscan/download /WebDiag.4.5.8056.1-ship-WD.V1.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} (SABScanProcesses Class) - http://www.superadblocker.com/activex/sabspx.cab |
Questionable |
Are you using an ActiveX object with a name 'SABScanProcesses Class' located in 'http://www.superadblocker.com/activex/sabspx.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab |
Questionable |
Are you using an ActiveX object with a name 'get_atlcom Class' located in 'http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} (PCPitstop Exam) - http://utilities.pcpitstop.com/Optimize3/pcpitstop2.dll |
Questionable |
Are you using an ActiveX object with a name 'PCPitstop Exam' located in 'http://utilities.pcpitstop.com/Optimize3/pcpitstop2.dll'? If not, fix this item. |
Change status
|
| O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll |
Questionable |
It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "linkscanner" and file "C:\Program Files\AVG\AVG9\avgpp.dll". |
Change status
|
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL More info about file |
Unknown |
No exact entries found |
Change status
|
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll More info about file |
Unknown |
No exact entries found |
Change status
|
O23 - Service: AVG E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe More info about file avgemc.exe |
Legitimate |
Item found in 2-spyware.com database. It is a part of the AVG Anti-Virus program made by Grisoft. It is also related to other Grisoft... |
Change status
|
| O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: AVG Firewall (avgfws9) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgfws9.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: Creative Dolby Digital Live Pack Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\DDLLicensing.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe More info about file ctsvccda.exe |
Legitimate |
Item found in 2-spyware.com database. Creative CD-ROM Services tool, started by ctsvccda.exe executable, is a common component of some... |
Change status
|
| O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe More info about file dkservice.exe |
Legitimate |
Item found in 2-spyware.com database. File dkservice.exe is related to disk defragmenter, known as Diskeeper. This program uses the... |
Change status
|
| O23 - Service: Findbasic Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\Findbasic\findbasic121.exe (file missing) |
Not necessary |
Fix this item because it points to a file that does not exist |
Change status
|
| O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe |
Legitimate |
Related to Macrovision Corporation. |
Change status
|
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe More info about file incdsrv.exe |
Legitimate |
Item found in 2-spyware.com database. Ahead Nero InCD Service. Allows to format writeable CDs and DVDs and use them as regular hard... |
Change status
|
| O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe More info about file lbtserv.exe |
Legitimate |
Item found in 2-spyware.com database. lbtserv.exe is an application process that is responsible for setting up and maintaining Bluetooth... |
Change status
|
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe More info about file nbservice.exe |
Legitimate |
Item found in 2-spyware.com database. ... |
Change status
|
| O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe More info about file nvsvc32.exe |
Legitimate |
Item found in 2-spyware.com database. NVIDIA related software. nvsvc32.exe is an executable file that is responsible for launching... |
Change status
|
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe More info about file hpzipm12.exe |
Legitimate |
Item found in 2-spyware.com database. This is a standard component of Hewlett-Packard device drivers. The presence of this file means,... |
Change status
|
| O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe |
Unknown |
No exact entries found |
Insert file into database
|