| Line: |
Status: |
Comments: |
Actions: |
| C:\Windows\system32\taskeng.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Windows\system32\Dwm.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Windows\Explorer.EXE More info about file explorer.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Windows Defender\MSASCui.exe More info about file msascui.exe |
Legitimate |
Item found in 2-spyware.com library The file is component of Microsoft Windows Defender application. |
Change status |
| C:\Windows\RtHDVCpl.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Dell DataSafe Online\DataSafeOnline.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe More info about file hpwuschd2.exe |
Legitimate |
Item found in 2-spyware.com library hpwuschd2.exe is a legitimate process related to Hewlett Packard software. |
Change status |
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe More info about file groovemonitor.exe |
Legitimate |
Item found in 2-spyware.com library groovemonitor.exe is the Microsoft GrooveMonitor Utility, and is a legitimate process that may be... |
Change status |
| C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe More info about file avgnt.exe |
Legitimate |
Item found in 2-spyware.com library avgnt.exe is a security process that is associated with the Avira Internet Security Suite, which... |
Change status |
| C:\Program Files\Logitech\Logitech Vid\Vid.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe More info about file hpqtra08.exe |
Legitimate |
Item found in 2-spyware.com library This is a legitimate component of Hewlett-Packard device drivers. It is also included in other HP... |
Change status |
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe More info about file logitechdesktopmessenger.exe |
Legitimate |
Item found in 2-spyware.com library The file belongs to Logitech Desktop Messenger application. |
Change status |
| C:\Program Files\MagicDisc\MagicDisc.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe More info about file hpqste08.exe |
Legitimate |
Item found in 2-spyware.com library hpqSTE08.exe is related to integral HP software and should be kept intact. |
Change status |
| C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Windows Media Player\WMPNSCFG.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Windows\system32\rundll32.exe More info about file rundll32.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe More info about file acrord32.exe |
Legitimate |
Item found in 2-spyware.com library File acrord32.exe is an executable of Acrobat Reader program, which is used to view PDF documents.... |
Change status |
C:\Program Files\Mozilla Firefox\firefox.exe More info about file firefox.exe |
Legitimate |
Item found in 2-spyware.com library File firefox.exe launches Mozilla Firefox web browser, implements user interface and controls all... |
Change status |
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe More info about file hijackthis.exe |
Legitimate |
Item found in 2-spyware.com library This is the main component of HijackThis security application, designed to perform system scans and... |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = |
Not necessary |
Fix this item because it points to nowhere |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = |
Not necessary |
Fix this item because it points to nowhere |
Change status |
| O1 - Hosts: ::1 localhost |
Questionable |
Do you want an URL address "localhost" to be redirected to "::1" when you type it? If not, then fix this |
|
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll More info about file acroiehelper.dll |
Legitimate |
Application program item according to inner database File related to Adobe Acrobat Reader program. |
Change status
|
| O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) |
Not necessary |
Fix this item, because it points to file that cannot be found |
Change status
|
| O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll |
Unknown |
No exact entries found |
Insert file into database
|
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll More info about file ssv.dll |
Legitimate |
System item according to inner database Related to Java Virtual Machine software, which is legitimate. |
Change status
|
| O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - (no file) |
Not necessary |
Fix this item, because it points to file that cannot be found |
Change status
|
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll More info about file bae.dll |
Legitimate |
System item according to inner database a c browser helper object |
Change status
|
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll More info about file ytsingleinstance.dll |
Legitimate |
System item according to inner database O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program... |
Change status
|
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide More info about file msascui.exe |
Legitimate |
Application program item according to inner database The file is component of Microsoft Windows Defender application. |
Change status
|
| O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [Dell DataSafe Online] "C:\Program Files\Dell DataSafe Online\DataSafeOnline.exe" /m |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" More info about file reader_sl.exe |
Legitimate |
Application program item according to inner database reader_sl.exe is Related to Adobe Acrobat Reader. |
Change status
|
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe More info about file hpwuschd2.exe |
Legitimate |
Application program item according to inner database hpwuschd2.exe is a legitimate process related to Hewlett Packard software. |
Change status
|
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" More info about file groovemonitor.exe |
Legitimate |
Application program item according to inner database groovemonitor.exe is the Microsoft GrooveMonitor Utility, and is a legitimate process that may be... |
Change status
|
| O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min More info about file avgnt.exe |
Legitimate |
Application program item according to inner database avgnt.exe is a security process that is associated with the Avira Internet Security Suite, which... |
Change status
|
| O4 - HKCU\..\Run: [Logitech Vid] "C:\Program Files\Logitech\Logitech Vid\vid.exe" -bootmode |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKCU\..\Run: [Ljefogoy] rundll32.exe "C:\Users\El Kevo\AppData\Local\otpglskr.dll",Startup |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKCU\..\Run: [Hxuheguwiv] rundll32.exe "C:\Users\El Kevo\AppData\Local\edopavidifexemex.dll",Startup |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - .DEFAULT User Startup: Dell Dock First Run.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (User ''Default user'') |
Unknown |
No exact entries found |
Change status
|
| O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - Global Startup: Digsby.lnk = C:\Program Files\Digsby\digsby.exe |
Unknown |
No exact entries found |
Insert file into database
|
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe More info about file hpqtra08.exe |
Legitimate |
Application program item according to inner database This is a legitimate component of Hewlett-Packard device drivers. It is also included in other HP... |
Change status
|
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe More info about file logitechdesktopmessenger.exe |
Legitimate |
Application program item according to inner database The file belongs to Logitech Desktop Messenger application. |
Change status
|
| O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll |
Not necessary |
This item represents extra button in your IE toolbar without name and points to file 'C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'Sun Java Console' and points to file 'C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Send to OneNote' and points to file 'C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'S&end to OneNote' and points to file 'C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Research' and points to file 'C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL'. If you do not want it to be there, fix this item. |
Change status
|
| O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll |
Questionable |
It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwfile-8876480" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll". |
Change status
|
| O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll |
Questionable |
It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "grooveLocalGWS" and file "C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll". |
Change status
|
| O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - (no file) |
Not necessary |
It is a protocol hijacker that points to nowhere. Fix this item. |
Change status
|
O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll More info about file |
Unknown |
No exact entries found |
Change status
|
| O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Windows\system32\AERTSrv.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe More info about file sched.exe |
Legitimate |
Item found in 2-spyware.com database. Scheduler for AntiVir Anti Virus... |
Change status
|
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe More info about file avguard.exe |
Legitimate |
Item found in 2-spyware.com database. avguard.exe stands for AntiVir real-time protection process. Do not terminate it.... |
Change status
|
| O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe More info about file fnplicensingservice.exe |
Legitimate |
Item found in 2-spyware.com database. fnplicensingservice.exe is the Activation Licensing Service for the Macrovision FLEXnet Publisher... |
Change status
|
| O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe More info about file aawservice.exe |
Legitimate |
Item found in 2-spyware.com database. ... |
Change status
|
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe More info about file lvprcsrv.exe |
Legitimate |
Item found in 2-spyware.com database. LVPrcSrv.exe is an application process that is related to Logitech QuickCam software. Do not... |
Change status
|
| O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: Uniblue DiskRescue - Uniblue - C:\Program Files\Uniblue\DiskRescue\UBDiskRescueSrv.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe |
Unknown |
No exact entries found |
Insert file into database
|