| Line: |
Status: |
Comments: |
Actions: |
C:\WINDOWS\System32\smss.exe More info about file smss.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\winlogon.exe More info about file winlogon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\services.exe More info about file services.exe |
Legitimate |
In most of cases it is legitimate system process, only sometimes can be used by malicious software |
Change status |
C:\WINDOWS\system32\lsass.exe More info about file lsass.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\Ati2evxx.exe More info about file ati2evxx.exe |
Legitimate |
Item found in 2-spyware.com library File ati2evxx.exe, which starts a process with the same name, is the standard component of video... |
Change status |
C:\WINDOWS\system32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Windows Defender\MsMpEng.exe More info about file msmpeng.exe |
Legitimate |
Item found in 2-spyware.com library Related to Windows Defender program. |
Change status |
C:\WINDOWS\System32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe More info about file ccsetmgr.exe |
Legitimate |
Item found in 2-spyware.com library An essential component of security-related Symantec software such as Norton AntiVirus and Norton... |
Change status |
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe More info about file ccevtmgr.exe |
Legitimate |
Item found in 2-spyware.com library ccEvtMgr.exe is an event logging application and runs at startup. It monitors virus alerts, virus... |
Change status |
C:\WINDOWS\system32\spoolsv.exe More info about file spoolsv.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\rundll32.exe More info about file rundll32.exe |
Legitimate |
Process found in system process library |
Change status |
| C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\YWxleCBzdGVlbGU\command.exe More info about file command.exe |
Dangerous |
Item found in 2-spyware.com library command.exe is an executable file that is responsible for launching parasites, loading main... |
Change status |
C:\Program Files\Symantec AntiVirus\DefWatch.exe More info about file defwatch.exe |
Legitimate |
Item found in 2-spyware.com library This file is a standard component of Norton AntiVirus Corporate Edition application. Process... |
Change status |
| C:\WINDOWS\eHome\ehRecvr.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\eHome\ehSched.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\ewido anti-malware\ewidoctrl.exe More info about file ewidoctrl.exe |
Legitimate |
Item found in 2-spyware.com library This is a vital component of ewido security suite, a popular anti-spyware and anti-malware program. |
Change status |
| C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\system32\Ati2evxx.exe More info about file ati2evxx.exe |
Legitimate |
Item found in 2-spyware.com library File ati2evxx.exe, which starts a process with the same name, is the standard component of video... |
Change status |
C:\WINDOWS\Explorer.EXE More info about file explorer.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\dllhost.exe More info about file dllhost.exe |
Legitimate |
Process found in system process library |
Change status |
| C:\Program Files\Ideazon\Zboard Software\Driver\ZboardTray.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\ehome\ehtray.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Common Files\Symantec Shared\ccApp.exe More info about file ccapp.exe |
Legitimate |
Item found in 2-spyware.com library From Symantec: "ccApp.exe is the common hosting application that is used for both NAV and NIS.... |
Change status |
C:\PROGRA~1\SYMANT~1\VPTray.exe More info about file vptray.exe |
Legitimate |
Item found in 2-spyware.com library System tray icon for Norton Anti-Virus. Located in "C:\Program Files\NavNT\" |
Change status |
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe More info about file jusched.exe |
Legitimate |
Item found in 2-spyware.com library Checks if there are new versions of Java available. |
Change status |
C:\Program Files\DAEMON Tools\daemon.exe More info about file daemon.exe |
Legitimate |
Item found in 2-spyware.com library CD image manager software. This program is used to run CDs on a computer without the cd in the... |
Change status |
C:\Program Files\Windows Defender\MSASCui.exe More info about file msascui.exe |
Legitimate |
Item found in 2-spyware.com library
|
Change status |
C:\WINDOWS\SOUNDMAN.EXE More info about file soundman.exe |
Legitimate |
Item found in 2-spyware.com library Related to Realtek Avance Logic soundcards. SOUNDMAN.EXE provides system tray access to a varity of... |
Change status |
| C:\defender25.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\Program Files\Ideazon\Zboard Software\Driver\Zboard.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\system32\devldr32.exe More info about file devldr32.exe |
Legitimate |
Item found in 2-spyware.com library File devldr32.exe, started by an executable with the same name, is a standard component of the... |
Change status |
| C:\WINDOWS\system32\mptft.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\system32\ssn6tuu.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\System32\svchost.exe More info about file svchost.exe |
Legitimate |
Process found in system process library |
Change status |
C:\DOCUME~1\a\MYDOCU~1\PPPATC~1\netdde.exe More info about file netdde.exe |
Questionable |
Process found in system process library but with a different location |
Change status |
| C:\WINDOWS\eHome\ehmsas.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\DOCUME~1\a\MYDOCU~1\CROSOF~1.NET\mshta.exe More info about file mshta.exe |
Dangerous |
Item found in 2-spyware.com library mshta.exe is an executable file that is responsible for launching parasites, loading main... |
Change status |
| C:\WINDOWS\system32\nr1rnqm8.exe |
Unknown |
No exact entries found |
Insert file into database
|
| c:\windows\system32\pmdsrego.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\system32\ssec.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\system32\tfthot.exe |
Unknown |
No exact entries found |
Insert file into database
|
| C:\WINDOWS\system32\kwinnqez.exe |
Unknown |
No exact entries found |
Insert file into database
|
C:\Program Files\Internet Explorer\iexplore.exe More info about file iexplore.exe |
Legitimate |
Process found in system process library |
Change status |
C:\WINDOWS\system32\rundll32.exe More info about file rundll32.exe |
Legitimate |
Process found in system process library |
Change status |
C:\Program Files\Mozilla Firefox\firefox.exe More info about file firefox.exe |
Legitimate |
Item found in 2-spyware.com library File firefox.exe launches Mozilla Firefox web browser, implements user interface and controls all... |
Change status |
C:\Program Files\Symantec AntiVirus\Rtvscan.exe More info about file rtvscan.exe |
Legitimate |
Item found in 2-spyware.com library File rtvscan.exe is an essential component of Norton AntiVirus application, published by Symantec... |
Change status |
C:\Program Files\Symantec AntiVirus\vpc32.exe More info about file vpc32.exe |
Legitimate |
Item found in 2-spyware.com library This is a part of Norton Internet Security and Norton Antivirus applications. It runs critical... |
Change status |
C:\Documents and Settings\a\Desktop\ANTISPY\HijackThis.exe More info about file hijackthis.exe |
Legitimate |
Item found in 2-spyware.com library This is the main component of HijackThis security application, designed to perform system scans and... |
Change status |
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com |
Not necessary |
http://searchbar.findthewebsiteyouneed.com is your Default Search URL. If you do not like this fact, fix this item. |
Change status |
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com |
Not necessary |
http://searchbar.findthewebsiteyouneed.com is your Search Bar. If you do not like this fact, fix this item. |
Change status |
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com |
Not necessary |
http://searchbar.findthewebsiteyouneed.com is your Search Page. If you do not like this fact, fix this item. |
Change status |
| R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.findthewebsiteyouneed.com |
Not necessary |
http://www.findthewebsiteyouneed.com is your start page. If you do not like this fact, fix this item. |
Change status |
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com |
Not necessary |
http://searchbar.findthewebsiteyouneed.com is your Search Page. If you do not like this fact, fix this item. |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mrfindalot.com/search.asp?si=20065&k= |
Not necessary |
http://www.mrfindalot.com/search.asp?si=20065&k= is your search assistant. If you do not like this fact, fix this item. |
Change status |
| R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mrfindalot.com/search.asp?si=20065&k= |
Not necessary |
http://www.mrfindalot.com/search.asp?si=20065&k= is your customize search. If you do not like this fact, fix this item. |
Change status |
| R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) |
Not necessary |
Fix this item because it has no name and no file to point to |
Change status |
| R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll |
Dangerous |
One of the main components of Surf SideKick adware, which is responsible for pop-ups, web browser hijacks, redirection to unsolicited web sites and other harmful actions. |
Change status |
| O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_22.dll |
Dangerous |
spyware bho, related to NewDotNet |
Change status
|
| O2 - BHO: Yvakt Class - {5C3E6596-C64F-48E0-AC1E-B9C6EB3A5915} - C:\WINDOWS\system32\x3cqp0.dll |
Unknown |
No exact entries found |
Insert file into database
|
| O2 - BHO: (no name) - {E5E2A3E7-00FE-4D31-A030-A10799DDCA66} - (no file) |
Not necessary |
Fix this item, because it points to file that cannot be found |
Change status
|
| O3 - Toolbar: Alcohol Soft - Alcohol 120% Toolbar - {1CE4EE89-2D5C-4361-AF3B-D902AB545381} - C:\Program Files\Alcohol Soft\Alcohol 120% Toolbar\a120_tb.dll (file missing) |
Not necessary |
Fix this item, because it points to file that cannot be found |
Change status
|
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 More info about file imjpmig.exe |
Legitimate |
System item according to inner database Related to Windows East Asian language support (Japanese keyboard entry). Located in... |
Change status
|
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC More info about file tintsetp.exe |
Legitimate |
System item according to inner database Translation component from Microsoft. Located in "C:\WINDOWS\System32\IME\TINTLGNT\". |
Change status
|
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName More info about file tintsetp.exe |
Legitimate |
System item according to inner database Translation component from Microsoft. Located in "C:\WINDOWS\System32\IME\TINTLGNT\". |
Change status
|
| O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" More info about file ccapp.exe |
Legitimate |
System item according to inner database From Symantec: <i>"ccApp.exe is the common hosting application that is used for both NAV and NIS.... |
Change status
|
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe More info about file vptray.exe |
Legitimate |
Application program item according to inner database System tray icon for Norton Anti-Virus. Located in "C:\Program Files\NavNT\" |
Change status
|
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe More info about file jusched.exe |
Legitimate |
Application program item according to inner database Checks if there are new versions of Java available. |
Change status
|
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 More info about file daemon.exe |
Legitimate |
Application program item according to inner database CD image manager software. This program is used to run CDs on a computer without the cd in the... |
Change status
|
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide More info about file msascui.exe |
Legitimate |
System item according to inner database
|
Change status
|
| O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE More info about file soundman.exe |
Legitimate |
System item according to inner database Related to Realtek Avance Logic soundcards. SOUNDMAN.EXE provides system tray access to a varity of... |
Change status
|
| O4 - HKLM\..\Run: [keyboard] C:\\keyboard25.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [defender] C:\\defender25.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [newname] C:\\newname25.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [{07-70-0F-F4-ZN}] c:\windows\system32\pmdsrego.exe GID003 |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [BrowserUpdateSched] C:\WINDOWS\system32\kwinnqez.exe GID003 |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [ftexc] C:\WINDOWS\system32\mptft.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - HKLM\..\Run: [Hhl7RfpJ] "C:\WINDOWS\system32\ssn6tuu.exe" |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe More info about file ssk.exe |
Dangerous |
Spyware related item according to inner database ssk.exe is an executable file that starts a malicious process, launches certain parasite components... |
Change status
|
| O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe More info about file ctfmon.exe |
Legitimate |
Application program item according to inner database When you run a Microsoft Office XP or Microsoft Office 2003 program, the file Ctfmon.exe (Ctfmon)... |
Change status
|
| O4 - HKCU\..\Run: [Uniblue Registry Booster] C:\Program Files\Registry Booster\RegistryBooster.exe /S |
Unknown |
No exact entries found |
Insert file into database
|
O4 - HKCU\..\Run: [Stao] "C:\DOCUME~1\a\MYDOCU~1\PPPATC~1\netdde.exe" -vt yazr More info about file netdde.exe |
Legitimate |
System item according to inner database File netdde.exe starts a process, which is a part of Windows Network DDE (Dynamic Data Exchange)... |
Change status
|
O4 - HKCU\..\Run: [Ayjwy] C:\DOCUME~1\a\MYDOCU~1\CROSOF~1.NET\mshta.exe More info about file mshta.exe |
Dangerous |
Spyware related item according to inner database mshta.exe is an executable file that is responsible for launching parasites, loading main... |
Change status
|
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe More info about file ssk.exe |
Dangerous |
Spyware related item according to inner database ssk.exe is an executable file that starts a malicious process, launches certain parasite components... |
Change status
|
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe More info about file adobe gamma loader.exe |
Legitimate |
Application program item according to inner database From adobe: "The Adobe Gamma Control Panel is used to eliminate color casts in a monitor's display.... |
Change status
|
| O4 - Startup: Zeno.lnk = C:\WINDOWS\system32\kwinnqez.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O4 - Startup: Z_Start.lnk = ? |
Not necessary |
Fix this item because it points to nowhere |
Change status
|
| O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll |
Not necessary |
This item represents extra button in your IE toolbar without name and points to file 'C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'Sun Java Console' and points to file 'C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Yahoo! Messenger' and points to file 'C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'Yahoo! Messenger' and points to file 'C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe |
Not necessary |
This item represents extra button in your IE toolbar with a name 'Messenger' and points to file 'C:\Program Files\Messenger\msmsgs.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O9 - Extra ''Tools'' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe |
Not necessary |
This item represents extra menu item in your Tools menu in IE with a name 'Windows Messenger' and points to file 'C:\Program Files\Messenger\msmsgs.exe'. If you do not want it to be there, fix this item. |
Change status
|
| O10 - Hijacked Internet access by New.Net |
Questionable |
This item represents actions of so-called Layered Service Provider. It can be legitimate item or spyware. Be careful fixing it, because you can lose your internet connection. Find more information in Google or use a program called LSPFix. |
Change status
|
| O10 - Hijacked Internet access by New.Net |
Questionable |
This item represents actions of so-called Layered Service Provider. It can be legitimate item or spyware. Be careful fixing it, because you can lose your internet connection. Find more information in Google or use a program called LSPFix. |
Change status
|
| O10 - Hijacked Internet access by New.Net |
Questionable |
This item represents actions of so-called Layered Service Provider. It can be legitimate item or spyware. Be careful fixing it, because you can lose your internet connection. Find more information in Google or use a program called LSPFix. |
Change status
|
| O10 - Hijacked Internet access by New.Net |
Questionable |
This item represents actions of so-called Layered Service Provider. It can be legitimate item or spyware. Be careful fixing it, because you can lose your internet connection. Find more information in Google or use a program called LSPFix. |
Change status
|
| O10 - Hijacked Internet access by New.Net |
Questionable |
This item represents actions of so-called Layered Service Provider. It can be legitimate item or spyware. Be careful fixing it, because you can lose your internet connection. Find more information in Google or use a program called LSPFix. |
Change status
|
| O16 - DPF: {82774781-8F4E-11D1-AB1C-0000F8773BF0} (DLC Class) - http://transfers.one.microsoft.com/FTM/TransferSource/grTransferCtrl.cab |
Questionable |
Are you using an ActiveX object with a name 'DLC Class' located in 'http://transfers.one.microsoft.com/FTM/TransferSource/grTransferCtrl.cab'? If not, fix this item. |
Change status
|
| O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab |
Questionable |
Are you using an ActiveX object with a name 'ActiveScan Installer Class' located in 'http://acs.pandasoftware.com/activescan/as5free/asinst.cab'? If not, fix this item. |
Change status
|
| O17 - HKLM\System\CCS\Services\Tcpip\..\{4F154C38-14FE-4541-85FA-C8765AA20F0E}: NameServer = 223.255.255.255,223.255.255.254 |
Questionable |
Do you recognize these IP addresses '223.255.255.255,223.255.255.254' as your internet provider DNS servers? If not, fix this item. |
Change status
|
| O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) |
Not necessary |
It is a protocol hijacker that points to nowhere. Fix this item. |
Change status
|
| O18 - Filter: text/html - {624A3CDB-8C0A-4902-8480-191582C8498E} - C:\WINDOWS\system32\x3cqp0.dll |
Questionable |
It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "text/html" and file "C:\WINDOWS\system32\x3cqp0.dll". |
Change status
|
| O20 - AppInit_DLLs: repairs303169590.dll,taskmgr.dll |
Unknown |
No exact entries found |
Change status
|
| O20 - Winlogon Notify: Hints - C:\WINDOWS\system32\mpyuv.dll |
Unknown |
No exact entries found |
Change status
|
| O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll |
Legitimate |
Related to Norton AntiVirus |
Change status
|
| O20 - Winlogon Notify: Zboard - C:\WINDOWS\SYSTEM32\Winlognotif.dll |
Legitimate |
Related to Zboard |
Change status
|
| O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe |
Legitimate |
Required for PhotoshopCS |
Change status
|
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe More info about file ati2evxx.exe |
Legitimate |
Item found in 2-spyware.com database. File ati2evxx.exe, which starts a process with the same name, is the standard component of video... |
Change status
|
| O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe |
Legitimate |
Related to Autodesk, Inc. |
Change status
|
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe More info about file ccevtmgr.exe |
Legitimate |
Item found in 2-spyware.com database. ccEvtMgr.exe is an event logging application and runs at startup. It monitors virus alerts, virus... |
Change status
|
| O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe |
Legitimate |
Related to Norton/Symantec AntiVirus. |
Change status
|
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe More info about file ccsetmgr.exe |
Legitimate |
Item found in 2-spyware.com database. An essential component of security-related Symantec software such as Norton AntiVirus and Norton... |
Change status
|
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\YWxleCBzdGVlbGU\command.exe More info about file command.exe |
Dangerous |
Item found in 2-spyware.com database. command.exe is an executable file that is responsible for launching parasites, loading main... |
Change status
|
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe More info about file defwatch.exe |
Legitimate |
Item found in 2-spyware.com database. This file is a standard component of Norton AntiVirus Corporate Edition application. Process... |
Change status
|
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe More info about file ewidoctrl.exe |
Legitimate |
Item found in 2-spyware.com database. This is a vital component of ewido security suite, a popular anti-spyware and anti-malware... |
Change status
|
| O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe |
Legitimate |
Related to Macrovision Corporation. |
Change status
|
| O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe |
Unknown |
No exact entries found |
Insert file into database
|
| O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe |
Unknown |
No exact entries found |
Insert file into database
|
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe More info about file savroam.exe |
Legitimate |
Item found in 2-spyware.com database. This is a part of some Symantec applications. It is used to provide roaming user support and... |
Change status
|
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe More info about file sndsrvc.exe |
Legitimate |
Item found in 2-spyware.com database. This is a part of Norton Internet Security and Norton Personal Firewall applications. It runs... |
Change status
|
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe More info about file spbbcsvc.exe |
Legitimate |
Item found in 2-spyware.com database. Essential component of Symantec's Norton Internet Security... |
Change status
|
| O23 - Service: StarWind iSCSI Service (StarWindService) - Unknown owner - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe (file missing) |
Not necessary |
Fix this item because it points to a file that does not exist |
Change status
|
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe More info about file rtvscan.exe |
Legitimate |
Item found in 2-spyware.com database. File rtvscan.exe is an essential component of Norton AntiVirus application, published by Symantec... |
Change status
|