Results of analyzing your log


The HijackThis log analyzer beta 2 is a brand new service, so it is natural that it may have a few issues with entry descriptions and status. You can help us to improve the analyzer! If you have some information on unknown items, please share it with us and thousands of 2-Spyware.com visitors. We will carefully check your submission and approve it, if it is correct. You can also change status of entries that do not look identified correctly to you. Also feel free to post your description for existing items. We will review and add it to the analyzer's database. Thank you!

Files and registry entries considered to be safe
Legitimate items6834%
Not necessary items158%
 8342%

File and registry entries that can be both dangerous or safe
Questionable items9347%
Unknown items2312%
 11659%

Files and registry entries considered to be DANGEROUS. Fix immediately!
Dangerous items00%


Line: Status: Comments: Actions:
C:\WINDOWS\System32\smss.exe
More info about file smss.exe
Legitimate Change status
C:\WINDOWS\system32\winlogon.exe
More info about file winlogon.exe
Legitimate Process found in system process library Change status
C:\WINDOWS\system32\services.exe
More info about file services.exe
Legitimate In most of cases it is legitimate system process, only sometimes can be used by malicious software Change status
C:\WINDOWS\system32\lsass.exe
More info about file lsass.exe
Legitimate Process found in system process library Change status
C:\WINDOWS\system32\svchost.exe
More info about file svchost.exe
Legitimate Process found in system process library Change status
C:\WINDOWS\System32\svchost.exe
More info about file svchost.exe
Legitimate Process found in system process library Change status
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe Unknown No exact entries found Insert file into database
C:\WINDOWS\system32\spoolsv.exe
More info about file spoolsv.exe
Legitimate Process found in system process library Change status
C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe
More info about file schedul2.exe
Legitimate Item found in 2-spyware.com library
schedul2.exe is related to Acronis True Image Scheduler. It is not a harmful process, and shouldn't...
Change status
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe Unknown No exact entries found Insert file into database
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
More info about file aluschedulersvc.exe
Legitimate Item found in 2-spyware.com library
Related to Symantec anti-virus software.
Change status
C:\WINDOWS\Explorer.EXE
More info about file explorer.exe
Legitimate Process found in system process library Change status
C:\Program Files\Bonjour\mDNSResponder.exe
More info about file mdnsresponder.exe
Legitimate Item found in 2-spyware.com library
The file belongs to Bonjour for Windows application.
Change status
C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
More info about file btwdins.exe
Legitimate Item found in 2-spyware.com library
btwdins.exe is used when bluetooth device is installed.
Change status
C:\WINDOWS\system32\E_S00RP2.EXE
More info about file e_s00rp2.exe
Legitimate Item found in 2-spyware.com library
The file belongs to Epson printer software.
Change status
C:\WINDOWS\System32\svchost.exe
More info about file svchost.exe
Legitimate Process found in system process library Change status
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
More info about file lssrvc.exe
Legitimate Item found in 2-spyware.com library
The file is related to Light Scribe software.
Change status
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
More info about file logitechdesktopmessenger.exe
Legitimate Item found in 2-spyware.com library
The file belongs to Logitech Desktop Messenger application.
Change status
C:\WINDOWS\system32\nvsvc32.exe
More info about file nvsvc32.exe
Legitimate Item found in 2-spyware.com library
NVIDIA related software. nvsvc32.exe is an executable file that is responsible for launching...
Change status
D:\Nokia\Nokia PC Suite 6.41\Nokia PC Suite 6\PcSync2.exe Unknown No exact entries found Insert file into database
C:\Program Files\Skype\Phone\Skype.exe
More info about file skype.exe
Legitimate Item found in 2-spyware.com library
Skype.exe is an application process that belongs to the Skype instant messaging application.
Change status
C:\WINDOWS\kdx\KHost.exe
More info about file khost.exe
Legitimate Item found in 2-spyware.com library
This file is related to secure Kontiki software, which is used to share critical data to authorized...
Change status
C:\WINDOWS\system32\ctfmon.exe
More info about file ctfmon.exe
Legitimate Process found in system process library Change status
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
More info about file wcescomm.exe
Legitimate Item found in 2-spyware.com library
Microsoft's free Synchronization manager which runs in the background in the System Tray. Enables...
Change status
C:\Program Files\MSI\Core Center\CoreCenter.exe
More info about file corecenter.exe
Legitimate Item found in 2-spyware.com library
system board moniter that came with my MSI system board
Change status
C:\PROGRA~1\MICROS~2\rapimgr.exe
More info about file rapimgr.exe
Legitimate Item found in 2-spyware.com library
rapimgr.exe is related to ActiveSync software.
Change status
C:\WINDOWS\system32\svchost.exe
More info about file svchost.exe
Legitimate Process found in system process library Change status
D:\Psion\PsiWin2.3.3\Psconsv.exe Unknown No exact entries found Insert file into database
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe Unknown No exact entries found Insert file into database
C:\Program Files\WinZip\WZQKPICK.EXE
More info about file wzqkpick.exe
Legitimate Item found in 2-spyware.com library
System tray icon for WinZip software by Niko Mak Computing, Inc. WZQKPick.exe is located in...
Change status
C:\Program Files\Common Files\Skyscape\smARTupdate.exe Unknown No exact entries found Insert file into database
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE Unknown No exact entries found Insert file into database
d:\psion\PSIWIN~1.3\Elogerr.exe Unknown No exact entries found Insert file into database
C:\Program Files\Outlook Express\msimn.exe
More info about file msimn.exe
Legitimate Item found in 2-spyware.com library
This is the most significant component of Microsoft Outlook Express mail client. It is responsible...
Change status
C:\WINDOWS\system32\wuauclt.exe
More info about file wuauclt.exe
Legitimate Process found in system process library Change status
C:\Program Files\Logitech\iTouch\iTouch.exe
More info about file itouch.exe
Legitimate Item found in 2-spyware.com library
iTouch.exe is a a legitimate component of the Logitech iTouch keybord driver. Do not terminate it...
Change status
C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
More info about file symlcsvc.exe
Legitimate Item found in 2-spyware.com library
An essential component of security-related Symantec software such as Norton AntiVirus and Norton...
Change status
C:\Program Files\Internet Explorer\iexplore.exe
More info about file iexplore.exe
Legitimate Process found in system process library Change status
C:\Program Files\Norton Internet Security\Norton AntiVirus\NAVW32.exe
More info about file navw32.exe
Legitimate Item found in 2-spyware.com library
Executable navw32.exe is related to Norton Antivirus. It is used by the program to scan files and...
Change status
C:\WINDOWS\system32\taskmgr.exe
More info about file taskmgr.exe
Legitimate Windows Task Manager Change status
C:\Program Files\HiJack This (Anti Virus)\HijackThis.exe
More info about file hijackthis.exe
Legitimate Item found in 2-spyware.com library
This is the main component of HijackThis security application, designed to perform system scans and...
Change status
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.bbc.co.uk/ Not necessary http://news.bbc.co.uk/ is your start page.
If you do not like this fact, fix this item.
Change status
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 Not necessary http://go.microsoft.com/fwlink/?LinkId=69157 is your Default Page URL.
If you do not like this fact, fix this item.
Change status
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 Not necessary http://go.microsoft.com/fwlink/?LinkId=54896 is your Default Search URL.
If you do not like this fact, fix this item.
Change status
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 Not necessary http://go.microsoft.com/fwlink/?LinkId=54896 is your Search Page.
If you do not like this fact, fix this item.
Change status
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
More info about file acroiehelper.dll
Legitimate Application program item according to inner database
File related to Adobe Acrobat Reader program.
Change status
O2 - BHO: (no name) - {4a2fec27-ac79-4817-990b-cb1733e7deb8} - C:\WINDOWS\system32\geBsSiIa.dll Unknown No exact entries found Insert file into database
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll Unknown No exact entries found Insert file into database
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll Unknown No exact entries found Insert file into database
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
More info about file ssv.dll
Legitimate System item according to inner database
Related to Java Virtual Machine software, which is legitimate.
Change status
O2 - BHO: (no name) - {eec73ea5-1367-49d1-93f4-ca1d8c22e9f9} - C:\WINDOWS\system32\iiffEtuS.dll Unknown No exact entries found Insert file into database
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll Unknown No exact entries found Insert file into database
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
More info about file logitechdesktopmessenger.exe
Legitimate Application program item according to inner database
The file belongs to Logitech Desktop Messenger application.
Change status
O4 - HKCU\..\Run: [PcSync] D:\Nokia\Nokia PC Suite 6.41\Nokia PC Suite 6\PcSync2.exe /NoDialog Unknown No exact entries found Insert file into database
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
More info about file skype.exe
Legitimate Application program item according to inner database
Skype.exe is an application process that belongs to the Skype instant messaging application.
Change status
O4 - HKCU\..\Run: [kdx] C:\WINDOWS\kdx\KHost.exe -all
More info about file khost.exe
Legitimate Application program item according to inner database
This file is related to secure Kontiki software, which is used to share critical data to authorized...
Change status
O4 - HKCU\..\Run: [updateMgr] D:\Progs\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
More info about file adobeupdatemanager.exe
Legitimate Application program item according to inner database
Related to Adobe Acrobat Reader.
Change status
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
More info about file ctfmon.exe
Legitimate Application program item according to inner database
When you run a Microsoft Office XP or Microsoft Office 2003 program, the file Ctfmon.exe (Ctfmon)...
Change status
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
More info about file wcescomm.exe
Legitimate System item according to inner database
Microsoft's free Synchronization manager which runs in the background in the System Tray. Enables...
Change status
O4 - Startup: Skyscape smARTupdate.lnk = C:\Program Files\Common Files\Skyscape\smARTupdate.exe Unknown No exact entries found Insert file into database
O4 - Startup: Web Update Create Your Own Will.lnk = F:\Progs\Create Your Own Will\WiseUpdt.exe
More info about file wiseupdt.exe
Questionable Questionable item according to inner database
Checks for Grokster updates. Keep in mind that Grokster bundle many adwares and spywares.
Change status
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
More info about file reader_sl.exe
Legitimate A part of Adobe Acrobat Reader. Used to speed up the program's launch time. Change status
O4 - Global Startup: BTTray.lnk = ? Not necessary Fix this item because it points to nowhere Change status
O4 - Global Startup: CoreCenter.lnk = C:\Program Files\MSI\Core Center\CoreCenter.exe
More info about file corecenter.exe
Legitimate Application program item according to inner database
system board moniter that came with my MSI system board
Change status
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
More info about file ldmconf.exe
Legitimate Application program item according to inner database
Logitech Desktop Messenger. Checks for new products, upgrades and offers from Logitech. Located in...
Change status
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
More info about file osa.exe
Legitimate Application program item according to inner database
The Office Startup Assistant (Osa.exe or OSA) is a program that improves the performance of Office...
Change status
O4 - Global Startup: PsiWin 2.3 Connection Server.lnk = D:\Psion\PsiWin2.3.3\Psconsv.exe Unknown No exact entries found Insert file into database
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
More info about file wzqkpick.exe
Legitimate Application program item according to inner database
System tray icon for WinZip software by Niko Mak Computing, Inc. WZQKPick.exe is located in...
Change status
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll Not necessary This item represents extra button in your IE toolbar without name and points to file 'C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll'. If you do not want it to be there, fix this item. Change status
O9 - Extra ''Tools'' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll Not necessary This item represents extra menu item in your Tools menu in IE with a name 'Sun Java Console' and points to file 'C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll'. If you do not want it to be there, fix this item. Change status
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll Not necessary This item represents extra button in your IE toolbar with a name 'Create Mobile Favorite' and points to file 'C:\PROGRA~1\MICROS~2\INetRepl.dll'. If you do not want it to be there, fix this item. Change status
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll Not necessary This item represents extra button in your IE toolbar without name and points to file 'C:\PROGRA~1\MICROS~2\INetRepl.dll'. If you do not want it to be there, fix this item. Change status
O9 - Extra ''Tools'' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll Not necessary This item represents extra menu item in your Tools menu in IE with a name 'Create Mobile Favorite...' and points to file 'C:\PROGRA~1\MICROS~2\INetRepl.dll'. If you do not want it to be there, fix this item. Change status
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm Not necessary This item represents extra button in your IE toolbar with a name '@btrez.dll,-4015' and points to file 'C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm'. If you do not want it to be there, fix this item. Change status
O9 - Extra ''Tools'' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm Not necessary This item represents extra menu item in your Tools menu in IE with a name '@btrez.dll,-4017' and points to file 'C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm'. If you do not want it to be there, fix this item. Change status
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe Not necessary This item represents extra button in your IE toolbar without name and points to file 'C:\WINDOWS\Network Diagnostic\xpnetdiag.exe'. If you do not want it to be there, fix this item. Change status
O9 - Extra ''Tools'' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe Not necessary This item represents extra menu item in your Tools menu in IE with a name '@xpsp3res.dll,-20001' and points to file 'C:\WINDOWS\Network Diagnostic\xpnetdiag.exe'. If you do not want it to be there, fix this item. Change status
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe Legitimate Legitimate extra button in your browser - related to windows messenger. Change status
O9 - Extra ''Tools'' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe Legitimate Legitimate extra tools menu item - related to Windows Messenger. Change status
O15 - Trusted Zone: http://www.msi.com.tw Questionable Do you want URL pattern "http://www.msi.com.tw" to be in your trusted zone of IE? If not, fix this item. Change status
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/download/ipixx.cab Questionable Are you using an ActiveX object with a name 'iPIX ActiveX Control' located in 'http://www.ipix.com/download/ipixx.cab'? If not, fix this item. Change status
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts
/ei/ZwinkyInitialSetup1.0.0.15-3.cab
Questionable Are you using an ActiveX object with no name located in 'http://ak.exe.imgfarm.com/images/nocache/funwebproducts
/ei/ZwinkyInitialSetup1.0.0.15-3.cab'? If not, fix this item.
Change status
O16 - DPF: {2bc66f54-93a8-11d3-beb6-00105aa9b6ae} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab Legitimate Legitimate ActiveX item from site http://security.symantec.com/ Change status
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab Questionable Are you using an ActiveX object with a name 'Cult3D ActiveX Player' located in 'http://www.cult3d.com/download/cult.cab'? If not, fix this item. Change status
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab Questionable Are you using an ActiveX object with a name 'EPUImageControl Class' located in 'http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab'? If not, fix this item. Change status
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by21fd.bay21.hotmail.msn.com/resources/MsnPUpld.cab Questionable Are you using an ActiveX object with a name 'MSN Photo Upload Tool' located in 'http://by21fd.bay21.hotmail.msn.com/resources/MsnPUpld.cab'? If not, fix this item. Change status
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab Questionable Are you using an ActiveX object with a name 'Facebook Photo Uploader Control' located in 'http://upload.facebook.com/controls/FacebookPhotoUploader.cab'? If not, fix this item. Change status
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls
/en/x86/client/wuweb_site.cab?1173034596890
Legitimate Legitimate ActiveX item from site http://update.microsoft.com/ Change status
O16 - DPF: {644e432f-49d3-41a1-8dd5-e099162eeec5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab Legitimate Legitimate ActiveX item from site http://security.symantec.com/ Change status
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - https://webdl.symantec.com/activex/symdlmgr.cab Questionable Are you using an ActiveX object with a name 'Symantec Download Manager' located in 'https://webdl.symantec.com/activex/symdlmgr.cab'? If not, fix this item. Change status
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls
/en/x86/client/muweb_site.cab?1143162525029
Legitimate Legitimate ActiveX item from site http://update.microsoft.com/ Change status
O16 - DPF: {814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9} (DASWebDownload Class) - http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab Questionable Are you using an ActiveX object with a name 'DASWebDownload Class' located in 'http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab'? If not, fix this item. Change status
O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://tw.msi.com.tw/autobios/LOnline/install.cab Questionable Are you using an ActiveX object with a name 'WebSDev Control' located in 'http://tw.msi.com.tw/autobios/LOnline/install.cab'? If not, fix this item. Change status
O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} (Sinstaller Class) - http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab Questionable Are you using an ActiveX object with a name 'Sinstaller Class' located in 'http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab'? If not, fix this item. Change status
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab Questionable Are you using an ActiveX object with a name 'System Requirements Lab' located in 'http://www.systemrequirementslab.com/sysreqlab.cab'? If not, fix this item. Change status
O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab Questionable Are you using an ActiveX object with a name 'Facebook Photo Uploader 4' located in 'http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab'? If not, fix this item. Change status
O17 - HKLM\System\CCS\Services\Tcpip\..\{1D88CD2F-DBB5-4BAA-B276-5281738ECC0A}: NameServer = 4.2.2.2,4.2.2.3 Questionable Do you recognize these IP addresses '4.2.2.2,4.2.2.3' as your internet provider DNS servers? If not, fix this item. Change status
O18 - Protocol: bw+0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw+0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw+0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw+0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw-0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw-0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw-0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw-0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw00 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw00" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw00s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw00s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw10 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw10" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw10s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw10s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw20 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw20" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw20s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw20s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw30 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw30" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw30s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw30s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw40 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw40" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw40s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw40s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw50 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw50" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw50s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw50s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw60 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw60" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw60s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw60s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw70 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw70" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw70s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw70s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw80 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw80" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw80s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw80s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw90 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw90" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bw90s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bw90s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwa0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwa0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwa0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwa0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwb0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwb0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwb0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwb0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwc0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwc0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwc0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwc0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwd0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwd0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwd0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwd0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwe0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwe0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwe0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwe0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwf0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwf0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwf0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwf0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwfile-8876480" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwg0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwg0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwg0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwg0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwh0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwh0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwh0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwh0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwi0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwi0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwi0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwi0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwj0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwj0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwj0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwj0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwk0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwk0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwk0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwk0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwl0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwl0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwl0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwl0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwm0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwm0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwm0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwm0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwn0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwn0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwn0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwn0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwo0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwo0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwo0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwo0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwp0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwp0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwp0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwp0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwq0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwq0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwq0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwq0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwr0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwr0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwr0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwr0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bws0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bws0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bws0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bws0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwt0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwt0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwt0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwt0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwu0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwu0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwu0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwu0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwv0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwv0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwv0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwv0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bww0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bww0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bww0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bww0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwx0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwx0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwx0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwx0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwy0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwy0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwy0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwy0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwz0 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwz0" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: bwz0s - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "bwz0s" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O18 - Protocol: offline-8876480 - {7F19E7C7-376D-4969-8703-2548267F969A} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll Questionable It may be a trace of dangerous protocol hijacker or a legitimate item. Make some research about the name "offline-8876480" and file "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll". Change status
O20 - Winlogon Notify: iiffEtuS - C:\WINDOWS\SYSTEM32\iiffEtuS.dll Unknown No exact entries found Change status
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe
More info about file schedul2.exe
Legitimate Item found in 2-spyware.com database.
schedul2.exe is related to Acronis True Image Scheduler. It is not a harmful process, and shouldn't...
Change status
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe Unknown No exact entries found Insert file into database
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
More info about file aluschedulersvc.exe
Legitimate Item found in 2-spyware.com database.
Related to Symantec anti-virus...
Change status
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
More info about file mdnsresponder.exe
Legitimate Item found in 2-spyware.com database.
The file belongs to Bonjour for Windows...
Change status
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
More info about file btwdins.exe
Legitimate Item found in 2-spyware.com database.
btwdins.exe is used when bluetooth device is...
Change status
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe Legitimate Related to Norton/Symantec AntiVirus Change status
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe Legitimate Related to Norton/Symantec AntiVirus. Change status
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe Unknown No exact entries found Insert file into database
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe Unknown No exact entries found Insert file into database
O23 - Service: EPSON V3 Service2(02) (EPSON_PM_RPCV2_02) - SEIKO EPSON CORPORATION - C:\WINDOWS\system32\E_S00RP2.EXE
More info about file e_s00rp2.exe
Legitimate Item found in 2-spyware.com database.
The file belongs to Epson printer...
Change status
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe Legitimate Related to Macrovision Corporation. Change status
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
More info about file ipodservice.exe
Legitimate Item found in 2-spyware.com database.
This is a legitimate component of iTunes music program. It offers wide range of music playing and...
Change status
O23 - Service: KService - Kontiki Inc. - C:\Program Files\KService\KService.exe Legitimate Part of McAfee Spamkiller. http://computercops.biz/s6154-MSKSrvr_exe.html Change status
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
More info about file lssrvc.exe
Legitimate Item found in 2-spyware.com database.
The file is related to Light Scribe...
Change status
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE Unknown No exact entries found Insert file into database
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe Unknown No exact entries found Insert file into database
O23 - Service: NBService - Nero AG - C:\Program Files\Nero 7\Nero BackItUp\NBService.exe
More info about file nbservice.exe
Legitimate Item found in 2-spyware.com database.
...
Change status
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
More info about file nvsvc32.exe
Legitimate Item found in 2-spyware.com database.
NVIDIA related software. nvsvc32.exe is an executable file that is responsible for launching...
Change status
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe Legitimate Raxco PerfectDisk Change status
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
More info about file pdsched.exe
Legitimate Item found in 2-spyware.com database.
PDSched.exe is an application process related to the PerfectDisk application. It is responsible for...
Change status
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
More info about file symlcsvc.exe
Legitimate Item found in 2-spyware.com database.
An essential component of security-related Symantec software such as Norton AntiVirus and Norton...
Change status
O23 - Service: Symantec RemoteAssist (symantec remoteassist) - Symantec, Inc. - C:\Program Files\Common Files\Symantec Shared\Support Controls\ssrc.exe Unknown No exact entries found Insert file into database
O23 - Service: Symantec AppCore Service (SymAppCore) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe (file missing) Not necessary Fix this item because it points to a file that does not exist Change status


Compare spyware removers
Compare free products

HijackThis Log Analyzer Beta 2 HijackThis Log Analyzer Beta 2

Recommended software:
Malwarebytes Anti Malware
(91/100)
There are loads of malware removers on the net today and most of them are lightweight applications, which usually means they’re fast and don’t have many features. One such...
SpyHunter
(89/100)
SpyHunter is a quite simple, but yet highly effective spyware remover with an easy-to-use interface. This program is an excellent choice for users, who are not computer savvy, but...
Spyware Doctor
(87/100)
Spyware Doctor is a very powerful, but yet highly user-friendly spyware remover, made by PC Tools, reputable computer security experts. This product provides effective and easy-to-manage...
STOPzilla
(86/100)
STOPzilla is a powerful anti-spyware program that detects, blocks, and removes malicious software allowing users to surf the Web not worrying about spyware, Trojan horses, and viruses....
XoftSpySE Anti Spyware
(84/100)
XoftSpySE, an anti-spyware program made by ParetoLogic, Inc., is a simple, but effective on-demand scanner with the typical set of functions but very easy to install and use. Trial version...

Latest Spyware news:
Carl A Someone signature loved by spammers
State of Utah Reveals Why 780k People Records Were Stolen
The iPhone And iPad Are Targets For Hackers
Malicious tweets spread rogue AV infecting Android users
Be aware about malware spread via hotel Wi-Fi connections
SecureCloud Key Management Systems Released by Trend Micro
Microsoft and Adobe Releases Critical Security Updates. Update Now!
Internet Apocalypsis Upcoming - Prepare for DNSChanger Servers Closure
Hacks Through Compromised Websites Increases Rapidly, Says Symantec
Facebook judged for its privacy controls

Subscribe to news

Encyclopedia of parasites:
ErrorSmart 24/05/12
Windows Safety Maint... 24/05/12
Windows Multi Contro... 23/05/12
System Protection Tools 23/05/12
Redirect 22/05/12
Windows Secure Kit 2012 22/05/12
WeatherBug 21/05/12
Dugenpal 21/05/12
Komodola 21/05/12
SpyGraphica 20/05/12
Windows Private Shield 20/05/12
WinMaximizer 19/05/12
Windows Pro Safety R... 18/05/12
Stekct 18/05/12
Linfo 18/05/12
Wiarp 18/05/12
Farfli 18/05/12
Happili redirect 18/05/12
Vasport 17/05/12
SeekService.com 17/05/12

Library of files:
mrt.exe 23/05/12
taskeng.exe 23/05/12
mplayer.exe 14/04/12
ccApp.exe 20/03/12
guest.js 06/03/12
BCU.exe 20/02/12
pbupdate.exe 20/02/12
dumprep.exe 20/02/12
arp.exe 12/02/12
hero remote control.... 08/02/12

Archive of files
Archive of startup entries