Program requires missing Windows codec

July 19, 2010 at 07:38:43
Specs: Windows XP
Every time I try to open a youtube video or use Windows media Player, a window opens telling me: ''This program requires a missing Windows codec''. This pop up tells you to go to the Microsoft official website to get the required components. Theres a link underneath, sending you to another fishy website so I inmediatly closed it. Also, the window that pops up is a Vista style and i have XP. It can also give me problems with any animated adds on the internet. Ive tried MBAM and SpyBot SD, but neither of them found anything. Every time it appears i kill the process called plugin-container.exe
Several weeks before this started happening I had to eliminate Windows Security center rogue security program. I dont know if this is a comeback?? of some type.
I'm posting my HJT log:

Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 16:32:30, on 19/07/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Java\jre6\bin\jqs.exe
C:\Archivos de programa\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\Drivers\WTSRV.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Archivos de programa\CyberLink\PowerDVD\PDVDServ.exe
C:\Archivos de programa\Archivos comunes\Java\Java Update\jusched.exe
C:\Archivos de programa\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Archivos de programa\HP\HP Software Update\HPWuSchd2.exe
C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
C:\archivos de programa\archivos comunes\microsoft shared\help\1028\helphxdsui.exe
C:\WINDOWS\system32\WTClient.exe
C:\archivos de programa\archivos comunes\microsoft shared\vba\vba6\environmentvisual6.05.1020.exe
C:\archivos de programa\hp\digital imaging\skins\hp1\di\css\digitalseries.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\DNA\btdna.exe
C:\WINDOWS\system32\WISPTIS.EXE
C:\Archivos de programa\Archivos comunes\Nero\Lib\NMBgMonitor.exe
C:\Archivos de programa\Archivos comunes\Nero\Lib\NMIndexingService.exe
C:\Archivos de programa\Archivos comunes\Nero\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Archivos de programa\Mozilla Firefox\firefox.exe
C:\Archivos de programa\TrendMicro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.mywebsearch.com/index.j...
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
R3 - URLSearchHook: (no name) - {F08555B0-9CC3-11D2-AA8E-000000000567} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Archivos de programa\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Archivos de programa\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Archivos de programa\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Archivos de programa\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Archivos de programa\Archivos comunes\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Archivos de programa\Archivos comunes\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ATIPTA] C:\Archivos de programa\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Archivos de programa\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Archivos de programa\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [Freeresources] C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
O4 - HKLM\..\Run: [resourcesStudio] C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
O4 - HKLM\..\Run: [HXDSUIHelp] C:\archivos de programa\archivos comunes\microsoft shared\help\1028\helphxdsui.exe
O4 - HKLM\..\Run: [WTClient] WTClient.exe
O4 - HKLM\..\Run: [BasicEnvironment] c:\archivos de programa\archivos comunes\microsoft shared\vba\vba6\environmentvisual6.05.1020.exe
O4 - HKLM\..\Run: [seriesdigital] c:\archivos de programa\hp\digital imaging\skins\hp1\di\css\digitalseries.exe
O4 - HKLM\..\Run: [AutoRunGUIElectronic] c:\docume~1\lucia\config~1\temp\windows-update-kb237643-x86-enu.exe
O4 - HKLM\..\RunServices: [freeresources] C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
O4 - HKLM\..\RunServices: [HelpMicrosoft] c:\archivos de programa\archivos comunes\microsoft shared\help\1028\helphxdsui.exe
O4 - HKLM\..\RunServices: [VBE6Visual] c:\archivos de programa\archivos comunes\microsoft shared\vba\vba6\environmentvisual6.05.1020.exe
O4 - HKLM\..\RunServices: [allinoneimaging] c:\archivos de programa\hp\digital imaging\skins\hp1\di\css\digitalseries.exe
O4 - HKLM\..\RunServices: [resourcesTBOffer] C:\archivos de programa\archivos comunes\dvdvideosoft\tb\en-us\freeresources.exe
O4 - HKLM\..\RunServices: [MicrosoftHXDSUI] C:\archivos de programa\archivos comunes\microsoft shared\help\1028\helphxdsui.exe
O4 - HKLM\..\RunServices: [VBE6Basic] c:\archivos de programa\archivos comunes\microsoft shared\vba\vba6\environmentvisual6.05.1020.exe
O4 - HKLM\..\RunServices: [serieshpq00] c:\archivos de programa\hp\digital imaging\skins\hp1\di\css\digitalseries.exe
O4 - HKLM\..\RunServices: [AutoRunGUIAutoRunGUI] c:\docume~1\lucia\config~1\temp\windows-update-kb237643-x86-enu.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Archivos de programa\DNA\btdna.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Archivos de programa\Archivos comunes\Nero\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Servicio de red')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Archivos de programa\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O18 - Filter: video/x-flv - {08C72DD4-19AD-49f1-83DA-8542B4D302C5} - C:\DOCUME~1\lucia\CONFIG~1\Temp\18B.tmp
O22 - SharedTaskScheduler: Precargador Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demonio de caché de las categorías de componente - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Servicio del administrador de discos lógicos (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Registro de sucesos (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Servicio COM de grabación de CD de IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Archivos de programa\Java\jre6\bin\jqs.exe
O23 - Service: Escritorio remoto compartido de NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Archivos de programa\Archivos comunes\Nero\Lib\NMIndexingService.exe
O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Administrador de sesión de Ayuda de escritorio remoto (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Archivos de programa\CyberLink\Shared files\RichVideo.exe
O23 - Service: Tarjeta inteligente (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Registros y alertas de rendimiento (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: Instantáneas de volumen (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: WinTab Service (WinTabService) - Tablet Driver - C:\WINDOWS\System32\Drivers\WTSRV.EXE
O23 - Service: Adaptador de rendimiento de WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe

I appreciate any help you can give me.


See More: Program requires missing Windows codec

Report •


#1
July 20, 2010 at 04:34:31
That sometimes happen to me but it's not necessarily your computer that's infected, it's someone trying to infect it by misleading you into installing a codec, which is in fact not a codec at all.

Keep away from dodgy websites, make sure you have good antivirus with antispyware, & a good firewall. You will be okay.


Report •

#2
July 20, 2010 at 05:09:10
Thing is, it blocks my computer so thats why i have to kill the process. If i dont do it it wont let me continue. I'ts very annoying and i have a feeling it's extending to other stuff ( Im not paranoid xD )
Isnt there a way of getting rid of it? It would be very helpful

Report •

#3
July 20, 2010 at 15:01:56
Are you able to watch the videos on Youtube just fine?.. Or, can you not, and it's telling you to install said missing codec?.

Helpful tips before getting started: http://www.computing.net/howtos/sho...


Report •

Related Solutions

#4
September 23, 2010 at 12:15:08
i cannot log onto my space ....pop up says there is a missing windows codec...then if u download it leads to a site that wants about $10 to send it to u

Report •

#5
November 13, 2010 at 00:00:50
damn! I'm having the same problem. For example- with the Youtube Videos- when the video tries to load it brings up the Prog Compatibility Assistant.
"This program requires a missing Windows codec
Check for a solution on the Microsoft website. If a solution is available,there will be steps you can follow to fix the problem."
then Program, publisher, Location, blah blah blah

clicking on Download required components" i get sent to Totalcodec.com (not Windows haha)
if you hit cancel three times the process of Firefox (the same thing happens with Itunes now, if i try to play certain files) or ITunes goes sky-high (sometimes over 150 thousand K which is unusual for these programs) and freezes the program, I have to end the process through the Task Manager and re-open it.

This sucks because I want to finish watching Infowars: Police State Four- I have a good firewall and antispyware, but I need to know how to solve this issue! I'm hitting up several web forums similar to this one. Its good to know other people are having the same problem i am, but so far I've found no solution?

thanks
jj


Report •

#6
November 20, 2010 at 20:55:10
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:55:39 PM, on 11/20/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\McAfee Online Backup\MOBKbackup.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\program files\microsoft office\powerpoint viewer\millenniumgdiplus.exe
C:\program files\installshield installation information\{6811caa0-bf12-11d4-9ea1-0050bae317e1}\launchersetup.exe
C:\program files\microsoft office\powerpoint viewer\millenniumgdiplus.exe
C:\program files\windows plus\audio converter\res\systemacshellext3ui.exe
C:\program files\adobe\reader 9.0\reader\plug_ins\acroform\pmp\pdf417pmpqrcodepmp2.8.8118.0.exe
C:\program files\adobe\reader 9.0\reader\air\acrobatnppdf32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\CASIO\Photo Loader\Plauto.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Owner.GreenEyes\My Documents\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://my.netzero.net/s/search?acti...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.yahoo.com/search?fr=m...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?Lin...
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.gateway.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:6092
O1 - Hosts: 64.71.248.152 download.mcafee.com
O1 - Hosts: 64.208.176.57 download.mcafee.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20100618163612.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Reminder] %WINDIR%\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [ddoctorv2] "C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04h\BrStDvPt.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [UnicoWSintldate] c:\program files\microsoft office\powerpoint viewer\millenniumgdiplus.exe
O4 - HKLM\..\Run: [MicrosoftMicrosoft2.05.50727.210] c:\program files\common files\microsoft shared\help\1049\microsofthxdsui.exe
O4 - HKLM\..\Run: [InstallShieldLauncher] C:\program files\installshield installation information\{6811caa0-bf12-11d4-9ea1-0050bae317e1}\launchersetup.exe
O4 - HKLM\..\Run: [intldateMicrosoft6.0.3264.0] C:\program files\microsoft office\powerpoint viewer\millenniumgdiplus.exe
O4 - HKLM\..\Run: [HXDSUIHelp] c:\program files\common files\microsoft shared\help\1049\microsofthxdsui.exe
O4 - HKLM\..\Run: [skb] rundll32 "mdgwh.dll",,Run
O4 - HKLM\..\Run: [ycmjppka] C:\Documents and Settings\NetworkService\Local Settings\Application Data\sobddehma\giamechuqiw.exe
O4 - HKLM\..\Run: [moxckjcs] C:\Documents and Settings\NetworkService\Local Settings\Application Data\apncdoiwg\gxjjrbbuqiw.exe
O4 - HKLM\..\Run: [WindowsAudioConverterUI5.1.2600.2180] C:\program files\windows plus\audio converter\res\systemacshellext3ui.exe
O4 - HKLM\..\Run: [datamatrixpmppdf417pmp] c:\program files\adobe\reader 9.0\reader\plug_ins\acroform\pmp\pdf417pmpqrcodepmp2.8.8118.0.exe
O4 - HKLM\..\Run: [AcrobatAdobe] C:\program files\adobe\reader 9.0\reader\air\acrobatnppdf32.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\RunServices: [NPPDF32Acrobat] c:\program files\adobe\reader 9.0\reader\air\acrobatnppdf32.exe
O4 - HKLM\..\RunServices: [AudioConverterUIWindows5.1.2600.2180] c:\program files\windows plus\audio converter\res\systemacshellext3ui.exe
O4 - HKLM\..\RunServices: [datamatrixpmppdf417pmp] c:\program files\adobe\reader 9.0\reader\plug_ins\acroform\pmp\pdf417pmpqrcodepmp2.8.8118.0.exe
O4 - HKLM\..\RunServices: [SetupInstallShield] C:\program files\installshield installation information\{6811caa0-bf12-11d4-9ea1-0050bae317e1}\launchersetup.exe
O4 - HKLM\..\RunServices: [intldateWindows] C:\program files\microsoft office\powerpoint viewer\millenniumgdiplus.exe
O4 - HKLM\..\RunServices: [MicrosoftHXDSUI] c:\program files\common files\microsoft shared\help\1049\microsofthxdsui.exe
O4 - HKLM\..\RunServices: [WindowsMicrosoft] C:\program files\windows plus\audio converter\res\systemacshellext3ui.exe
O4 - HKLM\..\RunServices: [pdf417pmpdatamatrixpmp2.8.8118.0] c:\program files\adobe\reader 9.0\reader\plug_ins\acroform\pmp\pdf417pmpqrcodepmp2.8.8118.0.exe
O4 - HKLM\..\RunServices: [AcrobatNPPDF32] C:\program files\adobe\reader 9.0\reader\air\acrobatnppdf32.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cdloader] "C:\Documents and Settings\Owner.GreenEyes\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ho1wkeusf7sa] C:\Documents and Settings\Owner.GreenEyes\Application Data\Desktop Security 2010\securityhelper.exe
O4 - HKCU\..\Run: [SecurityCenter] C:\Documents and Settings\Owner.GreenEyes\Application Data\Desktop Security 2010\securitycenter.exe
O4 - HKCU\..\Run: [dso32] C:\DOCUME~1\OWNER~1.GRE\LOCALS~1\Temp\dsoqq.exe
O4 - HKCU\..\Run: [bhqmmecw] C:\Documents and Settings\Owner.GreenEyes\Local Settings\Application Data\iopeuhnxu\ogubnhstssd.exe
O4 - HKUS\S-1-5-18\..\Run: [ycmjppka] C:\Documents and Settings\NetworkService\Local Settings\Application Data\sobddehma\giamechuqiw.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [moxckjcs] C:\Documents and Settings\NetworkService\Local Settings\Application Data\apncdoiwg\gxjjrbbuqiw.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ycmjppka] C:\Documents and Settings\NetworkService\Local Settings\Application Data\sobddehma\giamechuqiw.exe (User 'Default user')
O4 - Global Startup: Photo Loader supervisory.lnk = C:\Program Files\CASIO\Photo Loader\Plauto.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://support.gateway.com/support/...
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Filter: video/x-flv - {08C72DD4-19AD-49f1-83DA-8542B4D302C5} - C:\DOCUME~1\OWNER~1.GRE\LOCALS~1\Temp\56.tmp
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: McAfee Online Backup (MOBKbackup) - McAfee, Inc. - C:\Program Files\McAfee Online Backup\MOBKbackup.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O24 - Desktop Component 0: (no name) - file:///C:/Program%20Files/CASIO/Photo%20Loader/Image%20Library/20020101/CIMG0108.JPG


Report •


Ask Question