Another McAfee adventure.

  1. #1
    paulthomasno6 is offline Senior Member

    Another McAfee adventure.

    I've replaced McAfee with NOD32, but like some relatives, it just doesn't know when to leave. Every morning when I turn on the comp I get that annoying shield, and it grates twice as hard because it's wearing the red circle and slash. So it's out of operation and it still won't go.
    The first attempt to uninstall didn't go well. I tried reinstalling in full and tried again, but, no good. Having just downloaded some registry software I thought I might get rid of it that way; fortunately one of the tools I downloaded was ERUNT, and I was careful to backup before I did anything. So: into the registry, away with anything connected to McAfee or Network Associates.
    Later on I turn on the machine and get this message I've never seen before:
    Help! I need ResXX\McS.dll
    This didn't affect the internet connection, but I did lose my Search and Help on the Start panel. I went here:
    http://www.help2go.com/Tutorials/Pro...r_message.html
    and used the link they provided to McAfee's Manual Uninstall program. At last the McAfee icon was gone! Unfortunately, this morning, the machine started up with the BlackICE icon missing too. And I was still getting the ResXXetc message. AND, I was getting another message about "VsTskMgr.exe has had to close."
    By now, I was convinced that McAfee's corporate slogan ought to be "We create more problems than we solve." But as I say, I had backed up my registry with Erunt - tip of the hat to Jephree - and after a few minutes I finally figured out how to open the file created yesterday and restore. So I'm stuck with McAfee for the time being. Maybe the only way it can be removed 100% is to wipe the C disk entirely and reload everything.

    PS: As I discovered with a little more Googling, this is a problem that a lot of people have had with McAfee.

    http://www.help2go.com/public/posts1...asc&highlight=

    http://forum.webzila.com/index.php?s...t=0&#entry3754

    http://www.in-my-opinion.org/in-my-opinion-4392.html


  2. #2
    VopThis is offline Senior Member (Canada)
    Download and run the McAfee Removal tool (MCPR.EXE):
    http://ts.mcafeehelp.com/displaydoc....egoryId=107187


    If there are still issues or the above McAfee tool didn't completely do the job, try the following additional REMOVAL TOOL options found here after carefully reading what is available:

    http://www.myfixes.com/articles/mcrem
    LATEST MCREM VERSION: http://www.myfixes.com/articles/mcrem2
    Last edited by VopThis; 23-04-2007 at 03:52 AM. Reason: (MCPR.EXE) program name added

  3. #3
    paulthomasno6 is offline Senior Member
    Thanks Vincent, will do.

  4. #4
    paulthomasno6 is offline Senior Member
    MCPR.EXE was successful. The icon has disappeared.

    But I now get the following messages on startup.

    ERROR: Could not access the local server.

    Then a short time later:

    VsTskMgr.exe has encountered a problem and needs to close.

    Both disappear when I click on them and so far as I can tell the machine's performance is not suffering. Maybe a little slower to start up, but I haven't exactly stood over it with a stopwatch.

  5. #5
    VopThis is offline Senior Member (Canada)
    vstskmgr.exe is a process belonging to the McAfee Internet Security Suite and protects your computer from Internet-bound threats. This program is important for the stable and secure running of your computer and should not be terminated.
    Perhaps time to move on to the next (left-over) removal tool - MCREM2.

  6. #6
    paulthomasno6 is offline Senior Member
    Nope. Tried both options listed, the same messages are still coming back.

    Using the file search feature I found three files with the name Network Associates. VsTskMgr is in the Virus Scan folder in a file located in C:\Program Files. Is there any reason why I can't move all three files to the shredder and clear them off that way? The other two files are C:\Documents and Settings\All Users\Application Data and C:\Program Files\Common Files.

  7. #7
    VopThis is offline Senior Member (Canada)
    Is there any reason why I can't move all three files to the shredder and clear them off that way?
    There may also be remaining associated items in the HijackThis LOG that need to be addressed, as well - please post.

  8. #8
    paulthomasno6 is offline Senior Member
    Okay, Vincent, I will post the HJT tomorrow.
    Would you prefer me to open a new thread or just continue here?

  9. #9
    VopThis is offline Senior Member (Canada)
    Would you prefer me to open a new thread or just continue here?
    Continue in this topic thread - yes.

  10. #10
    paulthomasno6 is offline Senior Member
    Save 20% on AVG Internet Security 2012 Suite!
    Okay, here it is.

    Logfile of HijackThis v1.99.1
    Scan saved at 11:20:30 AM, on 25/04/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\PDesk\PDesk.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3S 2.EXE
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\WINDOWS\mHotkey.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\OptusNet DSL Internet\DSC.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
    C:\Program Files\SkypeIntegration\SkypeIntegration\SkypeClien t.exe
    C:\WINDOWS\system32\AlarmS4.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\ISS\BlackICE\blackice.exe
    C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
    C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
    C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\ISS\BlackICE\blackd.exe
    C:\WINDOWS\System32\mgabg.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\ISS\BlackICE\rapapp.exe
    C:\WINDOWS\System32\svchost.exe
    C:\PROGRA~1\DVDREG~1\DVDRegionFreeLite.exe
    C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://desktop.optusnet.com.au/dsl/favorites/homepage
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://desktop.optusnet.com.au/dsl/favorites/homepage
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by OptusNet
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [MPS] C:\ACER\PSM.EXE
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [AsioReg] "REGSVR32.EXE" /S CTASIO.DLL
    O4 - HKLM\..\Run: [SBDrvDet] "C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe" /r
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [Matrox Powerdesk] "C:\WINDOWS\System32\PDesk\PDesk.exe" /Autolaunch
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [EPSON Stylus C65 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3 S2.EXE" /P23 "EPSON Stylus C65 Series" /O6 "USB001" /M "Stylus C65"
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
    O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [Desktop Service Centre] "C:\Program Files\OptusNet DSL Internet\DSC.exe"
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [Picasa Media Detector] "C:\Program Files\Picasa2\PicasaMediaDetector.exe"
    O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [admtray.exe] "C:\Program Files\Acer\eManager\admtray.exe"
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [mmtask] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe"
    O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
    O4 - HKCU\..\Run: [SkypeClient] "C:\Program Files\PDT\VoIPVoiceIntegration\VoIPVoice Integration.exe"
    O4 - HKCU\..\Run: [EPSON Stylus C65 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3 S2.EXE" /P23 "EPSON Stylus C65 Series" /M "Stylus C65" /EF "HKCU"
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger .exe
    O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
    O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
    O4 - Global Startup: AlarmS4.lnk = C:\WINDOWS\system32\AlarmS4.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: BlackICE PC Protection.lnk = C:\Program Files\ISS\BlackICE\blackice.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://desktop.optusnet.com.au/dsl/favorites/homepage
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
    O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1147694644515
    O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
    O18 - Protocol: bw+0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: offline-8876480 - {833C6EEF-8320-4A84-99F8-653F4F136B40} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
    O23 - Service: Hardware Monitoring Program (ADMService) - OSA Technologies Inc - C:\Program Files\Acer\eManager\admServ.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: BlackICE - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\blackd.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe (file missing)
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: MGABGEXE - Matrox Graphics Inc. - C:\WINDOWS\System32\mgabg.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: RapApp - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\rapapp.exe

    Added: I noticed this entry: HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
    I was using Ares for a short time but have now removed it - but obviously, not all of it.

    And one more question. I have a Logitech wireless keyboard and mouse, why the HELL does that need so many files?
    Last edited by paulthomasno6; 25-04-2007 at 04:29 AM.

+ Reply to Thread
Page 1 of 2 1 2 LastLast