winlogon exe

Discussion in 'Computer Support' started by sureshbabbu@yahoo.com, Sep 22, 2007.

  1. Guest

    Hi

    find below my hijack report....winlogon.xe eating up my processer
    speed.

    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 11:18:50 PM, on 9/21/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\WINDOWS\System32\GEARSec.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
    C:\WINDOWS\system32\inetsrv\inetinfo.exe
    C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
    c:\program files\common files\mcafee\mna\mcnasvc.exe
    C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
    c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\McAfee\MPF\MPFSrv.exe
    C:\PROGRA~1\McAfee.com\Agent\mcagent.exe
    C:\Program Files\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe
    C:\Program Files\Microsoft SQL Server\MSSQL.3\OLAP\bin\msmdsrv.exe
    C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    C:\Program Files\PC Tools AntiVirus\PCTAVSvc.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\Program Files\Microsoft SQL Server\MSSQL.4\Reporting Services
    \ReportServer\bin\ReportingServicesService.exe
    C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
    C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\stsystra.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
    C:\Program Files\PC Tools AntiVirus\PCTAV.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier
    \GoogleToolbarNotifier.exe
    C:\Program Files\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\msftesql.exe
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\explorer.exe
    C:\Documents and Settings\SURESH BABBU\Desktop\HiJackThis_v2.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL
    = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
    http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
    http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
    http://www.comcast.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL
    = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title =
    Windows Internet Explorer provided by Comcast
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
    Settings,ProxyServer = :0
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-
    C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion
    \Installs\cpn1\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-
    C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion
    \Installs\cpn1\yt.dll
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
    - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {3A9555A0-EC21-4EF4-90C5-5610083BE222} - C:
    \WINDOWS\system32\mllml.dll
    O2 - BHO: Yahoo! IE Services Button -
    {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common
    \yiesrvc.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} -
    C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:
    \Program Files\McAfee\VirusScan\scriptsn.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-
    CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-
    CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier
    \2.1.615.5858\swg.dll
    O2 - BHO: (no name) - {C84D8A0A-E708-42B6-90CA-9C30956A87C6} - (no
    file)
    O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-
    A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
    O2 - BHO: (no name) - {E64F0381-0053-4842-B3E5-08F6C4A0AEB6} - C:
    \WINDOWS\system32\htsrtgio.dll (file missing)
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88}
    - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:
    \program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime
    \qttask.exe" -atboottime
    O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch
    Jukebox\mm_tray.exe"
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent
    \mcagent.exe /runkey
    O4 - HKLM\..\Run: [FolderView] rundll32.exe "C:\WINDOWS
    \system32\cwfxaxwi.dll",sitypnow
    O4 - HKLM\..\Run: [AAWTray] C:\Program Files\Lavasoft\Ad-Aware
    2007\AAWTray.exe
    O4 - HKLM\..\Run: [PCTAVApp] "C:\Program Files\PC Tools AntiVirus
    \PCTAV.exe" /MONITORSCAN
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier
    \GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger
    \YahooMessenger.exe" -quiet
    O8 - Extra context menu item: &Search -
    http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZUxdm082LDUS
    O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files
    \Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel -
    res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program
    Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files
    \Yahoo!\Common/ycmap.htm
    O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files
    \Yahoo!\Common/ycsms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
    - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-
    AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin
    \npjpi142_03.dll
    O9 - Extra button: Yahoo! Services -
    {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common
    \yiesrvc.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
    C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
    C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583}
    - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-
    d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic
    \xpnetdiag.exe (file missing)
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-
    B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger
    \YahooMessenger.exe
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-
    B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger
    \YahooMessenger.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683}
    - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-
    BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object)
    - http://dl.tvunetworks.com/TVUAx.cab
    O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -
    http://www1.snapfish.com/SnapfishActivia.cab
    O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com
    Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
    O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin
    Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
    O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture
    Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
    O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX
    Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
    O18 - Protocol: bw+0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-
    C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger
    \8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: offline-8876480 - {D38B0CE9-A4D4-496B-
    B90F-0A32516D33F4} - C:\Program Files\Logitech\Desktop Messenger
    \8876480\Program\BWPlugProtocol-8876480.dll
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
    O20 - Winlogon Notify: mllml - C:\WINDOWS\system32\mllml.dll
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-
    B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon -
    {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS
    \system32\browseui.dll
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:
    \Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec
    Corporation - C:\Program Files\Common Files\Symantec Shared
    \ccSetMgr.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology
    Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
    O23 - Service: DSBrokerService - Unknown owner - C:\Program Files
    \DellSupport\brkrsvc.exe
    O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel
    \Wireless\Bin\EvtEng.exe
    O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS
    \System32\GEARSec.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program
    Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:
    \PROGRA~1\McAfee\MSC\mcmscsvc.exe
    O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:
    \program files\common files\mcafee\mna\mcnasvc.exe
    O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:
    \PROGRA~1\McAfee\VIRUSS~1\mcods.exe
    O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:
    \PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
    O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:
    \PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
    O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:
    \PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee,
    Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
    O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell
    \QuickSet\NICCONFIGSVC.exe
    O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files
    \Norton Ghost\Agent\VProSvc.exe
    O23 - Service: PC Tools AntiVirus Engine (PCTAVSvc) - Unknown owner -
    C:\Program Files\PC Tools AntiVirus\PCTAVSvc.exe
    O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel
    \Wireless\Bin\RegSrvc.exe
    O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel
    Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program
    Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel
    \Wireless\Bin\WLKeeper.exe

    --
    End of file - 23706 bytes


    Plz let me know what needs to be done

    Thanks
     
    , Sep 22, 2007
    #1
    1. Advertising

  2. Guest

    wrote:

    >Hi
    >
    >find below my hijack report....winlogon.xe eating up my processer
    >speed.


    yours is maybe 15-20 times as large as one of mine. you got so much
    just running your lucky you have any CPU left for winlogon.

    Post it here http://hijackthis.de/en nothing really wrong just so much
    garbage like this:

    18 - Protocol: bwi0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program

    I'd start removing some programs.
    --

    http://www.onahorse.com/
     
    , Sep 22, 2007
    #2
    1. Advertising

  3. pcbutts1 Guest

    You are infected with Winfixer. Have HJT fix the following lines all of
    them. Then follow the directions below and use Remove-it to clean your
    system of Winfixer.

    O18 - Protocol: bw+0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-
    C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger
    \8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {D38B0CE9-A4D4-496B-B90F-0A32516D33F4} - C:
    \Program Files\Logitech\Desktop Messenger\8876480\Program
    \BWPlugProtocol-8876480.dll
    O18 - Protocol: offline-8876480 - {D38B0CE9-A4D4-496B-
    B90F-0A32516D33F4} - C:\Program Files\Logitech\Desktop Messenger
    \8876480\Program\BWPlugProtocol-8876480.dll

    O20 - Winlogon Notify: mllml - C:\WINDOWS\system32\mllml.dll

    Use Remove-it version 13, it's fast and free. It now has over 4000
    signatures to remove All variants of Rogue scanners, Desktop/Homepage
    Hijackers, Trojans, Codec's, and related Malware/Spyware. New Feature,
    Remove-it will now update your hosts file. This tool is designed to
    Specifically remove all variants. Scan time is about 2 minutes. Designed for
    Windows 2000/XP only. Password is still required.
    First read this page http://www.pcbutts1.com/downloads then use the email
    link on the bottom of the page to receive the software.


    Check my feedback and see what others have said about it
    http://pcbutts1-therealtruth.blogspot.com/

    --

    Newsgroup Trolls. Read about mine here http://www.pcbutts1.com/downloads
    The list grows. Leythos the stalker http://www.leythosthestalker.com, David
    H. Lipman, Max M Wachtell III aka What's in a Name?, Fitz,
    Rhonda Lea Kirk, Meat Plow, F Kwatu F, George Orwell



    <> wrote in message
    news:...
    Hi

    find below my hijack report....winlogon.xe eating up my processer
    speed.

    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 11:18:50 PM, on 9/21/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal
     
    pcbutts1, Sep 22, 2007
    #3
  4. Leythos Guest

    In article <fd2ct4$cbj$>, pcbutts1
    @leythosthestalker.com says...
    > Remove-it will now update your hosts file.


    It will block access to reputable sites, comes from a porno hosting
    website, and the code is suspected to be pirated from another person.

    Only a fool would download code to fix anything from a porno hosting
    website.

    --
    Leythos - (remove 999 to email me)

    Fight exposing kids to porn, complain about sites like PCBUTTS1.COM that
    create filth and put it on the web for any kid to see: Just take a look
    at some of the FILTH he's created and put on his website:
    http://forums.speedguide.net/archive/index.php/t-223485.html all exposed
    to children (the link I've include does not directly display his filth).
    You can find the same information by googling for 'PCBUTTS1' and
    'exposed to kids'.
     
    Leythos, Sep 22, 2007
    #4
  5. ellis_jay Guest

    wrote:
    > Hi
    >
    > find below my hijack report....winlogon.xe eating up my processer
    > speed.
    >
    > Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    > Scan saved at 11:18:50 PM, on 9/21/2007
    > Platform: Windows XP SP2 (WinNT 5.01.2600)
    > Boot mode: Normal

    } - C:

    You got so much stuff running--geesh! Like the other poster said-you are
    lucky you get any response to your keyboard. McAfee and Norton? Gimme a
    break! And the AdAware service from lavasoft is a hog resource. All that
    Google crap!@! ANd Yahoo? NOt to mention Logitech crap and Messenger. My
    advice?

    Stand away from the desktop!!!

    --
    When people are engaged in something they are not proud of, they do
    not welcome witnesses. In fact, they come to believe the witness causes
    the trouble. ___John Steinbeck

    Ellis_Jay
     
    ellis_jay, Sep 24, 2007
    #5
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. =?Utf-8?B?TWFzdGVyIExlZQ==?=

    Winlogon.exe entry point

    =?Utf-8?B?TWFzdGVyIExlZQ==?=, Apr 22, 2004, in forum: Microsoft Certification
    Replies:
    2
    Views:
    4,127
    Kurt Hudson [MVP]
    Apr 27, 2004
  2. SUPERJSM
    Replies:
    6
    Views:
    2,315
  3. Jay

    winlogon.exe

    Jay, Jan 13, 2004, in forum: Computer Support
    Replies:
    27
    Views:
    2,750
    Tergiversative
    Jan 14, 2004
  4. Cubzilla

    winlogon.exe

    Cubzilla, Jan 10, 2005, in forum: Computer Support
    Replies:
    8
    Views:
    5,308
    FingAZ
    Feb 13, 2005
  5. Diep

    WINLOGON.EXE

    Diep, Jun 6, 2005, in forum: Computer Support
    Replies:
    5
    Views:
    5,307
    °Mike°
    Jun 6, 2005
Loading...

Share This Page