Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Alert!  Have a problem and would like to ask us for help? To learn how to ask your question Click Here!
Stop!  Do you have popups or other malware infecting your computer? If so, Start Here!
Question?  Are you having trouble using this site? Then you should visit the New User Orientation Center!



A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List  · Submit a Startup  · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · Computer Help Forums · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
EarthLink Firewall Process Path Service EFWPPService.exe
Y
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
sp rundll32 [tempdirectory]\\SE.DLL,DllInstall
X
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
scain s030109.Stub.exe
X
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
SysKabs S0kic.exe
X
Unknown malware.
Sony Ericsson Device 115 driver (WDM) s115bus.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Filter s115mdfl.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Driver s115mdm.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM) s115mgmt.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC OBEX Interface s115obex.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
sy s2.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Intel® PROSet/Wireless Service S24EvMon.exe
?
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
tempreg s300_1204076086.dll
X
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
S3apphk S3apphk.exe
?
S3 graphics related?
S3Hotkey s3hotkey.exe
?
S3 Video driver related. What does it do and is it required?
S3Mon S3Mon.exe
?
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
S3 Internal Chip s3serv.exe
X
Added by the AGOBOT-DD WORM!
S3TRAY S3Tray.exe
N
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
s3tray2 s3tray2.exe
?
Same as the s3tray entry in this table?
S3TRAYHP S3trayhp.exe
?
S3 Video driver related. What does it do and is it required?
My Search Bar Eq S4BAREQ.EXE
X
MySearch bar parasite
S4F S4F.exe
U
S4F internet filtering software
s4helper s4helper.exe
X
Searchcentrix hijacker
Spellex Anywhere sa.exe
N
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
StayAlive sa.exe
U
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
ttool sa23sl.exe
X
Added by the Troj/Bckdr-QZZ backdoor Trojan.
SA Sa3.exe
?
Logitech QuickCam driver. Is it required?
Aureal A3D Interactive Audio sa3dsrv.exe
Y
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
Sa3dsrv Sa3dsrv.exe
N
3D sound extension for Windows
saap saap.exe
X
180Solutions/N-Case adware variant
SABKUTIL SABKUTIL.sys
Y
Related to Super Ad Blocker.
Sabreserver SABSERV.EXE
N
Airline reservation software from Sabre. Available via Start -> Programs
sac sac.exe
X
180Solutions/N-Case adware variant ... Read More
SACC sacc.exe
X
Added by the Adware.SurfAccuracy adware.
surfaccuracy sacc.exe
X
SurfAccuracy adware ... Read More
Mmsystem Sachiel.sys.bat
X
Added by the W32/Sachiel-D worm.
Onlune Sarvice sachost.exe
X
Added by the Troj/Multidr-E Trojan.
onluna sarvice sachost.exe
X
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
HostSrv sachostx.exe
X
Added by the Troj/Multidr-EP downloader Trojan.
{01d8d081-0f76-4ab5-b5e4-9b23a709670e} sacskza.dll
X
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
MicroSoft ssas3s1 SADASDA.exe
X
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
SuperAdBlocker SAdBlock.exe
U
SuperAdBlocker
netscreen-remote SafeCfg.exe
U
NetScreen_Remote VPN Client Software ... Read More
SafeFighter SafeFighter.exe
X
Added by the SafeFighter rogue anti-spyware program.
Safeguard.exe Safeguard.exe
X
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
SafeInstall.exe SAFEIN~1.EXE
N
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
Microsoft Safe Mode Manager safemode.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SafeOFF SafeOff.exe
N
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
SaferScan SaferScan.exe
X
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
SafeSearch safesearch.exe
X
AutoSearch parasite variant
Unshare SafeShare.exe
X
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
CertificateRegistration SafeSignCertReg.exe
U
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
SafeStrip SafeStrip.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeStripReminder SafeStripReminder.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeSys SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
SafeSysDrv SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
SafetyKeeper SafetyKeeper.exe
X
Added by the SafetyKeeper rogue security program.
SafetyKeeper Security Service SafetyKeeperSvc.exe
X
Added by the SafetyKeeper rogue security program.
Safe SafeWin.exe
X
Added by the FOCOSENHA TROJAN!
Sagate Security Firewall sagate.exe
X
Added by the GAOBOT.BOW WORM!
MSNPluginSrvcs sagate.exe
X
Added by the SDBOT.AKJ WORM!
SystemAgent Sage.exe
U
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
Laptop Access Sage.exe
X
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
sagentservice Sagent.exe
U
Added by TinySpyAgent **Note this application must be manually installed.
SAgent2ExePath SAgent2.exe
N
Seiko Epson printer status agent. Disable if printer is not used often
sagnt sagnt.exe
X
Adware web downloader
PrevxHome SAGUI.exe
Y
PrevX Home intrusion prevention software
PrevxPro SAGUI.exe
Y
Pro version of PrevX Home intrusion prevention software
SAHagent Sahagent.exe
X
ShopAtHomeSelect parasite
SaitekAutoConfigure saicnfig.exe
U
Configuration for Saitek game controllers
saie saie.exe
X
180Solutions/N-Case adware variant
SAIMON SaiMon.exe
U
Saitek joystick driver
sain sain.exe
X
180Solutions/N-Case adware variant
sais sais.exe
X
180Solutions/N-Case adware variant
SaiSmart SaiSmart.exe
?
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
Sakora Sakora.exe
X
Identified as a variant of the Trojan.Downloader Matcash malware.
SalaatTime SalaatTime.exe
N
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
salm salm.exe
X
180Search adware
salm salm.exe
X
180Solutions/N-Case adware variant
<not used> salo.exe
X
Added by the W32/Mabezat-A virus dropper.
msvcc25 salvage.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
saly saly*****.exe
X
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
sam-sung Sam-sung.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
SAMcal SAMcal.exe
U
SamCal - calendar/reminder program
DirectX shell driver sammp32.exe
X
Added by the Troj/MarktMan-B Trojan.
Mapa de caracteres para NT sampaerio.exe
X
Added by the Troj/Bancos-PV password-stealing Trojan.
syelimS-esreveR-troppuS sample.exe
X
Added by the Troj/Lootbot-B backdoor Trojan.
Security Accounts Manager SM samsm.exe
X
Added by the SPYBOT.JE WORM!
samsong Samsong.exe
X
Added by the SDBOT.BNE WORM! ... Read More
YeppStudioAgent SamsungMediaStudioAgent.exe
N
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
Samsung Samsungs.exe
X
Added by an IRC_TROJAN variant!
Security Account Manager SAMSvc.exe
X
Added by the W32/Tilebot-DL worm and IRC backdoor.
FireWire Driver samx.exe
X
Added by the SDBOT.AE WORM!
Sandbox Sandbox.sys
Y
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
[not used] SandboxieHelper.dll
Y
Installed by the Sandboxie security software.
Sandboxie Service SandboxieServer.exe
Y
Installed by the Sandboxie security software.
SandIcon SandIcon.exe
N
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
SANS Service sansv.exe
X
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
Santa Bastards Bitch SANTAS.BITCH.txt
X
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
System Applications Profile sap.exe
X
Added by the RBOT-QF WORM!
SAP control service SAPCtrlSer.exe
Y
Added by the abylon CRYPTDRIVE file encryption software.
abylonsoft Activate modules SAPDrive.EXE
Y
Added by the abylon CRYPTDRIVE file encryption software.
sapnet sapnet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
sapp sapp.exe
X
180Solutions/N-Case adware variant
[Various Names] SAPSTR.exe
X
Part of the Wareout infection as described here.
Beawver saqevre.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
Microsft Updtes sarvice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SASDIFSV SASDIFSV.SYS
Y
Driver for the Super Antispyware security software.
SASENUM SASENUM.SYS
Y
Super Antispyware driver.
SA Service SAservice.exe
?
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
SiteAdvisor Service SAService.exe
N
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
Syntax Script saskatcw.exe
X
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
sasktel accelerated dial-up sasktelgui.exe
Y
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
SASKUTIL SASKUTIL.sys
Y
Driver associated with the Super Antispyware security software.
usb SASS.EXE
X
Added by the Troj/Funsta-A Trojan.
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} SASSEH.DLL
Y
Part of the Super Antispyware security software.
!SASWinLogon SASWINLO.dll
Y
Related to the SuperAntiSpyware anti-spyware program.
satad640 satad640.dll
X
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
<unknown> satad645.sys
X
Added by a variant of the Goldun.Fam rootkit.
scandisc satan.exe
X
Added by the GregStar backdoor TROJAN!
SATARaid SATARaid.exe
U
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
satau320 satau320.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
SATA bus driver satau325.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
satdll satdll.dll
X
Added by the Troj/Haxdoor-AS information stealing Trojan.
satmat satmat.exe
X
Transponder parasite updater/installer
satmmc satmmc.dll
X
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
sau sau.exe
X
Added by the Adware.180Search adware.
ATTBroadbandUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
SAUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
SAutoLaunchExe SAutoLaunchExe.exe
U
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
Antivirus sav.exe
X
Added by the System Antivirus 2008 rogue anti-spyware program.
Sophos Anti-Virus status reporter SAVAdminService.exe
Y
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
SAVAgent SAVAgent.exe
Y
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
pile scr Save peak.exe
X
Added by the Troj/KillAV-ED Spyware Trojan.
Save Save.exe
X
Rebranded version of SaveNow advertising spyware
WhenUSave Save.exe
X
Rebranded version of SaveNow advertising spyware
SaveArmor SaveArmor.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveArmor Security Service SaveArmorSvc.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveDefender SaveDefender.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefender Security Service SaveDefenderSvc.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefense SaveDefense.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveDefense Security Service SaveDefenseSvc.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveKeep SaveKeep.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveKeeper SaveKeeper.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveKeeper Security Service SaveKeeperSvc.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveKeep Security Service SaveKeepSvc.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveMyWork SaveMyWork.exe
U
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
Savenow SaveNow.exe
X
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
Savenow savenow.exe
X
Added by the SPREDA.B VIRUS!
SaveSoldier SaveSoldier.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SaveSoldier Security Service SaveSoldierSvc.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SaveDate SaveStartDate.Exe
X
Unidentified adware
SAVRT SAVRT.SYS
Y
Related to Symantec Antivirus.
SAVRTPEL SAVRTPEL.SYS
Y
Driver associated with Symantec security products.
SAVScan SAVScan.exe
Y
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
Sophos Anti-Virus SavService.exe
Y
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
Microsoft Security Center savservices.exe
X
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
saw saw.exe
X
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
Say The Time 5.0 SAYTIME.EXE
U
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
sm sa_exe.exe
X
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
SB SB.exe
U
Acer Soft Button on Acer Tablet PCs
SBAutoUpdate sbautoupdate.exe
U
SpywareBlaster auto-updater
svchosts sbchost.exe
X
Added by the W32/Rbot-DCM worm and IRC backdoor.
sbchosy.bat sbchosy.bat
X
Added by the Troj/GrayBir-AA backdoor Trojan.
SBDrvDet SBDrv.exe
U
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
sbdrvdet sbdrvdet.exe
N
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
sbfxi sbfxi.dll
X
Added by a variant of the Goldun.Fam Trojan.
SBHC sbhc.exe
X
SuperBar parasite - uninstall available here
Windows bypass security SMSS Service SbiCvy.exe
X
Added by the W32/Rbot-GRF worm and IRC backdoor.
[Various Names] sbin.exe
X
Part of the Wareout infection as described here.
spam blocker for outlook express SBInst.exe
X
HotBar related ... Read More
Windows System Restore Configuration Sblhost.exe
X
Added by a variant of the SPYBOT WORM!
start sbmntr.exe
X
Identified as a variant of the Adware/Netproject malware.
sbmpop SBMPop.exe
X
SearchByMedia adware
SBMX sbmx.exe
N
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
{89aef01d-d237-49c7-84dc-4e1904c1fd31} sbnudh.dll
X
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
spamblocker SbOEAddOn.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
Microsoft Service Boot sboot.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSRegScan SBPDemo.exe
U
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
sbrige sbrige.dll
X
Added by a variant of the Goldun.Fam Trojan.
SystemBooster2009 sbr_updater.exe
X
Added by the SystemBooster 2009 rogue anti-spyware program.
<not used> sbs.exe
X
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
ScriptBlocking SBServ.exe
Y
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
ScriptBlocking Service SBServ.exe
Y
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
Eapcisetup sbsetup.exe
N
Rockwell RipTide soundcard application software. Sound works without it
<unknown> sbsrtyus.sys
X
Added by the Trojan.Mdropper.S Trojan.

Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
sbss Launcher sbss.exe
X
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
SB Watchdog SBWatchdog.exe
X
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
weatherontray SbWeatherOnTray.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
<not used> sbwltbxa.exe
X
Identified as a variant of the Troj/Agent-GRP variant malware.
6-susilo b sby.exe
X
Added by the W32/Brontok-CR worm.
sc sc.exe
U
Watchdog 2.0 Software - monitoring program
sc23exec sc23exec.exe
?
Possibly related to a digital camera
SC3300CC SC3300CC.exe
Y
SiPix digital camera Twain device driver
WINDOWS SYSTEM SCALPE scalpe91.exe
X
Added by the W32/Mytob-HI mass-mailing worm.
Driver32 Scam32.exe
X
Added by the SIRCAM WORM!
Scan&Repair2006.exe Scan&Repair2006.exe
X
Added by the ScanandRepair security risk.

According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
TotalSecure2009 scan.exe
X
Added by the Total Secure 2009 rogue anti-spyware program.
Win32G Scandisk.com
X
Added by the ESTRELLA TROJAN
ScanDisk ScanDisk.exe
X
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
MS Scandisk Scandisk.exe
X
Added by the Backdoor.AntiLam backdoor.
scands32.exe scands32.exe
X
Added by a variant of the Adclicker TROJAN!
Scandsk2 scandsk2.exe
X
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scandskx.exe scandskx.exe
X
Added by the Troj/Dloadr-ARM Trojan.
{C5A16DB0-0E3E-68C4-1ABB-636411036D53} scanfl.exe
X
Added by the Troj/PWS-BDE password-stealing Trojan.
messenger SCANMSG.EXE
Y
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
ScanSpyware v * Scanner.exe
X
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
hpScannerFirstBoot scannerfb.exe
?
HP scanner related
Microtek Scanner Finder ScannerFinder.exe
N
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
Reg_WFT scanreg32.com
X
Added by the Troj/SennaSpy-F trojan.
scanregg scanregg.exe
X
Added by the Troj/ScKeylog-A keylogger.
ScanRegistry scanregv.exe
X
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
ScanRegistry Scanregw.exe
Y
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
ScanRegistry Scanregw.exe
X
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
ScanRegistry scanregw.exe
X
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
[Various Names] scanSYS.exe
X
Part of the Wareout infection as described here.
Windows Service Scanvegw.exe
X
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
Quick Heal Helper Service WSC scanwscs.exe
Y
Related to the Quick Heal security products.
scApp scApp.exe
X
Added by the W32/Stando-E worm.
Smart Card Client SCardClnt.exe
X
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
TwkSCardSrv SCardS32.Exe
N
Used with Towitoko SmartCard Readers for card recognition
SCardSvr scardsvr.exe
N
Related to SmartCard readers and sometimes uses lots of system resources
Smart Card Service ScardSvr.exe
N
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
NavAgent32 SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
SCardSvr SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
SearchEnhancement scbar.exe
X
IE search hijacker
sccbxenr sccbxenr.exe
X
Added by the Troj/StraDr-A Trojan.
Compaq Computer Corp SCCenter Module SCCENTER.EXE
N
For Compaq PC's. Part of Backweb
Service Connection sccenter.exe
N
For Compaq PC's. Part of Backweb
Services Host Scchost.exe
X
Added by the DONK WORM!
Systems scchost.exe
X
Added by the DAEMOZ.A TROJAN!
Alive SYstem scchost.exe
X
Added by the Troj/Tofdrop-B dropper Trojan.
alive system scchostc.exe
X
Added by the Troj/Tofdrop-B ... Read More
update SERVICES sccpn.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft windows update sccvhost.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Microsoft sccvrhost.exe
X
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
scdemuapp.exe SCDEmuApp.exe
U
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
Configuration Driver scghost.exe
X
Added by the W32/Sdbot-DLA worm and IRC backdoor.
MS Windows Update scguard.exe
X
Added by a variant of the RBOT WORM!
sysApp SChal.exe
X
Added by the Troj/KeyLog-CE keylogger.
scheck scheck**.exe
X
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
scheck45 scheck45.exe
X
Related to unknown Malware - hidden installer associated with it
AntiVir PersonalEdition Classic Scheduler sched.exe
Y
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
Acronis Scheduler2 Service schedhlp.exe
U
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
Acronis Scheduler_Helper schedhlp.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
WTIndicator SchedInd.exe
U
WinTask - software that automates a variety of routine tasks quickly and simply
schedl schedl.exe
X
Added by the W32/VB-DVW worm.
Task Scheduler Engine schedsvc32.exe
X
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
scheduler schedul3.exe
X
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
schedule Schedule.exe
U
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
tvrschedule Schedule.exe
U
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
Scheduled Maintenance Scheduled_Maintenance.exe
N
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
scheduler Scheduler daemon.exe
U
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
MRU-Blaster Scheduler scheduler.exe
U
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
Scheduling Agent Scheduler.exe
X
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
Service Scheduler scheduler.exe
X
Added by the W32/Agobot-OA infection.
Staffcop Scheduler scheduler.exe
U
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
Microsoft scheduler.exe
X
Added by the W32/Rbot-GUT worm and IRC backdoor.
Windows Scheduler! scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Task Scheduler Scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
TVT Scheduler Proxy scheduler_proxy.exe
U
Related to the Lenovo update software on IBM ThinkPad.
NovastorSchedulerd SCHENGD.EXE
U
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
Schmaili Schmaili.exe
U
Schmaili - insert animated smilies into your e-mail
schoolpop0 Schoolpop0.exe
U
Schoolpop Shopping Buddy ... Read More
Generic Host Process SCHOST.EXE
X
Added by the RBOT-NC WORM!
Update Install Schost.exe
X
Added by the GAOBOT.AO WORM!
WinManager schost.exe
?
??
Microsoft Manage Services schost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
avschedscan SCHSC9X.EXE
Y
Command antivirus related ... Read More
Intervideo WinScheduler SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
WinDVR SchSvr SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
Home Theater SchSvr SchSvr.exe
N
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
microsoft update 64 bit schvost.exe
X
Added by the RBOT.CAU WORM! ... Read More
CSScheduleCheck SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
SCHWIZEX SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
taskmrg schwoch.exe
X
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
SecureCleanIEClean SCIEClean.exe
N
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
some scit.exe
X
Identified as a variant of the Adware/Netproject malware.
EFS sclgntfy.dll
Y
Related to the Microsoft Service called Secondary Login Service Notification.
sclick SCLICK.EXE
X
Related to SmitFraud infections.
SQL Server scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
sos sql database scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
stardust screen saver control 2003 SCMain.exe
N
Related to Stardust_Software Screen Saver Control 2003 ... Read More
ScManager scman.exe
X
Added by the FORBOT-CW WORM!
SurfChoice SCMan.exe
U
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
chipdrivesmartcardmanager SCMgr.exe
U
ChipDrive Smartcard software ... Read More
Spore.b Scmhlpr.vbs
X
Added by the SPORE.B WORM!
VGA Driver scmhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Smart Connect Monitor SCMon.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
windows services scmsg.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Security Patch scmss.exe
X
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
scanpanel ScnPanel.exe
?
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
Deewoo scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
ExploreUpdSched scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
scopedll scopedll.exe
X
Added by a variant of the CRYPTER.C TROJAN!
MCX Updte scorti.exe
X
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
Mi7sft sdce scorti.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
{4535F32F-D292-B784-7926-7419ADE0A94B} scp32.exe
X
Added by the Troj/Delf-EXC Trojan.
Scr scr.scr
X
Added by the OPASERV.T WORM!
W32.Scran Scran.exe
X
Added by the NARCS WORM!
ScrapPad Scrappad.exe
N
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
scrbmk scrbmk.exe
X
Added by the Troj/Dloader-VP downloader Trojan.
Screen Calendar scrcal.exe
U
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
WMI Standard Event Consumer - Scripting scrcons32.exe
X
Added by the W32/Rbot-GRD worm and IRC backdoor.
Microsoft Synchronization Manager screen.exe
X
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
cursor Screendragon_VS_Taskbar.exe
N
ScreenDragon video player
ScreenPrint32 ScreenPrint32.exe
N
ScreenPrint32 screen capture software - can be launched manually
ScreensaverControl ScreensaverControl.exe
N
Tray icon that allows you toggle your screensaver on and off.
ScreenView ScreenView.exe
U
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
secureclean4regmanager scregmanager4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
Microsoft Restore scrgrd.exe
X
Added by the SPYBOT.BR WORM!
Microsoft Windows Update scrhost.exe
X
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
WindowSystemMonitor scrhost.exe
X
Added by the W32/Tilebot-DV worm and IRC backdoor.
Auto File System Conversion Utility scricon.exe
X
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
RAX SYSTEM scrigz.exe
X
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
PAX SYSTEM scrigz.exe
X
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
Windows Update scrigz.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
script script.bat
?
Maybe associated with DOS on a Win9x machine
Java script.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
ScriptSentry Scriptsentry.exe
Y
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
Crnsava scrnsave.pif
X
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Screen Saver scrnsaver.scr
X
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Crnsavsund scrnsund.pif
X
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
Scroll-In-Mouse V2.0 SCROLL.EXE
U
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
MS Screen Saver scrsave.scr
X
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scrss scrss.exe
X
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Gray Scrsss
X
Added by the Troj/GrayBrd-AM backdoor Trojan.
scrsvc scrsvc.exe
X
Added by the Troj/Agent-DS proxy trojan.
ScrSvr ScrSvr.exe
X
Added by the OPASERV WORM!
system csrss patch scrtkfg.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
SystemOPsv scrtvc32.exe
X
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
sc scrubxp.exe
N
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
screxe scruser2k.exe
?
??
Smart Connect Setup SCSetup.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
Computer Driver scshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Scsi Scsi.exe
Y
SCSI Miniport driver
scsi2usb scsi2usb.dll
X
Added by a variant of the Troj/Haxdoor Trojan.
<unknown> scsipsrvc.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
scsiusr4 scsiusr4.dll
X
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
MS Shadow Copy Software scsoft.exe
X
Added by the W32/Tilebot-JP worm and IRC backdoor.
scsrs scsrs.exe
X
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
SCService SCSrv.dll
X
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
SecondChance sctray.exe
U
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
secureclean4tray sctray4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
OmniPass scureapp.exe
U
OmniPass from Softex Inc. - secure password management software
Nortons AV SYSTEM scvchost.exe
X
Added by a Rbot variant infection.
Windows Framework scvh0st.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
SCVHOST SCVHOST
X
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
Config Loader scvhost.exe
X
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
Microsoft Update Machine scvhost.exe
X
Added by the RBOT-GS WORM!
scvhost.exe scvhost.exe
X
Added by the LOHAV-N TROJAN!
Windows Service Host scvhost.exe
X
Added by the SDBOT.N TROJAN!
Security Center scvhost.exe
X
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
Winmgr.exe scvhost.exe
X
Added by the AGOBOT.AFG WORM!
SunJavaUpdateSched scvhost.exe
X
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
SCVHOST SCVHOST.EXE
X
Added by W32/Agobot-RK.
Windows Firewalll scvhost.exe
X
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
Windows Update scvhost.exe
X
Added by the W32/Sdbot-XT WORM.
microsoft scvhost for windows scvhost.exe
X
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
WINTASK scvhost.exe
X
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
Configuration Loader scvhost.exe
X
Added by the W32/Agobot-AAE worm.
Microsoft Update scvhost.exe
X
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
scvhost scvhost.exe
U
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
microsoft windows updata scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Personal Computer scvhost.exe
X
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update Manager scvhost.exe
X
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
macromedia flash update scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Tilebot-CU worm and IRC backdoor.
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Opanki-BT worm and IRC backdoor.
Microsoft Task Manager scvhost.exe
X
Added by the W32/Mytob-IT worm and IRC backdoor.
MsWinLibrary scvhost.exe
X
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
only23 SCVHOST.exe
X
Added by the Troj/Bckdr-PUQ backdoor Trojan.
Windows Update scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
msconfig scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
icq lite scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Update Checker scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
AntiVir scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Microsoft Print Spooler scvhost.exe
X
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
(default) scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
Yahoo Messengger SCVHOST.exe
X
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
Sync SCVHOST.exe
X
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
Windows SQL management 1.33 scvhost.exe
X
Added by the W32/Spybot-OB worm and IRC backdoor.
System Virtual Host File scvhost.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
LSA scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Printer Drivers scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
NTSF MICROSOFT SYSTEM scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSN scvhost.exe
X
Added by the W32/IRCBot-ZW worm and IRC backdoor.
System Host scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
SystemWindows scvhost.exe
X
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows UDP Control Center scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft SQL Services scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Sub-Classing Routine Manager scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Online Tech scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SysChk scvhost.vbs
X
Added by the W32/Small-EMQ worm.
Generic Host Process2 System Backup scvhost2.exe
X
Added by the W32/Rbot-BAH worm and IRC backdoor.
Microsoft LSASS386 Protocol scvhost32.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft SCVHOST32 Protocol scvhost32.exe
X
Added by a variant of the RBOT WORM!
SVCHost Protocol32 scvhost32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft scvhost32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Generic Host Process326a System Backup scvhost326a.exe
X
Added by a variant of the W32/SDBOT WORM!
starter scvhosting.exe
X
Added by the IRCBOT.E TROJAN!
Starter scvhosting.exe
X
Added by the SDBOT.RU WORM!
starter scvhostingg.exe
X
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
spoolsv scvhosts.exe
X
Added by the SMALL-AW TROJAN!
Windows Print Spooler SCVHOSTS.EXE
?
Suspicious due to the similarity to the valid "svchost.exe" file
WinService Host scvhosts.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Yahoo Messengger scvhosts.exe
X
Added by the W32/Sohana-AH spyware worm.
microssofts scvhosts.exe
X
Added by the Troj/Inject-GG Trojan.
QQKAV scvhsot.exe
X
Added by the W32/QQRob-ABU worm.
Yahoo Messengger SCVHSOT.exe
X
Added by the W32/Hakag-A worm.
Microsoft Office Studio scvhvst.exe
X
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
Microsoft Update Manager scvideo.exe
X
Added by the W32/Sdbot-CVP worm and IRC backdoor.
MSN scvrun.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ttool scvs.exe
X
Added by the Troj/Hiload-A Trojan.
Yahoo Messengger scvshosts.exe
X
Added by the W32/Trax-A worm.
Microsoft Windows Update scvvhost.exe
X
Added by the FORBOT-DH WORM!
Winsock2 wqr1s SCVVHOST.EXE
X
Added by the W32/Rbot-FSN worm and IRC backdoor.

W32/Rbot-FSN includes functionality to:

- access the internet and commu ... Read More
Yahoo Messengger SCVVHSOT.exe
X
Added by the W32/SillyFDC-AE worm.
Adobe Acrobat Speed Launcher.lnk SC_Acrobat.exe
N
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch ... Read More
monitor SD Monitor.exe
U
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
SD SD.exe
X
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
SystemDoctor 2006 Free sd2006.exe
X
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
System DirectX DLL Loader sd32dll.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
sd32info sd32info.exe
X
Added by the CRYPTER.A TROJAN!
SDaemon sdaemon.exe
U
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
vccacA sdaxzl.exe
X
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
sdcard98 sdcard98.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
KMX direct access sdcardX2.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
Direct settings sdchost.exe
X
Added by the DAEMONI-I TROJAN!
wescmv sddcss.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
Call Function System32 sddriver.exe
X
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
SDAgentService sde.exe
X
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
Scanner Detector SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
SDetect SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
strkjhk sdflkj8.exe
X
Added by the Troj/Bckdr-QJT backdoor Trojan.
Scheduler sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
WinAmpAgent sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
SvcH0st sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
MsnExplorer sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Server Daemon Host Manager sdhost.exe
X
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
SDIN Adapter sdin.exe
X
Added by the FORBOT-AP WORM!
Winsock2 driver SDJOIJE.EXE
X
Added by the SPYBOT.DR TROJAN!
Winsock32 driver Sdjoije.exe
X
Added by the SPYBOT.B WORM!
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
SDKcore Update Components2 SDKC0R3.exe
X
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
SDKcore Update Components2 SDKC0R3.exe
X
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
SDK Core Component SDKC0RE.exe
X
Added by the W32/SDBOT-WC WORM!
SDKz0r SDKc55rezzz2.exe
X
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
SDK Core Component sdkcore.exe
X
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
SDK Codre Function22 sdkimddprovment2.exe
X
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
sdk core function sdkimprovment.exe
X
Added by the RBOT.BHL WORM! ... Read More
sdk core function2 sdkimprovment2.exe
X
Added by the W32.SPYBOT.OGX WORM! ... Read More
mascro soft sdk updates2 SDKrepair2.exe
X
Added by a variant of the W32/SDBOT.W WORM! ... Read More
sdktemp SDKTEMP.EXE
X
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Microsoft sdk temp sdktemp.exe
X
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Spectrum 24 Events Monitor sdmAgent20.dll
X
Added by the Trojan.Linkmediac Trojan.

Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
KeSDM Sdmapi.sys
X
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
monitorsd SDMonitor.exe
U
Max Spyware Detector
SDMSSplash SDMSSplash.exe
?
Related to the HP Smart Desktop Management System support software.
SpywareDoctor sdoctor.exe
X
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
Files Driver sdphost.exe
X
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
SDPhotoBar.exe SDPhotoBar.exe
N
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
genserv path sdqdqg.exe
X
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
<not used> sdra64.exe
X
Identified by Sophos as a variant of the Mal/Zbot-I malware.
sdrss sdrss.exe
X
Added by the SDBOT-SQ WORM!
sads sdsa.exe
X
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
cvmsyslpd sdservss.exe
X
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
Windows Service Agent SDSEWEW.EXE
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
Sound Driver for Windows sdshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
FlashPath Monitor SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
FlashPath Status SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
Windows Updater sdsys.exe
X
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
systemtraysd SDSystemTray.exe
U
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
sdtray sdtray.exe
U
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
SDTrayApp SDTrayApp.exe
Y
Related to Spyware Doctor.
Windows Update sdvhost.exe
X
W32/Agobot-AEU is a network worm with backdoor functionality.
pc dynamics sdwmon32 sdwmon32.exe
U
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
safehousesystemtray SDWTRAY.EXE
U
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
sdxsys32 sdxsys32.exe
X
Added by the Troj/Brogger-A password-stealing Trojan.
Search-Exe SE.exe
X
Search-Exe hijacker
se500mdm se500mdm.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
SE500 Generic se500mdmd.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
se633mxx se633mxx.dll
X
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
IRDa Modem device #12 se633mxxd.sys
X
Added by a variant of the Goldun rootkit.
[random name] se?vices.exe
X
PurityScan adware variant.
Seagate Communications seagatecom.exe
X
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
SeahawksScreenServer SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
SeahawksScreenServerSvc SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
sealmon sealmon.exe
U
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748} search.dll
X
Added by the Troj/OnLineG-C password-stealing Trojan.
WhenUSearch Search.exe
X
WhenUSearch adware
mswspl searchbarcash.exe
X
SearchBarCash adware
Search Defender SearchDefender.exe
U
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
SearchIn1Step Service searchin1.exe
X
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
searchnav searchnav.exe
X
SearchNav adware - IEFeatures/Popnav variant
SearchNavVersion searchnavversion.exe
X
SearchNav adware - IEFeatures/Popnav variant
SSL SearchNDestrou.exe
X
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
YSearchProtection SearchProtection.exe
U
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to so ... Read More
SearchSetter searchsetter[1].exe
X
Browser hijacker - redirecting to FindWhateverNow.com
SearchSquire33 SearchUpdate33.exe
X
SearchSquire parasite
SearchUpgrader SearchUpgrader.exe
X
Hijacker
Seagate Sync Service SeaSyncServices.exe
U
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
SecureExpertCleaner sec.exe
X
Added by the Secure Expert Cleaner rogue security software.
run= sec5dec.exe
X
Added by the ATAK.G WORM!
second copy 2000 SecCopy.exe
U
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
*security center secctr.exe
X
Added by the SDBOT.BRO WORM! ... Read More
secdrive.exe secdrive.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Secdrv secdrv.sys
Y
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
Secondary Logon seclogon.dll
Y
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
Secret Secret.exe
X
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
secretmaker secretmaker.exe
U
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
Windows Update SecretStub.exe
X
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
secserv.exe secserv.exe
X
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
Security Server DB secserver.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security Service DB secservice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Secure Service secsrv.exe
X
Added by the W32/Sdbot-DGP worm and IRC backdoor.
Provides secure connections to internet and LAN computers. secsrv.exe
X
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
secsrvrc secsrvrc.exe
X
Added by the Troj/SCKeyLog-G keylogger.
system event manager secsvc.exe
X
Added by the RBOT.BMY WORM! ... Read More
Network Security secsvc.exe
X
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Security Service secsvc.exe
X
Added by the W32/Rbot-GGF backdoor Worm.
secsvc32 secsvcnt.exe
X
Added by the Global_Patrol TROJAN! ... Read More
Secsys Secsys.exe
U
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
{1CB622F9-7299-4245-0705-080208070506} SecSystem.exe
X
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
Yahoo Patcher! sectoriate.exe
X
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
Windows Security Update secupd.exe
X
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
security agent securag.exe
X
Added by the Troj/Bancban-F ... Read More
secure secure.exe
X
DealHelper adware
Secure secure.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
Bat secure2.bat
X
Added by the ZCREW.C TROJAN!
Network Configuration Security Manager secure32.exe
X
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
Win32 Security Protocol secure32.exe
X
Added by the W32/Rbot-ETI worm and IRC backdoor.
Winsecure Antivirus SecureAntivirus.exe
X
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
SecureCleaner SecureCleaner.exe
X
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
SecureFighter SecureFighter.exe
X
Added by the SecureFighter rogue anti-spyware program.
SecureFighter Security Service SecureFighterSvc.exe
X
Added by the SecureFighter rogue anti-spyware program.
<not used> SecureGuard.vbs
X
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
SecureItPro Secureitpro470p.exe
U
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
Security Monitor securemon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security Center Distribution securesec.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security System securesys.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SecureVeteran SecureVeteran.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureVeteran Security Service SecureVeteranSvc.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureWarrior SecureWarrior.exe
X
Added by the SecureWarrior rogue anti-spyware program.
SecureWarrior Security Service SecureWarriorSvc.exe
X
Added by the SecureWarrior rogue anti-spyware program.
<random characters> securewinload32x.exe
X
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Security iGuard Security iGuard.exe
N
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Disk Keeper SECURITY.EXE
X
Added by the Troj/Daoser-A trojan downloader.
Server Advance Security.exe
X
Added by the Troj/Bckdr-PUS backdoor Trojan.
Microsoft Security.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Security 2009 Security2009.exe
X
Added by the Security 2009 rogue anti-spyware program.
Microsoft Security Update security32.exe
X
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
aluria security center SecurityCenter.exe
N
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
Microsoft Secure Messenger.NET Service securitychk.exe
X
Added by the SDBOT.VT WORM!
SecurityFighter SecurityFighter.exe
X
Added by the SecurityFighter rogue anti-spyware program.
SecurityFighter Security Service SecurityFighterSvc.exe
X
Added by the SecurityFighter rogue anti-spyware program.
Security Manager SecurityManager.exe
U
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
securityService securityService.dll
X
Added by the Troj/KillJWS-A Trojan.
SecuritySoldier SecuritySoldier.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecuritySoldier Security Service SecuritySoldierSvc.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecurityUpdate SecurityUpdate.exe
X
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
SECWIZ98 SECWIZ98.EXE
Y
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
CLSID sed.exe
X
Adult content dialler
SESync sed.exe
X
Downloadware/SED adware downloader
gqvqevs seeffkme.exe
X
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
seekmo seekmo.exe
X
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
seeve seeve.exe
X
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
Selene Selene.exe
X
Added by the Trojan.Eneles infection!
FriendlyWebQuick-Launch SELFCERT.EXE
N
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
seli seli.exe
X
Added by the Troj/LowZone-AS Trojan.
Roflcopteur seman.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
semanticinsight SemanticInsight.exe
X
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
[not used] sembako-cfzjkmg.exe
X
Added by the W32/Brontok-M worm.
[not used] sembako-cfzjmmg.exe
X
Added by the W32/Brontok-N worm.
Bron-Spizaetus sempalong.exe
X
Added by the W32/Brontok-E worm.
SeMS SeMS.exe
U
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
MailExport sendmail.dll
X
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
QQ sendmess.exe
X
Added by the SEMES TROJAN!
Sensiva Sensiva.exe
U
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
startup scan Sensor.EXE
Y
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
sentinelmon sentinelmon.exe
U
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
SENTRY SENTRY.exe
X
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
CrisysTec Sentry Sentry.exe
X
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
RNBOStart sentstrt.exe
U
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
Sepate Security Firewall sepate.exe
X
Added by a variant of the RBOT WORM!
TCP x IP2 Kernel seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
TCP x IP2 Kernel32 seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
seppgs seppgs.dll
X
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
serazavr serazavr.log
X
Added by the Backdoor.Rustock backdoor rootkit.
serpe serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
ltwob serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
avnort serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
Window Server Sererver.exe
X
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
mserv seres.exe
X
Added by the W32/Agent-LIL worm.
Serials serials.exe
X
Any one of a variety of worms and trojans
Anthrax serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Justice serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Four serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Ebola serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Fathers serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
F4J serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
System Service serious.exe
X
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Services management serivces.exe
X
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
win serlass.exe
X
Added by the Trojan.Startpage.S browser hijacker.
Microsoft WinUpdates serm32.exe
X
Added by the RBOT.GE WORM!
sern Sernet32.exe
X
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
Networok Derve H1ots serop.exe
X
Added by the Troj/GrayBrd-I backdoor Trojan.
serrdctl.exe serrdctl.exe
Y
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
serrv serrv.exe
X
Added by the W32/Stratio-AW worm.
Microsoft Windows Services Sersices.exe
X
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
<not used> sertail.exe
X
Added by the Troj/Inject-DD Trojan.
Serv-U serv-u32.exe
N
FTP server
generic service process serv1ces.exe
X
Added by the W32/Agobot-JK WORM! ... Read More
Service Manager serv3manager.exe
X
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Rout111 serv454.exe
X
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
MSN serv5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
Services Management Clients servc.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
WINDOWS SYSTEM servce.exe
X
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Servicer servcr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Update servcs.exe
X
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
Services Managements servcs.exe
X
Added by the Troj/QHost-B Trojan.
Key2 serve.exe
?
??
Telephots google serveet.exe
X
Added by the WORM_FUBALCA.AQ worm.
Remote Log ServeHost.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
NDIS Adapter servenxpp.exe
X
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
NDIS TCP Layer Transport Device servenxpp.exe
X
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
Win32R Server.com
X
Added by the ESTRELLA TROJAN!
easyServ Server.exe
X
Added by the EASYSERV TROJAN!
RunProg Server.exe
X
Added by the OPTIX.04.A TROJAN!
server server.exe
X
Added by the DELTAD.A WORM!
SERVER.EXE SERVER.EXE
X
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
WinProt server.exe
X
Added by the CHUPACABRA TROJAN!
pcServer server.exe
X
Ssppyy spyware
Windows Updata Server server.exe
X
Added by the Backdoor.Graybird.N backdoor.
VMWare Authorization Servicec Server.exe
X
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
Windows Media Player Server.exe
X
Added by the Troj/Feutel-AE backdoor Trojan.
Pigeon_Server server.exe
X
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
Server 2.0 Server.exe
X
Added by the Troj/GrayBrd-AN backdoor Trojan.
startkey server.exe
X
Added by the Troj/Bifrose-B Trojan.
Registry Server.exe
X
Added by the Troj/Small-ALO backdoor Trojan.
ConsoleDevil server.exe
X
Added by the Troj/Bckdr-MJO backdoor Trojan.
pcServer server.exe
X
Added by the SSPPYY spyware.
CRAYON server.exe
X
Added by the W32/VB-DNI worm.
Windows_updatesafe Server.exe
X
Added by the Troj/Bckdr-QIS backdoor Trojan.
SQL server.exe
X
Added by the W32/Punya-B worm.
Xploit Server server.exe
X
Added by the Troj/Bckdr-JUF information stealing Trojan.
serverex Server.txt.vbs
X
Added by the DELTAD.A WORM!
winserver Server.txt.vbs
X
Added by the DELTAD.A WORM!
ZtgServerSwitch server.vbs
X
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
Server Backbone server05.exe
X
Added by the W32/Rbot-ZM worm.
Server2.0 Server2.0.exe
X
Added by the Troj/Feutel-AY trojan Backdoor.
Windows_Folder Server4.exe
X
Added by the Troj/Hupigon-SK backdoor Trojan.
WindowsAPI.DLL Server5.exe
X
Added by the "Fear and Hope" TROJAN!
<random name> Servere.exe
X
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
Windows DDOSServer serversc.exe
X
Added by the Troj/Bckdr-PMY backdoor Trojan.
Serverx Serverx.exe
X
Added by the W32/Madang-A virus.
Windows SystemDown servet.exe
X
Added by the W32/Delf-ESX worm.
Windows XP servet.exe
X
Added by the Troj/Dloadr-AYB Trojan.
Windows Ins servet.exe
X
Added by the W32/SillyFD-AB worm.
Remote Acces servet.exe
X
Added by the Troj/Dloadr-AYT Trojan Downloader.
Windows InstallService servet.exe
X
Added by the W32/SillyFD-AF spyware worm.
Windows DDE servet.exe
X
Added by the W32/WoWMovs-A worm.
SearchNet_Up ServeUp.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
run windows servic.bat
X
Added by the REBOOT-AP TROJAN! ... Read More
Sygate Personal Firewall Start servic.exe
X
Added by the RBOT-RY WORM!
Microsoft Update 32 servic.exe
X
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft .Net Framework servic.exe
X
Added by the Troj/Agent-GUU Trojan.
WINDOWS SYSTEMn servicces.exe
X
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
serviccs.exe serviccs.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
Config service.exe
X
Added by the ISRAZ.B WORM!
Configuration Loader Service.exe
X
Added by the GAOBOT.AO WORM!
Myapp service.exe
X
Homepage hijacker
Service service.exe
U
Added by the ALADINZ.H TROJAN!
Service.exe Service.exe
X
"servedby.advertising" popup generator
SYS_CLEAN Service.exe
X
Added by the FLOPCOPY WORM!
Win32 USB2.0 Driver service.exe
X
Added by the SDBOT-QF WORM!
Windows Services service.exe
X
Added by the RANDEX.R WORM!
Windows_Serivce SERVICE.exe
X
Added by the WOOTBOT.AH WORM!
MSN BETA SERVICE.EXE
X
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
r_server SERVICE.EXE
X
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
Remote Administrator Service SERVICE.EXE
X
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
Windows Screensaver Service.exe
X
Added by the W32.KELVIR.P WORM!
Sygate Personal Firewall service.exe
X
Added by a variant of the WIN32.RBOT WORM!
Service Process service.exe
X
Added by the Troj/Dcmbot-C backdoor trojan.
Registry Value Name service.exe
X
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
service manager service.exe
X
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
WindowsService service.exe
X
Added by the W32/Tilebot-K worm.
systrans service.exe
X
Added by the Troj/StartPa-GZ backdoor Trojan.
Servicemng service.exe
X
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:



c:\windows\system32\hserv.sy ... Read More
Service Process service.exe
X
Added by the Troj/DcmBot-F backdoor Trojan.
AdobeReaderPro service.exe
X
Added by the W32/Rbot-BCA worm and IRC backdoor.
Windows Service Manager service.exe
X
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
Service App Service.exe
X
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
Windows startup service service.exe
X
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
Microsoft Coyshader Runtime service.exe
X
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
systr2 SERVICE.exe
X
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
Windows smss service service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
Clean up service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
Service Configurator service.exe
X
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
Microsoft Update service.exe
X
Added by the W32/Agobot-GY worm and IRC backdoor.
PsY service.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
Windows Logon Service service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsServices service.exe
X
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
Windows Net Cfg service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MDNS service.exe
X
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
Network Services Service.exe
X
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Windows svchost service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Updates service.exe
X
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
Windows Helper service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsHelpService service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Messenger Service service.exe
X
Added by the Troj/Dloadr-BVG Trojan.
WinDLL (service.exe) service.exe
X
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
updater23 service.exe.js
X
Added by the JS/Uragon-A javascript worm.
Service Service.pif
X
Added by the W32/Assiral-C email worm.
sb0t service1.dll
X
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
Service2 Service2.exe
X
Identified as a variant of the Backdoor.Win32.Iroffer malware.
ProcService service32.dll
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
service32 service32.exe
X
Added by the W32/AGOBOT-ST WORM! ... Read More
kernel services service32.exe
X
Added by the TROJ/PRX-B TROJAN! ... Read More
Microsoft Service Manager service32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Configuration Loader service5.exe
X
Added by the GAOBOT.AF WORM!
MS Security Hotfix service5.exe
X
Added by the GAOBOT.AG WORM!
WINDOWS SYSTEM service5.exe
X
Added by the W32/Mytob-JF worm and backdoor.
Serve User SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
System SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
pushbot service5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
pushbot service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
MSN service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
Windows svchost servicean.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WinLsass servicec.exe
X
Added by the SCANE WORM!
Bredbandsbolaget servicecenter.exe
Y
Connectivity software for the Bredbands Bolaget ISP.
serviceconnect serviceconnect.exe
X
Added by the AGOBOT.AIR WORM! ... Read More
ServiceHost32 ServiceHost32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
ServiceLayer ServiceLayer.exe
Y
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
USB Device servicelog.exe
X
Added by the WOOTBOT.CB WORM!
wind logd file servicelogd.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Service Manager SERVICEMGR.EXE
X
Added by the W32/PassMail-D worm.
Microsoft Servicez Manager servicemgrz.exe
X
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Service Monitor servicemon.exe
X
Added by the W32/Tilebot-GH worm and IRC backdoor.
System Service servicent.exe
X
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
[Various Names] Serviceprocess.exe
X
Part of the Wareout infection as described here.
.Prog services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
BuildLab services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
ccApps services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
FriendlyTypeName services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
golumm services.exe
X
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Microsoft Services services.exe
X
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Microsoft Visual SourceSafe services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
MSOffice services.exe
X
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
RegDone services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Service services.exe
X
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
Services services.exe
X
Added by a number of VIRUSES, WORMS and TROJANS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
Services Process services.exe
X
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
Services.EXE services.exe
X
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
services.exe Services.exe
X
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
sysinit services.exe
X
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
System Update2 services.exe
X
Added by the AUTOTROJ-C TROJAN!
TEXTCONV services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
WMAudio services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Xpsystem SERVICES.EXE
X
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
xpsystem services.exe
X
CoolWebSearch parasite variant
xp_system services.exe
X
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Norton Auto-Protect SERVICES.EXE
X
Added by the Anker e-mail WORM!
Windows Service SERVICES.EXE
X
Added by the Anker e-mail WORM!
RPCserv32 SERVICES.EXE
X
Added by the MyDoom.AN WORM! File is found in the Windows directory.
Services Startup services.exe
X
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
Services Logon services.exe
X
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
{357AA41A-B7A8-4632-A27D-5B980B25CF43} services.exe
X
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
SuperBar.Component services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
AdRotator.Application services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
xp_system services.exe
X
Added by the Adware.CWSConyc hijacker.
run services.exe
X
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
_SystemCheck services.exe
X
Added by the W32/Sober-M WORM!
WinStart services.exe
X
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
golum services.exe
X
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
_winstart services.exe
X
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
_SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
SysService SERVICES.EXE
U
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
Windows Service Controller services.exe
X
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
WSVCS SERVICES.EXE
U
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
Microsoft Service Controller services.exe
X
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
RPCserv32g services.exe
X
Added by the W32.Bobax.AA mass-mailing worm.
Events services.exe
X
Added by the Backdoor.EggHead backdoor.
NTSet32 services.exe
X
Added by the Troj/WinSpy-C Trojan.
NetBios Ext services.exe
X
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
NetBios Ext32 services.exe
X
Added by the W32.Mydoom.AN@mm worm.
Torjan Program