Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Alert!  Have a problem and would like to ask us for help? To learn how to ask your question Click Here!
Stop!  Do you have popups or other malware infecting your computer? If so, Start Here!
Question?  Are you having trouble using this site? Then you should visit the New User Orientation Center!



A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List  · Submit a Startup  · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · Computer Help Forums · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
EarthLink Firewall Process Path Service EFWPPService.exe
Y
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
sp rundll32 [tempdirectory]\\SE.DLL,DllInstall
X
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
scain s030109.Stub.exe
X
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
SysKabs S0kic.exe
X
Unknown malware.
Sony Ericsson Device 115 driver (WDM) s115bus.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Filter s115mdfl.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Driver s115mdm.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM) s115mgmt.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC OBEX Interface s115obex.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
sy s2.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Intel® PROSet/Wireless Service S24EvMon.exe
?
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
tempreg s300_1204076086.dll
X
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
S3apphk S3apphk.exe
?
S3 graphics related?
S3Hotkey s3hotkey.exe
?
S3 Video driver related. What does it do and is it required?
S3Mon S3Mon.exe
?
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
S3 Internal Chip s3serv.exe
X
Added by the AGOBOT-DD WORM!
S3TRAY S3Tray.exe
N
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
s3tray2 s3tray2.exe
?
Same as the s3tray entry in this table?
S3TRAYHP S3trayhp.exe
?
S3 Video driver related. What does it do and is it required?
My Search Bar Eq S4BAREQ.EXE
X
MySearch bar parasite
S4F S4F.exe
U
S4F internet filtering software
s4helper s4helper.exe
X
Searchcentrix hijacker
Spellex Anywhere sa.exe
N
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
StayAlive sa.exe
U
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
ttool sa23sl.exe
X
Added by the Troj/Bckdr-QZZ backdoor Trojan.
SA Sa3.exe
?
Logitech QuickCam driver. Is it required?
Aureal A3D Interactive Audio sa3dsrv.exe
Y
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
Sa3dsrv Sa3dsrv.exe
N
3D sound extension for Windows
saap saap.exe
X
180Solutions/N-Case adware variant
SABKUTIL SABKUTIL.sys
Y
Related to Super Ad Blocker.
Sabreserver SABSERV.EXE
N
Airline reservation software from Sabre. Available via Start -> Programs
sac sac.exe
X
180Solutions/N-Case adware variant ... Read More
SACC sacc.exe
X
Added by the Adware.SurfAccuracy adware.
surfaccuracy sacc.exe
X
SurfAccuracy adware ... Read More
Mmsystem Sachiel.sys.bat
X
Added by the W32/Sachiel-D worm.
Onlune Sarvice sachost.exe
X
Added by the Troj/Multidr-E Trojan.
onluna sarvice sachost.exe
X
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
HostSrv sachostx.exe
X
Added by the Troj/Multidr-EP downloader Trojan.
{01d8d081-0f76-4ab5-b5e4-9b23a709670e} sacskza.dll
X
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
MicroSoft ssas3s1 SADASDA.exe
X
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
SuperAdBlocker SAdBlock.exe
U
SuperAdBlocker
netscreen-remote SafeCfg.exe
U
NetScreen_Remote VPN Client Software ... Read More
SafeFighter SafeFighter.exe
X
Added by the SafeFighter rogue anti-spyware program.
Safeguard.exe Safeguard.exe
X
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
SafeInstall.exe SAFEIN~1.EXE
N
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
Microsoft Safe Mode Manager safemode.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SafeOFF SafeOff.exe
N
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
SaferScan SaferScan.exe
X
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
SafeSearch safesearch.exe
X
AutoSearch parasite variant
Unshare SafeShare.exe
X
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
CertificateRegistration SafeSignCertReg.exe
U
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
SafeStrip SafeStrip.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeStripReminder SafeStripReminder.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeSys SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
SafeSysDrv SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
SafetyKeeper SafetyKeeper.exe
X
Added by the SafetyKeeper rogue security program.
SafetyKeeper Security Service SafetyKeeperSvc.exe
X
Added by the SafetyKeeper rogue security program.
Safe SafeWin.exe
X
Added by the FOCOSENHA TROJAN!
Sagate Security Firewall sagate.exe
X
Added by the GAOBOT.BOW WORM!
MSNPluginSrvcs sagate.exe
X
Added by the SDBOT.AKJ WORM!
SystemAgent Sage.exe
U
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
Laptop Access Sage.exe
X
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
sagentservice Sagent.exe
U
Added by TinySpyAgent **Note this application must be manually installed.
SAgent2ExePath SAgent2.exe
N
Seiko Epson printer status agent. Disable if printer is not used often
sagnt sagnt.exe
X
Adware web downloader
PrevxHome SAGUI.exe
Y
PrevX Home intrusion prevention software
PrevxPro SAGUI.exe
Y
Pro version of PrevX Home intrusion prevention software
SAHagent Sahagent.exe
X
ShopAtHomeSelect parasite
SaitekAutoConfigure saicnfig.exe
U
Configuration for Saitek game controllers
saie saie.exe
X
180Solutions/N-Case adware variant
SAIMON SaiMon.exe
U
Saitek joystick driver
sain sain.exe
X
180Solutions/N-Case adware variant
sais sais.exe
X
180Solutions/N-Case adware variant
SaiSmart SaiSmart.exe
?
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
Sakora Sakora.exe
X
Identified as a variant of the Trojan.Downloader Matcash malware.
SalaatTime SalaatTime.exe
N
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
salm salm.exe
X
180Search adware
salm salm.exe
X
180Solutions/N-Case adware variant
<not used> salo.exe
X
Added by the W32/Mabezat-A virus dropper.
msvcc25 salvage.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
saly saly*****.exe
X
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
sam-sung Sam-sung.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
SAMcal SAMcal.exe
U
SamCal - calendar/reminder program
DirectX shell driver sammp32.exe
X
Added by the Troj/MarktMan-B Trojan.
Mapa de caracteres para NT sampaerio.exe
X
Added by the Troj/Bancos-PV password-stealing Trojan.
syelimS-esreveR-troppuS sample.exe
X
Added by the Troj/Lootbot-B backdoor Trojan.
Security Accounts Manager SM samsm.exe
X
Added by the SPYBOT.JE WORM!
samsong Samsong.exe
X
Added by the SDBOT.BNE WORM! ... Read More
YeppStudioAgent SamsungMediaStudioAgent.exe
N
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
Samsung Samsungs.exe
X
Added by an IRC_TROJAN variant!
Security Account Manager SAMSvc.exe
X
Added by the W32/Tilebot-DL worm and IRC backdoor.
FireWire Driver samx.exe
X
Added by the SDBOT.AE WORM!
Sandbox Sandbox.sys
Y
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
[not used] SandboxieHelper.dll
Y
Installed by the Sandboxie security software.
Sandboxie Service SandboxieServer.exe
Y
Installed by the Sandboxie security software.
SandIcon SandIcon.exe
N
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
SANS Service sansv.exe
X
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
Santa Bastards Bitch SANTAS.BITCH.txt
X
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
System Applications Profile sap.exe
X
Added by the RBOT-QF WORM!
SAP control service SAPCtrlSer.exe
Y
Added by the abylon CRYPTDRIVE file encryption software.
abylonsoft Activate modules SAPDrive.EXE
Y
Added by the abylon CRYPTDRIVE file encryption software.
sapnet sapnet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
sapp sapp.exe
X
180Solutions/N-Case adware variant
[Various Names] SAPSTR.exe
X
Part of the Wareout infection as described here.
Beawver saqevre.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
Microsft Updtes sarvice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SASDIFSV SASDIFSV.SYS
Y
Driver for the Super Antispyware security software.
SASENUM SASENUM.SYS
Y
Super Antispyware driver.
SA Service SAservice.exe
?
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
SiteAdvisor Service SAService.exe
N
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
Syntax Script saskatcw.exe
X
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
sasktel accelerated dial-up sasktelgui.exe
Y
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
SASKUTIL SASKUTIL.sys
Y
Driver associated with the Super Antispyware security software.
usb SASS.EXE
X
Added by the Troj/Funsta-A Trojan.
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} SASSEH.DLL
Y
Part of the Super Antispyware security software.
!SASWinLogon SASWINLO.dll
Y
Related to the SuperAntiSpyware anti-spyware program.
satad640 satad640.dll
X
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
<unknown> satad645.sys
X
Added by a variant of the Goldun.Fam rootkit.
scandisc satan.exe
X
Added by the GregStar backdoor TROJAN!
SATARaid SATARaid.exe
U
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
satau320 satau320.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
SATA bus driver satau325.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
satdll satdll.dll
X
Added by the Troj/Haxdoor-AS information stealing Trojan.
satmat satmat.exe
X
Transponder parasite updater/installer
satmmc satmmc.dll
X
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
sau sau.exe
X
Added by the Adware.180Search adware.
ATTBroadbandUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
SAUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
SAutoLaunchExe SAutoLaunchExe.exe
U
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
Antivirus sav.exe
X
Added by the System Antivirus 2008 rogue anti-spyware program.
Sophos Anti-Virus status reporter SAVAdminService.exe
Y
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
SAVAgent SAVAgent.exe
Y
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
pile scr Save peak.exe
X
Added by the Troj/KillAV-ED Spyware Trojan.
Save Save.exe
X
Rebranded version of SaveNow advertising spyware
WhenUSave Save.exe
X
Rebranded version of SaveNow advertising spyware
SaveArmor SaveArmor.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveArmor Security Service SaveArmorSvc.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveDefender SaveDefender.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefender Security Service SaveDefenderSvc.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefense SaveDefense.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveDefense Security Service SaveDefenseSvc.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveKeep SaveKeep.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveKeeper SaveKeeper.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveKeeper Security Service SaveKeeperSvc.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveKeep Security Service SaveKeepSvc.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveMyWork SaveMyWork.exe
U
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
Savenow SaveNow.exe
X
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
Savenow savenow.exe
X
Added by the SPREDA.B VIRUS!
SaveSoldier SaveSoldier.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SaveSoldier Security Service SaveSoldierSvc.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SaveDate SaveStartDate.Exe
X
Unidentified adware
SAVRT SAVRT.SYS
Y
Related to Symantec Antivirus.
SAVRTPEL SAVRTPEL.SYS
Y
Driver associated with Symantec security products.
SAVScan SAVScan.exe
Y
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
Sophos Anti-Virus SavService.exe
Y
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
Microsoft Security Center savservices.exe
X
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
saw saw.exe
X
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
Say The Time 5.0 SAYTIME.EXE
U
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
sm sa_exe.exe
X
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
SB SB.exe
U
Acer Soft Button on Acer Tablet PCs
SBAutoUpdate sbautoupdate.exe
U
SpywareBlaster auto-updater
svchosts sbchost.exe
X
Added by the W32/Rbot-DCM worm and IRC backdoor.
sbchosy.bat sbchosy.bat
X
Added by the Troj/GrayBir-AA backdoor Trojan.
SBDrvDet SBDrv.exe
U
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
sbdrvdet sbdrvdet.exe
N
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
sbfxi sbfxi.dll
X
Added by a variant of the Goldun.Fam Trojan.
SBHC sbhc.exe
X
SuperBar parasite - uninstall available here
Windows bypass security SMSS Service SbiCvy.exe
X
Added by the W32/Rbot-GRF worm and IRC backdoor.
[Various Names] sbin.exe
X
Part of the Wareout infection as described here.
spam blocker for outlook express SBInst.exe
X
HotBar related ... Read More
Windows System Restore Configuration Sblhost.exe
X
Added by a variant of the SPYBOT WORM!
start sbmntr.exe
X
Identified as a variant of the Adware/Netproject malware.
sbmpop SBMPop.exe
X
SearchByMedia adware
SBMX sbmx.exe
N
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
{89aef01d-d237-49c7-84dc-4e1904c1fd31} sbnudh.dll
X
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
spamblocker SbOEAddOn.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
Microsoft Service Boot sboot.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSRegScan SBPDemo.exe
U
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
sbrige sbrige.dll
X
Added by a variant of the Goldun.Fam Trojan.
SystemBooster2009 sbr_updater.exe
X
Added by the SystemBooster 2009 rogue anti-spyware program.
<not used> sbs.exe
X
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
ScriptBlocking SBServ.exe
Y
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
ScriptBlocking Service SBServ.exe
Y
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
Eapcisetup sbsetup.exe
N
Rockwell RipTide soundcard application software. Sound works without it
<unknown> sbsrtyus.sys
X
Added by the Trojan.Mdropper.S Trojan.

Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
sbss Launcher sbss.exe
X
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
SB Watchdog SBWatchdog.exe
X
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
weatherontray SbWeatherOnTray.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
<not used> sbwltbxa.exe
X
Identified as a variant of the Troj/Agent-GRP variant malware.
6-susilo b sby.exe
X
Added by the W32/Brontok-CR worm.
sc sc.exe
U
Watchdog 2.0 Software - monitoring program
sc23exec sc23exec.exe
?
Possibly related to a digital camera
SC3300CC SC3300CC.exe
Y
SiPix digital camera Twain device driver
WINDOWS SYSTEM SCALPE scalpe91.exe
X
Added by the W32/Mytob-HI mass-mailing worm.
Driver32 Scam32.exe
X
Added by the SIRCAM WORM!
Scan&Repair2006.exe Scan&Repair2006.exe
X
Added by the ScanandRepair security risk.

According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
TotalSecure2009 scan.exe
X
Added by the Total Secure 2009 rogue anti-spyware program.
Win32G Scandisk.com
X
Added by the ESTRELLA TROJAN
ScanDisk ScanDisk.exe
X
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
MS Scandisk Scandisk.exe
X
Added by the Backdoor.AntiLam backdoor.
scands32.exe scands32.exe
X
Added by a variant of the Adclicker TROJAN!
Scandsk2 scandsk2.exe
X
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scandskx.exe scandskx.exe
X
Added by the Troj/Dloadr-ARM Trojan.
{C5A16DB0-0E3E-68C4-1ABB-636411036D53} scanfl.exe
X
Added by the Troj/PWS-BDE password-stealing Trojan.
messenger SCANMSG.EXE
Y
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
ScanSpyware v * Scanner.exe
X
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
hpScannerFirstBoot scannerfb.exe
?
HP scanner related
Microtek Scanner Finder ScannerFinder.exe
N
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
Reg_WFT scanreg32.com
X
Added by the Troj/SennaSpy-F trojan.
scanregg scanregg.exe
X
Added by the Troj/ScKeylog-A keylogger.
ScanRegistry scanregv.exe
X
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
ScanRegistry Scanregw.exe
Y
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
ScanRegistry Scanregw.exe
X
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
ScanRegistry scanregw.exe
X
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
[Various Names] scanSYS.exe
X
Part of the Wareout infection as described here.
Windows Service Scanvegw.exe
X
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
Quick Heal Helper Service WSC scanwscs.exe
Y
Related to the Quick Heal security products.
scApp scApp.exe
X
Added by the W32/Stando-E worm.
Smart Card Client SCardClnt.exe
X
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
TwkSCardSrv SCardS32.Exe
N
Used with Towitoko SmartCard Readers for card recognition
SCardSvr scardsvr.exe
N
Related to SmartCard readers and sometimes uses lots of system resources
Smart Card Service ScardSvr.exe
N
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
NavAgent32 SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
SCardSvr SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
SearchEnhancement scbar.exe
X
IE search hijacker
sccbxenr sccbxenr.exe
X
Added by the Troj/StraDr-A Trojan.
Compaq Computer Corp SCCenter Module SCCENTER.EXE
N
For Compaq PC's. Part of Backweb
Service Connection sccenter.exe
N
For Compaq PC's. Part of Backweb
Services Host Scchost.exe
X
Added by the DONK WORM!
Systems scchost.exe
X
Added by the DAEMOZ.A TROJAN!
Alive SYstem scchost.exe
X
Added by the Troj/Tofdrop-B dropper Trojan.
alive system scchostc.exe
X
Added by the Troj/Tofdrop-B ... Read More
update SERVICES sccpn.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft windows update sccvhost.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Microsoft sccvrhost.exe
X
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
scdemuapp.exe SCDEmuApp.exe
U
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
Configuration Driver scghost.exe
X
Added by the W32/Sdbot-DLA worm and IRC backdoor.
MS Windows Update scguard.exe
X
Added by a variant of the RBOT WORM!
sysApp SChal.exe
X
Added by the Troj/KeyLog-CE keylogger.
scheck scheck**.exe
X
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
scheck45 scheck45.exe
X
Related to unknown Malware - hidden installer associated with it
AntiVir PersonalEdition Classic Scheduler sched.exe
Y
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
Acronis Scheduler2 Service schedhlp.exe
U
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
Acronis Scheduler_Helper schedhlp.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
WTIndicator SchedInd.exe
U
WinTask - software that automates a variety of routine tasks quickly and simply
schedl schedl.exe
X
Added by the W32/VB-DVW worm.
Task Scheduler Engine schedsvc32.exe
X
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
scheduler schedul3.exe
X
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
schedule Schedule.exe
U
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
tvrschedule Schedule.exe
U
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
Scheduled Maintenance Scheduled_Maintenance.exe
N
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
scheduler Scheduler daemon.exe
U
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
MRU-Blaster Scheduler scheduler.exe
U
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
Scheduling Agent Scheduler.exe
X
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
Service Scheduler scheduler.exe
X
Added by the W32/Agobot-OA infection.
Staffcop Scheduler scheduler.exe
U
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
Microsoft scheduler.exe
X
Added by the W32/Rbot-GUT worm and IRC backdoor.
Windows Scheduler! scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Task Scheduler Scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
TVT Scheduler Proxy scheduler_proxy.exe
U
Related to the Lenovo update software on IBM ThinkPad.
NovastorSchedulerd SCHENGD.EXE
U
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
Schmaili Schmaili.exe
U
Schmaili - insert animated smilies into your e-mail
schoolpop0 Schoolpop0.exe
U
Schoolpop Shopping Buddy ... Read More
Generic Host Process SCHOST.EXE
X
Added by the RBOT-NC WORM!
Update Install Schost.exe
X
Added by the GAOBOT.AO WORM!
WinManager schost.exe
?
??
Microsoft Manage Services schost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
avschedscan SCHSC9X.EXE
Y
Command antivirus related ... Read More
Intervideo WinScheduler SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
WinDVR SchSvr SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
Home Theater SchSvr SchSvr.exe
N
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
microsoft update 64 bit schvost.exe
X
Added by the RBOT.CAU WORM! ... Read More
CSScheduleCheck SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
SCHWIZEX SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
taskmrg schwoch.exe
X
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
SecureCleanIEClean SCIEClean.exe
N
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
some scit.exe
X
Identified as a variant of the Adware/Netproject malware.
EFS sclgntfy.dll
Y
Related to the Microsoft Service called Secondary Login Service Notification.
sclick SCLICK.EXE
X
Related to SmitFraud infections.
SQL Server scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
sos sql database scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
stardust screen saver control 2003 SCMain.exe
N
Related to Stardust_Software Screen Saver Control 2003 ... Read More
ScManager scman.exe
X
Added by the FORBOT-CW WORM!
SurfChoice SCMan.exe
U
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
chipdrivesmartcardmanager SCMgr.exe
U
ChipDrive Smartcard software ... Read More
Spore.b Scmhlpr.vbs
X
Added by the SPORE.B WORM!
VGA Driver scmhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Smart Connect Monitor SCMon.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
windows services scmsg.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Security Patch scmss.exe
X
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
scanpanel ScnPanel.exe
?
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
Deewoo scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
ExploreUpdSched scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
scopedll scopedll.exe
X
Added by a variant of the CRYPTER.C TROJAN!
MCX Updte scorti.exe
X
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
Mi7sft sdce scorti.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
{4535F32F-D292-B784-7926-7419ADE0A94B} scp32.exe
X
Added by the Troj/Delf-EXC Trojan.
Scr scr.scr
X
Added by the OPASERV.T WORM!
W32.Scran Scran.exe
X
Added by the NARCS WORM!
ScrapPad Scrappad.exe
N
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
scrbmk scrbmk.exe
X
Added by the Troj/Dloader-VP downloader Trojan.
Screen Calendar scrcal.exe
U
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
WMI Standard Event Consumer - Scripting scrcons32.exe
X
Added by the W32/Rbot-GRD worm and IRC backdoor.
Microsoft Synchronization Manager screen.exe
X
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
cursor Screendragon_VS_Taskbar.exe
N
ScreenDragon video player
ScreenPrint32 ScreenPrint32.exe
N
ScreenPrint32 screen capture software - can be launched manually
ScreensaverControl ScreensaverControl.exe
N
Tray icon that allows you toggle your screensaver on and off.
ScreenView ScreenView.exe
U
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
secureclean4regmanager scregmanager4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
Microsoft Restore scrgrd.exe
X
Added by the SPYBOT.BR WORM!
Microsoft Windows Update scrhost.exe
X
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
WindowSystemMonitor scrhost.exe
X
Added by the W32/Tilebot-DV worm and IRC backdoor.
Auto File System Conversion Utility scricon.exe
X
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
RAX SYSTEM scrigz.exe
X
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
PAX SYSTEM scrigz.exe
X
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
Windows Update scrigz.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
script script.bat
?
Maybe associated with DOS on a Win9x machine
Java script.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
ScriptSentry Scriptsentry.exe
Y
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
Crnsava scrnsave.pif
X
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Screen Saver scrnsaver.scr
X
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Crnsavsund scrnsund.pif
X
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
Scroll-In-Mouse V2.0 SCROLL.EXE
U
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
MS Screen Saver scrsave.scr
X
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scrss scrss.exe
X
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Gray Scrsss
X
Added by the Troj/GrayBrd-AM backdoor Trojan.
scrsvc scrsvc.exe
X
Added by the Troj/Agent-DS proxy trojan.
ScrSvr ScrSvr.exe
X
Added by the OPASERV WORM!
system csrss patch scrtkfg.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
SystemOPsv scrtvc32.exe
X
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
sc scrubxp.exe
N
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
screxe scruser2k.exe
?
??
Smart Connect Setup SCSetup.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
Computer Driver scshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Scsi Scsi.exe
Y
SCSI Miniport driver
scsi2usb scsi2usb.dll
X
Added by a variant of the Troj/Haxdoor Trojan.
<unknown> scsipsrvc.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
scsiusr4 scsiusr4.dll
X
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
MS Shadow Copy Software scsoft.exe
X
Added by the W32/Tilebot-JP worm and IRC backdoor.
scsrs scsrs.exe
X
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
SCService SCSrv.dll
X
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
SecondChance sctray.exe
U
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
secureclean4tray sctray4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
OmniPass scureapp.exe
U
OmniPass from Softex Inc. - secure password management software
Nortons AV SYSTEM scvchost.exe
X
Added by a Rbot variant infection.
Windows Framework scvh0st.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
SCVHOST SCVHOST
X
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
Config Loader scvhost.exe
X
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
Microsoft Update Machine scvhost.exe
X
Added by the RBOT-GS WORM!
scvhost.exe scvhost.exe
X
Added by the LOHAV-N TROJAN!
Windows Service Host scvhost.exe
X
Added by the SDBOT.N TROJAN!
Security Center scvhost.exe
X
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
Winmgr.exe scvhost.exe
X
Added by the AGOBOT.AFG WORM!
SunJavaUpdateSched scvhost.exe
X
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
SCVHOST SCVHOST.EXE
X
Added by W32/Agobot-RK.
Windows Firewalll scvhost.exe
X
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
Windows Update scvhost.exe
X
Added by the W32/Sdbot-XT WORM.
microsoft scvhost for windows scvhost.exe
X
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
WINTASK scvhost.exe
X
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
Configuration Loader scvhost.exe
X
Added by the W32/Agobot-AAE worm.
Microsoft Update scvhost.exe
X
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
scvhost scvhost.exe
U
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
microsoft windows updata scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Personal Computer scvhost.exe
X
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update Manager scvhost.exe
X
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
macromedia flash update scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Tilebot-CU worm and IRC backdoor.
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Opanki-BT worm and IRC backdoor.
Microsoft Task Manager scvhost.exe
X
Added by the W32/Mytob-IT worm and IRC backdoor.
MsWinLibrary scvhost.exe
X
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
only23 SCVHOST.exe
X
Added by the Troj/Bckdr-PUQ backdoor Trojan.
Windows Update scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
msconfig scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
icq lite scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Update Checker scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
AntiVir scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Microsoft Print Spooler scvhost.exe
X
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
(default) scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
Yahoo Messengger SCVHOST.exe
X
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
Sync SCVHOST.exe
X
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
Windows SQL management 1.33 scvhost.exe
X
Added by the W32/Spybot-OB worm and IRC backdoor.
System Virtual Host File scvhost.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
LSA scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Printer Drivers scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
NTSF MICROSOFT SYSTEM scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSN scvhost.exe
X
Added by the W32/IRCBot-ZW worm and IRC backdoor.
System Host scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
SystemWindows scvhost.exe
X
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows UDP Control Center scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft SQL Services scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Sub-Classing Routine Manager scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Online Tech scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SysChk scvhost.vbs
X
Added by the W32/Small-EMQ worm.
Generic Host Process2 System Backup scvhost2.exe
X
Added by the W32/Rbot-BAH worm and IRC backdoor.
Microsoft LSASS386 Protocol scvhost32.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft SCVHOST32 Protocol scvhost32.exe
X
Added by a variant of the RBOT WORM!
SVCHost Protocol32 scvhost32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft scvhost32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Generic Host Process326a System Backup scvhost326a.exe
X
Added by a variant of the W32/SDBOT WORM!
starter scvhosting.exe
X
Added by the IRCBOT.E TROJAN!
Starter scvhosting.exe
X
Added by the SDBOT.RU WORM!
starter scvhostingg.exe
X
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
spoolsv scvhosts.exe
X
Added by the SMALL-AW TROJAN!
Windows Print Spooler SCVHOSTS.EXE
?
Suspicious due to the similarity to the valid "svchost.exe" file
WinService Host scvhosts.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Yahoo Messengger scvhosts.exe
X
Added by the W32/Sohana-AH spyware worm.
microssofts scvhosts.exe
X
Added by the Troj/Inject-GG Trojan.
QQKAV scvhsot.exe
X
Added by the W32/QQRob-ABU worm.
Yahoo Messengger SCVHSOT.exe
X
Added by the W32/Hakag-A worm.
Microsoft Office Studio scvhvst.exe
X
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
Microsoft Update Manager scvideo.exe
X
Added by the W32/Sdbot-CVP worm and IRC backdoor.
MSN scvrun.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ttool scvs.exe
X
Added by the Troj/Hiload-A Trojan.
Yahoo Messengger scvshosts.exe
X
Added by the W32/Trax-A worm.
Microsoft Windows Update scvvhost.exe
X
Added by the FORBOT-DH WORM!
Winsock2 wqr1s SCVVHOST.EXE
X
Added by the W32/Rbot-FSN worm and IRC backdoor.

W32/Rbot-FSN includes functionality to:

- access the internet and commu ... Read More
Yahoo Messengger SCVVHSOT.exe
X
Added by the W32/SillyFDC-AE worm.
Adobe Acrobat Speed Launcher.lnk SC_Acrobat.exe
N
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch ... Read More
monitor SD Monitor.exe
U
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
SD SD.exe
X
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
SystemDoctor 2006 Free sd2006.exe
X
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
System DirectX DLL Loader sd32dll.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
sd32info sd32info.exe
X
Added by the CRYPTER.A TROJAN!
SDaemon sdaemon.exe
U
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
vccacA sdaxzl.exe
X
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
sdcard98 sdcard98.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
KMX direct access sdcardX2.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
Direct settings sdchost.exe
X
Added by the DAEMONI-I TROJAN!
wescmv sddcss.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
Call Function System32 sddriver.exe
X
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
SDAgentService sde.exe
X
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
Scanner Detector SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
SDetect SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
strkjhk sdflkj8.exe
X
Added by the Troj/Bckdr-QJT backdoor Trojan.
Scheduler sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
WinAmpAgent sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
SvcH0st sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
MsnExplorer sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Server Daemon Host Manager sdhost.exe
X
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
SDIN Adapter sdin.exe
X
Added by the FORBOT-AP WORM!
Winsock2 driver SDJOIJE.EXE
X
Added by the SPYBOT.DR TROJAN!
Winsock32 driver Sdjoije.exe
X
Added by the SPYBOT.B WORM!
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
SDKcore Update Components2 SDKC0R3.exe
X
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
SDKcore Update Components2 SDKC0R3.exe
X
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
SDK Core Component SDKC0RE.exe
X
Added by the W32/SDBOT-WC WORM!
SDKz0r SDKc55rezzz2.exe
X
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
SDK Core Component sdkcore.exe
X
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
SDK Codre Function22 sdkimddprovment2.exe
X
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
sdk core function sdkimprovment.exe
X
Added by the RBOT.BHL WORM! ... Read More
sdk core function2 sdkimprovment2.exe
X
Added by the W32.SPYBOT.OGX WORM! ... Read More
mascro soft sdk updates2 SDKrepair2.exe
X
Added by a variant of the W32/SDBOT.W WORM! ... Read More
sdktemp SDKTEMP.EXE
X
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Microsoft sdk temp sdktemp.exe
X
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Spectrum 24 Events Monitor sdmAgent20.dll
X
Added by the Trojan.Linkmediac Trojan.

Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
KeSDM Sdmapi.sys
X
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
monitorsd SDMonitor.exe
U
Max Spyware Detector
SDMSSplash SDMSSplash.exe
?
Related to the HP Smart Desktop Management System support software.
SpywareDoctor sdoctor.exe
X
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
Files Driver sdphost.exe
X
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
SDPhotoBar.exe SDPhotoBar.exe
N
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
genserv path sdqdqg.exe
X
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
<not used> sdra64.exe
X
Identified by Sophos as a variant of the Mal/Zbot-I malware.
sdrss sdrss.exe
X
Added by the SDBOT-SQ WORM!
sads sdsa.exe
X
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
cvmsyslpd sdservss.exe
X
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
Windows Service Agent SDSEWEW.EXE
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
Sound Driver for Windows sdshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
FlashPath Monitor SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
FlashPath Status SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
Windows Updater sdsys.exe
X
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
systemtraysd SDSystemTray.exe
U
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
sdtray sdtray.exe
U
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
SDTrayApp SDTrayApp.exe
Y
Related to Spyware Doctor.
Windows Update sdvhost.exe
X
W32/Agobot-AEU is a network worm with backdoor functionality.
pc dynamics sdwmon32 sdwmon32.exe
U
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
safehousesystemtray SDWTRAY.EXE
U
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
sdxsys32 sdxsys32.exe
X
Added by the Troj/Brogger-A password-stealing Trojan.
Search-Exe SE.exe
X
Search-Exe hijacker
se500mdm se500mdm.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
SE500 Generic se500mdmd.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
se633mxx se633mxx.dll
X
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
IRDa Modem device #12 se633mxxd.sys
X
Added by a variant of the Goldun rootkit.
[random name] se?vices.exe
X
PurityScan adware variant.
Seagate Communications seagatecom.exe
X
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
SeahawksScreenServer SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
SeahawksScreenServerSvc SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
sealmon sealmon.exe
U
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748} search.dll
X
Added by the Troj/OnLineG-C password-stealing Trojan.
WhenUSearch Search.exe
X
WhenUSearch adware
mswspl searchbarcash.exe
X
SearchBarCash adware
Search Defender SearchDefender.exe
U
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
SearchIn1Step Service searchin1.exe
X
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
searchnav searchnav.exe
X
SearchNav adware - IEFeatures/Popnav variant
SearchNavVersion searchnavversion.exe
X
SearchNav adware - IEFeatures/Popnav variant
SSL SearchNDestrou.exe
X
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
YSearchProtection SearchProtection.exe
U
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to so ... Read More
SearchSetter searchsetter[1].exe
X
Browser hijacker - redirecting to FindWhateverNow.com
SearchSquire33 SearchUpdate33.exe
X
SearchSquire parasite
SearchUpgrader SearchUpgrader.exe
X
Hijacker
Seagate Sync Service SeaSyncServices.exe
U
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
SecureExpertCleaner sec.exe
X
Added by the Secure Expert Cleaner rogue security software.
run= sec5dec.exe
X
Added by the ATAK.G WORM!
second copy 2000 SecCopy.exe
U
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
*security center secctr.exe
X
Added by the SDBOT.BRO WORM! ... Read More
secdrive.exe secdrive.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Secdrv secdrv.sys
Y
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
Secondary Logon seclogon.dll
Y
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
Secret Secret.exe
X
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
secretmaker secretmaker.exe
U
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
Windows Update SecretStub.exe
X
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
secserv.exe secserv.exe
X
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
Security Server DB secserver.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security Service DB secservice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Secure Service secsrv.exe
X
Added by the W32/Sdbot-DGP worm and IRC backdoor.
Provides secure connections to internet and LAN computers. secsrv.exe
X
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
secsrvrc secsrvrc.exe
X
Added by the Troj/SCKeyLog-G keylogger.
system event manager secsvc.exe
X
Added by the RBOT.BMY WORM! ... Read More
Network Security secsvc.exe
X
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Security Service secsvc.exe
X
Added by the W32/Rbot-GGF backdoor Worm.
secsvc32 secsvcnt.exe
X
Added by the Global_Patrol TROJAN! ... Read More
Secsys Secsys.exe
U
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
{1CB622F9-7299-4245-0705-080208070506} SecSystem.exe
X
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
Yahoo Patcher! sectoriate.exe
X
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
Windows Security Update secupd.exe
X
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
security agent securag.exe
X
Added by the Troj/Bancban-F ... Read More
secure secure.exe
X
DealHelper adware
Secure secure.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
Bat secure2.bat
X
Added by the ZCREW.C TROJAN!
Network Configuration Security Manager secure32.exe
X
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
Win32 Security Protocol secure32.exe
X
Added by the W32/Rbot-ETI worm and IRC backdoor.
Winsecure Antivirus SecureAntivirus.exe
X
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
SecureCleaner SecureCleaner.exe
X
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
SecureFighter SecureFighter.exe
X
Added by the SecureFighter rogue anti-spyware program.
SecureFighter Security Service SecureFighterSvc.exe
X
Added by the SecureFighter rogue anti-spyware program.
<not used> SecureGuard.vbs
X
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
SecureItPro Secureitpro470p.exe
U
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
SecureKeeper SecureKeeper.exe
X
Added by the SecureKeeper rogue anti-spyware program.
Security Monitor securemon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security Center Distribution securesec.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security System securesys.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SecureVeteran SecureVeteran.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureVeteran Security Service SecureVeteranSvc.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureWarrior SecureWarrior.exe
X
Added by the SecureWarrior rogue anti-spyware program.
SecureWarrior Security Service SecureWarriorSvc.exe
X
Added by the SecureWarrior rogue anti-spyware program.
<random characters> securewinload32x.exe
X
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Security iGuard Security iGuard.exe
N
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Disk Keeper SECURITY.EXE
X
Added by the Troj/Daoser-A trojan downloader.
Server Advance Security.exe
X
Added by the Troj/Bckdr-PUS backdoor Trojan.
Microsoft Security.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Security 2009 Security2009.exe
X
Added by the Security 2009 rogue anti-spyware program.
Microsoft Security Update security32.exe
X
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
aluria security center SecurityCenter.exe
N
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
Microsoft Secure Messenger.NET Service securitychk.exe
X
Added by the SDBOT.VT WORM!
SecurityFighter SecurityFighter.exe
X
Added by the SecurityFighter rogue anti-spyware program.
SecurityFighter Security Service SecurityFighterSvc.exe
X
Added by the SecurityFighter rogue anti-spyware program.
Security Manager SecurityManager.exe
U
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
securityService securityService.dll
X
Added by the Troj/KillJWS-A Trojan.
SecuritySoldier SecuritySoldier.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecuritySoldier Security Service SecuritySoldierSvc.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecurityUpdate SecurityUpdate.exe
X
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
SECWIZ98 SECWIZ98.EXE
Y
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
CLSID sed.exe
X
Adult content dialler
SESync sed.exe
X
Downloadware/SED adware downloader
gqvqevs seeffkme.exe
X
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
seekmo seekmo.exe
X
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
seeve seeve.exe
X
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
Selene Selene.exe
X
Added by the Trojan.Eneles infection!
FriendlyWebQuick-Launch SELFCERT.EXE
N
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
seli seli.exe
X
Added by the Troj/LowZone-AS Trojan.
Roflcopteur seman.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
semanticinsight SemanticInsight.exe
X
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
[not used] sembako-cfzjkmg.exe
X
Added by the W32/Brontok-M worm.
[not used] sembako-cfzjmmg.exe
X
Added by the W32/Brontok-N worm.
Bron-Spizaetus sempalong.exe
X
Added by the W32/Brontok-E worm.
SeMS SeMS.exe
U
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
MailExport sendmail.dll
X
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
QQ sendmess.exe
X
Added by the SEMES TROJAN!
Sensiva Sensiva.exe
U
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
startup scan Sensor.EXE
Y
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
sentinelmon sentinelmon.exe
U
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
SENTRY SENTRY.exe
X
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
CrisysTec Sentry Sentry.exe
X
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
RNBOStart sentstrt.exe
U
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
Sepate Security Firewall sepate.exe
X
Added by a variant of the RBOT WORM!
TCP x IP2 Kernel seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
TCP x IP2 Kernel32 seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
seppgs seppgs.dll
X
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
serazavr serazavr.log
X
Added by the Backdoor.Rustock backdoor rootkit.
serpe serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
ltwob serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
avnort serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
Window Server Sererver.exe
X
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
mserv seres.exe
X
Added by the W32/Agent-LIL worm.
Serials serials.exe
X
Any one of a variety of worms and trojans
Anthrax serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Justice serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Four serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Ebola serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Fathers serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
F4J serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
System Service serious.exe
X
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Services management serivces.exe
X
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
win serlass.exe
X
Added by the Trojan.Startpage.S browser hijacker.
Microsoft WinUpdates serm32.exe
X
Added by the RBOT.GE WORM!
sern Sernet32.exe
X
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
Networok Derve H1ots serop.exe
X
Added by the Troj/GrayBrd-I backdoor Trojan.
serrdctl.exe serrdctl.exe
Y
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
serrv serrv.exe
X
Added by the W32/Stratio-AW worm.
Microsoft Windows Services Sersices.exe
X
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
<not used> sertail.exe
X
Added by the Troj/Inject-DD Trojan.
Serv-U serv-u32.exe
N
FTP server
generic service process serv1ces.exe
X
Added by the W32/Agobot-JK WORM! ... Read More
Service Manager serv3manager.exe
X
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Rout111 serv454.exe
X
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
MSN serv5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
Services Management Clients servc.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
WINDOWS SYSTEM servce.exe
X
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Servicer servcr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Update servcs.exe
X
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
Services Managements servcs.exe
X
Added by the Troj/QHost-B Trojan.
Key2 serve.exe
?
??
Telephots google serveet.exe
X
Added by the WORM_FUBALCA.AQ worm.
Remote Log ServeHost.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
NDIS Adapter servenxpp.exe
X
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
NDIS TCP Layer Transport Device servenxpp.exe
X
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
Win32R Server.com
X
Added by the ESTRELLA TROJAN!
easyServ Server.exe
X
Added by the EASYSERV TROJAN!
RunProg Server.exe
X
Added by the OPTIX.04.A TROJAN!
server server.exe
X
Added by the DELTAD.A WORM!
SERVER.EXE SERVER.EXE
X
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
WinProt server.exe
X
Added by the CHUPACABRA TROJAN!
pcServer server.exe
X
Ssppyy spyware
Windows Updata Server server.exe
X
Added by the Backdoor.Graybird.N backdoor.
VMWare Authorization Servicec Server.exe
X
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
Windows Media Player Server.exe
X
Added by the Troj/Feutel-AE backdoor Trojan.
Pigeon_Server server.exe
X
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
Server 2.0 Server.exe
X
Added by the Troj/GrayBrd-AN backdoor Trojan.
startkey server.exe
X
Added by the Troj/Bifrose-B Trojan.
Registry Server.exe
X
Added by the Troj/Small-ALO backdoor Trojan.
ConsoleDevil server.exe
X
Added by the Troj/Bckdr-MJO backdoor Trojan.
pcServer server.exe
X
Added by the SSPPYY spyware.
CRAYON server.exe
X
Added by the W32/VB-DNI worm.
Windows_updatesafe Server.exe
X
Added by the Troj/Bckdr-QIS backdoor Trojan.
SQL server.exe
X
Added by the W32/Punya-B worm.
Xploit Server server.exe
X
Added by the Troj/Bckdr-JUF information stealing Trojan.
serverex Server.txt.vbs
X
Added by the DELTAD.A WORM!
winserver Server.txt.vbs
X
Added by the DELTAD.A WORM!
ZtgServerSwitch server.vbs
X
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
Server Backbone server05.exe
X
Added by the W32/Rbot-ZM worm.
Server2.0 Server2.0.exe
X
Added by the Troj/Feutel-AY trojan Backdoor.
Windows_Folder Server4.exe
X
Added by the Troj/Hupigon-SK backdoor Trojan.
WindowsAPI.DLL Server5.exe
X
Added by the "Fear and Hope" TROJAN!
<random name> Servere.exe
X
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
Windows DDOSServer serversc.exe
X
Added by the Troj/Bckdr-PMY backdoor Trojan.
Serverx Serverx.exe
X
Added by the W32/Madang-A virus.
Windows SystemDown servet.exe
X
Added by the W32/Delf-ESX worm.
Windows XP servet.exe
X
Added by the Troj/Dloadr-AYB Trojan.
Windows Ins servet.exe
X
Added by the W32/SillyFD-AB worm.
Remote Acces servet.exe
X
Added by the Troj/Dloadr-AYT Trojan Downloader.
Windows InstallService servet.exe
X
Added by the W32/SillyFD-AF spyware worm.
Windows DDE servet.exe
X
Added by the W32/WoWMovs-A worm.
SearchNet_Up ServeUp.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
run windows servic.bat
X
Added by the REBOOT-AP TROJAN! ... Read More
Sygate Personal Firewall Start servic.exe
X
Added by the RBOT-RY WORM!
Microsoft Update 32 servic.exe
X
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft .Net Framework servic.exe
X
Added by the Troj/Agent-GUU Trojan.
WINDOWS SYSTEMn servicces.exe
X
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
serviccs.exe serviccs.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
Config service.exe
X
Added by the ISRAZ.B WORM!
Configuration Loader Service.exe
X
Added by the GAOBOT.AO WORM!
Myapp service.exe
X
Homepage hijacker
Service service.exe
U
Added by the ALADINZ.H TROJAN!
Service.exe Service.exe
X
"servedby.advertising" popup generator
SYS_CLEAN Service.exe
X
Added by the FLOPCOPY WORM!
Win32 USB2.0 Driver service.exe
X
Added by the SDBOT-QF WORM!
Windows Services service.exe
X
Added by the RANDEX.R WORM!
Windows_Serivce SERVICE.exe
X
Added by the WOOTBOT.AH WORM!
MSN BETA SERVICE.EXE
X
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
r_server SERVICE.EXE
X
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
Remote Administrator Service SERVICE.EXE
X
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
Windows Screensaver Service.exe
X
Added by the W32.KELVIR.P WORM!
Sygate Personal Firewall service.exe
X
Added by a variant of the WIN32.RBOT WORM!
Service Process service.exe
X
Added by the Troj/Dcmbot-C backdoor trojan.
Registry Value Name service.exe
X
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
service manager service.exe
X
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
WindowsService service.exe
X
Added by the W32/Tilebot-K worm.
systrans service.exe
X
Added by the Troj/StartPa-GZ backdoor Trojan.
Servicemng service.exe
X
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:



c:\windows\system32\hserv.sy ... Read More
Service Process service.exe
X
Added by the Troj/DcmBot-F backdoor Trojan.
AdobeReaderPro service.exe
X
Added by the W32/Rbot-BCA worm and IRC backdoor.
Windows Service Manager service.exe
X
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
Service App Service.exe
X
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
Windows startup service service.exe
X
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
Microsoft Coyshader Runtime service.exe
X
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
systr2 SERVICE.exe
X
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
Windows smss service service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
Clean up service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
Service Configurator service.exe
X
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
Microsoft Update service.exe
X
Added by the W32/Agobot-GY worm and IRC backdoor.
PsY service.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
Windows Logon Service service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsServices service.exe
X
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
Windows Net Cfg service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MDNS service.exe
X
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
Network Services Service.exe
X
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Windows svchost service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Updates service.exe
X
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
Windows Helper service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsHelpService service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Messenger Service service.exe
X
Added by the Troj/Dloadr-BVG Trojan.
WinDLL (service.exe) service.exe
X
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
updater23 service.exe.js
X
Added by the JS/Uragon-A javascript worm.
Service Service.pif
X
Added by the W32/Assiral-C email worm.
sb0t service1.dll
X
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
Service2 Service2.exe
X
Identified as a variant of the Backdoor.Win32.Iroffer malware.
ProcService service32.dll
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
service32 service32.exe
X
Added by the W32/AGOBOT-ST WORM! ... Read More
kernel services service32.exe
X
Added by the TROJ/PRX-B TROJAN! ... Read More
Microsoft Service Manager service32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Configuration Loader service5.exe
X
Added by the GAOBOT.AF WORM!
MS Security Hotfix service5.exe
X
Added by the GAOBOT.AG WORM!
WINDOWS SYSTEM service5.exe
X
Added by the W32/Mytob-JF worm and backdoor.
Serve User SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
System SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
pushbot service5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
pushbot service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
MSN service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
Windows svchost servicean.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WinLsass servicec.exe
X
Added by the SCANE WORM!
Bredbandsbolaget servicecenter.exe
Y
Connectivity software for the Bredbands Bolaget ISP.
serviceconnect serviceconnect.exe
X
Added by the AGOBOT.AIR WORM! ... Read More
ServiceHost32 ServiceHost32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
ServiceLayer ServiceLayer.exe
Y
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
USB Device servicelog.exe
X
Added by the WOOTBOT.CB WORM!
wind logd file servicelogd.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Service Manager SERVICEMGR.EXE
X
Added by the W32/PassMail-D worm.
Microsoft Servicez Manager servicemgrz.exe
X
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Service Monitor servicemon.exe
X
Added by the W32/Tilebot-GH worm and IRC backdoor.
System Service servicent.exe
X
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
[Various Names] Serviceprocess.exe
X
Part of the Wareout infection as described here.
.Prog services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
BuildLab services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
ccApps services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
FriendlyTypeName services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
golumm services.exe
X
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Microsoft Services services.exe
X
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Microsoft Visual SourceSafe services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
MSOffice services.exe
X
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
RegDone services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Service services.exe
X
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
Services services.exe
X
Added by a number of VIRUSES, WORMS and TROJANS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
Services Process services.exe
X
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
Services.EXE services.exe
X
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
services.exe Services.exe
X
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
sysinit services.exe
X
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
System Update2 services.exe
X
Added by the AUTOTROJ-C TROJAN!
TEXTCONV services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
WMAudio services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Xpsystem SERVICES.EXE
X
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
xpsystem services.exe
X
CoolWebSearch parasite variant
xp_system services.exe
X
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Norton Auto-Protect SERVICES.EXE
X
Added by the Anker e-mail WORM!
Windows Service SERVICES.EXE
X
Added by the Anker e-mail WORM!
RPCserv32 SERVICES.EXE
X
Added by the MyDoom.AN WORM! File is found in the Windows directory.
Services Startup services.exe
X
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
Services Logon services.exe
X
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
{357AA41A-B7A8-4632-A27D-5B980B25CF43} services.exe
X
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
SuperBar.Component services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
AdRotator.Application services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
xp_system services.exe
X
Added by the Adware.CWSConyc hijacker.
run services.exe
X
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
_SystemCheck services.exe
X
Added by the W32/Sober-M WORM!
WinStart services.exe
X
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
golum services.exe
X
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
_winstart services.exe
X
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
_SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
SysService SERVICES.EXE
U
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
Windows Service Controller services.exe
X
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
WSVCS SERVICES.EXE
U
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
Microsoft Service Controller services.exe
X
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
RPCserv32g services.exe
X
Added by the W32.Bobax.AA mass-mailing worm.
Events services.exe
X
Added by the Backdoor.EggHead backdoor.
NTSet32 services.exe
X
Added by the Troj/WinSpy-C Trojan.
NetBios Ext services.exe
X
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
NetBios Ext32 services.exe
X
Added by the W32.Mydoom.AN@mm worm.
Torjan Program services.exe
X
Added by the W32.Autex.C shared folder/drive worm. This should not be confused with the legitimate Microsoft file located in the Windows %System% fold ... Read More
Services services.exe
X
Added by the W32.Mydoom.CI@mm mass-mailing worm.
WinINet services.exe
X
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:

c:\WINDOWS\ConnectionStatus\netslot.n ... Read More
_WinINet services.exe
X
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:

c:\WINDOWS\ConnectionStatus\netslot. ... Read More
_WinCheck services.exe
X
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
WinCheck services.exe
X
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
_Windows services.exe
X
Added by the W32.Sober.X@mm mass-mailing worm.
RPCser32g services.exe
X
Added by the W32/Ritdoor-C worm and backdoor Trojan.
Net services.exe
X
Added by the Troj/Bravo-C Trojan.
Microsoft Windows Update Service services.exe
X
Added by the W32/Tilebot-DJ worm and IRC backdoor.
winsrv3 services.exe
X
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
upDpacketo services.exe
X
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
Dual services.exe
X
Added by the Troj/Dloadr-SJ Trojan. This file should not be confused with the legitimate Microsoft file C:\Windows\System32\services.exe. ... Read More
Services Control Manager services.exe
X
Added by the Troj/Delf-CG. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\service.exe. ... Read More
AolSoftware services.exe
X
Added by the W32/Tilebot-FA worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\servic ... Read More
Microsoft Windows HelpFile services.exe
X
Added by the W32/Tilebot-FQ worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\servic ... Read More
Microsoft (R) Windows Protected Content Restoration Service services.exe
X
Added by the BKDR_AGENT.AGV backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\System32\services.exe. ... Read More
NTFS Storage services.exe
X
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file c:\Windows\System ... Read More
Servicesara services.exe
X
Added by the W32/Brontok-BS worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
Servicerepclient1 SERVICES.EXE
X
Added by the W32/Brontok-BT worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
VideoDriver32 services.exe
X
Added by the Troj/WinSpy-K backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
Services an controller-settings services.exe
X
Added by the W32/Tilebot-HY worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe.
... Read More
Themes Plug and Play services.exe
X
Added by the W32.Dizan.C virus. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. W32.Dizan.C is a viru ... Read More
_WinData services.exe
X
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
WinData services.exe
X
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
Windows Host Services services.exe
X
A variant of the IRCBot family of backdoor worms.
Service Controller services.exe
X
Added by the W32/Sdbot-DDT worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
LiveUpdate32 services.exe
X
Identified as Backdoor.Win32.VB.bau. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
AutoAdministrator SERVICES.EXE
X
Added by the W32/Punya-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
ServicesAdministrator SERVICES.EXE
X
Added by the W32/Punya-B worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
DHCP32 services.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Microsoft Himu services.exe
X
Added by the W32.Himu.A@mm worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
xem services.exe
X
Identified as a variant of the Trojan-Downloader.Win32.CWS.am downloader Trojan. This infection should not be confused with the legitimate C:\Windows\ ... Read More
JavaLOG services.exe
X
Identified as the Backdoor.IROffer variant malware.
Mims service services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
Services Management services.exe
X
Identified as the Backdoor.Rizo.A malware.
Windows Services Registry services.exe
X
Identified as a variant of the Trojan.Win32.Agent.axx malware. This infection should not be confused with the legitimate C:\Windows\System32\services ... Read More
AutoUpdate32 services.exe
X
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
Flash Player2 services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
ValueX services.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
NAVUpdater32 services.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.WinSpy.l malware. ... Read More
Flash Media services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Srv32Win services.exe
X
Added by the TROJ_DLOADER.UEF Trojan. This infection should not be confused with the legitimate C:\Windows\System2\services.exe file. ... Read More
ConfigVir services.exe
X
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
runservices services.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Small.qo malware. This infection should not be confused with the legitimate C:\Windows\System32\serv ... Read More
[system] services.exe
X
Identified as a variant of the W32.Mandaph worm.
Amie Release V6.9D services.exe
X
Added by the Troj/VB-EAN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Guard Service services.exe
X
Added by the Internet Antivirus Pro rogue anti-malware program.
ServiceAdministrator SERVICES.EXE
X
Added by the W32.Korron.B worm. W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible dr ... Read More
<not used> services.scr
X
Added by the W32.Odelud worm. W32.Odelud is a worm that spreads via network shares and removable media and may infect executable files. ... Read More
Windows Startup services21.exe
X
Added by the AGOBOT-MX WORM!
Sygate Personal Firewall Start services32.exe
X
Added by the RBOT-MB WORM!
system32.exe services32.exe
X
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
Service Sequence services32.exe
X
Added by the W32/Tilebot-C worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
services32.exe services32.exe
X
Added by the W32/Forbot-FN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
microsoft system debug services32.exe
X
Added by the RBOT.AKH WORM! ... Read More
wins update 32 services32.exe
X
Added by the W32/Forbot-FN ... Read More
services32 services32.exe
X
Added by the W32/Esbot-B worm and IRC backdoor.
Win Services Services32.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
System33 services33.exe
X
Added by the W32/Rbot-VQ worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
win32serv servicesetup.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
Configuration Loader Servicess.exe
X
Added by the GAOBOT.AO WORM!
services.exe servicess.exe
X
Added by the Troj/MSNSpy-B password stealing Trojan.
Microsoft servicess.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
System Service servicess.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSN servicess.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
<not used> Servicess.exe
X
Identified as a variant of the Worm.IM.Sohanad worm.
servicestub.exe servicestub.exe
X
Identified as a the Backdoor.Win32.DsBot.mu MSN worm.
usbdrv servicetask.exe
X
Added by a variant of the SDBOT WORM!
Microsoft Update Machine servicez.exe
X
Added by the SPYBOT.BI WORM
System Service servicez.exe
X
Added by the W32/Rbot-AOY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Serices Hostin servicez.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services servicez.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
servico servico.exe
X
Added by the Troj/Banker-DKE Trojan. Troj/Banker-DKE includes functionality to send notification messages to remote locations. ... Read More
servico2 servico2.exe
X
Added by the Troj/Banker-DTB banking Trojan.
ASP.NET State Service servicos..exe
X
Added by the Troj/Dadobra-I downloader Trojan.
servics servics.exe
X
Added by the Troj/Singu-J password stealing backdoor trojan.
k3ym4n servicsmjr.exe
X
Added by the W32/Rbot-RW worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
Microsoft Update Machine servicz.exe
X
Added by the RBOT-HU WORM!
ryan1918 servidevice.exe
X
Added by the W32/Checkout!0e4a3c52 mass-mailing worm.
Net Login serviecs.exe
X
Added by the Troj/Bckdr-QSV backdoor Trojan.
Windows Server Information servinfo.exe
X
Added by the W32/Forbot-EN WORM/IRC backdoor Trojan, which also starts a new service "Windows ExplorerTM" with a display name of "Windows Server Infor ... Read More
Windows ExplorerTM servinfo.exe
X
A service initiated by the W32/Forbot-EN, with a display name of "Windows Server Information" on NT systems. ... Read More
ashcap servirsess.exe
X
Added by the Spyware.SpySure Spyware. Spyware.SpySure is a spyware program that may steal sensitive information from the computer. ... Read More
servisec servisec.exe
X
Added as a new service by the Troj/Xrat-B TROJAN, using a displayname of the same. ... Read More
Windows Servser serviser.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WINDOWS SYSTEM servises.exe
X
Added by the W32/Zotob-I worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
servises servises.exe
X
Added by the Troj/Agent-JUJ Trojan.
microsoft update machine serviz.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
servlce SERVlCE.EXE
X
Added by the W32/Agobot-UB ... Read More
SVCHOST SERVlCES.EXE
X
Added by the Troj/Delf-LF backdoor Trojan.
blah service servoxt.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
Service Restore Panels servpanel.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Mirsft sdce servs.exe
X
Added by a variant of the Rbot worm and IRC backdoor.
[unknown name] SERVSYS32.EXE
X
Added by the W32/Sdbot-KQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Serv-U FTP Server ServUDaemon.exe
X
Added by the Troj/Bdoor-ABW backdoor Trojan. This program is actually a legitimate program that is bundled with the malware. If it was not installed ... Read More
Windows USB Monitor servupdate.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
ServUTrayIcon ServUTray.exe
?
System Tray icon for Serv-U FTP server. Is it required?
System Service servza.exe
X
Added by the W32/Rbot-CRG worm and IRC backdoor.
System serwin.exe
X
Added by the Troj/LdPinch-BN password-stealing and backdoor trojan.
session client sescli.exe
U
SurfSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
Systems sescmgr.exe
X
Added by the Troj/DwnLdr-GAH download Trojan.
PPK Setup(Server) SEServe.exe
U
Programmable Power Key on Sony Vaio laptops. "Using the Programmable Power Key (PPK) button, collect your e-mail automatically with one key stroke. Yo ... Read More
Windows NT Session Manager sess.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
irc session sessionmgr.exe
X
Added by the SDBOT-ACE WORM!
QWS3270 Sessions sessions.exe
U
QWS3270 Secure terminal emulation software
Remote Desktop Help Session Manager sessmgr.exe
U
Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Depen ... Read More
Session Manager sessmngr.exe
X
Added by the Troj/Theef-F backdoor Trojan.
SES Service sesvc.exe
X
Added by the W32/Sdbot-CZU worm and IRC backdoor.
HPLJ Config SetConfig.exe
Y
Connects system to networked HP printer.
Update local SetCPQLC.exe
?
Running on a Compaq desktop. Any ideas?
CentralCrSr SetCrSr.exe
X
Added by SetCursor. SetCursor is an application that moves the cursor into the middle of the screen after the computer is resumed from being suspended ... Read More
Microsoft« ActiveX Debugger NT setdebugnt.exe
X
Added by the Troj/Bancos-CZ Internet banking trojan. This infection targets Brazilian banks. ... Read More
Microsoft ActiveX Debugger NT setdebugnt.exe
X
Added by the Troj/Bancos- Trojan. If you are infected with this infection you should immediately change all passwords to any online banking sites tha ... Read More
setdefprt setdefprt.exe
N
Sets the Brother Printer to be the default printer after installation of the printer software. ... Read More
UniPrint SetDfltSettings.exe
U
Drivers for Uniprint, a printing help for Terminal Services and Citrix which recieves downloaded files from a Uniprint enabled server and prints them ... Read More
GammaHotKeys setgamma.exe
U
Part of the RadeonTweaker program for adjusting ATI Radeon graphics cards. Allows you to adjust the gamma (or brightness) when playing a full-screen g ... Read More
MediaFace Integration Sethook.exe
N
Fellowes Neato™ cd label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
SetHook SetHook.exe
N
Fellowes Neato CD label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
SETI@home SETI@home.exe
N
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
seticlient SETI@home.exe
N
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
SetIcon SetIcon.exe
N
Installed by a 6-in-1 (4 Media Card slots, a floppy drive and a USB connection) device. Constantly updates the icons for the four Media Card slots tha ... Read More
SetiQueue Setiqu~1.exe
N
Provides work unit buffering for Seti@Home clients - see here for more details
SetiSpy SetiSpy.exe
N
From the site - 'SETI Spy is a little program I wrote to "spy" on the progress and performance of the SETI@home client. I call it a "spy" because I tr ... Read More
SetPoint SetPoint.exe
X
Added by the W32/Rbot-BWI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
SetPoint SetPoint.EXE
U
Logitech keyboard and mouse drivers that allows you to configure and enable special features of your mouse and keyboard. This startup is only require ... Read More
SetPoint.exe SetPoint.exe
X
A variant of the Bck/Sdbot.LBM family of worms and IRC backdoor Trojans.
Microsoft Update SetPoints.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
PowSet Setpow.nec
U
Energy Start (Energy Star) power configuration startup settings for certain Packard Bell computers. ... Read More
SetRefresh SetRefresh.exe
?
Found on a Compaq PC. Video refresh rate utility? Is it required?
unsrvc setrysrvc.exe
X
Added by the Troj/Bancos-BDW banking Trojan.
InstallNAIProduct SETUP.EXE
?
Could be related to Network Associates Inc who own the McAfee VirusScan product amongst others. This was found in a directory called "VSC". Could it b ... Read More
MM Install setup.exe
?
Possibly Money Manager from Moneysoft?
RjLyraInstaller setup.exe
?
??
Tango Setup.exe
?
Tango Broadband access software. Is it required?
Windows Accelerators setup.exe
U
KeySpy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" ... Read More
zzzhpsetup setup.exe
?
??
rmalt Setup.exe
X
Added by the Troj/Clicker-CS Trojan.
Setup Setup.exe
X
Identified by BOClean as Trojan GMTER.
reg_del setup.exe
X
Added by the Troj/Bdoor-BDT backdoor Trojan.
setup.exe setup.exe
X
Added by the Troj/Goldun-GB Trojan.
Windows LoL Layer setup.exe
X
A variant of the Backdoor.Win32.Rbot.dnd family of worms and IRC backdoor Trojans. ... Read More
Setup.exe
X
Added by the Trojan.Win32.VB.boo Trojan.
MCAFEEIPS setup.exe
X
Added by the Trojan.Whitewell Trojan. Trojan.Whitewell is a Trojan horse that opens a back door on the compromised computer. ... Read More
zzzCamlnSuitelll setup.exe 46***
?
??
setup2.exe setup2.exe
X
Added by the WiniBlueSoft rogue anti-spyware program.
[not used] setup32.exe
X
Added by the W32/Rbot-AFJ worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
{6211D3F0-B61E-D9E3-2088-F6286B0D22AC} setup40.exe
X
A variant of the Bifrose Trojan.
Highspeeddownloader SetupClickHere.EXE
X
Added by a variant of the Trojan.StartPage malware. When infected with this program, your Internet Explorer home page will be hijacked to turbo-searc ... Read More
C:\WINDOWS\system32\SetupCmd.exe SetupCmd.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.aww Trojan.
[Various Names] SetupExeDll.exe
X
Part of the Wareout infection as described here.
MemConfig SetupIE.com
X
Added by the TAPLAK WORM!
winphonics7536 setups.exe
X
Added by a variant of the MUTIN-C TROJAN!
Wireless Zero Configuration WZCSVCRpcLocator Setupw.exe
X
Added by the Troj/Kango-F Trojan.
<not used> setup_.exe
X
Added by the Troj/KGSpy-A key logging and information-stealing Trojan.
win32 Setup_32.exe
X
Added by the EVILBOT.B TROJAN!
Windows Setup_ver1.1400.0.exe
X
Identified as a variant of the FakeAlert/Fraudload Downloader malware.
setuzp setuzp.exe
?
??
_Setv Setv.com
X
Added by the W32.Besam worm.
Windows secure setver32.exe
X
Added by the SPYBOT.EP WORM!
SetVrc setvrc.exe
X
Added by the HUNTOCX WORM!
cof.updit Seurit.exe
X
Identified as a Trojan Downloader.
sevenlink sevenlog.sys
X
Added by the Trojan.Sevensaw Trojan.
Sevenlink Sevenlog.sys
X
Added by the Troj/Agent-GIR Trojan.
SevenSword Service SevenSowrdSvr.exe
X
Added by the Trojan.Sevensaw Trojan. Trojan.Sevensaw is a Trojan horse that drops a keyboard filter driver to log keystrokes and sends the stolen info ... Read More
SevenSword Service SevenSowrdSvr.exe
X
Added by the Troj/Agent-GIR Trojan.
alligt severe.exe
X
Added by the W32.Slurk.A worm. W32.Slurk.A is a worm that copies itself to all removable and shared drives, and drops other threats on to the comprom ... Read More
jusodl severe.exe
X
Added by the Troj/QQRob-ADM Trojan.
Windows Services Operation sevices.exe
X
Added by the W32/Sdbot-DNO worm and IRC backdoor.
Configuration Servecie sewins.exe
X
Added by the W32/Sdbot-COH worm and IRC backdoor.
{9B71D88C-C598-4935-C5D1-43AA4DB90836} sex.exe
X
Added by the Troj/Agent-GLW Trojan.
Microsoft Synchronization Manager sexcam.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
hsim sexgame.exe
X
Unidentified malware
Sexnow Sexnow.exe
X
Added by the Dial/Senow-B premium rate porn dialer.
INF0 SEXSPEED.EXE
X
Added by the Troj/Sexspeed trojan.
Sygate Personal Firewall sexy.exe
X
An Rbot WORM variant adds the file to download additional files, steal CD keys and become involved in DoS attacks via an IRC channel and remote attack ... Read More
MSN SexyMama.JPG.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SystemTasks sexypicz.exe
X
Adult content dialler
sexy_blondes Sexy_Blondes.exe
X
Added by the Porn.Dialer.Sexy Key Logger ... Read More
Sexy_ca Sexy_ca.exe
X
Added by the GMSoft Porn Dialer.
Sexy_dk Sexy_dk.exe
X
Added by the GMSoft Porn Dialer.
Sexy_es Sexy_es.exe
X
Added by the GMSoft Porn Dialer.
Sexy_gb Sexy_gb.exe
X
Added by the GMSoft Porn Dialer.
Sexy_it Sexy_it.exe
X
Added by the GMSoft Porn Dialer.
Sexy_sg Sexy_sg.exe
X
Premium rate adult content dialler
sf sf.exe
X
Added by the WIN32.FAVADD.O TROJAN!
Safeguard 2009 sf2009.exe
X
Added by the SafeGuard 2009 rogue anti-spyware program.
spamfighter agent SFAgent.exe
U
SPAMfighter anti email spam filter ... Read More
cftmon sfcmonit.exe
X
Identified as a variant of the Backdoor.Win32.Agent.erg malware.
Update sfcnmdd.exe
X
Added by the Troj/PPdoor-AS backdoor Trojan.
[not used] sfcrt20.exe
X
Added by the Troj/PPdoor-AP backdoor Trojan.
Files Driver sfdhost.exe
X
Added by the W32/Agobot-AJC worm.
StarForce Protection Environment Driver (version 1.x) sfdrv01.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
Audio Device Manager sfhgj.exe
X
Added by the W32/IRCBot-ZA worm and IRC backdoor.
StarForce Protection Helper Driver (version 2.x) sfhlp02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
SonicFocus SFIGUI.EXE
Y
Added by the SonicFocus music and audio enhancer.
sfita sfita.exe
X
Added by the FAVADD.O TROJAN!
sfool.exe sfool.exe
X
Added by the W32.Randex.EUS worm.
mssfos sfool.exe
X
Added by the W32.Randex.EUS ... Read More
sfpc sfpc.exe
U
Spy4PC is a spyware program that monitors user activity, logs keystrokes, and takes screenshots. If you didn't install this yourself remove it. ... Read More
Microsoft PC Health Remote Assistance File Open & Save controls sfrcdlg32.exe
X
Added by the W32/Rbot-AVY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
StarForce Protection Synchronization Driver (version 2.x) sfsync02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
StarForce Protection VFS Driver (version 2.x) sfvfs02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
SfWinStartInfo sfWinStartupInfo.exe
U

SFIRM32 Online Banking software

sm sf_exe.exe
X
Added by the OLFEB.A TROJAN! ... Read More
Sgecrypt Sgecrypt.exe
U
SafeGuard Easy - "provides total company-wide protection for sensitive information on laptops and workstations. Boot protection, pre-boot user authent ... Read More
sginst sginst.exe
N
eAcceleration Stop-Sign related - not recommended, see note
SpywareGuard sgmain.exe
U

"SpywareGuard provides a real-time protection solution against spyware"

Screen Guard Message Scan sgms.exe
U
Part of Access Denied security and privacy software
chicot sgntu.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
MSRegScan SGP.exe
U
Added by the Spyware.SpyGator surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
SyGateService sgserv95.exe
U
SyGate is a useful little program that lets you share an internet connection over an intranet. Is it needed - it saves a lot of headache to just let S ... Read More
SysCom Sgt.sys.vbs
X
Added by the VBS/Sasan-M worm.
SGTBox SGTBox.exe
?
Canon scanner driver. Is it required?
sgtray sgtray.exe
U
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
StorageGuard sgtray.exe
U
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
UpdateManager sgtray.exe
U
StorageGuard from Veritas (this version by Sonic). Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS ... Read More
hp center UI ShadowBar.exe
X
User Interface for HP Center
[Various Names] Shaitan1678.exe
X
Part of the Wareout infection as described here.
Registry ShakiraPics.jpg.vbs
X
Added by the VBS.VBSWG.AQ@mm worm.
win32 Shakira_1997_Part_1_.Mpeg_.scr
X
Added by the MYLIFE.N WORM!
{1A6C58F2-CB1A-3465-158C-AB34A8FC14F1} shaman.dll
X
Identified by Kaspersky as the Trojan-Spy.Win32.Delf.aan password-stealing Trojan. ... Read More
load= shambl3r.exe
X
Added by the REMABL WORM!
shambl3r* shambl3r.exe
X
Added by the REMABL WORM! where * is 2 to 11
(Default) Shania.vbs
X
Added by the SHANIA TROJAN!
shania Shania.vbs
X
Added by the SHANIA VIRUS! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to laun ... Read More
SHAProc SHAProc.exe
X
Added by the Trojan.OnlineGames.Gen.71 password-stealing Trojan.
Shareaza Shareaza.exe
N
Shareaza P2P client
{E996F10E-FCAF-41CC-94C8-B8BF7D6F80AC} sharec32.dll
X
Added by the Troj/Lineag-BAA password-stealing Trojan for the online game Lineage. ... Read More
sharedprem sharedprem.exe
X
Added by the MAKECALL TROJAN!
{B998557E-B478-4547-888B-5666C6BEB1DB} sharex32.dll
X
Added by the Troj/Asmado-C downloading Trojan.
ycnbsdgv Shari.sys
X
Added by the Troj/Agent-GHB Trojan.
sharK Server SharKServer.cmd
X
Added by the Backdoor.Shark!sd5 backdoor. This infection uses Alternate Data Streams to hide itself. In order to remove these files you will need to ... Read More
[various names] shch.exe
X
Premium rate adult content dialler
SvcH0st SHCH.EXE
X
Added by the TROJ/BDOOR-EB TROJAN!
MsnExplorer SHCH.EXE
X
Added by the TROJ/BDOOR-EB TROJAN
quicktime shch.exe
X
Added by a variant of the TROJ/BDOOR-EB TROJAN! ... Read More
SheduIer shch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
<not used> shchostv.exe
X
Unidentified malware.
SMshclkrj0etfg shclkrj0etfg.exe
X
Added by the Malware Protector 2008 rogue anti-spyware program.
shdde shdde.exe
X
Added by the Backdoor.Masteseq backdoor.
shdef shdef.exe
X
Added by the Troj/VB-DVS information stealing Trojan.
shdll shdll.dll
X
Added by the Troj/Bckdr-DBQ Trojan.
fhpage shdochp.exe
X
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
fhstart shdocsvc.exe
X
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
shdosbei shdosbei.dll
X
Added by the Email-Worm.Warezov!sd5 worm.
frguk shdrkmck.exe
?
??
SHDSERV shdserv.exe
U
Added by the RollBack Rx system restore program.
Windows Shell shell.exe
X
Added by the W32/Mytob-CA worm.
command shell12.exe
X
Added by the Backdoor.Ghoice.12 backdoor. This infections listens on TCP port 1001. ... Read More
System Icons shell16.exe
X
Added by the W32/Sdbot-VD WORM! Found in the Windows system folder.
Secure32 Shell32.com
X
Added by the W32/Brontok-CJ worm.
LTSMSG Shell32.exe
X
Added by the LEMIR.B TROJAN!
Shell Shell32.exe
X
Added by the BADSECTOR TROJAN!
Default shell32.exe
X
Added by the BINGHE backdoor Trojan! It has the ability to log your keystrokes, steal data, and execute commands. ... Read More
Microsoft Windows Explorer Shell Subsystem shell32.exe
X
Added by the W32/Tilebot-CX worm and IRC backdoor.
Micosoft Data Core shell32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Shell32 Shell32.vbs
X
Added by the VBS.Scafene WORM!
Shell32 shell32dll.exe
X
Added by the Troj/Banloa-BKV Trojan.
Shellapi32 Shellapi32.exe
X
Added by the NETDEVIL (or NERTE) TROJAN!
MicrosoftShell Shellcomm.exe
X
Added by the Troj/Bancban-QG Trojan.
Shelldaemon Shelldaemon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
{15A74989-5015-B6D4-0008-080602010204} shelldrv.exe
X
Added by the Troj/Bckdr-QHJ backdoor Trojan.
ShellEx ShellEx.exe
X
Added by the ANAKHA TROJAN!
SMSERIALWORKERSTART shellexcon.exe
X
Trojan installed with the SpyBurner rogue anti-spyware program.
shell update shellexec.exe
X
Added by the W32/Rbot-ANC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} shellexecutehook.dll
Y
Part of AVG Anti-Spyware 7.5.a.
Explorer shellexp.exe
X
Added by a variant of the SHELDOR TROJAN!
Explorer shellexpl.exe
X
Added by the GPIX and SHELDOR VIRUSES!
AntiMalwareSuite Shell Hook shellext.dll
X
Added by the AntiMalwareSuite rogue anti-spyware program.
AntiMalwareSuite Shell Hook shellext.dll
X
Added by the PCAntiMalware rogue anti-spyware program.
ShellApi SHELLMSN.EXE
X
Added by the NETDEV.B TROJAN!
shellservice ShellService.dll
U
Added by the WebWatcher surveillance tool. This program should be removed if it was not installed by yourself. ... Read More
Shell Software Detection shellsw.exe
X
Added by the W32/Tilebot-HR worm and IRC backdoor.
shellsystem shellsystem.exe
X
Added by the UPCHAN TROJAN!
Shell Tray Window ShellTraywnd.exe
X
Added by the Troj/Stultdor-A backdoor trojan.
shhost shhost.exe
X
Added by the BACKDOOR.WIN32.AGENT.CE TROJAN! ... Read More
shicoxp shicoxp.exe
N
Installed with the drivers for multi card readers of various brands. To differentiate between the various card slots on multi slot readers the shicoxp ... Read More
spyware shield Shield.exe
U
Acronis Privacy Expert Spyware_Shield prevents spyware and other suspicious programs from being installed on desktop PCs and laptops. ... Read More
Shield Security shield.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
Shield32 Security shield32.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
ShieldSafeness ShieldSafeness.exe
X
Added by the ShieldSafeness rogue anti-spyware program.
Shine Shine.exe
X
Added by the HAPPYLOW (or NISHE-A) VIRUS!
Tiger Shine.exe
X
Added by the HAPPYLOW (or NISHE-A) VIRUS!
SHINITV shinitv.exe
?
??
game shit.exe
X
Added by the Netclap Gold backdoor TROJAN!
{H8I22RB03-AB-B70-7-11d2-9CBD-0O00FS7AH6-9E2121BHJLK} shit.vbs
X
Added by the W32/Autorun-XV removable media worm.
WinSrv SHIZZLE.EXE
X
Added by the HOBBIT.C WORM!
aposiopetic shlahsd.dll
X
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your compute ... Read More
Battery Monitor shlapiw32.dll
X
Added by the Troj/Delf-BPC Trojan.
Panda File Shield Driver ShlDrv51.sys
Y
Driver used by Panda Antivirus.
shellbn shlext32.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
QTSvc shman.exe
X
Premium rate adult content dialler
SystemService shman.exe
X
Premium rate adult content dialler
navcheck shman.exe
X
Adult material premium rate dialer
<not used> shmedia.exe
X
Added by the BKDR_AGENT.VBI backdoor.
Sub Connections shmyga.exe
X
Added by an unknown Trojan Downloader. It installs itself as a service with a servicename of Pro. Shmyga.exe is located in the Windows system folder. ... Read More
paint.exe shnlog.exe
X
Added by the Troj/Puper-A trojan.
ShockMgr ShockMgr.sys
Y
Driver related to the IBM Active Protection System that protects installed hard drives. ... Read More
Shockprf Shockprf.sys
Y
Related to the IBM Thinkpad Active Protection System.
sahbundle shop1003.exe
X
ShopAtHomeSelect adware ... Read More
ShortKeys 99 SHORTKEY.EXE
N
ShortKeys from Insight Software Solutions - allows you to program keys with text strings ... Read More
hellodolly shost.exe
X
Added by the YODO WORM!
Services Hosts shost.exe
X
Added by the W32/Rbot-AXG worm and IRC backdoor.
Windows Automatic Updater shost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
rpc Win32 shost32.exe
X
Added by the W32/Rbot-ABL worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
shotkey sHotKey.exe
Y
Related to Chicony_Keyboards It manages the special key functions such as Internet, E-mail, Volume Control and more. Found in Sony's computer and pos ... Read More
SHOVE SHOVE.exe
X
Added by the Troj/Agent-EOM Trojan.
Showbehind SHOWBEHIND.EXE
X
Advertisement display which can be stopped here
ShowFF ShowFF.exe
X
Added by the Adware.FFToolBar adware toolbar.
Cyber Trio showmode.exe
U
From G-Tek Technologies. Allows you to set the PC in one of three modes, Standard, Enhanced and Kiddo. Standard is full function, Enhanced prevents ac ... Read More
showwnd ShowWnd.exe
U
Showwnd is included with the Chicony keyboard software and is used by the software to stop the keyboard driver's taskbar entry from reappearing. This ... Read More
SHPC32 SHPC32.exe
U
Port monitor for Lexmark printers on a USB connection. Ties in with the Printer Control Program. Features like cancelling a print are unavailable if d ... Read More
Syncronization Task shrhost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Micosoftartup shrl.exe
X
Added by the W32/Sdbot-JQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
RHSI SHS SHS.exe
N
Rogers Hi-Speed Internet software. "Should you ever lose access to your Rogers Hi-Speed Internet connection or e-mail, the Self-Healing Software (SHS. ... Read More
ShStatEXE SHSTAT.EXE
Y
From McAfee VirusScan NT 4.x. Handles program communication among VShield components, displays VShield icon. Can be started automatically or available ... Read More
Windows Task Scheduler shtasks.exe
X
Added by the W32/Tilebot-EB worm.
GrayPigeon_Hacker.com.cn shun101.exe
X
Added by the Troj/Hupigon-SX Trojan.
Windows Update 63 shupd64.exe
X
Added by the W32/Forbot-GA backdoor worm.
Windows Update 63 shupd64.exe
X
Added by the W32/Forbot-GA backdoor worm.
Shutdownaware shutdownaware.exe
U
Loaded by the SWEEX 6-in-1 Media Card Reader to properly manage the reader while it is connected to your system ... Read More
ShutDownPro ShutDownPro.exe
U
ShutDownPro - shutdown, reboot, logoff your System with one mouse click
Microsoft Agent shvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
protect SHVRTF.EXE
U
PC_Angel takes a 5-second snapshot of the current system registry each time the PC boots up. In the event of a crash, PC ANGEL will retrieve everythin ... Read More
ShowIcon_SmartDisk Corporation_USB Card Reader v1.14e051 shwicon.exe
?
Card reader for memory cards from digital cameras. Is it required?
kye_showicon shwicon.exe
?
USB Card Reader tray icon. Shows when the device is plugged in - is it required? ... Read More
Sunkist2k shwicon2k.exe
U
Card reader for memory cards from digital cameras, etc
Sunkist shwicon98.exe
U
Card reader for memory cards from digital cameras, etc
sunkistem shwiconem.exe
U
Used by your computer to communicate with your Alcor_Micro Multimedia Card Reader - necessary if you're using this software ... Read More
File-Sharing Wizard shwizard.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services 32 shzhost.exe
X
Added by the Troj/SdBot-DNX worm and IRC backdoor.
siapro6 sia.exe
U
Steganos Internet_Anonym privacy software ... Read More
Windows Update SICB2.exe
X
Added by the Troj/Banker-DAC Trojan. Troj/Banker-DAC attempts to steal confidential information entered into online banking websites. ... Read More
Adline Ssystem sichost.exe
X
Added by the Trojan-Dropper.Win32.Small.hy Trojan. This Trojan is designed to install and launch other programs on the victim machine without the user ... Read More
Sicom Sicom.exe
X
Added by the NETLIP WORM!
SideACT SideACT.exe
U
SideACT organizer software
Sidebar Sidebar.exe
X
Searchcentrix hijacker
Sidebar sidebar.exe
U
The Windows Vista sidebar that allows you to add gadgets, rss feeds, and other information. ... Read More
{78847374-8323-FADC-B443-4732ABCD3787} sidjgzy.dll
X
Added by the PWS-OnlineGames.i password-stealing Trojan.
Sid Meier's Alpha Centauri Planetary Pack sidmeier.exe
X
Added by the W32/Vanebot-Q worm and IRC backdoor.

W32/Vanebot-Q spreads
to other network computers by exploiting common buffer o ... Read More
Install Pending Files sifxinst.exe
?
Uninstall program for Lanovation's Prism Deploy and Prism Pack adminstrators software deployement tools. For specific information see here. Is it requ ... Read More
TV_Path sigmatv.exe
Y
Sigma TV Card driver.
SigX sigx.exe
?
??
SigXC SigX.exe
X
SigX is a "dynamic signature image generated based on whatever data your computer sends it though our SigX program. It can display your current Mp3, c ... Read More
Java SATARaid siicfg.jar
U
This starts the Silicon Image SATA RAID array utility - useful if you use a Silicon Image SATA RAID controller. ... Read More
armillifer siiyal.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
Compaq Knowledge Center silent.exe&matcli.exe
U
"matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, sta ... Read More
SilentSoftech SilentSo.exe
X
Added by the W32/Autorun-ANU removable media worm.
Simcast SimcastAlerts.exe
N
Simcast is a free service that allows you to subscribe to information on a large variety of topics. Alerts will appear on your desktop when a channel ... Read More
cpntmgc simcss.exe
X
MagicControl downloader trojan variant
apyginapygin simenu.exe
X
Added by the SDBOT.BTR WORM! ... Read More
sakemsneql simenu.exe
X
Added by the SDBOT.BTO WORM! ... Read More
Si Meter SIMETER.EXE
?
??
SimpLite-MSN SimpLite-MSN.exe
U
Required if you use the SimpLite add-on to MSN Messenger (SimpLite adds encryption to the instant messaging service) ... Read More
scoupa sincra.exe
X
Added by the W32/Sdbot-ST worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
Singapore singapore.exe
X
Adds a blue crescent to the taskbar and when double-clicked displays an adult-content web-site. Also known to drop your internet connection and dial a ... Read More
SIPPS SIPPS\SIPPS.exe
U
Web.de Internet phone utility
System sipu.exe
X
Unknown malware.
SISAM10M SISAM10M.exe
?
??
sis7012utility SiSAudUt.exe
Y
SiS Corporation sound card driver
<not used> sisbmsxb.dll
X
Added by the W32/Stration-H mass-mailing worm and backdoor Trojan. W32/Stration-H spreads by sending emails with itself as an attachment to email addr ... Read More
siService.exe siService.exe
U
Spam Inspector - anti email spam software
SiSPower SiSPower.dll
U
Power management program for computers with SiS chipsets.
SiSSetCDfmt SiSSetCDfmt.exe
?
Related to a Silicon Integrated Systems Corp (SiS) product?
SiSSWLED sisswled.exe
U
System Tray utility for SiS 900 network cards
Windows Baþlangýç Dosyasý sistem.exe
X
Added by the MUZK WORM!
sistrai.exe sistrai.exe
X
Added by the PROVA TROJAN!
SiS Tray sistray.exe
U
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
sistray sistray.exe
X
Added by the PROVA TROJAN!
sistray sistray.exe
U
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
Utility Tray.lnk sistray.exe
U
System Tray icon for SiS based graphics.
sistry sistry.exe
X
Added by the CEBE WORM!
SiSUSBRG SiSUSBrg.exe
N
SiS USB Registry Patch File - fixes the undetectable problem with SiS USB controller on Windows XP ... Read More
SiteAdvisor SiteAdv.exe
N
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
<not used> sitta.exe
X
Added by the W32/Hansah-A worm.
{EA26CE12-DE64-A1C5-9A4F-FC1A64E6AC2E} sivudro.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
sixtysix sixtypopsix.exe
X
Unidentified adware
SiZhu SiZhu.exe
X
Added by the TW32/AutoRun-IE removable media worm.
Java Express sjehost.exe
X
Added by the W32/Sdbot-DNJ worm and IRC backdoor.
babblement sjrggq.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
Snow Sk.exe
X
Added by Backdoor.Blizzard
Detect Kbd Daemon SK2000DM.EXE
U
This is a driver for IBM Media Access Pro Keyboard. It's used to map and support various keys on the keyboard. ... Read More
sk51 SK51.EXE
U
SaveKeys keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
sk60 SK60.EXE
U
Added by the SaveKeys surveillance software. Uninstall this software unless you put it there yourself. ... Read More
Hot Key Kbd 2690 Daemon SK9910DM.exe
U
Multimedia keyboard manager - required if you use any special keys
Hot Key Keybd 9910 Daemon SK9910DM.exe
U
Multimedia keyboard manager - required if you use any special keys
SK9910DM SK9910DM.EXE
U
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys ... Read More
666 Ska.exe
X
Added by the PIPES TROJAN!
USB Hub Keyboard Patch SKBPATCH.EXE
?
USB HUB Update
SKDAEMON SKDAEMON.EXE
U
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys  ... Read More
KERNEL 32 SKERNEL32.com
X
Added by the W32/Semapi-A. This mass-mailing worm may display a message: "Unable to locate 'semapi.dll' reinstalling this application may fix this p ... Read More
HalifaxHowardCluster skinkers.exe
U
Howard the Weatherman desktop client from Halifax by Skinkers - marketing/messaging tool. Leave enabled if you want to receive messages ... Read More
skinkers skinkers.exe
U
Selection of desktop messaging/marketing tools with celebrity tie-ins including MTV's "Desktop Ozzy" and Arsenal's "Desktop Wenger" - see here. Leave ... Read More
bbc news alerts skinkers.exe
U
BBC News Desktop Alerts service; see here - The BBC News desktop alert and breaking news e-mail services let you find out about all the latest news a ... Read More
Spy-Keylogger skl.exe
U
Added by the Spyware.SpyKeylogger keylogger. If this was not installed by you, you should uninstall it. ... Read More
sysApp sklgr.exe
U
Added by the Spyware.SuperKeylogger surveillance software. Spyware.SuperKeylogger is a spyware program that monitors and records keystrokes, instant m ... Read More
SKQ skq.exe
X
Added by the W32/VBSilly-D worm. W32/VBSilly-D spreads via file sharing on P2P networks. ... Read More
Skra Skra.exe
X
Identified as a variant of the TrojanDownloader.Matcash malware.
sks2drvr sks2drvr.sys
X
Added by the Backdoor.Haxdoor.G backdoor Trojan.
sks-32 sks32proc.exe
U
Added by the Spyware.SpyKeySpy surveillance software. If you did not install this software you should remove it immediately. ... Read More
sks-32 SKS32P~1.EXE
X
SpyKeySpy logs keystrokes and sends the stolen information to a configurable email address. ... Read More
sksdll sksdll.dll
X
Added by the Backdoor.Haxdoor.F proxy Trojan.
sksdrvr2 sksdrvr2.sys
X
Added by the Backdoor.Haxdoor.F proxy Trojan.
Skunk.exe Skunk.exe
X
Added by the W32/Sunk-A overwriting virus. This virus will copy itself to various locations on your hard drive and then start replacing .exe files on ... Read More
<not used> skuns.dat
X
Fakealert Trojan which shows fake security alerts on your computer.
WINDOWS SKY sky.exe
X
Added by the W32/Mytob-CJ worm. This infection when started connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM skybot.exe
X
Added by the W32.Mytob.EB@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows System skybotx.exe
X
Added by the W32.Mytob.FO@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
skynetave.exe skynetave.exe
X
Added by the SASSER.D WORM!
Skype Startup skyp.exe
X
Added by the W32/VanBot-C worm with IRC backdoor functionality.
Skype Skype.exe
N
"Skype is free and simple software that will enable you to make free calls anywhere in the world in minutes" ... Read More
SkypeStartup Skype.exe
X
Added by the Mal/Pykse-A worm.
Skype Messenger skype32.exe
X
Added by the W32/Dolebot-A email worm and IRC backdoor. This infection also installs the rootkit file rofl.sys. ... Read More
SkyTel SkyTel.exe
U
Program related to the Realtek Voice Manager used by some of their audio chipsets. ... Read More
[Various Names] slamm.exe
X
Part of the Wareout infection as described here.
RA Server Slave.exe
X
Added by the Troj/Bdoor-ABJ backdoor Trojan.
Slayhacker734 slay7383.exe
X
Added by the Troj/SikBot-A IRC backdoor.
slbcmqad slbcmqad.dll
X
Added by the W32/Stratio-BP worm.
slbrmqtr slbrmqtr.exe
X
Added by the WORM_STRAT.EQ mass-mailing worm.
Systems Restart slchost.exe
X
Added by the BANCOS.RF TROJAN!
xcxdsaa7 slcskxsdl7.exe
X
Added by the Troj/OnLineG-K password-stealing Trojan for online games.
Select server slcsvr.exe
X
Added by the Troj/Dloader-WD Trojan downloader.
Steganos Live Encryption Engine (Version 401) [Service] SLEE401.exe
Y
This is part of the Steganos Security Suite and involved in handling real-time encryption. ... Read More
SleepApp sleep32.dll
X
Identified as a variant of the Trojan-PSW.Win32.Delf.bfh malware.
SleepManager SleepMgr.exe
N
This program locates free contiguous disk spaces and allocates them for storing BASE MEMORY, EXTENDED MEMORY, VIDEO MEMORY, and SM RAM. It helps the c ... Read More
SelfHostUtil slefhost.exe
?
??
Microsoft Synchronization Manager slhost.exe
X
Added by the SDBOT.YH WORM!
slimp3 SliMP3 Server.exe
N
Slimp3 Server - "presents an entirely new way of accessing and enjoying your music collection. Instead of storing your music on CDs or memory cards, t ... Read More
Sygate Personal Firewall Slinder
X
Added by the W32/Rbot-BFQ worm and IRC backdoor.
Slingshot SLINGS~1.EXE
N
Atomica Slingshot - "reference tool with access to dictionary and encyclopedia terms, bios, technical terms, history, geography, and much more" ... Read More
slipstream slipcore.exe
U
Sliptstream Web Accelerator ... Read More
isp.com high speed slipgui.exe
U
Sliptstream Web Accelerator ... Read More
xseaqwt slipmenu1.scp
X
Added by the Backdoor.Rustock backdoor rootkit.
(random filename) slk8x2peu.exe
X
Added by QuickLinks_Process ADAWARE! ... Read More
Net sllserv.exe
X
Added by the Troj/LegMir-BW Trojan.
SLMDriver SLM32.sys
X
Added by the Troj/Rootkit-AA rootkit.
slmss slmss.exe
X
SeekSeek search hijacker related - as seen here
sload sload.exe
X
Win SynchroAd adware, also detected as TROJ/DLOADER-QG TROJAN! ... Read More
sload sload32.exe
X
Added by the W32/Sdbot-OY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Logitech RX slrhost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Windows System Restart Sync slrss.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Svchost Authority slsass.exe
X
Added by the W32/Rbot-UA network worm and IRC backdoor. When started this infection connects to an IRC server where it waits for remote commands to e ... Read More
WinDLL (slsass.exe) slsass.exe
X
Added by the Backdoor.Win32.Akbot.e backdoor worm. Please note that the C:\Windows\System32\rundll32.exe file is legitimate and should not be deleted. ... Read More
System LifeGuard Scheduler Slsched.exe
U
System LifeGuard scheduler
SmartLinkService slserv.exe
U
Associated with SmartLink modem and is used to show a tray icon that gives connection information. ... Read More
Windows Service slserv32.exe
X
Added by the W32/Rbot-KO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
NAV Auto Updates slserver.exe
X
Unidentified Rbot worm.
NAV Auto Updates slserves.exe
X
Added by a variant of the W32/SDBOT WORM!
27 slsorve.exe
X
Added by the Troj/Slsorve-A trojan. Using it's own own SMTP engine it sends email to a remote address and will terminate anti-virus related processes ... Read More
msoft-updater23 slssystem.exe
X
Added by the W32/Rbot-ASR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Update 32 slsys.exe
X
Added by the W32/Forbot-FT worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
slvchost32 slvchost32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Logical Volume slvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
hollaback slvhosts.exe
X
Added by the SDBOT.BMO WORM! ... Read More
slysom slysom.exe
X
Added by the W32/Tilebot-KW worm and IRC backdoor.
Web Service sm.exe
X
Added by the Troj/Psyme-BQ downloader trojan.
SM1BG SM1BG.EXE
?
USB driver for downloading from within Napster to portable MP3 players. Is it required to run at startup or can it be run manually? ... Read More
Sm56acl sm56hlpr.exe
N
Helper utility for Motorola based SM56 software modems - resides in the System Tray ... Read More
Smserial sm56hlpr.exe
Y
Motorola based modem driver
Smart Virus Eliminator SM<3 random chars>.exe
X
Added by the Smart Virus Eliminator rogue anti-spyware program.
SMA Negeri 4 SMA Negeri 4.exe
X
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
sma sma.exe
U
Added by the Smart Keystroke Recorder keylogger and surveillance software. This program should be removed if it is found on your computer without you ... Read More
SoundMAX Agent Service SMAgent.exe
Y
Sound subsystem driver on many ASUS motherboards.
smail smail.exe
X
Added by the W32/Sexer-C email worm.
SManager smanager.7.exe
X
Added by the Troj/DwnLdr-GUI downloader Trojan.
Smart Antivirus-2009.exe Smart Antivirus-2009.exe
X
Added by the Smart Antivirus 2009 rogue anti-spyware program.
Windows Smart Manager smart.exe
X
Added by the RBOT-SL WORM!
dRMON SmartAgent SmartAgt.exe
U
Part of the network monitoring program group for 3Com NIC cards. See here for more info ... Read More
SmartBarXP SmartBarXP.exe
N
SmartBarXP is a bar that runs down the side of your screen, and can be configured to display interactive panels known as 'panes'. These panes include ... Read More
Lotus QuickStart smartctr.exe
N
Lotus central application, called SmartCenter, which runs on the Windows desktop. SmartCenter toolbar stretches across the top or, optionally, the bot ... Read More
sMaRTcaPs SMARTC~1.EXE
N
sMaRTcaPs from Phoebus LLC - enables you to configure the time needed to depress Caps Lock, Num Lock & Insert keys ... Read More
BootClean smartdrv.exe
X
Added by the W32/Lurka-A virus.
SmartFixer SmartFixer.exe
X
Added by the SmartFixer 2007 rogue security product. SmartFixer is a misleading application that may give exaggerated reports about potential risks on ... Read More
smartprotector smartprotector.exe
X
Added by the Smart Protector rogue anti-spyware program.
SPSTEALT SmartProtectorPro.exe
U
Smart Protector Pro - internet privacy tool that erases tracks, MRU lists, etc
smartsync pro SmartSync.exe
U
Related to CompanionLink Software Inc., Synchronization solutions for ACT!, GoldMine, Lotus Notes and Microsoft Outlook. ... Read More
csfdll smartwarxyu.dll
X
Identified as a variant of the Trojan-Spy.Win32.Delf.asq malware.
SkySurfer Management Service SmaServ.exe
Y
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
SMax4 SMax4.exe
N
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
SoundMAX SMax4.exe
N
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
SMax4PNP SMax4PNP.exe
U
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
SoundMAXPnP SMax4PNP.exe
U
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
Windows SMB Manager smb32.exe
X
Added by the W32/Rbot-BHZ worm and IRC backdoor.
smbdpmi smbdpmi.exe
?
IBM Netfinity Director and Universal Management Services related. What does it do and is it required? ... Read More
Backup One smbguard.exe
X
Added by the W32/Sdbot-MI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Internel Corporat smbvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
smc smc.exe
Y
Sygate Firewall
SMC Service smc.exe
Y
Sygate Firewall
SmcServices smc.exe
Y
Sygate Firewall
smcservice smc.exe
Y
Sygate Personal Firewall ... Read More
Sygate Personal Firewall smc.exe
X
Added by the W32/Rbot-AZY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Microsoft Core smc.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
Windows Update Service smcg.exe
X
Added by the SDBOT.QY WORM!
1 smcmcr.exe
X
Added by the Troj/Bckdr-QIB backdoor Trojan.
sacmemds smcntlwio.exe
X
Added by the Troj/Mailbot-BZ IRC backdoor Trojan.
Disk Monitor Manager smcs.exe
X
Added by the W32/Tilebot-KQ worm and IRC backdoor.
smcss smcss.dll
X
Added by the Troj/SCLog-AJ Trojan Spyware.
system messaging queue SMCSS.EXE
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
system startup manager smcss.exe
X
Added by the RBOT.AMD WORM! ... Read More
smcss smcss.exe
X
Added by the Troj/SCLog-AJ Trojan Spyware.
Smcsta.exe Smcsta.exe
?
SMC Networks wireless PCI card driver. Is it required?
smcsvr SmcSVR.exe
X
Added by the LEGMIR.JU ... Read More
control panel smctrlw.exe
N
System Tray icon for a Silicon Motion LynxEM based PCI Graphics Card
Securemaker Disk Defragmenter Service smdefrag.exe
Y
Added by the SECUREMAKER computer optimization program.
RPCall_<ComputerName> smhost.exe
X
Added by the Troj/Redplut-B Trojan.
Spooler Host smhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Smss Host smhost.exe
X
Added by the Troj/IRCBot-ACC worm and IRC backdoor.
Smss Host smhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
HP System Management Homepage smhstart.exe
Y
The HP System Management Homepage is a web-based interface that consolidates the infection retrieve by the other Insight agents running on the server. ... Read More
SMI helper driver smihlp.sys
Y
Fingerprint reading driver for IBM Thinkpad laptops.
Smith Micro try smiptray.exe
N
Smith Micro shared files. Comes with D-Link web cam
SmitFraudFixTool SmitFraudFixTool.exe
X
Added by the SmitFraudFixTool anti-malware program.
systtray SMLBSBV4.exe
X
Added by the Troj/IMFlood-A Trojan. This infection will attempt to spam the contacts in your Yahoo Instant Messenger contact list. ... Read More
SMSI Loader SMLoader.exe
N
Smith Micro HotFax - fax software
Performance Logs and Alerts smlogsvc.exe
N
This is a Microsoft services that collects performance data from various applications running on a Windows computer. This service should be set to ma ... Read More
rare smmain.exe
X
Added by the Troj/Zlob-ABZ Trojan.
client server runtime process smmss.exe
X
Backdoor TROJAN!, possible W32/Sdbot-gen ... Read More
Service Filter smncs.exe
X
Added by the W32/Tilebot-CK worm and IRC backdoor.
Service 8 smncs.exe
X
Added by the W32/Tilebot-DF worm and IRC backdoor.
blah service smnp.exe
X
Added by the RBOT.IZ WORM!
WINDOWS SYSTEM smoc.exe
X
Added by the W32.Mytob.FU@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
MicroedSoft Toolbar Smoked.exe
X
Added by the W32/Rbot-ALN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
smoothview SmoothView.exe
N
TOSHIBA Zooming Utility - allows "automatic" zoom feature in some appications, like IE, MS-Office, WMPlayer, Adobe-Reader and also desktop icons. ... Read More
OLE Module smp.dll
X
Added by the Trojan.SpBot Trojan.
smpautostart smpdemo.exe
U
Related to Smart_Phone_Recorder from KenGolf.com. Answering Machine, Caller ID, Call Recording. ... Read More
elnkproxy smproxy.exe
X
Surfmonkey adware ... Read More
SmpcSys SmpSys.exe
?
Found on Packard Bell computers. Legitimate, but unsure as to what it does.
ShockmachineReminder SmReminder.exe
N
Shockmachine is an entertainment playback device that lets you save your favorite Shockwave.com titles and play them back in full-screen mode, off-lin ... Read More
smres smres.exe
X
Added by the W32/Agobot-UA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Ethernet Drivers smrrs.exe
X
Added by the W32/Rbot-AAK WORM/IRC backdoor trojan!
vsadmin smrs.exe
X
Added by the W32/Agobot-RC WORM/IRC backdoor Trojan!
Universal Serial Bus Control Protocol smrs.exe
X
Added by the Troj/Bdoor-JD backdoor Trojan.
Windows Smrss Service smrss.exe
X
Added by the W32/Tilebot-X worm and IRC backdoor.
Smart Defender PRO smrtdefp.exe
X
Added by the Smart Defender Pro rogue anti-spyware program.
smrtprt smrtprt.exe
X
Added by the Smart Protector rogue anti-spyware program.
KernelFaultChk sms.exe
X
Added by the DEADHAT WORM! Do not confuse with the valid "kernelfaultcheck" which runs "dumprep 0 -k" or "dumprep 0 -u" ... Read More
Microsoft Virual Machine sms.exe
X
Added by the RBOT-SP WORM!
sms sms.exe
X
Added by the Troj/Dloader-KR TROJAN!
Connector sms.EXE
X
Added by the Dial/ExDial-B premium rate porn dialer.
Configuration Loader smsai.exe
X
Added by the W32/Sdbot-YE worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
ApplicationProtocolRun smsbvl32.exe
X
Added by the Troj/IRCBot-CX Trojan.
Win32 USB2 Driver smsc.exe
X
Added by the SDBOT.FO WORM!
WINDOWS SYSTEM smsc.exe
X
Added by the W32/Mytob-BR worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
System Messenger Service smsc.exe
X
Added by the W32/Tilebot-F worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Management Service smsc.exe
X
Added by the W32/Rbot-ANN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Shell smsc.exe
X
Added by the Troj/Bancban-OY password-stealing Trojan.
Microsoft DLL System smsc.exe
X
Added by the W32/Tilebot-FY worm and IRC backdoor.
Window Services Connection smsc.exe
X
Added by the W32/Tilebot-GD worm and IRC backdoor.
Windows DLL System smsc.exe
X
Added by the W32/Tilebot-GG worm and IRC backdoor.
System Manger Service 32 smsc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows32 Host Service Manager smsc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WSSVC smsc.exe
X
Added by the W32/AutoRun-AGA removable media worm.
Windows System32 Management smsc32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
smscc smscc.exe
X
Added by the W32/Sdbot-CPG worm and IRC backdoor.
System Managment Controler smscg.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
EventApplicationCmd smschk.exe
X
Added by the Troj/IRCBot-AO IRC backdoor Trojan.
System Mng Srvc smsg.exe
X
Added by the W32/Tilebot-AB worm and IRC backdoor.
GLSetT32 smsiexec.exe
X
Added by the OPTIX-D TROJAN!
<not used> smsikfik.dll
X
Added by the Trojan.Goldun Trojan. Trojan.Goldun is a hidden process that steals personal information such as usernames and passwords for financial ac ... Read More
Microsoft Services Manual Contrl smsks.exe
X
Added by the WORM_MYTOB.NO mass-mailing worm and IRC backdoor.
dark smsl.exe
X
Added by the Troj/Banker-BZF Internet banking Trojan. If you are infected with this Trojan you should immediately change all your online banking pass ... Read More
windows system manager loader smsls.exe
X
Added by the AGOBOT.TF WORM! ... Read More
smsm smsm.exe
X
Added by the Troj/Banker-CO trojan. This infection attempts to steal information about your online banking. ... Read More
SMS Win9x Message Agent SMSMsg.exe
U
This program assigns a user to a Systems Management Server site
SystemComputerLog smsogx32.exe
X
Added by the Troj/Stinx-K backdoor Trojan.
WinLongLdr smsonx32.exe
X
Added by the Troj/Stinx-I Trojan.
<not used> smsqolqo.dll
X
Added by the Troj/DwnLdr-GXT Trojan.
dark smsr.scr
X
Added by the Troj/Bancban-NU password/information-stealing Trojan for online banks. ... Read More
wintask dll32 smsrss.exe
X
Added by the W32.MYTOB.BS WORM! ... Read More
run= smsrun16.exe
Y
Microsoft Systems Management Server (SMS) related - program that reads SMSRUN16.INI on clients running Win 3.1, Windows for Workgroups, Win95, or OS/2 ... Read More
smsrv smsrv.exe
X
Added by the W32/Agobot-SX worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
InteliSys smss.exe
X
Advertisingvision adware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
SMSS smss.exe
X
Added by the FLOOD.F Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
_winsystem.sys smss.exe
X
Added by the W32/Sober-K infection.
winsystem.sys smss.exe
X
Added by the W32/Sober-K infection. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Debug SMSS.exe
X
Added by the Adware.DreamAd adware.
_Services.dll SMSS.EXE
X
Added by the W32/Sober-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
zsms smss.exe
X
Added by the Troj/Bancos-CK Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
services.dll smss.exe
X
Added by the W32/SOBER-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
windows session manager subsystem smss.exe
X
Added by the W32/Kalel-B worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Services Process smss.exe
X
Added by the Troj/Small-EK backdoor trojan.
Microsoft Session Manager Subsystem smss.exe
X
Added by the W32.Kalel.B@mm mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
zsmss smss.exe
X
Added by the Troj/Bancos-DD trojan.
smsslevel4 smss.exe
X
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
internet smss.exe
X
Added by the Troj/Mifeng-B password-stealing trojan.
System Server smss.exe
X
Added by the Troj/Feutel-T backdoor Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
Tok-Cirrhatus smss.exe
X
Added by the W32/Korbo-A worm and backdoor Trojan.
KernellApps32 smss.exe
X
Added by the Troj/Bancban-AN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
system session manager smss.exe
X
Added by the W32/Kalel-E worm.
Torjan Program smss.exe
X
Added by the Troj/WowPWS-A password-stealing Trojan.
Application Management Browser smss.exe
X
Added by the Troj/Comhush-A Trojan. This infection should not be confused with the legitimate smss.exe found in the C:\Windows\System32 (%System%)fol ... Read More
userinit smss.exe
X
Added by the Troj/Dloadr-B downloader Trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\smss.exe. ... Read More
Microsoft SMSS smss.exe
X
Added by the Troj/Dloadr-MG Trojan.
Windows smss.exe
X
Added by the Troj/Bancban-OF Internet banking trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\sms ... Read More
Microsoft Windows Session Manager Subsystem smss.exe
X
Added by the Troj/KillSec-A Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
MDSA Sentinel X smss.exe
U
Added by the Spyware.SentinelX surveillance software. This program should be uninstalled if it was not installed by yourself. This program should not ... Read More
Card Adapter smss.exe
X
Added by the Troj/Maran-I Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
TProgram smss.exe
X
Added by the Troj/WowPWS-W password-stealing Trojan. Troj/WowPWS-W targets the online game World of Warcraft, and attempts to steal account details. ... Read More
aol software smss.exe
X
Added by the W32/Tilebot-FM worm and IRC backdoor.
ClientServerRuntimeProcess smss.exe
X
Added by the Troj/Sufia-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
.nvsvc smss.exe
X
Added by the TROJ_HORST.GF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Remove 54tr10 smss.exe
X
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Kernel Fault Safe smss.exe
X
Unidentified malware. Most likely a variant of the IRCBot family of worms and IRC backdoors. ... Read More
Kernel Safe Mode smss.exe
X
Added by the Mal/78Crack-A downloader Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
LiveUpdate smss.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ae. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Virscanner smss.exe
X
Added by the Troj/DwnLdr-GWE Trojan downloader.
AntiVir smss.exe
X
Added by the Troj/DwnLdr-GWE Trojan downloader. This infection should not be confused with the legitmate C:\Windows\system32\smss.exe file. ... Read More
DHCP smss.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
FrameWorkService smss.exe
X
Added by the W32/Kukoo-A network worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Windows NT Session Manager smss.exe
X
Added by the TR/Crypt.ULPM.Gen Trojan.
System Microsoft SS smss.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
Spooler Subsystem Application smss.exe
X
Added by the Troj/IRCBot-ZO IRC backdoor Trojan.
AutoUpdate smss.exe
X
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
Runonce smss.exe
X
Added by the W32.SillyDC worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
armonVirusAnti smss.exe
X
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
msaconfig smss.exe
X
Added by the Troj/Agent-GZT Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
System Update smss.exe
X
Identified as a variant of the Trojan:Win32/Eson.C Trojan. This infection should not be confused with the legitimate C:\Windows\system32\smss.exe file ... Read More
harodin smss.exe
X
Unknown removable media worm. This should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Microsoftf smss Control smss.pif
X
Identified as a variant of Backdoor.Win32.Rbot.gen worm and IRC backdoor.
Windows smss.scr
X
Added by the Troj/Banloa-ANE Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
Configuration Loader smss32.exe
X
Added by the AGOBOT.MB WORM!
Microsoft Internet Services Smss32.exe
X
Added by the RBOT.MS WORM!
Microsoft Update Smss32.exe
X
Added by the RBOT.CB WORM!
UsbD smss32.exe
X
Adware downloader - recognized by Kaspersky antivirus as Trojan-Proxy.Win32.Agent.cj ... Read More
MSConfig32 smss32.exe
X
Added by the Troj/Flood-EL TROJAN/backdoor.
Microsoft Services SMSS32.EXE
X
Added by the W32/Rbot-AD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
graphic driver smss32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft DirectX SMSS32.exe
X
Added by the W32/SDBot-FP worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. This in ... Read More
windows session manager smss32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Service Control smss32bk.exe
X
Added by the Troj/Stinx-X IRC backdoor.
avast111111 smss55555.exe
X
Added by the Troj/Lmir-GH information stealing Trojan for the online game The Legend of Mir. ... Read More
MSConfig64 smss64.exe
X
Added by the Troj/Flood-ES Trojan.
Session Manager Subsystem smssa.exe
X
Added by the W32/Rbot-AGS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
.nvsvcb smssb.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
Microsoft smssdriver.exe
X
The Troj/Roneve-A TROJAN places the file into the Program files folder, creating a sub-folder it calls Xerox.nt when doing so. ... Read More
System Config Manager smssl.exe
X
Added by the AGOBOT-ZJ WORM!
{05678D88-71DC-B123-1C5C-A2194F963210} smssm.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
SMSSS smsss.exe
X
Added by the SDBOT.ZD WORM!
SMSSS Loader smsss.exe
X
Added by the AGOBOT.MQ WORM!
start uploading smsss.exe
X
Added by a variant of the SDBOT WORM!
winconfig.exe smsss.exe
X
Added by the W32/Spybot-MP worm and IRC backdoor. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
System Microsoft SSS smsss.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
SMSSU SMSSU.EXE
X
Added by the Troj/Small-EI trojan dropper.
My App SMSSvc.exe
X
Added by the NEGASMS.A TROJAN!
Sms System32 SmsSystem32.exe
X
Unidentified malware
Net.Tcp Port Sharing Service SMSvcHost.exe
U
Used by Microsoft's .NET Framework 3.5.
ProtocolControlStat smsxir32.exe
X
Added by the Troj/Stinx-L Trojan.
SMSystemAnalyzer SMSystemAnalyzer.exe
Y
Related to Iolo's System Mechanic program.
DiskEventChk smszac32.exe
X
Added by the Troj/Stinx-H Trojan. This infection also creates the files 442.bat and 952.bat. ... Read More
sms_msn sms_msn.exe
X
Added by an unknown WORM or TROJAN infection.
sms_msn40 sms_msn40.exe
X
Added by an unknown WORM or TROJAN infection.
smt SMT.exe
U
Win-Spy keyboard logger/monitoring software - remove unless you installed it yourself! ... Read More
SMToolbar SMToolbar.exe
N
StartMake.com toolbar
SMTP32 Mailing Protocol smtp32.exe
X
Added by a variant of the WIN32.RBOT WORM!
MouTALS SMTPCONFS.DLL
X
Added by the Troj/QQHelp-DY Trojan.
smtpdrv smtpdrv.sys
X
Added by the TROJ_PANDEX.AF Trojan.
SMTPSVC smtpsvc.exe
X
Added by the W32/Tilebot-AU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Smapp smtray.exe
N
System Tray access for the Compaq/ADI SoundMAX integrated digital audio controller ... Read More
XP Backup smtxp.exe
X
Identified as a variant of Backdoor.Win32.SdBot.aad worm and IRC backdoor.
iolo utility bar SMUtilityBar.exe
N
Iolo "System Mechanic" Utility_Bar - can be launched manually. ... Read More
Advanced Graphics Driver smvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
MicrosoftOEM smvss.exe
X
Added by the DEDLER-G TROJAN!
MSInstall smvss.exe
X
Added by the DEDLER-G TROJAN!
SoundMixer smvss.exe
X
Added by the DEDLER-G TROJAN!
SunJavaUpdate smvss.exe
X
Added by the DEDLER-G TROJAN!
devenv smvss.exe
X
Identified as a variant of the Trojan.Horst malware.
CM-SmWizard SmWizard.exe
?
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
SmWizard SmWizard.exe
?
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
sm sm_exe.exe
X
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
Snapfish Media Detector SnapfishMediaDetector.exe
U
Used by Snapfish to determine if new media is connected to your computer. The software will then present options on how the images will be imported/u ... Read More
snapple snapple.exe
X
Added by the W32/Forbot-EG worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
snbr snbr.exe
?
??
snbupt snbupt.exe
X
UpSpiralBar adware component ... Read More
Microsoft Agent snchost.exe
X
Added by the W32/Vanebot-AB backdoor worm.
sncntr sncntr.exe
X
Adult content dialler
Windows Audio snd.exe
X
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
LoadAudio snd2d3d.exe
X
Identified as a variant of the VirTool:Win32/DelfInject.gen!AF malware.
Windows Sound Emulator snd32_win.exe
X
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
snd332 snd332.exe
X
Added by an unidentified WORM!
sounddrv sndbdrv3104.exe
X
CoolWebSearch parasite variant
MS Sound Config 16bit sndcfg16.exe
X
Added by the SDBOT.MB TROJAN!
WinProfile sndcfg16.exe
X
Added by the SNDC.A WORM!
Sound Config sndcnf.cpl
X
Added by the Virus:Win32/Lefimy.A virus. Virus:Win32/Lefimy.A is the detection for a prepending virus that infects Windows executable files. ... Read More
Sndcompat Sndcompat.exe
X
Added by the GEMA TROJAN!
snddevice snddevice.scr
X
Added by the Troj/Banker-DIR internet banking Trojan.
SndDRV (MS Sound Driver) snddrv.exe
X
Added by the W32/Rbot-BSC worm and IRC backdoor.
Ac97Sound snddrv.exe
X
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
microsystem snddrv.exe
X
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
Sound Loader sndloader.exe
X
Added by the AGOBOT-BV WORM!
SoundMax Audio Drivers SndMAX.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Audio sndmic32.exe
X
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
SNDMon SNDMon.exe
U
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
Symantec NetDriver Monitor SNDMon.exe
U
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
windows sound manager SndMon16.exe
X
Added by a variant of the W32/FORBOT WORM! ... Read More
Windows Sound Driver SndMon32.exe
X
Added by a variant of the SPYBOT WORM!
Windows Sound Manager SndMon32.exe
X
Added by the FORBOT-BU WORM!
sndrec32.exe sndrec32.exe
X
A variant of the WORM_SPYBOT.BR family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
sndriv32 sndriv32.exe
X
A variant of Backdoor.Win32.Agobot.gen worm and IRC backdoor.
Sndsaver Sndsaver.exe
X
Added by the GEMA TROJAN!
Symantec Network Drivers Service SNDSRVC.EXE
U
Part of Norton Personal Firewall and Norton Internet Security. Sndsrvc.exe is the module controlling the send scan for outbound email if the optioin i ... Read More
Sndsystem SndSystem.sys
X
Added by the Troj/Raser-AS proxy Trojan.
sndu32 sndu32.dll
X
Added by the Troj/Haxdoor-IN Trojan. This infection utilizes the sndu64.sys rootkit. ... Read More
SoundDriver SDB32 sndu64.sys
X
Added by the Troj/Haxdor-Fam rootkit. This infection also creates a service called SoundDriver SDB64 to start this rootkit. ... Read More
SND Volumes sndvolumes.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
symantec netdriver warning SNDWarn.exe
U
Part of Symantec Live Update - displays the warning when you need to update the firewall database. ... Read More
SystemWizard Sniffer Sniffer.exe
U
SystemWizard for Win98/ME from SystemSoft - diagnoses and solves hardware and software problems on a PC ... Read More
snippet SnippingTool.exe
U
The Snipping Tool (part of the Experience_Pack for Tablet PC) allows you to easily "cut out" anything on screen and share it with other people. The w ... Read More
snjava snjava.dll
X
Added by a variant of the Goldun.Fam Trojan.
Microsoft Update snlogsvc.exe
X
Added by a variant of the RBOT WORM!
SNM SNM.exe
Y
Part of the SpyNoMore anti-spyware application.
Inom snmoo.exe
X
Added by the W32/Rbot-DPM worm and IRC backdoor.
SysTray Snnpapi.exe
X
Added by an unidentified TROJAN!
Snoop Snoop.exe
U
Added by the Spyware.Snoop surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
snoopfreeui SnoopFreeUI.exe
U
Anti-keylogging software made by SnoopFree_Software._
IE9 snowing.exe
X
Added by the W32/Rbot-DRD worm and IRC backdoor.
Snsicon Snsicon.exe
N
Launches a screensaver program from Second Nature
SNSS.EXE SNSS.EXE
X
Added by the Dialer.Nunci premium dialer.
dot.net networking Snss32.exe
X
Added by a variant of the IRC_TROJAN ! ... Read More
Diskstart Snt.exe
X
Adult content dialler
Windows Event Section sntsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
sysnet snuninst.exe
X
Unidentified adware
Application In System Snxmsh.exe
X
Added by the Troj/Agent-LNV Trojan.
System Soap Pro soap.exe
X
System Soap Pro internet cleaning software. Bundles foistware like HTTPER and Zipclix - best avoided ... Read More
sobicyt Service sobicyt.exe
X
Identified as a variant of the Backdoor:Win32/Refpron.C malware.
Soccer Soccer Mania.exe
X
Added by the W32.Sibaru.A worm. W32.Sibaru.A a worm that spreads itself to network resources and hardcoded drive letters. ... Read More
Norton Live Updater Sochost.exe
X
Added by the GAOBOT.AO WORM!
Social.IM SocialChat.exe
N
Added by the Social.IM facebook chat program.
Sock32 sock32.exe
X
Added by the SDBOT TROJAN!
<unknown> socket573.sys
X
Added by a variant of Goldun rootkit.
[Unknown] socketx113.sys
X
A variant of the Haxdoor rootkit.
{66186F05-BBBB-4a39-864F-72D84615C679} sockins32.dll
X
Added by the W32/Dwnldr-HCP worm. Do not delete C:\Windows\System32\rundll32.exe as it is a legitimate Microsoft file. ... Read More
WebProxy sockins32.dll
X
Identified as a variant of the Win32:Agent-TEV malware. This infection will have its file shown as missing in a HJT log. In realty, though, this fi ... Read More
Systray sockots64.dll
X
Identified as a variant of the Trojan:Win32/Adclicker Trojan.
services socks.exe
X
Added by the WIN32.SMALL.N Proxy TROJAN! - A PT is a backdoor trojan which allows a remote hacker to connect to other systems via the compromised syst ... Read More
ASocksrv SocksA.exe
X
Added by the Troj/QQRob-AAT Trojan.
blah service socksxt.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
MSOLESTARTUP5.0 socrin.exe
X
Added by the Troj/Agent-GKH Trojan.
<not used> SoDAHK.DLL
X
Added by the Adware.Sogou adware.
SoDA Startup SodaStartup.exe
Y
Used by the Rational SoDA project management tool. Unsure of it's actual purpose but it's recommended you leave it enabled if you use the software ... Read More
msupdate soemuav.dll
X
Added by the Troj/Dloadr-ASQ Trojan.
sofatnet Service sofatnet.exe
X
Identified by Comodo as Backdoor.Win32.Refpron.~B.
Microsoftf DDEs Control soff.pif
X
Added by the W32/Rbot-AKH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
soffice SOFFICE.EXE
N
Displays StarOffice quick start applet in System tray. Right clicking on the icon allows rapid starting up of components of the StarOffice 6.0 suite. ... Read More
Web Service soft.exe
X
Added by the W32/Bube-F virus. This infection also displays popups in Internet Explorer. ... Read More
SoftBarrier SoftBarrier.exe
X
Added by the SoftBarrier rogue anti-spyware program.
SoftCop SoftCop.exe
X
Added by the SoftCop rogue anti-spyware program.
Service System softdwind.exe
X
Added by the Troj/Bancos-JS password-stealing Trojan.
hErcUnes softhost.exe
X
Added by the GARROCH WORM!
Softload softload.exe
X
A SDBot WORM/IRC backdoor variant adds this. The filename buds.exe and the filename forcepog.exe may also be involved. ... Read More
csoftok softok.exe
X
Added by the Troj/QQPass-H to log key presses & steal passwords.
SoftSafeness SoftSafeness.exe
X
Added by the SoftSafeness rogue anti-spyware program.
SoftSafeness Security Service SoftSafenessSvc.exe
X
Added by the SoftSafeness rogue anti-spyware program.
SoftSoldier SoftSoldier.exe
X
Added by the SoftSoldier rogue anti-spyware program.
SoftStronghold SoftStronghold.exe
X
Added by the SoftStronghold rogue anti-spyware program.
softstuff wallpaper changer softstrt.exe
U
AzureBay wallpaper changer ... Read More
SoftVeteran SoftVeteran.exe
X
Added by the SoftVeteran rogue anti-spyware program.
Software software.exe
X
Added by the CRABTON-B TROJAN!
Microsoft startup SoftwareUpdates.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SO5 Integrator Pass One sointgr.exe
?
StarOffice 5. See here for more details
SO5 Integrator Pass Two sointgr.exe
?
StarOffice 5. See here for more details
chipdrivepinmanager sokscmpn.exe
U
ChipDrive Smartcard software ... Read More
Msconfige solari.exe
X
Added by the W32/Autorun-GU removable media worm.
Security Host solhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
SolidCapture solidcapture.exe
N
Added by the SolidCapture screen capture program.
Kerneldll solidsteel.exe
X
Added by the Troj/Mdrop-BWB Trojan.
SoloSchedule Solocfg.exe
U
Scheduler for Solo Antivirus. Leave enabled unless you scan manually on a regular basis ... Read More
Solo Sentry Solosent.exe
Y
Solo Antivirus
autoMe solution.vbs
X
Added by the VBS.Sasan worm.
somatic somatic.exe
X
Searchcentrix hijacker
msn.exe son.exe
X
Added by the Troj/StartPa-GS trojan.
SonnReg SonnReg.exe
?
Part of E-Color 3Deep for color calibration. Possibly a registration reminder?
SonudMan SonudMan.exe
X
Added by the Trojan.Startpage.Q browser hijacker. This file hijacks the browser to open www.joyiex.com. ... Read More
SonudMon SonudMon.exe
X
Added by the Troj/Lewor-J Trojan.
Sony Programmable I/O Control Device SonyPI.sys
Y
This driver is the interface between Sony Programmable I/O controls, such as jogdials, bluetooth buttons, and Function buttons, and Windows. ... Read More
image transfer SonyTray.exe
N
Sony Image Transfer software provides direct image transfer from your digital camera to a PC - can be started manually. ... Read More
Advanced DHTML Enable sooo2.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan-Proxy.Win32.Agent.mf Trojan. ... Read More
sophagnt sophagnt.exe
?
Possibly related to Sophocles Screenwriting Software?
sopidkc Service sopidkc.exe
X
Identified by Avast Anti-virus as a variant of the Win32:Refpron-M worm.
SOProc_RegSoAlertWxLiteNnAj soproc.exe
X
Identified as Adware.MyWebSearch.
regrun sory.exe
X
New Purityscan Variant
SOS SOS.exe
X
Added by the PHILIS VIRUS!
NTSF MICROSOFT SYSTEM soscks32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SoSyncMonitor SoSyncMonitor.exe
?
SuperOffice related. What does it do and is it required?
SOUNDMAN Microsoft Help soun.pif
X
Added by the W32/Rbot-AIU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Server Application Sound.exe
X
Added by the RBOT-NE WORM!
AUDIO SOUND.exe
X
Added by the Dial/Ployb-A premium porn dialer.
Microsoft Sound Driver sound32.exe
X
Added by a variant of the SPYBOT WORM!
Sound services SOUND32.EXE
X
Added by the AGOBOT.GG WORM!
[Various Names] sound64.exe
X
Part of the Wareout infection as described here.
Micr Update soundblaster.exe
X
Added by the SDBOT.NP WORM!
logitech camera Soundcane.exe
X
Added by an unidentified WORM or TROJAN!
Microsoft Helper soundcard.exe
X
Added by an unknown malware.
soundcontrl soundcontrl.exe
X
Added by the GAOBOT.AFJ WORM!
Compaq Sound Drivers For WINDOWS sounddr.exe
X
Added by the W32/Sdbot-XG WORM/IRC backdoor trojan!
Microsoft Windows Sound Drivers sounddrivers.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
sounddrv sounddrv.dll
X
A variant of the CPVFeed adware.
Windows Stand Sound Drivers Sounddrv.exe
X
Added by the W32/Sdbot-XF WORM/IRC backdoor trojan!
WIN32 Sound Drivers. sounddv.exe
X
Added by the W32/Tilebot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
soundfun soundfun.exe
X
Added by the Troj/Banloa-AKQ Trojan.
Soundlibs soundgui.exe
X
Added by the Troj/Dloadr-AON Trojan.
SISSoundman Soundman.exe
?
Related to a Silicon Integrated Systems Corp (SiS) product?
soundman soundman.exe
N
System Tray icon for the Realtek AC97 Audio Sound Manager for AC97 onboard audio. Available via Start -> Settings-> Control Panel ... Read More
Microsoft Sounds soundman.exe
X
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
SoundMAX SoundMAX.exe
X
Added by the W32/Rizon-A worm.
SoundMax Audio Drivers soundmax.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
<not used> soundmgr.exe
X
Identified as a variant of the TR/Proxy.Gen malware.
DTService soundmix.dll
X
Added by the Troj/Dropper-MJ Trojan.
Soundmx Soundmx.exe
X
CoolWebSearch parasite variant
MotherBoard Sounds SOUNDS.EXE
X
Added by the W32/Rbot-AAP WORM/IRC backdoor trojan!
microsoft intrenet explorer Soundsyst.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
soundtask soundtask.exe
X
Added by the AGOBOT-MD WORM!
soundtasks soundtasks.exe
X
Added by a variant of the CRYPTER.C TROJAN!
soundtctrls soundtctrls.exe
X
Added by the AGOBOT-ZV WORM!
Microsoft soundvol32.exe
X
Identified by Bitdefender as Backdoor.Spybot.DLN.
[not used] sound_drive16.exe
X
Added by the Troj/Bdoor-GP backdoor trojan.
sounofts sounofts.exe
X
Added by the AGOBOT-ND WORM!
sountskmanager sountaskmgr
X
Added by an unidentified WORM or TROJAN!