|
Name
|
Filename
|
Status
|
Description
|
|
EarthLink Firewall Process Path Service
|
EFWPPService.exe
|
Y
|
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
|
|
sp
|
rundll32 [tempdirectory]\\SE.DLL,DllInstall
|
X
|
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
|
|
scain
|
s030109.Stub.exe
|
X
|
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
|
|
SysKabs
|
S0kic.exe
|
X
|
Unknown malware.
|
|
Sony Ericsson Device 115 driver (WDM)
|
s115bus.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Filter
|
s115mdfl.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Driver
|
s115mdm.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM)
|
s115mgmt.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC OBEX Interface
|
s115obex.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
sy
|
s2.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Intel® PROSet/Wireless Service
|
S24EvMon.exe
|
?
|
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
|
|
tempreg
|
s300_1204076086.dll
|
X
|
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
|
|
S3apphk
|
S3apphk.exe
|
?
|
S3 graphics related?
|
|
S3Hotkey
|
s3hotkey.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
S3Mon
|
S3Mon.exe
|
?
|
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
|
|
S3 Internal Chip
|
s3serv.exe
|
X
|
Added by the AGOBOT-DD WORM!
|
|
S3TRAY
|
S3Tray.exe
|
N
|
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
|
|
s3tray2
|
s3tray2.exe
|
?
|
Same as the s3tray entry in this table?
|
|
S3TRAYHP
|
S3trayhp.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
My Search Bar Eq
|
S4BAREQ.EXE
|
X
|
MySearch bar parasite
|
|
S4F
|
S4F.exe
|
U
|
S4F internet filtering software
|
|
s4helper
|
s4helper.exe
|
X
|
Searchcentrix hijacker
|
|
Spellex Anywhere
|
sa.exe
|
N
|
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
|
|
StayAlive
|
sa.exe
|
U
|
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
|
|
ttool
|
sa23sl.exe
|
X
|
Added by the Troj/Bckdr-QZZ backdoor Trojan.
|
|
SA
|
Sa3.exe
|
?
|
Logitech QuickCam driver. Is it required?
|
|
Aureal A3D Interactive Audio
|
sa3dsrv.exe
|
Y
|
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
|
|
Sa3dsrv
|
Sa3dsrv.exe
|
N
|
3D sound extension for Windows
|
|
saap
|
saap.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SABKUTIL
|
SABKUTIL.sys
|
Y
|
Related to Super Ad Blocker.
|
|
Sabreserver
|
SABSERV.EXE
|
N
|
Airline reservation software from Sabre. Available via Start -> Programs
|
|
sac
|
sac.exe
|
X
|
180Solutions/N-Case adware variant ... Read More
|
|
SACC
|
sacc.exe
|
X
|
Added by the Adware.SurfAccuracy adware.
|
|
surfaccuracy
|
sacc.exe
|
X
|
SurfAccuracy adware ... Read More
|
|
Mmsystem
|
Sachiel.sys.bat
|
X
|
Added by the W32/Sachiel-D worm.
|
|
Onlune Sarvice
|
sachost.exe
|
X
|
Added by the Troj/Multidr-E Trojan.
|
|
onluna sarvice
|
sachost.exe
|
X
|
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
|
|
HostSrv
|
sachostx.exe
|
X
|
Added by the Troj/Multidr-EP downloader Trojan.
|
|
{01d8d081-0f76-4ab5-b5e4-9b23a709670e}
|
sacskza.dll
|
X
|
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
|
|
MicroSoft ssas3s1
|
SADASDA.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
|
|
SuperAdBlocker
|
SAdBlock.exe
|
U
|
SuperAdBlocker
|
|
netscreen-remote
|
SafeCfg.exe
|
U
|
NetScreen_Remote VPN Client Software ... Read More
|
|
SafeFighter
|
SafeFighter.exe
|
X
|
Added by the SafeFighter rogue anti-spyware program.
|
|
Safeguard.exe
|
Safeguard.exe
|
X
|
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
|
|
SafeInstall.exe
|
SAFEIN~1.EXE
|
N
|
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
|
|
Microsoft Safe Mode Manager
|
safemode.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SafeOFF
|
SafeOff.exe
|
N
|
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
|
|
SaferScan
|
SaferScan.exe
|
X
|
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
|
|
SafeSearch
|
safesearch.exe
|
X
|
AutoSearch parasite variant
|
|
Unshare
|
SafeShare.exe
|
X
|
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
|
|
CertificateRegistration
|
SafeSignCertReg.exe
|
U
|
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
|
|
SafeStrip
|
SafeStrip.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeStripReminder
|
SafeStripReminder.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeSys
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
SafeSysDrv
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
SafetyKeeper
|
SafetyKeeper.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
SafetyKeeper Security Service
|
SafetyKeeperSvc.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
Safe
|
SafeWin.exe
|
X
|
Added by the FOCOSENHA TROJAN!
|
|
Sagate Security Firewall
|
sagate.exe
|
X
|
Added by the GAOBOT.BOW WORM!
|
|
MSNPluginSrvcs
|
sagate.exe
|
X
|
Added by the SDBOT.AKJ WORM!
|
|
SystemAgent
|
Sage.exe
|
U
|
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
|
|
Laptop Access
|
Sage.exe
|
X
|
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
sagentservice
|
Sagent.exe
|
U
|
Added by TinySpyAgent **Note this application must be manually installed.
|
|
SAgent2ExePath
|
SAgent2.exe
|
N
|
Seiko Epson printer status agent. Disable if printer is not used often
|
|
sagnt
|
sagnt.exe
|
X
|
Adware web downloader
|
|
PrevxHome
|
SAGUI.exe
|
Y
|
PrevX Home intrusion prevention software
|
|
PrevxPro
|
SAGUI.exe
|
Y
|
Pro version of PrevX Home intrusion prevention software
|
|
SAHagent
|
Sahagent.exe
|
X
|
ShopAtHomeSelect parasite
|
|
SaitekAutoConfigure
|
saicnfig.exe
|
U
|
Configuration for Saitek game controllers
|
|
saie
|
saie.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SAIMON
|
SaiMon.exe
|
U
|
Saitek joystick driver
|
|
sain
|
sain.exe
|
X
|
180Solutions/N-Case adware variant
|
|
sais
|
sais.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SaiSmart
|
SaiSmart.exe
|
?
|
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
|
|
Sakora
|
Sakora.exe
|
X
|
Identified as a variant of the Trojan.Downloader Matcash malware.
|
|
SalaatTime
|
SalaatTime.exe
|
N
|
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
|
|
salm
|
salm.exe
|
X
|
180Search adware
|
|
salm
|
salm.exe
|
X
|
180Solutions/N-Case adware variant
|
|
<not used>
|
salo.exe
|
X
|
Added by the W32/Mabezat-A virus dropper.
|
|
msvcc25
|
salvage.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
saly
|
saly*****.exe
|
X
|
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
|
|
sam-sung
|
Sam-sung.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
SAMcal
|
SAMcal.exe
|
U
|
SamCal - calendar/reminder program
|
|
DirectX shell driver
|
sammp32.exe
|
X
|
Added by the Troj/MarktMan-B Trojan.
|
|
Mapa de caracteres para NT
|
sampaerio.exe
|
X
|
Added by the Troj/Bancos-PV password-stealing Trojan.
|
|
syelimS-esreveR-troppuS
|
sample.exe
|
X
|
Added by the Troj/Lootbot-B backdoor Trojan.
|
|
Security Accounts Manager SM
|
samsm.exe
|
X
|
Added by the SPYBOT.JE WORM!
|
|
samsong
|
Samsong.exe
|
X
|
Added by the SDBOT.BNE WORM! ... Read More
|
|
YeppStudioAgent
|
SamsungMediaStudioAgent.exe
|
N
|
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
|
|
Samsung
|
Samsungs.exe
|
X
|
Added by an IRC_TROJAN variant!
|
|
Security Account Manager
|
SAMSvc.exe
|
X
|
Added by the W32/Tilebot-DL worm and IRC backdoor.
|
|
FireWire Driver
|
samx.exe
|
X
|
Added by the SDBOT.AE WORM!
|
|
Sandbox
|
Sandbox.sys
|
Y
|
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
|
|
[not used]
|
SandboxieHelper.dll
|
Y
|
Installed by the Sandboxie security software.
|
|
Sandboxie Service
|
SandboxieServer.exe
|
Y
|
Installed by the Sandboxie security software.
|
|
SandIcon
|
SandIcon.exe
|
N
|
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
|
|
SANS Service
|
sansv.exe
|
X
|
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
|
|
Santa Bastards Bitch
|
SANTAS.BITCH.txt
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
System Applications Profile
|
sap.exe
|
X
|
Added by the RBOT-QF WORM!
|
|
SAP control service
|
SAPCtrlSer.exe
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
abylonsoft Activate modules
|
SAPDrive.EXE
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
sapnet
|
sapnet.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
sapp
|
sapp.exe
|
X
|
180Solutions/N-Case adware variant
|
|
[Various Names]
|
SAPSTR.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Beawver
|
saqevre.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
Microsft Updtes
|
sarvice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SASDIFSV
|
SASDIFSV.SYS
|
Y
|
Driver for the Super Antispyware security software.
|
|
SASENUM
|
SASENUM.SYS
|
Y
|
Super Antispyware driver.
|
|
SA Service
|
SAservice.exe
|
?
|
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
|
|
SiteAdvisor Service
|
SAService.exe
|
N
|
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
|
|
Syntax Script
|
saskatcw.exe
|
X
|
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
|
|
sasktel accelerated dial-up
|
sasktelgui.exe
|
Y
|
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
|
|
SASKUTIL
|
SASKUTIL.sys
|
Y
|
Driver associated with the Super Antispyware security software.
|
|
usb
|
SASS.EXE
|
X
|
Added by the Troj/Funsta-A Trojan.
|
|
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}
|
SASSEH.DLL
|
Y
|
Part of the Super Antispyware security software.
|
|
!SASWinLogon
|
SASWINLO.dll
|
Y
|
Related to the SuperAntiSpyware anti-spyware program.
|
|
satad640
|
satad640.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
|
|
<unknown>
|
satad645.sys
|
X
|
Added by a variant of the Goldun.Fam rootkit.
|
|
scandisc
|
satan.exe
|
X
|
Added by the GregStar backdoor TROJAN!
|
|
SATARaid
|
SATARaid.exe
|
U
|
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
|
|
satau320
|
satau320.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
|
|
SATA bus driver
|
satau325.sys
|
X
|
A variant of the Troj/Haxdor-Gen rootkit.
|
|
satdll
|
satdll.dll
|
X
|
Added by the Troj/Haxdoor-AS information stealing Trojan.
|
|
satmat
|
satmat.exe
|
X
|
Transponder parasite updater/installer
|
|
satmmc
|
satmmc.dll
|
X
|
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
|
|
sau
|
sau.exe
|
X
|
Added by the Adware.180Search adware.
|
|
ATTBroadbandUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
SAUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
SAutoLaunchExe
|
SAutoLaunchExe.exe
|
U
|
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
|
|
Antivirus
|
sav.exe
|
X
|
Added by the System Antivirus 2008 rogue anti-spyware program.
|
|
Sophos Anti-Virus status reporter
|
SAVAdminService.exe
|
Y
|
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
|
|
SAVAgent
|
SAVAgent.exe
|
Y
|
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
|
|
pile scr
|
Save peak.exe
|
X
|
Added by the Troj/KillAV-ED Spyware Trojan.
|
|
Save
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
WhenUSave
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
SaveArmor
|
SaveArmor.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveArmor Security Service
|
SaveArmorSvc.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveDefender
|
SaveDefender.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefender Security Service
|
SaveDefenderSvc.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefense
|
SaveDefense.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveDefense Security Service
|
SaveDefenseSvc.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveKeep
|
SaveKeep.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveKeeper
|
SaveKeeper.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveKeeper Security Service
|
SaveKeeperSvc.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveKeep Security Service
|
SaveKeepSvc.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveMyWork
|
SaveMyWork.exe
|
U
|
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
|
|
Savenow
|
SaveNow.exe
|
X
|
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
|
|
Savenow
|
savenow.exe
|
X
|
Added by the SPREDA.B VIRUS!
|
|
SaveSoldier
|
SaveSoldier.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SaveSoldier Security Service
|
SaveSoldierSvc.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SaveDate
|
SaveStartDate.Exe
|
X
|
Unidentified adware
|
|
SAVRT
|
SAVRT.SYS
|
Y
|
Related to Symantec Antivirus.
|
|
SAVRTPEL
|
SAVRTPEL.SYS
|
Y
|
Driver associated with Symantec security products.
|
|
SAVScan
|
SAVScan.exe
|
Y
|
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
|
|
Sophos Anti-Virus
|
SavService.exe
|
Y
|
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
|
|
Microsoft Security Center
|
savservices.exe
|
X
|
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
saw
|
saw.exe
|
X
|
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
|
|
Say The Time 5.0
|
SAYTIME.EXE
|
U
|
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
|
|
sm
|
sa_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
|
|
SB
|
SB.exe
|
U
|
Acer Soft Button on Acer Tablet PCs
|
|
SBAutoUpdate
|
sbautoupdate.exe
|
U
|
SpywareBlaster auto-updater
|
|
svchosts
|
sbchost.exe
|
X
|
Added by the W32/Rbot-DCM worm and IRC backdoor.
|
|
sbchosy.bat
|
sbchosy.bat
|
X
|
Added by the Troj/GrayBir-AA backdoor Trojan.
|
|
SBDrvDet
|
SBDrv.exe
|
U
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
|
|
sbdrvdet
|
sbdrvdet.exe
|
N
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
|
|
sbfxi
|
sbfxi.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SBHC
|
sbhc.exe
|
X
|
SuperBar parasite - uninstall available here
|
|
Windows bypass security SMSS Service
|
SbiCvy.exe
|
X
|
Added by the W32/Rbot-GRF worm and IRC backdoor.
|
|
[Various Names]
|
sbin.exe
|
X
|
Part of the Wareout infection as described here.
|
|
spam blocker for outlook express
|
SBInst.exe
|
X
|
HotBar related ... Read More
|
|
Windows System Restore Configuration
|
Sblhost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
start
|
sbmntr.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
sbmpop
|
SBMPop.exe
|
X
|
SearchByMedia adware
|
|
SBMX
|
sbmx.exe
|
N
|
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
|
|
{89aef01d-d237-49c7-84dc-4e1904c1fd31}
|
sbnudh.dll
|
X
|
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
|
|
spamblocker
|
SbOEAddOn.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
Microsoft Service Boot
|
sboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSRegScan
|
SBPDemo.exe
|
U
|
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
|
|
sbrige
|
sbrige.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SystemBooster2009
|
sbr_updater.exe
|
X
|
Added by the SystemBooster 2009 rogue anti-spyware program.
|
|
<not used>
|
sbs.exe
|
X
|
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
|
|
ScriptBlocking
|
SBServ.exe
|
Y
|
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
|
|
ScriptBlocking Service
|
SBServ.exe
|
Y
|
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
|
|
Eapcisetup
|
sbsetup.exe
|
N
|
Rockwell RipTide soundcard application software. Sound works without it
|
|
<unknown>
|
sbsrtyus.sys
|
X
|
Added by the Trojan.Mdropper.S Trojan.
Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
|
|
sbss Launcher
|
sbss.exe
|
X
|
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
|
|
SB Watchdog
|
SBWatchdog.exe
|
X
|
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
|
|
weatherontray
|
SbWeatherOnTray.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
<not used>
|
sbwltbxa.exe
|
X
|
Identified as a variant of the Troj/Agent-GRP variant malware.
|
|
6-susilo b
|
sby.exe
|
X
|
Added by the W32/Brontok-CR worm.
|
|
sc
|
sc.exe
|
U
|
Watchdog 2.0 Software - monitoring program
|
|
sc23exec
|
sc23exec.exe
|
?
|
Possibly related to a digital camera
|
|
SC3300CC
|
SC3300CC.exe
|
Y
|
SiPix digital camera Twain device driver
|
|
WINDOWS SYSTEM SCALPE
|
scalpe91.exe
|
X
|
Added by the W32/Mytob-HI mass-mailing worm.
|
|
Driver32
|
Scam32.exe
|
X
|
Added by the SIRCAM WORM!
|
|
Scan&Repair2006.exe
|
Scan&Repair2006.exe
|
X
|
Added by the ScanandRepair security risk.
According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
|
|
TotalSecure2009
|
scan.exe
|
X
|
Added by the Total Secure 2009 rogue anti-spyware program.
|
|
Win32G
|
Scandisk.com
|
X
|
Added by the ESTRELLA TROJAN
|
|
ScanDisk
|
ScanDisk.exe
|
X
|
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
|
|
MS Scandisk
|
Scandisk.exe
|
X
|
Added by the Backdoor.AntiLam backdoor.
|
|
scands32.exe
|
scands32.exe
|
X
|
Added by a variant of the Adclicker TROJAN!
|
|
Scandsk2
|
scandsk2.exe
|
X
|
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scandskx.exe
|
scandskx.exe
|
X
|
Added by the Troj/Dloadr-ARM Trojan.
|
|
{C5A16DB0-0E3E-68C4-1ABB-636411036D53}
|
scanfl.exe
|
X
|
Added by the Troj/PWS-BDE password-stealing Trojan.
|
|
messenger
|
SCANMSG.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
ScanSpyware v *
|
Scanner.exe
|
X
|
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
hpScannerFirstBoot
|
scannerfb.exe
|
?
|
HP scanner related
|
|
Microtek Scanner Finder
|
ScannerFinder.exe
|
N
|
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
|
|
Reg_WFT
|
scanreg32.com
|
X
|
Added by the Troj/SennaSpy-F trojan.
|
|
scanregg
|
scanregg.exe
|
X
|
Added by the Troj/ScKeylog-A keylogger.
|
|
ScanRegistry
|
scanregv.exe
|
X
|
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
Y
|
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
X
|
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
|
|
ScanRegistry
|
scanregw.exe
|
X
|
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
|
|
[Various Names]
|
scanSYS.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Windows Service
|
Scanvegw.exe
|
X
|
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
|
|
Quick Heal Helper Service WSC
|
scanwscs.exe
|
Y
|
Related to the Quick Heal security products.
|
|
scApp
|
scApp.exe
|
X
|
Added by the W32/Stando-E worm.
|
|
Smart Card Client
|
SCardClnt.exe
|
X
|
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
|
|
TwkSCardSrv
|
SCardS32.Exe
|
N
|
Used with Towitoko SmartCard Readers for card recognition
|
|
SCardSvr
|
scardsvr.exe
|
N
|
Related to SmartCard readers and sometimes uses lots of system resources
|
|
Smart Card Service
|
ScardSvr.exe
|
N
|
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
|
|
NavAgent32
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
SCardSvr
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
SearchEnhancement
|
scbar.exe
|
X
|
IE search hijacker
|
|
sccbxenr
|
sccbxenr.exe
|
X
|
Added by the Troj/StraDr-A Trojan.
|
|
Compaq Computer Corp SCCenter Module
|
SCCENTER.EXE
|
N
|
For Compaq PC's. Part of Backweb
|
|
Service Connection
|
sccenter.exe
|
N
|
For Compaq PC's. Part of Backweb
|
|
Services Host
|
Scchost.exe
|
X
|
Added by the DONK WORM!
|
|
Systems
|
scchost.exe
|
X
|
Added by the DAEMOZ.A TROJAN!
|
|
Alive SYstem
|
scchost.exe
|
X
|
Added by the Troj/Tofdrop-B dropper Trojan.
|
|
alive system
|
scchostc.exe
|
X
|
Added by the Troj/Tofdrop-B ... Read More
|
|
update SERVICES
|
sccpn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
microsoft windows update
|
sccvhost.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Microsoft
|
sccvrhost.exe
|
X
|
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
|
|
scdemuapp.exe
|
SCDEmuApp.exe
|
U
|
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
|
|
Configuration Driver
|
scghost.exe
|
X
|
Added by the W32/Sdbot-DLA worm and IRC backdoor.
|
|
MS Windows Update
|
scguard.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
sysApp
|
SChal.exe
|
X
|
Added by the Troj/KeyLog-CE keylogger.
|
|
scheck
|
scheck**.exe
|
X
|
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
|
|
scheck45
|
scheck45.exe
|
X
|
Related to unknown Malware - hidden installer associated with it
|
|
AntiVir PersonalEdition Classic Scheduler
|
sched.exe
|
Y
|
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
|
|
Acronis Scheduler2 Service
|
schedhlp.exe
|
U
|
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
|
|
Acronis Scheduler_Helper
|
schedhlp.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
WTIndicator
|
SchedInd.exe
|
U
|
WinTask - software that automates a variety of routine tasks quickly and simply
|
|
schedl
|
schedl.exe
|
X
|
Added by the W32/VB-DVW worm.
|
|
Task Scheduler Engine
|
schedsvc32.exe
|
X
|
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
scheduler
|
schedul3.exe
|
X
|
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
schedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
|
|
tvrschedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
|
|
Scheduled Maintenance
|
Scheduled_Maintenance.exe
|
N
|
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
|
|
scheduler
|
Scheduler daemon.exe
|
U
|
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
|
|
MRU-Blaster Scheduler
|
scheduler.exe
|
U
|
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
|
|
Scheduling Agent
|
Scheduler.exe
|
X
|
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
|
|
Service Scheduler
|
scheduler.exe
|
X
|
Added by the W32/Agobot-OA infection.
|
|
Staffcop Scheduler
|
scheduler.exe
|
U
|
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
|
|
Microsoft
|
scheduler.exe
|
X
|
Added by the W32/Rbot-GUT worm and IRC backdoor.
|
|
Windows Scheduler!
|
scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Task Scheduler
|
Scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
TVT Scheduler Proxy
|
scheduler_proxy.exe
|
U
|
Related to the Lenovo update software on IBM ThinkPad.
|
|
NovastorSchedulerd
|
SCHENGD.EXE
|
U
|
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
|
|
Schmaili
|
Schmaili.exe
|
U
|
Schmaili - insert animated smilies into your e-mail
|
|
schoolpop0
|
Schoolpop0.exe
|
U
|
Schoolpop Shopping Buddy ... Read More
|
|
Generic Host Process
|
SCHOST.EXE
|
X
|
Added by the RBOT-NC WORM!
|
|
Update Install
|
Schost.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
WinManager
|
schost.exe
|
?
|
??
|
|
Microsoft Manage Services
|
schost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
avschedscan
|
SCHSC9X.EXE
|
Y
|
Command antivirus related ... Read More
|
|
Intervideo WinScheduler
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
WinDVR SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
Home Theater SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
|
|
microsoft update 64 bit
|
schvost.exe
|
X
|
Added by the RBOT.CAU WORM! ... Read More
|
|
CSScheduleCheck
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
SCHWIZEX
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
taskmrg
|
schwoch.exe
|
X
|
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
|
|
SecureCleanIEClean
|
SCIEClean.exe
|
N
|
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
|
|
some
|
scit.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
EFS
|
sclgntfy.dll
|
Y
|
Related to the Microsoft Service called Secondary Login Service Notification.
|
|
sclick
|
SCLICK.EXE
|
X
|
Related to SmitFraud infections.
|
|
SQL Server
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
sos sql database
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
stardust screen saver control 2003
|
SCMain.exe
|
N
|
Related to Stardust_Software Screen Saver Control 2003 ... Read More
|
|
ScManager
|
scman.exe
|
X
|
Added by the FORBOT-CW WORM!
|
|
SurfChoice
|
SCMan.exe
|
U
|
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
|
|
chipdrivesmartcardmanager
|
SCMgr.exe
|
U
|
ChipDrive Smartcard software ... Read More
|
|
Spore.b
|
Scmhlpr.vbs
|
X
|
Added by the SPORE.B WORM!
|
|
VGA Driver
|
scmhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Smart Connect Monitor
|
SCMon.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
windows services
|
scmsg.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Security Patch
|
scmss.exe
|
X
|
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
|
|
scanpanel
|
ScnPanel.exe
|
?
|
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
|
|
Deewoo
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
ExploreUpdSched
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
scopedll
|
scopedll.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
MCX Updte
|
scorti.exe
|
X
|
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
|
|
Mi7sft sdce
|
scorti.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
{4535F32F-D292-B784-7926-7419ADE0A94B}
|
scp32.exe
|
X
|
Added by the Troj/Delf-EXC Trojan.
|
|
Scr
|
scr.scr
|
X
|
Added by the OPASERV.T WORM!
|
|
W32.Scran
|
Scran.exe
|
X
|
Added by the NARCS WORM!
|
|
ScrapPad
|
Scrappad.exe
|
N
|
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
|
|
scrbmk
|
scrbmk.exe
|
X
|
Added by the Troj/Dloader-VP downloader Trojan.
|
|
Screen Calendar
|
scrcal.exe
|
U
|
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
|
|
WMI Standard Event Consumer - Scripting
|
scrcons32.exe
|
X
|
Added by the W32/Rbot-GRD worm and IRC backdoor.
|
|
Microsoft Synchronization Manager
|
screen.exe
|
X
|
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
cursor
|
Screendragon_VS_Taskbar.exe
|
N
|
ScreenDragon video player
|
|
ScreenPrint32
|
ScreenPrint32.exe
|
N
|
ScreenPrint32 screen capture software - can be launched manually
|
|
ScreensaverControl
|
ScreensaverControl.exe
|
N
|
Tray icon that allows you toggle your screensaver on and off.
|
|
ScreenView
|
ScreenView.exe
|
U
|
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
|
|
secureclean4regmanager
|
scregmanager4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
Microsoft Restore
|
scrgrd.exe
|
X
|
Added by the SPYBOT.BR WORM!
|
|
Microsoft Windows Update
|
scrhost.exe
|
X
|
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WindowSystemMonitor
|
scrhost.exe
|
X
|
Added by the W32/Tilebot-DV worm and IRC backdoor.
|
|
Auto File System Conversion Utility
|
scricon.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
|
|
RAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
PAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
|
|
Windows Update
|
scrigz.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
script
|
script.bat
|
?
|
Maybe associated with DOS on a Win9x machine
|
|
Java
|
script.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
ScriptSentry
|
Scriptsentry.exe
|
Y
|
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
|
|
Crnsava
|
scrnsave.pif
|
X
|
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Screen Saver
|
scrnsaver.scr
|
X
|
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Crnsavsund
|
scrnsund.pif
|
X
|
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
|
|
Scroll-In-Mouse V2.0
|
SCROLL.EXE
|
U
|
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
|
|
MS Screen Saver
|
scrsave.scr
|
X
|
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scrss
|
scrss.exe
|
X
|
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Gray
|
Scrsss
|
X
|
Added by the Troj/GrayBrd-AM backdoor Trojan.
|
|
scrsvc
|
scrsvc.exe
|
X
|
Added by the Troj/Agent-DS proxy trojan.
|
|
ScrSvr
|
ScrSvr.exe
|
X
|
Added by the OPASERV WORM!
|
|
system csrss patch
|
scrtkfg.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
SystemOPsv
|
scrtvc32.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
sc
|
scrubxp.exe
|
N
|
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
|
|
screxe
|
scruser2k.exe
|
?
|
??
|
|
Smart Connect Setup
|
SCSetup.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
Computer Driver
|
scshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Scsi
|
Scsi.exe
|
Y
|
SCSI Miniport driver
|
|
scsi2usb
|
scsi2usb.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan.
|
|
<unknown>
|
scsipsrvc.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
scsiusr4
|
scsiusr4.dll
|
X
|
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
|
|
MS Shadow Copy Software
|
scsoft.exe
|
X
|
Added by the W32/Tilebot-JP worm and IRC backdoor.
|
|
scsrs
|
scsrs.exe
|
X
|
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SCService
|
SCSrv.dll
|
X
|
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
|
|
SecondChance
|
sctray.exe
|
U
|
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
|
|
secureclean4tray
|
sctray4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
OmniPass
|
scureapp.exe
|
U
|
OmniPass from Softex Inc. - secure password management software
|
|
Nortons AV SYSTEM
|
scvchost.exe
|
X
|
Added by a Rbot variant infection.
|
|
Windows Framework
|
scvh0st.exe
|
X
|
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
|
|
SCVHOST
|
SCVHOST
|
X
|
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
|
|
Config Loader
|
scvhost.exe
|
X
|
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
|
|
Microsoft Update Machine
|
scvhost.exe
|
X
|
Added by the RBOT-GS WORM!
|
|
scvhost.exe
|
scvhost.exe
|
X
|
Added by the LOHAV-N TROJAN!
|
|
Windows Service Host
|
scvhost.exe
|
X
|
Added by the SDBOT.N TROJAN!
|
|
Security Center
|
scvhost.exe
|
X
|
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
|
|
Winmgr.exe
|
scvhost.exe
|
X
|
Added by the AGOBOT.AFG WORM!
|
|
SunJavaUpdateSched
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
|
|
SCVHOST
|
SCVHOST.EXE
|
X
|
Added by W32/Agobot-RK.
|
|
Windows Firewalll
|
scvhost.exe
|
X
|
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-XT WORM.
|
|
microsoft scvhost for windows
|
scvhost.exe
|
X
|
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
WINTASK
|
scvhost.exe
|
X
|
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
|
|
Configuration Loader
|
scvhost.exe
|
X
|
Added by the W32/Agobot-AAE worm.
|
|
Microsoft Update
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
scvhost
|
scvhost.exe
|
U
|
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
|
|
microsoft windows updata
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Personal Computer
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Manager
|
scvhost.exe
|
X
|
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
macromedia flash update
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Tilebot-CU worm and IRC backdoor.
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Opanki-BT worm and IRC backdoor.
|
|
Microsoft Task Manager
|
scvhost.exe
|
X
|
Added by the W32/Mytob-IT worm and IRC backdoor.
|
|
MsWinLibrary
|
scvhost.exe
|
X
|
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
|
|
only23
|
SCVHOST.exe
|
X
|
Added by the Troj/Bckdr-PUQ backdoor Trojan.
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
msconfig
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
icq lite
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Update Checker
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
AntiVir
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Microsoft Print Spooler
|
scvhost.exe
|
X
|
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
|
|
(default)
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Yahoo Messengger
|
SCVHOST.exe
|
X
|
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
|
|
Sync
|
SCVHOST.exe
|
X
|
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
|
|
Windows SQL management 1.33
|
scvhost.exe
|
X
|
Added by the W32/Spybot-OB worm and IRC backdoor.
|
|
System Virtual Host File
|
scvhost.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
LSA
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Printer Drivers
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
scvhost.exe
|
X
|
Added by the W32/IRCBot-ZW worm and IRC backdoor.
|
|
System Host
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
SystemWindows
|
scvhost.exe
|
X
|
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows UDP Control Center
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft SQL Services
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Sub-Classing Routine Manager
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Online Tech
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SysChk
|
scvhost.vbs
|
X
|
Added by the W32/Small-EMQ worm.
|
|
Generic Host Process2 System Backup
|
scvhost2.exe
|
X
|
Added by the W32/Rbot-BAH worm and IRC backdoor.
|
|
Microsoft LSASS386 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft SCVHOST32 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
SVCHost Protocol32
|
scvhost32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
scvhost32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Generic Host Process326a System Backup
|
scvhost326a.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
starter
|
scvhosting.exe
|
X
|
Added by the IRCBOT.E TROJAN!
|
|
Starter
|
scvhosting.exe
|
X
|
Added by the SDBOT.RU WORM!
|
|
starter
|
scvhostingg.exe
|
X
|
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
spoolsv
|
scvhosts.exe
|
X
|
Added by the SMALL-AW TROJAN!
|
|
Windows Print Spooler
|
SCVHOSTS.EXE
|
?
|
Suspicious due to the similarity to the valid "svchost.exe" file
|
|
WinService Host
|
scvhosts.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Yahoo Messengger
|
scvhosts.exe
|
X
|
Added by the W32/Sohana-AH spyware worm.
|
|
microssofts
|
scvhosts.exe
|
X
|
Added by the Troj/Inject-GG Trojan.
|
|
QQKAV
|
scvhsot.exe
|
X
|
Added by the W32/QQRob-ABU worm.
|
|
Yahoo Messengger
|
SCVHSOT.exe
|
X
|
Added by the W32/Hakag-A worm.
|
|
Microsoft Office Studio
|
scvhvst.exe
|
X
|
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
|
|
Microsoft Update Manager
|
scvideo.exe
|
X
|
Added by the W32/Sdbot-CVP worm and IRC backdoor.
|
|
MSN
|
scvrun.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ttool
|
scvs.exe
|
X
|
Added by the Troj/Hiload-A Trojan.
|
|
Yahoo Messengger
|
scvshosts.exe
|
X
|
Added by the W32/Trax-A worm.
|
|
Microsoft Windows Update
|
scvvhost.exe
|
X
|
Added by the FORBOT-DH WORM!
|
|
Winsock2 wqr1s
|
SCVVHOST.EXE
|
X
|
Added by the W32/Rbot-FSN worm and IRC backdoor.
W32/Rbot-FSN includes functionality to:
- access the internet and commu ... Read More
|
|
Yahoo Messengger
|
SCVVHSOT.exe
|
X
|
Added by the W32/SillyFDC-AE worm.
|
|
Adobe Acrobat Speed Launcher.lnk
|
SC_Acrobat.exe
|
N
|
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch ... Read More
|
|
monitor
|
SD Monitor.exe
|
U
|
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
|
|
SD
|
SD.exe
|
X
|
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
|
|
SystemDoctor 2006 Free
|
sd2006.exe
|
X
|
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
|
|
System DirectX DLL Loader
|
sd32dll.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
sd32info
|
sd32info.exe
|
X
|
Added by the CRYPTER.A TROJAN!
|
|
SDaemon
|
sdaemon.exe
|
U
|
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
|
|
vccacA
|
sdaxzl.exe
|
X
|
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
sdcard98
|
sdcard98.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
|
|
KMX direct access
|
sdcardX2.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
Direct settings
|
sdchost.exe
|
X
|
Added by the DAEMONI-I TROJAN!
|
|
wescmv
|
sddcss.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
|
|
Call Function System32
|
sddriver.exe
|
X
|
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
|
|
SDAgentService
|
sde.exe
|
X
|
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
|
|
Scanner Detector
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
SDetect
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
strkjhk
|
sdflkj8.exe
|
X
|
Added by the Troj/Bckdr-QJT backdoor Trojan.
|
|
Scheduler
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
WinAmpAgent
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
SvcH0st
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
MsnExplorer
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Server Daemon Host Manager
|
sdhost.exe
|
X
|
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
|
|
SDIN Adapter
|
sdin.exe
|
X
|
Added by the FORBOT-AP WORM!
|
|
Winsock2 driver
|
SDJOIJE.EXE
|
X
|
Added by the SPYBOT.DR TROJAN!
|
|
Winsock32 driver
|
Sdjoije.exe
|
X
|
Added by the SPYBOT.B WORM!
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
|
|
SDK Core Component
|
SDKC0RE.exe
|
X
|
Added by the W32/SDBOT-WC WORM!
|
|
SDKz0r
|
SDKc55rezzz2.exe
|
X
|
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
SDK Core Component
|
sdkcore.exe
|
X
|
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
|
|
SDK Codre Function22
|
sdkimddprovment2.exe
|
X
|
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdk core function
|
sdkimprovment.exe
|
X
|
Added by the RBOT.BHL WORM! ... Read More
|
|
sdk core function2
|
sdkimprovment2.exe
|
X
|
Added by the W32.SPYBOT.OGX WORM! ... Read More
|
|
mascro soft sdk updates2
|
SDKrepair2.exe
|
X
|
Added by a variant of the W32/SDBOT.W WORM! ... Read More
|
|
sdktemp
|
SDKTEMP.EXE
|
X
|
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft sdk temp
|
sdktemp.exe
|
X
|
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Spectrum 24 Events Monitor
|
sdmAgent20.dll
|
X
|
Added by the Trojan.Linkmediac Trojan.
Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
|
|
KeSDM
|
Sdmapi.sys
|
X
|
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
|
|
monitorsd
|
SDMonitor.exe
|
U
|
Max Spyware Detector
|
|
SDMSSplash
|
SDMSSplash.exe
|
?
|
Related to the HP Smart Desktop Management System support software.
|
|
SpywareDoctor
|
sdoctor.exe
|
X
|
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
|
|
Files Driver
|
sdphost.exe
|
X
|
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
|
|
SDPhotoBar.exe
|
SDPhotoBar.exe
|
N
|
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
|
|
genserv path
|
sdqdqg.exe
|
X
|
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
<not used>
|
sdra64.exe
|
X
|
Identified by Sophos as a variant of the Mal/Zbot-I malware.
|
|
sdrss
|
sdrss.exe
|
X
|
Added by the SDBOT-SQ WORM!
|
|
sads
|
sdsa.exe
|
X
|
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
cvmsyslpd
|
sdservss.exe
|
X
|
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
|
|
Windows Service Agent
|
SDSEWEW.EXE
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
|
|
Sound Driver for Windows
|
sdshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
FlashPath Monitor
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
FlashPath Status
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
Windows Updater
|
sdsys.exe
|
X
|
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
systemtraysd
|
SDSystemTray.exe
|
U
|
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
|
|
sdtray
|
sdtray.exe
|
U
|
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
|
|
SDTrayApp
|
SDTrayApp.exe
|
Y
|
Related to Spyware Doctor.
|
|
Windows Update
|
sdvhost.exe
|
X
|
W32/Agobot-AEU is a network worm with backdoor functionality.
|
|
pc dynamics sdwmon32
|
sdwmon32.exe
|
U
|
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
|
|
safehousesystemtray
|
SDWTRAY.EXE
|
U
|
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
|
|
sdxsys32
|
sdxsys32.exe
|
X
|
Added by the Troj/Brogger-A password-stealing Trojan.
|
|
Search-Exe
|
SE.exe
|
X
|
Search-Exe hijacker
|
|
se500mdm
|
se500mdm.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
|
|
SE500 Generic
|
se500mdmd.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
se633mxx
|
se633mxx.dll
|
X
|
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
|
|
IRDa Modem device #12
|
se633mxxd.sys
|
X
|
Added by a variant of the Goldun rootkit.
|
|
[random name]
|
se?vices.exe
|
X
|
PurityScan adware variant.
|
|
Seagate Communications
|
seagatecom.exe
|
X
|
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
|
|
SeahawksScreenServer
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
SeahawksScreenServerSvc
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
sealmon
|
sealmon.exe
|
U
|
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
|
|
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748}
|
search.dll
|
X
|
Added by the Troj/OnLineG-C password-stealing Trojan.
|
|
WhenUSearch
|
Search.exe
|
X
|
WhenUSearch adware
|
|
mswspl
|
searchbarcash.exe
|
X
|
SearchBarCash adware
|
|
Search Defender
|
SearchDefender.exe
|
U
|
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
|
|
SearchIn1Step Service
|
searchin1.exe
|
X
|
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
|
|
searchnav
|
searchnav.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SearchNavVersion
|
searchnavversion.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SSL
|
SearchNDestrou.exe
|
X
|
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
|
|
YSearchProtection
|
SearchProtection.exe
|
U
|
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to so ... Read More
|
|
SearchSetter
|
searchsetter[1].exe
|
X
|
Browser hijacker - redirecting to FindWhateverNow.com
|
|
SearchSquire33
|
SearchUpdate33.exe
|
X
|
SearchSquire parasite
|
|
SearchUpgrader
|
SearchUpgrader.exe
|
X
|
Hijacker
|
|
Seagate Sync Service
|
SeaSyncServices.exe
|
U
|
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
|
|
SecureExpertCleaner
|
sec.exe
|
X
|
Added by the Secure Expert Cleaner rogue security software.
|
|
run=
|
sec5dec.exe
|
X
|
Added by the ATAK.G WORM!
|
|
second copy 2000
|
SecCopy.exe
|
U
|
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
|
|
*security center
|
secctr.exe
|
X
|
Added by the SDBOT.BRO WORM! ... Read More
|
|
secdrive.exe
|
secdrive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Secdrv
|
secdrv.sys
|
Y
|
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
|
|
Secondary Logon
|
seclogon.dll
|
Y
|
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
|
|
Secret
|
Secret.exe
|
X
|
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
|
|
secretmaker
|
secretmaker.exe
|
U
|
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
|
|
Windows Update
|
SecretStub.exe
|
X
|
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
|
|
secserv.exe
|
secserv.exe
|
X
|
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
|
|
Security Server DB
|
secserver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security Service DB
|
secservice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Secure Service
|
secsrv.exe
|
X
|
Added by the W32/Sdbot-DGP worm and IRC backdoor.
|
|
Provides secure connections to internet and LAN computers.
|
secsrv.exe
|
X
|
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
|
|
secsrvrc
|
secsrvrc.exe
|
X
|
Added by the Troj/SCKeyLog-G keylogger.
|
|
system event manager
|
secsvc.exe
|
X
|
Added by the RBOT.BMY WORM! ... Read More
|
|
Network Security
|
secsvc.exe
|
X
|
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Security Service
|
secsvc.exe
|
X
|
Added by the W32/Rbot-GGF backdoor Worm.
|
|
secsvc32
|
secsvcnt.exe
|
X
|
Added by the Global_Patrol TROJAN! ... Read More
|
|
Secsys
|
Secsys.exe
|
U
|
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
|
|
{1CB622F9-7299-4245-0705-080208070506}
|
SecSystem.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
|
|
Yahoo Patcher!
|
sectoriate.exe
|
X
|
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
|
|
Windows Security Update
|
secupd.exe
|
X
|
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
|
|
security agent
|
securag.exe
|
X
|
Added by the Troj/Bancban-F ... Read More
|
|
secure
|
secure.exe
|
X
|
DealHelper adware
|
|
Secure
|
secure.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
Bat
|
secure2.bat
|
X
|
Added by the ZCREW.C TROJAN!
|
|
Network Configuration Security Manager
|
secure32.exe
|
X
|
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
|
|
Win32 Security Protocol
|
secure32.exe
|
X
|
Added by the W32/Rbot-ETI worm and IRC backdoor.
|
|
Winsecure Antivirus
|
SecureAntivirus.exe
|
X
|
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
|
|
SecureCleaner
|
SecureCleaner.exe
|
X
|
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
|
|
SecureFighter
|
SecureFighter.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
SecureFighter Security Service
|
SecureFighterSvc.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
<not used>
|
SecureGuard.vbs
|
X
|
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
|
|
SecureItPro
|
Secureitpro470p.exe
|
U
|
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
|
|
SecureKeeper
|
SecureKeeper.exe
|
X
|
Added by the SecureKeeper rogue anti-spyware program.
|
|
Security Monitor
|
securemon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security Center Distribution
|
securesec.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security System
|
securesys.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SecureVeteran
|
SecureVeteran.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureVeteran Security Service
|
SecureVeteranSvc.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureWarrior
|
SecureWarrior.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
SecureWarrior Security Service
|
SecureWarriorSvc.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
<random characters>
|
securewinload32x.exe
|
X
|
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Security iGuard
|
Security iGuard.exe
|
N
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Disk Keeper
|
SECURITY.EXE
|
X
|
Added by the Troj/Daoser-A trojan downloader.
|
|
Server Advance
|
Security.exe
|
X
|
Added by the Troj/Bckdr-PUS backdoor Trojan.
|
|
Microsoft
|
Security.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Security 2009
|
Security2009.exe
|
X
|
Added by the Security 2009 rogue anti-spyware program.
|
|
Microsoft Security Update
|
security32.exe
|
X
|
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
|
|
aluria security center
|
SecurityCenter.exe
|
N
|
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
|
|
Microsoft Secure Messenger.NET Service
|
securitychk.exe
|
X
|
Added by the SDBOT.VT WORM!
|
|
SecurityFighter
|
SecurityFighter.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
SecurityFighter Security Service
|
SecurityFighterSvc.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
Security Manager
|
SecurityManager.exe
|
U
|
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
|
|
securityService
|
securityService.dll
|
X
|
Added by the Troj/KillJWS-A Trojan.
|
|
SecuritySoldier
|
SecuritySoldier.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecuritySoldier Security Service
|
SecuritySoldierSvc.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecurityUpdate
|
SecurityUpdate.exe
|
X
|
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
|
|
SECWIZ98
|
SECWIZ98.EXE
|
Y
|
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
|
|
CLSID
|
sed.exe
|
X
|
Adult content dialler
|
|
SESync
|
sed.exe
|
X
|
Downloadware/SED adware downloader
|
|
gqvqevs
|
seeffkme.exe
|
X
|
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
seekmo
|
seekmo.exe
|
X
|
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
|
|
seeve
|
seeve.exe
|
X
|
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
|
|
Selene
|
Selene.exe
|
X
|
Added by the Trojan.Eneles infection!
|
|
FriendlyWebQuick-Launch
|
SELFCERT.EXE
|
N
|
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
|
|
seli
|
seli.exe
|
X
|
Added by the Troj/LowZone-AS Trojan.
|
|
Roflcopteur
|
seman.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
semanticinsight
|
SemanticInsight.exe
|
X
|
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
|
|
[not used]
|
sembako-cfzjkmg.exe
|
X
|
Added by the W32/Brontok-M worm.
|
|
[not used]
|
sembako-cfzjmmg.exe
|
X
|
Added by the W32/Brontok-N worm.
|
|
Bron-Spizaetus
|
sempalong.exe
|
X
|
Added by the W32/Brontok-E worm.
|
|
SeMS
|
SeMS.exe
|
U
|
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
|
|
MailExport
|
sendmail.dll
|
X
|
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
|
|
QQ
|
sendmess.exe
|
X
|
Added by the SEMES TROJAN!
|
|
Sensiva
|
Sensiva.exe
|
U
|
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
|
|
startup scan
|
Sensor.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
sentinelmon
|
sentinelmon.exe
|
U
|
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
|
|
SENTRY
|
SENTRY.exe
|
X
|
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
|
|
CrisysTec Sentry
|
Sentry.exe
|
X
|
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
|
|
RNBOStart
|
sentstrt.exe
|
U
|
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
|
|
Sepate Security Firewall
|
sepate.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
TCP x IP2 Kernel
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
TCP x IP2 Kernel32
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
seppgs
|
seppgs.dll
|
X
|
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
|
|
serazavr
|
serazavr.log
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
serpe
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
ltwob
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
avnort
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
Window Server
|
Sererver.exe
|
X
|
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
|
|
mserv
|
seres.exe
|
X
|
Added by the W32/Agent-LIL worm.
|
|
Serials
|
serials.exe
|
X
|
Any one of a variety of worms and trojans
|
|
Anthrax
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Justice
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Four
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Ebola
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Fathers
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
F4J
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
System Service
|
serious.exe
|
X
|
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Services management
|
serivces.exe
|
X
|
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
|
|
win
|
serlass.exe
|
X
|
Added by the Trojan.Startpage.S browser hijacker.
|
|
Microsoft WinUpdates
|
serm32.exe
|
X
|
Added by the RBOT.GE WORM!
|
|
sern
|
Sernet32.exe
|
X
|
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
|
|
Networok Derve H1ots
|
serop.exe
|
X
|
Added by the Troj/GrayBrd-I backdoor Trojan.
|
|
serrdctl.exe
|
serrdctl.exe
|
Y
|
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
|
|
serrv
|
serrv.exe
|
X
|
Added by the W32/Stratio-AW worm.
|
|
Microsoft Windows Services
|
Sersices.exe
|
X
|
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
<not used>
|
sertail.exe
|
X
|
Added by the Troj/Inject-DD Trojan.
|
|
Serv-U
|
serv-u32.exe
|
N
|
FTP server
|
|
generic service process
|
serv1ces.exe
|
X
|
Added by the W32/Agobot-JK WORM! ... Read More
|
|
Service Manager
|
serv3manager.exe
|
X
|
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Rout111
|
serv454.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
|
|
MSN
|
serv5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Services Management Clients
|
servc.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
WINDOWS SYSTEM
|
servce.exe
|
X
|
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Servicer
|
servcr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
servcs.exe
|
X
|
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
|
|
Services Managements
|
servcs.exe
|
X
|
Added by the Troj/QHost-B Trojan.
|
|
Key2
|
serve.exe
|
?
|
??
|
|
Telephots google
|
serveet.exe
|
X
|
Added by the WORM_FUBALCA.AQ worm.
|
|
Remote Log
|
ServeHost.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
NDIS Adapter
|
servenxpp.exe
|
X
|
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
|
|
NDIS TCP Layer Transport Device
|
servenxpp.exe
|
X
|
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
|
|
Win32R
|
Server.com
|
X
|
Added by the ESTRELLA TROJAN!
|
|
easyServ
|
Server.exe
|
X
|
Added by the EASYSERV TROJAN!
|
|
RunProg
|
Server.exe
|
X
|
Added by the OPTIX.04.A TROJAN!
|
|
server
|
server.exe
|
X
|
Added by the DELTAD.A WORM!
|
|
SERVER.EXE
|
SERVER.EXE
|
X
|
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
|
|
WinProt
|
server.exe
|
X
|
Added by the CHUPACABRA TROJAN!
|
|
pcServer
|
server.exe
|
X
|
Ssppyy spyware
|
|
Windows Updata Server
|
server.exe
|
X
|
Added by the Backdoor.Graybird.N backdoor.
|
|
VMWare Authorization Servicec
|
Server.exe
|
X
|
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
|
|
Windows Media Player
|
Server.exe
|
X
|
Added by the Troj/Feutel-AE backdoor Trojan.
|
|
Pigeon_Server
|
server.exe
|
X
|
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
|
|
Server 2.0
|
Server.exe
|
X
|
Added by the Troj/GrayBrd-AN backdoor Trojan.
|
|
startkey
|
server.exe
|
X
|
Added by the Troj/Bifrose-B Trojan.
|
|
Registry
|
Server.exe
|
X
|
Added by the Troj/Small-ALO backdoor Trojan.
|
|
ConsoleDevil
|
server.exe
|
X
|
Added by the Troj/Bckdr-MJO backdoor Trojan.
|
|
pcServer
|
server.exe
|
X
|
Added by the SSPPYY spyware.
|
|
CRAYON
|
server.exe
|
X
|
Added by the W32/VB-DNI worm.
|
|
Windows_updatesafe
|
Server.exe
|
X
|
Added by the Troj/Bckdr-QIS backdoor Trojan.
|
|
SQL
|
server.exe
|
X
|
Added by the W32/Punya-B worm.
|
|
Xploit Server
|
server.exe
|
X
|
Added by the Troj/Bckdr-JUF information stealing Trojan.
|
|
serverex
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
winserver
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
ZtgServerSwitch
|
server.vbs
|
X
|
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
|
|
Server Backbone
|
server05.exe
|
X
|
Added by the W32/Rbot-ZM worm.
|
|
Server2.0
|
Server2.0.exe
|
X
|
Added by the Troj/Feutel-AY trojan Backdoor.
|
|
Windows_Folder
|
Server4.exe
|
X
|
Added by the Troj/Hupigon-SK backdoor Trojan.
|
|
WindowsAPI.DLL
|
Server5.exe
|
X
|
Added by the "Fear and Hope" TROJAN!
|
|
<random name>
|
Servere.exe
|
X
|
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
Windows DDOSServer
|
serversc.exe
|
X
|
Added by the Troj/Bckdr-PMY backdoor Trojan.
|
|
Serverx
|
Serverx.exe
|
X
|
Added by the W32/Madang-A virus.
|
|
Windows SystemDown
|
servet.exe
|
X
|
Added by the W32/Delf-ESX worm.
|
|
Windows XP
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYB Trojan.
|
|
Windows Ins
|
servet.exe
|
X
|
Added by the W32/SillyFD-AB worm.
|
|
Remote Acces
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYT Trojan Downloader.
|
|
Windows InstallService
|
servet.exe
|
X
|
Added by the W32/SillyFD-AF spyware worm.
|
|
Windows DDE
|
servet.exe
|
X
|
Added by the W32/WoWMovs-A worm.
|
|
SearchNet_Up
|
ServeUp.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
run windows
|
servic.bat
|
X
|
Added by the REBOOT-AP TROJAN! ... Read More
|
|
Sygate Personal Firewall Start
|
servic.exe
|
X
|
Added by the RBOT-RY WORM!
|
|
Microsoft Update 32
|
servic.exe
|
X
|
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft .Net Framework
|
servic.exe
|
X
|
Added by the Troj/Agent-GUU Trojan.
|
|
WINDOWS SYSTEMn
|
servicces.exe
|
X
|
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
serviccs.exe
|
serviccs.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Config
|
service.exe
|
X
|
Added by the ISRAZ.B WORM!
|
|
Configuration Loader
|
Service.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Myapp
|
service.exe
|
X
|
Homepage hijacker
|
|
Service
|
service.exe
|
U
|
Added by the ALADINZ.H TROJAN!
|
|
Service.exe
|
Service.exe
|
X
|
"servedby.advertising" popup generator
|
|
SYS_CLEAN
|
Service.exe
|
X
|
Added by the FLOPCOPY WORM!
|
|
Win32 USB2.0 Driver
|
service.exe
|
X
|
Added by the SDBOT-QF WORM!
|
|
Windows Services
|
service.exe
|
X
|
Added by the RANDEX.R WORM!
|
|
Windows_Serivce
|
SERVICE.exe
|
X
|
Added by the WOOTBOT.AH WORM!
|
|
MSN BETA
|
SERVICE.EXE
|
X
|
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
|
|
r_server
|
SERVICE.EXE
|
X
|
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
|
|
Remote Administrator Service
|
SERVICE.EXE
|
X
|
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
|
|
Windows Screensaver
|
Service.exe
|
X
|
Added by the W32.KELVIR.P WORM!
|
|
Sygate Personal Firewall
|
service.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/Dcmbot-C backdoor trojan.
|
|
Registry Value Name
|
service.exe
|
X
|
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
service manager
|
service.exe
|
X
|
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
|
|
WindowsService
|
service.exe
|
X
|
Added by the W32/Tilebot-K worm.
|
|
systrans
|
service.exe
|
X
|
Added by the Troj/StartPa-GZ backdoor Trojan.
|
|
Servicemng
|
service.exe
|
X
|
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:
c:\windows\system32\hserv.sy ... Read More
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/DcmBot-F backdoor Trojan.
|
|
AdobeReaderPro
|
service.exe
|
X
|
Added by the W32/Rbot-BCA worm and IRC backdoor.
|
|
Windows Service Manager
|
service.exe
|
X
|
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
|
|
Service App
|
Service.exe
|
X
|
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
|
|
Windows startup service
|
service.exe
|
X
|
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
|
|
Microsoft Coyshader Runtime
|
service.exe
|
X
|
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
|
|
systr2
|
SERVICE.exe
|
X
|
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
|
|
Windows smss service
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
|
|
Clean up
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
|
|
Service Configurator
|
service.exe
|
X
|
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
service.exe
|
X
|
Added by the W32/Agobot-GY worm and IRC backdoor.
|
|
PsY
|
service.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
Windows Logon Service
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsServices
|
service.exe
|
X
|
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
|
|
Windows Net Cfg
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MDNS
|
service.exe
|
X
|
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
|
|
Network Services
|
Service.exe
|
X
|
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Windows svchost
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Updates
|
service.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
|
|
Windows Helper
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsHelpService
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Messenger Service
|
service.exe
|
X
|
Added by the Troj/Dloadr-BVG Trojan.
|
|
WinDLL (service.exe)
|
service.exe
|
X
|
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
|
|
updater23
|
service.exe.js
|
X
|
Added by the JS/Uragon-A javascript worm.
|
|
Service
|
Service.pif
|
X
|
Added by the W32/Assiral-C email worm.
|
|
sb0t
|
service1.dll
|
X
|
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
|
|
Service2
|
Service2.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Iroffer malware.
|
|
ProcService
|
service32.dll
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
service32
|
service32.exe
|
X
|
Added by the W32/AGOBOT-ST WORM! ... Read More
|
|
kernel services
|
service32.exe
|
X
|
Added by the TROJ/PRX-B TROJAN! ... Read More
|
|
Microsoft Service Manager
|
service32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Configuration Loader
|
service5.exe
|
X
|
Added by the GAOBOT.AF WORM!
|
|
MS Security Hotfix
|
service5.exe
|
X
|
Added by the GAOBOT.AG WORM!
|
|
WINDOWS SYSTEM
|
service5.exe
|
X
|
Added by the W32/Mytob-JF worm and backdoor.
|
|
Serve User
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
System
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
pushbot
|
service5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
pushbot
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
MSN
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Windows svchost
|
servicean.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinLsass
|
servicec.exe
|
X
|
Added by the SCANE WORM!
|
|
Bredbandsbolaget
|
servicecenter.exe
|
Y
|
Connectivity software for the Bredbands Bolaget ISP.
|
|
serviceconnect
|
serviceconnect.exe
|
X
|
Added by the AGOBOT.AIR WORM! ... Read More
|
|
ServiceHost32
|
ServiceHost32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
ServiceLayer
|
ServiceLayer.exe
|
Y
|
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
|
|
USB Device
|
servicelog.exe
|
X
|
Added by the WOOTBOT.CB WORM!
|
|
wind logd file
|
servicelogd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Service Manager
|
SERVICEMGR.EXE
|
X
|
Added by the W32/PassMail-D worm.
|
|
Microsoft Servicez Manager
|
servicemgrz.exe
|
X
|
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Service Monitor
|
servicemon.exe
|
X
|
Added by the W32/Tilebot-GH worm and IRC backdoor.
|
|
System Service
|
servicent.exe
|
X
|
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
[Various Names]
|
Serviceprocess.exe
|
X
|
Part of the Wareout infection as described here.
|
|
.Prog
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
BuildLab
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
ccApps
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
FriendlyTypeName
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
golumm
|
services.exe
|
X
|
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Microsoft Services
|
services.exe
|
X
|
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Microsoft Visual SourceSafe
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
|
|
MSOffice
|
services.exe
|
X
|
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
|
|
RegDone
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Service
|
services.exe
|
X
|
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Services
|
services.exe
|
X
|
Added by a number of VIRUSES, WORMS and TROJANS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Services Process
|
services.exe
|
X
|
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
|
|
Services.EXE
|
services.exe
|
X
|
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
services.exe
|
Services.exe
|
X
|
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
|
|
sysinit
|
services.exe
|
X
|
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
System Update2
|
services.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
TEXTCONV
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
WMAudio
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Xpsystem
|
SERVICES.EXE
|
X
|
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
xpsystem
|
services.exe
|
X
|
CoolWebSearch parasite variant
|
|
xp_system
|
services.exe
|
X
|
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Norton Auto-Protect
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
Windows Service
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
RPCserv32
|
SERVICES.EXE
|
X
|
Added by the MyDoom.AN WORM! File is found in the Windows directory.
|
|
Services Startup
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
|
|
Services Logon
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
|
|
{357AA41A-B7A8-4632-A27D-5B980B25CF43}
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
SuperBar.Component
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
AdRotator.Application
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
xp_system
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker.
|
|
run
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
|
|
_SystemCheck
|
services.exe
|
X
|
Added by the W32/Sober-M WORM!
|
|
WinStart
|
services.exe
|
X
|
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
|
|
golum
|
services.exe
|
X
|
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
|
|
_winstart
|
services.exe
|
X
|
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
|
|
SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
|
|
_SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
|
|
SysService
|
SERVICES.EXE
|
U
|
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
|
|
Windows Service Controller
|
services.exe
|
X
|
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
|
|
WSVCS
|
SERVICES.EXE
|
U
|
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
|
|
Microsoft Service Controller
|
services.exe
|
X
|
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
|
|
RPCserv32g
|
services.exe
|
X
|
Added by the W32.Bobax.AA mass-mailing worm.
|
|
Events
|
services.exe
|
X
|
Added by the Backdoor.EggHead backdoor.
|
|
NTSet32
|
services.exe
|
X
|
Added by the Troj/WinSpy-C Trojan.
|
|
NetBios Ext
|
services.exe
|
X
|
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
|
|
NetBios Ext32
|
services.exe
|
X
|
Added by the W32.Mydoom.AN@mm worm.
|
|
Torjan Program
|
services.exe
|
X
|
Added by the W32.Autex.C shared folder/drive worm. This should not be confused with the legitimate Microsoft file located in the Windows %System% fold ... Read More
|
|
Services
|
services.exe
|
X
|
Added by the W32.Mydoom.CI@mm mass-mailing worm.
|
|
WinINet
|
services.exe
|
X
|
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:
c:\WINDOWS\ConnectionStatus\netslot.n ... Read More
|
|
_WinINet
|
services.exe
|
X
|
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:
c:\WINDOWS\ConnectionStatus\netslot. ... Read More
|
|
_WinCheck
|
services.exe
|
X
|
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
|
|
WinCheck
|
services.exe
|
X
|
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
|
|
_Windows
|
services.exe
|
X
|
Added by the W32.Sober.X@mm mass-mailing worm.
|
|
RPCser32g
|
services.exe
|
X
|
Added by the W32/Ritdoor-C worm and backdoor Trojan.
|
|
Net
|
services.exe
|
X
|
Added by the Troj/Bravo-C Trojan.
|
|
Microsoft Windows Update Service
|
services.exe
|
X
|
Added by the W32/Tilebot-DJ worm and IRC backdoor.
|
|
winsrv3
|
services.exe
|
X
|
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
|
|
upDpacketo
|
services.exe
|
X
|
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
|
|
Dual
|
services.exe
|
X
|
Added by the Troj/Dloadr-SJ Trojan. This file should not be confused with the legitimate Microsoft file C:\Windows\System32\services.exe. ... Read More
|
|
Services Control Manager
|
services.exe
|
X
|
Added by the Troj/Delf-CG. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\service.exe. ... Read More
|
|
AolSoftware
|
services.exe
|
X
|
Added by the W32/Tilebot-FA worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\servic ... Read More
|
|
Microsoft Windows HelpFile
|
services.exe
|
X
|
Added by the W32/Tilebot-FQ worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\servic ... Read More
|
|
Microsoft (R) Windows Protected Content Restoration Service
|
services.exe
|
X
|
Added by the BKDR_AGENT.AGV backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\System32\services.exe. ... Read More
|
|
NTFS Storage
|
services.exe
|
X
|
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file c:\Windows\System ... Read More
|
|
Servicesara
|
services.exe
|
X
|
Added by the W32/Brontok-BS worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
|
|
Servicerepclient1
|
SERVICES.EXE
|
X
|
Added by the W32/Brontok-BT worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
|
|
VideoDriver32
|
services.exe
|
X
|
Added by the Troj/WinSpy-K backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
|
|
Services an controller-settings
|
services.exe
|
X
|
Added by the W32/Tilebot-HY worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe.
... Read More
|
|
Themes Plug and Play
|
services.exe
|
X
|
Added by the W32.Dizan.C virus. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. W32.Dizan.C is a viru ... Read More
|
|
_WinData
|
services.exe
|
X
|
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
|
|
WinData
|
services.exe
|
X
|
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
|
|
Windows Host Services
|
services.exe
|
X
|
A variant of the IRCBot family of backdoor worms.
|
|
Service Controller
|
services.exe
|
X
|
Added by the W32/Sdbot-DDT worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
|
|
LiveUpdate32
|
services.exe
|
X
|
Identified as Backdoor.Win32.VB.bau. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
AutoAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32/Punya-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
ServicesAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32/Punya-B worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
DHCP32
|
services.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Microsoft Himu
|
services.exe
|
X
|
Added by the W32.Himu.A@mm worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
xem
|
services.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.CWS.am downloader Trojan. This infection should not be confused with the legitimate C:\Windows\ ... Read More
|
|
JavaLOG
|
services.exe
|
X
|
Identified as the Backdoor.IROffer variant malware.
|
|
Mims service
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
|
|
Services Management
|
services.exe
|
X
|
Identified as the Backdoor.Rizo.A malware.
|
|
Windows Services Registry
|
services.exe
|
X
|
Identified as a variant of the Trojan.Win32.Agent.axx malware. This infection should not be confused with the legitimate C:\Windows\System32\services ... Read More
|
|
AutoUpdate32
|
services.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
|
|
Flash Player2
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
|
|
ValueX
|
services.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
NAVUpdater32
|
services.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.WinSpy.l malware. ... Read More
|
|
Flash Media
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Srv32Win
|
services.exe
|
X
|
Added by the TROJ_DLOADER.UEF Trojan. This infection should not be confused with the legitimate C:\Windows\System2\services.exe file. ... Read More
|
|
ConfigVir
|
services.exe
|
X
|
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
runservices
|
services.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Small.qo malware. This infection should not be confused with the legitimate C:\Windows\System32\serv ... Read More
|
|
[system]
|
services.exe
|
X
|
Identified as a variant of the W32.Mandaph worm.
|
|
Amie Release V6.9D
|
services.exe
|
X
|
Added by the Troj/VB-EAN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Guard Service
|
services.exe
|
X
|
Added by the Internet Antivirus Pro rogue anti-malware program.
|
|
ServiceAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32.Korron.B worm. W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible dr ... Read More
|
|
<not used>
|
services.scr
|
X
|
Added by the W32.Odelud worm. W32.Odelud is a worm that spreads via network shares and removable media and may infect executable files. ... Read More
|
|
Windows Startup
|
services21.exe
|
X
|
Added by the AGOBOT-MX WORM!
|
|
Sygate Personal Firewall Start
|
services32.exe
|
X
|
Added by the RBOT-MB WORM!
|
|
system32.exe
|
services32.exe
|
X
|
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
|
|
Service Sequence
|
services32.exe
|
X
|
Added by the W32/Tilebot-C worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
services32.exe
|
services32.exe
|
X
|
Added by the W32/Forbot-FN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
microsoft system debug
|
services32.exe
|
X
|
Added by the RBOT.AKH WORM! ... Read More
|
|
wins update 32
|
services32.exe
|
X
|
Added by the W32/Forbot-FN ... Read More
|
|
services32
|
services32.exe
|
X
|
Added by the W32/Esbot-B worm and IRC backdoor.
|
|
Win Services
|
Services32.exe
|
X
|
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
|
|
System33
|
services33.exe
|
X
|
Added by the W32/Rbot-VQ worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
win32serv
|
servicesetup.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Configuration Loader
|
Servicess.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
services.exe
|
servicess.exe
|
X
|
Added by the Troj/MSNSpy-B password stealing Trojan.
|
|
Microsoft
|
servicess.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
System Service
|
servicess.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
servicess.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
<not used>
|
Servicess.exe
|
X
|
Identified as a variant of the Worm.IM.Sohanad worm.
|
|
servicestub.exe
|
servicestub.exe
|
X
|
Identified as a the Backdoor.Win32.DsBot.mu MSN worm.
|
|
usbdrv
|
servicetask.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft Update Machine
|
servicez.exe
|
X
|
Added by the SPYBOT.BI WORM
|
|
System Service
|
servicez.exe
|
X
|
Added by the W32/Rbot-AOY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Serices Hostin
|
servicez.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
servicez.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
servico
|
servico.exe
|
X
|
Added by the Troj/Banker-DKE Trojan. Troj/Banker-DKE includes functionality to send notification messages to remote locations. ... Read More
|
|
servico2
|
servico2.exe
|
X
|
Added by the Troj/Banker-DTB banking Trojan.
|
|
ASP.NET State Service
|
servicos..exe
|
X
|
Added by the Troj/Dadobra-I downloader Trojan.
|
|
servics
|
servics.exe
|
X
|
Added by the Troj/Singu-J password stealing backdoor trojan.
|
|
k3ym4n
|
servicsmjr.exe
|
X
|
Added by the W32/Rbot-RW worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft Update Machine
|
servicz.exe
|
X
|
Added by the RBOT-HU WORM!
|
|
ryan1918
|
servidevice.exe
|
X
|
Added by the W32/Checkout!0e4a3c52 mass-mailing worm.
|
|
Net Login
|
serviecs.exe
|
X
|
Added by the Troj/Bckdr-QSV backdoor Trojan.
|
|
Windows Server Information
|
servinfo.exe
|
X
|
Added by the W32/Forbot-EN WORM/IRC backdoor Trojan, which also starts a new service "Windows ExplorerTM" with a display name of "Windows Server Infor ... Read More
|
|
Windows ExplorerTM
|
servinfo.exe
|
X
|
A service initiated by the W32/Forbot-EN, with a display name of "Windows Server Information" on NT systems. ... Read More
|
|
ashcap
|
servirsess.exe
|
X
|
Added by the Spyware.SpySure Spyware. Spyware.SpySure is a spyware program that may steal sensitive information from the computer. ... Read More
|
|
servisec
|
servisec.exe
|
X
|
Added as a new service by the Troj/Xrat-B TROJAN, using a displayname of the same. ... Read More
|
|
Windows Servser
|
serviser.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WINDOWS SYSTEM
|
servises.exe
|
X
|
Added by the W32/Zotob-I worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
servises
|
servises.exe
|
X
|
Added by the Troj/Agent-JUJ Trojan.
|
|
microsoft update machine
|
serviz.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
servlce
|
SERVlCE.EXE
|
X
|
Added by the W32/Agobot-UB ... Read More
|
|
SVCHOST
|
SERVlCES.EXE
|
X
|
Added by the Troj/Delf-LF backdoor Trojan.
|
|
blah service
|
servoxt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Service Restore Panels
|
servpanel.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Mirsft sdce
|
servs.exe
|
X
|
Added by a variant of the Rbot worm and IRC backdoor.
|
|
[unknown name]
|
SERVSYS32.EXE
|
X
|
Added by the W32/Sdbot-KQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Serv-U FTP Server
|
ServUDaemon.exe
|
X
|
Added by the Troj/Bdoor-ABW backdoor Trojan. This program is actually a legitimate program that is bundled with the malware. If it was not installed ... Read More
|
|
Windows USB Monitor
|
servupdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
ServUTrayIcon
|
ServUTray.exe
|
?
|
System Tray icon for Serv-U FTP server. Is it required?
|
|
System Service
|
servza.exe
|
X
|
Added by the W32/Rbot-CRG worm and IRC backdoor.
|
|
System
|
serwin.exe
|
X
|
Added by the Troj/LdPinch-BN password-stealing and backdoor trojan.
|
|
session client
|
sescli.exe
|
U
|
SurfSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
Systems
|
sescmgr.exe
|
X
|
Added by the Troj/DwnLdr-GAH download Trojan.
|
|
PPK Setup(Server)
|
SEServe.exe
|
U
|
Programmable Power Key on Sony Vaio laptops. "Using the Programmable Power Key (PPK) button, collect your e-mail automatically with one key stroke. Yo ... Read More
|
|
Windows NT Session Manager
|
sess.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
irc session
|
sessionmgr.exe
|
X
|
Added by the SDBOT-ACE WORM!
|
|
QWS3270 Sessions
|
sessions.exe
|
U
|
QWS3270 Secure terminal emulation software
|
|
Remote Desktop Help Session Manager
|
sessmgr.exe
|
U
|
Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Depen ... Read More
|
|
Session Manager
|
sessmngr.exe
|
X
|
Added by the Troj/Theef-F backdoor Trojan.
|
|
SES Service
|
sesvc.exe
|
X
|
Added by the W32/Sdbot-CZU worm and IRC backdoor.
|
|
HPLJ Config
|
SetConfig.exe
|
Y
|
Connects system to networked HP printer.
|
|
Update local
|
SetCPQLC.exe
|
?
|
Running on a Compaq desktop. Any ideas?
|
|
CentralCrSr
|
SetCrSr.exe
|
X
|
Added by SetCursor. SetCursor is an application that moves the cursor into the middle of the screen after the computer is resumed from being suspended ... Read More
|
|
Microsoft« ActiveX Debugger NT
|
setdebugnt.exe
|
X
|
Added by the Troj/Bancos-CZ Internet banking trojan. This infection targets Brazilian banks. ... Read More
|
|
Microsoft ActiveX Debugger NT
|
setdebugnt.exe
|
X
|
Added by the Troj/Bancos- Trojan. If you are infected with this infection you should immediately change all passwords to any online banking sites tha ... Read More
|
|
setdefprt
|
setdefprt.exe
|
N
|
Sets the Brother Printer to be the default printer after installation of the printer software. ... Read More
|
|
UniPrint
|
SetDfltSettings.exe
|
U
|
Drivers for Uniprint, a printing help for Terminal Services and Citrix which recieves downloaded files from a Uniprint enabled server and prints them ... Read More
|
|
GammaHotKeys
|
setgamma.exe
|
U
|
Part of the RadeonTweaker program for adjusting ATI Radeon graphics cards. Allows you to adjust the gamma (or brightness) when playing a full-screen g ... Read More
|
|
MediaFace Integration
|
Sethook.exe
|
N
|
Fellowes Neato™ cd label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
|
|
SetHook
|
SetHook.exe
|
N
|
Fellowes Neato CD label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
|
|
SETI@home
|
SETI@home.exe
|
N
|
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
|
|
seticlient
|
SETI@home.exe
|
N
|
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
|
|
SetIcon
|
SetIcon.exe
|
N
|
Installed by a 6-in-1 (4 Media Card slots, a floppy drive and a USB connection) device. Constantly updates the icons for the four Media Card slots tha ... Read More
|
|
SetiQueue
|
Setiqu~1.exe
|
N
|
Provides work unit buffering for Seti@Home clients - see here for more details
|
|
SetiSpy
|
SetiSpy.exe
|
N
|
From the site - 'SETI Spy is a little program I wrote to "spy" on the progress and performance of the SETI@home client. I call it a "spy" because I tr ... Read More
|
|
SetPoint
|
SetPoint.exe
|
X
|
Added by the W32/Rbot-BWI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SetPoint
|
SetPoint.EXE
|
U
|
Logitech keyboard and mouse drivers that allows you to configure and enable special features of your mouse and keyboard. This startup is only require ... Read More
|
|
SetPoint.exe
|
SetPoint.exe
|
X
|
A variant of the Bck/Sdbot.LBM family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
SetPoints.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
PowSet
|
Setpow.nec
|
U
|
Energy Start (Energy Star) power configuration startup settings for certain Packard Bell computers. ... Read More
|
|
SetRefresh
|
SetRefresh.exe
|
?
|
Found on a Compaq PC. Video refresh rate utility? Is it required?
|
|
unsrvc
|
setrysrvc.exe
|
X
|
Added by the Troj/Bancos-BDW banking Trojan.
|
|
InstallNAIProduct
|
SETUP.EXE
|
?
|
Could be related to Network Associates Inc who own the McAfee VirusScan product amongst others. This was found in a directory called "VSC". Could it b ... Read More
|
|
MM Install
|
setup.exe
|
?
|
Possibly Money Manager from Moneysoft?
|
|
RjLyraInstaller
|
setup.exe
|
?
|
??
|
|
Tango
|
Setup.exe
|
?
|
Tango Broadband access software. Is it required?
|
|
Windows Accelerators
|
setup.exe
|
U
|
KeySpy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" ... Read More
|
|
zzzhpsetup
|
setup.exe
|
?
|
??
|
|
rmalt
|
Setup.exe
|
X
|
Added by the Troj/Clicker-CS Trojan.
|
|
Setup
|
Setup.exe
|
X
|
Identified by BOClean as Trojan GMTER.
|
|
reg_del
|
setup.exe
|
X
|
Added by the Troj/Bdoor-BDT backdoor Trojan.
|
|
setup.exe
|
setup.exe
|
X
|
Added by the Troj/Goldun-GB Trojan.
|
|
Windows LoL Layer
|
setup.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.dnd family of worms and IRC backdoor Trojans. ... Read More
|
|
|
Setup.exe
|
X
|
Added by the Trojan.Win32.VB.boo Trojan.
|
|
MCAFEEIPS
|
setup.exe
|
X
|
Added by the Trojan.Whitewell Trojan. Trojan.Whitewell is a Trojan horse that opens a back door on the compromised computer. ... Read More
|
|
zzzCamlnSuitelll
|
setup.exe 46***
|
?
|
??
|
|
setup2.exe
|
setup2.exe
|
X
|
Added by the WiniBlueSoft rogue anti-spyware program.
|
|
[not used]
|
setup32.exe
|
X
|
Added by the W32/Rbot-AFJ worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
{6211D3F0-B61E-D9E3-2088-F6286B0D22AC}
|
setup40.exe
|
X
|
A variant of the Bifrose Trojan.
|
|
Highspeeddownloader
|
SetupClickHere.EXE
|
X
|
Added by a variant of the Trojan.StartPage malware. When infected with this program, your Internet Explorer home page will be hijacked to turbo-searc ... Read More
|
|
C:\WINDOWS\system32\SetupCmd.exe
|
SetupCmd.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.aww Trojan.
|
|
[Various Names]
|
SetupExeDll.exe
|
X
|
Part of the Wareout infection as described here.
|
|
MemConfig
|
SetupIE.com
|
X
|
Added by the TAPLAK WORM!
|
|
winphonics7536
|
setups.exe
|
X
|
Added by a variant of the MUTIN-C TROJAN!
|
|
Wireless Zero Configuration WZCSVCRpcLocator
|
Setupw.exe
|
X
|
Added by the Troj/Kango-F Trojan.
|
|
<not used>
|
setup_.exe
|
X
|
Added by the Troj/KGSpy-A key logging and information-stealing Trojan.
|
|
win32
|
Setup_32.exe
|
X
|
Added by the EVILBOT.B TROJAN!
|
|
Windows
|
Setup_ver1.1400.0.exe
|
X
|
Identified as a variant of the FakeAlert/Fraudload Downloader malware.
|
|
setuzp
|
setuzp.exe
|
?
|
??
|
|
_Setv
|
Setv.com
|
X
|
Added by the W32.Besam worm.
|
|
Windows secure
|
setver32.exe
|
X
|
Added by the SPYBOT.EP WORM!
|
|
SetVrc
|
setvrc.exe
|
X
|
Added by the HUNTOCX WORM!
|
|
cof.updit
|
Seurit.exe
|
X
|
Identified as a Trojan Downloader.
|
|
sevenlink
|
sevenlog.sys
|
X
|
Added by the Trojan.Sevensaw Trojan.
|
|
Sevenlink
|
Sevenlog.sys
|
X
|
Added by the Troj/Agent-GIR Trojan.
|
|
SevenSword Service
|
SevenSowrdSvr.exe
|
X
|
Added by the Trojan.Sevensaw Trojan. Trojan.Sevensaw is a Trojan horse that drops a keyboard filter driver to log keystrokes and sends the stolen info ... Read More
|
|
SevenSword Service
|
SevenSowrdSvr.exe
|
X
|
Added by the Troj/Agent-GIR Trojan.
|
|
alligt
|
severe.exe
|
X
|
Added by the W32.Slurk.A worm. W32.Slurk.A is a worm that copies itself to all removable and shared drives, and drops other threats on to the comprom ... Read More
|
|
jusodl
|
severe.exe
|
X
|
Added by the Troj/QQRob-ADM Trojan.
|
|
Windows Services Operation
|
sevices.exe
|
X
|
Added by the W32/Sdbot-DNO worm and IRC backdoor.
|
|
Configuration Servecie
|
sewins.exe
|
X
|
Added by the W32/Sdbot-COH worm and IRC backdoor.
|
|
{9B71D88C-C598-4935-C5D1-43AA4DB90836}
|
sex.exe
|
X
|
Added by the Troj/Agent-GLW Trojan.
|
|
Microsoft Synchronization Manager
|
sexcam.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
hsim
|
sexgame.exe
|
X
|
Unidentified malware
|
|
Sexnow
|
Sexnow.exe
|
X
|
Added by the Dial/Senow-B premium rate porn dialer.
|
|
INF0
|
SEXSPEED.EXE
|
X
|
Added by the Troj/Sexspeed trojan.
|
|
Sygate Personal Firewall
|
sexy.exe
|
X
|
An Rbot WORM variant adds the file to download additional files, steal CD keys and become involved in DoS attacks via an IRC channel and remote attack ... Read More
|
|
MSN
|
SexyMama.JPG.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SystemTasks
|
sexypicz.exe
|
X
|
Adult content dialler
|
|
sexy_blondes
|
Sexy_Blondes.exe
|
X
|
Added by the Porn.Dialer.Sexy Key Logger ... Read More
|
|
Sexy_ca
|
Sexy_ca.exe
|
X
|
Added by the GMSoft Porn Dialer.
|
|
Sexy_dk
|
Sexy_dk.exe
|
X
|
Added by the GMSoft Porn Dialer.
|
|
Sexy_es
|
Sexy_es.exe
|
X
|
Added by the GMSoft Porn Dialer.
|
|
Sexy_gb
|
Sexy_gb.exe
|
X
|
Added by the GMSoft Porn Dialer.
|
|
Sexy_it
|
Sexy_it.exe
|
X
|
Added by the GMSoft Porn Dialer.
|
|
Sexy_sg
|
Sexy_sg.exe
|
X
|
Premium rate adult content dialler
|
|
sf
|
sf.exe
|
X
|
Added by the WIN32.FAVADD.O TROJAN!
|
|
Safeguard 2009
|
sf2009.exe
|
X
|
Added by the SafeGuard 2009 rogue anti-spyware program.
|
|
spamfighter agent
|
SFAgent.exe
|
U
|
SPAMfighter anti email spam filter ... Read More
|
|
cftmon
|
sfcmonit.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Agent.erg malware.
|
|
Update
|
sfcnmdd.exe
|
X
|
Added by the Troj/PPdoor-AS backdoor Trojan.
|
|
[not used]
|
sfcrt20.exe
|
X
|
Added by the Troj/PPdoor-AP backdoor Trojan.
|
|
Files Driver
|
sfdhost.exe
|
X
|
Added by the W32/Agobot-AJC worm.
|
|
StarForce Protection Environment Driver (version 1.x)
|
sfdrv01.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
Audio Device Manager
|
sfhgj.exe
|
X
|
Added by the W32/IRCBot-ZA worm and IRC backdoor.
|
|
StarForce Protection Helper Driver (version 2.x)
|
sfhlp02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
SonicFocus
|
SFIGUI.EXE
|
Y
|
Added by the SonicFocus music and audio enhancer.
|
|
sfita
|
sfita.exe
|
X
|
Added by the FAVADD.O TROJAN!
|
|
sfool.exe
|
sfool.exe
|
X
|
Added by the W32.Randex.EUS worm.
|
|
mssfos
|
sfool.exe
|
X
|
Added by the W32.Randex.EUS ... Read More
|
|
sfpc
|
sfpc.exe
|
U
|
Spy4PC is a spyware program that monitors user activity, logs keystrokes, and takes screenshots. If you didn't install this yourself remove it. ... Read More
|
|
Microsoft PC Health Remote Assistance File Open & Save controls
|
sfrcdlg32.exe
|
X
|
Added by the W32/Rbot-AVY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
StarForce Protection Synchronization Driver (version 2.x)
|
sfsync02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
StarForce Protection VFS Driver (version 2.x)
|
sfvfs02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
SfWinStartInfo
|
sfWinStartupInfo.exe
|
U
|
SFIRM32 Online Banking software
|
|
sm
|
sf_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! ... Read More
|
|
Sgecrypt
|
Sgecrypt.exe
|
U
|
SafeGuard Easy - "provides total company-wide protection for sensitive information on laptops and workstations. Boot protection, pre-boot user authent ... Read More
|
|
sginst
|
sginst.exe
|
N
|
eAcceleration Stop-Sign related - not recommended, see note
|
|
SpywareGuard
|
sgmain.exe
|
U
|
"SpywareGuard provides a real-time protection solution against spyware"
|
|
Screen Guard Message Scan
|
sgms.exe
|
U
|
Part of Access Denied security and privacy software
|
|
chicot
|
sgntu.dll
|
X
|
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
|
|
MSRegScan
|
SGP.exe
|
U
|
Added by the Spyware.SpyGator surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
|
|
SyGateService
|
sgserv95.exe
|
U
|
SyGate is a useful little program that lets you share an internet connection over an intranet. Is it needed - it saves a lot of headache to just let S ... Read More
|
|
SysCom
|
Sgt.sys.vbs
|
X
|
Added by the VBS/Sasan-M worm.
|
|
SGTBox
|
SGTBox.exe
|
?
|
Canon scanner driver. Is it required?
|
|
sgtray
|
sgtray.exe
|
U
|
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
|
|
StorageGuard
|
sgtray.exe
|
U
|
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
|
|
UpdateManager
|
sgtray.exe
|
U
|
StorageGuard from Veritas (this version by Sonic). Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS ... Read More
|
|
hp center UI
|
ShadowBar.exe
|
X
|
User Interface for HP Center
|
|
[Various Names]
|
Shaitan1678.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Registry
|
ShakiraPics.jpg.vbs
|
X
|
Added by the VBS.VBSWG.AQ@mm worm.
|
|
win32
|
Shakira_1997_Part_1_.Mpeg_.scr
|
X
|
Added by the MYLIFE.N WORM!
|
|
{1A6C58F2-CB1A-3465-158C-AB34A8FC14F1}
|
shaman.dll
|
X
|
Identified by Kaspersky as the Trojan-Spy.Win32.Delf.aan password-stealing Trojan. ... Read More
|
|
load=
|
shambl3r.exe
|
X
|
Added by the REMABL WORM!
|
|
shambl3r*
|
shambl3r.exe
|
X
|
Added by the REMABL WORM! where * is 2 to 11
|
|
(Default)
|
Shania.vbs
|
X
|
Added by the SHANIA TROJAN!
|
|
shania
|
Shania.vbs
|
X
|
Added by the SHANIA VIRUS! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to laun ... Read More
|
|
SHAProc
|
SHAProc.exe
|
X
|
Added by the Trojan.OnlineGames.Gen.71 password-stealing Trojan.
|
|
Shareaza
|
Shareaza.exe
|
N
|
Shareaza P2P client
|
|
{E996F10E-FCAF-41CC-94C8-B8BF7D6F80AC}
|
sharec32.dll
|
X
|
Added by the Troj/Lineag-BAA password-stealing Trojan for the online game Lineage. ... Read More
|
|
sharedprem
|
sharedprem.exe
|
X
|
Added by the MAKECALL TROJAN!
|
|
{B998557E-B478-4547-888B-5666C6BEB1DB}
|
sharex32.dll
|
X
|
Added by the Troj/Asmado-C downloading Trojan.
|
|
ycnbsdgv
|
Shari.sys
|
X
|
Added by the Troj/Agent-GHB Trojan.
|
|
sharK Server
|
SharKServer.cmd
|
X
|
Added by the Backdoor.Shark!sd5 backdoor. This infection uses Alternate Data Streams to hide itself. In order to remove these files you will need to ... Read More
|
|
[various names]
|
shch.exe
|
X
|
Premium rate adult content dialler
|
|
SvcH0st
|
SHCH.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN!
|
|
MsnExplorer
|
SHCH.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN
|
|
quicktime
|
shch.exe
|
X
|
Added by a variant of the TROJ/BDOOR-EB TROJAN! ... Read More
|
|
SheduIer
|
shch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
<not used>
|
shchostv.exe
|
X
|
Unidentified malware.
|
|
SMshclkrj0etfg
|
shclkrj0etfg.exe
|
X
|
Added by the Malware Protector 2008 rogue anti-spyware program.
|
|
shdde
|
shdde.exe
|
X
|
Added by the Backdoor.Masteseq backdoor.
|
|
shdef
|
shdef.exe
|
X
|
Added by the Troj/VB-DVS information stealing Trojan.
|
|
shdll
|
shdll.dll
|
X
|
Added by the Troj/Bckdr-DBQ Trojan.
|
|
fhpage
|
shdochp.exe
|
X
|
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
|
|
fhstart
|
shdocsvc.exe
|
X
|
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
|
|
shdosbei
|
shdosbei.dll
|
X
|
Added by the Email-Worm.Warezov!sd5 worm.
|
|
frguk
|
shdrkmck.exe
|
?
|
??
|
|
SHDSERV
|
shdserv.exe
|
U
|
Added by the RollBack Rx system restore program.
|
|
Windows Shell
|
shell.exe
|
X
|
Added by the W32/Mytob-CA worm.
|
|
command
|
shell12.exe
|
X
|
Added by the Backdoor.Ghoice.12 backdoor. This infections listens on TCP port 1001. ... Read More
|
|
System Icons
|
shell16.exe
|
X
|
Added by the W32/Sdbot-VD WORM! Found in the Windows system folder.
|
|
Secure32
|
Shell32.com
|
X
|
Added by the W32/Brontok-CJ worm.
|
|
LTSMSG
|
Shell32.exe
|
X
|
Added by the LEMIR.B TROJAN!
|
|
Shell
|
Shell32.exe
|
X
|
Added by the BADSECTOR TROJAN!
|
|
Default
|
shell32.exe
|
X
|
Added by the BINGHE backdoor Trojan! It has the ability to log your keystrokes, steal data, and execute commands. ... Read More
|
|
Microsoft Windows Explorer Shell Subsystem
|
shell32.exe
|
X
|
Added by the W32/Tilebot-CX worm and IRC backdoor.
|
|
Micosoft Data Core
|
shell32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Shell32
|
Shell32.vbs
|
X
|
Added by the VBS.Scafene WORM!
|
|
Shell32
|
shell32dll.exe
|
X
|
Added by the Troj/Banloa-BKV Trojan.
|
|
Shellapi32
|
Shellapi32.exe
|
X
|
Added by the NETDEVIL (or NERTE) TROJAN!
|
|
MicrosoftShell
|
Shellcomm.exe
|
X
|
Added by the Troj/Bancban-QG Trojan.
|
|
Shelldaemon
|
Shelldaemon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
{15A74989-5015-B6D4-0008-080602010204}
|
shelldrv.exe
|
X
|
Added by the Troj/Bckdr-QHJ backdoor Trojan.
|
|
ShellEx
|
ShellEx.exe
|
X
|
Added by the ANAKHA TROJAN!
|
|
SMSERIALWORKERSTART
|
shellexcon.exe
|
X
|
Trojan installed with the SpyBurner rogue anti-spyware program.
|
|
shell update
|
shellexec.exe
|
X
|
Added by the W32/Rbot-ANC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
{57B86673-276A-48B2-BAE7-C6DBB3020EB8}
|
shellexecutehook.dll
|
Y
|
Part of AVG Anti-Spyware 7.5.a.
|
|
Explorer
|
shellexp.exe
|
X
|
Added by a variant of the SHELDOR TROJAN!
|
|
Explorer
|
shellexpl.exe
|
X
|
Added by the GPIX and SHELDOR VIRUSES!
|
|
AntiMalwareSuite Shell Hook
|
shellext.dll
|
X
|
Added by the AntiMalwareSuite rogue anti-spyware program.
|
|
AntiMalwareSuite Shell Hook
|
shellext.dll
|
X
|
Added by the PCAntiMalware rogue anti-spyware program.
|
|
ShellApi
|
SHELLMSN.EXE
|
X
|
Added by the NETDEV.B TROJAN!
|
|
shellservice
|
ShellService.dll
|
U
|
Added by the WebWatcher surveillance tool. This program should be removed if it was not installed by yourself. ... Read More
|
|
Shell Software Detection
|
shellsw.exe
|
X
|
Added by the W32/Tilebot-HR worm and IRC backdoor.
|
|
shellsystem
|
shellsystem.exe
|
X
|
Added by the UPCHAN TROJAN!
|
|
Shell Tray Window
|
ShellTraywnd.exe
|
X
|
Added by the Troj/Stultdor-A backdoor trojan.
|
|
shhost
|
shhost.exe
|
X
|
Added by the BACKDOOR.WIN32.AGENT.CE TROJAN! ... Read More
|
|
shicoxp
|
shicoxp.exe
|
N
|
Installed with the drivers for multi card readers of various brands. To differentiate between the various card slots on multi slot readers the shicoxp ... Read More
|
|
spyware shield
|
Shield.exe
|
U
|
Acronis Privacy Expert Spyware_Shield prevents spyware and other suspicious programs from being installed on desktop PCs and laptops. ... Read More
|
|
Shield Security
|
shield.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Shield32 Security
|
shield32.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
ShieldSafeness
|
ShieldSafeness.exe
|
X
|
Added by the ShieldSafeness rogue anti-spyware program.
|
|
Shine
|
Shine.exe
|
X
|
Added by the HAPPYLOW (or NISHE-A) VIRUS!
|
|
Tiger
|
Shine.exe
|
X
|
Added by the HAPPYLOW (or NISHE-A) VIRUS!
|
|
SHINITV
|
shinitv.exe
|
?
|
??
|
|
game
|
shit.exe
|
X
|
Added by the Netclap Gold backdoor TROJAN!
|
|
{H8I22RB03-AB-B70-7-11d2-9CBD-0O00FS7AH6-9E2121BHJLK}
|
shit.vbs
|
X
|
Added by the W32/Autorun-XV removable media worm.
|
|
WinSrv
|
SHIZZLE.EXE
|
X
|
Added by the HOBBIT.C WORM!
|
|
aposiopetic
|
shlahsd.dll
|
X
|
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your compute ... Read More
|
|
Battery Monitor
|
shlapiw32.dll
|
X
|
Added by the Troj/Delf-BPC Trojan.
|
|
Panda File Shield Driver
|
ShlDrv51.sys
|
Y
|
Driver used by Panda Antivirus.
|
|
shellbn
|
shlext32.exe
|
X
|
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
|
|
QTSvc
|
shman.exe
|
X
|
Premium rate adult content dialler
|
|
SystemService
|
shman.exe
|
X
|
Premium rate adult content dialler
|
|
navcheck
|
shman.exe
|
X
|
Adult material premium rate dialer
|
|
<not used>
|
shmedia.exe
|
X
|
Added by the BKDR_AGENT.VBI backdoor.
|
|
Sub Connections
|
shmyga.exe
|
X
|
Added by an unknown Trojan Downloader. It installs itself as a service with a servicename of Pro. Shmyga.exe is located in the Windows system folder. ... Read More
|
|
paint.exe
|
shnlog.exe
|
X
|
Added by the Troj/Puper-A trojan.
|
|
ShockMgr
|
ShockMgr.sys
|
Y
|
Driver related to the IBM Active Protection System that protects installed hard drives. ... Read More
|
|
Shockprf
|
Shockprf.sys
|
Y
|
Related to the IBM Thinkpad Active Protection System.
|
|
sahbundle
|
shop1003.exe
|
X
|
ShopAtHomeSelect adware ... Read More
|
|
ShortKeys 99
|
SHORTKEY.EXE
|
N
|
ShortKeys from Insight Software Solutions - allows you to program keys with text strings ... Read More
|
|
hellodolly
|
shost.exe
|
X
|
Added by the YODO WORM!
|
|
Services Hosts
|
shost.exe
|
X
|
Added by the W32/Rbot-AXG worm and IRC backdoor.
|
|
Windows Automatic Updater
|
shost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
rpc Win32
|
shost32.exe
|
X
|
Added by the W32/Rbot-ABL worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
shotkey
|
sHotKey.exe
|
Y
|
Related to Chicony_Keyboards It manages the special key functions such as Internet, E-mail, Volume Control and more. Found in Sony's computer and pos ... Read More
|
|
SHOVE
|
SHOVE.exe
|
X
|
Added by the Troj/Agent-EOM Trojan.
|
|
Showbehind
|
SHOWBEHIND.EXE
|
X
|
Advertisement display which can be stopped here
|
|
ShowFF
|
ShowFF.exe
|
X
|
Added by the Adware.FFToolBar adware toolbar.
|
|
Cyber Trio
|
showmode.exe
|
U
|
From G-Tek Technologies. Allows you to set the PC in one of three modes, Standard, Enhanced and Kiddo. Standard is full function, Enhanced prevents ac ... Read More
|
|
showwnd
|
ShowWnd.exe
|
U
|
Showwnd is included with the Chicony keyboard software and is used by the software to stop the keyboard driver's taskbar entry from reappearing. This ... Read More
|
|
SHPC32
|
SHPC32.exe
|
U
|
Port monitor for Lexmark printers on a USB connection. Ties in with the Printer Control Program. Features like cancelling a print are unavailable if d ... Read More
|
|
Syncronization Task
|
shrhost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Micosoftartup
|
shrl.exe
|
X
|
Added by the W32/Sdbot-JQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
RHSI SHS
|
SHS.exe
|
N
|
Rogers Hi-Speed Internet software. "Should you ever lose access to your Rogers Hi-Speed Internet connection or e-mail, the Self-Healing Software (SHS. ... Read More
|
|
ShStatEXE
|
SHSTAT.EXE
|
Y
|
From McAfee VirusScan NT 4.x. Handles program communication among VShield components, displays VShield icon. Can be started automatically or available ... Read More
|
|
Windows Task Scheduler
|
shtasks.exe
|
X
|
Added by the W32/Tilebot-EB worm.
|
|
GrayPigeon_Hacker.com.cn
|
shun101.exe
|
X
|
Added by the Troj/Hupigon-SX Trojan.
|
|
Windows Update 63
|
shupd64.exe
|
X
|
Added by the W32/Forbot-GA backdoor worm.
|
|
Windows Update 63
|
shupd64.exe
|
X
|
Added by the W32/Forbot-GA backdoor worm.
|
|
Shutdownaware
|
shutdownaware.exe
|
U
|
Loaded by the SWEEX 6-in-1 Media Card Reader to properly manage the reader while it is connected to your system ... Read More
|
|
ShutDownPro
|
ShutDownPro.exe
|
U
|
ShutDownPro - shutdown, reboot, logoff your System with one mouse click
|
|
Microsoft Agent
|
shvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
protect
|
SHVRTF.EXE
|
U
|
PC_Angel takes a 5-second snapshot of the current system registry each time the PC boots up. In the event of a crash, PC ANGEL will retrieve everythin ... Read More
|
|
ShowIcon_SmartDisk Corporation_USB Card Reader v1.14e051
|
shwicon.exe
|
?
|
Card reader for memory cards from digital cameras. Is it required?
|
|
kye_showicon
|
shwicon.exe
|
?
|
USB Card Reader tray icon. Shows when the device is plugged in - is it required? ... Read More
|
|
Sunkist2k
|
shwicon2k.exe
|
U
|
Card reader for memory cards from digital cameras, etc
|
|
Sunkist
|
shwicon98.exe
|
U
|
Card reader for memory cards from digital cameras, etc
|
|
sunkistem
|
shwiconem.exe
|
U
|
Used by your computer to communicate with your Alcor_Micro Multimedia Card Reader - necessary if you're using this software ... Read More
|
|
File-Sharing Wizard
|
shwizard.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services 32
|
shzhost.exe
|
X
|
Added by the Troj/SdBot-DNX worm and IRC backdoor.
|
|
siapro6
|
sia.exe
|
U
|
Steganos Internet_Anonym privacy software ... Read More
|
|
Windows Update
|
SICB2.exe
|
X
|
Added by the Troj/Banker-DAC Trojan. Troj/Banker-DAC attempts to steal confidential information entered into online banking websites. ... Read More
|
|
Adline Ssystem
|
sichost.exe
|
X
|
Added by the Trojan-Dropper.Win32.Small.hy Trojan. This Trojan is designed to install and launch other programs on the victim machine without the user ... Read More
|
|
Sicom
|
Sicom.exe
|
X
|
Added by the NETLIP WORM!
|
|
SideACT
|
SideACT.exe
|
U
|
SideACT organizer software
|
|
Sidebar
|
Sidebar.exe
|
X
|
Searchcentrix hijacker
|
|
Sidebar
|
sidebar.exe
|
U
|
The Windows Vista sidebar that allows you to add gadgets, rss feeds, and other information. ... Read More
|
|
{78847374-8323-FADC-B443-4732ABCD3787}
|
sidjgzy.dll
|
X
|
Added by the PWS-OnlineGames.i password-stealing Trojan.
|
|
Sid Meier's Alpha Centauri Planetary Pack
|
sidmeier.exe
|
X
|
Added by the W32/Vanebot-Q worm and IRC backdoor.
W32/Vanebot-Q spreads
to other network computers by exploiting common buffer o ... Read More
|
|
Install Pending Files
|
sifxinst.exe
|
?
|
Uninstall program for Lanovation's Prism Deploy and Prism Pack adminstrators software deployement tools. For specific information see here. Is it requ ... Read More
|
|
TV_Path
|
sigmatv.exe
|
Y
|
Sigma TV Card driver.
|
|
SigX
|
sigx.exe
|
?
|
??
|
|
SigXC
|
SigX.exe
|
X
|
SigX is a "dynamic signature image generated based on whatever data your computer sends it though our SigX program. It can display your current Mp3, c ... Read More
|
|
Java SATARaid
|
siicfg.jar
|
U
|
This starts the Silicon Image SATA RAID array utility - useful if you use a Silicon Image SATA RAID controller. ... Read More
|
|
armillifer
|
siiyal.dll
|
X
|
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
|
|
Compaq Knowledge Center
|
silent.exe&matcli.exe
|
U
|
"matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, sta ... Read More
|
|
SilentSoftech
|
SilentSo.exe
|
X
|
Added by the W32/Autorun-ANU removable media worm.
|
|
Simcast
|
SimcastAlerts.exe
|
N
|
Simcast is a free service that allows you to subscribe to information on a large variety of topics. Alerts will appear on your desktop when a channel ... Read More
|
|
cpntmgc
|
simcss.exe
|
X
|
MagicControl downloader trojan variant
|
|
apyginapygin
|
simenu.exe
|
X
|
Added by the SDBOT.BTR WORM! ... Read More
|
|
sakemsneql
|
simenu.exe
|
X
|
Added by the SDBOT.BTO WORM! ... Read More
|
|
Si Meter
|
SIMETER.EXE
|
?
|
??
|
|
SimpLite-MSN
|
SimpLite-MSN.exe
|
U
|
Required if you use the SimpLite add-on to MSN Messenger (SimpLite adds encryption to the instant messaging service) ... Read More
|
|
scoupa
|
sincra.exe
|
X
|
Added by the W32/Sdbot-ST worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
Singapore
|
singapore.exe
|
X
|
Adds a blue crescent to the taskbar and when double-clicked displays an adult-content web-site. Also known to drop your internet connection and dial a ... Read More
|
|
SIPPS
|
SIPPS\SIPPS.exe
|
U
|
Web.de Internet phone utility
|
|
System
|
sipu.exe
|
X
|
Unknown malware.
|
|
SISAM10M
|
SISAM10M.exe
|
?
|
??
|
|
sis7012utility
|
SiSAudUt.exe
|
Y
|
SiS Corporation sound card driver
|
|
<not used>
|
sisbmsxb.dll
|
X
|
Added by the W32/Stration-H mass-mailing worm and backdoor Trojan. W32/Stration-H spreads by sending emails with itself as an attachment to email addr ... Read More
|
|
siService.exe
|
siService.exe
|
U
|
Spam Inspector - anti email spam software
|
|
SiSPower
|
SiSPower.dll
|
U
|
Power management program for computers with SiS chipsets.
|
|
SiSSetCDfmt
|
SiSSetCDfmt.exe
|
?
|
Related to a Silicon Integrated Systems Corp (SiS) product?
|
|
SiSSWLED
|
sisswled.exe
|
U
|
System Tray utility for SiS 900 network cards
|
|
Windows Baþlangýç Dosyasý
|
sistem.exe
|
X
|
Added by the MUZK WORM!
|
|
sistrai.exe
|
sistrai.exe
|
X
|
Added by the PROVA TROJAN!
|
|
SiS Tray
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
|
|
sistray
|
sistray.exe
|
X
|
Added by the PROVA TROJAN!
|
|
sistray
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
|
|
Utility Tray.lnk
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics.
|
|
sistry
|
sistry.exe
|
X
|
Added by the CEBE WORM!
|
|
SiSUSBRG
|
SiSUSBrg.exe
|
N
|
SiS USB Registry Patch File - fixes the undetectable problem with SiS USB controller on Windows XP ... Read More
|
|
SiteAdvisor
|
SiteAdv.exe
|
N
|
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
|
|
<not used>
|
sitta.exe
|
X
|
Added by the W32/Hansah-A worm.
|
|
{EA26CE12-DE64-A1C5-9A4F-FC1A64E6AC2E}
|
sivudro.dll
|
X
|
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
|
|
sixtysix
|
sixtypopsix.exe
|
X
|
Unidentified adware
|
|
SiZhu
|
SiZhu.exe
|
X
|
Added by the TW32/AutoRun-IE removable media worm.
|
|
Java Express
|
sjehost.exe
|
X
|
Added by the W32/Sdbot-DNJ worm and IRC backdoor.
|
|
babblement
|
sjrggq.dll
|
X
|
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
|
|
Snow
|
Sk.exe
|
X
|
Added by Backdoor.Blizzard
|
|
Detect Kbd Daemon
|
SK2000DM.EXE
|
U
|
This is a driver for IBM Media Access Pro Keyboard. It's used to map and support various keys on the keyboard. ... Read More
|
|
sk51
|
SK51.EXE
|
U
|
SaveKeys keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
sk60
|
SK60.EXE
|
U
|
Added by the SaveKeys surveillance software. Uninstall this software unless you put it there yourself. ... Read More
|
|
Hot Key Kbd 2690 Daemon
|
SK9910DM.exe
|
U
|
Multimedia keyboard manager - required if you use any special keys
|
|
Hot Key Keybd 9910 Daemon
|
SK9910DM.exe
|
U
|
Multimedia keyboard manager - required if you use any special keys
|
|
SK9910DM
|
SK9910DM.EXE
|
U
|
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys ... Read More
|
|
666
|
Ska.exe
|
X
|
Added by the PIPES TROJAN!
|
|
USB Hub Keyboard Patch
|
SKBPATCH.EXE
|
?
|
USB HUB Update
|
|
SKDAEMON
|
SKDAEMON.EXE
|
U
|
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys ... Read More
|
|
KERNEL 32
|
SKERNEL32.com
|
X
|
Added by the W32/Semapi-A. This mass-mailing worm may display a message: "Unable to locate 'semapi.dll' reinstalling this application may fix this p ... Read More
|
|
HalifaxHowardCluster
|
skinkers.exe
|
U
|
Howard the Weatherman desktop client from Halifax by Skinkers - marketing/messaging tool. Leave enabled if you want to receive messages ... Read More
|
|
skinkers
|
skinkers.exe
|
U
|
Selection of desktop messaging/marketing tools with celebrity tie-ins including MTV's "Desktop Ozzy" and Arsenal's "Desktop Wenger" - see here. Leave ... Read More
|
|
bbc news alerts
|
skinkers.exe
|
U
|
BBC News Desktop Alerts service; see here - The BBC News desktop alert and breaking news e-mail services let you find out about all the latest news a ... Read More
|
|
Spy-Keylogger
|
skl.exe
|
U
|
Added by the Spyware.SpyKeylogger keylogger. If this was not installed by you, you should uninstall it. ... Read More
|
|
sysApp
|
sklgr.exe
|
U
|
Added by the Spyware.SuperKeylogger surveillance software. Spyware.SuperKeylogger is a spyware program that monitors and records keystrokes, instant m ... Read More
|
|
SKQ
|
skq.exe
|
X
|
Added by the W32/VBSilly-D worm. W32/VBSilly-D spreads via file sharing on P2P networks. ... Read More
|
|
Skra
|
Skra.exe
|
X
|
Identified as a variant of the TrojanDownloader.Matcash malware.
|
|
sks2drvr
|
sks2drvr.sys
|
X
|
Added by the Backdoor.Haxdoor.G backdoor Trojan.
|
|
sks-32
|
sks32proc.exe
|
U
|
Added by the Spyware.SpyKeySpy surveillance software. If you did not install this software you should remove it immediately. ... Read More
|
|
sks-32
|
SKS32P~1.EXE
|
X
|
SpyKeySpy logs keystrokes and sends the stolen information to a configurable email address. ... Read More
|
|
sksdll
|
sksdll.dll
|
X
|
Added by the Backdoor.Haxdoor.F proxy Trojan.
|
|
sksdrvr2
|
sksdrvr2.sys
|
X
|
Added by the Backdoor.Haxdoor.F proxy Trojan.
|
|
Skunk.exe
|
Skunk.exe
|
X
|
Added by the W32/Sunk-A overwriting virus. This virus will copy itself to various locations on your hard drive and then start replacing .exe files on ... Read More
|
|
<not used>
|
skuns.dat
|
X
|
Fakealert Trojan which shows fake security alerts on your computer.
|
|
WINDOWS SKY
|
sky.exe
|
X
|
Added by the W32/Mytob-CJ worm. This infection when started connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
skybot.exe
|
X
|
Added by the W32.Mytob.EB@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows System
|
skybotx.exe
|
X
|
Added by the W32.Mytob.FO@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
skynetave.exe
|
skynetave.exe
|
X
|
Added by the SASSER.D WORM!
|
|
Skype Startup
|
skyp.exe
|
X
|
Added by the W32/VanBot-C worm with IRC backdoor functionality.
|
|
Skype
|
Skype.exe
|
N
|
"Skype is free and simple software that will enable you to make free calls anywhere in the world in minutes" ... Read More
|
|
SkypeStartup
|
Skype.exe
|
X
|
Added by the Mal/Pykse-A worm.
|
|
Skype Messenger
|
skype32.exe
|
X
|
Added by the W32/Dolebot-A email worm and IRC backdoor. This infection also installs the rootkit file rofl.sys. ... Read More
|
|
SkyTel
|
SkyTel.exe
|
U
|
Program related to the Realtek Voice Manager used by some of their audio chipsets. ... Read More
|
|
[Various Names]
|
slamm.exe
|
X
|
Part of the Wareout infection as described here.
|
|
RA Server
|
Slave.exe
|
X
|
Added by the Troj/Bdoor-ABJ backdoor Trojan.
|
|
Slayhacker734
|
slay7383.exe
|
X
|
Added by the Troj/SikBot-A IRC backdoor.
|
|
slbcmqad
|
slbcmqad.dll
|
X
|
Added by the W32/Stratio-BP worm.
|
|
slbrmqtr
|
slbrmqtr.exe
|
X
|
Added by the WORM_STRAT.EQ mass-mailing worm.
|
|
Systems Restart
|
slchost.exe
|
X
|
Added by the BANCOS.RF TROJAN!
|
|
xcxdsaa7
|
slcskxsdl7.exe
|
X
|
Added by the Troj/OnLineG-K password-stealing Trojan for online games.
|
|
Select server
|
slcsvr.exe
|
X
|
Added by the Troj/Dloader-WD Trojan downloader.
|
|
Steganos Live Encryption Engine (Version 401) [Service]
|
SLEE401.exe
|
Y
|
This is part of the Steganos Security Suite and involved in handling real-time encryption. ... Read More
|
|
SleepApp
|
sleep32.dll
|
X
|
Identified as a variant of the Trojan-PSW.Win32.Delf.bfh malware.
|
|
SleepManager
|
SleepMgr.exe
|
N
|
This program locates free contiguous disk spaces and allocates them for storing BASE MEMORY, EXTENDED MEMORY, VIDEO MEMORY, and SM RAM. It helps the c ... Read More
|
|
SelfHostUtil
|
slefhost.exe
|
?
|
??
|
|
Microsoft Synchronization Manager
|
slhost.exe
|
X
|
Added by the SDBOT.YH WORM!
|
|
slimp3
|
SliMP3 Server.exe
|
N
|
Slimp3 Server - "presents an entirely new way of accessing and enjoying your music collection. Instead of storing your music on CDs or memory cards, t ... Read More
|
|
Sygate Personal Firewall
|
Slinder
|
X
|
Added by the W32/Rbot-BFQ worm and IRC backdoor.
|
|
Slingshot
|
SLINGS~1.EXE
|
N
|
Atomica Slingshot - "reference tool with access to dictionary and encyclopedia terms, bios, technical terms, history, geography, and much more" ... Read More
|
|
slipstream
|
slipcore.exe
|
U
|
Sliptstream Web Accelerator ... Read More
|
|
isp.com high speed
|
slipgui.exe
|
U
|
Sliptstream Web Accelerator ... Read More
|
|
xseaqwt
|
slipmenu1.scp
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
(random filename)
|
slk8x2peu.exe
|
X
|
Added by QuickLinks_Process ADAWARE! ... Read More
|
|
Net
|
sllserv.exe
|
X
|
Added by the Troj/LegMir-BW Trojan.
|
|
SLMDriver
|
SLM32.sys
|
X
|
Added by the Troj/Rootkit-AA rootkit.
|
|
slmss
|
slmss.exe
|
X
|
SeekSeek search hijacker related - as seen here
|
|
sload
|
sload.exe
|
X
|
Win SynchroAd adware, also detected as TROJ/DLOADER-QG TROJAN! ... Read More
|
|
sload
|
sload32.exe
|
X
|
Added by the W32/Sdbot-OY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Logitech RX
|
slrhost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows System Restart Sync
|
slrss.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Svchost Authority
|
slsass.exe
|
X
|
Added by the W32/Rbot-UA network worm and IRC backdoor. When started this infection connects to an IRC server where it waits for remote commands to e ... Read More
|
|
WinDLL (slsass.exe)
|
slsass.exe
|
X
|
Added by the Backdoor.Win32.Akbot.e backdoor worm. Please note that the C:\Windows\System32\rundll32.exe file is legitimate and should not be deleted. ... Read More
|
|
System LifeGuard Scheduler
|
Slsched.exe
|
U
|
System LifeGuard scheduler
|
|
SmartLinkService
|
slserv.exe
|
U
|
Associated with SmartLink modem and is used to show a tray icon that gives connection information. ... Read More
|
|
Windows Service
|
slserv32.exe
|
X
|
Added by the W32/Rbot-KO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
NAV Auto Updates
|
slserver.exe
|
X
|
Unidentified Rbot worm.
|
|
NAV Auto Updates
|
slserves.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
27
|
slsorve.exe
|
X
|
Added by the Troj/Slsorve-A trojan. Using it's own own SMTP engine it sends email to a remote address and will terminate anti-virus related processes ... Read More
|
|
msoft-updater23
|
slssystem.exe
|
X
|
Added by the W32/Rbot-ASR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Update 32
|
slsys.exe
|
X
|
Added by the W32/Forbot-FT worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
slvchost32
|
slvchost32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Logical Volume
|
slvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
hollaback
|
slvhosts.exe
|
X
|
Added by the SDBOT.BMO WORM! ... Read More
|
|
slysom
|
slysom.exe
|
X
|
Added by the W32/Tilebot-KW worm and IRC backdoor.
|
|
Web Service
|
sm.exe
|
X
|
Added by the Troj/Psyme-BQ downloader trojan.
|
|
SM1BG
|
SM1BG.EXE
|
?
|
USB driver for downloading from within Napster to portable MP3 players. Is it required to run at startup or can it be run manually? ... Read More
|
|
Sm56acl
|
sm56hlpr.exe
|
N
|
Helper utility for Motorola based SM56 software modems - resides in the System Tray ... Read More
|
|
Smserial
|
sm56hlpr.exe
|
Y
|
Motorola based modem driver
|
|
Smart Virus Eliminator
|
SM<3 random chars>.exe
|
X
|
Added by the Smart Virus Eliminator rogue anti-spyware program.
|
|
SMA Negeri 4
|
SMA Negeri 4.exe
|
X
|
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
|
|
sma
|
sma.exe
|
U
|
Added by the Smart Keystroke Recorder keylogger and surveillance software. This program should be removed if it is found on your computer without you ... Read More
|
|
SoundMAX Agent Service
|
SMAgent.exe
|
Y
|
Sound subsystem driver on many ASUS motherboards.
|
|
smail
|
smail.exe
|
X
|
Added by the W32/Sexer-C email worm.
|
|
SManager
|
smanager.7.exe
|
X
|
Added by the Troj/DwnLdr-GUI downloader Trojan.
|
|
Smart Antivirus-2009.exe
|
Smart Antivirus-2009.exe
|
X
|
Added by the Smart Antivirus 2009 rogue anti-spyware program.
|
|
Windows Smart Manager
|
smart.exe
|
X
|
Added by the RBOT-SL WORM!
|
|
dRMON SmartAgent
|
SmartAgt.exe
|
U
|
Part of the network monitoring program group for 3Com NIC cards. See here for more info ... Read More
|
|
SmartBarXP
|
SmartBarXP.exe
|
N
|
SmartBarXP is a bar that runs down the side of your screen, and can be configured to display interactive panels known as 'panes'. These panes include ... Read More
|
|
Lotus QuickStart
|
smartctr.exe
|
N
|
Lotus central application, called SmartCenter, which runs on the Windows desktop. SmartCenter toolbar stretches across the top or, optionally, the bot ... Read More
|
|
sMaRTcaPs
|
SMARTC~1.EXE
|
N
|
sMaRTcaPs from Phoebus LLC - enables you to configure the time needed to depress Caps Lock, Num Lock & Insert keys ... Read More
|
|
BootClean
|
smartdrv.exe
|
X
|
Added by the W32/Lurka-A virus.
|
|
SmartFixer
|
SmartFixer.exe
|
X
|
Added by the SmartFixer 2007 rogue security product. SmartFixer is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
smartprotector
|
smartprotector.exe
|
X
|
Added by the Smart Protector rogue anti-spyware program.
|
|
SPSTEALT
|
SmartProtectorPro.exe
|
U
|
Smart Protector Pro - internet privacy tool that erases tracks, MRU lists, etc
|
|
smartsync pro
|
SmartSync.exe
|
U
|
Related to CompanionLink Software Inc., Synchronization solutions for ACT!, GoldMine, Lotus Notes and Microsoft Outlook. ... Read More
|
|
csfdll
|
smartwarxyu.dll
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Delf.asq malware.
|
|
SkySurfer Management Service
|
SmaServ.exe
|
Y
|
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
|
|
SMax4
|
SMax4.exe
|
N
|
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
|
|
SoundMAX
|
SMax4.exe
|
N
|
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
|
|
SMax4PNP
|
SMax4PNP.exe
|
U
|
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
|
|
SoundMAXPnP
|
SMax4PNP.exe
|
U
|
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
|
|
Windows SMB Manager
|
smb32.exe
|
X
|
Added by the W32/Rbot-BHZ worm and IRC backdoor.
|
|
smbdpmi
|
smbdpmi.exe
|
?
|
IBM Netfinity Director and Universal Management Services related. What does it do and is it required? ... Read More
|
|
Backup One
|
smbguard.exe
|
X
|
Added by the W32/Sdbot-MI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Internel Corporat
|
smbvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
smc
|
smc.exe
|
Y
|
Sygate Firewall
|
|
SMC Service
|
smc.exe
|
Y
|
Sygate Firewall
|
|
SmcServices
|
smc.exe
|
Y
|
Sygate Firewall
|
|
smcservice
|
smc.exe
|
Y
|
Sygate Personal Firewall ... Read More
|
|
Sygate Personal Firewall
|
smc.exe
|
X
|
Added by the W32/Rbot-AZY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Microsoft Core
|
smc.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Update Service
|
smcg.exe
|
X
|
Added by the SDBOT.QY WORM!
|
|
1
|
smcmcr.exe
|
X
|
Added by the Troj/Bckdr-QIB backdoor Trojan.
|
|
sacmemds
|
smcntlwio.exe
|
X
|
Added by the Troj/Mailbot-BZ IRC backdoor Trojan.
|
|
Disk Monitor Manager
|
smcs.exe
|
X
|
Added by the W32/Tilebot-KQ worm and IRC backdoor.
|
|
smcss
|
smcss.dll
|
X
|
Added by the Troj/SCLog-AJ Trojan Spyware.
|
|
system messaging queue
|
SMCSS.EXE
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
system startup manager
|
smcss.exe
|
X
|
Added by the RBOT.AMD WORM! ... Read More
|
|
smcss
|
smcss.exe
|
X
|
Added by the Troj/SCLog-AJ Trojan Spyware.
|
|
Smcsta.exe
|
Smcsta.exe
|
?
|
SMC Networks wireless PCI card driver. Is it required?
|
|
smcsvr
|
SmcSVR.exe
|
X
|
Added by the LEGMIR.JU ... Read More
|
|
control panel
|
smctrlw.exe
|
N
|
System Tray icon for a Silicon Motion LynxEM based PCI Graphics Card
|
|
Securemaker Disk Defragmenter Service
|
smdefrag.exe
|
Y
|
Added by the SECUREMAKER computer optimization program.
|
|
RPCall_<ComputerName>
|
smhost.exe
|
X
|
Added by the Troj/Redplut-B Trojan.
|
|
Spooler Host
|
smhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Smss Host
|
smhost.exe
|
X
|
Added by the Troj/IRCBot-ACC worm and IRC backdoor.
|
|
Smss Host
|
smhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
HP System Management Homepage
|
smhstart.exe
|
Y
|
The HP System Management Homepage is a web-based interface that consolidates the infection retrieve by the other Insight agents running on the server. ... Read More
|
|
SMI helper driver
|
smihlp.sys
|
Y
|
Fingerprint reading driver for IBM Thinkpad laptops.
|
|
Smith Micro try
|
smiptray.exe
|
N
|
Smith Micro shared files. Comes with D-Link web cam
|
|
SmitFraudFixTool
|
SmitFraudFixTool.exe
|
X
|
Added by the SmitFraudFixTool anti-malware program.
|
|
systtray
|
SMLBSBV4.exe
|
X
|
Added by the Troj/IMFlood-A Trojan. This infection will attempt to spam the contacts in your Yahoo Instant Messenger contact list. ... Read More
|
|
SMSI Loader
|
SMLoader.exe
|
N
|
Smith Micro HotFax - fax software
|
|
Performance Logs and Alerts
|
smlogsvc.exe
|
N
|
This is a Microsoft services that collects performance data from various applications running on a Windows computer. This service should be set to ma ... Read More
|
|
rare
|
smmain.exe
|
X
|
Added by the Troj/Zlob-ABZ Trojan.
|
|
client server runtime process
|
smmss.exe
|
X
|
Backdoor TROJAN!, possible W32/Sdbot-gen ... Read More
|
|
Service Filter
|
smncs.exe
|
X
|
Added by the W32/Tilebot-CK worm and IRC backdoor.
|
|
Service 8
|
smncs.exe
|
X
|
Added by the W32/Tilebot-DF worm and IRC backdoor.
|
|
blah service
|
smnp.exe
|
X
|
Added by the RBOT.IZ WORM!
|
|
WINDOWS SYSTEM
|
smoc.exe
|
X
|
Added by the W32.Mytob.FU@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MicroedSoft Toolbar
|
Smoked.exe
|
X
|
Added by the W32/Rbot-ALN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
smoothview
|
SmoothView.exe
|
N
|
TOSHIBA Zooming Utility - allows "automatic" zoom feature in some appications, like IE, MS-Office, WMPlayer, Adobe-Reader and also desktop icons. ... Read More
|
|
OLE Module
|
smp.dll
|
X
|
Added by the Trojan.SpBot Trojan.
|
|
smpautostart
|
smpdemo.exe
|
U
|
Related to Smart_Phone_Recorder from KenGolf.com. Answering Machine, Caller ID, Call Recording. ... Read More
|
|
elnkproxy
|
smproxy.exe
|
X
|
Surfmonkey adware ... Read More
|
|
SmpcSys
|
SmpSys.exe
|
?
|
Found on Packard Bell computers. Legitimate, but unsure as to what it does.
|
|
ShockmachineReminder
|
SmReminder.exe
|
N
|
Shockmachine is an entertainment playback device that lets you save your favorite Shockwave.com titles and play them back in full-screen mode, off-lin ... Read More
|
|
smres
|
smres.exe
|
X
|
Added by the W32/Agobot-UA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Ethernet Drivers
|
smrrs.exe
|
X
|
Added by the W32/Rbot-AAK WORM/IRC backdoor trojan!
|
|
vsadmin
|
smrs.exe
|
X
|
Added by the W32/Agobot-RC WORM/IRC backdoor Trojan!
|
|
Universal Serial Bus Control Protocol
|
smrs.exe
|
X
|
Added by the Troj/Bdoor-JD backdoor Trojan.
|
|
Windows Smrss Service
|
smrss.exe
|
X
|
Added by the W32/Tilebot-X worm and IRC backdoor.
|
|
Smart Defender PRO
|
smrtdefp.exe
|
X
|
Added by the Smart Defender Pro rogue anti-spyware program.
|
|
smrtprt
|
smrtprt.exe
|
X
|
Added by the Smart Protector rogue anti-spyware program.
|
|
KernelFaultChk
|
sms.exe
|
X
|
Added by the DEADHAT WORM! Do not confuse with the valid "kernelfaultcheck" which runs "dumprep 0 -k" or "dumprep 0 -u" ... Read More
|
|
Microsoft Virual Machine
|
sms.exe
|
X
|
Added by the RBOT-SP WORM!
|
|
sms
|
sms.exe
|
X
|
Added by the Troj/Dloader-KR TROJAN!
|
|
Connector
|
sms.EXE
|
X
|
Added by the Dial/ExDial-B premium rate porn dialer.
|
|
Configuration Loader
|
smsai.exe
|
X
|
Added by the W32/Sdbot-YE worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
|
|
ApplicationProtocolRun
|
smsbvl32.exe
|
X
|
Added by the Troj/IRCBot-CX Trojan.
|
|
Win32 USB2 Driver
|
smsc.exe
|
X
|
Added by the SDBOT.FO WORM!
|
|
WINDOWS SYSTEM
|
smsc.exe
|
X
|
Added by the W32/Mytob-BR worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
System Messenger Service
|
smsc.exe
|
X
|
Added by the W32/Tilebot-F worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Management Service
|
smsc.exe
|
X
|
Added by the W32/Rbot-ANN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Shell
|
smsc.exe
|
X
|
Added by the Troj/Bancban-OY password-stealing Trojan.
|
|
Microsoft DLL System
|
smsc.exe
|
X
|
Added by the W32/Tilebot-FY worm and IRC backdoor.
|
|
Window Services Connection
|
smsc.exe
|
X
|
Added by the W32/Tilebot-GD worm and IRC backdoor.
|
|
Windows DLL System
|
smsc.exe
|
X
|
Added by the W32/Tilebot-GG worm and IRC backdoor.
|
|
System Manger Service 32
|
smsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows32 Host Service Manager
|
smsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WSSVC
|
smsc.exe
|
X
|
Added by the W32/AutoRun-AGA removable media worm.
|
|
Windows System32 Management
|
smsc32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
smscc
|
smscc.exe
|
X
|
Added by the W32/Sdbot-CPG worm and IRC backdoor.
|
|
System Managment Controler
|
smscg.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
EventApplicationCmd
|
smschk.exe
|
X
|
Added by the Troj/IRCBot-AO IRC backdoor Trojan.
|
|
System Mng Srvc
|
smsg.exe
|
X
|
Added by the W32/Tilebot-AB worm and IRC backdoor.
|
|
GLSetT32
|
smsiexec.exe
|
X
|
Added by the OPTIX-D TROJAN!
|
|
<not used>
|
smsikfik.dll
|
X
|
Added by the Trojan.Goldun Trojan. Trojan.Goldun is a hidden process that steals personal information such as usernames and passwords for financial ac ... Read More
|
|
Microsoft Services Manual Contrl
|
smsks.exe
|
X
|
Added by the WORM_MYTOB.NO mass-mailing worm and IRC backdoor.
|
|
dark
|
smsl.exe
|
X
|
Added by the Troj/Banker-BZF Internet banking Trojan. If you are infected with this Trojan you should immediately change all your online banking pass ... Read More
|
|
windows system manager loader
|
smsls.exe
|
X
|
Added by the AGOBOT.TF WORM! ... Read More
|
|
smsm
|
smsm.exe
|
X
|
Added by the Troj/Banker-CO trojan. This infection attempts to steal information about your online banking. ... Read More
|
|
SMS Win9x Message Agent
|
SMSMsg.exe
|
U
|
This program assigns a user to a Systems Management Server site
|
|
SystemComputerLog
|
smsogx32.exe
|
X
|
Added by the Troj/Stinx-K backdoor Trojan.
|
|
WinLongLdr
|
smsonx32.exe
|
X
|
Added by the Troj/Stinx-I Trojan.
|
|
<not used>
|
smsqolqo.dll
|
X
|
Added by the Troj/DwnLdr-GXT Trojan.
|
|
dark
|
smsr.scr
|
X
|
Added by the Troj/Bancban-NU password/information-stealing Trojan for online banks. ... Read More
|
|
wintask dll32
|
smsrss.exe
|
X
|
Added by the W32.MYTOB.BS WORM! ... Read More
|
|
run=
|
smsrun16.exe
|
Y
|
Microsoft Systems Management Server (SMS) related - program that reads SMSRUN16.INI on clients running Win 3.1, Windows for Workgroups, Win95, or OS/2 ... Read More
|
|
smsrv
|
smsrv.exe
|
X
|
Added by the W32/Agobot-SX worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
InteliSys
|
smss.exe
|
X
|
Advertisingvision adware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
SMSS
|
smss.exe
|
X
|
Added by the FLOOD.F Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
_winsystem.sys
|
smss.exe
|
X
|
Added by the W32/Sober-K infection.
|
|
winsystem.sys
|
smss.exe
|
X
|
Added by the W32/Sober-K infection. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Debug
|
SMSS.exe
|
X
|
Added by the Adware.DreamAd adware.
|
|
_Services.dll
|
SMSS.EXE
|
X
|
Added by the W32/Sober-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
zsms
|
smss.exe
|
X
|
Added by the Troj/Bancos-CK Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
services.dll
|
smss.exe
|
X
|
Added by the W32/SOBER-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
windows session manager subsystem
|
smss.exe
|
X
|
Added by the W32/Kalel-B worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Services Process
|
smss.exe
|
X
|
Added by the Troj/Small-EK backdoor trojan.
|
|
Microsoft Session Manager Subsystem
|
smss.exe
|
X
|
Added by the W32.Kalel.B@mm mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
zsmss
|
smss.exe
|
X
|
Added by the Troj/Bancos-DD trojan.
|
|
smsslevel4
|
smss.exe
|
X
|
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
internet
|
smss.exe
|
X
|
Added by the Troj/Mifeng-B password-stealing trojan.
|
|
System Server
|
smss.exe
|
X
|
Added by the Troj/Feutel-T backdoor Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
|
|
Tok-Cirrhatus
|
smss.exe
|
X
|
Added by the W32/Korbo-A worm and backdoor Trojan.
|
|
KernellApps32
|
smss.exe
|
X
|
Added by the Troj/Bancban-AN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
system session manager
|
smss.exe
|
X
|
Added by the W32/Kalel-E worm.
|
|
Torjan Program
|
smss.exe
|
X
|
Added by the Troj/WowPWS-A password-stealing Trojan.
|
|
Application Management Browser
|
smss.exe
|
X
|
Added by the Troj/Comhush-A Trojan. This infection should not be confused with the legitimate smss.exe found in the C:\Windows\System32 (%System%)fol ... Read More
|
|
userinit
|
smss.exe
|
X
|
Added by the Troj/Dloadr-B downloader Trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\smss.exe. ... Read More
|
|
Microsoft SMSS
|
smss.exe
|
X
|
Added by the Troj/Dloadr-MG Trojan.
|
|
Windows
|
smss.exe
|
X
|
Added by the Troj/Bancban-OF Internet banking trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\sms ... Read More
|
|
Microsoft Windows Session Manager Subsystem
|
smss.exe
|
X
|
Added by the Troj/KillSec-A Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
|
|
MDSA Sentinel X
|
smss.exe
|
U
|
Added by the Spyware.SentinelX surveillance software. This program should be uninstalled if it was not installed by yourself. This program should not ... Read More
|
|
Card Adapter
|
smss.exe
|
X
|
Added by the Troj/Maran-I Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
TProgram
|
smss.exe
|
X
|
Added by the Troj/WowPWS-W password-stealing Trojan. Troj/WowPWS-W targets the online game World of Warcraft, and attempts to steal account details. ... Read More
|
|
aol software
|
smss.exe
|
X
|
Added by the W32/Tilebot-FM worm and IRC backdoor.
|
|
ClientServerRuntimeProcess
|
smss.exe
|
X
|
Added by the Troj/Sufia-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
.nvsvc
|
smss.exe
|
X
|
Added by the TROJ_HORST.GF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Remove 54tr10
|
smss.exe
|
X
|
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Kernel Fault Safe
|
smss.exe
|
X
|
Unidentified malware. Most likely a variant of the IRCBot family of worms and IRC backdoors. ... Read More
|
|
Kernel Safe Mode
|
smss.exe
|
X
|
Added by the Mal/78Crack-A downloader Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
LiveUpdate
|
smss.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ae. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Virscanner
|
smss.exe
|
X
|
Added by the Troj/DwnLdr-GWE Trojan downloader.
|
|
AntiVir
|
smss.exe
|
X
|
Added by the Troj/DwnLdr-GWE Trojan downloader. This infection should not be confused with the legitmate C:\Windows\system32\smss.exe file. ... Read More
|
|
DHCP
|
smss.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
FrameWorkService
|
smss.exe
|
X
|
Added by the W32/Kukoo-A network worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Windows NT Session Manager
|
smss.exe
|
X
|
Added by the TR/Crypt.ULPM.Gen Trojan.
|
|
System Microsoft SS
|
smss.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Spooler Subsystem Application
|
smss.exe
|
X
|
Added by the Troj/IRCBot-ZO IRC backdoor Trojan.
|
|
AutoUpdate
|
smss.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
|
|
Runonce
|
smss.exe
|
X
|
Added by the W32.SillyDC worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
armonVirusAnti
|
smss.exe
|
X
|
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
msaconfig
|
smss.exe
|
X
|
Added by the Troj/Agent-GZT Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
System Update
|
smss.exe
|
X
|
Identified as a variant of the Trojan:Win32/Eson.C Trojan. This infection should not be confused with the legitimate C:\Windows\system32\smss.exe file ... Read More
|
|
harodin
|
smss.exe
|
X
|
Unknown removable media worm. This should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Microsoftf smss Control
|
smss.pif
|
X
|
Identified as a variant of Backdoor.Win32.Rbot.gen worm and IRC backdoor.
|
|
Windows
|
smss.scr
|
X
|
Added by the Troj/Banloa-ANE Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
Configuration Loader
|
smss32.exe
|
X
|
Added by the AGOBOT.MB WORM!
|
|
Microsoft Internet Services
|
Smss32.exe
|
X
|
Added by the RBOT.MS WORM!
|
|
Microsoft Update
|
Smss32.exe
|
X
|
Added by the RBOT.CB WORM!
|
|
UsbD
|
smss32.exe
|
X
|
Adware downloader - recognized by Kaspersky antivirus as Trojan-Proxy.Win32.Agent.cj ... Read More
|
|
MSConfig32
|
smss32.exe
|
X
|
Added by the Troj/Flood-EL TROJAN/backdoor.
|
|
Microsoft Services
|
SMSS32.EXE
|
X
|
Added by the W32/Rbot-AD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
graphic driver
|
smss32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft DirectX
|
SMSS32.exe
|
X
|
Added by the W32/SDBot-FP worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. This in ... Read More
|
|
windows session manager
|
smss32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Service Control
|
smss32bk.exe
|
X
|
Added by the Troj/Stinx-X IRC backdoor.
|
|
avast111111
|
smss55555.exe
|
X
|
Added by the Troj/Lmir-GH information stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
MSConfig64
|
smss64.exe
|
X
|
Added by the Troj/Flood-ES Trojan.
|
|
Session Manager Subsystem
|
smssa.exe
|
X
|
Added by the W32/Rbot-AGS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
.nvsvcb
|
smssb.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Microsoft
|
smssdriver.exe
|
X
|
The Troj/Roneve-A TROJAN places the file into the Program files folder, creating a sub-folder it calls Xerox.nt when doing so. ... Read More
|
|
System Config Manager
|
smssl.exe
|
X
|
Added by the AGOBOT-ZJ WORM!
|
|
{05678D88-71DC-B123-1C5C-A2194F963210}
|
smssm.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
SMSSS
|
smsss.exe
|
X
|
Added by the SDBOT.ZD WORM!
|
|
SMSSS Loader
|
smsss.exe
|
X
|
Added by the AGOBOT.MQ WORM!
|
|
start uploading
|
smsss.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
winconfig.exe
|
smsss.exe
|
X
|
Added by the W32/Spybot-MP worm and IRC backdoor. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
System Microsoft SSS
|
smsss.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
SMSSU
|
SMSSU.EXE
|
X
|
Added by the Troj/Small-EI trojan dropper.
|
|
My App
|
SMSSvc.exe
|
X
|
Added by the NEGASMS.A TROJAN!
|
|
Sms System32
|
SmsSystem32.exe
|
X
|
Unidentified malware
|
|
Net.Tcp Port Sharing Service
|
SMSvcHost.exe
|
U
|
Used by Microsoft's .NET Framework 3.5.
|
|
ProtocolControlStat
|
smsxir32.exe
|
X
|
Added by the Troj/Stinx-L Trojan.
|
|
SMSystemAnalyzer
|
SMSystemAnalyzer.exe
|
Y
|
Related to Iolo's System Mechanic program.
|
|
DiskEventChk
|
smszac32.exe
|
X
|
Added by the Troj/Stinx-H Trojan. This infection also creates the files 442.bat and 952.bat. ... Read More
|
|
sms_msn
|
sms_msn.exe
|
X
|
Added by an unknown WORM or TROJAN infection.
|
|
sms_msn40
|
sms_msn40.exe
|
X
|
Added by an unknown WORM or TROJAN infection.
|
|
smt
|
SMT.exe
|
U
|
Win-Spy keyboard logger/monitoring software - remove unless you installed it yourself! ... Read More
|
|
SMToolbar
|
SMToolbar.exe
|
N
|
StartMake.com toolbar
|
|
SMTP32 Mailing Protocol
|
smtp32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
MouTALS
|
SMTPCONFS.DLL
|
X
|
Added by the Troj/QQHelp-DY Trojan.
|
|
smtpdrv
|
smtpdrv.sys
|
X
|
Added by the TROJ_PANDEX.AF Trojan.
|
|
SMTPSVC
|
smtpsvc.exe
|
X
|
Added by the W32/Tilebot-AU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Smapp
|
smtray.exe
|
N
|
System Tray access for the Compaq/ADI SoundMAX integrated digital audio controller ... Read More
|
|
XP Backup
|
smtxp.exe
|
X
|
Identified as a variant of Backdoor.Win32.SdBot.aad worm and IRC backdoor.
|
|
iolo utility bar
|
SMUtilityBar.exe
|
N
|
Iolo "System Mechanic" Utility_Bar - can be launched manually. ... Read More
|
|
Advanced Graphics Driver
|
smvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
MicrosoftOEM
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
MSInstall
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
SoundMixer
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
SunJavaUpdate
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
devenv
|
smvss.exe
|
X
|
Identified as a variant of the Trojan.Horst malware.
|
|
CM-SmWizard
|
SmWizard.exe
|
?
|
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
|
|
SmWizard
|
SmWizard.exe
|
?
|
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
|
|
sm
|
sm_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
|
|
Snapfish Media Detector
|
SnapfishMediaDetector.exe
|
U
|
Used by Snapfish to determine if new media is connected to your computer. The software will then present options on how the images will be imported/u ... Read More
|
|
snapple
|
snapple.exe
|
X
|
Added by the W32/Forbot-EG worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
snbr
|
snbr.exe
|
?
|
??
|
|
snbupt
|
snbupt.exe
|
X
|
UpSpiralBar adware component ... Read More
|
|
Microsoft Agent
|
snchost.exe
|
X
|
Added by the W32/Vanebot-AB backdoor worm.
|
|
sncntr
|
sncntr.exe
|
X
|
Adult content dialler
|
|
Windows Audio
|
snd.exe
|
X
|
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
|
|
LoadAudio
|
snd2d3d.exe
|
X
|
Identified as a variant of the VirTool:Win32/DelfInject.gen!AF malware.
|
|
Windows Sound Emulator
|
snd32_win.exe
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
snd332
|
snd332.exe
|
X
|
Added by an unidentified WORM!
|
|
sounddrv
|
sndbdrv3104.exe
|
X
|
CoolWebSearch parasite variant
|
|
MS Sound Config 16bit
|
sndcfg16.exe
|
X
|
Added by the SDBOT.MB TROJAN!
|
|
WinProfile
|
sndcfg16.exe
|
X
|
Added by the SNDC.A WORM!
|
|
Sound Config
|
sndcnf.cpl
|
X
|
Added by the Virus:Win32/Lefimy.A virus. Virus:Win32/Lefimy.A is the detection for a prepending virus that infects Windows executable files. ... Read More
|
|
Sndcompat
|
Sndcompat.exe
|
X
|
Added by the GEMA TROJAN!
|
|
snddevice
|
snddevice.scr
|
X
|
Added by the Troj/Banker-DIR internet banking Trojan.
|
|
SndDRV (MS Sound Driver)
|
snddrv.exe
|
X
|
Added by the W32/Rbot-BSC worm and IRC backdoor.
|
|
Ac97Sound
|
snddrv.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
|
|
microsystem
|
snddrv.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
|
|
Sound Loader
|
sndloader.exe
|
X
|
Added by the AGOBOT-BV WORM!
|
|
SoundMax Audio Drivers
|
SndMAX.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Audio
|
sndmic32.exe
|
X
|
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
|
|
SNDMon
|
SNDMon.exe
|
U
|
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
|
|
Symantec NetDriver Monitor
|
SNDMon.exe
|
U
|
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
|
|
windows sound manager
|
SndMon16.exe
|
X
|
Added by a variant of the W32/FORBOT WORM! ... Read More
|
|
Windows Sound Driver
|
SndMon32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Sound Manager
|
SndMon32.exe
|
X
|
Added by the FORBOT-BU WORM!
|
|
sndrec32.exe
|
sndrec32.exe
|
X
|
A variant of the WORM_SPYBOT.BR family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
sndriv32
|
sndriv32.exe
|
X
|
A variant of Backdoor.Win32.Agobot.gen worm and IRC backdoor.
|
|
Sndsaver
|
Sndsaver.exe
|
X
|
Added by the GEMA TROJAN!
|
|
Symantec Network Drivers Service
|
SNDSRVC.EXE
|
U
|
Part of Norton Personal Firewall and Norton Internet Security. Sndsrvc.exe is the module controlling the send scan for outbound email if the optioin i ... Read More
|
|
Sndsystem
|
SndSystem.sys
|
X
|
Added by the Troj/Raser-AS proxy Trojan.
|
|
sndu32
|
sndu32.dll
|
X
|
Added by the Troj/Haxdoor-IN Trojan. This infection utilizes the sndu64.sys rootkit. ... Read More
|
|
SoundDriver SDB32
|
sndu64.sys
|
X
|
Added by the Troj/Haxdor-Fam rootkit. This infection also creates a service called SoundDriver SDB64 to start this rootkit. ... Read More
|
|
SND Volumes
|
sndvolumes.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
symantec netdriver warning
|
SNDWarn.exe
|
U
|
Part of Symantec Live Update - displays the warning when you need to update the firewall database. ... Read More
|
|
SystemWizard Sniffer
|
Sniffer.exe
|
U
|
SystemWizard for Win98/ME from SystemSoft - diagnoses and solves hardware and software problems on a PC ... Read More
|
|
snippet
|
SnippingTool.exe
|
U
|
The Snipping Tool (part of the Experience_Pack for Tablet PC) allows you to easily "cut out" anything on screen and share it with other people. The w ... Read More
|
|
snjava
|
snjava.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
Microsoft Update
|
snlogsvc.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
SNM
|
SNM.exe
|
Y
|
Part of the SpyNoMore anti-spyware application.
|
|
Inom
|
snmoo.exe
|
X
|
Added by the W32/Rbot-DPM worm and IRC backdoor.
|
|
SysTray
|
Snnpapi.exe
|
X
|
Added by an unidentified TROJAN!
|
|
Snoop
|
Snoop.exe
|
U
|
Added by the Spyware.Snoop surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
|
|
snoopfreeui
|
SnoopFreeUI.exe
|
U
|
Anti-keylogging software made by SnoopFree_Software._
|
|
IE9
|
snowing.exe
|
X
|
Added by the W32/Rbot-DRD worm and IRC backdoor.
|
|
Snsicon
|
Snsicon.exe
|
N
|
Launches a screensaver program from Second Nature
|
|
SNSS.EXE
|
SNSS.EXE
|
X
|
Added by the Dialer.Nunci premium dialer.
|
|
dot.net networking
|
Snss32.exe
|
X
|
Added by a variant of the IRC_TROJAN ! ... Read More
|
|
Diskstart
|
Snt.exe
|
X
|
Adult content dialler
|
|
Windows Event Section
|
sntsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sysnet
|
snuninst.exe
|
X
|
Unidentified adware
|
|
Application In System
|
Snxmsh.exe
|
X
|
Added by the Troj/Agent-LNV Trojan.
|
|
System Soap Pro
|
soap.exe
|
X
|
System Soap Pro internet cleaning software. Bundles foistware like HTTPER and Zipclix - best avoided ... Read More
|
|
sobicyt Service
|
sobicyt.exe
|
X
|
Identified as a variant of the Backdoor:Win32/Refpron.C malware.
|
|
Soccer
|
Soccer Mania.exe
|
X
|
Added by the W32.Sibaru.A worm. W32.Sibaru.A a worm that spreads itself to network resources and hardcoded drive letters. ... Read More
|
|
Norton Live Updater
|
Sochost.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Social.IM
|
SocialChat.exe
|
N
|
Added by the Social.IM facebook chat program.
|
|
Sock32
|
sock32.exe
|
X
|
Added by the SDBOT TROJAN!
|
|
<unknown>
|
socket573.sys
|
X
|
Added by a variant of Goldun rootkit.
|
|
[Unknown]
|
socketx113.sys
|
X
|
A variant of the Haxdoor rootkit.
|
|
{66186F05-BBBB-4a39-864F-72D84615C679}
|
sockins32.dll
|
X
|
Added by the W32/Dwnldr-HCP worm. Do not delete C:\Windows\System32\rundll32.exe as it is a legitimate Microsoft file. ... Read More
|
|
WebProxy
|
sockins32.dll
|
X
|
Identified as a variant of the Win32:Agent-TEV malware. This infection will have its file shown as missing in a HJT log. In realty, though, this fi ... Read More
|
|
Systray
|
sockots64.dll
|
X
|
Identified as a variant of the Trojan:Win32/Adclicker Trojan.
|
|
services
|
socks.exe
|
X
|
Added by the WIN32.SMALL.N Proxy TROJAN! - A PT is a backdoor trojan which allows a remote hacker to connect to other systems via the compromised syst ... Read More
|
|
ASocksrv
|
SocksA.exe
|
X
|
Added by the Troj/QQRob-AAT Trojan.
|
|
blah service
|
socksxt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
MSOLESTARTUP5.0
|
socrin.exe
|
X
|
Added by the Troj/Agent-GKH Trojan.
|
|
<not used>
|
SoDAHK.DLL
|
X
|
Added by the Adware.Sogou adware.
|
|
SoDA Startup
|
SodaStartup.exe
|
Y
|
Used by the Rational SoDA project management tool. Unsure of it's actual purpose but it's recommended you leave it enabled if you use the software ... Read More
|
|
msupdate
|
soemuav.dll
|
X
|
Added by the Troj/Dloadr-ASQ Trojan.
|
|
sofatnet Service
|
sofatnet.exe
|
X
|
Identified by Comodo as Backdoor.Win32.Refpron.~B.
|
|
Microsoftf DDEs Control
|
soff.pif
|
X
|
Added by the W32/Rbot-AKH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
soffice
|
SOFFICE.EXE
|
N
|
Displays StarOffice quick start applet in System tray. Right clicking on the icon allows rapid starting up of components of the StarOffice 6.0 suite. ... Read More
|
|
Web Service
|
soft.exe
|
X
|
Added by the W32/Bube-F virus. This infection also displays popups in Internet Explorer. ... Read More
|
|
SoftBarrier
|
SoftBarrier.exe
|
X
|
Added by the SoftBarrier rogue anti-spyware program.
|
|
SoftCop
|
SoftCop.exe
|
X
|
Added by the SoftCop rogue anti-spyware program.
|
|
Service System
|
softdwind.exe
|
X
|
Added by the Troj/Bancos-JS password-stealing Trojan.
|
|
hErcUnes
|
softhost.exe
|
X
|
Added by the GARROCH WORM!
|
|
Softload
|
softload.exe
|
X
|
A SDBot WORM/IRC backdoor variant adds this. The filename buds.exe and the filename forcepog.exe may also be involved. ... Read More
|
|
csoftok
|
softok.exe
|
X
|
Added by the Troj/QQPass-H to log key presses & steal passwords.
|
|
SoftSafeness
|
SoftSafeness.exe
|
X
|
Added by the SoftSafeness rogue anti-spyware program.
|
|
SoftSafeness Security Service
|
SoftSafenessSvc.exe
|
X
|
Added by the SoftSafeness rogue anti-spyware program.
|
|
SoftSoldier
|
SoftSoldier.exe
|
X
|
Added by the SoftSoldier rogue anti-spyware program.
|
|
SoftStronghold
|
SoftStronghold.exe
|
X
|
Added by the SoftStronghold rogue anti-spyware program.
|
|
softstuff wallpaper changer
|
softstrt.exe
|
U
|
AzureBay wallpaper changer ... Read More
|
|
SoftVeteran
|
SoftVeteran.exe
|
X
|
Added by the SoftVeteran rogue anti-spyware program.
|
|
Software
|
software.exe
|
X
|
Added by the CRABTON-B TROJAN!
|
|
Microsoft startup
|
SoftwareUpdates.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SO5 Integrator Pass One
|
sointgr.exe
|
?
|
StarOffice 5. See here for more details
|
|
SO5 Integrator Pass Two
|
sointgr.exe
|
?
|
StarOffice 5. See here for more details
|
|
chipdrivepinmanager
|
sokscmpn.exe
|
U
|
ChipDrive Smartcard software ... Read More
|
|
Msconfige
|
solari.exe
|
X
|
Added by the W32/Autorun-GU removable media worm.
|
|
Security Host
|
solhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
SolidCapture
|
solidcapture.exe
|
N
|
Added by the SolidCapture screen capture program.
|
|
Kerneldll
|
solidsteel.exe
|
X
|
Added by the Troj/Mdrop-BWB Trojan.
|
|
SoloSchedule
|
Solocfg.exe
|
U
|
Scheduler for Solo Antivirus. Leave enabled unless you scan manually on a regular basis ... Read More
|
|
Solo Sentry
|
Solosent.exe
|
Y
|
Solo Antivirus
|
|
autoMe
|
solution.vbs
|
X
|
Added by the VBS.Sasan worm.
|
|
somatic
|
somatic.exe
|
X
|
Searchcentrix hijacker
|
|
msn.exe
|
son.exe
|
X
|
Added by the Troj/StartPa-GS trojan.
|
|
SonnReg
|
SonnReg.exe
|
?
|
Part of E-Color 3Deep for color calibration. Possibly a registration reminder?
|
|
SonudMan
|
SonudMan.exe
|
X
|
Added by the Trojan.Startpage.Q browser hijacker. This file hijacks the browser to open www.joyiex.com. ... Read More
|
|
SonudMon
|
SonudMon.exe
|
X
|
Added by the Troj/Lewor-J Trojan.
|
|
Sony Programmable I/O Control Device
|
SonyPI.sys
|
Y
|
This driver is the interface between Sony Programmable I/O controls, such as jogdials, bluetooth buttons, and Function buttons, and Windows. ... Read More
|
|
image transfer
|
SonyTray.exe
|
N
|
Sony Image Transfer software provides direct image transfer from your digital camera to a PC - can be started manually. ... Read More
|
|
Advanced DHTML Enable
|
sooo2.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan-Proxy.Win32.Agent.mf Trojan. ... Read More
|
|
sophagnt
|
sophagnt.exe
|
?
|
Possibly related to Sophocles Screenwriting Software?
|
|
sopidkc Service
|
sopidkc.exe
|
X
|
Identified by Avast Anti-virus as a variant of the Win32:Refpron-M worm.
|
|
SOProc_RegSoAlertWxLiteNnAj
|
soproc.exe
|
X
|
Identified as Adware.MyWebSearch.
|
|
regrun
|
sory.exe
|
X
|
New Purityscan Variant
|
|
SOS
|
SOS.exe
|
X
|
Added by the PHILIS VIRUS!
|
|
NTSF MICROSOFT SYSTEM
|
soscks32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SoSyncMonitor
|
SoSyncMonitor.exe
|
?
|
SuperOffice related. What does it do and is it required?
|
|
SOUNDMAN Microsoft Help
|
soun.pif
|
X
|
Added by the W32/Rbot-AIU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Server Application
|
Sound.exe
|
X
|
Added by the RBOT-NE WORM!
|
|
AUDIO
|
SOUND.exe
|
X
|
Added by the Dial/Ployb-A premium porn dialer.
|
|
Microsoft Sound Driver
|
sound32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Sound services
|
SOUND32.EXE
|
X
|
Added by the AGOBOT.GG WORM!
|
|
[Various Names]
|
sound64.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Micr Update
|
soundblaster.exe
|
X
|
Added by the SDBOT.NP WORM!
|
|
logitech camera
|
Soundcane.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Microsoft Helper
|
soundcard.exe
|
X
|
Added by an unknown malware.
|
|
soundcontrl
|
soundcontrl.exe
|
X
|
Added by the GAOBOT.AFJ WORM!
|
|
Compaq Sound Drivers For WINDOWS
|
sounddr.exe
|
X
|
Added by the W32/Sdbot-XG WORM/IRC backdoor trojan!
|
|
Microsoft Windows Sound Drivers
|
sounddrivers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sounddrv
|
sounddrv.dll
|
X
|
A variant of the CPVFeed adware.
|
|
Windows Stand Sound Drivers
|
Sounddrv.exe
|
X
|
Added by the W32/Sdbot-XF WORM/IRC backdoor trojan!
|
|
WIN32 Sound Drivers.
|
sounddv.exe
|
X
|
Added by the W32/Tilebot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
soundfun
|
soundfun.exe
|
X
|
Added by the Troj/Banloa-AKQ Trojan.
|
|
Soundlibs
|
soundgui.exe
|
X
|
Added by the Troj/Dloadr-AON Trojan.
|
|
SISSoundman
|
Soundman.exe
|
?
|
Related to a Silicon Integrated Systems Corp (SiS) product?
|
|
soundman
|
soundman.exe
|
N
|
System Tray icon for the Realtek AC97 Audio Sound Manager for AC97 onboard audio. Available via Start -> Settings-> Control Panel ... Read More
|
|
Microsoft Sounds
|
soundman.exe
|
X
|
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
|
|
SoundMAX
|
SoundMAX.exe
|
X
|
Added by the W32/Rizon-A worm.
|
|
SoundMax Audio Drivers
|
soundmax.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
<not used>
|
soundmgr.exe
|
X
|
Identified as a variant of the TR/Proxy.Gen malware.
|
|
DTService
|
soundmix.dll
|
X
|
Added by the Troj/Dropper-MJ Trojan.
|
|
Soundmx
|
Soundmx.exe
|
X
|
CoolWebSearch parasite variant
|
|
MotherBoard Sounds
|
SOUNDS.EXE
|
X
|
Added by the W32/Rbot-AAP WORM/IRC backdoor trojan!
|
|
microsoft intrenet explorer
|
Soundsyst.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
soundtask
|
soundtask.exe
|
X
|
Added by the AGOBOT-MD WORM!
|
|
soundtasks
|
soundtasks.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
soundtctrls
|
soundtctrls.exe
|
X
|
Added by the AGOBOT-ZV WORM!
|
|
Microsoft
|
soundvol32.exe
|
X
|
Identified by Bitdefender as Backdoor.Spybot.DLN.
|
|
[not used]
|
sound_drive16.exe
|
X
|
Added by the Troj/Bdoor-GP backdoor trojan.
|
|
sounofts
|
sounofts.exe
|
X
|
Added by the AGOBOT-ND WORM!
|
|
sountskmanager
|
sountaskmgr
|
X
|
Added by an unidentified WORM or TROJAN! |