|
Name
|
Filename
|
Status
|
Description
|
|
EarthLink Firewall Process Path Service
|
EFWPPService.exe
|
Y
|
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
|
|
sp
|
rundll32 [tempdirectory]\\SE.DLL,DllInstall
|
X
|
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
|
|
scain
|
s030109.Stub.exe
|
X
|
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
|
|
SysKabs
|
S0kic.exe
|
X
|
Unknown malware.
|
|
Sony Ericsson Device 115 driver (WDM)
|
s115bus.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Filter
|
s115mdfl.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Driver
|
s115mdm.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM)
|
s115mgmt.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC OBEX Interface
|
s115obex.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
sy
|
s2.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Intel® PROSet/Wireless Service
|
S24EvMon.exe
|
?
|
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
|
|
tempreg
|
s300_1204076086.dll
|
X
|
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
|
|
S3apphk
|
S3apphk.exe
|
?
|
S3 graphics related?
|
|
S3Hotkey
|
s3hotkey.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
S3Mon
|
S3Mon.exe
|
?
|
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
|
|
S3 Internal Chip
|
s3serv.exe
|
X
|
Added by the AGOBOT-DD WORM!
|
|
S3TRAY
|
S3Tray.exe
|
N
|
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
|
|
s3tray2
|
s3tray2.exe
|
?
|
Same as the s3tray entry in this table?
|
|
S3TRAYHP
|
S3trayhp.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
My Search Bar Eq
|
S4BAREQ.EXE
|
X
|
MySearch bar parasite
|
|
S4F
|
S4F.exe
|
U
|
S4F internet filtering software
|
|
s4helper
|
s4helper.exe
|
X
|
Searchcentrix hijacker
|
|
Spellex Anywhere
|
sa.exe
|
N
|
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
|
|
StayAlive
|
sa.exe
|
U
|
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
|
|
ttool
|
sa23sl.exe
|
X
|
Added by the Troj/Bckdr-QZZ backdoor Trojan.
|
|
SA
|
Sa3.exe
|
?
|
Logitech QuickCam driver. Is it required?
|
|
Aureal A3D Interactive Audio
|
sa3dsrv.exe
|
Y
|
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
|
|
Sa3dsrv
|
Sa3dsrv.exe
|
N
|
3D sound extension for Windows
|
|
saap
|
saap.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SABKUTIL
|
SABKUTIL.sys
|
Y
|
Related to Super Ad Blocker.
|
|
Sabreserver
|
SABSERV.EXE
|
N
|
Airline reservation software from Sabre. Available via Start -> Programs
|
|
sac
|
sac.exe
|
X
|
180Solutions/N-Case adware variant ... Read More
|
|
SACC
|
sacc.exe
|
X
|
Added by the Adware.SurfAccuracy adware.
|
|
surfaccuracy
|
sacc.exe
|
X
|
SurfAccuracy adware ... Read More
|
|
Mmsystem
|
Sachiel.sys.bat
|
X
|
Added by the W32/Sachiel-D worm.
|
|
Onlune Sarvice
|
sachost.exe
|
X
|
Added by the Troj/Multidr-E Trojan.
|
|
onluna sarvice
|
sachost.exe
|
X
|
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
|
|
HostSrv
|
sachostx.exe
|
X
|
Added by the Troj/Multidr-EP downloader Trojan.
|
|
{01d8d081-0f76-4ab5-b5e4-9b23a709670e}
|
sacskza.dll
|
X
|
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
|
|
MicroSoft ssas3s1
|
SADASDA.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
|
|
SuperAdBlocker
|
SAdBlock.exe
|
U
|
SuperAdBlocker
|
|
netscreen-remote
|
SafeCfg.exe
|
U
|
NetScreen_Remote VPN Client Software ... Read More
|
|
SafeFighter
|
SafeFighter.exe
|
X
|
Added by the SafeFighter rogue anti-spyware program.
|
|
Safeguard.exe
|
Safeguard.exe
|
X
|
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
|
|
SafeInstall.exe
|
SAFEIN~1.EXE
|
N
|
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
|
|
Microsoft Safe Mode Manager
|
safemode.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SafeOFF
|
SafeOff.exe
|
N
|
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
|
|
SaferScan
|
SaferScan.exe
|
X
|
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
|
|
SafeSearch
|
safesearch.exe
|
X
|
AutoSearch parasite variant
|
|
Unshare
|
SafeShare.exe
|
X
|
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
|
|
CertificateRegistration
|
SafeSignCertReg.exe
|
U
|
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
|
|
SafeStrip
|
SafeStrip.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeStripReminder
|
SafeStripReminder.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeSys
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
SafeSysDrv
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
SafetyKeeper
|
SafetyKeeper.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
SafetyKeeper Security Service
|
SafetyKeeperSvc.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
Safe
|
SafeWin.exe
|
X
|
Added by the FOCOSENHA TROJAN!
|
|
Sagate Security Firewall
|
sagate.exe
|
X
|
Added by the GAOBOT.BOW WORM!
|
|
MSNPluginSrvcs
|
sagate.exe
|
X
|
Added by the SDBOT.AKJ WORM!
|
|
SystemAgent
|
Sage.exe
|
U
|
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
|
|
Laptop Access
|
Sage.exe
|
X
|
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
sagentservice
|
Sagent.exe
|
U
|
Added by TinySpyAgent **Note this application must be manually installed.
|
|
SAgent2ExePath
|
SAgent2.exe
|
N
|
Seiko Epson printer status agent. Disable if printer is not used often
|
|
sagnt
|
sagnt.exe
|
X
|
Adware web downloader
|
|
PrevxHome
|
SAGUI.exe
|
Y
|
PrevX Home intrusion prevention software
|
|
PrevxPro
|
SAGUI.exe
|
Y
|
Pro version of PrevX Home intrusion prevention software
|
|
SAHagent
|
Sahagent.exe
|
X
|
ShopAtHomeSelect parasite
|
|
SaitekAutoConfigure
|
saicnfig.exe
|
U
|
Configuration for Saitek game controllers
|
|
saie
|
saie.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SAIMON
|
SaiMon.exe
|
U
|
Saitek joystick driver
|
|
sain
|
sain.exe
|
X
|
180Solutions/N-Case adware variant
|
|
sais
|
sais.exe
|
X
|
180Solutions/N-Case adware variant
|
|
SaiSmart
|
SaiSmart.exe
|
?
|
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
|
|
Sakora
|
Sakora.exe
|
X
|
Identified as a variant of the Trojan.Downloader Matcash malware.
|
|
SalaatTime
|
SalaatTime.exe
|
N
|
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
|
|
salm
|
salm.exe
|
X
|
180Search adware
|
|
salm
|
salm.exe
|
X
|
180Solutions/N-Case adware variant
|
|
<not used>
|
salo.exe
|
X
|
Added by the W32/Mabezat-A virus dropper.
|
|
msvcc25
|
salvage.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
saly
|
saly*****.exe
|
X
|
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
|
|
sam-sung
|
Sam-sung.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
SAMcal
|
SAMcal.exe
|
U
|
SamCal - calendar/reminder program
|
|
DirectX shell driver
|
sammp32.exe
|
X
|
Added by the Troj/MarktMan-B Trojan.
|
|
Mapa de caracteres para NT
|
sampaerio.exe
|
X
|
Added by the Troj/Bancos-PV password-stealing Trojan.
|
|
syelimS-esreveR-troppuS
|
sample.exe
|
X
|
Added by the Troj/Lootbot-B backdoor Trojan.
|
|
Security Accounts Manager SM
|
samsm.exe
|
X
|
Added by the SPYBOT.JE WORM!
|
|
samsong
|
Samsong.exe
|
X
|
Added by the SDBOT.BNE WORM! ... Read More
|
|
YeppStudioAgent
|
SamsungMediaStudioAgent.exe
|
N
|
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
|
|
Samsung
|
Samsungs.exe
|
X
|
Added by an IRC_TROJAN variant!
|
|
Security Account Manager
|
SAMSvc.exe
|
X
|
Added by the W32/Tilebot-DL worm and IRC backdoor.
|
|
FireWire Driver
|
samx.exe
|
X
|
Added by the SDBOT.AE WORM!
|
|
Sandbox
|
Sandbox.sys
|
Y
|
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
|
|
[not used]
|
SandboxieHelper.dll
|
Y
|
Installed by the Sandboxie security software.
|
|
Sandboxie Service
|
SandboxieServer.exe
|
Y
|
Installed by the Sandboxie security software.
|
|
SandIcon
|
SandIcon.exe
|
N
|
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
|
|
SANS Service
|
sansv.exe
|
X
|
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
|
|
Santa Bastards Bitch
|
SANTAS.BITCH.txt
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
System Applications Profile
|
sap.exe
|
X
|
Added by the RBOT-QF WORM!
|
|
SAP control service
|
SAPCtrlSer.exe
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
abylonsoft Activate modules
|
SAPDrive.EXE
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
sapnet
|
sapnet.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
sapp
|
sapp.exe
|
X
|
180Solutions/N-Case adware variant
|
|
[Various Names]
|
SAPSTR.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Beawver
|
saqevre.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
Microsft Updtes
|
sarvice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SASDIFSV
|
SASDIFSV.SYS
|
Y
|
Driver for the Super Antispyware security software.
|
|
SASENUM
|
SASENUM.SYS
|
Y
|
Super Antispyware driver.
|
|
SA Service
|
SAservice.exe
|
?
|
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
|
|
SiteAdvisor Service
|
SAService.exe
|
N
|
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
|
|
Syntax Script
|
saskatcw.exe
|
X
|
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
|
|
sasktel accelerated dial-up
|
sasktelgui.exe
|
Y
|
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
|
|
SASKUTIL
|
SASKUTIL.sys
|
Y
|
Driver associated with the Super Antispyware security software.
|
|
usb
|
SASS.EXE
|
X
|
Added by the Troj/Funsta-A Trojan.
|
|
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}
|
SASSEH.DLL
|
Y
|
Part of the Super Antispyware security software.
|
|
!SASWinLogon
|
SASWINLO.dll
|
Y
|
Related to the SuperAntiSpyware anti-spyware program.
|
|
satad640
|
satad640.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
|
|
<unknown>
|
satad645.sys
|
X
|
Added by a variant of the Goldun.Fam rootkit.
|
|
scandisc
|
satan.exe
|
X
|
Added by the GregStar backdoor TROJAN!
|
|
SATARaid
|
SATARaid.exe
|
U
|
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
|
|
satau320
|
satau320.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
|
|
SATA bus driver
|
satau325.sys
|
X
|
A variant of the Troj/Haxdor-Gen rootkit.
|
|
satdll
|
satdll.dll
|
X
|
Added by the Troj/Haxdoor-AS information stealing Trojan.
|
|
satmat
|
satmat.exe
|
X
|
Transponder parasite updater/installer
|
|
satmmc
|
satmmc.dll
|
X
|
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
|
|
sau
|
sau.exe
|
X
|
Added by the Adware.180Search adware.
|
|
ATTBroadbandUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
SAUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
SAutoLaunchExe
|
SAutoLaunchExe.exe
|
U
|
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
|
|
Antivirus
|
sav.exe
|
X
|
Added by the System Antivirus 2008 rogue anti-spyware program.
|
|
Sophos Anti-Virus status reporter
|
SAVAdminService.exe
|
Y
|
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
|
|
SAVAgent
|
SAVAgent.exe
|
Y
|
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
|
|
pile scr
|
Save peak.exe
|
X
|
Added by the Troj/KillAV-ED Spyware Trojan.
|
|
Save
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
WhenUSave
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
SaveArmor
|
SaveArmor.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveArmor Security Service
|
SaveArmorSvc.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveDefender
|
SaveDefender.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefender Security Service
|
SaveDefenderSvc.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefense
|
SaveDefense.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveDefense Security Service
|
SaveDefenseSvc.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveKeep
|
SaveKeep.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveKeeper
|
SaveKeeper.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveKeeper Security Service
|
SaveKeeperSvc.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveKeep Security Service
|
SaveKeepSvc.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveMyWork
|
SaveMyWork.exe
|
U
|
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
|
|
Savenow
|
SaveNow.exe
|
X
|
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
|
|
Savenow
|
savenow.exe
|
X
|
Added by the SPREDA.B VIRUS!
|
|
SaveSoldier
|
SaveSoldier.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SaveSoldier Security Service
|
SaveSoldierSvc.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SaveDate
|
SaveStartDate.Exe
|
X
|
Unidentified adware
|
|
SAVRT
|
SAVRT.SYS
|
Y
|
Related to Symantec Antivirus.
|
|
SAVRTPEL
|
SAVRTPEL.SYS
|
Y
|
Driver associated with Symantec security products.
|
|
SAVScan
|
SAVScan.exe
|
Y
|
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
|
|
Sophos Anti-Virus
|
SavService.exe
|
Y
|
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
|
|
Microsoft Security Center
|
savservices.exe
|
X
|
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
saw
|
saw.exe
|
X
|
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
|
|
Say The Time 5.0
|
SAYTIME.EXE
|
U
|
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
|
|
sm
|
sa_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
|
|
SB
|
SB.exe
|
U
|
Acer Soft Button on Acer Tablet PCs
|
|
SBAutoUpdate
|
sbautoupdate.exe
|
U
|
SpywareBlaster auto-updater
|
|
svchosts
|
sbchost.exe
|
X
|
Added by the W32/Rbot-DCM worm and IRC backdoor.
|
|
sbchosy.bat
|
sbchosy.bat
|
X
|
Added by the Troj/GrayBir-AA backdoor Trojan.
|
|
SBDrvDet
|
SBDrv.exe
|
U
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
|
|
sbdrvdet
|
sbdrvdet.exe
|
N
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
|
|
sbfxi
|
sbfxi.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SBHC
|
sbhc.exe
|
X
|
SuperBar parasite - uninstall available here
|
|
Windows bypass security SMSS Service
|
SbiCvy.exe
|
X
|
Added by the W32/Rbot-GRF worm and IRC backdoor.
|
|
[Various Names]
|
sbin.exe
|
X
|
Part of the Wareout infection as described here.
|
|
spam blocker for outlook express
|
SBInst.exe
|
X
|
HotBar related ... Read More
|
|
Windows System Restore Configuration
|
Sblhost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
start
|
sbmntr.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
sbmpop
|
SBMPop.exe
|
X
|
SearchByMedia adware
|
|
SBMX
|
sbmx.exe
|
N
|
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
|
|
{89aef01d-d237-49c7-84dc-4e1904c1fd31}
|
sbnudh.dll
|
X
|
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
|
|
spamblocker
|
SbOEAddOn.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
Microsoft Service Boot
|
sboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSRegScan
|
SBPDemo.exe
|
U
|
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
|
|
sbrige
|
sbrige.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SystemBooster2009
|
sbr_updater.exe
|
X
|
Added by the SystemBooster 2009 rogue anti-spyware program.
|
|
<not used>
|
sbs.exe
|
X
|
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
|
|
ScriptBlocking
|
SBServ.exe
|
Y
|
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
|
|
ScriptBlocking Service
|
SBServ.exe
|
Y
|
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
|
|
Eapcisetup
|
sbsetup.exe
|
N
|
Rockwell RipTide soundcard application software. Sound works without it
|
|
<unknown>
|
sbsrtyus.sys
|
X
|
Added by the Trojan.Mdropper.S Trojan.
Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
|
|
sbss Launcher
|
sbss.exe
|
X
|
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
|
|
SB Watchdog
|
SBWatchdog.exe
|
X
|
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
|
|
weatherontray
|
SbWeatherOnTray.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
<not used>
|
sbwltbxa.exe
|
X
|
Identified as a variant of the Troj/Agent-GRP variant malware.
|
|
6-susilo b
|
sby.exe
|
X
|
Added by the W32/Brontok-CR worm.
|
|
sc
|
sc.exe
|
U
|
Watchdog 2.0 Software - monitoring program
|
|
sc23exec
|
sc23exec.exe
|
?
|
Possibly related to a digital camera
|
|
SC3300CC
|
SC3300CC.exe
|
Y
|
SiPix digital camera Twain device driver
|
|
WINDOWS SYSTEM SCALPE
|
scalpe91.exe
|
X
|
Added by the W32/Mytob-HI mass-mailing worm.
|
|
Driver32
|
Scam32.exe
|
X
|
Added by the SIRCAM WORM!
|
|
Scan&Repair2006.exe
|
Scan&Repair2006.exe
|
X
|
Added by the ScanandRepair security risk.
According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
|
|
TotalSecure2009
|
scan.exe
|
X
|
Added by the Total Secure 2009 rogue anti-spyware program.
|
|
Win32G
|
Scandisk.com
|
X
|
Added by the ESTRELLA TROJAN
|
|
ScanDisk
|
ScanDisk.exe
|
X
|
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
|
|
MS Scandisk
|
Scandisk.exe
|
X
|
Added by the Backdoor.AntiLam backdoor.
|
|
scands32.exe
|
scands32.exe
|
X
|
Added by a variant of the Adclicker TROJAN!
|
|
Scandsk2
|
scandsk2.exe
|
X
|
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scandskx.exe
|
scandskx.exe
|
X
|
Added by the Troj/Dloadr-ARM Trojan.
|
|
{C5A16DB0-0E3E-68C4-1ABB-636411036D53}
|
scanfl.exe
|
X
|
Added by the Troj/PWS-BDE password-stealing Trojan.
|
|
messenger
|
SCANMSG.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
ScanSpyware v *
|
Scanner.exe
|
X
|
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
hpScannerFirstBoot
|
scannerfb.exe
|
?
|
HP scanner related
|
|
Microtek Scanner Finder
|
ScannerFinder.exe
|
N
|
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
|
|
Reg_WFT
|
scanreg32.com
|
X
|
Added by the Troj/SennaSpy-F trojan.
|
|
scanregg
|
scanregg.exe
|
X
|
Added by the Troj/ScKeylog-A keylogger.
|
|
ScanRegistry
|
scanregv.exe
|
X
|
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
Y
|
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
X
|
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
|
|
ScanRegistry
|
scanregw.exe
|
X
|
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
|
|
[Various Names]
|
scanSYS.exe
|
X
|
Part of the Wareout infection as described here.
|
|
Windows Service
|
Scanvegw.exe
|
X
|
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
|
|
Quick Heal Helper Service WSC
|
scanwscs.exe
|
Y
|
Related to the Quick Heal security products.
|
|
scApp
|
scApp.exe
|
X
|
Added by the W32/Stando-E worm.
|
|
Smart Card Client
|
SCardClnt.exe
|
X
|
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
|
|
TwkSCardSrv
|
SCardS32.Exe
|
N
|
Used with Towitoko SmartCard Readers for card recognition
|
|
SCardSvr
|
scardsvr.exe
|
N
|
Related to SmartCard readers and sometimes uses lots of system resources
|
|
Smart Card Service
|
ScardSvr.exe
|
N
|
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
|
|
NavAgent32
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
SCardSvr
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
SearchEnhancement
|
scbar.exe
|
X
|
IE search hijacker
|
|
sccbxenr
|
sccbxenr.exe
|
X
|
Added by the Troj/StraDr-A Trojan.
|
|
Compaq Computer Corp SCCenter Module
|
SCCENTER.EXE
|
N
|
For Compaq PC's. Part of Backweb
|
|
Service Connection
|
sccenter.exe
|
N
|
For Compaq PC's. Part of Backweb
|
|
Services Host
|
Scchost.exe
|
X
|
Added by the DONK WORM!
|
|
Systems
|
scchost.exe
|
X
|
Added by the DAEMOZ.A TROJAN!
|
|
Alive SYstem
|
scchost.exe
|
X
|
Added by the Troj/Tofdrop-B dropper Trojan.
|
|
alive system
|
scchostc.exe
|
X
|
Added by the Troj/Tofdrop-B ... Read More
|
|
update SERVICES
|
sccpn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
microsoft windows update
|
sccvhost.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Microsoft
|
sccvrhost.exe
|
X
|
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
|
|
scdemuapp.exe
|
SCDEmuApp.exe
|
U
|
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
|
|
Configuration Driver
|
scghost.exe
|
X
|
Added by the W32/Sdbot-DLA worm and IRC backdoor.
|
|
MS Windows Update
|
scguard.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
sysApp
|
SChal.exe
|
X
|
Added by the Troj/KeyLog-CE keylogger.
|
|
scheck
|
scheck**.exe
|
X
|
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
|
|
scheck45
|
scheck45.exe
|
X
|
Related to unknown Malware - hidden installer associated with it
|
|
AntiVir PersonalEdition Classic Scheduler
|
sched.exe
|
Y
|
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
|
|
Acronis Scheduler2 Service
|
schedhlp.exe
|
U
|
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
|
|
Acronis Scheduler_Helper
|
schedhlp.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
WTIndicator
|
SchedInd.exe
|
U
|
WinTask - software that automates a variety of routine tasks quickly and simply
|
|
schedl
|
schedl.exe
|
X
|
Added by the W32/VB-DVW worm.
|
|
Task Scheduler Engine
|
schedsvc32.exe
|
X
|
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
scheduler
|
schedul3.exe
|
X
|
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
schedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
|
|
tvrschedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
|
|
Scheduled Maintenance
|
Scheduled_Maintenance.exe
|
N
|
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
|
|
scheduler
|
Scheduler daemon.exe
|
U
|
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
|
|
MRU-Blaster Scheduler
|
scheduler.exe
|
U
|
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
|
|
Scheduling Agent
|
Scheduler.exe
|
X
|
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
|
|
Service Scheduler
|
scheduler.exe
|
X
|
Added by the W32/Agobot-OA infection.
|
|
Staffcop Scheduler
|
scheduler.exe
|
U
|
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
|
|
Microsoft
|
scheduler.exe
|
X
|
Added by the W32/Rbot-GUT worm and IRC backdoor.
|
|
Windows Scheduler!
|
scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Task Scheduler
|
Scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
TVT Scheduler Proxy
|
scheduler_proxy.exe
|
U
|
Related to the Lenovo update software on IBM ThinkPad.
|
|
NovastorSchedulerd
|
SCHENGD.EXE
|
U
|
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
|
|
Schmaili
|
Schmaili.exe
|
U
|
Schmaili - insert animated smilies into your e-mail
|
|
schoolpop0
|
Schoolpop0.exe
|
U
|
Schoolpop Shopping Buddy ... Read More
|
|
Generic Host Process
|
SCHOST.EXE
|
X
|
Added by the RBOT-NC WORM!
|
|
Update Install
|
Schost.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
WinManager
|
schost.exe
|
?
|
??
|
|
Microsoft Manage Services
|
schost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
avschedscan
|
SCHSC9X.EXE
|
Y
|
Command antivirus related ... Read More
|
|
Intervideo WinScheduler
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
WinDVR SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
Home Theater SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
|
|
microsoft update 64 bit
|
schvost.exe
|
X
|
Added by the RBOT.CAU WORM! ... Read More
|
|
CSScheduleCheck
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
SCHWIZEX
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
taskmrg
|
schwoch.exe
|
X
|
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
|
|
SecureCleanIEClean
|
SCIEClean.exe
|
N
|
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
|
|
some
|
scit.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
EFS
|
sclgntfy.dll
|
Y
|
Related to the Microsoft Service called Secondary Login Service Notification.
|
|
sclick
|
SCLICK.EXE
|
X
|
Related to SmitFraud infections.
|
|
SQL Server
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
sos sql database
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
stardust screen saver control 2003
|
SCMain.exe
|
N
|
Related to Stardust_Software Screen Saver Control 2003 ... Read More
|
|
ScManager
|
scman.exe
|
X
|
Added by the FORBOT-CW WORM!
|
|
SurfChoice
|
SCMan.exe
|
U
|
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
|
|
chipdrivesmartcardmanager
|
SCMgr.exe
|
U
|
ChipDrive Smartcard software ... Read More
|
|
Spore.b
|
Scmhlpr.vbs
|
X
|
Added by the SPORE.B WORM!
|
|
VGA Driver
|
scmhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Smart Connect Monitor
|
SCMon.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
windows services
|
scmsg.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Security Patch
|
scmss.exe
|
X
|
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
|
|
scanpanel
|
ScnPanel.exe
|
?
|
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
|
|
Deewoo
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
ExploreUpdSched
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
scopedll
|
scopedll.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
MCX Updte
|
scorti.exe
|
X
|
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
|
|
Mi7sft sdce
|
scorti.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
{4535F32F-D292-B784-7926-7419ADE0A94B}
|
scp32.exe
|
X
|
Added by the Troj/Delf-EXC Trojan.
|
|
Scr
|
scr.scr
|
X
|
Added by the OPASERV.T WORM!
|
|
W32.Scran
|
Scran.exe
|
X
|
Added by the NARCS WORM!
|
|
ScrapPad
|
Scrappad.exe
|
N
|
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
|
|
scrbmk
|
scrbmk.exe
|
X
|
Added by the Troj/Dloader-VP downloader Trojan.
|
|
Screen Calendar
|
scrcal.exe
|
U
|
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
|
|
WMI Standard Event Consumer - Scripting
|
scrcons32.exe
|
X
|
Added by the W32/Rbot-GRD worm and IRC backdoor.
|
|
Microsoft Synchronization Manager
|
screen.exe
|
X
|
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
cursor
|
Screendragon_VS_Taskbar.exe
|
N
|
ScreenDragon video player
|
|
ScreenPrint32
|
ScreenPrint32.exe
|
N
|
ScreenPrint32 screen capture software - can be launched manually
|
|
ScreensaverControl
|
ScreensaverControl.exe
|
N
|
Tray icon that allows you toggle your screensaver on and off.
|
|
ScreenView
|
ScreenView.exe
|
U
|
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
|
|
secureclean4regmanager
|
scregmanager4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
Microsoft Restore
|
scrgrd.exe
|
X
|
Added by the SPYBOT.BR WORM!
|
|
Microsoft Windows Update
|
scrhost.exe
|
X
|
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WindowSystemMonitor
|
scrhost.exe
|
X
|
Added by the W32/Tilebot-DV worm and IRC backdoor.
|
|
Auto File System Conversion Utility
|
scricon.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
|
|
RAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
PAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
|
|
Windows Update
|
scrigz.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
script
|
script.bat
|
?
|
Maybe associated with DOS on a Win9x machine
|
|
Java
|
script.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
ScriptSentry
|
Scriptsentry.exe
|
Y
|
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
|
|
Crnsava
|
scrnsave.pif
|
X
|
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Screen Saver
|
scrnsaver.scr
|
X
|
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Crnsavsund
|
scrnsund.pif
|
X
|
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
|
|
Scroll-In-Mouse V2.0
|
SCROLL.EXE
|
U
|
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
|
|
MS Screen Saver
|
scrsave.scr
|
X
|
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scrss
|
scrss.exe
|
X
|
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Gray
|
Scrsss
|
X
|
Added by the Troj/GrayBrd-AM backdoor Trojan.
|
|
scrsvc
|
scrsvc.exe
|
X
|
Added by the Troj/Agent-DS proxy trojan.
|
|
ScrSvr
|
ScrSvr.exe
|
X
|
Added by the OPASERV WORM!
|
|
system csrss patch
|
scrtkfg.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
SystemOPsv
|
scrtvc32.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
sc
|
scrubxp.exe
|
N
|
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
|
|
screxe
|
scruser2k.exe
|
?
|
??
|
|
Smart Connect Setup
|
SCSetup.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
Computer Driver
|
scshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Scsi
|
Scsi.exe
|
Y
|
SCSI Miniport driver
|
|
scsi2usb
|
scsi2usb.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan.
|
|
<unknown>
|
scsipsrvc.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
scsiusr4
|
scsiusr4.dll
|
X
|
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
|
|
MS Shadow Copy Software
|
scsoft.exe
|
X
|
Added by the W32/Tilebot-JP worm and IRC backdoor.
|
|
scsrs
|
scsrs.exe
|
X
|
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SCService
|
SCSrv.dll
|
X
|
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
|
|
SecondChance
|
sctray.exe
|
U
|
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
|
|
secureclean4tray
|
sctray4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
OmniPass
|
scureapp.exe
|
U
|
OmniPass from Softex Inc. - secure password management software
|
|
Nortons AV SYSTEM
|
scvchost.exe
|
X
|
Added by a Rbot variant infection.
|
|
Windows Framework
|
scvh0st.exe
|
X
|
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
|
|
SCVHOST
|
SCVHOST
|
X
|
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
|
|
Config Loader
|
scvhost.exe
|
X
|
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
|
|
Microsoft Update Machine
|
scvhost.exe
|
X
|
Added by the RBOT-GS WORM!
|
|
scvhost.exe
|
scvhost.exe
|
X
|
Added by the LOHAV-N TROJAN!
|
|
Windows Service Host
|
scvhost.exe
|
X
|
Added by the SDBOT.N TROJAN!
|
|
Security Center
|
scvhost.exe
|
X
|
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
|
|
Winmgr.exe
|
scvhost.exe
|
X
|
Added by the AGOBOT.AFG WORM!
|
|
SunJavaUpdateSched
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
|
|
SCVHOST
|
SCVHOST.EXE
|
X
|
Added by W32/Agobot-RK.
|
|
Windows Firewalll
|
scvhost.exe
|
X
|
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-XT WORM.
|
|
microsoft scvhost for windows
|
scvhost.exe
|
X
|
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
WINTASK
|
scvhost.exe
|
X
|
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
|
|
Configuration Loader
|
scvhost.exe
|
X
|
Added by the W32/Agobot-AAE worm.
|
|
Microsoft Update
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
scvhost
|
scvhost.exe
|
U
|
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
|
|
microsoft windows updata
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Personal Computer
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Manager
|
scvhost.exe
|
X
|
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
macromedia flash update
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Tilebot-CU worm and IRC backdoor.
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Opanki-BT worm and IRC backdoor.
|
|
Microsoft Task Manager
|
scvhost.exe
|
X
|
Added by the W32/Mytob-IT worm and IRC backdoor.
|
|
MsWinLibrary
|
scvhost.exe
|
X
|
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
|
|
only23
|
SCVHOST.exe
|
X
|
Added by the Troj/Bckdr-PUQ backdoor Trojan.
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
msconfig
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
icq lite
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Update Checker
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
AntiVir
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Microsoft Print Spooler
|
scvhost.exe
|
X
|
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
|
|
(default)
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Yahoo Messengger
|
SCVHOST.exe
|
X
|
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
|
|
Sync
|
SCVHOST.exe
|
X
|
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
|
|
Windows SQL management 1.33
|
scvhost.exe
|
X
|
Added by the W32/Spybot-OB worm and IRC backdoor.
|
|
System Virtual Host File
|
scvhost.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
LSA
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Printer Drivers
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
scvhost.exe
|
X
|
Added by the W32/IRCBot-ZW worm and IRC backdoor.
|
|
System Host
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
SystemWindows
|
scvhost.exe
|
X
|
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows UDP Control Center
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft SQL Services
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Sub-Classing Routine Manager
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Online Tech
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SysChk
|
scvhost.vbs
|
X
|
Added by the W32/Small-EMQ worm.
|
|
Generic Host Process2 System Backup
|
scvhost2.exe
|
X
|
Added by the W32/Rbot-BAH worm and IRC backdoor.
|
|
Microsoft LSASS386 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft SCVHOST32 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
SVCHost Protocol32
|
scvhost32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
scvhost32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Generic Host Process326a System Backup
|
scvhost326a.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
starter
|
scvhosting.exe
|
X
|
Added by the IRCBOT.E TROJAN!
|
|
Starter
|
scvhosting.exe
|
X
|
Added by the SDBOT.RU WORM!
|
|
starter
|
scvhostingg.exe
|
X
|
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
spoolsv
|
scvhosts.exe
|
X
|
Added by the SMALL-AW TROJAN!
|
|
Windows Print Spooler
|
SCVHOSTS.EXE
|
?
|
Suspicious due to the similarity to the valid "svchost.exe" file
|
|
WinService Host
|
scvhosts.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Yahoo Messengger
|
scvhosts.exe
|
X
|
Added by the W32/Sohana-AH spyware worm.
|
|
microssofts
|
scvhosts.exe
|
X
|
Added by the Troj/Inject-GG Trojan.
|
|
QQKAV
|
scvhsot.exe
|
X
|
Added by the W32/QQRob-ABU worm.
|
|
Yahoo Messengger
|
SCVHSOT.exe
|
X
|
Added by the W32/Hakag-A worm.
|
|
Microsoft Office Studio
|
scvhvst.exe
|
X
|
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
|
|
Microsoft Update Manager
|
scvideo.exe
|
X
|
Added by the W32/Sdbot-CVP worm and IRC backdoor.
|
|
MSN
|
scvrun.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ttool
|
scvs.exe
|
X
|
Added by the Troj/Hiload-A Trojan.
|
|
Yahoo Messengger
|
scvshosts.exe
|
X
|
Added by the W32/Trax-A worm.
|
|
Microsoft Windows Update
|
scvvhost.exe
|
X
|
Added by the FORBOT-DH WORM!
|
|
Winsock2 wqr1s
|
SCVVHOST.EXE
|
X
|
Added by the W32/Rbot-FSN worm and IRC backdoor.
W32/Rbot-FSN includes functionality to:
- access the internet and commu ... Read More
|
|
Yahoo Messengger
|
SCVVHSOT.exe
|
X
|
Added by the W32/SillyFDC-AE worm.
|
|
Adobe Acrobat Speed Launcher.lnk
|
SC_Acrobat.exe
|
N
|
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch ... Read More
|
|
monitor
|
SD Monitor.exe
|
U
|
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
|
|
SD
|
SD.exe
|
X
|
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
|
|
SystemDoctor 2006 Free
|
sd2006.exe
|
X
|
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
|
|
System DirectX DLL Loader
|
sd32dll.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
sd32info
|
sd32info.exe
|
X
|
Added by the CRYPTER.A TROJAN!
|
|
SDaemon
|
sdaemon.exe
|
U
|
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
|
|
vccacA
|
sdaxzl.exe
|
X
|
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
sdcard98
|
sdcard98.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
|
|
KMX direct access
|
sdcardX2.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
Direct settings
|
sdchost.exe
|
X
|
Added by the DAEMONI-I TROJAN!
|
|
wescmv
|
sddcss.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
|
|
Call Function System32
|
sddriver.exe
|
X
|
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
|
|
SDAgentService
|
sde.exe
|
X
|
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
|
|
Scanner Detector
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
SDetect
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
strkjhk
|
sdflkj8.exe
|
X
|
Added by the Troj/Bckdr-QJT backdoor Trojan.
|
|
Scheduler
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
WinAmpAgent
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
SvcH0st
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
MsnExplorer
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Server Daemon Host Manager
|
sdhost.exe
|
X
|
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
|
|
SDIN Adapter
|
sdin.exe
|
X
|
Added by the FORBOT-AP WORM!
|
|
Winsock2 driver
|
SDJOIJE.EXE
|
X
|
Added by the SPYBOT.DR TROJAN!
|
|
Winsock32 driver
|
Sdjoije.exe
|
X
|
Added by the SPYBOT.B WORM!
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
|
|
SDK Core Component
|
SDKC0RE.exe
|
X
|
Added by the W32/SDBOT-WC WORM!
|
|
SDKz0r
|
SDKc55rezzz2.exe
|
X
|
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
SDK Core Component
|
sdkcore.exe
|
X
|
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
|
|
SDK Codre Function22
|
sdkimddprovment2.exe
|
X
|
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdk core function
|
sdkimprovment.exe
|
X
|
Added by the RBOT.BHL WORM! ... Read More
|
|
sdk core function2
|
sdkimprovment2.exe
|
X
|
Added by the W32.SPYBOT.OGX WORM! ... Read More
|
|
mascro soft sdk updates2
|
SDKrepair2.exe
|
X
|
Added by a variant of the W32/SDBOT.W WORM! ... Read More
|
|
sdktemp
|
SDKTEMP.EXE
|
X
|
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft sdk temp
|
sdktemp.exe
|
X
|
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Spectrum 24 Events Monitor
|
sdmAgent20.dll
|
X
|
Added by the Trojan.Linkmediac Trojan.
Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
|
|
KeSDM
|
Sdmapi.sys
|
X
|
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
|
|
monitorsd
|
SDMonitor.exe
|
U
|
Max Spyware Detector
|
|
SDMSSplash
|
SDMSSplash.exe
|
?
|
Related to the HP Smart Desktop Management System support software.
|
|
SpywareDoctor
|
sdoctor.exe
|
X
|
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
|
|
Files Driver
|
sdphost.exe
|
X
|
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
|
|
SDPhotoBar.exe
|
SDPhotoBar.exe
|
N
|
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
|
|
genserv path
|
sdqdqg.exe
|
X
|
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
<not used>
|
sdra64.exe
|
X
|
Identified by Sophos as a variant of the Mal/Zbot-I malware.
|
|
sdrss
|
sdrss.exe
|
X
|
Added by the SDBOT-SQ WORM!
|
|
sads
|
sdsa.exe
|
X
|
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
cvmsyslpd
|
sdservss.exe
|
X
|
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
|
|
Windows Service Agent
|
SDSEWEW.EXE
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
|
|
Sound Driver for Windows
|
sdshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
FlashPath Monitor
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
FlashPath Status
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
Windows Updater
|
sdsys.exe
|
X
|
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
systemtraysd
|
SDSystemTray.exe
|
U
|
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
|
|
sdtray
|
sdtray.exe
|
U
|
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
|
|
SDTrayApp
|
SDTrayApp.exe
|
Y
|
Related to Spyware Doctor.
|
|
Windows Update
|
sdvhost.exe
|
X
|
W32/Agobot-AEU is a network worm with backdoor functionality.
|
|
pc dynamics sdwmon32
|
sdwmon32.exe
|
U
|
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
|
|
safehousesystemtray
|
SDWTRAY.EXE
|
U
|
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
|
|
sdxsys32
|
sdxsys32.exe
|
X
|
Added by the Troj/Brogger-A password-stealing Trojan.
|
|
Search-Exe
|
SE.exe
|
X
|
Search-Exe hijacker
|
|
se500mdm
|
se500mdm.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
|
|
SE500 Generic
|
se500mdmd.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
se633mxx
|
se633mxx.dll
|
X
|
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
|
|
IRDa Modem device #12
|
se633mxxd.sys
|
X
|
Added by a variant of the Goldun rootkit.
|
|
[random name]
|
se?vices.exe
|
X
|
PurityScan adware variant.
|
|
Seagate Communications
|
seagatecom.exe
|
X
|
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
|
|
SeahawksScreenServer
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
SeahawksScreenServerSvc
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
sealmon
|
sealmon.exe
|
U
|
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
|
|
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748}
|
search.dll
|
X
|
Added by the Troj/OnLineG-C password-stealing Trojan.
|
|
WhenUSearch
|
Search.exe
|
X
|
WhenUSearch adware
|
|
mswspl
|
searchbarcash.exe
|
X
|
SearchBarCash adware
|
|
Search Defender
|
SearchDefender.exe
|
U
|
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
|
|
SearchIn1Step Service
|
searchin1.exe
|
X
|
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
|
|
searchnav
|
searchnav.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SearchNavVersion
|
searchnavversion.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SSL
|
SearchNDestrou.exe
|
X
|
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
|
|
YSearchProtection
|
SearchProtection.exe
|
U
|
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to so ... Read More
|
|
SearchSetter
|
searchsetter[1].exe
|
X
|
Browser hijacker - redirecting to FindWhateverNow.com
|
|
SearchSquire33
|
SearchUpdate33.exe
|
X
|
SearchSquire parasite
|
|
SearchUpgrader
|
SearchUpgrader.exe
|
X
|
Hijacker
|
|
Seagate Sync Service
|
SeaSyncServices.exe
|
U
|
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
|
|
SecureExpertCleaner
|
sec.exe
|
X
|
Added by the Secure Expert Cleaner rogue security software.
|
|
run=
|
sec5dec.exe
|
X
|
Added by the ATAK.G WORM!
|
|
second copy 2000
|
SecCopy.exe
|
U
|
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
|
|
*security center
|
secctr.exe
|
X
|
Added by the SDBOT.BRO WORM! ... Read More
|
|
secdrive.exe
|
secdrive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Secdrv
|
secdrv.sys
|
Y
|
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
|
|
Secondary Logon
|
seclogon.dll
|
Y
|
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
|
|
Secret
|
Secret.exe
|
X
|
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
|
|
secretmaker
|
secretmaker.exe
|
U
|
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
|
|
Windows Update
|
SecretStub.exe
|
X
|
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
|
|
secserv.exe
|
secserv.exe
|
X
|
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
|
|
Security Server DB
|
secserver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security Service DB
|
secservice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Secure Service
|
secsrv.exe
|
X
|
Added by the W32/Sdbot-DGP worm and IRC backdoor.
|
|
Provides secure connections to internet and LAN computers.
|
secsrv.exe
|
X
|
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
|
|
secsrvrc
|
secsrvrc.exe
|
X
|
Added by the Troj/SCKeyLog-G keylogger.
|
|
system event manager
|
secsvc.exe
|
X
|
Added by the RBOT.BMY WORM! ... Read More
|
|
Network Security
|
secsvc.exe
|
X
|
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Security Service
|
secsvc.exe
|
X
|
Added by the W32/Rbot-GGF backdoor Worm.
|
|
secsvc32
|
secsvcnt.exe
|
X
|
Added by the Global_Patrol TROJAN! ... Read More
|
|
Secsys
|
Secsys.exe
|
U
|
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
|
|
{1CB622F9-7299-4245-0705-080208070506}
|
SecSystem.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
|
|
Yahoo Patcher!
|
sectoriate.exe
|
X
|
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
|
|
Windows Security Update
|
secupd.exe
|
X
|
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
|
|
security agent
|
securag.exe
|
X
|
Added by the Troj/Bancban-F ... Read More
|
|
secure
|
secure.exe
|
X
|
DealHelper adware
|
|
Secure
|
secure.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
Bat
|
secure2.bat
|
X
|
Added by the ZCREW.C TROJAN!
|
|
Network Configuration Security Manager
|
secure32.exe
|
X
|
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
|
|
Win32 Security Protocol
|
secure32.exe
|
X
|
Added by the W32/Rbot-ETI worm and IRC backdoor.
|
|
Winsecure Antivirus
|
SecureAntivirus.exe
|
X
|
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
|
|
SecureCleaner
|
SecureCleaner.exe
|
X
|
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
|
|
SecureFighter
|
SecureFighter.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
SecureFighter Security Service
|
SecureFighterSvc.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
<not used>
|
SecureGuard.vbs
|
X
|
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
|
|
SecureItPro
|
Secureitpro470p.exe
|
U
|
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
|
|
Security Monitor
|
securemon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security Center Distribution
|
securesec.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security System
|
securesys.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SecureVeteran
|
SecureVeteran.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureVeteran Security Service
|
SecureVeteranSvc.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureWarrior
|
SecureWarrior.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
SecureWarrior Security Service
|
SecureWarriorSvc.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
<random characters>
|
securewinload32x.exe
|
X
|
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Security iGuard
|
Security iGuard.exe
|
N
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Disk Keeper
|
SECURITY.EXE
|
X
|
Added by the Troj/Daoser-A trojan downloader.
|
|
Server Advance
|
Security.exe
|
X
|
Added by the Troj/Bckdr-PUS backdoor Trojan.
|
|
Microsoft
|
Security.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Security 2009
|
Security2009.exe
|
X
|
Added by the Security 2009 rogue anti-spyware program.
|
|
Microsoft Security Update
|
security32.exe
|
X
|
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
|
|
aluria security center
|
SecurityCenter.exe
|
N
|
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
|
|
Microsoft Secure Messenger.NET Service
|
securitychk.exe
|
X
|
Added by the SDBOT.VT WORM!
|
|
SecurityFighter
|
SecurityFighter.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
SecurityFighter Security Service
|
SecurityFighterSvc.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
Security Manager
|
SecurityManager.exe
|
U
|
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
|
|
securityService
|
securityService.dll
|
X
|
Added by the Troj/KillJWS-A Trojan.
|
|
SecuritySoldier
|
SecuritySoldier.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecuritySoldier Security Service
|
SecuritySoldierSvc.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecurityUpdate
|
SecurityUpdate.exe
|
X
|
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
|
|
SECWIZ98
|
SECWIZ98.EXE
|
Y
|
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
|
|
CLSID
|
sed.exe
|
X
|
Adult content dialler
|
|
SESync
|
sed.exe
|
X
|
Downloadware/SED adware downloader
|
|
gqvqevs
|
seeffkme.exe
|
X
|
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
seekmo
|
seekmo.exe
|
X
|
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
|
|
seeve
|
seeve.exe
|
X
|
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
|
|
Selene
|
Selene.exe
|
X
|
Added by the Trojan.Eneles infection!
|
|
FriendlyWebQuick-Launch
|
SELFCERT.EXE
|
N
|
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
|
|
seli
|
seli.exe
|
X
|
Added by the Troj/LowZone-AS Trojan.
|
|
Roflcopteur
|
seman.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
semanticinsight
|
SemanticInsight.exe
|
X
|
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
|
|
[not used]
|
sembako-cfzjkmg.exe
|
X
|
Added by the W32/Brontok-M worm.
|
|
[not used]
|
sembako-cfzjmmg.exe
|
X
|
Added by the W32/Brontok-N worm.
|
|
Bron-Spizaetus
|
sempalong.exe
|
X
|
Added by the W32/Brontok-E worm.
|
|
SeMS
|
SeMS.exe
|
U
|
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
|
|
MailExport
|
sendmail.dll
|
X
|
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
|
|
QQ
|
sendmess.exe
|
X
|
Added by the SEMES TROJAN!
|
|
Sensiva
|
Sensiva.exe
|
U
|
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
|
|
startup scan
|
Sensor.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
sentinelmon
|
sentinelmon.exe
|
U
|
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
|
|
SENTRY
|
SENTRY.exe
|
X
|
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
|
|
CrisysTec Sentry
|
Sentry.exe
|
X
|
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
|
|
RNBOStart
|
sentstrt.exe
|
U
|
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
|
|
Sepate Security Firewall
|
sepate.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
TCP x IP2 Kernel
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
TCP x IP2 Kernel32
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
seppgs
|
seppgs.dll
|
X
|
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
|
|
serazavr
|
serazavr.log
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
serpe
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
ltwob
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
avnort
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
Window Server
|
Sererver.exe
|
X
|
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
|
|
mserv
|
seres.exe
|
X
|
Added by the W32/Agent-LIL worm.
|
|
Serials
|
serials.exe
|
X
|
Any one of a variety of worms and trojans
|
|
Anthrax
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Justice
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Four
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Ebola
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Fathers
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
F4J
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
System Service
|
serious.exe
|
X
|
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Services management
|
serivces.exe
|
X
|
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
|
|
win
|
serlass.exe
|
X
|
Added by the Trojan.Startpage.S browser hijacker.
|
|
Microsoft WinUpdates
|
serm32.exe
|
X
|
Added by the RBOT.GE WORM!
|
|
sern
|
Sernet32.exe
|
X
|
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
|
|
Networok Derve H1ots
|
serop.exe
|
X
|
Added by the Troj/GrayBrd-I backdoor Trojan.
|
|
serrdctl.exe
|
serrdctl.exe
|
Y
|
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
|
|
serrv
|
serrv.exe
|
X
|
Added by the W32/Stratio-AW worm.
|
|
Microsoft Windows Services
|
Sersices.exe
|
X
|
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
<not used>
|
sertail.exe
|
X
|
Added by the Troj/Inject-DD Trojan.
|
|
Serv-U
|
serv-u32.exe
|
N
|
FTP server
|
|
generic service process
|
serv1ces.exe
|
X
|
Added by the W32/Agobot-JK WORM! ... Read More
|
|
Service Manager
|
serv3manager.exe
|
X
|
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Rout111
|
serv454.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
|
|
MSN
|
serv5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Services Management Clients
|
servc.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
WINDOWS SYSTEM
|
servce.exe
|
X
|
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Servicer
|
servcr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
servcs.exe
|
X
|
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
|
|
Services Managements
|
servcs.exe
|
X
|
Added by the Troj/QHost-B Trojan.
|
|
Key2
|
serve.exe
|
?
|
??
|
|
Telephots google
|
serveet.exe
|
X
|
Added by the WORM_FUBALCA.AQ worm.
|
|
Remote Log
|
ServeHost.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
NDIS Adapter
|
servenxpp.exe
|
X
|
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
|
|
NDIS TCP Layer Transport Device
|
servenxpp.exe
|
X
|
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
|
|
Win32R
|
Server.com
|
X
|
Added by the ESTRELLA TROJAN!
|
|
easyServ
|
Server.exe
|
X
|
Added by the EASYSERV TROJAN!
|
|
RunProg
|
Server.exe
|
X
|
Added by the OPTIX.04.A TROJAN!
|
|
server
|
server.exe
|
X
|
Added by the DELTAD.A WORM!
|
|
SERVER.EXE
|
SERVER.EXE
|
X
|
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
|
|
WinProt
|
server.exe
|
X
|
Added by the CHUPACABRA TROJAN!
|
|
pcServer
|
server.exe
|
X
|
Ssppyy spyware
|
|
Windows Updata Server
|
server.exe
|
X
|
Added by the Backdoor.Graybird.N backdoor.
|
|
VMWare Authorization Servicec
|
Server.exe
|
X
|
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
|
|
Windows Media Player
|
Server.exe
|
X
|
Added by the Troj/Feutel-AE backdoor Trojan.
|
|
Pigeon_Server
|
server.exe
|
X
|
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
|
|
Server 2.0
|
Server.exe
|
X
|
Added by the Troj/GrayBrd-AN backdoor Trojan.
|
|
startkey
|
server.exe
|
X
|
Added by the Troj/Bifrose-B Trojan.
|
|
Registry
|
Server.exe
|
X
|
Added by the Troj/Small-ALO backdoor Trojan.
|
|
ConsoleDevil
|
server.exe
|
X
|
Added by the Troj/Bckdr-MJO backdoor Trojan.
|
|
pcServer
|
server.exe
|
X
|
Added by the SSPPYY spyware.
|
|
CRAYON
|
server.exe
|
X
|
Added by the W32/VB-DNI worm.
|
|
Windows_updatesafe
|
Server.exe
|
X
|
Added by the Troj/Bckdr-QIS backdoor Trojan.
|
|
SQL
|
server.exe
|
X
|
Added by the W32/Punya-B worm.
|
|
Xploit Server
|
server.exe
|
X
|
Added by the Troj/Bckdr-JUF information stealing Trojan.
|
|
serverex
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
winserver
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
ZtgServerSwitch
|
server.vbs
|
X
|
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
|
|
Server Backbone
|
server05.exe
|
X
|
Added by the W32/Rbot-ZM worm.
|
|
Server2.0
|
Server2.0.exe
|
X
|
Added by the Troj/Feutel-AY trojan Backdoor.
|
|
Windows_Folder
|
Server4.exe
|
X
|
Added by the Troj/Hupigon-SK backdoor Trojan.
|
|
WindowsAPI.DLL
|
Server5.exe
|
X
|
Added by the "Fear and Hope" TROJAN!
|
|
<random name>
|
Servere.exe
|
X
|
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
Windows DDOSServer
|
serversc.exe
|
X
|
Added by the Troj/Bckdr-PMY backdoor Trojan.
|
|
Serverx
|
Serverx.exe
|
X
|
Added by the W32/Madang-A virus.
|
|
Windows SystemDown
|
servet.exe
|
X
|
Added by the W32/Delf-ESX worm.
|
|
Windows XP
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYB Trojan.
|
|
Windows Ins
|
servet.exe
|
X
|
Added by the W32/SillyFD-AB worm.
|
|
Remote Acces
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYT Trojan Downloader.
|
|
Windows InstallService
|
servet.exe
|
X
|
Added by the W32/SillyFD-AF spyware worm.
|
|
Windows DDE
|
servet.exe
|
X
|
Added by the W32/WoWMovs-A worm.
|
|
SearchNet_Up
|
ServeUp.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
run windows
|
servic.bat
|
X
|
Added by the REBOOT-AP TROJAN! ... Read More
|
|
Sygate Personal Firewall Start
|
servic.exe
|
X
|
Added by the RBOT-RY WORM!
|
|
Microsoft Update 32
|
servic.exe
|
X
|
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft .Net Framework
|
servic.exe
|
X
|
Added by the Troj/Agent-GUU Trojan.
|
|
WINDOWS SYSTEMn
|
servicces.exe
|
X
|
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
serviccs.exe
|
serviccs.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Config
|
service.exe
|
X
|
Added by the ISRAZ.B WORM!
|
|
Configuration Loader
|
Service.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Myapp
|
service.exe
|
X
|
Homepage hijacker
|
|
Service
|
service.exe
|
U
|
Added by the ALADINZ.H TROJAN!
|
|
Service.exe
|
Service.exe
|
X
|
"servedby.advertising" popup generator
|
|
SYS_CLEAN
|
Service.exe
|
X
|
Added by the FLOPCOPY WORM!
|
|
Win32 USB2.0 Driver
|
service.exe
|
X
|
Added by the SDBOT-QF WORM!
|
|
Windows Services
|
service.exe
|
X
|
Added by the RANDEX.R WORM!
|
|
Windows_Serivce
|
SERVICE.exe
|
X
|
Added by the WOOTBOT.AH WORM!
|
|
MSN BETA
|
SERVICE.EXE
|
X
|
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
|
|
r_server
|
SERVICE.EXE
|
X
|
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
|
|
Remote Administrator Service
|
SERVICE.EXE
|
X
|
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
|
|
Windows Screensaver
|
Service.exe
|
X
|
Added by the W32.KELVIR.P WORM!
|
|
Sygate Personal Firewall
|
service.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/Dcmbot-C backdoor trojan.
|
|
Registry Value Name
|
service.exe
|
X
|
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
service manager
|
service.exe
|
X
|
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
|
|
WindowsService
|
service.exe
|
X
|
Added by the W32/Tilebot-K worm.
|
|
systrans
|
service.exe
|
X
|
Added by the Troj/StartPa-GZ backdoor Trojan.
|
|
Servicemng
|
service.exe
|
X
|
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:
c:\windows\system32\hserv.sy ... Read More
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/DcmBot-F backdoor Trojan.
|
|
AdobeReaderPro
|
service.exe
|
X
|
Added by the W32/Rbot-BCA worm and IRC backdoor.
|
|
Windows Service Manager
|
service.exe
|
X
|
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
|
|
Service App
|
Service.exe
|
X
|
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
|
|
Windows startup service
|
service.exe
|
X
|
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
|
|
Microsoft Coyshader Runtime
|
service.exe
|
X
|
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
|
|
systr2
|
SERVICE.exe
|
X
|
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
|
|
Windows smss service
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
|
|
Clean up
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
|
|
Service Configurator
|
service.exe
|
X
|
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
service.exe
|
X
|
Added by the W32/Agobot-GY worm and IRC backdoor.
|
|
PsY
|
service.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
Windows Logon Service
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsServices
|
service.exe
|
X
|
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
|
|
Windows Net Cfg
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MDNS
|
service.exe
|
X
|
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
|
|
Network Services
|
Service.exe
|
X
|
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Windows svchost
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Updates
|
service.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
|
|
Windows Helper
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsHelpService
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Messenger Service
|
service.exe
|
X
|
Added by the Troj/Dloadr-BVG Trojan.
|
|
WinDLL (service.exe)
|
service.exe
|
X
|
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
|
|
updater23
|
service.exe.js
|
X
|
Added by the JS/Uragon-A javascript worm.
|
|
Service
|
Service.pif
|
X
|
Added by the W32/Assiral-C email worm.
|
|
sb0t
|
service1.dll
|
X
|
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
|
|
Service2
|
Service2.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Iroffer malware.
|
|
ProcService
|
service32.dll
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
service32
|
service32.exe
|
X
|
Added by the W32/AGOBOT-ST WORM! ... Read More
|
|
kernel services
|
service32.exe
|
X
|
Added by the TROJ/PRX-B TROJAN! ... Read More
|
|
Microsoft Service Manager
|
service32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Configuration Loader
|
service5.exe
|
X
|
Added by the GAOBOT.AF WORM!
|
|
MS Security Hotfix
|
service5.exe
|
X
|
Added by the GAOBOT.AG WORM!
|
|
WINDOWS SYSTEM
|
service5.exe
|
X
|
Added by the W32/Mytob-JF worm and backdoor.
|
|
Serve User
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
System
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
pushbot
|
service5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
pushbot
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
MSN
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Windows svchost
|
servicean.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinLsass
|
servicec.exe
|
X
|
Added by the SCANE WORM!
|
|
Bredbandsbolaget
|
servicecenter.exe
|
Y
|
Connectivity software for the Bredbands Bolaget ISP.
|
|
serviceconnect
|
serviceconnect.exe
|
X
|
Added by the AGOBOT.AIR WORM! ... Read More
|
|
ServiceHost32
|
ServiceHost32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
ServiceLayer
|
ServiceLayer.exe
|
Y
|
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
|
|
USB Device
|
servicelog.exe
|
X
|
Added by the WOOTBOT.CB WORM!
|
|
wind logd file
|
servicelogd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Service Manager
|
SERVICEMGR.EXE
|
X
|
Added by the W32/PassMail-D worm.
|
|
Microsoft Servicez Manager
|
servicemgrz.exe
|
X
|
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Service Monitor
|
servicemon.exe
|
X
|
Added by the W32/Tilebot-GH worm and IRC backdoor.
|
|
System Service
|
servicent.exe
|
X
|
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
[Various Names]
|
Serviceprocess.exe
|
X
|
Part of the Wareout infection as described here.
|
|
.Prog
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
BuildLab
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
ccApps
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
FriendlyTypeName
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
golumm
|
services.exe
|
X
|
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Microsoft Services
|
services.exe
|
X
|
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Microsoft Visual SourceSafe
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
|
|
MSOffice
|
services.exe
|
X
|
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
|
|
RegDone
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Service
|
services.exe
|
X
|
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Services
|
services.exe
|
X
|
Added by a number of VIRUSES, WORMS and TROJANS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Services Process
|
services.exe
|
X
|
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
|
|
Services.EXE
|
services.exe
|
X
|
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
services.exe
|
Services.exe
|
X
|
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
|
|
sysinit
|
services.exe
|
X
|
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
System Update2
|
services.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
TEXTCONV
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
WMAudio
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Xpsystem
|
SERVICES.EXE
|
X
|
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
xpsystem
|
services.exe
|
X
|
CoolWebSearch parasite variant
|
|
xp_system
|
services.exe
|
X
|
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Norton Auto-Protect
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
Windows Service
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
RPCserv32
|
SERVICES.EXE
|
X
|
Added by the MyDoom.AN WORM! File is found in the Windows directory.
|
|
Services Startup
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
|
|
Services Logon
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
|
|
{357AA41A-B7A8-4632-A27D-5B980B25CF43}
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
SuperBar.Component
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
AdRotator.Application
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
xp_system
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker.
|
|
run
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
|
|
_SystemCheck
|
services.exe
|
X
|
Added by the W32/Sober-M WORM!
|
|
WinStart
|
services.exe
|
X
|
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
|
|
golum
|
services.exe
|
X
|
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
|
|
_winstart
|
services.exe
|
X
|
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
|
|
SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
|
|
_SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
|
|
SysService
|
SERVICES.EXE
|
U
|
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
|
|
Windows Service Controller
|
services.exe
|
X
|
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
|
|
WSVCS
|
SERVICES.EXE
|
U
|
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
|
|
Microsoft Service Controller
|
services.exe
|
X
|
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
|
|
RPCserv32g
|
services.exe
|
X
|
Added by the W32.Bobax.AA mass-mailing worm.
|
|
Events
|
services.exe
|
X
|
Added by the Backdoor.EggHead backdoor.
|
|
NTSet32
|
services.exe
|
X
|
Added by the Troj/WinSpy-C Trojan.
|
|
NetBios Ext
|
services.exe
|
X
|
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
|
|
NetBios Ext32
|
services.exe
|
X
|
Added by the W32.Mydoom.AN@mm worm.
|
|
Torjan Program
|