Welcome Guest (Log In | Create Account)
New Member? Join for free.
Name Filename Status Description
!!!! new_drv.sys
X
Added by the Troj/NTRootK-BE rootkit Trojan.
(Default) NOTEPAD.exe
X
Added by the RUSTY WORM! Note - not to be confused with the valid Windows "NOTEPAD" text editor ... Read More
(default) ne.exe
X
Added by the Troj/IRCBot-ZL worm and IRC backdoor.
*Intelli Mouse Pro Version 2.0B* ncsjapi32.exe
X
Added by the W32/Koobface.worm FaceBook and Myspace worm.
.NET Runtime Optimization Service NETServ.exe
X
Added by the W32/Sdbot-CSA worm and IRC backdoor.

W32/Sdbot-CSA spreads to other network computers by exploiting common buffer overflow ... Read More
/l:eng N/A
N
Related to the Dell OEM version of the Sound Blaster Audigy 2 sound card. If this item is listed and checked in startup, the System32 Folder will appe ... Read More
17779Proj2002 N/A
?
??
1CmailS NETMAIL.EXE
?
??
32.exe nvscv32.exe
X
Added by the Troj/Agent-LOL Trojan.
4684735485910 netdll32.exe
X
Added by the W32/Sdbot-DEV worm.
4wd!!! Natal!.pif
X
Added by the OPASERV.AI WORM!
9UmxQPSiTJMbA NVUKZ.exe
X
Added by the Troj/Agent-LMN Trojan.
<not used> NETLIB32.DLL
X
Added by the Troj/Oscor-G backdoor Trojan.
<not used> nv4_icm3.dll
X
Added by the W32/Stration@MM mass-mailing worm.
<not used> NTDLL32.dll
X
Unidentified malware.
<not used> ntsvc32.dll
X
Identified as the Trojan-Notifier.Win32.Small.i malware.
<not used> n.vbe
X
Added by the W32/AutoRun-SH removable media worm.
<not used> ntsvc32.exe
X
Added by the Troj/Stealth-S Trojan.
<not used> nnfj.tqo
X
Added by the Bredolab.gen.o password-stealing Trojan. Please note C:\Windows\System32\rundll32.exe is a legitimate program and should not be removed. ... Read More
<not used> nologon32.exe
X
Added by the Troj/Zbot-ND Trojan.
<not used> ntload.exe
X
Added by the Advanced Security Tool 2010 rogue anti-spyware program.
<Unknown> nuclab.sys
X
Added by a variant of the Goldun.Fam rootkit.
Access Protocol nixfver.exe
X
Added by the BKDR_PPDOOR.AS backdoor.
ActiveScript32 nod.exe
X
Added by the W32/Sohana-AJ worm.
AdobeReaderPro ntkernell32.exe
X
Added by the W32/Rbot-ATY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
AhnLab V3Lite Update Process nusb3mon.exe
X
Added by the TrojanDownloader:Win32/Navattle.A malware.
Akamai NetSession Interface netsession_win_b427739.dll
U
Added by the Akamai NetSession downloader. This is a service launched by the legitimate C:\Windows\System32\svchost.exe program. The actual executab ... Read More
Akamai NetSession Interface netsession_win.exe
U
Added by the Akamai NetSession downloader. This is a service launched by the legitimate C:\Windows\System32\svchost.exe program. The actual executab ... Read More
anbv32 nabv32.exe
X
Added by the TITOG.C WORM!
Application Explorer Naldesk.exe
U
Novell Zenworks Application Explorer Executable. "For almost all users the Novell ZENworks agent (either Application Launcher or Application Explorer) ... Read More
Application Window NALWIN32.EXE
Y
Part of Novell's Zenworks. Found in the C:\Program Files\Novell\ZENworks folder. ... Read More
ArcNet NDIS Protocol Driver Ndisprot.sys
X
Added by the Trojan.Flush.M Trojan. Trojan.Flush.M is a Trojan horse that impacts network traffic with Address Resolution Protocol (ARP) requests and ... Read More
ARCSolo Recovery N/A
N
Backup software by Computer Associates - no longer supported
arsch nets.exe
X
Added by the W32/Forbot-EL, it's displayname is "Indexing Provider".
ASDPLUGIN Netherlands.exe
X
AsdPlug premium rate adult content dialer variant
autoprotectu navapq32.exe
X
Added by an unidentified WORM or TROJAN!
AVSTRT navpsrvc.exe
X
Added by the W32/Forbot-EF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. These infection ... Read More
Batchreg1 N/A
N
Part of the Windows System Recovery process. Added to the registry via Msbatch.inf. The existence of this key or process after the last reboot during ... Read More
benzaldoxime nczupfw.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
bgmonitor_{79662e04-7c6c-4d9f-84c7-88d8a56b10aa} NMBgMonitor.exe
U
Related to Nero_Home
boby netburn.scr
X
Added by the Troj/Bancban-OX banking Trojan. If you are infected with this Trojan it is advised that you immediately change all the passwords for you ... Read More
Boot Manager Njgal.exe
X
Added by the KILO TROJAN!
bpk nvsr32.exe
U
Blazing Tools Perfect Keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't ... Read More
Bron-Spizaetus norBtok.exe
X
Added by the W32.Rontokbro.B@mm mass-mailing worm.
C:\Program Files\NetMeter\NetMeter.exe NetMeter.exe
N
Added by the NetMeter bandwidth meter.

"NetMeter is a small, customizable network bandwidth monitoring program for Windows 95/98/98SE/M ... Read More
calc ntuser.dll
X
Added by the Opachki.a Trojan. Please note that rundll32.exe is a legitimate program and should not be deleted. ... Read More
caribi ncrjf.dll
X
Zlob Trojan which installs the VirusProtect 3.8 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
Chckup Netverchk.exe
X
Identified by AntiVir as TR/Dldr.Age.66267.A.
Ci Servs newbin.exe
X
Added by the Troj/Rimecud-BC Trojan.
CLCKR nvvsvc.exe
X
Added by the Troj/Agent-TQK Trojan.
COM Message Transfer Ntmssvcs.dll
X
Added by the Troj/Dbit-A trojan.
compaq service drivers navapqwa.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Compaq Service Drivers ntdat32.exe
X
Added by the W32/Sdbot-CNW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute ... Read More
compaq services drivers ndt32.exe
X
Added by the RBOT.CQZ ... Read More
Compuware Distributed Analyzer Service NCS.exe
Y
Added as part of the Compuware DevPartner Studio.
ComService Netlogon.vbs
X
Added by the VBS/Edibara@M virus.
Configuration ntsys32.exe
X
Added by the W32/Sdbot-LH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Configuration ntsyst32.exe
X
Added by the W32/Sdbot-LT worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Configuration Loader NOTEPADE.EXE
X
Added by the W32/SdBot-GD worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
Corel Reminder NAVBROWSER.EXE
N
If you don't want to register Corel products and be reminded about it every 2 weeks disable it ... Read More
CostAware niIPCApp.exe
U
NetInternals CostAware - download quota measuring tool
cpntmgc navpmc.exe
X
MagicControl downloader trojan variant
ctfmon netservice.exe
X
Identified by Trend Micro as the BKDR_HUPIGON.EVG backdoor Trojan.
DashIE N/A
?
Could be related to "Dash Power Shopping" tool bar in IE?
Datechecker N/A
?
Could be related to this?
DDMP netservice.exe
X
Added by the Troj/Delf-EXQ Trojan.
DDT N/A
?
??
Dell DataSafe Online NOBuClient.exe
U
Provides access to Dell's DataSafe Online through a tray icon and also provides notifications through that tray icon. ... Read More
directx NTCmd.exe
X
Added by the SDBOT.D TROJAN!
Disable EHCI nousb20.exe
?
??
Disk Panel Setup npcsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Distributed Link Tracking ntlsrv.exe
X
Added by the W32/Tilebot-KP worm and IRC backdoor.
DLHelperEXE.exe N/A
X
Downloader for Microgaming/Casino software - stealth installed
Dll Injection NXCM.EXE
X
Added by the W32/Sdbot-IT worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
dpzProtect n.vbe
X
Added by the VBS.Runauto.H worm. VBS.Runauto.H is a worm that spreads through removable drives. ... Read More
Driver nso12k.sys
X
Added by the Troj/Knockit-A backdoor Trojan.
dxdll32 ntxdll.exe
X
Added by the GAOBOT.CPX worm which has keylogging, DOS, and backdoor capabilities. ... Read More
Ehch nbme.exe
X
PurityScan delivers advertisements to your computer.
Explorer navawp32.exe
X
Added by the Troj/Ronoper-B backdoor trojan.
EYORE Notepad.scr
X
Added by the W32/Gimlet-A worm.
Fast start Ntut.exe
X
Added by unidentified adware - recognized by Kaspersky antivirus as Trojan.Win32.Favadd.i ... Read More
FastStart ntnut32.exe
X
Added by the StartPage.L TROJAN!
FASTTRACKNETVISION NETVISION.exe
X
Added by the Dial/DialCar-Z premium rate dialer..
FireWire Service nvscv32.exe
X
Added by a variant of the W32/SDBOT WORM!
firewire services nvcsv32.exe
X
Added by a variant of the W32.SPYBOT WORM! ... Read More
ForceWare Intelligent Application Manager nSvcAppFlt.exe
Y
Related to the NVIDIA firewall used on certain motherboards that have the NVIDIA forceware chipset. ... Read More
ForceWare IP service nSvcIp.exe
U
Related to the NVIDIA Firewall used on certain motherboards with nForce chipsets. Not needed if you do not use this Firewall. ... Read More
ForceWare user log service nSvcLog.exe
U
Related to the NVIDIA Firewall used on certain motherboards with nForce chipsets. Not needed if you do not use this Firewall. ... Read More
Forceware Web Interface nSvcAppFlt.exe
U
Web interface for configuring and managing the NVIDIA firewall used on certain motherboards. Not needed if you do not use this Firewall. ... Read More
gabougool nounina.exe
X
Added by the Troj/Agent-JVX Trojan.
gdwxp3 nuclabdll.dll
X
Added by a variant of the Goldun.Fam Trojan.
Generic Host Process for Win32 Services ntspcv.exe
X
Added by the SDBOT.S TROJAN!
GinaDll ntgina.dll
X
Added by the ANIG.A WORM!
GLF Network Lan Monitor NPFMNTOR.exe
X
Added by the W32/Rbot-AGY worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
GoOutside nakedx.exe
X
Added by the W32/Sdbot-AGK worm and IRC backdoor.
graphic loader ntvdm32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
hdlpscom netilxgn.exe
X
Added by the W32/Rbot-FXD worm and IRC backdoor. W32/Rbot-FXD may spread using a variety of techniques including exploiting weak passwords on computer ... Read More
helloworld nb32ext3.exe
X
Added by the MYTOB.JT WORM! ... Read More
Host N/A
X
Added by the POPDIS or STARTPAGE.F TROJANS!
hpoddt01.exe N/A
N
Installed by the "HP Photo and Imaging Director" software. If you ask for the imaging software, this program will be started ... Read More
Hti npdor.exe
U
Appears in startup if you have chosen to participate in on survey by NPD Online Research. Required for the survey to work correctly. Otherwise not re ... Read More
HWinst N/A
Y
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue ... Read More
iCn NAG.EXE
N
iChoose - shopping browser enhancement that alerts you to cheaper deals for goods you want to buy, if they exist ... Read More
IE Processes nosc32.exe
X
Added by the W32/SdBot-CN backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
iluqcwr nqyltsy.exe
X
Added by the W32/SillyFDC-BX removable media worm.
IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} NMIndexStoreSvr.exe
U
Indexing service that catalogs all the media on your computer so that the files are available to all of the programs in the Nero suite of applications ... Read More
IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] NMIndexStoreSvr.exe
U
Indexing service that catalogs all the media on your computer so that the files are available to all of the programs in the Nero suite of applications ... Read More
Inetapi Netapi.exe
X
Added by the NETDEVIL.14 TROJAN!
Input and output operations ntio256.sys
X
Added by the Troj/Bckdr-QHO Trojan.
Intec Service Drivers ntservice.exe
X
A variant of the Win32/Rbot.IKK family of worms and IRC backdoor Trojans.
Intelli Mouse Pro Version 2.0B ncsjapi32.exe
X
Added by the Troj/Buzus-O Trojan.
Intelli2k netbug.vbs
X
Added by the VBS/VBuggy-A networm worm.
Internet nteusodp.exe
X
Added by the W32/Rbot-GFJ worm and IRC backdoor. W32/Rbot-GFJ spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Internet Services Netsvc.exe
X
Added by the WORM_MYTOB.NH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
IPinst N/A
Y
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue ... Read More
IPv6 STUN Service netstun.exe
X
Added by a variant of the SDBOT WORM!
irfk NITEAIM.EXE
X
Added by the W32/Sdbot-AEJ worm and IRC backdoor.
Iusage netdet.exe
N
Internet Usage Monitor - utility to calculate the cost and time on the internet via dial-up ... Read More
IZE N/A
?
??
Java Update nod.exe
X
IRCBot variant.
kernal fault check ntosrkl.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Kernel Fault Check ntvbm.exe
X
Added by the W32/Rbot-CKP worm and IRC backdoor.
Kernel Loader ntkrnl.exe
X
Added by the CERVIVEC.A WORM!
Kernel TCP Filtering protocol necsort.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
krn nl.exe
X
Added by the TSPY_BANKER.GBW information stealing Trojan for online banks.
KSD2Service notaped.exe
X
Added by the Troj/DownLd-ABB Trojan.
LASTinst N/A
Y
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue ... Read More
load32 netda.exe
X
Added by the NIBU.E TROJAN!
Loadout Manager nost_LM.exe
U
Manager for the Belkin Nostromo n50 SpeedPad game controller - see here
Logical_Disk netservice.exe
X
Identified by Trend Micro as the BKDR_HUPIGON.EVG backdoor Trojan.
MagicSet.exe nkruls.exe
X
Added by the W32.Slurk.A worm. This infection will also configure itself as debuggers for many other security related programs. ... Read More
Mcafee Anti Scan NortonScn.exe
X
Added by a variant of the RBOT WORM!
Media Sariel Number Services notaped.exe
X
Added by the Troj/DwnLdr-FYA Trojan.
Messenger ntsubsys.exe
X
Added by the WORM_SDBOT.BGE trojan.
Messenger Protocol netsender.exe
X
Added by the W32/Sdbot-ACC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Messenger Service nvhost.exe
X
Added by the W32.Mytob.HM@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsft Update 32 neta.exe
X
Added by the W32/Rbot-AMI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
microsof value nmatt.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft netsrv.exe
X
Added by the W32/Rbot-GOS worm and IRC backdoor.
Microsoft netfix32.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Microsoft Nvpss.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft netshield.exe
X
Identified as the Backdoor.Win32.Agent.aqb malware.
Microsoft ntsvr.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft (R) Windows Network Latency Controller nlc.exe
X
Added by the Backdoor.Ranky backdoor Trojan. This infection also installs a Windows service of the same name and filename. ... Read More
Microsoft (R) Windows Network Security Management Service nsms.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
Microsoft (R) Windows Vista/NT Runtime Compatibility Service nrcs.exe
X
Added by the Backdoor.Ranky.X backdoor Trojan. This infection also creates a Windows service using the same name and filename. ... Read More
Microsoft Agent nsch0st.exe
X
Identified as a variant of the Win32/Duiskbot.AG malware.
Microsoft Autorun1 nwizdh.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun10 nwizwmgjs.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun12 nwizzhuxians.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun13 nwizwlwzs.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun20 nwizfy.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun3 nwizhx2.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Autorun7 nwiztlbu.exe
X
Added by the W32.Ogleon.A worm. W32.Ogleon.A is a worm that spreads through removable storage devices. It also drops a copy of Infostealer.Gampass, on ... Read More
Microsoft Corporation nsvdec.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft CSRSS Service nsmscrs.exe
X
Added by the W32/Rbot-BPT worm and IRC backdoor.
Microsoft Installshield nundll32.exe
X
Added by the W32/Agobot-AHZ worm and IRC backdoor.
Microsoft Internel Corporat netvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Internet new.exe
X
Added by the Troj/Banker-DSL Trojan.
Microsoft Internet novo.exe
X
Identified by Panda Antivirus as Trj/Banker.HYW. If you are infected with this file then you should immediately change your online banking passwords a ... Read More
Microsoft Name Server nssrv.exe
X
Added by the W32/Tilebot-EK worm and IRC backdoor. This infection utilizes the rootkit rofl.sys. ... Read More
Microsoft Neser Experience nese.exe
X
Added by an Rbot WORM variant!
Microsoft Net API ntps.exe
X
Added by the W32/Tilebot-HA worm and IRC backdoor.
Microsoft Net Driver NETSVC.exe
X
Added by the W32.Momib.A worm.
Microsoft NetMeeting Associates, Inc. NetMeeting.exe
X
Added by a variant of the LOVGATE WORM!
microsoft network Networksystem.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Microsoft Network Daemon for Win32 Netd32.exe
X
Added by the SDBOT.R TROJAN!
Microsoft Network Daemon for Win32 ntd32.exe
X
Added by the W32/Randex-G worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
Microsoft Network Inspection System NisDrvWFP.sys
Y
A driver related to Microsoft Security Essentials.
Microsoft Network Neighbourhood networknbh.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Network Service netsvc.exe
X
A variant of the Backdoor.Win32.Rbot.eac family of worms and IRC backdoor Trojans. ... Read More
Microsoft Newss newhost.exe
X
Added by an unknown Trojan.
Microsoft Norton Antivirus norton.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft notepad notepad.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Notepad Manager notepad.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft NT Drivers ntdrv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Nvidia Video nvidia.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Office Nxcxtpr.exe
X
This is a SDBot variant infection. When run this infection connects to an IRC server, hoeee.routing.vu, and join channel #kloni with password 1q2wxc ... Read More
Microsoft Office Nxcao.exe
X
Added by the W32/Rbot-ZE WORM/IRC backdoor Trojan!
Microsoft PCHealth32 NDDENB.exe
X
Added by the Troj/PWSYahoo-A password-stealing Trojan for the Yahoo Messaging Service. ... Read More
Microsoft Software Update nmon.exe
X
Added by the RBOT.HZ WORM!
Microsoft Svchost local services nzm23.exe
X
Added by the W32/Rbot-GMC worm and IRC backdoor.
Microsoft Synchronization Manager netscape.exe
X
Added by the RANDEX.AE WORM!
Microsoft System Checkup ntsysmgr.exe
X
Added by the DONK.S WORM!
Microsoft System Checkup ntsysman.exe
X
Added by the SDBOT-QW WORM!
microsoft system checkup netapi32.exe
X
Added by the W32/DONK-E WORM! ... Read More
Microsoft System Checkup netlogin32.exe
X
Added by the W32/SdBot-GN worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
Microsoft System Checkup NTSYSMGR.EXE
X
Added by the W32/Sdbot-OC worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update navmgrd.exe
X
Added by the SDBOT.DP TROJAN!
Microsoft Update NAV.exe
X
Added by the RBOT-IV WORM!
Microsoft Update ntsf.exe
X
Added by the W32/Rbot-BBP worm and IRC backdoor.
Microsoft Update ntservice.exe
X
Added by the Troj/Agent-DIS Trojan.
Microsoft Update nbdos.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft update 23 NtKernelSystem.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Update 32 network.exe
X
Added by the W32/Rbot-AQE worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update 32 network.exe
X
Added by the W32/Rbot-ARZ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
Microsoft Update Machine ntce.exe
X
Added by the RBOT-FA WORM!
Microsoft Update Machine ntce.exe
X
Added by the W32/Rbot-FA trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update Machine nlczty.exe
X
Added by the W32/Rbot-GUR worm and IRC backdoor.
microsoft updating navguard.exe
X
Added by the RBOT.HW WORM! ... Read More
Microsoft Vista Updater System nvcsc23.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojan
Microsoft Windows DLL Services Configuration newdll.exe
X
Added by the W32/Sdbot-ZR worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
Microsoft Windows DLL Services Configuration newdll2.exe
X
Added by the W32/Sdbot-ABD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Windows Internet Connections Manager net32b.exe
X
Added by the W32/Cuebot-N worm and IRC backdoor.

W32/Cuebot-N can spread to computers vulnerable to the Server Service exploit.
... Read More
microsoft xpsp2 Networksystem.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
MicrosoftNetwork Daemon for Win32 NETD32.EXE
X
Added by the RANDEX.F WORM!
Mirabilis ICQ NDetect.exe
N
If connected to the internet, automatically runs up ICQ. Convenience more than anything. ICQ can be started from Start -> Programs ... Read More
modems notice.dll
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
mojnpluginsrivcs neomonap23.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
MONPluginSrIvcs n3monap23.exe
X
Added by a variant of the WIN32.RBOT WORM!
Mozilla Quick Launch Netscp6.exe
N
Netscape 6 and Mozilla browsers
MS taskbar nts.exe
X
Added by the W32/Rbot-AGB worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
ms unix navupdate64.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
ms unix binary Norton2005Update.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
ms unix binary Norton2005Update.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
MsCplScan nvsv32.exe
X
A new service added by the W32/Forbot-DI WORM/IRC backdoor Trojan, with a displayname of nvsv32.exe. ... Read More
msdn nese.exe
X
Added by the SDBOT.AHY WORM!
MSDRV NetFilter.exe
X
Added by the Trojan.Interrupdate Trojan. Trojan.Interrupdate is a Trojan horse that lowers security settings. ... Read More
MSN ntmngr.exe
X
Added by the Troj/Delbot-AR Trojan.
MSN netstats.exe
X
Added by the Worm.IRCBot.UXP worm and IRC backdoor.
Msn Messenger nkbf.exe
X
Added by the W32/Rbot-GMQ worm and IRC backdoor.
MSN Service Utilities nkn.exe
X
Added by the W32/Kelvir-BC MSN Messenger worm.
MSNPluginSrIvcs n3vasap23.exe
X
Added by a variant of the WIN32.RBOT WORM!
MSupdate.exe N/A
X
CoolWebSearch parasite related - resets home page to an adult content site
MSupdater.exe N/A
X
CoolWebSearch parasite related. Installs the Winshow.dll browser plugin
MS_NETD_WIN32 netd32.EXE
X
Added by the RANDEX.F WORM!
Multi-user Cleanup Service ntmulti.exe
Y
Related to IBM Lotus Notes.
myNetWatchman nwclient.exe
U
Sends your firewall alerts to a website, which then filters them and forwards details of suspicious activities to the host ISP they originated from. O ... Read More
MySoftware NewsFlash Newsflsh.exe
N
A program that runs in your task bar and receives alerts and release information on MySoftware products. ... Read More
N2PTray Net2fone.exe
U
An Internet telephony application. Needed only if you have an account at Net2Phone, Inc ... Read More
NADaemon NADAEMON.EXE
N
Program by NetActive which appears to be piggybacked onto some Nvidia graphics cards software. They seem to look after "digital rights management". On ... Read More
Naggerrunkey nagger.exe
N
Packard Bell Free Internet Signup screen
nah_Shell nah_cord.exe
X
Added by the Trojan.Hanambot Trojan. Trojan.Hanambot is a Trojan horse that steals financial information and opens a back door on the compromised comp ... Read More
Naimagent_UI naimag32.exe
Y
Workstation background program for Network Associatesí McAfee ePolicy Orchestrator - a network management tool for enforcing antivirus protection of t ... Read More
Nakido nakido.exe
U
Added by the Nakido file sharing software. This software allows you to share files with other people on the Nakido network. ... Read More
Nalpeiron Licensing Service nlssrv32.exe
Y
Added by the Nalpeiron Licensing Service licensing software.
NAMEDPIPE SYSTEM namedpipe.exe
X
Added by the W32/Mytob-FH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
NamedSvc named.exe
X
Identified by Kaspersky Antivirus as Backdoor.Win32.IRCBot.anp.
Nano Antivirus nanoav.exe
X
Added by the Nano Antivirus rogue anti-spyware program.
NAP32 NAP32.exe
X
Premium rate adult content dialer
naPrdMgr naPrdMgr.exe
X
Added by the W32/Tilebot-KX worm and IRC backdoor.
NapsterShell napster.exe
N
Windows system tray icon for the music download service, Napster.
narqwe narqwe.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
Nas nas.exe
X
Added by the Adware.ClearX adware program. Adware.ClearX is a program that attempts to modify settings in Internet Explorer. It redirects both the hom ... Read More
Natal Natal.scr
X
Added by the OPASERV.AE WORM!
NaturalColorLoad NaturalColorLoad.exe
U
Natural Color help users synchronize the on screen colors with printed ones.
NAV Agent navapw32.exe
Y
Norton Anti-Virus's background scanning process
nAv AGENT N/A
X
Added by the RIOSYS MACRO! Note the lower-case "n" and "v" in the name as this is not the valid Norton AntiVirus entry of the same name - indeed it cl ... Read More
nav auto prot navprot1.exe
X
Added by the RBOT.ZAC WORM! ... Read More
NAV Auto Protect navprotect.exe
X
Added by a variant of the RBOT WORM!
NAV Auto Update Navautoupdate.exe
X
Added by a variant of the SPYBOT WORM!
NAV Auto Updates navupdaters.exe
X
Added by the W32/RBOT-UN WORM!
NAV Auto Updates navupdaterx.exe
X
Added by a variant of the WIN32.RBOT WORM!
NAV Scan Service NAVSCAN32.EXE
X
Added by the SDBOT.VG WORM!
navapp navapp.exe
X
NavExcel adware variant
navapsvc navapsvc.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
navapw32 navapw32.exe
Y
Norton Anti-Virus's background scanning process
NAVENG naveng.sys
Y
Driver used by Symantec Antivirus.
NAVEX15 navex15.sys
Y
Driver related to the virus definitions of Symantec Antivirus.
Naviscope naviscope.exe
U
Naviscope is a multipurpose browser enhancement that can speed up Web searches, lock out cookies, examine HTML send/receive headers, provide single-cl ... Read More
NaviSearch nls.exe
X
NaviSearch, eXact Advertising variant
NavLogon NavLogon.dll
Y
Part of the Norton Antivirus product.
navp.exe navp.exe
X
Added by the AGOBOT-OE WORM!
NavPass NavPass.exe
X
Free system for gaining access to and downloading from adult content web-sites
NavProtect32 Random Filename
X
Troj/Bancos-BA is a password-stealing Trojan that targets banking websites.
navregreminder NavLoad.ini
N
Corel, HP or ScanSoft registration reminder; not required
NAVSCAN32.EXE NAVSCAN32.exe
X
Added by the W32/Sdbot-DO worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
NAVSCAN64.EXE /s NAVSCAN64.EXE
X
Added by the W32/Rbot-T worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
NAVSCANNER32 NAVSCANNER32.EXE
X
Added by the RBOT.QC WORM!
NAVtask NAVtask.exe
X
Added by the W32/Rembot-A backdoor/worm. This infection connects to an IRC server and waits for commands to execute. ... Read More
NAVWatch NAVWatcher.exe
X
Identified by Sunbelt Software as a variant of the VX2.Transponder Trojan.
NAV_Update NAV_Update.exe
X
Unidentified WORM or TROJAN!
nawadll32 nawadll32.exe
X
Added by the W32/Sdbot-ZI worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
nawdll32 nawdll32.exe
X
Added by the W32/Sdbot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
nax12 nax12.sys
X
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
NBJ NBJ.exe
U
Ahead Nero BackItUp backup program. Only required for if you have scheduled back-ups ... Read More
NbkCtrl NbkCtrl.exe
U
Scheduling engine of NovaSTOR Backup Service. Only required if scheduling is enabled and wanted - see here ... Read More
NBKeyScan NBKeyScan.exe
U
Part of the BackItUp backup software bundled with Nero 8 Suite.
NBService NBService.exe
U
Service used to run backups using Nero BackItUp.
nbsession nbsystem.exe
X
Added by Backdoor.DTR. This infection listens on port 10001 awaiting remote commands. ... Read More
nbustrce1d nbustrce1D.exe
?
Device driver, possibly CD-ROM/DVD-ROM related - what exactly is it and is it required in startup? ... Read More
NCClient N/A
?
??
NCD ncd.exe
N
Norton Change Directory - from the DOS days that allows the user to change directories on their machine without typing the complete path ... Read More
nclabydll nclabydll.dll
X
Added by a variant of the Haxdoor Trojan. This infection utilizes the nclaby.sys rootkit. ... Read More
NCLAUNCH NCLAUNCH.Exe
U
Part of SWF Studio from Northcode Inc - an extension to Flash. Bundled when you create a self-installing screen-saver on Win2K/XP. ... Read More
NcpBudget ncpbudgt.exe
Y
Related to the FEC Secure IPSec VPN client.
nDaemon ndaemon.exe
Y
Unsupported and discontinued News server for windows by Alt-N.
NDDEAGNT NDDEAGNT.EXE
?
WinNT default process. Network Dynamic Data Exchange (DDE) Agent, handles requests for network DDE services ... Read More
NDIS Adapter ndis.exe
X
Added by the SDBOT.VF WORM!
ndisaluo ndisaluo.sys
X
Identified as a variant of the TR/Rootkit.Gen rootkit.
NdisFilter ndisfilter.sys
X
Added by the Troj/NetAtk-F rootkit.
NDISRD ndisrd.sys
X
Added by the Trojan.Interrupdate Trojan. Trojan.Interrupdate is a Trojan horse that lowers security settings. ... Read More
NdisWon NdisWon.sys
X
Identified as a variant of the Ascesso rootkit.
NDplDeamon nstask32.exe
X
Added by the RANDEX.E WORM!
NDrv NDrv.exe
X
NDSTray NDSTray.exe
U
ConfigFreeT Tray on a Toshiba laptop. Tray utility for their network switching application which permits switching network devices and settings with a ... Read More
Necbar Necbar.exe
N
Nec Assistant; Ark's Navigator, a graphical interface for NEC computers
NECMFK necmfk.exe
Y
NEC wireless keyboard driver
Necutray Necutray.exe
U
Driver for external USB storage devices (hard drives, flsh disks, etc)
neksolda neksolda.dll
X
Identified as a variant of the VideoAccessCodec.
neobus neobus.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
neos neos.exe
X
Added by the Troj/BdoorB-Fam backdoor.
neos neos.exe
X
Added by the Troj/BdoorB-Fam backdoor Trojan.
neqprvfy.exe neqprvfy.exe
?
Appears to be related to the downloading of some application - possibly verifying updates? ... Read More
Ner0 Check ner0check.exe
X
Added by a variant of the RBOT WORM!
nero nrchk.exe
X
Premium rate adult content dialer
Nero Checker nerocheck.exe
X
Added by the Troj/Proxy-X Trojan.
NeroAutoStartClient NeroASM.exe
X
Added by the AGOBOT.VG WORM!
NeroCheck nerocheck.exe
U
Associated with "Nero Burning Rom" CD writing software. Checks for driver issues ... Read More
NeroFil NeroFil.EXE
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NeroFilterCheck NeroCheck.exe
U
Associated with "Nero Burning Rom" CD writing software. Checks for driver issues ... Read More
NeroFilterCheck NeroChek.exe
X
Added by the TSPY_AGENT.AAVG spyware Trojan.
NeroHomeFirstStart NMFirstStart.exe
U
A media indexing program installed with Nero products. More information about it can be found here. ... Read More
NeroLoader NeroLoader.exe
X
Added by the Troj/Bancban-EJ password-stealing Trojan of banking websites.
NeroNETTrayIcon NNServiceCtrl.exe
N
System tray access to NeroNET - Ahead Software's network-capable extension of their CD/DVD burning program. NeroNET allows a burner to be shared acros ... Read More
nested nested.sys
X
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
net net.net
X
Added by the Troj/Mdrop-CIF Trojan.
Net Accelerator NetAccelerator.exe
U
Rizal NetAccelerator - "Optimizing Dial-Up, Lan, Cable, DSL, and Satellite connections do you want to speed up your Internet access up to 200% - 300% ... Read More
Net Activity Diagram nad.exe
U
Net Activity Diagram from MetaProducts. Monitors your computer internet activity. Available via Start -> Programs ... Read More
NET Bios Stats ntbstats.exe
X
Added by the W32/Sdbot-ZX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Net Command Senter nvscvse.exe
X
Identified as a variant of the Backdoor.Win32.Agent.aox backdoor.
Net Functions Library netlib.exe
X
Added by the Troj/Crater-A backdoor trojan.
Net Functions Monitoring Netmon.exe
X
Added by the W32/Codbot-R worm and IRC backdoor.
NET protection system netst.exe
X
Identified as the Backdoor.Rizo.A malware.
Net Service Monitor netsvc.exe
X
Added by the W32/Rbot-FZD worm.
Net-It Launcher NILaunch.exe
N
Net-It - web publishing software
NetAccelerator NetAccel.exe
U
NetAccelerator is a "software utility that optimizes your internet access up to 1200% faster!. NetAccelerator speeds all modems allowing you to downlo ... Read More
NetAdm7 NETADM7.EXE
X
Added by the BANCOS.F TROJAN!
Netapi Netapi.exe
X
Added by the NETDEVIL.14 TROJAN!
netapi32 netapi32.exe
X
Added by an unidentified TROJAN!
Netbeans netbeans.exe
X
Added by the W32/Delbot-R worm and IRC backdoor. W32/Delbot-R spreads to other network computers by scanning network shares for weak passwords and by ... Read More
Netbios Helper nbthelp.exe
X
Added by the W32/Codbot-D WORM! This infection is installed as a service which is started even in safe mode. The file is found in the Windows system ... Read More
netbios helper nbthlp.exe
X
Added by the PWS-BANKER.Y password stealing TROJAN! ... Read More
NetBIOS Helper nbthlp.exe
X
Added by the W32.Toxbot.AL worm and IRC backdoor.
NetBIOS Protection netpt.sys
X
Identified as not-a-virus:Monitor.Win32.NetMon.a by Kapersky.
NetBioy Client netbioy.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NetBTD(ntbtd) netbtd.exe
X
Added by the W32/Sdbot-BLW worm and IRC backdoor.
netchecker netcheck.exe
X
Added by the Troj/Daemoni-AP Trojan.
netconf32 netconf32.exe
X
Added by the W32/Tilebot-BN worm and IRC backdoor.
netconfig netconfig.exe
X
Added by the NETCONF TROJAN!
NetCruiser Dialer NCDialer.exe
U
NetCruiser Dialer from NetCruiser Software. "An Internet dialer and connection monitor with features to launch applications when a connection is detec ... Read More
netdaemon netdaemon /v
X
Malware designed to "kill" a number of antispyware applications (SpyBot, Giant, SpyDoctor, SpySweeper, SpyHunter, Anvir, WinPatrol, and more) ... Read More
NetDDE Server netddesrv.exe
X
Added by the W32/Codbot-Y worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
netdll32 netdll32.exe
X
Added by the CRYPTER.A TROJAN!
netdllex netdllex.Exe
X
Added by the CRYPTER.A TROJAN!
NetDriver netdriver.dll
X
Added by the Troj/Dloadr-CIB downloader Trojan.
NETFP32.EXE NETFP32.EXE
X
Added by the AGENT.CD TROJAN!
netfxupdate netfxupdate.exe
?
Would appear to be a valid Microsoft .NET file (see here) but this suggest's it's a trojan? ... Read More
NetFxUpdate_v1.0.3705 netfxupdate.exe
?
Would appear to be a valid Microsoft .NET file (see here) but this suggest's it's a trojan? ... Read More
NetFxUpdate_v1.1.4322 netfxupdate.exe
?
Part of the Microsoft .Net Framework. Unsure if its required to run.
NetGroup Packet Filter Driver npf.sys
Y
Part of the WinPcap packet capture library. This file can be installed by malware but is not considered harmful to your computer. ... Read More
NetGuard NetGuard.exe
U
FBM Software ZeroSpyware 2004 spyware detector and remover - real time monitor
NETINFO netinfo.exe
X
Added by the W32/Tilebot-J worm.
Netintelligence Home Edition Web Filter NINDFltr.exe
Y
Added by the Netintelligence parental controls product.
Netlimiter Netlimiter.exe
U
Netlimiter - "An internet traffic control tool to monitor applications which access the internet and actively control their internet traffic. Use it o ... Read More
Netline User netchk.exe
N
Netline supplies internet related products and services and this program identifies user ID and IP information. Found installed along with the Falcon ... Read More
NetLink netlink32.exe
X
Added by the GAOBOT.WO WORM!
NetLogon netlogin.dll
X
Added by the Backdoor.Fuwudoor backdoor.
Netman Netserv.dll
X
Added by the Troj/Protux-E Trojan.
netmanageimport nmcpdata.exe
U
NetManage business software related ... Read More
NetManagerService ntss.exe
X
Added by the BESTPICS.A TROJAN!
NetMeeting Remote Desktop Agent Nwsapagent.dll
X
Added by the Trojan.Linkmediac Trojan.

Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
NetMeter NetMeter.exe
X
NetRatings software by Opistat . "OpiStat measures Internet usage anonymously and surveys participants according to their profiles and online habits". ... Read More
netmeter NielsenOnline.exe
U
This is software that monitors your Internet usage and offers surveys that are based on users online habits. The data that is monitored is supposedly ... Read More
NetMon netmon.exe
X
Added by the MIMAIL.M WORM!
NETMONW NETMONW.EXE
X
The Troj/Bdoor-FX TROJAN adds this, then automatically contacts a particular URL in order to download an additional file with further commands. ... Read More
netmsg netmsg.exe
U
Net_Message is a small tool to send messages across the network, using the Windows Messenger Service, so there is no client install required to receiv ... Read More
netpc32.exe netpc32.exe
X
Malware, probably CoolWebSearch parasite related
NetPerSec NetPerSec.exe
N
NetPerSec - measures the real-time speed of your Internet connection
Netprotocol netprotocol.exe
X
Added by the Troj/FakeAV-BNY Trojan.
NetPumper NetPumperIEProxy.exe
X
NetPumper download manager - bundles Cydoor and SaveNow adware, see here
NetReach nrcheck.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Netropa Internet Receiver Netropa.exe
X
Netropa Internet Receiver. Shows a scrolling bar with the news. Major resource hog and flagged as spyware ... Read More
Netropa NHK Server Nhksrv.exe
N
This program is installed by certain Dell and Compaq computers. It is used to disable any configured hotkeys while the screensaver is running. ... Read More
NetRun NetRun.exe
U
NetRun - will 'RUN' a 'List' of programs only when a internet connection is detected, and close/kill the same 'List' when the connection is lost ... Read More
Netscape Messenger NETSCAPE.EXE
N
In Netscape 6 (I know for sure with 6.2.1, maybe with 6.0) Netscape.exe is the main executable file for Netscape Navigator, Netscape Mail and News, an ... Read More
Netscp6 Netscp6.exe
N
Netscape 6
NetSendServer NetSend.exe
X
Added by the Troj/Hupigon-DQ backdoor Trojan.
NetService ntsvc.exe
X
Added by the Troj/QQPass-DU password-stealing Trojan.
NetService NetService.exe
X
Added by the W32/Silly-F worm.
NetShow Powerpoint Helper NSPPTHLP.EXE
U
If disabled, user created fonts can no longer be seen by other programs
NetStat Live Nsl.exe
N
AnalogX NetStat Live - TCP/IP protocol monitor which can be used to see your exact throughput on both incoming and outgoing data ... Read More
NetSTrSvc netsvcs.sys
X
Added by the Troj/HacDef-AM rootkit.
netsup netsup.dll
X
Identified as the Adware.Agent Trojan.
netsv32 netsv32.exe
X
Added by the SDBOT-PX WORM!
NettGain2000 Verifier NettGain2000 Verifier.exe
Y
Part of the Starband satellite client that attempts to optimize your satellite connection to increase speed. ... Read More
NetTime NETTIME.EXE
U
From a visitor - "This is the executable for NetTime. It is started from the registry when you check the box to start at startup. NetTime allows you t ... Read More
NetTurbo netturbo.exe
U
NetTurbo from SharewareOnline.com. "Accelerate Your Internet Connections by up to 600%". If you find it helps your connectivity leave it enabled ... Read More
netupdate32 netupdate32.exe
X
Added by the worm and IRC backdoor.
netview netview.exe
X
Added by the Backdoor.Bifrose.L backdoor.
NetWatch32 netwatch.exe
X
Added by the MIMAIL.C WORM!
Netword Agent nwant33.exe
N
An interesting browser utility that allows you to navigate by typing a single word or phrase (a "NetWord") related to what you're looking for into you ... Read More
Network netwin.exe
X
Added by the W32/SillyFDC-CG removable media worm.
Network Administration NAS.exe
X
Added by the ANTILAM.20.Q TROJAN!
Network Bridge netadp.exe
X
Added by the W32/IRCBot-TO worm.
Network Client netclnt.exe
X
Added by the Trojan.Boxed.A Trojan.
Network Connections netman.dll
Y
This Windows services manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connecti ... Read More
Network DDE Client netddeclnt.exe
X
Added by the W32/Codbot-M worm and IRC backdoor trojan.
NetWork Device Switch NetDevSW.exe
U
Toshiba laptops with built-in Wi-Fi. Allows switching between Wi-Fi and internal ethernet. Only necessary if you have regular need to switch back and ... Read More
Network DRV netdrvr.exe
X
Added by the W32/Tilebot-CO worm and IRC backdoor.
Network IPv6 network.exe
X
Added by the W32/VB-DYF worm.
Network List Service netprofm.dll
Y
This Windows identifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications ... Read More
Network Location Awareness Network.exe
X
Added by the Troj/Dloadr-BBE Trojan.
Network Location Awareness nlasvc.dll
Y
This Windows collects and stores configuration information for the network and notifies programs when this information is modified. If this service is ... Read More
Network Magic nmsrvc.exe
U
Part of Network Magic. Network magic helps home network users quickly solve network related problems as well as configure network related services. ... Read More
Network Monitor netmon.exe
X
Added by the Adware.Network_Monitor adware.
Network Monitoring Service NETMON.EXE
X
Added by the W32/Codbot-A backdoor.
Network ODBC NetODBC.exe
X
Added by the W32.Snaban worm. W32.Snaban is a worm that spreads by copying itself to removable drives and network drives on the compromised computer. ... Read More
Network Password Manager npmsvc.exe
U
Added by the Network Password Manager password management system.
Network Performance Alerts netlog32.exe
X
Added by the W32/Mofei-T worm and backdoor. W32/Mofei-T may attempt to spread via network shares protected by weak passwords. ... Read More
Network Security NSecurity.exe
X
Added by the Troj/IRCBot-WN IRC backdoor Trojan.
Network Security Monitor nsmon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Network Security XP nvsvc86.exe
X
Added by the W32/Rbot-GUI worm and IRC backdoor.
Network Service Manager netsvc.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM!
Network Service Manager netsvc.exe
X
Added by a variant of the GAOBOT/AGOBOT WORM!
Network Source Engine nsecvc.exe
X
Identified by Bitdefender as Trojan.Peed.Gen.
Network Store Interface Service nsisvc.dll
Y
This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of netw ... Read More
Network System NetSystem.exe
X
Added by the Troj/QQRob-ADE password-stealing Trojan.
Network System Logon netmsvc.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Network Trafic Monitoring nmntrng.exe
X
Added by the W32/Nanpy-O worm.
Network Translation Service nts.exe
X
Added by the TROJ_XPACK.TZ Trojan.
Network Translation System Service ntss.exe
X
Added by the Backdoor.Unpdoor backdoor Trojan. Backdoor.Unpdoor is a Trojan horse that opens a random port and connects to a remote Web site. ... Read More
NetworkClient NetworkClient.exe
X
Added by the LEMUR WORM!
NetworkControl nc.exe
X
Added by the NetworkControl ransomware.
NetworkKey netkey.exe
X
Added by the Troj/IRCBot-AJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Networks Configurator NetConfs.exe
X
Added by the RBOT-OX WORM!
Networks Controler Netsis.exe
X
Added by the RBOT-NG WORM!
Netzip Smart Downloader npnzdad.exe
X
Advertising spyware
NetZIPFolders nzfprop.exe
N
Netzip Classic zip file manager
NeuroMedia(IESpeaker) NeuroMedia.exe
X
Part of an older freeware version of IESpeaker - a program that allows you to listen to web pages. NeuroMedia.exe only downloads advertisments. Not i ... Read More
Nevwoek conectin Nevwoek.exe
X
Added by the Troj/GrayBrd-V Trojan.
New Folder New Folder.exe
X
Added by the W32/VB-EAS worm.
newname newname2.exe
X
Added by the Troj/Drsmartl-V Trojan.
newname newname2.exe
X
Added by the Troj/Drsmartl-V Trojan.
newname newname4.exe
X
Added by the Troj/Drsmartl-V Trojan.
Newsalrt NEWSALRT.EXE
N
MSNBC News system tray utility to alert you to new news
Newsgroup lptt01 newsgroup.exe
X
Variant of the RapidBlaster parasite (in a "newsgroup" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Ra ... Read More
Newsgroup ml097e newsgroup.exe
X
Variant of the RapidBlaster parasite (in a "newsgroup" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Ra ... Read More
NewsUpd newsupd.exe
N
For Creative Soundblaster Live! series soundcards. System tray application for News updates. Available via Start -> Programs. Also spyware - see here. ... Read More
NewtonKnowsUpd NewtKnow.exe ...NewtnUpd.dll, runkey
X
NewtonKnow hijacker
newupdate newupdate.sys
X
Added by the Troj/Hupigo-AW Trojan.
Nex nex.exe
X
Added by the Troj/Agent-FPQ Trojan.
nexkaqf nexkaqf.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
NFM Service NPDOR9x.exe
U
Appears in startup if you have chosen to participate in on survey by NPD Online Research. Required for the survey to work correctly. Otherwise not re ... Read More
Nfpt Microsoft Config nfdtrknm.exe
X
Added by Rbot variant. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
NGClient ngctw32.exe
U
Symantec Ghost Server software - needed for a "a Ghost multicast" (transfer images to multiple machines). Can be launched manually ... Read More
ngpw36 ngpw36.exe
X
AdBlaster adware variant
NGServer ngserver.exe
N
Symantec/Norton Ghost Console service
NGTray ngtray.exe
Y
Added by the Symantec Ghost. If you are running the ghost console on a server on your network then this process will have been installed as part of th ... Read More
ngwstxfd ngwstxfd.dll
X
Identified as a variant of the VideoAccessCodec adware.
NICCONFIGSVC nicconfigsvc.exe
Y
Service for various Internal Network Cards made by Dell, Inc. Involved with the power management. ... Read More
NielsenOnline NielsenOnline.exe
U
This is software that monitors your Internet usage and offers surveys that are based on users online habits. The data that is monitored is supposedly ... Read More
night night.exe
X
Added by the Mal/VB-PM malware.
nikLaus nikLaus.exe
X
Added by the NIKLAS WORM!
Nikon Transfer Monitor NkMonitor.exe
U
Bundled with certain Nikon cameras, this program checks to see if the camera has been plugged into a USB port then opens a program to facilitate downl ... Read More
NInit NInit.exe
N
Norton Uninstall Deluxe. Monitors programs being installed and logs them for removing later. Available via Start -> Programs for manual logging - not ... Read More
ninsvc ninsvc.exe
X
Added by the W32/Akbot-AL worm and backdoor.
NiroFile Updated NiroFile.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NiroFilter Updated NiroFilter.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
nisdisa nisdisa.exe
X
Added by the Email-Worm.Zhelatin worm. Email-Worm.Zhelatin normally received as an email attachment; may consist of a rootkit, a peer-to-peer client, ... Read More
nisserv NISSERV.EXE
Y
Norton Personal Firewall
NisSrv NisSrv.exe
Y
MSE Network Inspection System driver for Microsoft Security Essentials.
Nisum NISUM.EXE
Y
Norton Personal Firewall
nisvcloc niSvcLoc.exe
U
Related to National Instruments Corp. LabView ... Read More
NITE niteaim.exe
X
Added by the W32.Opanki.C AIM worm and IRC downloader.
niu niu.exe
X
Added by the W32.SillyFDC.BCS removable media worm. W32.SillyFDC.BCS is a worm that spreads by copying itself to removable drives. ... Read More
NIW NIW.exe
X
Added by the Troj/Lewor-U Trojan.
NJG40 NJG40.EXE
X
Added by the BANCOS.D TROJAN!
NJIL njil.exe
X
Added by the Troj/Delf-ELF Trojan.
NK45 file system driver nkcfg.sys
X
Added by the TSPY_HAXSPY.AD rootkit.
nkunpack nkunpack.dll
X
Added by the TSPY_HAXSPY.AD Trojan. This infection utilizes the nkcfg.sys rootkit in order to hide its components. ... Read More
NkvMon.exe NkvMon.exe
N
Nikon View 5 - for transferring pictures from Nikon digital cameras
NkVwMon.exe NkVwMon.exe
N
Nikon View - for transferring pictures from Nikon digital cameras
nldr32 NonYou.exe
X
Added by the W32/Saros-A P2P worm.
NLS Monitor nlsmon.exe
X
Added by the W32/Rbot-AXJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
nmapp nmapp.exe
N
This is the main executable for Network Magic. Network magic helps home network users quickly solve network related problems as well as configure netw ... Read More
NMBgMonitor.exe NMBgMonitor.exe
X
Added by the Troj/Bravo-G Trojan.
nmctxth nmctxth.exe
U
Part of Network Magic. Network magic helps home network users quickly solve network related problems as well as configure network related services. ... Read More
NMIndexingService NMIndexingService.exe
U
Service used by Ahead Nero to index the media files on your computer into an internal database. This index can then be used to quickly find your med ... Read More
NMSAccessU NMSAccessU.exe
Y
Service used by various CD/DVD Drive vendors and software for interacting with the installed CD/DVD drive. ... Read More
NMSSvc NMSSVC.EXE
?
NIC Management Service - diagnostics program for Intel Pro family network cards
NMSVC nmSvc.exe
Y
Covenant Eyes -†surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you call ... Read More
nMTaskBarService nMtsk.exe
?
Taskbar control for ISDN NetMod modem. Sorry, I dont know whether or not it is required. Unknown if this is a required item for startup. ... Read More
nMtskBar Service nMtsk.exe
?
Taskbar control for ISDN NetMod modem. Sorry, I dont know whether or not it is required. Unknown if this is a required item for startup. ... Read More
nnll nnll.exe
U
Net Nanny internet filter ... Read More
nnmgr nnmgr.exe
X
Added by the Adware.FFToolBar adware toolbar.
nnqcouu nnqcouu.exe
X
NNServ nnrun.exe
X
Added by the New.net adware.
NNSvc nnsvc.exe
U
NetNanny internet filter
NoAds NoAds.exe
U
Blocks advertisement banners in Internet Explorer
NoAdware NoAdware.exe
U
NoAdware Adware/Spyware remover - initially considerered a "rogue" program - see here . Has since apparently mended its ways: see note ... Read More
noadware3 NoAdware3.exe
U
NoAdware Adware/Spyware remover - initially considerered a "rogue" program - see here. Has since apparently mended its ways: see note ... Read More
noadware4 NoAdware4.exe
U
NoAdware Adware/Spyware remover - initially considerered a "rogue" program - see here . Has since apparently mended its ways: see note ... Read More
nobicyt Service Nobicyt.exe
X
Identified as a variant of the Backdoor:Win32/Refpron.C malware.
NOD AV service nodantivir.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
Nod23 Service nod23.exe
X
Added by the W32/Rbot-GMK worm and IRC backdoor.
Nod29 Service nodwr.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
nod32 nodqq.exe
X
Added by the W32/Autorun-BBV removable media worm.
Nod32 Free antivirus nod32krn.exe
X
Added by the W32/Rbot-AAO WORM/IRC backdoor trogan!
NOD32 Kernel Service nod32krn.exe
Y
Required service for ESET NOD32 antivirus. This file can also be found in the %ProgramFiles%\Eset\nod32krn.exe folder. ... Read More
Nod32 Service nod32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Nod32 Service nod64.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Nod32 Service n0m.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Nod32 Service NZ.exe
X
Added by the Troj/Rbot-GUK worm and IRC backdoor.
Nod32 Service nod6.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Nod32CC nod32cc.exe
U
Control Center part of Eset's NOD32 virus-scanner. Leave this enabled if you want to update your virus data files via the click of a button ... Read More
NOD32kernel Nod32krn.exe
Y
Nod32 Antivirus Version 2
nod32kui nod32kui.exe
Y
Nod32 Antivirus Version 2
Nod3d2 Free antivirus N0D32KRN.EXE
X
Added by the W32/Rbot-ABQ worm.
Nod3g2 Service nod6dr4.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NodeMnger Nodemngr.exe
?
Part of the Dell OpenManage Client installation - to allow Dell representatives to remote logon? ... Read More
NoDNS NoDNS.exe
X
Identified as a variant of the Trojan.Agent.AHBF malware.
nodsos nodabc.exe
X
Added by the Troj/PWS-BLE password-stealing Trojan.
NOFIIN.EXE NOFIIN.EXE
X
Added by the Troj/Haxdoor-DP Trojan.
Nokia nsu_ui_client.exe
X
Added by the Troj/Banker-FAQ information stealing Trojan for online banks.
Nokia Check nokiacheck.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Nokia Connection Monitor NclConf.exe
N
Monitors the infrared port, the serial ports and the Bluetooth for a Nokia phone connection. It is installed by the Nokia PC Suite (and Nokia PC Conne ... Read More
Nokia Tray Application NclTray.exe
U
Nokia PC Suite 5 - "A collection of powerful tools that you can use to manage your phone features and data." Synchronize the phone with, for example O ... Read More
NokKernel install Nok_install.exe
U
Added by the Spyware.NokKernel surveillance software. This software should be uninstalled if found on your computer without your knowledge. ... Read More
NomdCheck nomdchek.exe
N
Part of Intel's Native Audio
nomtray nomtray.exe
U
System Tray access to NetMotion Wireless options - including connectivity status (see here) ... Read More
nopctrl nopctrl.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
nopzet nopzet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
Nord NORDSYS.EXE
X
Added by the WORM_NUWAR.PO worm.
Norman NJeeves Njeeves.exe
Y
Part of Norman Antivirus.
Norman Scanner Engine Service NSESVC.EXE
Y
Part of real-time scanning engine for Norman Antivirus.
Norman Virus Control on-access component nvcoas.exe
Y
Part of real-time scanning engine for Norman Antivirus.
Norman Virus Control Scheduler Nvcsched.exe
Y
Scheduling service for for Norman Antivirus.
Norman Worl System Ability nwcss32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Norman's Very Own supplY of resources nvoy.exe
Y
Part of Norman Antivirus.
Nortan Anti Virus nava32.exe
X
Added by Backdoor.FTP_Ana.C. This infections listens on TCP port 666.
NortE Antivirus norten.exe
X
Added by the W32/Rbot-AFFworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
NortE Antivirus norte.exe
X
Added by the W32/Rbot-AFE worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
norten Software Intrenet norten.pif
X
Added by the W32/Rbot-AWA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
norton norton.exe
X
Added by the W32/Ahker-D mass-mailing worm.
Norton Antiviral Scanner navscnr.exe
X
Added by the W32/Delbot-K worm and IRC backdoor.
Norton Antivirus nortonav.exe
X
Added by the W32/Rbot-AYE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Norton AntiVirus Auto Protect Service navapsvc.exe
Y
This service is used by Norton Antivirus to run in the background and detect when any files that are infected with malware are stopped from running. ... Read More
Norton AntiVirus Sys NAVsys32.exe
X
Added by a variant of the WOOTBOT WORM!
Norton Antivirus Updater nortonav.exe
X
Added by the W32/Delbot-T worm and IRC backdoor. W32/Delbot-T spreads to other network computers by scanning network shares for weak passwords and by ... Read More
Norton Auto Protect nava.exe
X
Added by an unidentified WORM or TROJAN!
Norton Auto-Protect navapw32.exe
Y
Norton Anti-Virus's background scanning process
Norton AutoProtect navprot32.exe
X
Added by the W32/Rbot-UX worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
Norton Disk Doctor Ndd32.exe
N
Norton Disk Doctor from Norton Utilities. Automatically runs at start-up, checking for disk errors. Better than ScanDisk but can be started manually v ... Read More
Norton GProtect ngrfn.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Norton Guard 32 ntguard32.exe
X
Added by a variant of the RBOT WORM!
Norton Navigator Loader nnloader.exe
N
An older Norton utility for file management under Windows 95. More information here ... Read More
Norton Personal Firewall npmsysnt.exe
X
Added by the W32/Rbot-TY WORM! File is found in the Windows system folder.
Norton Personal Firewall npfw32.exe
X
Added by the W32/RBOT-UQ WORM!
Norton Personal Firewall npmsys.exe
X
Added by the W32/Rbot-ALO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Thi ... Read More
Norton Personal Firewall npfw.exe
X
Added by the W32/Rbot-UI worm. This infection also has backdoor capabilities via IRC servers, keystroke logging, and cd key harvesting. ... Read More
Norton Program Scheduler nsched32.exe
U
Installed on a Windows system where the Windows Task Scheduler isn't used as part of the OS (Win95, WinNT(?), Win2K(?)) to schedule automatic tasks su ... Read More
Norton Program Scheduler NPSsvc.exe
U
Installed on a Windows system where the Windows Task Scheduler isn't used as part of the OS (Win95, WinNT(?), Win2K(?)) to schedule automatic tasks su ... Read More
Norton Program Scheduler Event Checker npscheck.exe
?
Part of Norton Anti-Virus. What does it do? Apparently it can safely be disabled without causing problems. Can also be listed as NPS Event Checker ... Read More
Norton Protect npprotect.exe
X
The WORM/backdoor W32/Rbot-WW will add this to the Windows system folder.
Norton Service Process navapvc.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM!
Norton SpySweeper AutoUpdate navsw.exe
X
Added by the FORBOT-AS WORM!
Norton Swap Cleaner nortonswap.exe
X
Added by the W32/Rbot-MH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Norton Unerase Protection NPROTECT.EXE
Y
Related to Symantec's file protection program. This program allows you to restore deleted files at a later date. ... Read More
norton updater navupdtr.exe
X
Added by the SDBOT.AXV WORM! ... Read More
Norton Updater NortonUpdate.exe
X
Added by an unidentified WORM or TROJAN!
Norton Wizzard nwiz.exe
X
Added by the GAOBOT.ZX or GAOBOT.ADV WORMS! Note - this is not the valid nVidia application that shares the same name ... Read More
norton32 norton32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
NortonAV norton_antivirus.exe
X
Added by the NETJOE TROJAN! Note - this is not the legitimate Symantec AV program ... Read More
nortonp nortonp.exe
X
Added by the Troj/JD-A password-stealing Trojan.
noskrnl noskrnl.exe
X
Added by the Trojan.Peacomm.D Trojan. Trojan.Peacomm.D is a Trojan horse that gathers system information and email addresses from the compromised comp ... Read More
noskrnl noskrnl.sys
X
Added by the Trojan.Peacomm.D rootkit. Trojan.Peacomm.D is a Trojan horse that gathers system information and email addresses from the compromised com ... Read More
NotebookHardwareControl nhc.exe
U
Added by the Notebook Hardware Control hardware management software for various notebooks. ... Read More
NotebookManager nbm.exe
?
Associated with Acer notebook PCs. What does it do and is it required?
Notepad ntoepad.exe
X
Added by the W32/Delbot-AK worm and IRC backdoor.
NOTEPAD NOTEPAD.exe
X
Added by the W32/Sdbot-DHU worm and IRC backdoor.
notepad notepad.dll
X
Identified as a variant of the Trojan:Win32/Opachki.A malware. Please note that c:\Windows\System32\rundll32.exe is a legitimate program and should no ... Read More
notepad ntload.dll
X
Identified as a variant of the Trojan:Win32/Opachki.A malware. Please note that c:\Windows\System32\rundll32.exe is a legitimate program and should no ... Read More
Notepad lptt01 notepad.exe
X
Variant of the RapidBlaster parasite (in a "nvd32" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
Notepad ml097e notepad.exe
X
Variant of the RapidBlaster parasite (in a "nvd32" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
notes notes.exe
X
Added by a variant of the Rbot worm. This worm, when started, connects to IRC servers where it sits in a desginated channel waiting for commands from ... Read More
notes notepaad.exe
X
Added by the RBOT.BME WORM! ... Read More
Notification Utility notify.exe
X
Added by the Trojan.Muvipaz Trojan.
Notmad Manager notmgr.exe
U
Notmad Manager is used to integrate your Creative Labs Nomad MP3 player into Windows Explorer and other applications. ... Read More
NovaBackup * Tray Control NbkCtrl.exe
U
Scheduling engine of NovaSTOR Backup Service. Only required if scheduling is enabled and wanted - see here. * represents the version number ... Read More
NovaPortal Single User Service NPSU.exe
?
??
Novell Application Launcher nalntsrv.exe
Y
Part of the Novell client for Windows. Found in the C:\Program Files\Novell\ZENworks folder. ... Read More
Novell WebClient Service nvicli.exe
X
Added by the Troj/Bckdr-LEM backdoor Trojan.
novsvida.exe novsvida.exe
X
Identified by Panda antivirus as the Trj/Agent.FOB Trojan.
npf value NPFMONTR.exe
X
Added by a variant of the W32.SPYBOT WORM! ... Read More
NPF Value NPFMONTR32.exe
X
Added by the W32/Rbot-BBC worm and IRC backdoor.
NPFMonitor NPFMntor.exe
?
Norton AntiVirus Firewall Install Monitor. What does it do and is it required?
NPFValue NPFMONTR.exe
X
Added by the W32/Rbot-GWZ worm and IRC backdoor.
NPROTECT nprotect.exe
U
Norton Protected Recycle Bin from Norton Utilities. Adds an extra layer of safety before you remove deleted files from the Recycled Bin. Can be listed ... Read More
NPROTECT NPROTECT.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
NPS Event Checker npscheck.exe
?
Part of Norton Anti-Virus. What does it do? Apparently it can safely be disabled without causing problems. Can also be listed as Norton Program Schedu ... Read More
nqaplwj nqaplwj.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
NS ns.exe
X
Added by the AGOBOT-HS WORM!
NSCheck NSCHECK.EXE
X
nscntrl nscntrl.exe
X
Adult content dialler
nsdcmd services nsdcmdav.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM! ... Read More
nsdcmd vid process nsdcmdwin.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM! ... Read More
nsdlua nsdlua.exe
X
All-In-One Telcom - adult content dialler
nsdriver nssys32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
nse nse.exe
X
Added by the AGOBOT-ML WORM!
Nsengine Nsengine.exe
U
Scheduling engine of NovaSTOR Backup Service. Only required if scheduling is enabled and wanted - see here ... Read More
nservice nservice.exe
X
Added by the W32/Agobot-AHR worm and IRC backdoor.
NSLauncher NSLauncher.exe
N
Added by the Nokia PC Suite software. This program detects when you connect your Nokia devices and then automatically launches the program. ... Read More
NSpackk nSpackk.exe
X
Added by the Troj/Bancos-AVO Trojan. This Trojan attempts to steal banking information. ... Read More
nstat netstat.exe
X
Adult content dialler
NSupdate NSupdate.exe
X
Added by the Dial/Laet-B premium rate dialer.
NSUService NSUService.exe
Y
A network utility for Sony laptops.
Nsv nsvsvc.exe
X
Unidentified adware
nsvcin n20050308.exe
X
adware, probably VX2/Look2Me related
Nsvdr nsvdr.exe
X
Adult content dialler
nsys nsys.exe
U
NetSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
nsys32 nsys32.exe
X
Added by the W32/Agobot-SU worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
NT Kernel Patch ntkrnlpt.exe
N
FaxServe network fax software
nt microsoft svcd ntvsvcd.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
NT Service NTOKSRNL.EXE
X
Added by the W32/Rbot-AAG WORM/IRC backdoor Trojan.
NT Services ntsvc.exe
X
Added by the AGOBOT.VJ WORM!
Nt System Protocol ntsystem.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NT Video API32 NTAPI32.exe
X
Added by the W32/Rbot-FW trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
NT-Virtual Device Manager ntvdmn.exe
X
Added by the W32/Sdbot-AAA worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
NTAuth ntsvc.ocx
X
Added by the Troj/Taladra-F backdoor Trojan.
ntcommlib3 NTCommLib3.exe
X
Admess adware variant ... Read More
ntddetect ntddetect.exe
X
Added by the Troj/Agent-CU TROJAN/backdoor!
NTdhcp NTdhcp.exe
X
Added by the Troj/QQRob-A. It will kill processes and disable services.
ntdll ntdll.exe
X
Added by the BIONET.404 TROJAN!
ntechin n20050308.exe
X
adware, probably VX2/Look2Me related
NTFS Crypto Technology ntfscrypt.exe
X
Added by the W32/Spybot-NC worm and IRC backdoor.
NTFS File Location Service ntfsloc.exe
X
Added by the W32/Sdbot-CSG worm and IRC backdoor. W32/Sdbot-CSG spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
NTFS16 ntfs16.exe
X
Added by the RBOT-LY WORM!
NTFSCLUP NTFSCLUP.EXE
Y
Part of ConfigSafe- "checks if an ntfssos restore has been performed since it was last run. It exits immediately after running. 99+% of the time it wi ... Read More
ntfsmonitorpro ntfs64.exe
X
W32/Forbot-EB is a network worm with backdoor Trojan functionality. Located in the Windows system directory. ... Read More
ntfyapp ntfyapp.exe
X
Added by the Storm worm. The Storm worm is a network-aware worm that attempts to replicate across the existing network(s) ... Read More
ntiMUI ntiMUI.exe
?
Related to NTI CD & DVD Maker 7.
ntio922 ntio922.sys
X
Identified as a variant of the RKIT/Agent.EZ rootkit.
NTIOLib_1_0_2 NTIOLib_X64.sys
Y
Driver that unlocks CPU cores on certain MSI motherboards.
ntldr ntldr.exe
X
Browser hijacker to search-control.com (TrojanDropper.Win32.Small.ig). In addition to Registry changes found by HijackThis, also creates the following ... Read More
ntldr.sys ntldr.sys
X
Added by the Troj/SpamToo-AQ Trojan.
ntload v0.1 ntload.sys
X
Identified as a variant of the Trojan.Ntrootkit.AL rootkit.
ntmsevt ntmsevt.exe
X
Added by the Troj/Stoped-B downloading Trojan.
ntmssvc ntms.dll
X
Added by the Backdoor.Fuwudoor backdoor.
ntndis ntndis.sys
X
Added by the Troj/RKProc-F rootkit.
nton.exe nton.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ntoskrnl ntoskrnl.exe
X
Added by the W32/Zaap-A worm.
ntosnh.sys ntosnh.sys
X
Added by the Troj/Dload-Z Trojan.
ntoss.sys ntoss.sys
X
Added by the Troj/Dload-Z Trojan.
ntq ntq.exe
X
Added by the W32/Stration-AC worm.
nTrayFw nTrayFw.exe
?
System tray icon for the Nvidia Firewall. Is this necessary to run at startup?
NTRedirect NTRedirect.dll
X
Added by the Babylon and Delta Search adware programs.
NTrtc ntrtc.exe
N
Dell year 2000 tool to deal with non-standard applications. Only required on older Dell PCs that may need this support - see here ... Read More
NTSF MICROSOFT SYSTEM ntsf.exe
X
An Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
ntsf microsoft system ntssf.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
NTSF MICROSOFT SYSTEM ntsfd.exe
X
Added by the W32/Rbot-BAP worm and IRC backdoor.
ntsmod ntsmod.exe
X
Unknown Adware!
NTsocket NoeWinnt.exe
X
Added by the ATAKA-E TROJAN!
NTSpool NTSpool.exe
X
Identified as a variant of the Backdoor.Bifrose backdoor.
NTsrv.exe NTsrv.exe
X
Added by a variant of the SERVU-O TROJAN!
Ntsysv ntsysv.exe
X
Added by the Troj/Mifeng-E Trojan.
nTune nTune.exe
U
nVidia nTune - mot
herboard monitoring and overclocking utility for nVidia nForce chipset based motherboards ... Read More
ntupd32 ntupd32.exe
X
See_Here ... Read More
ntuser ntuser.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Small.hpb malware.
ntvbn ntvbn.exe
X
Trojan related to rogue software.
NTVDM NTVDM.EXE
U
Windows NT Virtual DOS Machine (NTVDM) for running 16-bit tasks on the 32-bit OS's (Windows NT, 2K and XP). Required if hardware on a machine with the ... Read More
NTVDM ntvdm.exe
X
Added by the W32/Sdbot-DFQ worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\ntvdm.exe file. ... Read More
ntvdmd ntvdmd.exe
X
Adware downloader - also detected as the TROJ/DLOADER-YP TROJAN! ... Read More
ntvdscm ntvdscm.exe
X
Added by the SCKEYLOG.O TROJAN!
ntxp2 ntxp2.exe
X
Added by the Troj/VB-API Trojan.
NUAgentInstallPath NU_Install.exe
U
Added by the Spyware.ChilyEMon surveillance software. This software should be removed if found on your computer without your knowledge. ... Read More
nuclabdll nuclabdll.dll
X
Identified as Trojan.PWS.Egold.
nuclabdll nuclabdll.dll
X
Added by a variant of the Goldun.Fam Trojan. This infection utilizes the nuclab.sys rootkit. ... Read More
numlock.vbs numlock.vbs
U
Code example from Microsoft that allows you set the state of the Number Lock key on your keyboard when Windows starts. This startup uses no resources ... Read More
NUSB3MON nusb3mon.exe
N
Monitors whether or not devices are inserted into the motherboard's USB 3.0 port. ... Read More
NuTCSetupEnviron ncoeenv.exe
Y
Used by the MKS Toolkit for Enterprise Developers product. NuTCracker is a Unix runtime environment for Windows, so disabling this would be unwise if ... Read More
NvagNT nvagNT.exe
X
Added by the W32/Agobot-RV trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. This infecti ... Read More
nvc Win32 nvcvc.exe
X
Added by the W32/Rbot-ADD worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
NvCCCpl NvCCCpl.exe
X
Added by the Troj/Nogata-A backdoor Trojan.
NvCCpl NvCCpl.exe
X
Added by the W32/Chilin-A worm.
nvcoi nvcoi.exe
X
Identified as a variant of the Trojan.Downloader.Matcash malware.
NVCOM NVCOM.exe
X
Added by the W32/Agobot-SB worm.
NvCpl NvCpl.EXE
X
Added by the YANZ.B WORM!
NvCpl NvCpl.EXE
X
Added by the YANZ.B WORM!
NvCplD ntcpl.exe
X
Switch adult content dialler
nvcpldaemon NvStartup
U
Intializes the clock and memory settings on nVidia based graphics cards. Enable if you overclock your card ... Read More
NvCplDeamon nvdisp.exe
X
Added by the Troj/PeepVie-I trojan.
NvCplDmn NAVSVC.EXE
X
Added by an unidentified VIRUS, WORM or TROJAN!
nvcpll nvcpll.exe
X
Added by the Troj/Bancban-PF password-stealing Trojan for online banks. If you are infected with this Trojan you should immediately change all your o ... Read More
NvCplScan nvsc32.exe
X
Added by a variant of the IRC.BOT TROJAN!
nvctrl.exe nvctrl.exe
X
Added by the Troj/Zlob-BC downloader Trojan. This infection installs the following files:

mscornet.exe (detected as Troj/Zlob-BC)
... Read More
nvd32 lptt01 nvd32.exe
X
Variant of the RapidBlaster parasite (in a "nvd32" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
nvd32 ml097e nvd32.exe
X
Variant of the RapidBlaster parasite (in a "nvd32" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
Nvdia Native Rendering nvnatv.sys
X
Added by a variant of the Goldun.Fam rootkit.
Nvid32 Nvid32.exe
X
Added by the GEMA TROJAN!
Nvidex32 Nvidex32.exe
X
Added by the GEMA TROJAN!
nvidGUIv2 nvidGUIv.exe
X
Added by the W32/Tilebot-DK worm and IRC backdoor. This infection will also create a new service in order to load the rootkit file c:\windows\REMON.SY ... Read More
nVidia Application Drivers nvidiav32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NVIDIA Compatible Windows Miniport Driver nvmini.sys
X
Added by the PE_CORELINK.C-O rootkit.
Nvidia Control Center NvTaskbarInit.exe
X
Added by the Troj/Hiloti-AY Trojan.
nvidia control daemon nksvc32.exe
X
Added by the W32/AGOBOT-OV WORM! ... Read More
Nvidia Control Panel ncsvc32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
nVidia Display Driver nvsvc64.exe
X
Added by the W32/IRCBot-YK worm and IRC backdoor.
NVIDIA Display Driver Service nvsvc32.exe
Y
Part of the display driver for Nvidia cards.
NVIDIA Display Driver Service nvvsvc.exe
Y
Provides system and desktop level support to the NVIDIA display driver
nVidia Display Drivers (x86) nvsys86.exe
X
Unknown malware. If infected it will create a lmhosts file on your computer that blocks you from reaching a variety of antimalware and computer help ... Read More
Nvidia Driver Help nvsvc32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NVIDIA driver Helper Service nvsvc32.exe
Y
Part of the display driver for Nvidia cards.
NVIDIA Driver Helper Service nvvsvc.exe
Y
Part of the display driver for Nvidia cards.
NVIDIA driver monitor nvsvc32.exe
X
Unknown malware.
nVidia Drivers nVidiaDrvers.exe
X
Added by the W32/Sdbot-AFX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Nvidia Graphic Displacement nvideogui.exe
X
Added by the W32/Sdbot.worm.gen.w!64512 worm and IRC backdoor. This infection will also create a new service in order to load the rootkit file c:\wind ... Read More
NVIDIA nForce APU1 Utilities NVATray.exe
N
nVidia's nForce Audio Processing Unit (APU)- "provides 3D positional audio and DirectX 8.0 compatibility, and encodes and decodes Dolby Digital 5.1 au ... Read More
nvidia ntune nTune.exe
U
nVidia nTune - motherboard monitoring and overclocking utility for nVidia nForce chipset based motherboards ... Read More
NVIDIA nTune nTuneCmd.exe
U
nTune allows a user to tweak the settings of Nvidia based motherboards from within Windows and save these settings as individual profiles that can loa ... Read More
nvidia remote control panel Nvarem.exe
?
NVIDIA graphics card related - what does it do and is it required? ... Read More
NVIDIA Stereoscopic 3D Driver Service nvSCPAPISvr.exe
Y
Provides system support for NVIDIA Stereoscopic 3D driver.
nVidia System Drivers nvsys32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
nvidia system utility NVSystemUtility.exe
U
The NVidia_System_Utility lets you adjust bus speeds, hardware voltages, memory controller timings, and fan speed as well as additional settings to i ... Read More
NVidia TLayer gateway A2 nvmapi.sys
X
Added by a variant of the Goldun.Fam rootkit.
NVidia XTLayer gateway nvnati.sys
X
Added by a variant of the Goldun.Fam rootkit.
Nvidia32 nvidia32.exe
X
CoolWebSearch parasite variant
nvidia: nvidia.exe
X
Added by the W32.Kueight worm. W32.Kueight is a worm that spreads by copying itself to removable drives and downloads other malicious files on to the ... Read More
NvidiaDisplayService nvdsc.exe
X
Added by the W32/Rbot-GWX worm and IRC backdoor.
nvidll32 nvidll32.exe
X
W32/Rbot-XK uses this file to run automatically at logon, providing a backdoor for exploitation by a remote attacker using an IRC channel. ... Read More
nviload32 nviload32.exe
X
Added by W32/Sdbot-VT, a WORM/backdoor. The IRC network is used for unauthorized remote access. ... Read More
nvirundll nvirundll.exe
X
Added by the W32.SPYBOT.NPS WORM! ... Read More
nvjxue nvjxue.exe
X
Added by the W32/Eyeveg-J worm.
NVmax NVmax.exe
Y
NVmax is a old tweaking utility for NVidia graphics cards. In the startup list if the user chooses to overclock their card ... Read More
NVMixerTray NVMixerTray.exe
N
System Tray access to audio controls from nVidia's motherboard ForceWare software ... Read More
nvmsgdwn NVMSGDWN.EXE
X
Added by the Troj/Graber-D downloader Trojan.
nvpatch napatch.exe
X
Added by the W32/Sasser-F worm.
NVRaidService nvraidservice.exe
Y
Vidia NVRaid - hard disk striping/mirroring utility for increased performance and reliability. Required if you have a RAID setup ... Read More
NVRT nvrt.exe
N
NVRefreshTool is a utility that will automatically detect the maximum refresh rate at each resolution that your monitor supports ... Read More
NVRTClk NVRTClk.exe
?
Related to a Gigabyte video card. What does it do, and is it required?
nvscv32 ncscv32.exe
X
Added by the W32/Fujacks-L backdoor virus.
nvsv32.exe nvsv32.exe
X
Added by the FORBOT-DI WORM!
nvsv32.exe nvsv33.exe
X
Added by the W32/Forbot-DS network worm. When this infection starts it connects to a remote IRC server where it waits for remote commands to execute. ... Read More
NvSvc nvsvc.exe
N
NVIDIA Driver Helper Service - installed when you change from the WDM drivers to nVidia's latest versions but not requied. Extreme shutdown delays can ... Read More
nvsvc nvsvc.exe
X
Added by the Troj/Banker-HQ Trojan.
nvsvc16 nvsvc16.exe
U
Added by the Spyware.MySuperSpy surveillance software. If this software is installed without your knowledge, it should be removed. ... Read More
nvsvca32 nvsvca32.exe
X
Adware - recognized by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.is ... Read More
NVSystem32 nvscv32.exe
X
Added by the AGOBOT-NO WORM!
nvsystl0 nvsystl0.dll
X
Added by a variant of the Goldun.Fam Trojan. This infection utilizes the nvsystl3.sys rootkit to hide itself. ... Read More
Nvtmru nvtmru.exe
U
Part of the NVIDIA GeForce Experience.
nvupdater nwiz32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
NvVideoCenter NvVid.exe
X
Added by the W32.Ovagur virus. W32.Ovagur is a virus that infects .exe files in removable disks and network mapped drives. ... Read More
NvVideoCenter NvVid.sys
X
Added by the W32.Ovagur virus. This file acts a rootkit to hide the rest of the infection's files. ... Read More
nwisse nwisse.exe
X
Added by the Troj/Fusion-B keylogging backdoor Trojan.
nwiz nwiz.exe
N
Associated with the newer versions of nVidia graphics cards drivers. Allows you to immensely improve desktop layouts by setting preferences and optim ... Read More
nwiz32 nwiz32.exe
X
Added by the Troj/Sinbank-A Troja.
nwizs nwizs.exe
X
Added by the W32.Queshare worm. W32.Queshare is a worm that spreads through removable drives and instant messaging shared folders. It may also downloa ... Read More
Nwpopup Nwpopup.exe
Y
Broadcast message handler part of Novell Netware that displays server, printer and other messages ... Read More
nwprovau nwprovau.dll
Y
Client Service for NetWare
nwrecmsg nwrecmsg.exe
U
Broadcast message handler part of Novell Netware that displays server, printer and other messages - can cause crashes ... Read More
NWTRAY nwtray.exe
Y
Novell Netware. Displays the red "N" tray icon which can be disabled (by right-click on the icon) but is also needed by the client ... Read More
NZ01 NZ01.exe
X
Added by the Troj/Scar-K Trojan.
nzqtegh nzqtegh.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
Oddysee ntoskrnl.exe:kernel
X
Added by the W32.Focelto.A rootkit. This rootkit is a Alternate Data Stream file which requires certain tools to remove it. The ntoskrnl.exe it is at ... Read More
Office Monitor nvsvc86.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
OfficeScanNT RealTime Scan ntrtscan.exe
Y
Part of the Trend Micro OfficeScan product. Should not be disabled.
OfficeScanNT RealTime Scan ntrtscan.exe
Y
Real time scanner for Trend Micro's OfficeScan security suite.
operations typhoon rising registration NOVG.EXE
N
Joint_Operations registration reminder ... Read More
Optimum Online Netsurf.exe
X
An Optimum Online application that is used to display advertisements.
OS Boot Configuration nspsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Osa32 NTOSA32.exe
X
Added by the ANIG WORM!
Paradyne ADSL Network Driver V2.3 netcfgx32.exe
X
Added by the Troj/Delf-EYS Trojan.
PCAlertDriver NTGLM7X.SYS
Y
Part of MSI's PC Alert. PC Alert detects system temperature, the status of voltage, fans and all other key motherboard components. If any problem occu ... Read More
pcmcia resource monitor nvp2pmon.exe
?
NVIDIA nForce P2P Driver - what does it do and is it required? ... Read More
piiserviceOE N/A
U
Spam Inspector (nee Postal Inspector) from The Giant Company or iHateSpam from Sunbelt Software - spam filter add-ons for OE ... Read More
PixelModule nvidcgui.exe
X
Added by the W32/Tilebot-GS worm and IRC backdoor. This infection also installs the rootkit file remon.sys. ... Read More
Pofatch nstrue.exe
X
Added by the RANDEX.Z WORM!
popuppers newpop63.exe
X
Popuppers adware variant ... Read More
Postfix patch ngfqes.exe
X
Added by the Troj/Sdbot-BX backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
PPA Virtial rendering nvsystl3.sys
X
Added by a variant of the Goldun.Fam rootkit.
Premeter nrpr.exe
X
NetRatings software by Opistat . "OpiStat measures Internet usage anonymously and surveys participants according to their profiles and online habits". ... Read More
Price Patrol neo.exe
N
Price Patrol by Half.com - internet shopping companion for finding the best on-line prices ... Read More
printers notiffy.dll
X
Added by the W32.Mubla.B worm.
prodigy1 newsystem25.dll
X
Added by the W32/IRCBot-XL worm and IRC backdoor.
protection Norton Internet Security.exe
X
Added by the W32.ELITPER.E WORM! ... Read More
Pure Networks Net2Go Service nmraapache.exe
U
Part of Network Magic's Net2Go service.

"Net2Go service gives users remote access to the shared files on all PCs in their home from an ... Read More
Pure Networks Network Magic Service nmsrvc.exe
U
Part of Network Magic. Network magic helps home network users quickly solve network related problems as well as configure network related services. ... Read More
qtime nrchk.exe
X
Premium rate adult content dialer
QTSvc navchk.exe
X
Premium rate adult content dialler
RDSound NokiaDriveUpdate.exe
X
Added by the Troj/Agent-UOU Trojan.
RealActive ntoscore.exe
X
Identified by Kaspersky Antivirus as a variant of the Virus.Win32.Virut.q malware. ... Read More
RealDownload Express npnzdad.exe
X
Advertising spyware
Recover N/A
N
Added during the installation of Comcast High Speed Internet software. During installation the system reboots and if the disk is removed a screen appe ... Read More
regtmlp N/A
?
??
Remote Help Session Manager ntsokele.exe
X
Added by the W32/Fujacks-AP worm.
Remote Protection File System NewName.BAT
X
Added by the W32/WinLose-A worm.
Remove me nmzbxdnzjsa.exe
X
Added by the Troj/Sdbot-SZ TROJAN/IRC backdoor to allow malicious access & control of the computer. ... Read More
Renova Nova.exe
X
Added by the W32/Levona-A worm. W32/Levona-A spreads to network shares and removable drives. ... Read More
rnaomflt naomf.exe
U
Naomi internet filtering software ... Read More
RPCall_REPCLIENT numlock.exe
X
Added by the Troj/Hasik-A Trojan.
rsync netsync.exe
X
Pops-stop.com parasite, a IEPageHelper/SafeSurfing adware variant
Rsystem nod32kul.exe
X
Unknown malware.
RTStartMute N/A
?
??
RunDll.exe navupdt2.exe
X
Added by the Troj/Banloa-BJN downloading Trojan.
rundll32 ntload.exe
X
Added by the Advanced Security Tool 2010 rogue anti-spyware program.
rundll32 ntdevice.exe
X
Added by the Troj/Agent-OUM Trojan.
RunNarrator Narrator.exe
U
Microsoft's Narrator program which is an accessibility program that reads the text on your screen to you via your speakers. ... Read More
rvde N/A
X
Related to li-speed****
Scan Fonts New Arial Kotim.exe
X
Added by the W32/VB-DZA worm.
scanner file utility NsCatCom.exe
Y
Kycocera network copier/printer/scanner process to dump scanned documents onto a workstation. ... Read More
ScanReg NPFMONTR.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ScanRegistry nsrvnt.exe
X
Added by the NERTE TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as nsrvnt.e ... Read More
scheduie nrchk.exe
X
Premium rate adult content dialer
schedulermgr navchk.exe
X
Premium rate adult material dialer
Security Accounts ntsasvc.exe
X
Added by the Troj/Bckdr-QNP backdoor Trojan.
securw Nctrup.exe
X
Added by the W32/Nopir-B WORM, which will delete all COM and MP3 files from the computer, and disable taskmanager, registry tools, and access to the ... Read More
SERV PacK2 nerx.exe
X
Added by the W32/Sdbot-ACP backdoor and IRC worm.
Server for NFS nfssvc.exe
X
Added by the Troj/ServU-FZ backdoor FTP program.
Server Network Debug NetDebug.exe
X
Added by the W32/VB-DOS worm.
sheduler nerocheck.exe
X
Added by the WIN32.TACTSLAY.B TROJAN! ... Read More
Shell2 New_Folder(1).exe
X
Added by the W32/SillyFD-C worm that spreads to removeable storage devices.
shell32 ntldrt.exe
X
Added by the W32/Jlok-A Microsoft Word document virus.
sittachasnahalbasya ntoskernel.exe
X
Added by the W32/Hansah-A worm.
SOFTinst N/A
Y
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue ... Read More
SoundTap Recorder nchssvad.sys
Y
Audio driver for audio chipset from Knowles.
spc_w nzspc.exe
N
NetZero Search Enhancement related ... Read More
Speed Disk service NOPDB.EXE
Y
Disk defragmenter bundled with Norton System Works.
Srv RPCrom NClienti386.exe
X
Added by the WATSOON.A TROJAN!
startkey navsys.exe
X
Identified as a variant of the Backdoor.Bifrose malware.
stubpath nerodll.exe
X
Added by the Troj/Bifrose-HY Trojan.
supernews12 newsd32.exe
X
A TROJAN/downloader variant adds the file.
svcshare nvscv32.exe
X
Added by the W32/Fujacks-J prepending virus. W32/Fujacks-J searches for files with HTML and ASP extensions and append code to them. These files are de ... Read More
svtcin n20050308.a.Stub.EXE
X
Added by Trojan.N20050308.Process TROJAN! Note: located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) ... Read More
Symantec Security Addon nvsvc.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM!
Symantec Security Routine Addon for Microsoft Windows navpxaw32.exe
X
Added by the AGOBOT-GJ TROJAN!
SynUSB Manager netsrv16.dll
X
Added by the Troj/Riler-O backdoor Trojan.
sysclx ntldrt.exe
X
Added by the W32/Jlok-A ... Read More
System nav32.exe
X
Added by the W32/Rbot-BHV worm and IRC backdoor.
System Document Application nmod.exe
X
Added by the SDBOT-ABB WORM!
System File Drivers nvsysvc32.exe
X
Added by the AGOBOT.WJ WORM!
System Information Manager Navcpe.exe
X
Added by the SDBOT-QB WORM!
System Manager ncvs32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Server Manager Ntsrvc.exe
X
Added by Backdoor.DarkSky.B. This infection listens on ports 5418 and 5419 awaiting commands. ... Read More
system23 notPad.exe
X
Added by the ESTEEMS.D TROJAN!
system32 NeT-BoT.exe
X
Added by the AGOBOT-LJ WORM!
SystemMap32 Netisp32.vbs
X
Added by the REDIST.C WORM!
SystemNetwork NETSERV.EXE
X
Added by the NETCONTROL VIRUS!
SystemService navchk.exe
X
Premium rate adult content dialler
systemservice nsserver.exe
U
NiceSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
systemStart Ntfs.exe
X
Added by the W32/Autorun-JM removable media worm.
SystemSv12 newmaxxsv234.exe
X
Added by the Troj/Tibs-TS Trojan.
SystemSv121 n2ewma1xxsv234.exe
X
Added by the Nuwar/Storm worm.
SystemUpdate Negdo.exe
X
Added by the W32/Culler-C worm that spreads via MSN Messenger.
SystemX nzm.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
TA_Start nqdsregp.exe
X
Added by a variant of the Zenosearch adware. Adware.ZenoSearch is an adware that displays pop-up ads based on searches the user performs on popular we ... Read More
TCP/IP NetBIOS netbios.exe
X
Identified as a IRC Backdoor.
TCP/IP Network Throttle netthrot.exe
X
Added by the W32/Tilebot-JO worm and IRC backdoor.
TDockNUndock N/A
?
Found on a Toshiba laptop - for use with a docking station?
test netservice.exe
X
Added by the Troj/Bckdr-QJQ backdoor Trojan.
TheMainStart N/A
?
??
Threaded ntsys32.exe
X
Added by the W32/Sdbot-MR worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
tpfnf2 notifyf2.dll
?
Installed with IBM Thinkpad and Lenovo laptops.
TSService NSSERVICE.EXE
?
??
tsvcin n20050308.EXE
X
adware, probably VX2/Look2Me related ... Read More
TWarmBay N/A
?
Found on a Toshiba laptop. Related to hotswap bay management?
TWBbtn N/A
?
Found on a Toshiba laptop
ujm nm32.exe
X
Added by the Troj/Iyus-K password stealing trojan. This infection steals usernames and passwords and sends them to the creator. If you have this inf ... Read More
UPSI_1.exe New_Folder(1).exe
X
Added by the W32/SillyFD-C worm that spreads to removeable storage devices.
uptolate nucle.exe
X
Identified as a variant of the Backdoor.Win32.Nucleroot.a malware.
USB2_04 nkv2.sys
X
Identified as a variant of the Rootkit.Win32.Agent.tj rootkit.
userinit ntos.exe
X
Added by the Troj/Dloadr-AWJ downloader Trojan.
UTILsInst N/A
Y
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue ... Read More
Video Multimedia Driver ndrives32.exe
X
Added by the RBOT-DK WORM!
Video Process netsvcs.exe
X
Added by the AGOBOT.LH WORM!
vtmesys netlprto.exe
X
Added by the W32/Rbot-GNA worm and IRC backdoor.
VxD Driver Initialization ntsvxd.exe
X
Added by the W32/Sdbot-LW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
WaveTop Receiver 1 N/A
N
WaveTop - "Get push content from TV without an Internet connection" - now possibly a defunct system in the US included as an optional part of WebTV in ... Read More
WaveTop Receiver 2 N/A
N
WaveTop - "Get push content from TV without an Internet connection" - now possibly a defunct system in the US included as an optional part of WebTV in ... Read More
WaveTop Upload Manager N/A
N
WaveTop - "Get push content from TV without an Internet connection" - now possibly a defunct system in the US included as an optional part of WebTV in ... Read More
Win Net Wks32 netwks32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Win Patch ntldr.exe
X
Added by the SDBOT-GS WORM!
win-xp nvsc32.exe
X
Added by the W32.Bropia.N WORM!
Win32 LanMgr netspool.exe
X
Added by the W32/Perin-A worm and IRC backdoor.
Win32 Notepad Services notepad32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Win32 nvc nvcva.exe
X
Added by the W32/Rbot-ABF. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are ... Read More
win32.trojan.downloader netstat2.exe
X
Added by the Trojan.RealSearch TROJAN! Note: located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) ... Read More
Win32load nscagent.exe
X
Identified by Avast as a variant of the Win32:Vupa malware.
Windows noper.exe
X
Unknown malware.
Windows .Net Manager netsvc.exe
X
Added by the Troj/Dloader-NY trojan.
Windows ARP Detectionc nvudlsp.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Audio Components nncsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Audio Panel nppsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Audio System nndsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Automatic Updater ntapi.exe
X
Added by the W32/Rbot-GTT worm and IRC backdoor.
windows autostart loader notepad32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Windows driver update nmsmtp32.exe
X
Added by the W32/Sdbot-JT worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Windows File System Frame ntframe.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Global Init ngpsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Internet Server ntdlr.exe
X
Added by the Troj/Feutel-CH Trojan. This infection also creates the files C:\Windows\ntdlr.dll and C:\Windows\ntdlr_Hook.DLL. ... Read More
Windows Log nvsvcd.exe
X
Added by the Troj/Polbot-D backdoor Trojan.
Windows Logon Service napi32.exe
X
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
Windows Media Powerpoint Helper NSPPTHLP.EXE
N
German software (comes with some Toshiba CD writers) that helps convert Powerpoint files to ASF (Streaming Media) files. Available via Start -> Progra ... Read More
Windows Media Upgrade NeUpgrade.exe
X
Identified as Backdoor.Win32.Rbot.bmf. This infection is a worm and IRC backdoor. ... Read More
Windows NB Service nbsrv.exe
X
Added by the W32/Tilebot-KK worm and IRC backdoor.
Windows Netlib Service netlib32.exe
X
Added by the W32/Tilebot-IG worm and IRC backdoor.
Windows Network Logon npesvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Network Session nspsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Networks netcog.exe
X
Added by the W32.Mytob.IA@mm worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows NT 32 ntlogin32.exe
X
Added by the RANDEX.BRD WORM!
Windows NT Login ntlogin32.exe
X
Added by the SDBOT.WG WORM!
Windows NT Net Service Monitor ntsvc.exe
X
Added by the W32/SdBot-DKY worm and IRC backdoor.
Windows NZDB Service nzbd.exe
X
Added by the W32/Sdbot-DGJ worm and IRC backdoor.
Windows Print Spooler NavAgent32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Windows Protected Storage npssvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Server Management Service netsvc.exe
X
Added by the W32/Tilebot-IF worm and IRC backdoor.
Windows Server Management Services navsvc.exe
X
Added by the W32/Rbot-GCH worm and IRC backdoor.
Windows Server Management Services navapsvc.exe
X
Added by the Troj/Rbot-GGW worm and IRC backdoor.
windows services NetworkDriver32.exe
X
Added by an unidentified WORM!
Windows Services NetworkDrivers.exe
X
Added by the W32/Sdbot-YO worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Services Ts nwdpqqoiwm.exe
X
Added by the W32/Rbot-GRV worm and IRC backdoor.
windows system nec.exe
X
Added by the W32/Mytob-L ... Read More
WINDOWS SYSTEM ninfoie.exe
X
Added by the W32.Mytob.EE@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows System nibie.exe
X
Added by the W32.Mytob.FO@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows System Configuration nether.exe
X
Added by the W32/Opanki-AB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows Update Nod32Av.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
windows update 64 nbupd64.exe
X
Added by a variant of the W32/FORBOT WORM! ... Read More
Windows Update.exe N/A
X
Homepage hijacker, see here
Windows Xp nortonguard.exe
X
Added by the W32/Mytob-DZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Zero Spooler nmvcs.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsUpdate Nzil.exe
X
Added by the W32/Culler-C worm that spreads via MSN Messenger.
WinIgon netlogon.exe
X
Added by the Backdoor.Armageddon backdoor.
Winlogon.exe N/A
X
CoolWebSearch parasite related - resets home page to an adult material site
WinNite niteaim.exe
X
Added by the W32.Opanki.B backdoor/worm.
WinSig NetXP.exe
X
Added by the BANKER-FN TROJAN!
winsock2 netsvr.exe
X
Added by the AGOBOT.LY WORM!
WinSocketComponent nthost.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Wkyo86 Nitip.exe
X
Added by the W32/Pitin-A networm worm.
WMBoot N/A
N
Associated with Logitech Wingman game controllers. Not required but what does it do? ... Read More
www.ppandora.com nsvc.exe
X
Added by the Troj/DDos-P flooding Trojan.
www.ppandora.com nsvc32.exe
X
Added by the Trojan.Panddos Trojan. Trojan.Panddos is a Trojan horse that performs Denial of Service attacks. ... Read More
Wxp4 Norton Update.exe
X
Added by the ERKEZ.D WORM!
xload32 netdd.exe
X
Added by the NETSPY TROJAN!
XmLdrLocation nvrcr32.dll
X
Added by the Spyware.Eblaster spyware. It also installs a file into %System%rmashlex.dll. ... Read More
XPnet NTXp.exe
X
Added by the Troj/Banker-AS TROJAN!
XTNDConnect PC - LtNts4 NtsAgnt.exe
U
Component of EasySync Pro
Ya Salam NancyAjram.exe
X
Added by the W32.Jalabed@mm mass-mailing worm.
Yahoo! Messengger neo32.exe
X
Added by the W32/Sohana-AK removable media worm.
[not used] Notify.exe
X
[not used] Nail.exe
X
This infection is a Abetterinternet adware variant. It is notoriously difficult to remove and is usually bundled with other malware that are hard to ... Read More
[not used] Navw32.exe
X
Added by the Troj/Agent-CG backdoor.
[not used] netsrv16.dll
X
Added by the Troj/Riler-O backdoor Trojan.
[not used] ntndis.exe
X
Added by the W32/Rbot-DPG worm and IRC backdoor.
[not used] nmst.exe
U
Added by the Spyware.NetMama surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
[random name] n?lookup.exe
X
[unknown] NTSRVCS.EXE
X
Added by the W32/SdBot-GJ worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
[Unknown] nclaby.sys
X
A variant of the Haxdoor rootkit.
[Various Names] newbreed.exe
X
Part of the Wareout infection as described here.
[Various Names] NsCplTray.exe
X
Part of the Wareout infection as described here.
[Various Names] new32.exe
X
Part of the Wareout infection as described here.
[Various Names] NSYSCPLSTR.exe
X
Part of the Wareout infection as described here.
[Various Names] NopeZ.exe
X
Part of the Wareout infection as described here.
[Various Names] nmdllw.exe
X
Part of the Wareout infection as described here.
[Various Names] NukeSpan.exe
X
Part of the Wareout infection as described here.
_Cat1 nmmst.exe
X
Added by the TROJ_SMALL.SD trojan!
_cat2 nmstt.exe
X
Added by the TROJ/SMALL-DT downloader TROJAN! ... Read More
{076200C7-8302-FDAA-0404-070602000300} nvfw96.exe
X
Added by the Troj/Agent-FWO Trojan.
{0EA66AD2-CF26-2E23-532B-B292E22F3266} NewTemp.dll
X
Added by the Troj/QQPass-AOU password-stealing Trojan.
{29123221-3AF8-488c-85DE-6B3EC59E8074} netmedia.exe
X
Added by the Adware.NetMedia adware. Adware.NetMedia is a security risk that displays advertisements while a user browses the Internet. ... Read More
{30EBEA2E-8618-979F-0807-050701070107} ntdvll.exe
X
Added by the Troj/Poison-J keylogging Trojan.
{5738E8A8-69D9-4DA9-166B-7ADD24D1B74B} ntmon.exe
X
Identified as a variant of the Backdoor.Bifrose backdoor.
{5FF01121-F04D-30cf-64CD-74FF5FE1CF1C} nwizdh.exe
X
Added by the Troj/OnLineG-A Trojan.
{6825FAC3-D7D2-4045-97A2-87DF42CB6728} nods32.dll
X
Added by the W32/AutoRun-AFA removable media worm.
{94524218-9af3-4643-9687-cbc2880e54da} nuqjici.dll
X
Zlob Trojan that installs VirusProtectPro 3.3 and shows fake security alerts from your Windows taskbar. ... Read More
{9B71D88C-C598-4935-C5D1-43AA4DB90836} nando.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{A6011F8F-A7F8-49AA-9ADA-49127D43138F} NewInfo.dll
X
Added by the Troj/QQPass-AOL Trojan.
{C1A2FDA2-1A5B-2A8F-F3A2-B22DA1A3C41D} netwrap.dll
X
Added by a rogue antispyware program who's affiliates install files that replaces the Windows wallpaper with a fake virus alert message and issues fak ... Read More
{DEC39E0E-F1F2-41E5-80B8-592A67AB0AA5} NewInfo.rxk
X
Added by the Troj/QQPass-AOQ Trojan.
{eb86b46a-d6db-4478-8f5f-06cb2ebc1b35} nexpegp.dll
X
Zlob Trojan that installs VirusProtectPro 3.6 and shows fake security alerts from your Windows taskbar. ... Read More
{F3D0D422-CE6D-47B3-9CE6-C54DD63F1ADB} new123.sys
X
Added by the Troj/QQPass-AIT Trojan.
{fa19bd7e-50bc-4203-80ac-c4edc81ca9a3} nbbrhbd.dll
X
A Trojan used by the rogue anti-spyware program AntiVermins. This Trojan, when installed, will display fake security alerts on your taskbar and instal ... Read More
{Y479C6D0-OTRW-U5GH-S1EE-E0AC10B4E666} nusrmgr.exe
X
Added by the Trojan-Downloader.CashDeluxe adware.
Status Key

Each entry in the database will have a Status assigned to it. The key to this status is the following:

  • Y - This status flag means that this entry should be left alone and be allowed to run as if it is unchecked it may break the functionality or use of a particular program.
  • N - This status flag means it is unnecessary to run this program automatically when Windows starts as you can run it manually when necessary.
  • U - This status flag means it is up to you whether or not you feel this program needs to run automatically.
  • X - This status flags means the item should definitely not start up automatically. Items that have this flag are generally malware such as viruses, trojans, hijackers, spyware but could also be programs that are not desirable to run on your computer.
  • ? - This status flag means the status of this entry is unknown at this time and more research is necessary.
If you require assistance in removing one of these files you can ask us in the Startup Database Forum.
Disclaimer
It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. BleepingComputer.com will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.


Advertise   |   About Us   |   User Agreement   |   Privacy Policy   |   Contact Us   |   Sitemap   |   Chat   |   Tutorials   |   Uninstall List
Tech Support Forums   |   The Computer Glossary   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides   |   Downloads


Portions of this database © Paul Collins
© 2003-2014 All Rights Reserved Bleeping Computer LLC.