Welcome Guest (Log In | Create Account)
New Member? Join for free.




A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List  · Submit a Startup  · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
Setup.exe
X
Added by the Trojan.Win32.VB.boo Trojan.
!SASWinLogon SASWINLO.dll
Y
Related to the SuperAntiSpyware anti-spyware program.
(357AA41A-B7A8-4632-A27D-5B980B25CF43) svchost.exe
X
Added by the Troj/Small-AQ trojan!
(378FCBD5-BE2B-AFC9-0401-111111111111) svcbost.exe
X
Added by the Troj/Keylog-ZZ keylogger Trojan.
(Default) Shania.vbs
X
Added by the SHANIA TROJAN!
(default) SYSDLL32.exe
X
Added by the Backdoor.G_Door backdoor.
(Default) Systrsy.exe
X
Added by the Trojan.Cdtray Trojan which causes your cd tray to open and close repeatedly. ... Read More
(default) syspol.exe
X
Added by the Troj/Dremn-B keylogging Trojan.
(Default) SYSEXPLR.EXE
X
Added by the Troj/GDoor-R backdoor Trojan.
(default) systemxz.exe
X
Added by the Troj/Hupigo-SH Trojan.
(default) scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
(Default) SystemMonitor.exe
X
Added by the W32.Nujama.B worm. W32.Nujama.B is a worm that spreads through mapped drives and shared folders, and lowers security settings on the comp ... Read More
(L4r1$$4) (4nt1) (V1ruz) SP00Lsv32.pif
X
Added by the W32/Assiral-B WORM! This worm will terminate processes and also install/run a file C:\WINDOWS\WinVBS.vbs to restrict user activity. ... Read More
(random filename) slk8x2peu.exe
X
Added by QuickLinks_Process ADAWARE! ... Read More
*ntfsqueuedns.exe ntfsqueuedns.exe
X
Added by the Troj/FakeAV-EMN Trojan.
*security center secctr.exe
X
Added by the SDBOT.BRO WORM! ... Read More
*StateMgr statemgr.exe
Y
Windows ME default for System Restore. Do NOT disable!
*streamresamd.exe streamresamd.exe
X
Added by the Troj/FakeAV-EMM Trojan.
.mscsbl SVCHOST.EXE
X
Added by the Troj/Borobot-A infection! It is found in either the Windows system folder or the Application DataMicrosoftInternet Explorer folder. ... Read More
.mscsbl svhost.exe
X
Added by the BACKDOOR-CMQ TROJAN!
.NET config sysmon32.exe
?
??
.NET Framework Service svchost.exe
X
Added by the ShopNav adware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
.nvsvc smss.exe
X
Added by the TROJ_HORST.GF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
.nvsvcb smssb.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
.Prog services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
1 Srvpl0.dll
X
Added by the W32.Wowlook@mm worm. W32.Wowlook@mm is a mass-mailing worm that spreads by sending itself as an attachment to email. The worm also steals ... Read More
1 smcmcr.exe
X
Added by the Troj/Bckdr-QIB backdoor Trojan.
1 system32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
1-sukarno sukarno.exe
X
Added by the W32/Brontok-CR worm.
100 svchost.exe
X
Added by the Troj/Gampass-O Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
1234klsjdc uiar924c af sxgnsvuxct.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
1234klsjdc uiar924c af sysvtypkbjx.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
180clientstubinstall stubinstaller4528.exe
X
180Solutions/N-Case adware related ... Read More
1Srv32 SpyAgent4.exe
U
SpyTech SpyAgent monitoring software. "Spy software that allows you to monitor EVERYTHING users do on your PC." ... Read More
1Win32Cfg SpyBuddy.exe
U
SpyBuddy monitoring software
2-suharto suharto.exe
X
Added by the W32/Brontok-CR worm.
27 slsorve.exe
X
Added by the Troj/Slsorve-A trojan. Using it's own own SMTP engine it sends email to a remote address and will terminate anti-virus related processes ... Read More
2kowmeuswvw3 security.exe
X
Added by the AntiVirus Solution 2010 rogue anti-spyware program.
32bit system bus driver sysbus32.sys
X
Added by the Troj/Dropper-EC dropper Trojan.
333 svchost.exe
X
Added by the Troj/JD-A password-stealing Trojan.
5T19I3B27A svchost.exe
X
Added by the Troj/Small-EKA Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
6-susilo b sby.exe
X
Added by the W32/Brontok-CR worm.
666 Ska.exe
X
Added by the PIPES TROJAN!
7X29C2X78Y syss_.exe
X
Added by the Troj/Agent-GMS Trojan.
<Date the program was installed> SSS.sys
X
Added by the XPAntiVirus rogue security software.
<not used> Spoolsv.exe
X
Added by the CIADOOR.B TROJAN!
<not used> spooll.exe
X
Added by the Troj/Banker-DIO Internet banking Trojan. When selected banking websites are accessed, the Trojan will monitor user activity and send the ... Read More
<not used> sisbmsxb.dll
X
Added by the W32/Stration-H mass-mailing worm and backdoor Trojan. W32/Stration-H spreads by sending emails with itself as an attachment to email addr ... Read More
<not used> svichosst.exe
X
Added by the W32/Sohana-J worm. W32/Sohana-J may attempt to spread via instant messaging clients. ... Read More
<not used> setup_.exe
X
Added by the Troj/KGSpy-A key logging and information-stealing Trojan.
<not used> sbs.exe
X
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
<not used> systeminit.exe
X
Added by the W32.Solow worm. W32.Solow is a worm that attempts to spread via removable storage drives and copies itself as exe files with various name ... Read More
<not used> systems.dll
X
Added by the Troj/WLDrop-A Trojan.
<not used> services.scr
X
Added by the W32.Odelud worm. W32.Odelud is a worm that spreads via network shares and removable media and may infect executable files. ... Read More
<not used> sitta.exe
X
Added by the W32/Hansah-A worm.
<not used> SoDAHK.DLL
X
Added by the Adware.Sogou adware.
<not used> shchostv.exe
X
Unidentified malware.
<not used> spoolsrvc.exe
X
Unidentified malware.
<not used> svcvhost.exe
X
Unidentified malware.
<not used> svchctrl.exe
X
Unidentified malware.
<not used> systems.txt
X
Related to SmitFraud infections.
<not used> smsqolqo.dll
X
Added by the Troj/DwnLdr-GXT Trojan.
<not used> stdole32.dat
X
Trojan bundled with SmitFraud infections.
<not used> sulimo.dat
X
Related to the SmitFraud infection.
<not used> skuns.dat
X
Fakealert Trojan which shows fake security alerts on your computer.
<not used> salo.exe
X
Added by the W32/Mabezat-A virus dropper.
<not used> SVCHOTS.EXE
X
Added by the W32.HLLP.Arcer virus. W32.HLLP.Arcer is a virus that infects executable files and attempts to steal sensitive information from the compro ... Read More
<not used> SysWln74_3.dll
X
Added by the PSW.OnlineGames.NNM password-stealing Trojan.
<not used> swrcfzc.dll
X
Added by the PWS-OnlineGames.q password-stealing Trojan.
<not used> smsikfik.dll
X
Added by the Trojan.Goldun Trojan. Trojan.Goldun is a hidden process that steals personal information such as usernames and passwords for financial ac ... Read More
<not used> swggbzc.dll
X
Added by the PWS-OnlineGames.q.dll password-stealing Trojan.
<not used> sbwltbxa.exe
X
Identified as a variant of the Troj/Agent-GRP variant malware.
<not used> systemio.exe
X
Added by the W32/Autorun-DH removable media worm.
<not used> sys.vbs
X
Added by the W32/Autorun-EL removable media worm. Please note that C:\Wndows\System32\wscript.exe is a legitimate file and should not be deleted. ... Read More
<not used> soundmgr.exe
X
Identified as a variant of the TR/Proxy.Gen malware.
<not used> SecureGuard.vbs
X
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
<not used> sertail.exe
X
Added by the Troj/Inject-DD Trojan.
<not used> Servicess.exe
X
Identified as a variant of the Worm.IM.Sohanad worm.
<not used> synceng.exe
X
Added by the BKDR_AGENT.VBI backdoor.
<not used> shmedia.exe
X
Added by the BKDR_AGENT.VBI backdoor.
<not used> sdra64.exe
X
Identified by Sophos as a variant of the Mal/Zbot-I malware.
<not used> svchostw.exe
X
Identified by Kaspersky as a variant of the Heur.Trojan.Generic malware.
<not used> sdra73.exe
X
Added by the Troj/Zbot-PD Trojan.
<not used> Spenser.exe
X
Added by the W32/SillyFDC-EV removable media worm.
<Not used> suzisuha.dll
X
Vundo file with random names, means of starting up, and various other means of appearing in the system.
... Read More
<not used> SE2010.exe
X
Added by the Security Essentials 2011 rogue anti-spyware program.
<not used> sysutil.exe
X
Added by the XLG Security Center rogue anti-spyware program.
<not used> sysguard.exe
X
Added by the Privacy Commander rogue anti-spyware program.
<not used> syssetup.exe
X
Added by the W32/Autorun-BOF removable media worm.
<random characters> securewinload32x.exe
X
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
<Random CLSID> ssvchost.com
X
Added by the Troj/BluEye-D backdoor Trojan.
<Random CLSID> sygate.exe
N
Added by the W32.Focelto.A worm. W32.Focelto.A is a worm that spreads through Microsoft instant messaging clients and uses Rootkit techniques. It open ... Read More
<random name> Servere.exe
X
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
<random name> systs.exe
X
Added by the Troj/Agent-GDC Trojan.
<Random Names> suzisuha.dll
X
Vundo file with random names, means of starting up, and various other means of appearing in the system.  Please note that the CSLID also varies.
... Read More
<Random Names> suzisuha.dll
X
Vundo file with random names, means of starting up, and various other means of appearing in the system.  Please note that the CSLID also varies. ... Read More
<random> svshost.exe
X
Added by the W32/Kelvir-AX instant messaging worm and backdoor Trojan.
<random> svhostu.exe
X
Added by the Cloud Protection rogue anti-spyware program.
<unknown> socket573.sys
X
Added by a variant of Goldun rootkit.
<unknown> scsipsrvc.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
<unknown> sbsrtyus.sys
X
Added by the Trojan.Mdropper.S Trojan.

Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
<unknown> satad645.sys
X
Added by a variant of the Goldun.Fam rootkit.
<unknown> sysbl.exe
X
Added by the Troj/Dload-Y Trojan.
AAMSFree702 sys.exe
X
Identified as BackDoor-CPC or Mal/OptixPro.
abss system.exe
U
Added by the Spyware.ABSystemSpy surveillance software. If this program was not installed yourself you should uninstall it. ... Read More
abylonsoft Activate modules SAPDrive.EXE
Y
Added by the abylon CRYPTDRIVE file encryption software.
Ac97Sound snddrv.exe
X
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
Acronis Scheduler2 Service schedhlp.exe
U
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
Acronis Scheduler2 Service schedhlp.exe
U
Scheduler for backup jobs created with the Seagate's DiscWizard software that comes bundled with certain Seagate hard drives.
... Read More
Acronis Scheduler_Helper schedhlp.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
ActiveDesktop systray32.exe
X
Added by the DABOOM WORM!
activexupdate svcss.exe
X
Added by a variant of the DEDLER.C TROJAN! ... Read More
Adline Ssystem sichost.exe
X
Added by the Trojan-Dropper.Win32.Small.hy Trojan. This Trojan is designed to install and launch other programs on the victim machine without the user ... Read More
Administrator svchost.scr
X
Added by the Backdoor.Novacal backdoor.
AdminSoft sysfile.vbs
X
Added by the VBS/Stargrub-A WORM, by way of an email attachment. It will attempt to add a user name, change proxies and copy additional files to hard ... Read More
Adobe sysconfig.exe
X
Added by an unidentified WORM or TROJAN!
Adobe sysbat32.exe
X
Added by the LOWZONES.T TROJAN!
Adobe Acrobat Speed Launcher SC_Acrobat.exe
N
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch q ... Read More
Adobe Plugins Reader svshost.exe
X
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
Adobe SwitchBoard SwitchBoard.exe
Y
Adobe SwitchBoard is a process that facilitates communication between Bridge CS5 and the MiniBridge panel in Photoshop CS5 or InDesign CS5. This shoul ... Read More
Adobe Update Service svchost.exe
X
Added by the Wireshark Antivirus rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe ... Read More
AdobeReaderPro service.exe
X
Added by the W32/Rbot-BCA worm and IRC backdoor.
AdobeReaderPro spoolss.exe
X
Added by the W32/Sdbot-AKZ worm and IRC backdoor.
AdobeReaderPro subset.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
AdobeReaderPros sysmsn.exe
X
Added by the W32/Rbot-BGH worm and IRC backdoor.
AdRotator.Application services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
adsblocker stopAds.exe
X
Reported as Win32/Dialer.DW by NOD32 ... Read More
adslsystemtray SystemtrayV100B.exe
?
Apparently Annex A ADSL modem related - what does it do and is it required? ... Read More
adupdater sysupudt.exe
X
Unidentified adware downloader/updater
Advanced DHTML Enable sooo2.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan-Proxy.Win32.Agent.mf Trojan. ... Read More
Advanced Graphics Driver smvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
aldoa swqzdtj.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.7 and display fake security alerts in your Windows taskbar. ... Read More
ALG32 SPOOLSVU.EXE
X
The Troj/Agent-CJ TROJAN drops this file, alg32.exe and htass.dll into the Windows folder. ... Read More
Alive SYstem scchost.exe
X
Added by the Troj/Tofdrop-B dropper Trojan.
alive system scchostc.exe
X
Added by the Troj/Tofdrop-B ... Read More
All Aboard Status stswin.exe
U
alligt severe.exe
X
Added by the W32.Slurk.A worm. W32.Slurk.A is a worm that copies itself to all removable and shared drives, and drops other threats on to the comprom ... Read More
alpha svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
aluria security center SecurityCenter.exe
N
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
Amie Release V6.9D services.exe
X
Added by the Troj/VB-EAN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
amircivil svchot.exe
X
Added by the W32.Amirecivel worm.
ANONYMIZER_SPYWAREKILLER SpyWareKiller.exe
U
Anthrax serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
Anti Spam Service spamsvc.exe
X
Added by the W32/Mytob-BK worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
AntiClicker SVCHST32.EXE
X
Added by the BackDoor-CBH backdoor.
AntiMalwareSuite Shell Hook shellext.dll
X
Added by the AntiMalwareSuite rogue anti-spyware program.
AntiMalwareSuite Shell Hook shellext.dll
X
Added by the PCAntiMalware rogue anti-spyware program.
AntiPol svchast.exe
X
Added by the Windows Police Pro rogue anti-spyware program.
AntipyProex svchasts.exe
X
Added by the Windows Police Pro rouge anti-spyware program.
AntipyPro_12 svchast.exe
X
Added by the Windows Antivirus Pro rogue anti-spyware program.
Antivir svchst.exe
X
Added by the Troj/Ragruk-A backdoor Trojan.
AntiVir scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
AntiVir smss.exe
X
Added by the Troj/DwnLdr-GWE Trojan downloader. This infection should not be confused with the legitmate C:\Windows\system32\smss.exe file. ... Read More
AntiVir PersonalEdition Classic Scheduler sched.exe
Y
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
Antivirus sav.exe
X
Added by the System Antivirus 2008 rogue anti-spyware program.
Antivirus SPP.exe
X
Added by the Spyware Preventer rogue anti-spyware program.
AntiVirus AntiSpyware 2011 Security securitymanager.exe
X
Added by the Antivirus AntiSpyware 2011 rogue anti-spyware program.
AntiVirusProMFCT StartApp.exe
X
Added by the Antivirus Pro rogue anti-spyware program.
aol software smss.exe
X
Added by the W32/Tilebot-FM worm and IRC backdoor.
AOLAspSunset2 sunsetAsp2.exe
?
Related to AOL.
AolSoftware spoolsv.exe
X
Added by the W32/Sdbot-BQY worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\spoolsv ... Read More
AolSoftware services.exe
X
Added by the W32/Tilebot-FA worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\servic ... Read More
aposiopetic shlahsd.dll
X
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
Application In System Snxmsh.exe
X
Added by the Troj/Agent-LNV Trojan.
Application Management Browser smss.exe
X
Added by the Troj/Comhush-A Trojan. This infection should not be confused with the legitimate smss.exe found in the C:\Windows\System32 (%System%)fol ... Read More
applicationgateway svchost.exe
U
Added by the Spyware.PCProwler surveillance software. If this program was not installed by yourself, it should be uninstalled immediately. This progra ... Read More
ApplicationProtocolRun smsbvl32.exe
X
Added by the Troj/IRCBot-CX Trojan.
APVXDWIN syslogz.bat
X
Added by the Troj/DelFile-V Trojan.
apyginapygin simenu.exe
X
Added by the SDBOT.BTR WORM! ... Read More
armillifer siiyal.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
armonVirusAnti smss.exe
X
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
asd ssm.com.cn.exe
X
Added by the Troj/Bckdr-QKC backdoor Trojan.
ashcap servirsess.exe
X
Added by the Spyware.SpySure Spyware. Spyware.SpySure is a spyware program that may steal sensitive information from the computer. ... Read More
ASocksrv SocksA.exe
X
Added by the Troj/QQRob-AAT Trojan.
ASP.NET State Service servicos..exe
X
Added by the Troj/Dadobra-I downloader Trojan.
ATI Video Driver Controls sys.exe
X
Added by the W32/Sdbot-DDS worm and IRC backdoor.
ATTBroadbandUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
AUDIO SOUND.exe
X
Added by the Dial/Ployb-A premium porn dialer.
Audio Device Manager sfhgj.exe
X
Added by the W32/IRCBot-ZA worm and IRC backdoor.
Audio Device Manager srn32.exe
X
Added by the W32.Spybot.Worm worm and IRC backdoor.
Audiodev SVCHOST.exe
U
Added by the Spyware.KeySpyware surveillance software. This program should not be confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
aupd symcsvc.exe
X
Added by the Troj/Orse-E Trojan.
aupd sysvcs.exe
X
Added by the ABWIZ.C TROJAN! ... Read More
aupd sywsvcs.exe
X
Added by the Troj/Orse-L Trojan.
aupd symsvcsa.exe
X
Added by the Troj/Orse-Q Trojan.
Aureal A3D Interactive Audio sa3dsrv.exe
Y
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
Auther Service Manager svshost.exe
X
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
Auto File System Conversion Utility scricon.exe
X
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
Auto Update svchost.exe
X
Added by the Troj/DumarDl-A trojan.
Auto Updates svchost.exe
X
Added by the Troj/Cheuko-A trojan.
AutoAdministrator SERVICES.EXE
X
Added by the W32/Punya-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
autoload svchost.exe
X
Related to SmitFraud infections. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
autoload spool.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent variant malware.
autoload spooll.exe
X
Identified as a variant of the Trojan-Dropper.Agent.snu malware.
AutomatedSurfer SurferClient.exe
?
According to the information found here, this program is supposed to simulate a web surfer that can click on links within a hidden IE window.
< ... Read More
Automatic Microsoft Windows Updater suchost.exe
X
Added by the RBOT-EQ WORM!
autoMe solution.vbs
X
Added by the VBS.Sasan worm.
autoMe samok.vbs
X
Added by the VBS/Samok-A worm. Please note that C:\Windows\System32\wscript.exe is a legitimate program and should not be deleted. ... Read More
autorun svchost.exe
X
Related to SmitFraud infections. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
autorun sxs.exe
X
Added by the W32/SmallVBS-A worm.
autorundemo svchost.exe
X
Added by the Troj/Agent-FPX Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
AutoUpdate smss.exe
X
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
AutoUpdate32 services.exe
X
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
autoupdater sox.exe
X
Added by the Troj/LdPinch-DH password-stealing Trojan.
avast111111 smss55555.exe
X
Added by the Troj/Lmir-GH information stealing Trojan for the online game The Legend of Mir. ... Read More
AvG svchost323.exe
X
Added by the W32/Rbot-ZA WORM/backdoor!
Avira Premium Security Suite Scheduler sched.exe
Y
This service manages the scheduled scans for the Avira Premium Security Suite antivirus program. ... Read More
avnort serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
avptask svch0st.exe
X
Added by the Troj/Nofere-G Trojan. Troj/Nofere-G contains functionality to communicate with a remote server using HTTP, execute downloaded files, kill ... Read More
avschedscan SCHSC9X.EXE
Y
Command antivirus related ... Read More
AvSer sysup.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
AvSer svosm.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
AV_Update_Client svhost.exe
X
Added by the TROJ_ISPY.B information-stealing Trojan.
bab svchst32.exe
X
Added by the Trojan-Proxy.Win32.Agent.q Trojan.
babblement sjrggq.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
Background Intelligent Transfer Service mircosoft 32 systemza32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Backup One smbguard.exe
X
Added by the W32/Sdbot-MI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
bal SYSMONMS.EXE
X
Part of the SmitFraud family of infections.
Bart Station station.sbrt
?
Related to PeoplePC ISP. May be a dialler for dial-up accounts?
Basla start.exe
X
Added by a unclassified Trojan.
Bat secure2.bat
X
Added by the ZCREW.C TROJAN!
Battery Monitor shlapiw32.dll
X
Added by the Troj/Delf-BPC Trojan.
bbc news alerts skinkers.exe
U
BBC News Desktop Alerts service; see here - The BBC News desktop alert and breaking news e-mail services let you find out about all the latest news a ... Read More
Bcvsrv32 system2.exe
X
Added by the W32/Agobot-PU IRC backdoor Trojan/WORM! Found in the WIndows system folder. ... Read More
Beawver saqevre.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
beta svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
Black Sword.exe
X
Added by the WORM_MYTOB.QJ mass-mailing worm and IRC backdoor.
Black Hole Professional Version svch0st.exe
X
Identified as Backdoor.Win32.Ciadoor.123.d.
Blacky Swords.exe
X
Added by the W32/Kidala-B mass-mailing worm and IRC backdoor.
blah service smnp.exe
X
Added by the RBOT.IZ WORM!
blah service socksxt.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
blah service svchosts.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
blah service servoxt.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
blah service sysinfo.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
blah service syscontrol.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
Bluetooth sample.exe
X
Added by the Troj/Agent-OSH Trojan.
boler.exe syser.exe
X
Added by the W32/Rbot-AYS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
BookMarkSink syncit.exe
N
Bookmark synchronization utility
BookMarkSync syncit.exe
N
Bookmark synchronization utility
BookMarkSync2It sync2it.exe
N
Sync2IT BookMarkSync - "real-time automatic synchronization service that allows you to access your bookmarks, favorites and favorite files from any co ... Read More
BoolTern svch0st.exe
X
Added by the W32/Tilebot-U worm and IRC backdoor.
BootClean smartdrv.exe
X
Added by the W32/Lurka-A virus.
boot_reg svchot.exe
X
Added by Troj/Bancban-BQ, a TROJAN. It is found in the Windows system folder.
bot loader svchostt.exe
X
Added by the W32.GAOBOT.ALV WORM! ... Read More
Bredbandsbolaget servicecenter.exe
Y
Connectivity software for the Bredbands Bolaget ISP.
Bron-Spizaetus sempalong.exe
X
Added by the W32/Brontok-E worm.
browser s_menu.exe
X
Added by the WIN32.TACTSLAY.C TROJAN!
BrO_AcT system.exe
X
Added by the W32/SillyFDC-J worm.
BugsDestroyer SysRep.exe
X
Added by the BugsDestroyer rogue anti-spyware program.
BuildLab services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
c svchost.scr
X
Added by the Troj/Bancban-BX TROJAN!
C:\WINDOWS\system32\SetupCmd.exe SetupCmd.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.aww Trojan.
Call Function System32 sddriver.exe
X
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
Card Adapter smss.exe
X
Added by the Troj/Maran-I Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
CAS2 System.exe
X
Identified as Adware.Win32.CASClient.D.
CashToolbar svchost.exe
X
CashToolbar Downloader-MY adware. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
ccAppr svcrhost.exe
X
Premium rate adult content dialler
ccAppr svcshost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
ccApps services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
ccRegVfY svcrhost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
ccRegVfY svcshost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
CCWC7s stealth.exe
U
Moleculesoft Cache, Cookie & Windows Cleaner Ver. 7
CDriver svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
CentralCrSr SetCrSr.exe
X
Added by SetCursor. SetCursor is an application that moves the cursor into the middle of the screen after the computer is resumed from being suspended ... Read More
CertificateRegistration SafeSignCertReg.exe
U
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
cFosSpeed System Service spd.exe
Y
cFos_Software's
Internet acceleration program.
cftmon sfcmonit.exe
X
Identified as a variant of the Backdoor.Win32.Agent.erg malware.
change me please sysdat.exe
X
Added by the W32/Tilebot-L worm.
Changed me systemz32.exe
X
Added by the W32/Tilebot-JD worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. ... Read More
changeicon SPMSMON.EXE
U
Card reader related program. Note: May cause problems with My Computer loading at startup. Disabling through MsConfig seems to solve the problem. ... Read More
cheatmonitor start.exe
U
Added by the Spyware.CheatMonitor surveillance software. This software should be uninstalled if found on your computer without your permission. ... Read More
chicot sgntu.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
chipdrivepinmanager sokscmpn.exe
U
ChipDrive Smartcard software ... Read More
chipdrivesmartcardmanager SCMgr.exe
U
ChipDrive Smartcard software ... Read More
Ci Servs SysTuwin.exe
X
Added by the Troj/Agent-NIQ Trojan.
Cinnabd Prompt32 SP00Lsv32.pif
X
Added by the W32/Assiral-B WORM! This worm will also install and run a file C:\WINDOWS\WinVBS.vbs to restrict user activity and terminate processes. ... Read More
Classes srv.exe
X
"Switch" adult content dialler
Classes srv2.exe
X
"Switch" adult content dialler
Clean up service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
CleanPCTool SysRep.exe
X
Added by the CleanPCTool rogue software.
Cleanup svchost.exe
X
Added by the Troj/Agent-JRR Trojan. This should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Client Debug Manager spoolvc.exe
X
Added by the W32/Sdbot-DCX worm and IRC backdoor.
Client Disk Manager symon.exe
X
Added by the W32/Tilebot-IN worm and IRC backdoor. W32/Tilebot-IN spreads to other network computers by exploiting common buffer overflow vulnerabilit ... Read More
client server runtime process smmss.exe
X
Backdoor TROJAN!, possible W32/Sdbot-gen ... Read More
Cliente system.exe
X
Added by the W32/Autorun-GS removable media worm.
ClientServerRuntimeProcess smss.exe
X
Added by the Troj/Sufia-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
ClockSync Sync.exe
X
ClockSynck - synchronizes your system clock with an internet time server. It's by WhenU, the makers of the Save Now spyware, and they're usually seen ... Read More
CLSID sed.exe
X
Adult content dialler
CM-SmWizard SmWizard.exe
?
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
cmss system.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
cof.updit Seurit.exe
X
Identified as a Trojan Downloader.
Coldlife -icmp Systray.exe
X
Added by the FLOOD.AV TROJAN! Note - this is not the legitimate SysTray.exe
COM+ Messages svchosts.exe
X
Unknown malware.
COM+ Network AppService svchost.exe
X
Added by the Troj/GrayBrd-CU backdoor Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
COM++ System suchost.exe
X
Added by a variant of the LOVGATE WORM!
COM++ System svchost.exe...
X
Added by a variant of the LOVGATE WORM!
COMDRV32 svdhost.exe
U
Orvell Monitoring 2003 - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how ... Read More
Command system.exe
X
Added by the GATECRASH.A or GATECRASH.B TROJANS!
command shell12.exe
X
Added by the Backdoor.Ghoice.12 backdoor. This infections listens on TCP port 1001. ... Read More
Command Lsass Services svshost.exe
X
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
Compaq Computer Corp SCCenter Module SCCENTER.EXE
N
For Compaq PC's. Part of Backweb
Compaq Knowledge Center silent.exe&matcli.exe
U
"matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, sta ... Read More
Compaq Networks svchost.exe
X
Added by the Backdoor.XTS.B backdoor. Note: This is not the legitimate svchost.exe found in the Windows system32 directory. ... Read More
Compaq Service Drivers systeminfos.exe
X
Added by the W32/Sdbot-XC WORM/IRC backdoor trojan!
Compaq Service Drivers sxrose.exe
X
Added by the W32/Sdbot-AXP worm and IRC backdoor.
Compaq Sound Drivers For WINDOWS sounddr.exe
X
Added by the W32/Sdbot-XG WORM/IRC backdoor trojan!
Computer Driver scshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Computing Technologie Firewall svcauth.exe
X
Added as a WORM with backdoor functionality, W32/Sdbot-VO copies itself to the Windows system folder as svcauth.exe and creates registry entries. ... Read More
COMsys32 systemdll32.exe
X
Added by the Troj/Feutel-F backdoor trojan.
Config service.exe
X
Added by the ISRAZ.B WORM!
Config Loader svchosl.exe
X
Added by the GAOBOT.P WORM!
Config Loader sysldr32.exe
X
Added by the GAOBOT WORM!
Config Loader scvhost.exe
X
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
Configuration Driver scghost.exe
X
Added by the W32/Sdbot-DLA worm and IRC backdoor.
Configuration Loader service5.exe
X
Added by the GAOBOT.AF WORM!
Configuration Loader sycfg34.exe
X
Added by the GAOBOT.AN WORM!
Configuration Loader Service.exe
X
Added by the GAOBOT.AO WORM!
Configuration Loader Servicess.exe
X
Added by the GAOBOT.AO WORM!
Configuration Loader sw32.exe
X
Added by the AGOBOT.BQ WORM!
Configuration Loader System.exe
X
Added by the GAOBOT.AO WORM!
Configuration Loader sysinfo.exe
X
Added by the GAOBOT.FQ WORM!
Configuration Loader svhst.exe
X
Added by the GAOBOT.YC WORM!
Configuration Loader systemry.exe
X
Added by a variant of the AGOBOT/GAOBOT WORM!
Configuration Loader smss32.exe
X
Added by the AGOBOT.MB WORM!
Configuration Loader syscfg32.exe
X
Added by the SDBOT.B TROJAN!
Configuration Loader smsai.exe
X
Added by the W32/Sdbot-YE worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
configuration loader svupdate.exe
X
Added by the W32.RANDEX.DXP WORM! ... Read More
configuration loader svchost2.exe
X
Added by the AGOBOT.JR WORM! ... Read More
Configuration Loader scvhost.exe
X
Added by the W32/Agobot-AAE worm.
Configuration Loader SVSCHOST.EXE
X
Added by the W32/Sdbot-NS worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Configuration Loader sysdevice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Configuration Loading svchos1.exe
X
Added by the GAOBOT.DK WORM!
Configuration Servecie sewins.exe
X
Added by the W32/Sdbot-COH worm and IRC backdoor.
Configuration Service suchost.exe
X
Added by the TREB TROJAN!
ConfigVir services.exe
X
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
ConfLoader sysconf16.exe
X
Added by the SDBOT-FB TROJAN!
Connector SYS.EXE
X
Added by the Dialer.Nunci premium dialer.
Connector sms.EXE
X
Added by the Dial/ExDial-B premium rate porn dialer.
ConsoleDevil server.exe
X
Added by the Troj/Bckdr-MJO backdoor Trojan.
control panel smctrlw.exe
N
System Tray icon for a Silicon Motion LynxEM based PCI Graphics Card
Control Panel System.exe
X
Added by the DANI TROJAN!
ControlPanel systemctrl.exe.
X
Added by the Troj/StartPa-FX trojan.
ControlPanel svcc.exe
X
Added by the Adware.WorldSearch browser hijacker.
Coordinator System svchoct.exe
X
Added by the Troj/Sdbot-LI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Core System Hardware syscorehd.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
cpl s_menu.exe
X
Added by the WIN32.TACTSLAY.C TROJAN!
cpntmgc simcss.exe
X
MagicControl downloader trojan variant
CPQSTUTFIX stutfix.exe
Y
For Compaq PC's. Fixes audio stutter problems for ESS Maestro soundcards. You can download it here. This is a Compaq originated file and has been veri ... Read More
CRAYON server.exe
X
Added by the W32/VB-DNI worm.
CRC Value Verifier svchost32.exe
X
Added by the RBOT-OA WORM!
Creates stractures for system management stacture.exe
X
Added by the W32/Sdbot-DHS worm and IRC backdoor.
Creative PCI Audio Configuration Utility starter.exe
N
System Tray icon to configure a Creative Soundblaster PCI soundcard. Not required and re-instates itself when un-checked. Try one of the solutions on ... Read More
Creative SB Monitoring Utility sbavmon.dll,
?
Creative utility that monitors AVStreams. Is this needed?
CrisysTec Sentry Sentry.exe
X
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
Crnsava scrnsave.pif
X
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Crnsavsund scrnsund.pif
X
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
crsss Systom.exe
X
Added by the W32.Motsys worm. W32.Motsys is a worm that spreads by copying itself to removable drives. It also adds an tag to certain files on the co ... Read More
crtfmon sysdll.exe
X
Identified by Kaspersky as the Trojan-Dropper.Win32.Small.baf malware.
csaRem spqmdmui.exe
N
Compaq modem country selection
csfdll smartwarxyu.dll
X
Identified as a variant of the Trojan-Spy.Win32.Delf.asq malware.
csoftok softok.exe
X
Added by the Troj/QQPass-H to log key presses & steal passwords.
CSScheduleCheck SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
ctfnom.exe SVOHOST.exe
X
Added by the Troj/Digidor-A trojan.
CTHELPER svhost.exe
X
Added by the W32/Sdbot-RZ worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
cursor Screendragon_VS_Taskbar.exe
N
ScreenDragon video player
cvmsyslpd sdservss.exe
X
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
Cyber Trio showmode.exe
U
From G-Tek Technologies. Allows you to set the PC in one of three modes, Standard, Enhanced and Kiddo. Standard is full function, Enhanced prevents ac ... Read More
dark smsr.scr
X
Added by the Troj/Bancban-NU password/information-stealing Trojan for online banks. ... Read More
dark smsl.exe
X
Added by the Troj/Banker-BZF Internet banking Trojan. If you are infected with this Trojan you should immediately change all your online banking pass ... Read More
Darkness surv86.exe
X
Added by the Trojan.Darkbot Trojan. Trojan.Darkbot is a Trojan horse that performs denial of service (DoS) attacks. ... Read More
Data System.dat.vbs
X
Added by the BISCUIT.A WORM!
dbar_starter starter.exe
X
Related to the Adware.Deskbar adware program. This program will add a search bar to your Windows taskbar which performs searches on www.w-w-w-dot-com ... Read More
dc2k5 SVIQ.EXE
X
Added by the W32/CoiDung-A worm.
dc6_check startmon.ex
X
Added by the SystemDoctor 2006. This is a rogue anti-spyware and should be removed. ... Read More
DDriver svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
Debug SMSS.exe
X
Added by the Adware.DreamAd adware.
Debug System Manager spoolvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Deewoo scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
Default shell32.exe
X
Added by the BINGHE backdoor Trojan! It has the ability to log your keystrokes, steal data, and execute commands. ... Read More
default splvs.exe
X
Added by the WORM_SDBOT.FS backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
DellSupportCenter sprtcmd.exe
N
Dell's support tool bundled on their computers. Can be run as necessary.
designers sttwrd.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
DesSys system.exe
X
Added by the WORM_SANKEZU.A worm.
Detect Kbd Daemon SK2000DM.EXE
U
This is a driver for IBM Media Access Pro Keyboard. It's used to map and support various keys on the keyboard. ... Read More
devenv smvss.exe
X
Identified as a variant of the Trojan.Horst malware.
DHCP smss.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
DHCP32 services.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Digimax Viewer 2.1 STImgBrowser.exe
N
Application bundled with Samsung Digimax cameras that detects when you connect the camera to the computer and allows you to transfer images to the PC. ... Read More
Direct settings sdchost.exe
X
Added by the DAEMONI-I TROJAN!
directx Sqlexploit.exe
X
Added by the SDBOT.D TROJAN!
DirectX Driver stdhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
DirectX for Microsoft Windows Sservice.exe
X
Added by the PRORAT TROJAN!
DirectX shell driver sammp32.exe
X
Added by the Troj/MarktMan-B Trojan.
Disk Keeper SECURITY.EXE
X
Added by the Troj/Daoser-A trojan downloader.
Disk Monitor Manager smcs.exe
X
Added by the W32/Tilebot-KQ worm and IRC backdoor.
DiskEventChk smszac32.exe
X
Added by the Troj/Stinx-H Trojan. This infection also creates the files 442.bat and 952.bat. ... Read More
Diskstart Snt.exe
X
Adult content dialler
Dll Link svchoist.exe
X
Added by the W32.Autosky worm. W32.Autosky is a worm that attempts to spread to all shared and removable drives that are accessible from the compromis ... Read More
Dll Link svchost.exe
X
Added by the W32.Autosky worm. W32.Autosky is a worm that attempts to spread to all shared and removable drives that are accessible from the compromis ... Read More
Dll Service Manager. SVSHOST.EXE
X
Added by the W32/Robot-A backdoor trojan. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
DllName status.dll
X
Added by the Troj/Haxdoor-R rootkit. This infection makes it so you can not see certain processes, files, or registry keys on your computer. It is u ... Read More
DNS Client Service svshost.exe
X
Identified as the SdBot.awe worm.
DNS Server svchost.exe
X
Added by the Troj/Feutel-Y backdoor Trojab.
DNS Support Manager svshost.exe
X
Identified as the SdBot.awe worm.
doc.lnk svchost.exe
X
Identified as W32/Malware.SHZ or Trj/Downloader.OLG. This infection should not be confused with the legitimate C:\Windows\system32\svchost.exe file. ... Read More
dot.net networking Snss32.exe
X
Added by a variant of the IRC_TROJAN ! ... Read More
download svcnost.exe
X
Added by the Troj/FakeAV-BSN Trojan.
Downloaded Program Files syn.exe
X
Added by the Troj/GrayBrd-N backdoor Trojan.
DrefIW SysDrefIWv2.exe
X
Added by the W32/Dref-C Internet worm.
DrefIW SysDref.exe
X
Added by the W32/Dref-D worm.
Driver Control Manager v7.7 sesnaesttoo.exe
X
Added by the Troj/IRCbot-AJL worm and IRC backdoor.
Driver Control Manager v8.1 sesdessetri.exe
X
Added by the Troj/ZXC-Q Trojan.
Driver32 Scam32.exe
X
Added by the SIRCAM WORM!
DriverCheck svchost.exe
X
Added by the Troj/Delf-KR trojan.
DriverDB svcmdx32.exe
X
Added by the Troj/IRCBot-AR TROJAN/IRC backdoor!
DriverLoad svchost.exe
X
Added by the Troj/Delf-KR trojan.
DriverPath system32.exe
X
Added by the Troj/Prorat-S backdoor Trojan.
dRMON SmartAgent SmartAgt.exe
U
Part of the network monitoring program group for 3Com NIC cards. See here for more info ... Read More
drmsrv32 stmhosts.exe
X
Identified as a variant of the Trojan.Win32.Agent.fkv malware.
DSL Monitor spdstrm.exe
N
Comes with Efficient Networks DSL Modems. Little red/green/yellow flashing icon in system tray ... Read More
DsmSer sysup.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
DsmSer svosm.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
DTService soundmix.dll
X
Added by the Troj/Dropper-MJ Trojan.
Dual services.exe
X
Added by the Troj/Dloadr-SJ Trojan. This file should not be confused with the legitimate Microsoft file C:\Windows\System32\services.exe. ... Read More
dumprep spoolc.exe
X
Identified by Kaspersky Antivirus as a variant of the Backdoor.Win32.Agent.cxf malware. ... Read More
DurovVkon svc.exe
X
Added by the W32/VKon-A social-application worm.
DwlClient support.exe
N
Download manager for Dell support alerts
Dx sys*.exe [* = random number]
X
Added by the DEXTER.A WORM!
dx sys#.exe
X
Added as a result of the DEXTER.A VIRUS! where # is a random number ... Read More
eanth_critical_update_alert sys_alert.exe
N
eAcceleration Stop-Sign related; not recommended; see note
eanth_system_patcher sys_alert.exe
N
eAcceleration Stop-Sign related - not recommended, see note
Eapcisetup sbsetup.exe
N
Rockwell RipTide soundcard application software. Sound works without it
EarthLink Firewall Process Path Service EFWPPService.exe
Y
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
easyServ Server.exe
X
Added by the EASYSERV TROJAN!
Ebola serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
EFS sclgntfy.dll
Y
Related to the Microsoft Service called Secondary Login Service Notification.
elnkproxy smproxy.exe
X
Surfmonkey adware ... Read More
Encrypt Local Services svshost.exe
X
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
ENCSurf surfboard.exe
?
??
EnsoniqMixer starter.exe
U
Puts the Ensoniq mixer in system tray. From Ensoniq Technologies "Our mixer is a critical part of the soundcard as it fixes sound problems and replace ... Read More
EPSON Background Monitor STMS.EXE
N
Supposed to keep an Epson printer ready for quick printing.  Users report little difference whether it is on or not ... Read More
ErrClean SysRep.exe
X
Added by the ErrClean rogue security software. ErrClean is a misleading application that gives false reports of errors on the computer. ... Read More
Error Monitor Service svshost.exe
X
A variant of the BackDoor.SdBot family of worms and IRC backdoor Trojans.
Error Reporting Manager svshost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
erthgdr svc.exe
X
Added by the W32.Beagle.BW@mm worm.
erthgdr2 svc23.exe
X
Added by the W32.Beagle.CE@mm mass-mailing worm.
EService svchost.exe
X
Added by the W32.Mular.A Emule worm. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
esperantido svxmhpz.dll
X
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
Ethernet Drivers smrrs.exe
X
Added by the W32/Rbot-AAK WORM/IRC backdoor trojan!
EvenSystems svchost.exe
X
Added by the Troj/Banloa-EW online banking Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Event Monitor spoolcll.exe
X
Added by the W32.Spybot.IVQ worm.
EventApplicationCmd smschk.exe
X
Added by the Troj/IRCBot-AO IRC backdoor Trojan.
Events services.exe
X
Added by the Backdoor.EggHead backdoor.
exec services.exe
X
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Explorer shellexpl.exe
X
Added by the GPIX and SHELDOR VIRUSES!
Explorer shellexp.exe
X
Added by a variant of the SHELDOR TROJAN!
explorer system.exe
X
Added by the Troj/Agent-FI Trojan.
EXPLORER sys.exe
X
Added by the Troj/SillyFDC-A Trojan.
ExploreUpdSched scntqkdm.exe
X
Identified as a variant of the Adware-Zeno malware.
ExtraSystemService3 systemsvr.sys
X
Added by the Troj/Agent-FP Trojan.
F-Secure 2005 svchost.exe
X
Added by the Troj/Bifrose-CH Trojan.
F4J serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
FamilyCyberAlert syslogin.exe
X
Added by the Spyware.CyberAlert spyware and keylogger.
fast home svcnvt.exe
X
Reported by Kaspersky Anti-Virus as Trojan-Downloader.Win32.Delf.ks
fast search svcnv.exe
X
Homepage, Startpage hijacker. Possible variant of Trojan-Downloader.Win32.Delf
Fast Start svcnt.exe
X
Identified by numerous Antivirus products as Delf.KS. When run this trojan will install a variety of other applications such as antivirus gold, ps gu ... Read More
Fast User Switching Compatibi system34.exe
X
Added by the Troj/Hupigon-SU Spyware Trojan.
faststart svcnut.exe
X
Browser hijacker - a variant of the STARTPAGE.L TROJAN! ... Read More
faststart svcnut32.exe
X
Browser hijacker - a variant of the STARTPAGE.L TROJAN! ... Read More
FastTrack Accelerator SPEED UP.EXE
N
FastTrack Accelerator - "speedup" utility for programs that use the FastTrack network such as KaZaA Media Desktop, Grokster and Morpheus ... Read More
FastUserSwitchingCompatibil svchost.exe
X
Added by the Troj/Keylog-AT keylogging Trojan. This should not be confused with the legitimate svchost.exe file found in the Windows system folder. ... Read More
Fathers serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
FCI svchost.exe:ext.exe
X
Identified as Trojan.Win32.Obfuscated.gp. Please note that this infection is an Alternate Data Stream file attached to the legitimate C:\Windows\Syste ... Read More
fdr command module sp2.exe
X
Added by the SDBOT.WP WORM! ... Read More
fegoze SVCH0ST.EXE
X
Added by the GRAYBIRD.D TROJAN!
ff svhost32.exe
X
Added by the Troj/Lineag-AFF password-stealing Trojan for the online game Lineage. ... Read More
FFI svchost.exe:exm.exe
X
Unknown malware.

Please note that this infection is an Alternate Data Stream file attached to the legitimate C:\Windows\System32\svchost.e ... Read More
fhpage shdochp.exe
X
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
fhstart shdocsvc.exe
X
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
FieldForms Sync SyncService.exe
U
Resco FieldForms. A solution for building of mobile forms that can be viewed or filled in on the run, on a wide range of mobile devices. Supports Micr ... Read More
File-Sharing Wizard shwizard.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Files Driver sfdhost.exe
X
Added by the W32/Agobot-AJC worm.
Files Driver sdphost.exe
X
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
firefox service drivers ssmss.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
firewall spoolsv.exe
X
Added by the W32.Dizan.F virus. W32.Dizan.F is a virus that spreads by infecting executable files. It also opens a back door on the compromised comput ... Read More
Firewall SP2 UPDATE.exe
X
Added by the W32/Elitper-E WORM, and it will exploit P2P applications. Many additional files are created in varios folders found in Documents and Sett ... Read More
Firewall Controls sys32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Firewall DRV spfhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Firewall Sp2 system sys32Conf.exe
X
Added by the W32/Rbot-ABT worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
FireWire Driver samx.exe
X
Added by the SDBOT.AE WORM!
Flash Media services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Flash Player2 services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
FlashPath Monitor SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
FlashPath Status SDSTAT.EXE
N
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
Four serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
fqor stub_113_4_0_4_0.exe
X
Added by TargetSaver ADAWARE! ... Read More
FrameWorkService smss.exe
X
Added by the W32/Kukoo-A network worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
France svchost.exe
X
Added by the MIMAIL.L WORM!. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
frguk shdrkmck.exe
?
??
FriendlyTypeName services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
FriendlyWebQuick-Launch SELFCERT.EXE
N
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
fritz!dsl startcenter StCenter.exe
?
FRITZ! ISP software "StartCenter" User interface that allows you to manage, tweak and diagnose many aspects of your internet connection - is it requi ... Read More
fsh svcnva.exe
X
Malware, detected by Ewido_Security_Suite as TrojanDownloader.Delf.ks ... Read More
fzg svhost32.exe
X
Added by the Troj/Lineage-JN information stealing Trojan.
game shit.exe
X
Added by the Netclap Gold backdoor TROJAN!
Games Acceleration svshost.exe
X
EasySearch adware
Games Acceleration svshost1.exe
X
Identified by Kaspersky Antivirus as Trojan-Downloader.Win32.Small.ase.
gamma svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
GammaHotKeys setgamma.exe
U
Part of the RadeonTweaker program for adjusting ATI Radeon graphics cards. Allows you to adjust the gamma (or brightness) when playing a full-screen g ... Read More
gate personal firewall Systpl.exe
X
Added by the RBOT.ADC WORM ... Read More
General Socket Service SVCHOST.EXE
X
Identified by Dr. Web as Trojan.PWS.LDPinch.1607. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
Generic host proccess for windows SVCHOSTS.EXE
X
Added by an unidentified VIRUS, WORM or TROJAN!
Generic Host Process SCHOST.EXE
X
Added by the RBOT-NC WORM!
Generic Host Process svchost.exe
X
Added by the Troj/Dloader-NX trojan downloader.
Generic Host Process syshost.exe
X
A variant of the W32/Banworm worm.
Generic Host Process for Win-32 Service spoolsv.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans. When removing this infection, please be careful that you do not remove the l ... Read More
Generic Host Process for Win-32 Service svchost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans. When removing this infection, please be careful that you do not remove the l ... Read More
Generic Host Process for Win32 Services svchosts.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Generic Host Process2 System Backup scvhost2.exe
X
Added by the W32/Rbot-BAH worm and IRC backdoor.
Generic Host Process326a System Backup scvhost326a.exe
X
Added by a variant of the W32/SDBOT WORM!
generic service process serv1ces.exe
X
Added by the W32/Agobot-JK WORM! ... Read More
Genius Mose Driver svghost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
genserv path sdqdqg.exe
X
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
GenSrv svchost.exe
U
Added by the Spyware.StealthLogger surveillance software. Spyware.StealthLogger is a spyware program that records all keystrokes, monitors window and ... Read More
Gestionnaire de disques universel sysoobe.exe
X
Added by the Troj/Toader-A backdoor Trojan.
GLSetT32 smsiexec.exe
X
Added by the OPTIX-D TROJAN!
GNP Generic Host Process svchost.exe
X
Added by the Troj/Zapchas-F TROJAN/IRC backdoor!
golum services.exe
X
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
golumm services.exe
X
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
gqvqevs seeffkme.exe
X
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
graphic driver smss32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Gray Scrsss
X
Added by the Troj/GrayBrd-AM backdoor Trojan.
GrayPigeon_Hacker.com.cn shun101.exe
X
Added by the Troj/Hupigon-SX Trojan.
Gray_Pigeon_Server Srer.exe
X
Added by the Troj/Bckdr-IUQ backdoor Trojan.
Guard Service services.exe
X
Added by the Internet Antivirus Pro rogue anti-malware program.
Guard Service services.exe
X
Added by the Live Enterprise Suite rogue anti-spyware program.
gzg8wud2rcccs systs.exe
X
Added by the Troj/Agent-GDC Trojan.
h4m0v0k2 svshost.exe
X
Added by the Troj/IRCbot-YX worm and IRC backdoor.
HalifaxHowardCluster skinkers.exe
U
Howard the Weatherman desktop client from Halifax by Skinkers - marketing/messaging tool. Leave enabled if you want to receive messages ... Read More
HardDriveGuard SysRep.exe
X
Added by the HardDriveGuard rogue anti-spyware program.
harodin smss.exe
X
Unknown removable media worm. This should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
HBService32 SYSTEM.EXE
X
Added by the Infostealer.Hibik.A information stealing Trojan.
hdloker sxlntr.exe
X
Added by the Troj/RKDepo-A Trojan rootkit downloader. This trojan contains rootkit stealthing abilities. ... Read More
hellodolly shost.exe
X
Added by the YODO WORM!
helper sweden.exe
X
AsdPlug premium rate adult content dialer variant ... Read More
helpmanager spoler.exe
X
Added by the RANDEX.J WORM!
hErcUnes softhost.exe
X
Added by the GARROCH WORM!
Highspeeddownloader SetupClickHere.EXE
X
Added by a variant of the Trojan.StartPage malware. When infected with this program, your Internet Explorer home page will be hijacked to turbo-searc ... Read More
hitman pro surfright helper srhelper.exe
U
Related to Hitman_Pro A utility to start a number of Security Protection software. The can be started individualy. Note: located in C:\Program Files\ ... Read More
hoge svchost.exe
X
Added by the Uploader-X trojan.
hollaback slvhosts.exe
X
Added by the SDBOT.BMO WORM! ... Read More
Home Theater SchSvr SchSvr.exe
N
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
Host Process svchost.exe
X
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Host Services svhosts.exe
X
Added by the W32/Tilebot-AC worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
HostSrv sachostx.exe
X
Added by the Troj/Multidr-EP downloader Trojan.
Hot Key Kbd 2690 Daemon SK9910DM.exe
U
Multimedia keyboard manager - required if you use any special keys
Hot Key Kbd Daemon SKDAEMON.EXE
U
Multi-function keyboard driver. Allows the use of programmable keys on multimedia keyboards. Required if you use the additional keys. ... Read More
Hot Key Keybd 9910 Daemon SK9910DM.exe
U
Multimedia keyboard manager - required if you use any special keys
Hotfix Updat svdhost32.exe
X
Added by the GAOBOT.ZW WORM!
HotKey SFCsrvc.pif
X
Added by the W32/AutoIt-OC worm.
hp center UI ShadowBar.exe
X
User Interface for HP Center
HP Internet Center SURFBRD.EXE
N
Loads the HP Internet center surfboard on startup. HP Internet Center allows you to customize the multimedia keys on the fly without having to go the ... Read More
HP ProLiant System Shutdown Service sysdown.exe
Y
Utility that will automatically shut down a server if critical events are discovered. ... Read More
HP System Management Homepage smhstart.exe
Y
The HP System Management Homepage is a web-based interface that consolidates the infection retrieve by the other Insight agents running on the server. ... Read More
HPLJ Config SetConfig.exe
Y
Connects system to networked HP printer.
hpScannerFirstBoot scannerfb.exe
?
HP scanner related
hsim sexgame.exe
X
Unidentified malware
HTML TCP IP system.exe
X
Added by the Backdoor.Greybird.L trojan backdoor..
HTTP Disk Manager svshost.exe
X
A variant of the Sdbot worm and IRC backdoor.
httpd s_menu.exe
X
Added by the Win32.Tactslay backdoor Trojan.
huigezi SP00LSV.EXE
X
Hwp system_wc.exe
X
Added by the Adware.Eziin homepage hijacker.
I just want to say I love Milko and I need a drink svchost.exe
X
Added by the W32.Chiko removable drive worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
i/o controllers svcnet.exe
X
Added by the TROJ/TIBIK-B TROJAN! ... Read More
Ias svrmsg.dll
X
Added by the Troj/Backdr-D backdoor Trojan.
ICF svchost.exe:exe.exe
X
Added by the Trojan.Ozdok Trojan. Please note that C:\Windows\System32\svchost.exe is a legitimate program and should not be removed. Instead, you wo ... Read More
ICQ syscdd2.exe
X
Added by the W32/Sdbot-ON worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
icq lite scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
IC_KEY_3 spvic.exe
N
Instant Chess related
IE6 ssmss.exe
X
Added by the W32.Gaobot.DXO worm.
IE9 snowing.exe
X
Added by the W32/Rbot-DRD worm and IRC backdoor.
ieaccess surfya.exe
X
IEAccess premium rate adult content dialer variant ... Read More
Iehelper syslaunch.exe
X
Outwar adware downloader
igfxtras svchots.exe
X
Added by the W32/Autorun-AIW removable media worm.
iIWiper Systemwiper.exe
N
System Wiper from iI Software - allows you to clear the history of your activites from you computer. Run manually on a regular basis ... Read More
Image Remote Players sysvn.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
image transfer SonyTray.exe
N
Sony Image Transfer software provides direct image transfer from your digital camera to a PC - can be started manually. ... Read More
IMClass Svhosl.exe
X
Added by an unidentified WORM or TROJAN!
Indexing Helper svchost.exe
X
Identified as Troj/Bckdr-PUV variant. This infection should not be confused with the legitimate c:\Windows\System32\svchost.exe file. ... Read More
ine svchosts.exe
X
Added by the W32/Rbot-AIZ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands.
Read More
inet svhost.exe
X
Added by the Troj/Sdbot-M worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
INF0 SEXSPEED.EXE
X
Added by the Troj/Sexspeed trojan.
initnyuser svchosd.exe
X
Added by the TROJ_POPHOT.OJ Trojan.
Inom snmoo.exe
X
Added by the W32/Rbot-DPM worm and IRC backdoor.
Input Output Ms Driver sunio.sys
X
Related to the rogue anti-spyware program called SunshineSpy.
Install Pending Files sifxinst.exe
?
Uninstall program for Lanovation's Prism Deploy and Prism Pack adminstrators software deployement tools. For specific information see here. Is it requ ... Read More
InstallNAIProduct SETUP.EXE
?
Could be related to Network Associates Inc who own the McAfee VirusScan product amongst others. This was found in a directory called "VSC". Could it b ... Read More
Instance 001 sys[randomnumbers].exe
X
Added by the W32/Alasrou-A email address harvesting worm. When installed it also created the files %Temp%file1.exe and %System%searchpage.htm. ... Read More
Intel Physical Routine 1.2A stnetlib.exe
X
Added by the Troj/Backdr-AS backdoor.
Intel system tool svehost.exe
X
Added by the Troj/Agent-EBT Trojan.
InteliSys smss.exe
X
Advertisingvision adware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Intel® PROSet/Wireless Service S24EvMon.exe
?
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
Internal Memory File sysintmemory.exe
X
Added by the W32/Rbot-GKT worm and IRC backdoor.
Internat systray.exe
X
Added by the ALADINZ.P TROJAN! Note - this is not the legitimate systray.exe process ... Read More
internet smss.exe
X
Added by the Troj/Mifeng-B password-stealing trojan.
Internet Config svchosts.exe
X
Added by the SDBOT TROJAN!
Internet Connection Wizard stisvsq.exe
X
EasySearch adware
Internet Connection Wizard stisvsq1.exe
X
Identified by Kaspersky Antivirus as Trojan-Downloader.Win32.Small.ase.
Internet Security Service ssyst3m32.exe
X
A variant of the Backdoor.Win32.Rbot.btd family of worms and IRC backdoor Trojans. ... Read More
internet service syscfg32.exe
X
Added by the RBOT-QS WORM!
internet service ssvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
internet service svho0st98.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Internet Services systemdev.exe
X
Added by the SDBOT-PW WORM!
internet suspention story.exe
X
Added by the WOOTBOT.HV WORM! ... Read More
Internet Sweeper Sweeper.exe
N
Internet Sweeper - removes unnecessart left over files after browsing the internet ... Read More
internew system.exe
X
Added by the Troj/Cmjspy-BN backdoor Trojan.
Intervideo WinScheduler SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
intranet SYS32CFG.EXE
X
Added by the W32/Spybot-DW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Introducing Media Manager SPLASHA.EXE
N
MS Media Manager tour. Not required
iolo utility bar SMUtilityBar.exe
N
Iolo "System Mechanic" Utility_Bar - can be launched manually. ... Read More
ioroxxo microsoft sux system32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
IPConfig svcxnv32.exe
X
Added by the HACARMY.E TROJAN!
ipconfig svcxnw32.exe
X
Added by a variant of the HACARMY.E TROJAN! ... Read More
IPODT1000 ssipod1.sys
X
Added by the Troj/Haxdor-Gen rootkit.
IPv6 network support svchost.exe
X
Identified by NOD32 as a variant of Win32/TrojanProxy.Daemonize malware.
irc session sessionmgr.exe
X
Added by the SDBOT-ACE WORM!
IRDa Modem device #12 se633mxxd.sys
X
Added by a variant of the Goldun rootkit.
isp.com high speed slipgui.exe
U
Sliptstream Web Accelerator ... Read More
ISPup speeder.exe
X
Added by the WORM_RBOT.OU worm and IRC backdoor.
Java script.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
java system.exe
X
Added by the W32/Rbot-GWF worm and IRC backdoor.
Java Express sjehost.exe
X
Added by the W32/Sdbot-DNJ worm and IRC backdoor.
Java SATARaid siicfg.jar
U
This starts the Silicon Image SATA RAID array utility - useful if you use a Silicon Image SATA RAID controller. ... Read More
Java Update svchost.exe.exe
X
Added by the Troj/Agent-LMM Trojan.
JavaLOG services.exe
X
Identified as the Backdoor.IROffer variant malware.
jiahus svchqs.exe
X
Added by the Troj/WOW-HA password stealing Trojan for the online game World of Warcraft. ... Read More
johkjh srvd.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Slaper.e malware.
johnj3155 srvcc.exe
X
A variant of the Trojan Mailbot.
johnj3cd srvdc.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Slaper.e malware.
jon315 ssrvc.exe
X
Added by the Troj/Mailbot-BI Trojan.
jusodl severe.exe
X
Added by the Troj/QQRob-ADM Trojan.
Justice serious.exe
X
Added by the W32/Mirsa-B mass-mailing worm.
k3ym4n servicsmjr.exe
X
Added by the W32/Rbot-RW worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
kaa SVCHHS.exe
X
Added by the Troj/Agent-JKP Trojan.
kav svchsot.exe
X
Added by the Troj/QQRob-AE Trojan.
KAVPersonal svchost.exe
X
Added by the Troj/Lineage-V password-stealing trojan for the online game Lineage. ... Read More
KERNEL 32 SKERNEL32.com
X
Added by the W32/Semapi-A. This mass-mailing worm may display a message: "Unable to locate 'semapi.dll' reinstalling this application may fix this p ... Read More
Kernel Drivers systemproc.exe
X
Added by the Troj/DwnLdr-ISX Trojan.
Kernel Fault Safe smss.exe
X
Unidentified malware. Most likely a variant of the IRCBot family of worms and IRC backdoors. ... Read More
Kernel Safe Mode smss.exe
X
Added by the Mal/78Crack-A downloader Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
kernel services service32.exe
X
Added by the TROJ/PRX-B TROJAN! ... Read More
Kerneldll solidsteel.exe
X
Added by the Troj/Mdrop-BWB Trojan.
KernelFailCheck syscheck.exe
X
Identified as a variant of the Backdoor:Win32/Tofsee.F malware.
KernelFaultChk sms.exe
X
Added by the DEADHAT WORM! Do not confuse with the valid "kernelfaultcheck" which runs "dumprep 0 -k" or "dumprep 0 -u" ... Read More
Kernell systems.exe
X
Added by the TARNO.C TROJAN!
KernellApps32 smss.exe
X
Added by the Troj/Bancban-AN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
KeSDM Sdmapi.sys
X
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
key sysxp.exe
X
Added by the BEAGLE.AB WORM!
key sys_xp.exe
X
Added by the BEAGLE.AC WORM!
Key2 serve.exe
?
??
KeyLogger syssafe.exe
U
Added by the Spyware.Ghostlo surveillance software. If this program was not installed by yourself, it should be uninstalled immediately. ... Read More
keyplusplus startk.exe
U
Added by the Spyware.KeyPlusPlus surveillance software. Spyware.KeyPlusPlus is a spyware program that records information on the computer. ... Read More
KMX direct access sdcardX2.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
KSD2Service SVCH0ST.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Delf.azm malware.
kye_showicon shwicon.exe
?
USB Card Reader tray icon. Shows when the device is plugged in - is it required? ... Read More
Laptop Access Sage.exe
X
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
LiveUpdate smss.exe
X
Identified as Trojan-Spy.Win32.WinSpy.ae. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
LiveUpdate32 services.exe
X
Identified as Backdoor.Win32.VB.bau. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
lnternet Update sysmem.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
load svchost.exe
X
Added by the Troj/Lineage-K Trojan.
load32 swchost.exe
X
Added by the TURTA.A WORM!
load= shambl3r.exe
X
Added by the REMABL WORM!
LoadAudio snd2d3d.exe
X
Identified as a variant of the VirTool:Win32/DelfInject.gen!AF malware.
loads.exe suploads.exe
X
Popuppers.com adware downloader
Local runole service srvc32.exe
X
A TROJAN, Troj/Small-DP uses this file, after first downloading C:t.exe, C:n.exe or C:m.exe. It will also try to modify the Windows Explorer files. ... Read More
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Tilebot-CU worm and IRC backdoor.
Local Security Authority Subsystem Service scvhost.exe
X
Added by the W32/Opanki-BT worm and IRC backdoor.
Logical Disk Manager Provider spool.exe
X
Added by the Troj/Agent-DA trojan.
Logical Volume slvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
logitech camera Soundcane.exe
X
Added by an unidentified WORM or TROJAN!
Logitech RX slrhost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
LogService SVCH0ST.EXE
X
Added by the Troj/Paproxy-B Trojan.
lol.exe sys21.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
Lotus QuickStart smartctr.exe
N
Lotus central application, called SmartCenter, which runs on the Windows desktop. SmartCenter toolbar stretches across the top or, optionally, the bot ... Read More
Lotus SuiteStart suitest.exe
U
Puts the individual Lotus components in the system tray taskbar when you start Windows. Can be disabled via MSCONFIG -> Startup as "Lotus SuiteStart 9 ... Read More
LowRiskFileTypes svchost32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
LowRiskFileTypes sysguard.exe
X
Added by the Troj/FakeAv-UY fake-antivirus alert.
LSA scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
lsass start.bat
X
Added by the ZCREW TROJAN!
lsass svchost32.exe
X
Added by the W32/Rbot-GVX worm and IRC backdoor.
LTSMSG Shell32.exe
X
Added by the LEMIR.B TROJAN!
ltwob serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
LVSrvLauncher SrvLnch.exe
?
Related to Logitech products.
M1cr0s0ft S3rcurity systemconfig.exe
X
Added by the RBOT.BKB WORM!
Machine systemse.exe
X
Added by the W32/Rbot-BD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
mackafy.exe speedup.exe
X
Added by the W32/Rbot-GUX worm and IRC backdoor.
macromedia flash update scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
MailExport sendmail.dll
X
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
main system.exe
X
Added by the Troj/LdPinch-RC Spyware Trojan.
MainStart svcmfte32.exe
X
Added by the Troj/Stinx-A IRC backdoor.
Management System sxml.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Manager 006 svchost.exe
X
Added by the Troj/DwnLdr-DCZ Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Mapa de caracteres para NT sampaerio.exe
X
Added by the Troj/Bancos-PV password-stealing Trojan.
mascro soft sdk updates2 SDKrepair2.exe
X
Added by a variant of the W32/SDBOT.W WORM! ... Read More
Master svcghost.exe
X
Added by the BKDR_IRCBOT.RB worm and IRC backdoor.
McaFee virus detect program svchst.exe
X
Added by the W32.Debsis.A worm. W32.Debsis.A is a worm that spreads by copying itself to network shares and removable drives. ... Read More
MCAFEEIPS setup.exe
X
Added by the Trojan.Whitewell Trojan. Trojan.Whitewell is a Trojan horse that opens a back door on the compromised computer. ... Read More
MCX Updte scorti.exe
X
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
MDNS service.exe
X
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
MDSA Sentinel X smss.exe
U
Added by the Spyware.SentinelX surveillance software. This program should be uninstalled if it was not installed by yourself. This program should not ... Read More
Media Player Sysdll.exe
X
Added by a Troj/Banker variant!
Media Serial Number Service SVCH0ST.EXE
X
Added by the Troj/GrayBrd-BC backdoor Trojan. This infection should not be confused with the legitimate c:\windows\system32\svchost.exe that has a sim ... Read More
Media service SYSTEM64.EXE
X
Added by the RBOT.QV WORM!
Media Software UPdater sscs.exe
X
Added by the W32/Rbot-ABE. When started this infection connects to an IRC server where it waits for commands, and tries to delete the computer's I$ ... Read More
MediaFace Integration Sethook.exe
N
Fellowes Neato™ cd label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
media_stub stub.exe
X
Mini-Player,  IMESH related foistware.
Megadrv3 srosa.sys
X
Added by the W32.Beagle.GM rootkit.
MemConfig SetupIE.com
X
Added by the TAPLAK WORM!
Mespanger svchost.exe
X
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
Messager svchost.exe
X
Identified as a variant of the Trojan:Win32/Small.gen!AG malware. This infection should not be confused with the legitimate C:\Windows\System32\svchos ... Read More
MessagerStarter Freeserve StartMessager.exe
N
Messander svchost.exe
X
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
Messanger svchost.exe
X
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
Messanger s_menu.exe
X
Added by the Win32.Tactslay backdoor Trojan.
messenger SCANMSG.EXE
Y
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
Messenger Service service.exe
X
Added by the Troj/Dloadr-BVG Trojan.
messenger service updater svshost.exe
X
Added by the MYTOB.GC WORM! ... Read More
Messssanger svchost.exe
X
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
Mi7sft sdce scorti.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Micosoft Data Core shell32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Micosoft Data Core stuff svshosts.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Micosoft Startup systall.exe
X
Added by the W32/SdBot-GM worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
Micosoft Startup syscall.exe
X
Added by the W32/SdBot-JI worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Micosoftartup shrl.exe
X
Added by the W32/Sdbot-JQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
MicosoftStartup syxall.exe
X
Added by the W32/Sdbot-JR worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Micr Update soundblaster.exe
X
Added by the SDBOT.NP WORM!
Micr0s0ft Agent sxch0st.exe
X
A variant of the Worm.RBot.UTA family of worms and IRC backdoor Trojans.
micr0s0ft upd4t4z svchost32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
MICR0SOFT SVCH0ST SVCH0ST.EXE
X
Identified by AntiVir as TR/Spy.Agent.PV.2.
Micrcoft Exploerer spoolsal.exe
X
Added by the W32/Rbot-AKK worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Micrcoft Exploerer svchose.exe
X
Added by the W32/Rbot-ASL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Micrcoft Updat spoolsae.exe
X
Added by the W32/Rbot-AIB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Micrcoft Updat spoolsaex.exe
X
Added by the W32/Rbot-AJM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Micro SVC src.exe
X
Added by the W32/Rbot-Q worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
MicroedSoft Toolbar Smoked.exe
X
Added by the W32/Rbot-ALN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microft Exploerer spoolsac.exe
X
Added by the W32/Rbot-AMD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsft Updtes sarvice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsof Windows Host svhost32.exe
X
Added by the RBOT.ADY WORM!
Microsofot x386 System Monitor system32.exe
X
Added by the WOOTBOT.M WORM!
microsoft svchost.exe
X
Added by the ASTEF or RESPAN WORMS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Microsoft smssdriver.exe
X
The Troj/Roneve-A TROJAN places the file into the Program files folder, creating a sub-folder it calls Xerox.nt when doing so. ... Read More
Microsoft symtea.exe
X
Added by the W32.Spybot.AMTE worm. W32.Spybot.AMTE is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
Microsoft ssmss.exe
X
Added by the W32/Rbot-FZF worm and IRC backdoor.
Microsoft soundvol32.exe
X
Identified by Bitdefender as Backdoor.Spybot.DLN.
Microsoft sql.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft svchost32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft system32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft systern.exe
X
Unknown malware.
Microsoft svhcost.exe
X
Identified as a variant of the Backdoor.Win32.Rbot.dzw worm and IRC backdoor.
Microsoft scvhost32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft servicess.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft synstat.exe
X
Added by the W32/Sdbot-DIG worm and IRC backdoor.
Microsoft scheduler.exe
X
Added by the W32/Rbot-GUT worm and IRC backdoor.
Microsoft systemdtm.exe
X
A variant of the Backdoor.Win32.Rbot.gci family of worms and IRC backdoor Trojans. ... Read More
Microsoft sccvrhost.exe
X
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
Microsoft sqlservice.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Security.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft system.vbs
X
Unknown malware.
Microsoft spolsv.exe
X
Added by the Troj/PWS-BOO password-stealing Trojan.
Microsoft (R) Windows Configuration Backup Service svchost.exe
X
Added by the Backdoor.Ranky backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
Microsoft (R) Windows Configuration Manager svchost.exe
X
Added by the Backdoor.Ranky backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
Microsoft (R) Windows Network Latency Controller sp2vc.exe
X
Added by the Backdoor.Ranky backdoor Trojan. This infection also installs a Windows service of the same name and filename. ... Read More
Microsoft (R) Windows Protected Content Restoration Service services.exe
X
Added by the BKDR_AGENT.AGV backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\System32\services.exe. ... Read More
Microsoft .Net Framework servic.exe
X
Added by the Troj/Agent-GUU Trojan.
Microsoft ActiveX Debugger NT setdebugnt.exe
X
Added by the Troj/Bancos- Trojan. If you are infected with this infection you should immediately change all passwords to any online banking sites tha ... Read More
Microsoft Agent SVCH0ST.exe
X
Added by the W32/Narcha-A peer-to-peer worm.
Microsoft Agent snchost.exe
X
Added by the W32/Vanebot-AB backdoor worm.
Microsoft Agent suchost.exe
X
Added by the W32/Sdbot-DDD worm and IRC backdoor.
Microsoft Agent svqhost.exe
X
Identified as a variant of the WORM_RANDEX.AL malware.
Microsoft Agent shvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Agent sxchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft AutoUpdater svhost.exe
X
Added by the RBOT.QG WORM!
Microsoft Client Pc spoolsrv.exe
X
Added by the W32/Rbot-AQM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Com Port Manager svdhost.exe
X
Added by the W32/Sdbot-NI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Command C sshost.exe
X
Added by the W32/Rbot-CMK worm and IRC backdoor.
Microsoft Conf Ldr sysconf.exe
X
Added by a variant of the SDBOT TROJAN!
Microsoft Corp svchosts.exe
X
Added by the Troj/CeeInjec-E Trojan.
Microsoft Corp SQL Certificates sqlcer.exe
X
Added by the W32/Zybot-C worm with IRC backdoor.
Microsoft Corp Updates synet-ud.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Corp. Host Services svchosl.exe
X
Added by the W32/Rbot-FMZ worm and IRC backdoor.
Microsoft Corporaticn SQL Handler sqlhandler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Coyshader Runtime service.exe
X
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
Microsoft Critical Services svhhost.exe
X
Added by the W32/Agobot-AJA worm and IRC backdoor.
Microsoft Device Manager svcswin.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Microsoft Device Manager svchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft DirectX Spoolserv.exe
X
Added by the DINFOR WORM!
Microsoft DirectX SMSS32.exe
X
Added by the W32/SDBot-FP worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. This in ... Read More
Microsoft DLL Extensions SystemDll.exe
X
Added by the W32/Rbot-ADV worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
Microsoft DLL Host Service svcdllhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft DLL Host Service svcdllhst.exe
X
Added by the BKDR_AGENT.EAK backdoor Trojan.
Microsoft DLL Service svcdll.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft DLL System smsc.exe
X
Added by the W32/Tilebot-FY worm and IRC backdoor.
Microsoft DLL Verifier svhosts.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft DLL Verifier system33.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Driver Setup sysmngsr322.exe
X
Added by the Troj/Buzus-AS Trojan.
Microsoft Driver Setup ssqrm.exe
X
Added by the Troj/Agent-PNC Trojan.
Microsoft Explorer svapache.exe
X
Added by the W32/Rbot-VR worm. When started this infection connects to a remote IRC server where it waits for commands to execute. These infections ... Read More
Microsoft Firewall suvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Firewall 2.9 swo4.exe
X
Added by the Mal/Agent-NK malware.
Microsoft Genuine Logon svchost.exe
X
Added by the W32.Scrimge.A worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Microsoft HDA Protocol svhda.exe
X
Added by the W32/Agobot-AET worm and IRC backdoor.
microsoft help svh0st.exe
X
Added by a variant of the W32.SPYBOT WORM! ... Read More
Microsoft Help svchosl.exe
X
Added by the Troj/Agent-GPX Trojan.
Microsoft Helper soundcard.exe
X
Added by an unknown malware.
Microsoft Himu services.exe
X
Added by the W32.Himu.A@mm worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
microsoft host protocol svhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Host Scheduler svchostt32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft IIS syshost.exe
X
Added by the FRANCETTE WORM!
Microsoft IIS syshost.exe
X
Added by the W32/Francette-S worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Intellitype Pro speedkey.exe
U
Additional keyboard shortcuts on MS programmable keyboard
Microsoft Internal Service spoolsrv.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Internel Corporat smbvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Internet super.exe
X
Added by the Troj/Banker-DSM information stealing Trojan for online Brazilian banks. ... Read More
Microsoft Internet Explorer sysini.exe
X
Added by the Troj/Delf-LN Trojan. This infection also creates the file c:\windows\Roodaa.txt. ... Read More
Microsoft Internet Services Smss32.exe
X
Added by the RBOT.MS WORM!
Microsoft Intrenet Explorer systemR.com
X
Added by the W32/Rbot-SH worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
microsoft intrenet explorer Soundsyst.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft IPC system.exe
X
Added by the NULLBOT TROJAN!
Microsoft IPC svshost.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft IT Update svchsst.exe
X
Added by the RBOT-DH WORM!
MicroSoft Legal Syst3m32 Syst3m32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
Microsoft LSASS386 Protocol scvhost32.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft Machine system32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Manage Services sychost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Manage Services schost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft MSUPDATE SpoolSvc.exe
X
Added by the SXTB-A TROJAN!
Microsoft Network Host svc0host.exe
X
Added by the W32/Sdbot-AEN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft New Game 2 svehost32.exe
X
Added by the W32/Tilebot-I worm.
Microsoft Office svxhost.exe
X
Added by a variant of the WIN32.RBOT WORM!
Microsoft Office Studio scvhvst.exe
X
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
Microsoft OfficeToo svchosts.exe
X
Added by the W32.Dutan.A removable media worm.
Microsoft OfficeTool svchosts.exe
X
Added by the W32.Dutan.A worm.
microsoft outlook express protocol svchst.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft PC Health Remote Assistance File Open & Save controls sfrcdlg32.exe
X
Added by the W32/Rbot-AVY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Print Spooler scvhost.exe
X
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
Microsoft Printer Drivers scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft RDLL sysconf32.exe
X
Added by a variant of the SDBOT TROJAN!
Microsoft Redirec systen.exe
X
Added by the Troj/Bancos-FO password-stealing Trojan. This Trojan targets Internet Banking passwords, so if you are infected with this Trojan you sho ... Read More
Microsoft Registro svchostt.exe
X
Added by the Troj/Bancos-DH password-stealing trojan. If you are infected with this infection you should change any online banking passwords. ... Read More
Microsoft Restore scrgrd.exe
X
Added by the SPYBOT.BR WORM!
Microsoft Safe Mode Manager safemode.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft scvhost for windows scvhost.exe
X
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
Microsoft SCVHOST32 Protocol scvhost32.exe
X
Added by a variant of the RBOT WORM!
Microsoft sdk temp sdktemp.exe
X
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Secure Messenger.NET Service securitychk.exe
X
Added by the SDBOT.VT WORM!
Microsoft Security Center savservices.exe
X
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
Microsoft Security Monitor Process svcchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Security Update security32.exe
X
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
Microsoft Server Application Sound.exe
X
Added by the RBOT-NE WORM!
Microsoft Server Process svhst32.exe
X
Added by the W32.Relfeer worm. W32.Relfeer is a worm that spreads through network shares and file-sharing applications. It may also attempt to downloa ... Read More
Microsoft Service system32.exe
X
Added by the Troj/Kango-C IRC backdoor Trojan.
Microsoft Service sysreg11.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Service srvchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Service Boot sboot.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Service Controller services.exe
X
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
microsoft service drivers System.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Service Host Process svchost.exe
X
Added by the W32/Krynos-B WORM! It will send itself to email addresses it has identified on the infected computer. Found in the Windows Help folder. ... Read More
Microsoft Service Manager service32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft service pack2.1 svchost2.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Services services.exe
X
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
Microsoft Services svshost.exe
X
Added by the ALETS.B TROJAN!
Microsoft Services SMSS32.EXE
X
Added by the W32/Rbot-AD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Services Manual Contrl smsks.exe
X
Added by the WORM_MYTOB.NO mass-mailing worm and IRC backdoor.
Microsoft Servicez Manager servicemgrz.exe
X
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Session Manager Subsystem smss.exe
X
Added by the W32.Kalel.B@mm mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Microsoft Shell Detection svchost.exe
X
Unidentified malware. Most likely a worm of some sort.
Microsoft Sidewinder Game Controller Software SWTRAY.EXE
N
MS SideWinder game controller system tray icon. Available via Start -> Programs
Microsoft SMSS smss.exe
X
Added by the Troj/Dloadr-MG Trojan.
Microsoft Software sysinfo33.exe
X
Added by the RBOT.LS WORM!
Microsoft Sound Driver sound32.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft Sounds soundman.exe
X
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
Microsoft Spool 11 Service spool11.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spool 12 Service spool12.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spool 13 Service spool13.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spool 14 Service spool14.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spool Server for Win32 spoolsrv.exe
X
Added by the RANDEX.H WORM!
Microsoft Spool Service spool23.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spool Svc spoolsvc32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spooler Service svcwin32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Spooler Services Spoolsv.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft SQL Server Debug sqldebug.exe
X
Added by the W32/Tilebot-FF worm and IRC backdoor.
Microsoft SQL Services scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MicroSoft ssas3s1 SADASDA.exe
X
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
Microsoft SSISVRI32 Protocol ssisvri.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft SSL ssl.exe
X
Added by the W32/Cuebot-D worm.
Microsoft ssrsc update ssrsc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Star Window Service starwin32.exe
X
Added by the W32/Rbot-FNT worm and IRC backdoor.
Microsoft Star Window Service svcshoter.exe
X
Added by the W32/Vanebot-T worm and IRC backdoor.
Microsoft startup SoftwareUpdates.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Startup Manager sysservice.exe
X
Identified as a variant of the Trj/Botnet.A Trojan.
Microsoft Sum32 sum32.exe
X
Added by the W32/Rbot-YW WORM/IRC backdoor!
Microsoft Support sys32ms.exe
X
Added by the W32/Rbot-AHI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Synchronization Manager slhost.exe
X
Added by the SDBOT.YH WORM!
Microsoft Synchronization Manager svhost.exe
X
Added by the SDBOT-PY WORM!
Microsoft Synchronization Manager svchosts.exe
X
Added by the W32/Sdbot-LM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Synchronization Manager svxhost.exe
X
Added by the W32/Sdbot-ZU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Synchronization Manager screen.exe
X
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Synchronization Manager sexcam.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MicroSoft sys32 sysmsgr32.exe
X
Identified as the Backdoor.Wootbot.bce malware.
Microsoft System Administration system.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft System Checkup sysmgr.exe
X
Added by the SDBOT-OO TROJAN!
microsoft system debug services32.exe
X
Added by the RBOT.AKH WORM! ... Read More
Microsoft System Management system.exe
X
Unknown malware.
Microsoft System Monitor system.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
microsoft system nt svhost.exe
X
Added by the IRC/SDBOT.COU WORM! ... Read More
Microsoft System Startup svhost.exe
X
Added by the W32/Sdbot-AKG worm and IRC backdoor.
microsoft system update sysupdate.exe
X
Added by the SDBOT.DG WORM! ... Read More
Microsoft system Value sys57.exe
X
A variant of the Win32/Rbot.IKI family of worms and IRC backdoor Trojans.
Microsoft Task Manager scvhost.exe
X
Added by the W32/Mytob-IT worm and IRC backdoor.
Microsoft Updat services.exe
X
Added by the MSIL.Elasrofah Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services file. ... Read More
Microsoft Update Smss32.exe
X
Added by the RBOT.CB WORM!
Microsoft Update sys32cfg.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft Update systemi32.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft Update snlogsvc.exe
X
Added by a variant of the RBOT WORM!
Microsoft Update svhost.exe
X
Added by the RBOT-PI WORM!
Microsoft Update sysdll32.exe
X
Added by a Rbot variant infection.
Microsoft Update sys.exe
X
Added by the W32/Rbot-AJ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update sysdat.exe
X
Added by the W32/Rbot-GH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
Microsoft Update scvhost.exe
X
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update service.exe
X
Added by the W32/Agobot-GY worm and IRC backdoor.
Microsoft Update system32.exe
X
Added by the W32/Rbot-GTK worm and IRC backdoor.
Microsoft Update SP00lSV.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Update svschost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Update Sygate.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Update spool.exe
X
Added by the Troj/Agent-GJC Trojan.
Microsoft Update SetPoints.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Update 32 servic.exe
X
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update 32 spoolvs.exe
X
Added by the W32/Rbot-BBQ worm and IRC backdoor.
microsoft update 64 bit schvost.exe
X
Added by the RBOT.CAU WORM! ... Read More
Microsoft Update Machine servicz.exe
X
Added by the RBOT-HU WORM!
Microsoft Update Machine SP2.exe
X
Added by the SPYBOT.FP WORM!
Microsoft Update Machine system03.exe
X
Added by the RBOT-NM WORM!
Microsoft Update Machine systemll.exe
X
Added by the RBOT-JT WORM!
Microsoft Update Machine svshost.exe
X
Added by the RBOT.AK WORM!
Microsoft Update Machine scvhost.exe
X
Added by the RBOT-GS WORM!
Microsoft Update Machine servicez.exe
X
Added by the SPYBOT.BI WORM
microsoft update machine serviz.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Update Machine system08.exe
X
Added by the W32/Rbot-BAM worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update Machine System.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Update Machine svrhost.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
Microsoft Update Machine syspic9.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Update Manager scvhost.exe
X
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
Microsoft Update Manager svshost.exe
X
Added by the W32/Rbot-BAL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update Manager scvideo.exe
X
Added by the W32/Sdbot-CVP worm and IRC backdoor.
Microsoft update service systemm.exe
X
Added by a variant of the SDBOT WORM!
Microsoft Updater v2 services.exe
X
Added by the W32/AutoRun-BCI removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Microsoft Updaters SYSCONFIGS.EXE
X
Added by the W32/Rbot-DF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Updates systemc32.exe
X
Added by the RBOT-GR WORM!
Microsoft Updates svshost.exe
X
Added by the W32/Agobot-AIW network worm.
Microsoft Updates svehost.exe
X
Added by the W32/Rbot-GRW worm and IRC backdoor.
Microsoft Updates svdhost.exe
X
Added by the W32/Rbot-GVH worm and IRC backdoor.
Microsoft Updates service.exe
X
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
microsoft updates 5 usb sp3fixer.exe
X
Added by the W32/Rbot-ADS ... Read More
microsoft updating machine sysc0de.exe
X
Added by the RBOT.RB WORM! ... Read More
Microsoft uptime Service sysuptime.exe
X
Added by the W32/Rbot-ACG worm. This worm connects to an IRC server on startup where it waits for remote commands. ... Read More
Microsoft uptime Service sycuptime.exe
X
Added by the W32/Rbot-AHY worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Value Service spool.exe
X
Added by the W32/Rbot-GTD worm and IRC backdoor.
Microsoft Virual Machine sms.exe
X
Added by the RBOT-SP WORM!
Microsoft Visual SourceSafe services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
Microsoft Webserver svctrl.exe
U
Personal web server program which enables you to create and host a web server from your computer. Not required for most people ... Read More
Microsoft Windows system.exe
X
Added by the W32/Rbot-AMQ worm and IRC backdoor.
Microsoft Windows System.exe.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Windows 128bit Subsystem system12.exe
X
Added by the Troj/Ranck-CZ HTTP proxy server Trojan.
Microsoft Windows BDA Service svhba.exe
X
Added by the W32/Vanebot-P worm and IRC backdoor.

W32/Vanebot-P spreads:
- to computers vulnerable to common exploits, including ... Read More
Microsoft Windows Explorer Shell Subsystem shell32.exe
X
Added by the W32/Tilebot-CX worm and IRC backdoor.
Microsoft Windows HelpFile services.exe
X
Added by the W32/Tilebot-FQ worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\servic ... Read More
Microsoft Windows Security spvsper.exe
X
Added by a variant of the SDBOT WORM!
Microsoft Windows Services Sersices.exe
X
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Windows Services Edt ssvvcchhoosst.exe
X
Added by the W32/Rbot-FYF worm and IRC backdoor.
Microsoft Windows Session Manager Subsystem smss.exe
X
Added by the Troj/KillSec-A Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
Microsoft Windows Sound svghost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Sound svrhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Sound svshost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Sound Drivers sounddrivers.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows System syshost.exe
X
Added by the W32/Rbot-ASW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Windows System srwhost.exe
X
Added by the W32/Rbot-AWU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Windows System Kernel Initializer SysInt32.exe
X
Added by the Troj/Sdbot-EK backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
microsoft windows updata scvhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Microsoft Windows Update spools.exe
X
Added by the SDBOT.TD WORM!
Microsoft Windows Update svchos.exe
X
Added by the SDBOT.AC WORM!
Microsoft Windows Update svcshost.exe
X
Added by the FORBOT-CF WORM!
Microsoft Windows Update svmhost.exe
X
Added by the FORBOT-CH WORM!
Microsoft Windows Update svshost.exe
X
Added by the WOOTBOT.CJ WORM!
Microsoft Windows Update scvvhost.exe
X
Added by the FORBOT-DH WORM!
Microsoft Windows Update servcs.exe
X
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
Microsoft Windows Update swwhost.exe
X
Added by a variant of the WIN32.RBOT WORM!
Microsoft Windows Update svzhost.exe
X
Added by the W32/Forbot-EV WORM/IRC backdoor trojan, which also installs a new service called Microsoft Update. ... Read More
Microsoft Windows Update scrhost.exe
X
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
microsoft windows update sccvhost.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Microsoft Windows Update syssinfos.exe
X
Added by the W32/Rbot-FWR worm and IRC backdoor. W32/Rbot-FWR spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Microsoft Windows Update srshost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Windows Update symantec.exe
X
Added by the Backdoor.Belmoo backdoor. Backdoor.Belmoo is a Trojan horse that opens a back door on the compromised computer. ... Read More
Microsoft Windows Update Service services.exe
X
Added by the W32/Tilebot-DJ worm and IRC backdoor.
Microsoft Windows Updater svchostz.exe
X
Added by the DAEMONI-E TROJAN!
microsoft windows updater suvhost.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Microsoft Winsock svchost.exe
X
Added by the Troj/Bckdr-QLX backdoor Trojan.
Microsoft WinUpdate svh0st.exe
X
Added by the SPYBOT.DL WORM!
Microsoft WinUpdate syslx32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft WinUpdate syswin32.exe
X
Added by a variant of the SDBOT WORM!
Microsoft WinUpdates serm32.exe
X
Added by the RBOT.GE WORM!
Microsoft Word System sysword.exe
X
Added by the W32/Sdbot-ALY worm and IRC backdoor.
Microsoft Wxdate Syswu32.exe
X
Added by the SPYBOT.HZ WORM!
Microsoft's System Module Sysmodule.exe
X
The Troj/Bdoor-FJ backdoor TROJAN adds the file to allow an attacker unauthorized remote access. ... Read More
Microsoft(R) System Manager sysmgr.exe
X
Added by the Trojan.Donbot Trojan. Trojan.Donbot is a Trojan horse that sends spam emails and may also download files on to the compromised computer. ... Read More
Microsoft--Updates sxvhost.exe
X
Added by the RBOT-FH WORM!
Microsoft-Updates svxhost.exe
X
Added by the RBOT-CT WORM!
Microsoft? Operating System: svchost.exe
X
Added by the Troj/Agent-PAF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
MicrosoftCorp sysdiag64.exe
X
Added by the Troj/Agent-NXB Trojan.
Microsoftf DDEs Control soff.pif
X
Added by the W32/Rbot-AKH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoftf smss Control smss.pif
X
Identified as a variant of Backdoor.Win32.Rbot.gen worm and IRC backdoor.
Microsoftkeysd systemproc.exe
X
Added by the FORBOT-BI WORM!
Microsoftkeysd systemwin32s.exe
X
Added by the WOOTBOT.CO WORM!
microsoftkeysd systemwin32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
MicrosoftNAPC sysdiag64.exe
X
Added by the W32/AutoInf-AB removable media worm.
MicrosoftOEM smvss.exe
X
Added by the DEDLER-G TROJAN!
MicrosoftShell Shellcomm.exe
X
Added by the Troj/Bancban-QG Trojan.
MicrosoftSys SPOOLSYS.exe
X
Added by the PWSteal.Tarno.N password-stealing Trojan.
MicrosoftUpdate syshelper.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
MicrosoftUpdate svhest.exe
X
Added by the W32/Rbot-ES trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
microsoftupdates syshelped.exe
X
Added as result of a W32/Forbot-AZ worm infection ... Read More
MicrosoftValue syscnfg.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
Microsoftvirus sysoverload.exe
X
Added by the FORBOT-AL WORM!
Microsoft« ActiveX Debugger NT setdebugnt.exe
X
Added by the Troj/Bancos-CZ Internet banking trojan. This infection targets Brazilian banks. ... Read More
Microsoft® System Manager sysmgr.exe
X
Identified as a variant of the Trojan-Spy.Win32.Agent.cse malware.
Microsoft® System Mapper SysMap.exe
X
Added by the MAPSY TROJAN!
Microsong svchosts11.exe
X
Added by the Troj/Sdbot-EV backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
microssofts scvhosts.exe
X
Added by the Troj/Inject-GG Trojan.
microsystem snddrv.exe
X
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
Microszoft Update Mach1nezs svchst.exe
X
Added by the RBOT-ED WORM!
Microszoft Update Mach1nezs SVCOHST.EXE
X
Added by the W32/Rbot-EG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microtek Scanner Finder ScannerFinder.exe
N
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
Mims service services.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
Mini USB Driver svñhîst.exe
X
Added by the Troj/Proxy-CY Trojan.
Mircosoft DNS Service svchost.exe
X
Added by the Troj/IRCBot-AK worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Mircrosoft Svchost32 svchost32.exe
X
Added by the W32/Rbot-AZW WORM/IRC backdoor trojan!
Mirsft sdce servs.exe
X
Added by a variant of the Rbot worm and IRC backdoor.
MM Install setup.exe
?
Possibly Money Manager from Moneysoft?
Mmsystem Sachiel.sys.bat
X
Added by the W32/Sachiel-D worm.
ModularConfig syscnfg.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
Modulo 00FE0F01 Host Internet syschost.exe
X
Added by the Troj/Delf-KW backdoor Trojan.
monitor SD Monitor.exe
U
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
Monitor Resolution svmhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Monitoring Service svchost.exe
X
Added by the CONE.C WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
monitorsd SDMonitor.exe
U
Max Spyware Detector
MotherBoard Sounds SOUNDS.EXE
X
Added by the W32/Rbot-AAP WORM/IRC backdoor trojan!
MouTALS SMTPCONFS.DLL
X
Added by the Troj/QQHelp-DY Trojan.
Mp3 Loader Sysdata.EXE
X
Added by the W32/Avette-A MP3 virus.
MRU-Blaster Scheduler scheduler.exe
U
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
ms svhost32.exe
X
Added by the Troj/Lineag-AEV password-stealing Trojan for the online game Lineage. ... Read More
MS Config Loader svchos1.exe
X
Added by the AGOBOT.R WORM!
MS Scandisk Scandisk.exe
X
Added by the Backdoor.AntiLam backdoor.
MS Screen Saver scrsave.scr
X
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
MS Security systm.pif
X
Added by the W32/Rbot-AQN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
MS Security Hotfix service5.exe
X
Added by the GAOBOT.AG WORM!
MS Shadow Copy Software scsoft.exe
X
Added by the W32/Tilebot-JP worm and IRC backdoor.
MS Software Generic Host Process for Win32 Services svchost.exe
U
Added by the Spyware.AdvancedKey surveillance software. This software should be uninstalled if it was not installed by yourself. Note: This is not the ... Read More
MS Sound Config 16bit sndcfg16.exe
X
Added by the SDBOT.MB TROJAN!
MS SyS Restore sysrestore.exe
X
Added by the RBOT.XM WORM!
MS Update syshost.exe
X
Added by the EVAMAN-F WORM!
MS Updates syshosts.exe
X
Added by the MYDOOM.Y WORM!
ms valud loader Svhots.exe
X
Added by the W32/AGOBOT-SP WORM! ... Read More
MS Windows Update scguard.exe
X
Added by a variant of the RBOT WORM!
msaconfig smss.exe
X
Added by the Troj/Agent-GZT Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
MSChoExE suge.exe
X
Added by a variant of the RBOT WORM!
msconfig scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
MSConfig32 smss32.exe
X
Added by the Troj/Flood-EL TROJAN/backdoor.
MSConfig64 smss64.exe
X
Added by the Troj/Flood-ES Trojan.
Msconfige solari.exe
X
Added by the W32/Autorun-GU removable media worm.
MSCORE syscnfg.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
MSDLL syscnfg.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
mserv seres.exe
X
Added by the W32/Agent-LIL worm.
msgserv_ Syss.exe
X
Added by the FANTA TROJAN!
Msgtray sys16.exe
X
Added by an unknown VIRUS!
MSInstall smvss.exe
X
Added by the DEDLER-G TROJAN!
MSkernel32 System.exe 4820
X
Added by the TUXDER TROJAN!
MSKExe spamkiller.exe
U
McAfee SpamKiller
MSLARISSA SP00Lsv32.pif
X
Added by the W32/Assiral-B WORM! This worm will also install and run a file C:\WINDOWS\WinVBS.vbs to restrict user activity and terminate processes. ... Read More
mslivemsn svchost.exe
X
Added by the Troj/Delf-FIC Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
msn system32.exe
X
Added by the KITRO.A WORM!
MSN serv5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
MSN service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
MSN servicess.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
MSN scvhost.exe
X
Added by the W32/IRCBot-ZW worm and IRC backdoor.
MSN SexyMama.JPG.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSN systems.exe
X
Identified as a variant of the Backdoor.PosionIvy keylogging malware.
MSN scvrun.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
MSN svhost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
MSN Beta SVCHOSTdll.exe
X
Added by the W32/Rbot-WF WORM! File is found in the Windows system folder.
MSN BETA SERVICE.EXE
X
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
MSN Messanger System.exe
X
Added by the Troj/IrcBot-AFX Trojan.
MSN MESSENGER svhostes.exe
X
Added by the W32/Rbot-FAG worm and IRC backdoor.
MSN Messenger Updater SVCHSST.exe
X
Added by the W32/Rbot-BIR worm and IRC backdoor.
msn updates spoolsv32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
msn.exe son.exe
X
Added by the Troj/StartPa-GS trojan.
msnager32 svchostt.exe
X
Added by the WOMANIZ.E TROJAN! ... Read More
MsnExplorer SHCH.EXE
X
Added by the TROJ/BDOOR-EB TROJAN
MsnExplorer SVCHST.EXE
X
Added by the TROJ/BDOOR-EB TROJAN
MsnExplorer sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
MSNMSGRE swef.bat
X
IRC backdoor TROJAN or WORM!
MSNMSGRR swin.bat
X
IRC backdoor TROJAN or WORM!
msnmsgrs swiss.bat
X
IRC worm or backdoor trojan!
MSNMSGRS1 swed.bat
X
IRC backdoor TROJAN or WORM!
MSNPluginSrvcs sagate.exe
X
Added by the SDBOT.AKJ WORM!
MSOffice services.exe
X
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
msofficecfg ssvr.exe
X
Premium rate adult material dialer
msoft-updater23 slssystem.exe
X
Added by the W32/Rbot-ASR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
MSOLESTARTUP5.0 socrin.exe
X
Added by the Troj/Agent-GKH Trojan.
MSRegScan SGP.exe
U
Added by the Spyware.SpyGator surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
msregscan SSDemo.exe
X
Added by the Supremespy ... Read More
MSRegScan SBPDemo.exe
U
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
mssend svcnost.exe
X
Added by the Mal/Hrup-C malware.
mssfos sfool.exe
X
Added by the W32.Randex.EUS ... Read More
MSSQL2K6 sqlsrv.exe
X
Added by the W32/Tilebot-AV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
MSSVC svcsys.exe
X
Added by the FATOOS-C TROJAN!
MSSVC SVCHOST.EXE
X
Added by the Troj/Sandor-C backdoor trojan.
MSSYSTEM svcsys.exe
X
Added by the FATOOS-C TROJAN!
MStask svchost.exe
X
Added by the Troj/LdPinch-BV password-stealing Trojan.
MSUpdate svchosthlp.exe
X
Added by the BLASTER.T WORM!
msupdate soemuav.dll
X
Added by the Troj/Dloadr-ASQ Trojan.
Msupdate svcrhost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Msupdate svcshost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
MsVBdll sys32dll.exe
X
Added by the W32/Aimdes-C WORM to insure automatically running, it will exploit AOL instant messenger and harvest email addresses. ... Read More
msvcc25 svcchost.exe
X
Added by the W32/Sdbot-CSE worm and IRC backdoor.
msvcc25 salvage.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
msvccc66 svcchosst.exe
X
Added by the W32/Rbot-GLS worm and IRC backdoor.
MSWindows spool16.exe
X
Added by the Avkiller.Trojan.
MsWindows SysDate sysmsvc.exe
X
Added by the SPYBOT.FCD WORM!
MSWindowsUpdate Systern.exe
X
Added by the W32/Rbot-AFDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
MsWinLibrary scvhost.exe
X
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
MSWinlogon SynCor.exe
X
Added by the Troj/Agent-FZL Trojan.
mswspl searchbarcash.exe
X
SearchBarCash adware
MutexServiceEx Sys32Smm.exe
N
Webroot Sofware's discontinued "Privacy Master"
MVSvcs svchost.exe
X
Added by the Troj/Bishin-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
My App SMSSvc.exe
X
Added by the NEGASMS.A TROJAN!
My Search Bar Eq S4BAREQ.EXE
X
MySearch bar parasite
Myapp service.exe
X
Homepage hijacker
MyApp SVCHOST32.EXE
X
Added by the W32/Autorun-DW removable media worm.
myCIO.com Splash Splash.exe
N
Splash screen for McAfee VirusScan ASaP on-line scanner
MyVBApp SysNT.exe
X
Added by the Adware.ReferAd adware.
N/A system32.exe
X
Added by the AGOBOT-KU WORM! Note - has a blank entry under the Startup Item/Name field ... Read More
NAV Agent systems.exe
X
Added by the TARNO.C TROJAN! Note - this is not the valid Norton Antivirus entry of the same name ... Read More
NAV Auto Updates slserves.exe
X
Added by a variant of the W32/SDBOT WORM!
NAV Auto Updates slserver.exe
X
Unidentified Rbot worm.
NavAgent32 SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
navcheck shman.exe
X
Adult material premium rate dialer
navman_20 sysnav32.exe
X
Hijacker, possibly a CoolWebSearch variant
NAVUpdater32 services.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.WinSpy.l malware. ... Read More
NB Start Menu STARTM.EXE
N
Part of McAfee Nuts & Bolts. Provides the same control as MSCONFIG and can be used instead if you have N&B ... Read More
NDAv SVHOST.EXE
X
Added by the W32/Sumom-C instant messenger and P2P worm.
NDIS Adapter servenxpp.exe
X
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
NDIS TCP Layer Transport Device servenxpp.exe
X
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
Negative spain.exe
X
Added by the Troj/Banker-EXJ online banking Trojan.
Nero Burner svdhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Net services.exe
X
Added by the Troj/Bravo-C Trojan.
Net sllserv.exe
X
Added by the Troj/LegMir-BW Trojan.
Net Login serviecs.exe
X
Added by the Troj/Bckdr-QSV backdoor Trojan.
Net Login svchost.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.cps malware.
Net.Tcp Port Sharing Service SMSvcHost.exe
U
Used by Microsoft's .NET Framework 3.5.
Net.Tcp Port Sharing Service SMSvcHost.exe
Y
Windows service that provides ability to share TCP ports over the net.tcp protocol. ... Read More
net32 svhost.exe
X
Identified as Trojan.Clicker.
net64 svhoster.exe
X
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
NetBios Ext services.exe
X
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
NetBios Ext32 services.exe
X
Added by the W32.Mydoom.AN@mm worm.
netc svc.exe
X
Identified by Bitdefender antivirus as the Trojan.Dropper.LDPinch.Q malware.
netctrol sysi.dll
X
Added by the Troj/Singu-BB Trojan.
netpker svchost.exe
X
Added by the Troj/Banloa-ER Trojan.
netscreen-remote SafeCfg.exe
U
NetScreen_Remote VPN Client Software ... Read More
netservices svchostn.exe
X
Added by the SDBOT.GI WORM! ... Read More
NetStart svchost.exe
X
Added by the W32/Mkar-A backdoor virus. This infection should not be confused with the legitimate svchost.exe found in the Windows %System% folder. ... Read More
netsv32 sv.exe
X
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
netw svw.exe
X
network str.exe
X
Added by the W32.Kasimod.A worm.
Network Configuration Security Manager secure32.exe
X
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
Network DDE DSMA svchost.exe
X
Added by the W32/Sdbot-BDV worm and IRC backdoor.
Network Drivers Service svchost.exe
X
Added by the Troj/Xbot-F backdoor Trojan. This infection also creates the files C:\Windows\dlcomcnf.exe and C:\Windows\svchost.ini. This file, svchos ... Read More
Network Location Manager svshost.exe
X
Identified as a variant of the Backdoor.Win32.Rbot.eoo worm and IRC backdoor.
Network maneger svchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\svchos ... Read More
Network remote assistant svchost.exe
X
Added by the W32.Ranetif worm. W32.Ranetif is a worm that opens a back door and infects files. This infection should not be confused with the legitima ... Read More
Network Security secsvc.exe
X
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Network Security Provider svshost.exe
X
Identified as the Backdoor.Win32.SdBot.caq worm and IRC backdoor.
Network Service svchost.exe
X
CoolWebSearch parasite related. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Network Services Service.exe
X
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Networok Derve H1ots serop.exe
X
Added by the Troj/GrayBrd-I backdoor Trojan.
netx svx.exe
X
Identified by Bitdefender as a variant of the Trojan.Dropper.LDPinch.Q Trojan.
netzip svzip.exe
X
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
Net_Login svchust.exe
X
Identified as a variant of the Trojan-Clicker.Win32.Delf.cpm malware.
New Anti Virus System.exe
X
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
nForce Tray Options sstray.exe
N
nVidia nForce Taskbar Utility - quick access to the nForce2 "Sound Storm" control panel and related utilitys ... Read More
Nod32 Runtime sysregi.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
nonep sample.exe
X
Added by the Troj/Agent-OTO Trojan.
NoooH Sys.exe
X
Added by the W32.Alnuh worm. W32.Alnuh is a worm that copies itself to removable drives and closes Registry Editor, Task Manager, Command Prompt and F ... Read More
Norton Antivirus 2004 SYMANTECAV2.EXE
X
Added by the W32/Spybot-DY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Norton Auto-Protect SERVICES.EXE
X
Added by the Anker e-mail WORM!
Norton Live Updater Sochost.exe
X
Added by the GAOBOT.AO WORM!
Norton System svchosts.exe
X
Added by the Troj/Dloader-GB.
Norton System Doctor Sysdoc32.exe
N
Norton Disk Doctor from Norton Utilities. Automatically runs at start-up, major resource hog and best started manually form Start -> Programs. Delete ... Read More
Nortons AV SYSTEM scvchost.exe
X
Added by a Rbot variant infection.
NortonVPlus svchost.exe
X
Added by the Troj/Roamer-A Trojan.
NovastorSchedulerd SCHENGD.EXE
U
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
NSystemMonitor Symmon.exe
N
Norton Uninstall Deluxe - monitors programs being installed and logs them for removing later. Available via Start -> Programs for manual logging ... Read More
NT Logging Service Syslog32.exe
X
Added by the DONK.B or  DONK.C or DONK.L or DONK.M or DONK.O WORMS!
NT Logging Service sysmgr.exe
X
Added by the W32/Sdbot-OO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
NT Printing Service spoolsc.exe
X
Added by the Troj/Buzus-K Trojan.
NTFS Storage services.exe
X
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file c:\Windows\System ... Read More
NTFS-Drivers svchost.exe
X
Identified by Sophos as Mal/Generic-A. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
NtLmSsp system.com
X
Added by the Troj/Bckdr-BMR backdoor Trojan.
ntpgds synctime.exe
Y
Related to the Oracle Database software.
NTSet32 services.exe
X
Added by the Troj/WinSpy-C Trojan.
NTSF MICROSOFT SYSTEM soscks32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NTSF MICROSOFT SYSTEM scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NTSF MICROSOFT SYSTEM sysman.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
NTSF MICROSOFT SYSTEM systems.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ntuser spool.exe
X
Identified as a variant of the Trojan.Spy.XUL Trojan.
ntuser spools.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.jjt malware.
ntuser svchost.exe
X
Identified as a variant of the WORM_SOCKS.D malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
NT_Authority svchost.exe
X
Added by the W32/Kukoo-B worm.
NvClipRsv svchost.exe
X
Added by the DUMARU-AK WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
NvClipRsv swchost.exe
X
Added by the DUMARU-AK WORM!
NvCplDeamon servise.exe
X
Added by the W32/Autorun-BNY removable media worm.
NvCplSystem system.exe
X
Added by the Troj/Small-CBS Trojan.
NvMediaCenter2 stacvs.exe
X
Added by the Troj/Banker-EOV information-stealing Trojan for online banks.
nwss Sp0.exe
U
Added by the SpyOutside surveillance software. Uninstall this software unless you put it there yourself. ... Read More
OD SYSCNTR.EXE
X
HotVideo dialler
OEM32 Tools sres32.exe
X
Added by a variant of the SPYBOT WORM!
Oesi srts.exe
X
PurityScan delivers advertisements to your computer.
Office Monitor Word Exel R svch.exe
X
Added by the Troj/DwnLdr-GWW Trojan.
officeagent svcshost.exe
X
Added by the WIN32.TACTSLAY.A TROJAN! ... Read More
OfficeAgent svcrhost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
officeguardui svcss.exe
X
Added by the DEDLER-C TROJAN! ... Read More
OLE Module smp.dll
X
Added by the Trojan.SpBot Trojan.
Olive System Szchost.exe
X
Added by the MERCURYCAS.A TROJAN!
OmniPass scureapp.exe
U
OmniPass from Softex Inc. - secure password management software
Online Service svchost.exe
X
Added by the HOSTIDEL.B or HOSTIDEL.C or TARNO.B TROJANS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/St ... Read More
OnlinePCfix SmoothSurfer SS.exe
U
Smooth-Surfer - blocks banners, ads, popups, and cleans MRU and Recent file lists ... Read More
onluna sarvice sachost.exe
X
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
Onlune Sarvice sachost.exe
X
Added by the Troj/Multidr-E Trojan.
only23 SCVHOST.exe
X
Added by the Troj/Bckdr-PUQ backdoor Trojan.
Operalaunch svhost.exe
X
Added by the W32/Agent-IBD worm.
Outwar syslaunch.exe
X
Outwar adware downloader
P0w3rF1Y svchost.exe
X
Added by the Troj/Bdoor-MM backdoor Trojan.
paint.exe shnlog.exe
X
Added by the Troj/Puper-A trojan.
Panda File Shield Driver ShlDrv51.sys
Y
Driver used by Panda Antivirus.
PAX SYSTEM scrigz.exe
X
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
pc dynamics sdwmon32 sdwmon32.exe
U
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
PCCleaner SysCleaner.exe
X
Added by the PCCleaner rogue security software. This software is a clone of DriveCleaner and provides exaggerated scan results so that you purchase t ... Read More
PcEXPLODE specialfile.exe
X
Added by the RBOT.RH WORM!
PCHEasySearch STUpdate.exe
X
PCH EasySearch bar
pcServer server.exe
X
Ssppyy spyware
pcServer server.exe
X
Added by the SSPPYY spyware.
PCToolPro SysRep.exe
X
Added by the PCToolPro rogue anti-spyware program.
pctp_check startmon.exe
X
Main executable for PC Turbo Pro. This software is considered a rogue security product due to its use of malware to advertise itself. ... Read More
PDA Commander stisvc32.exe
X
Added by the W32/Agobot-TX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Perfomance Logs and Alert Spoolsw.exe
X
Added by the Troj/Agent-DJH backdoor Trojan.
Perfomance Settings svchost.exe
X
Added by the Troj/Tofger-AP backdoor Trojan.
Performance Logs and Alerts smlogsvc.exe
N
This is a Microsoft services that collects performance data from various applications running on a Windows computer. This service should be set to ma ... Read More
Persistence ! System spoolsvr32.exe
X
Added by the Troj/Spy-UO information-stealing Trojan.
Personal Computer scvhost.exe
X
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
PHIME2002A svchost.exe
X
Added by the W32/Puress-B worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
Photoshop svchost.exe
X
Added by the Troj/Cdopen-E Trojan. Note: This should not be confused with the legitimate svchost.exe in your Windows system folder. ... Read More
Picture Motion Browser Media Check Tool SPUVolumeWatcher.exe
U
Part of the software bundled with Sony Digital Cameras. This program will monitor for when media is inserted into your computer and then ask if you w ... Read More
pictureBUZZTray swtray.exe
N
System Tray access to PictureBUZZ on-line printing software from Streetwise Software. If you use the software set the page you use as a favourite in y ... Read More
Pigeon_Server server.exe
X
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
pile scr Save peak.exe
X
Added by the Troj/KillAV-ED Spyware Trojan.
Piracy SysUtil.exe
N
Software Piracy Alert feature bundled with PGWare software. Cries foul when it detects an 'illegal' version. The alerts are reported to disappear as s ... Read More
Play Port I/O Driver sysdrv32.sys
X
Added by the W32/Rbot-GXK worm and IRC backdoor.
Pluto! Pager srvhandle.exe
X
Added by the W32.Redplut worm. This worm spreads through open shares and installs these other files: C:\Windows\System32\lcc.exe, C:\Windows\System32 ... Read More
pnpsvc svchost.exe -k netsvcs
X
Added by Troj/StartPa-FP as a new service, using "Plug and Play svc service" as a displayname. ... Read More
pnpsvc_lock startsvs.exe
X
Browser hijacker
poen svch0st.exe
X
Added by the W32/Wantok-A worm.
PoliceService srksrv.exe
X
Unknown malware.
Policies server.exe
X
Added by the W32.Spyrat worm. W32.Spyrat is a worm that copies itself using removable drives and file-sharing networks. It also opens a back door on t ... Read More
Power Adapter svchost.exe
X
Added by the Troj/Maran-K Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Power Manager svchost.exe
X
Added by the Virus.Win32.Hidrag.a virus. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
PowerManager Svchost.exe
X
Added by the JEEFO VIRUS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
PowSet Setpow.nec
U
Energy Start (Energy Star) power configuration startup settings for certain Packard Bell computers. ... Read More
PPK Setup(Server) SEServe.exe
U
Programmable Power Key on Sony Vaio laptops. "Using the Programmable Power Key (PPK) button, collect your e-mail automatically with one key stroke. Yo ... Read More
precpop2 starter.exe
X
PrecisionPop adware
PrevxHome SAGUI.exe
Y
PrevX Home intrusion prevention software
PrevxPro SAGUI.exe
Y
Pro version of PrevX Home intrusion prevention software
print services spolserv32.exe
X
Added by the RBOT.ZP WORM! ... Read More
print sharing start.bat
X
Added by the ZCREW TROJAN!
Print Spool Handler spooler.exe
X
Added by the W32/Codbot-X worm.
Print Spooler Spoolsv.exe
X
Added by the CIADOOR.B TROJAN! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.exe ... Read More
Print Spooler spoolsvc32.exe
X
Added by the SDBOT.BB TROJAN!
Print Spooler spools.exe
X
Added by the RBOT-LD WORM!
Print Spooler spool.exe
X
Added by the Troj/Bdoor-IS backdoor trojan.
Print Spooler spoolsv.exe
Y
Windows service that loads files to memory for later printing.
Print Spooler Service SpoolSvc222
X
Added by the W32/Bobax-EA worm.
Printer Spyassault.exe
X
Spyware remover" of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
printer sysprinter.exe
X
Added by the TROJ_SMALL.ZY TROJAN! ... Read More
printer SpyAssaultScanner.exe
U
SpyAssault keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
Printer Cpl SPOOL32.EXE
X
Added by the W32.Kangero.A worm. W32.Kangero.A is a worm that copies itself to mapped drives. It also lowers security settings on the compromised comp ... Read More
Printer Services spool.exe
X
Added by the W32/Rbot-RL worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
Printer spool Service spool.exe
X
Added by a variant of the SDBOT WORM!
Printer Spooler spooler.exe
X
Added by the Troj/Delf-JJ Trojan! File is found in the root of the C: drive.
Printer Spooler spooler32.exe
X
Added by the W32/Sharp-L IRC backdoor Trojan.
Printer Spooler spoolsv.exe
X
Identified as a variant of the IRC-Worm.Win32.Small worm.
printer spooler subsystem spoolss.exe
X
Added by a variant of the WIN32.RBOT WORM! - Note - this is NOT the legitimate Windows spoolss.exe process, located in the Winnt\System32 or Window ... Read More
printmngr system.exe
X
Added by an unidentified TROJAN!
PrintSpoolSv System.exe
X
Added by the BDOOR-S TROJAN!
Processor svchost.exe
X
Added by the Troj/AdClick-FR Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
ProcService service32.dll
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Programm manager SVCHOST.EXE
X
Added by the W32.Sayudio virus. W32.Sayudio is a virus that infects .exe files on the compromised computer. This infection should not be confused with ... Read More
proteção de tela ssmaze.scr
X
Added by the BANCBAN-FB TROJAN! ... Read More
protect SHVRTF.EXE
U
PC_Angel takes a 5-second snapshot of the current system registry each time the PC boots up. In the event of a crash, PC ANGEL will retrieve everythin ... Read More
ProtectingTool SysRep.exe
X
Added by the ProtectingTool rogue anti-spyware program.
ProtocolControlStat smsxir32.exe
X
Added by the Troj/Stinx-L Trojan.
ProtocolDiskChk ssrms.exe
X
Added by the Troj/Bdoor-ML backdoor Trojan.
ProtocolDiskChk svcvlw32.exe
X
Added by the Troj/Stinx-Y IRC backdoor.
ProtocolModuleCmd svchon32.exe
X
Added by the BKDR_BREPBOT backdoor.
Provides secure connections to internet and LAN computers. secsrv.exe
X
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
PSC main sttool32.exe
X
Identified by Kaspersky Antivirus as Trojan.Win32.Obfuscated.ev.
PService svcnow32.exe
X
Added by Troj/Spybot-DJ, a TROJAN, and found in the Windows system folder.
PsY service.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
pushbot service5.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
pushbot service52.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
QQ sendmess.exe
X
Added by the SEMES TROJAN!
qq svcorer
X
Added by the Troj/QQPass-AKA password-stealing Trojan.
QQKAV scvhsot.exe
X
Added by the W32/QQRob-ABU worm.
QTSvc shman.exe
X
Premium rate adult content dialler
QTSvc ssvr.exe
X
Premium rate adult content dialler
Quick Heal Helper Service WSC scanwscs.exe
Y
Related to the Quick Heal security products.
quicktime shch.exe
X
Added by a variant of the TROJ/BDOOR-EB TROJAN! ... Read More
QWS3270 Sessions sessions.exe
U
QWS3270 Secure terminal emulation software
RA Server Slave.exe
X
Added by the Troj/Bdoor-ABJ backdoor Trojan.
random filename svchost.scr
X
Added by Troj/Bancban-BK. This infections attempts to steal passwords for certain Brazilian banking sites. Found in the %System%of Windows. ... Read More
rare smmain.exe
X
Added by the Troj/Zlob-ABZ Trojan.
ravshell SVCH0ST.EXE
X
Added by the Troj/SpyAge-C Trojan. Troj/SpyAge-C includes functionality to access the internet and communicate with a remote server via HTTP and will ... Read More
ravtask svch0st.exe
X
Added by the Troj/Nofere-B Trojan.
RAX SYSTEM scrigz.exe
X
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Realplus sserver.exe
X
Added by the Troj/Paltus-A Trojan.
real_sl svchost.exe
X
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file C:\Windows\System ... Read More
Recycle Bin Handler 2005 system.exe
X
Added by the Troj/Bdoor-HO .
reg2.0 SVCH0ST.EXE
U
Added by the Spyware.eSpyNow surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
RegCleaner SYSio32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! Note - do not confuse this with the popular RegCleaner registry cleaner freeware ... Read More
RegDone services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
regedit svchost.exe ccRegVfy
X
Added by the Trojan.Rona ... Read More
reggsdg spoolserv.exe
X
Added by the SDBOT-MS WORM!
RegHelp svchosts.exe
U
SpyGraphica spy software - "Stealth monitoring of ALL PC or Network Activity with DVD-like playback. EVERY keystroke can be e-mailed in a detailed ... Read More
Registry ShakiraPics.jpg.vbs
X
Added by the VBS.VBSWG.AQ@mm worm.
Registry Server.exe
X
Added by the Troj/Small-ALO backdoor Trojan.
Registry System16 Checkup Monitor SystemReg16.exe
X
Added by a variant of the RBOT WORM!
registry system166 checkup monitor SystemReg166.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Registry Value Name service.exe
X
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
RegistrySettings SystemReg.vbs
X
Added by the VBS/Ediboy-B WORM!
regmon svchost.exe
X
Added by the W32/Gladis-A worm. This infection should not confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
regrun sory.exe
X
New Purityscan Variant
regsvc systune.exe
U
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
regsvc systune
U
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
RegSvc32 svchost.exe
X
Added by the Mal/VB-ABH malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
reg_del setup.exe
X
Added by the Troj/Bdoor-BDT backdoor Trojan.
reg_run Systen.exe
X
Added by the Troj/Bancos-BS TROJAN!
Reg_WFT scanreg32.com
X
Added by the Troj/SennaSpy-F trojan.
Reload Browse svchosts.dll
X
Added by the Adware.TopAV which replaces the Windows wallpaper with a fake virus alert message containing links to topantivirus.biz or Spyaxe and issu ... Read More
Remote Acces servet.exe
X
Added by the Troj/Dloadr-AYT Trojan Downloader.
Remote Access Slave Synchost.exe
X
Added by the RIPJAC TROJAN!
Remote Administrator Service SERVICE.EXE
X
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
Remote Administrator Service systemram.exe
X
Added by the Troj/Radnag-B backdoor trojan.
Remote Break Manager svshost.exe
X
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
Remote Connection svchost.exe
X
Added by the Troj/Singu-AF Trojan. This infection should not be confused with the legitimate file of the same name found in the C:\Windows\System32 f ... Read More
Remote Connection Mnage svchost.exe
X
Added by the Troj/GrayBir-H backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Remote Decrypt Services svshost.exe
X
A variant of the W32/Rbot-GQR worm and IRC backdoor.
Remote Desktop Help Session Manager sessmgr.exe
U
Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Depen ... Read More
Remote Displays Service svshost.exe
X
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
Remote Log ServeHost.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
Remote Neon Services svshost.exe
X
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
Remote NetBIOS Manager svshost.exe
X
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
Remote NTstat Services svshost.exe
X
A variant of the Backdoor.Sdbot.awe family of worms and IRC backdoor Trojans.
Remote Plugins Manager svshost.exe
X
Added by the Troj/BDoor-AHJ Trojan.
Remote Procedure Call (RPC) Lo svchcst.exe
X
Added by the Troj/GrayBrd-K backdoor Trojan.
Remote Public Services svshost.exe
X
A variant of the W32/Rbot-GQR worm and IRC backdoor.
Remote Republic Services svshost.exe
X
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
Remote Run Services svshost.exe
X
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
Remote Time Pluger svshost.exe
X
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
Remote Transfer Manager svshost.exe
X
Added by the W32/Rbot-GQR worm and IRC backdoor.
Remote Win32 Services svshost.exe
X
Added by the Troj/IRCbot-YW worm and IRC backdoor.
Remove 54tr10 smss.exe
X
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
ResearchSpy suspects.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
reseurce svchost.exe
X
Added by the Troj/Lineage-AI password-stealing Trojan for the online game Lineage. This infection should be confused with the legitimate file found at ... Read More
RGB video output svkvpn.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
RHSI SHS SHS.exe
N
Rogers Hi-Speed Internet software. "Should you ever lose access to your Rogers Hi-Speed Internet connection or e-mail, the Self-Healing Software (SHS. ... Read More
RjLyraInstaller setup.exe
?
??
rmalt Setup.exe
X
Added by the Troj/Clicker-CS Trojan.
RNBOStart sentstrt.exe
U
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
Roflcopteur seman.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
rollbk sysup.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
rollbk svosm.exe
X
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
Rout111 serv454.exe
X
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
rp Systry.exe
X
Added by the Troj/RevPack521 trojan.
rpc Win32 shost32.exe
X
Added by the W32/Rbot-ABL worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
rpc win32 spoolscv.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
RPCall_<ComputerName> smhost.exe
X
Added by the Troj/Redplut-B Trojan.
RPCser32g services.exe
X
Added by the W32/Ritdoor-C worm and backdoor Trojan.
RPCserv32 SERVICES.EXE
X
Added by the MyDoom.AN WORM! File is found in the Windows directory.
RPCserv32g services.exe
X
Added by the W32.Bobax.AA mass-mailing worm.
ruin system32.exe
X
Added by the Troj/Delf-JM Trojan!
run services.exe
X
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
Run Services as Application svcrun.exe
X
Added by the Troj/Dloader-NY trojan.
Run StartupMonitor StartupMonitor.exe
U
Mike Lin's StartupMonitor, throws up an alert and asks your permission every time any change is made to your start-up configuration, either in the re ... Read More
run windows servic.bat
X
Added by the REBOOT-AP TROJAN! ... Read More
run= svcinit.exe
X
CoolWebSearch parasite variant
run= smsrun16.exe
Y
Microsoft Systems Management Server (SMS) related - program that reads SMSRUN16.INI on clients running Win 3.1, Windows for Workgroups, Win95, or OS/2 ... Read More
run= sec5dec.exe
X
Added by the ATAK.G WORM!
RunJava2 systtray.exe
X
Added by the W32/Autorun-AT removable media worm.
Runner svchost.exe
X
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
Runonce smss.exe
X
Added by the W32.SillyDC worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
RunProg Server.exe
X
Added by the OPTIX.04.A TROJAN!
runservices services.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Small.qo malware. This infection should not be confused with the legitimate C:\Windows\System32\serv ... Read More
Run[0] syscnfg.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
Rwx svhosts.exe
X
Added by the Troj/Subzero-B trojan.
ryan1918 servidevice.exe
X
Added by the W32/Checkout!0e4a3c52 mass-mailing worm.
r_server SERVICE.EXE
X
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
S0undMan svch0st.exe
X
Added by the LOVGATE.AB WORM!
S3 Internal Chip s3serv.exe
X
Added by the AGOBOT-DD WORM!
S3apphk S3apphk.exe
?
S3 graphics related?
S3Hotkey s3hotkey.exe
?
S3 Video driver related. What does it do and is it required?
S3Mon S3Mon.exe
?
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
S3Psddr s3gnbm.sys
Y
S3 ProSavage(DDR) & Twister Miniport Driver.
S3SSavage s3ssavm.sys
Y
S3 Savage 3D graphics driver.
S3TRAY S3Tray.exe
N
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
s3tray2 s3tray2.exe
?
Same as the s3tray entry in this table?
S3TRAYHP S3trayhp.exe
?
S3 Video driver related. What does it do and is it required?
S4F S4F.exe
U
S4F internet filtering software
s4helper s4helper.exe
X
Searchcentrix hijacker
SA Sa3.exe
?
Logitech QuickCam driver. Is it required?
SA Service SAservice.exe
?
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
Sa3dsrv Sa3dsrv.exe
N
3D sound extension for Windows
saap saap.exe
X
180Solutions/N-Case adware variant
SABKUTIL SABKUTIL.sys
Y
Related to Super Ad Blocker.
Sabreserver SABSERV.EXE
N
Airline reservation software from Sabre. Available via Start -> Programs
sac sac.exe
X
180Solutions/N-Case adware variant ... Read More
SACC sacc.exe
X
Added by the Adware.SurfAccuracy adware.
sacmemds smcntlwio.exe
X
Added by the Troj/Mailbot-BZ IRC backdoor Trojan.
sads sdsa.exe
X
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
Safe SafeWin.exe
X
Added by the FOCOSENHA TROJAN!
SafeFighter SafeFighter.exe
X
Added by the SafeFighter rogue anti-spyware program.
Safeguard 2009 sf2009.exe
X
Added by the SafeGuard 2009 rogue anti-spyware program.
Safeguard.exe Safeguard.exe
X
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
SafeHardDrive SysRep.exe
X
Added by the SafeHardDrive rogue PC optimization software.
safehousesystemtray SDWTRAY.EXE
U
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
SafeInstall.exe SAFEIN~1.EXE
N
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
SafeOFF SafeOff.exe
N
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
SafePcAv SafePcAv.exe
X
Added by the SavePcAv rogue anti-spyware program.
SafePCTool SysRep.exe
X
Added by the SafePCTool rogue anti-spyware program.
SafePrivacy SafePrivacy.exe
X
Added by the Koren Rogue anti-spyware program called SafePrivacy.
SaferScan SaferScan.exe
X
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
SafeSearch safesearch.exe
X
AutoSearch parasite variant
SafeStrip SafeStrip.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeStripReminder SafeStripReminder.exe
X
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
SafeSurfingUpdate SSUpdate.exe
X
DyFuCa/MoneyTree parasite variant
SafeSys SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
SafeSysDrv SafeSys.exe
X
Added by the WORM_AUTORUN.DMI removable media worm.
Safety Anti-Spyware 3 Safety Anti-Spyware 3.exe
X
Added by the Safety Anti-Spyware rogue security program.
SafetyKeeper SafetyKeeper.exe
X
Added by the SafetyKeeper rogue security program.
SafetyKeeper Security Service SafetyKeeperSvc.exe
X
Added by the SafetyKeeper rogue security program.
Sagate Security Firewall sagate.exe
X
Added by the GAOBOT.BOW WORM!
SAgent2ExePath SAgent2.exe
N
Seiko Epson printer status agent. Disable if printer is not used often
sagentservice Sagent.exe
U
Added by TinySpyAgent **Note this application must be manually installed.
sagnt sagnt.exe
X
Adware web downloader
SAHagent Sahagent.exe
X
ShopAtHomeSelect parasite
sahbundle shop1003.exe
X
ShopAtHomeSelect adware ... Read More
saie saie.exe
X
180Solutions/N-Case adware variant
saihoi saihoi.exe
X
Added by the Troj/Mdrop-CUT Trojan.
SAIMON SaiMon.exe
U
Saitek joystick driver
sain sain.exe
X
180Solutions/N-Case adware variant
sais sais.exe
X
180Solutions/N-Case adware variant
SaiSmart SaiSmart.exe
?
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
SaitekAutoConfigure saicnfig.exe
U
Configuration for Saitek game controllers
sakemsneql simenu.exe
X
Added by the SDBOT.BTO WORM! ... Read More
Sakora Sakora.exe
X
Identified as a variant of the Trojan.Downloader Matcash malware.
SalaatTime SalaatTime.exe
N
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
Salestart startmon.exe
X
Added by the ErrorProtector misleading application. ErrorProtector is a misleading application that gives false reports of errors on the computer. ... Read More
Salestart strpmon.exe
X
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. A va ... Read More
Salestart stm.exe
X
Identified as a variant of the Trojan.Fakealert.origin Trojan.
Salestart(1) strpmon.exe
X
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. A va ... Read More
salm salm.exe
X
180Search adware
salm salm.exe
X
180Solutions/N-Case adware variant
saly saly*****.exe
X
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
sam-sung Sam-sung.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
SAMcal SAMcal.exe
U
SamCal - calendar/reminder program
SamPs svcvc.exe
X
Added by the Backdoor.Riken backdoor. Backdoor.Riken is a Trojan horse that opens a back door and steals information from the compromised computer. ... Read More
samsong Samsong.exe
X
Added by the SDBOT.BNE WORM! ... Read More
Samsung Samsungs.exe
X
Added by an IRC_TROJAN variant!
Sandbox Sandbox.sys
Y
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
Sandboxie Service SandboxieServer.exe
Y
Installed by the Sandboxie security software.
SandIcon SandIcon.exe
N
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
Sandvich Sys32Disp.exe.exe
X
Added by the W32/Autorun-BOP removable media worm.
SANS Service sansv.exe
X
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
Santa Bastards Bitch SANTAS.BITCH.txt
X
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
SAP control service SAPCtrlSer.exe
Y
Added by the abylon CRYPTDRIVE file encryption software.
sapnet sapnet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
sapp sapp.exe
X
180Solutions/N-Case adware variant
SASDIFSV SASDIFSV.SYS
Y
Driver for the Super Antispyware security software.
SASENUM SASENUM.SYS
Y
sasktel accelerated dial-up sasktelgui.exe
Y
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
SASKUTIL SASKUTIL.sys
Y
Driver associated with the Super Antispyware security software.
SATA bus driver satau325.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
satad640 satad640.dll
X
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
SATARaid SATARaid.exe
U
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
satau320 satau320.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
satdll satdll.dll
X
Added by the Troj/Haxdoor-AS information stealing Trojan.
satmat satmat.exe
X
Transponder parasite updater/installer
satmmc satmmc.dll
X
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
sau sau.exe
X
Added by the Adware.180Search adware.
SAUpdate SAUpdate.exe
U
Big Brother from Quest Software. System and network monitor
SAutoLaunchExe SAutoLaunchExe.exe
U
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
SAVAgent SAVAgent.exe
Y
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
Save Save.exe
X
Rebranded version of SaveNow advertising spyware
SaveArmor SaveArmor.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveArmor Security Service SaveArmorSvc.exe
X
Added by the SaveArmor rogue anti-spyware program.
SaveDate SaveStartDate.Exe
X
Unidentified adware
SaveDefender SaveDefender.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefender Security Service SaveDefenderSvc.exe
X
Added by the SaveDefender rogue anti-spyware program.
SaveDefense SaveDefense.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveDefense Security Service SaveDefenseSvc.exe
X
Added by the SaveDefense rogue anti-spyware program.
SaveKeep SaveKeep.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveKeep Security Service SaveKeepSvc.exe
X
Added by the SaveKeep rogue anti-spyware program.
SaveKeeper SaveKeeper.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveKeeper Security Service SaveKeeperSvc.exe
X
Added by the SaveKeeper rogue anti-spyware program.
SaveMyWork SaveMyWork.exe
U
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
Savenow SaveNow.exe
X
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
Savenow savenow.exe
X
Added by the SPREDA.B VIRUS!
SaveSoldier SaveSoldier.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SaveSoldier Security Service SaveSoldierSvc.exe
X
Added by the SaveSoldier rogue anti-spyware program.
SAVRT SAVRT.SYS
Y
Related to Symantec Antivirus.
SAVRTPEL SAVRTPEL.SYS
Y
Driver associated with Symantec security products.
SAVScan SAVScan.exe
Y
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
saw saw.exe
X
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
Say The Time 5.0 SAYTIME.EXE
U
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
SB SB.exe
U
Acer Soft Button on Acer Tablet PCs
SB SpywareBomber.exe
X
Added by the SpywareBomber program. SpywareBomber is a misleading application that will detect clean and nonmalicious registry keys and files as being ... Read More
SB Watchdog SBWatchdog.exe
X
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
sb0t service1.dll
X
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
SBAMTray SBAMTray.exe
Y
Installed with various Sunbelt security products, this file is the tray icon through which the user manages the program.  The file will have different ... Read More
SBAutoUpdate sbautoupdate.exe
U
SpywareBlaster auto-updater
sbbotdi sbbotdi.sys
Y
Added by the SPEEDbit Video Accelerator video acceleration program.
sbchosy.bat sbchosy.bat
X
Added by the Troj/GrayBir-AA backdoor Trojan.
SBDrvDet SBDrv.exe
U
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
sbdrvdet sbdrvdet.exe
N
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
sbfxi sbfxi.dll
X
Added by a variant of the Goldun.Fam Trojan.
SBHC sbhc.exe
X
SuperBar parasite - uninstall available here
sbmpop SBMPop.exe
X
SearchByMedia adware
SBMX sbmx.exe
N
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
SBR2009F SystemBooster2009.exe
X
Added by the SystemBooster2009 rogue anti-spyware program.
sbrige sbrige.dll
X
Added by a variant of the Goldun.Fam Trojan.
sbss Launcher sbss.exe
X
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
sc scrubxp.exe
N
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
sc sc.exe
U
Watchdog 2.0 Software - monitoring program
sc23exec sc23exec.exe
?
Possibly related to a digital camera
SC3300CC SC3300CC.exe
Y
SiPix digital camera Twain device driver
scain s030109.Stub.exe
X
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
scamdisk SVOHOST.exe
X
Added by the LEWOR.D WORM! ... Read More
Scan Register SSMS.EXE
X
Added by the W32/Rbot-AT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Scan&Repair2006.exe Scan&Repair2006.exe
X
Added by the ScanandRepair security risk.

According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
scandisc satan.exe
X
Added by the GregStar backdoor TROJAN!
ScanDisk ScanDisk.exe
X
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
scands32.exe scands32.exe
X
Added by a variant of the Adclicker TROJAN!
Scandsk2 scandsk2.exe
X
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scandskx.exe scandskx.exe
X
Added by the Troj/Dloadr-ARM Trojan.
Scanner Detector SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
scanpanel ScnPanel.exe
?
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
scanregg scanregg.exe
X
Added by the Troj/ScKeylog-A keylogger.
ScanRegistry scanregv.exe
X
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
ScanRegistry Scanregw.exe
Y
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
ScanRegistry Scanregw.exe
X
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
ScanRegistry scanregw.exe
X
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
ScanSpyware v * Scanner.exe
X
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
scApp scApp.exe
X
Added by the W32/Stando-E worm.
SCardSvr scardsvr.exe
N
Related to SmartCard readers and sometimes uses lots of system resources
SCardSvr SCardSvr32.Exe
X
Added by the MOFEI.B WORM!
sccbxenr sccbxenr.exe
X
Added by the Troj/StraDr-A Trojan.
scdemuapp.exe SCDEmuApp.exe
U
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
scheck scheck**.exe
X
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
scheck45 scheck45.exe
X
Related to unknown Malware - hidden installer associated with it
schedl schedl.exe
X
Added by the W32/VB-DVW worm.
schedule Schedule.exe
U
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
Scheduled Maintenance Scheduled_Maintenance.exe
N
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
scheduler Scheduler daemon.exe
U
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
scheduler schedul3.exe
X
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Scheduler svcrhost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Scheduler sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Scheduler svcshost.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Scheduling Agent Scheduler.exe
X
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
Schmaili Schmaili.exe
U
Schmaili - insert animated smilies into your e-mail
schoolpop0 Schoolpop0.exe
U
Schoolpop Shopping Buddy ... Read More
SCHWIZEX SCHWIZEX.EXE
Y
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
sck.exe sck.exe
X
Added by the Troj/VBInjec-DV Trojan.
sclick SCLICK.EXE
X
Related to SmitFraud infections.
ScManager scman.exe
X
Added by the FORBOT-CW WORM!
scopedll scopedll.exe
X
Added by a variant of the CRYPTER.C TROJAN!
scoupa sincra.exe
X
Added by the W32/Sdbot-ST worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
Scr scr.scr
X
Added by the OPASERV.T WORM!
ScrapPad Scrappad.exe
N
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
scrbmk scrbmk.exe
X
Added by the Troj/Dloader-VP downloader Trojan.
Screen Calendar scrcal.exe
U
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
Screen Guard Message Scan sgms.exe
U
Part of Access Denied security and privacy software
Screen Saver scrnsaver.scr
X
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
ScreenPrint32 ScreenPrint32.exe
N
ScreenPrint32 screen capture software - can be launched manually
ScreensaverControl ScreensaverControl.exe
N
Tray icon that allows you toggle your screensaver on and off.
ScreenView ScreenView.exe
U
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
screxe scruser2k.exe
?
??
script script.bat
?
Maybe associated with DOS on a Win9x machine
ScriptBlocking SBServ.exe
Y
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
ScriptBlocking Service SBServ.exe
Y
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
ScriptLogic Service slClient.exe
Y
Part of the Desktop Authority administration program.
ScriptSentry Scriptsentry.exe
Y
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
Scroll-In-Mouse V2.0 SCROLL.EXE
U
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
scrss scrss.exe
X
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
scrsvc scrsvc.exe
X
Added by the Troj/Agent-DS proxy trojan.
ScrSvr ScrSvr.exe
X
Added by the OPASERV WORM!
SCService SCSrv.dll
X
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
Scsi Scsi.exe
Y
SCSI Miniport driver
scsi2usb scsi2usb.dll
X
Added by a variant of the Troj/Haxdoor Trojan.
scsiusr4 scsiusr4.dll
X
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
scsrs scsrs.exe
X
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
scssrr.exe Services.exe
X
Added by the Troj/VB-EMX Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
scvhost svzhost.exe
X
Added by a variant of the SPYBOT WORM!
SCVHOST SCVHOST
X
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
SCVHOST SCVHOST.EXE
X
Added by W32/Agobot-RK.
scvhost scvhost.exe
U
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
scvhost.exe scvhost.exe
X
Added by the LOHAV-N TROJAN!
Scxaxs Scxaxs.exe
X
Unknown Trojan.
SD SD.exe
X
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
sd32info sd32info.exe
X
Added by the CRYPTER.A TROJAN!
SDaemon sdaemon.exe
U
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
SDAgentService sde.exe
X
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
SDAv SVHOST.EXE
X
Added by the W32/Sumom-C instant messenger and P2P worm.
sdcard98 sdcard98.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
SDetect SDetect.exe
N
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
sdfsdfsdf sp2update.exe
X
Added by a variant of the SPYBOT WORM!
SDIN Adapter sdin.exe
X
Added by the FORBOT-AP WORM!
SDK Codre Function22 sdkimddprovment2.exe
X
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
SDK Core Component sdkcore.exe
X
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
SDK Core Component SDKC0RE.exe
X
Added by the W32/SDBOT-WC WORM!
sdk core function sdkimprovment.exe
X
Added by the RBOT.BHL WORM! ... Read More
sdk core function2 sdkimprovment2.exe
X
Added by the W32.SPYBOT.OGX WORM! ... Read More
SDKcore Update Components2 SDKC0R3.exe
X
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
SDKcore Update Components2 SDKC0R3.exe
X
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
sdktemp SDKTEMP.EXE
X
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
sdktemp svhosts32.exe
X
Added by the W32/Tilebot-CD worm and IRC backdoor.
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
sdkupdate22 SDK0mCORE.exe
X
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
SDKz0r SDKc55rezzz2.exe
X
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
SDMSSplash SDMSSplash.exe
?
Related to the HP Smart Desktop Management System support software.
SDPhotoBar.exe SDPhotoBar.exe
N
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
sdrss sdrss.exe
X
Added by the SDBOT-SQ WORM!
sds20 svchost.exe
U
Added by the Spyware.InlookExpress surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
sdtray sdtray.exe
U
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
SDTrayApp SDTrayApp.exe
Y
Related to Spyware Doctor.
sdxsys32 sdxsys32.exe
X
Added by the Troj/Brogger-A password-stealing Trojan.
SE500 Generic se500mdmd.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
se500mdm se500mdm.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
se633mxx se633mxx.dll
X
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
Seagate Communications seagatecom.exe
X
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
Seagate Sync Service SeaSyncServices.exe
U
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
SeahawksScreenServer SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
SeahawksScreenServerSvc SeahawksScreenServer.exe
N
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
sealmon sealmon.exe
U
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
Search Defender SearchDefender.exe
U
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
Search Hook srchhook.exe
?
??
Search-Exe SE.exe
X
Search-Exe hijacker
SearchEnhancement scbar.exe
X
IE search hijacker
SearchIn1Step Service searchin1.exe
X
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
SearchLitekr SearchLite.exe
X
Identified by ESET Nod32 as a variant of the Win32/Adware.Kraddare.AR adware. This program originates from the Korean site searchlite.kr. ... Read More
searchnav searchnav.exe
X
SearchNav adware - IEFeatures/Popnav variant
SearchNavVersion searchnavversion.exe
X
SearchNav adware - IEFeatures/Popnav variant
SearchNet_Up ServeUp.exe
X
Added by the Adware.Search Internet Explorer homepage hijacker.
SearchSetter searchsetter[1].exe
X
Browser hijacker - redirecting to FindWhateverNow.com
SearchSquire33 SearchUpdate33.exe
X
SearchSquire parasite
SearchUpgrader SearchUpgrader.exe
X
Hijacker
secdrive.exe secdrive.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Secdrv secdrv.sys
Y
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
second copy 2000 SecCopy.exe
U
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
Secondary Logon seclogon.dll
Y
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
SecondChance sctray.exe
U
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
Secret Secret.exe
X
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
Secret-Crush start.exe
X
Hijacker that may reset your browser's home page and/or search settings to point to undesired sites ... Read More
secretmaker secretmaker.exe
U
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
secretsmileys ss.exe
U
Secret_Smileys is an add-on for AIM® that provides users access to 1000's of new Smileys that can be viewed by anyone using a current version of AIM. ... Read More
secserv.exe secserv.exe
X
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
secsrvrc secsrvrc.exe
X
Added by the Troj/SCKeyLog-G keylogger.
secsvc32 secsvcnt.exe
X
Added by the Global_Patrol TROJAN! ... Read More
Secsys Secsys.exe
U
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
Secunia Update Agent sua.exe
Y
Related to Secunia PSI. This service performs routine software inspections of the system, the results of which can be seen in your Secunia Customer Ar ... Read More
secure secure.exe
X
DealHelper adware
secure svshost.exe
X
Added by the W32/Rbot-AFO worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
Secure secure.exe
X
Identified as the Backdoor.Win32.Iroffer malware.
Secure Socket Layer ssls.exe
X
Added by the W32/Spybot-NE worm and IRC backdoor.
Secure Socket Layer Certification sslcert.exe
X
Added by the W32/Vanebot-AN worm and IRC backdoor.
Secure32 Shell32.com
X
Added by the W32/Brontok-CJ worm.
Secure32 Shell32.com
X
Added by the W32/Brontok-EC worm.
secureclean4regmanager scregmanager4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
secureclean4tray sctray4.exe
N
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
SecureCleaner SecureCleaner.exe
X
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
SecureCleanIEClean SCIEClean.exe
N
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
SecureExpertCleaner sec.exe
X
Added by the Secure Expert Cleaner rogue security software.
SecureFighter SecureFighter.exe
X
Added by the SecureFighter rogue anti-spyware program.
SecureFighter Security Service SecureFighterSvc.exe
X
Added by the SecureFighter rogue anti-spyware program.
SecureItPro Secureitpro470p.exe
U
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
SecureKeeper SecureKeeper.exe
X
Added by the SecureKeeper rogue anti-spyware program.
Securemaker Disk Defragmenter Service smdefrag.exe
Y
Added by the SECUREMAKER computer optimization program.
SecurePcAv SecurePcAv.exe
X
Added by the SecurePcAv rogue anti-spyware program.
Securepoint Personal Firewall spfirewallsvc.exe
Y
Securepoint Personal Firewall sppfw.exe
Y
securer syshost.exe
X
Troj/Bdoor-DU is a backdoor Trojan for the Windows platform. It is located in the directory securersyshost.exe. ... Read More
SecureVeteran SecureVeteran.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureVeteran Security Service SecureVeteranSvc.exe
X
Added by the SecureVeteran rogue anti-spyware program.
SecureWarrior SecureWarrior.exe
X
Added by the SecureWarrior rogue anti-spyware program.
SecureWarrior Security Service SecureWarriorSvc.exe
X
Added by the SecureWarrior rogue anti-spyware program.
Security 2009 Security2009.exe
X
Added by the Security 2009 rogue anti-spyware program.
Security Account Manager SAMSvc.exe
X
Added by the W32/Tilebot-DL worm and IRC backdoor.
Security Accounts Manager SM samsm.exe
X
Added by the SPYBOT.JE WORM!
security agent securag.exe
X
Added by the Troj/Bancban-F ... Read More
Security Antivirus SA345d.exe
X
Added by the Security Antivirus rogue anti-spyware program.
Security Center scvhost.exe
X
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
Security Center svchost.exe
X
Unknown malware.
Security Center Distribution securesec.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security essentials 2010 SE2010.exe
X
Added by the Security Essentials 2010 rogue anti-spyware program.
Security Guard SG345d.exe
X
Added by the Security Guard rogue anti-spyware program.
Security Host solhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Security iGuard Security iGuard.exe
N
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Security Inspector 2010 Security_Inspector_2010.exe
X
Added by the Security Inspector 2010 rogue anti-spyware program.
Security Manager SecurityManager.exe
U
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
Security Manager securitymanager.exe
X
Added by the AntiVirus System 2011 rogue anti-spyware program.
Security Master AV SM345d.exe
X
Added by the Security Master AV rogue anti-spyware program.
Security Monitor securemon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security Monitor Security Monitor.exe
X
Added by the Security Monitor 2012 rogue anti-spyware program.
Security Monitor 2012 Security securitymanager.exe
X
Added by the Security Monitor 2012 rogue anti-spyware program.
Security Patch scmss.exe
X
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
Security Server DB secserver.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
security service syss.exe
X
Added by an unidentified WORM or TROJAN!
Security Service secsvc.exe
X
Added by the W32/Rbot-GGF backdoor Worm.
Security Service svchost.exe
X
A variant of the TrojanProxy:Win32/Chumpoke.gen!A malware.
Security Service DB secservice.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security System securesys.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Security System Manager spoolvc.exe
X
Added by the W32/Sdbot-DCW worm and IRC backdoor.
Security Task Manager spoolvc.exe
X
Added by the W32/Tilebot-IX worm and IRC backdoor.
Security Windows services svchost.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
SecurityCenter securitycenter.exe
X
Added by the Desktop Security 2010 rogue anti-spyware program.
SecurityFighter SecurityFighter.exe
X
Added by the SecurityFighter rogue anti-spyware program.
SecurityFighter Security Service SecurityFighterSvc.exe
X
Added by the SecurityFighter rogue anti-spyware program.
SecurityScanner ss2008.exe
X
Added by the SecurityScanner rogue anti-spyware program.
securityService securityService.dll
X
Added by the Troj/KillJWS-A Trojan.
SecuritySoldier SecuritySoldier.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecuritySoldier Security Service SecuritySoldierSvc.exe
X
Added by the SecuritySoldier rogue anti-spyware program.
SecurityUpdate SecurityUpdate.exe
X
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
SECWIZ98 SECWIZ98.EXE
Y
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
seekmo seekmo.exe
X
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
seeve seeve.exe
X
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
Select server slcsvr.exe
X
Added by the Troj/Dloader-WD Trojan downloader.
Selene Selene.exe
X
Added by the Trojan.Eneles infection!
SelfHostUtil slefhost.exe
?
??
seli seli.exe
X
Added by the Troj/LowZone-AS Trojan.
semanticinsight SemanticInsight.exe
X
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
SeMS SeMS.exe
U
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
Sensiva Sensiva.exe
U
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
sentinelmon sentinelmon.exe
U
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
SENTRY SENTRY.exe
X
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
Sepate Security Firewall sepate.exe
X
Added by a variant of the RBOT WORM!
seppgs seppgs.dll
X
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
serazavr serazavr.log
X
Added by the Backdoor.Rustock backdoor rootkit.
Serials serials.exe
X
Any one of a variety of worms and trojans
Serices Hostin servicez.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
sern Sernet32.exe
X
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
serpe serbw.exe
X
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
serrdctl.exe serrdctl.exe
Y
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
serrv serrv.exe
X
Added by the W32/Stratio-AW worm.
Serv-U serv-u32.exe
N
FTP server
Serv-U FTP Server ServUDaemon.exe
X
Added by the Troj/Bdoor-ABW backdoor Trojan. This program is actually a legitimate program that is bundled with the malware. If it was not installed ... Read More
Serve User SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
server server.exe
X
Added by the DELTAD.A WORM!
server system.exe
X
Added by the Troj/Meths-A Trojan.
Server srvsvc.dll
Y
Windows service that supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will ... Read More
Server 2.0 Server.exe
X
Added by the Troj/GrayBrd-AN backdoor Trojan.
Server Advance Security.exe
X
Added by the Troj/Bckdr-PUS backdoor Trojan.
Server Backbone server05.exe
X
Added by the W32/Rbot-ZM worm.
Server Daemon Host Manager sdhost.exe
X
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
Server VSS System sysvrs32.exe
X
Added by the W32/Sdbot-DES worm and IRC backdoor.
SERVER.EXE SERVER.EXE
X
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
Server2.0 Server2.0.exe
X
Added by the Troj/Feutel-AY trojan Backdoor.
Server2010 Server2010.exe
X
Added by the Troj/Hupigon-UT Trojan.
serverex Server.txt.vbs
X
Added by the DELTAD.A WORM!
Serverx Serverx.exe
X
Added by the W32/Madang-A virus.
serviccs.exe serviccs.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
Service service.exe
U
Added by the ALADINZ.H TROJAN!
Service services.exe
X
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
Service Service.pif
X
Added by the W32/Assiral-C email worm.
service SYSNT.exe
X
Added by the BACKDOOR-CHA TROJAN! ... Read More
Service 8 smncs.exe
X
Added by the W32/Tilebot-DF worm and IRC backdoor.
Service App Service.exe
X
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
Service Configurator service.exe
X
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
Service Connection sccenter.exe
N
For Compaq PC's. Part of Backweb
Service Control smss32bk.exe
X
Added by the Troj/Stinx-X IRC backdoor.
Service Control Application system.exe
X
Added by the worm. This worms spreads via the LSASS exploit.
Service Controller services.exe
X
Added by the W32/Sdbot-DDT worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
Service Filter smncs.exe
X
Added by the W32/Tilebot-CK worm and IRC backdoor.
Service Host spoolxx.exe
X
Added by the TORVEL WORM!
Service Host svchost.exe
X
Added by the TORVEL WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Service Host SVCHOST.EXE
X
Added by the Troj/Daoser-A trojan downloader. This should not be confused with the valid svchost.exe that is found in the Windows\system32 directory. ... Read More
Service Host Driver svchost.exe
X
Added by the HITON TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Service Host Manager svchost.exe
X
Added by the W32/AutoRun-CQ removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Service Host Manager Windwos w32 svfhost.exe
X
Added by the W32/Vora-A worm.
Service Manager sqlmangr.exe
N
SQL Server Service Manager - provides tray access to SQL server, the server agent and MSDTC. Available via Start -> Programs ... Read More
Service Manager SERVICEMGR.EXE
X
Added by the W32/PassMail-D worm.
service manager service.exe
X
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
Service Manager serv3manager.exe
X
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Service Monitor svcmon.exe
X
Added by the W32/Agent-FS worm and backdoor Trojan.
Service Monitor srvmon.exe
Y
Added by the Netintelligence parental controls product.
Service Monitor svhhda.exe
X
A IRCBot variant.
Service Pack 1 SPY_NET_RAT.exe
X
Added by the Troj/Agent-LRO Trojan.
service pack dll runtime spdll32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Service Process SVCHOST.EXE
X
Added by the DARKER WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Service Process service.exe
X
Added by the Troj/Dcmbot-C backdoor trojan.
Service Process service.exe
X
Added by the Troj/DcmBot-F backdoor Trojan.
Service Restore Panels servpanel.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Service Scheduler scheduler.exe
X
Added by the W32/Agobot-OA infection.
Service Sequence services32.exe
X
Added by the W32/Tilebot-C worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Service System softdwind.exe
X
Added by the Troj/Bancos-JS password-stealing Trojan.
Service Update Client svcupdcli.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Service.exe Service.exe
X
"servedby.advertising" popup generator
Service2 Service2.exe
X
Identified as a variant of the Backdoor.Win32.Iroffer malware.
service32 service32.exe
X
Added by the W32/AGOBOT-ST WORM! ... Read More
ServiceAdministrator SERVICES.EXE
X
Added by the W32.Korron.B worm. W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible dr ... Read More
serviceconnect serviceconnect.exe
X
Added by the AGOBOT.AIR WORM! ... Read More
ServiceControlApp services.exe
X
Added by the W32.SillyFDC.BDO removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
ServiceHost32 ServiceHost32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
ServiceHst svcnost.exe
X
Added by the W32/Agobot-RS WORM/IRC backdoor trojan!
ServiceLayer ServiceLayer.exe
Y
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
ServiceLayer ServiceLayer.exe
Y
This file is installed with Nokia's PC Suite, a program that enables connections and creates an interface between MS Windows computers and Nokia m ... Read More
Servicemng service.exe
X
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:



c:\windows\system32\hserv.sy ... Read More
Servicer servcr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Servicerepclient1 SERVICES.EXE
X
Added by the W32/Brontok-BT worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
services start.bat
X
Added by the ZCREW TROJAN!
Services services.exe
X
A variant of the IRC.bot malware. This should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
services svchosts.exe
X
Added by the Troj/Sdbot-N worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
services socks.exe
X
Added by the WIN32.SMALL.N Proxy TROJAN! - A PT is a backdoor trojan which allows a remote hacker to connect to other systems via the compromised syst ... Read More
Services services.exe
X
Added by the W32.Mydoom.CI@mm mass-mailing worm.
Services sysamp.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
Services Administrator svcadmin.exe
X
Added by the Troj/Dloader-NY trojan.
Services an controller-settings services.exe
X
Added by the W32/Tilebot-HY worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe.
... Read More
Services Control Manager services.exe
X
Added by the Troj/Delf-CG. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\service.exe. ... Read More
Services DLL Loader srvdll.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Services Host Scchost.exe
X
Added by the DONK WORM!
Services host svchost.com
X
Added by the W32/Rbot-EU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
Services Host svchost32.exe
X
Added by the W32/Agobot-TG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Services Hosts shost.exe
X
Added by the W32/Rbot-AXG worm and IRC backdoor.
Services Logon services.exe
X
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
Services Management services.exe
X
Identified as the Backdoor.Rizo.A malware.
Services management serivces.exe
X
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
Services Management Clients servc.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
Services Managements servcs.exe
X
Added by the Troj/QHost-B Trojan.
Services Manager svsmanager.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Services Manager! svmanager.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Services Managers svcmanager.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Services Network Services.exe
X
Added by the W32/Swisyn-E worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Services Process services.exe
X
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
Services Process smss.exe
X
Added by the Troj/Small-EK backdoor trojan.
Services Startup services.exe
X
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
Services Startup svhost33.exe
X
Added by a variant of the RBOT WORM!
Services++ services.exe
X
Added by the W32.SillyFDC.BDM worm. W32.SillyFDC.BDM is a worm that spreads by copying itself to removable and mapped drives. This infection should no ... Read More
services.dll smss.exe
X
Added by the W32/SOBER-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Services.EXE services.exe
X
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
services.exe Services.exe
X
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
services.exe servicess.exe
X
Added by the Troj/MSNSpy-B password stealing Trojan.
services32 services32.exe
X
Added by the W32/Esbot-B worm and IRC backdoor.
services32.exe services32.exe
X
Added by the W32/Forbot-FN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
ServicesAdministrator SERVICES.EXE
X
Added by the W32/Punya-B worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
Servicesara services.exe
X
Added by the W32/Brontok-BS worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
servicestub.exe servicestub.exe
X
Identified as a the Backdoor.Win32.DsBot.mu MSN worm.
Service_SKYNET<random chars> SKYNET<random characters>.dat
X
SkyNet Rootkit.
Service_SKYNET<random chars> SKYNET<random characters>.sys
X
SkyNet Rootkit.
Servicio sound.exe
X
Added by the Troj/Banker-FFT online banking Trojan.
Servicio Local svhost.exe
X
Added by a variant of the WIN32.RBOT WORM!
servico servico.exe
X
Added by the Troj/Banker-DKE Trojan. Troj/Banker-DKE includes functionality to send notification messages to remote locations. ... Read More
servico2 servico2.exe
X
Added by the Troj/Banker-DTB banking Trojan.
Servicos System.exe
X
Added by the Troj/Bancos-BCM online banking Trojan. If you are infected with this malware you should immediately change all of your online banking pa ... Read More
servics servics.exe
X
Added by the Troj/Singu-J password stealing backdoor trojan.
servisec servisec.exe
X
Added as a new service by the Troj/Xrat-B TROJAN, using a displayname of the same. ... Read More
servises servises.exe
X
Added by the Troj/Agent-JUJ Trojan.
servlce SERVlCE.EXE
X
Added by the W32/Agobot-UB ... Read More
ServUTrayIcon ServUTray.exe
?
System Tray icon for Serv-U FTP server. Is it required?
SES Service sesvc.exe
X
Added by the W32/Sdbot-CZU worm and IRC backdoor.
session client sescli.exe
U
SurfSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
Session Manager sessmngr.exe
X
Added by the Troj/Theef-F backdoor Trojan.
Session Manager Subsystem smssa.exe
X
Added by the W32/Rbot-AGS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Session Simulator sssnsml.exe
X
Added by the DoctorVaccineZ rogue anti-spyware program.
SessMgr sessmgr.exe
X
Identified as Trojan:Win32/Rodecap.A by Microsoft.
SESync sed.exe
X
Downloadware/SED adware downloader
setdefprt setdefprt.exe
N
Sets the Brother Printer to be the default printer after installation of the printer software. ... Read More
SetHook SetHook.exe
N
Fellowes Neato CD label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
SETI@home SETI@home.exe
N
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
seticlient SETI@home.exe
N
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
SetIcon SetIcon.exe
N
Installed by a 6-in-1 (4 Media Card slots, a floppy drive and a USB connection) device. Constantly updates the icons for the four Media Card slots tha ... Read More
SetiQueue Setiqu~1.exe
N
Provides work unit buffering for Seti@Home clients - see here for more details
SetiSpy SetiSpy.exe
N
From the site - 'SETI Spy is a little program I wrote to "spy" on the progress and performance of the SETI@home client. I call it a "spy" because I tr ... Read More
SetPoint SetPoint.exe
X
Added by the W32/Rbot-BWI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
SetPoint SetPoint.EXE
U
Logitech keyboard and mouse drivers that allows you to configure and enable special features of your mouse and keyboard. This startup is only require ... Read More
SetPoint.exe SetPoint.exe
X
A variant of the Bck/Sdbot.LBM family of worms and IRC backdoor Trojans.
SetRefresh SetRefresh.exe
?
Found on a Compaq PC. Video refresh rate utility? Is it required?
Setting sysweb.exe
X
Added by the SDBOT.GEN TROJAN!
Setup Setup.exe
X
Identified by BOClean as Trojan GMTER.
Setup experation svchost.exe
X
Added by the TOFGER-AW TROJAN! Note - this is not the legitimate svchost.exe process, which NOT appear in Msconfig/Startup! ... Read More
setup.exe setup.exe
X
Added by the Troj/Goldun-GB Trojan.
setup2.exe setup2.exe
X
Added by the WiniBlueSoft rogue anti-spyware program.
setuzp setuzp.exe
?
??
SetVrc setvrc.exe
X
Added by the HUNTOCX WORM!
sevenlink sevenlog.sys
X
Added by the Trojan.Sevensaw Trojan.
Sevenlink Sevenlog.sys
X
Added by the Troj/Agent-GIR Trojan.
SevenSowrd SysSevenSowrd.exe
X
Added by the Troj/Agent-GIR Trojan.
SevenSword Service SevenSowrdSvr.exe
X
Added by the Trojan.Sevensaw Trojan. Trojan.Sevensaw is a Trojan horse that drops a keyboard filter driver to log keystrokes and sends the stolen info ... Read More
SevenSword Service SevenSowrdSvr.exe
X
Added by the Troj/Agent-GIR Trojan.
SevenUp sevenup.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Delf malware.
Sex Teris st01b.exe
X
Added by the REPAD WORM!
Sexnow Sexnow.exe
X
Added by the Dial/Senow-B premium rate porn dialer.
sexy_blondes Sexy_Blondes.exe
X
Added by the Porn.Dialer.Sexy Key Logger ... Read More
Sexy_ca Sexy_ca.exe
X
Added by the GMSoft Porn Dialer.
Sexy_dk Sexy_dk.exe
X
Added by the GMSoft Porn Dialer.
Sexy_es Sexy_es.exe
X
Added by the GMSoft Porn Dialer.
Sexy_gb Sexy_gb.exe
X
Added by the GMSoft Porn Dialer.
Sexy_it Sexy_it.exe
X
Added by the GMSoft Porn Dialer.
Sexy_sg Sexy_sg.exe
X
Premium rate adult content dialler
sf sf.exe
X
Added by the WIN32.FAVADD.O TROJAN!
sfita sfita.exe
X
Added by the FAVADD.O TROJAN!
sfool.exe sfool.exe
X
Added by the W32.Randex.EUS worm.
sfpc sfpc.exe
U
Spy4PC is a spyware program that monitors user activity, logs keystrokes, and takes screenshots. If you didn't install this yourself remove it. ... Read More
SfWinStartInfo sfWinStartupInfo.exe
U

SFIRM32 Online Banking software

Sgecrypt Sgecrypt.exe
U
SafeGuard Easy - "provides total company-wide protection for sensitive information on laptops and workstations. Boot protection, pre-boot user authent ... Read More
sginst sginst.exe
N
eAcceleration Stop-Sign related - not recommended, see note
SGTBox SGTBox.exe
?
Canon scanner driver. Is it required?
sgtray sgtray.exe
U
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
shambl3r* shambl3r.exe
X
Added by the REMABL WORM! where * is 2 to 11
shania Shania.vbs
X
Added by the SHANIA VIRUS! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to laun ... Read More
SHAProc SHAProc.exe
X
Added by the Trojan.OnlineGames.Gen.71 password-stealing Trojan.
Shareaza Shareaza.exe
N
Shareaza P2P client
sharedprem sharedprem.exe
X
Added by the MAKECALL TROJAN!
sharK Server SharKServer.cmd
X
Added by the Backdoor.Shark!sd5 backdoor. This infection uses Alternate Data Streams to hide itself. In order to remove these files you will need to ... Read More
shdde shdde.exe
X
Added by the Backdoor.Masteseq backdoor.
shdef shdef.exe
X
Added by the Troj/VB-DVS information stealing Trojan.
shdll shdll.dll
X
Added by the Troj/Bckdr-DBQ Trojan.
shdosbei shdosbei.dll
X
Added by the Email-Worm.Warezov!sd5 worm.
SHDSERV shdserv.exe
U
Added by the RollBack Rx system restore program.
SheduIer svchst.exe
X
Premium rate adult content dialler
SheduIer shch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
Shell Shell32.exe
X
Added by the BADSECTOR TROJAN!
Shell svchost.exe
X
Added by the Troj/Goldspy-B TROJAN!
Shell svghost.exe
X
Added by the Troj/Lineage-J.
Shell smsc.exe
X
Added by the Troj/Bancban-OY password-stealing Trojan.
Shell SysTray.com
X
Added by the W32.Nekat.A worm. W32.Nekat.A is a worm that spreads through removable storage devices. It also lowers security settings on the compromis ... Read More
shell api32 svcnet.exe
X
Added by the WIN32.TIBICK.C WORM! ... Read More
Shell Current Manager svshost.exe
X
A variant of the W32/Rbot-GQR worm and IRC backdoor.
Shell Extension spollsv.exe
X
Added by a variant of the LOVGATE WORM!
Shell Software Detection shellsw.exe
X
Added by the W32/Tilebot-HR worm and IRC backdoor.
Shell Tray Window ShellTraywnd.exe
X
Added by the Troj/Stultdor-A backdoor trojan.
shell update shellexec.exe
X
Added by the W32/Rbot-ANC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Shell32 Shell32.vbs
X
Added by the VBS.Scafene WORM!
Shell32 shell32dll.exe
X
Added by the Troj/Banloa-BKV Trojan.
ShellApi SHELLMSN.EXE
X
Added by the NETDEV.B TROJAN!
Shellapi32 Shellapi32.exe
X
Added by the NETDEVIL (or NERTE) TROJAN!
Shellapi32 svcnet.exe
X
Added by W32/Tibick-C, a P2P WORM with limited backdoor functionality.
shellbn shlext32.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
Shelldaemon Shelldaemon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ShellEx ShellEx.exe
X
Added by the ANAKHA TROJAN!
shellservice ShellService.dll
U
Added by the WebWatcher surveillance tool. This program should be removed if it was not installed by yourself. ... Read More
Shellspl spools.exe
X
Added by an unidentified TROJAN!
shellsystem shellsystem.exe
X
Added by the UPCHAN TROJAN!
shhost shhost.exe
X
Added by the BACKDOOR.WIN32.AGENT.CE TROJAN! ... Read More
shicoxp shicoxp.exe
N
Installed with the drivers for multi card readers of various brands. To differentiate between the various card slots on multi slot readers the shicoxp ... Read More
Shield Security shield.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
Shield32 Security shield32.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
ShieldSafeness ShieldSafeness.exe
X
Added by the ShieldSafeness rogue anti-spyware program.
Shine Shine.exe
X
Added by the HAPPYLOW (or NISHE-A) VIRUS!
SHINITV shinitv.exe
?
??
ShockmachineReminder SmReminder.exe
N
Shockmachine is an entertainment playback device that lets you save your favorite Shockwave.com titles and play them back in full-screen mode, off-lin ... Read More
ShockMgr ShockMgr.sys
Y
Driver related to the IBM Active Protection System that protects installed hard drives. ... Read More
Shockprf Shockprf.sys
Y
Shockwave Init SWINIT.EXE
N
Part of Macromedia Shockwave. Controls the Shockwave Remote Control Panel. The Remote Control can be activated manually from the Start Menu by locatin ... Read More
Shockwave Updater swhelper.exe
N
Used by Shockwave to check for and install new updates.
shoket svchs0t.exe
X
Added by the Troj/WowPWS-E Trojan. This infection should not be confused with the legitimate Microsoft file found at C:\Windows\System32\svchost.exe. ... Read More
ShortKeys 99 SHORTKEY.EXE
N
ShortKeys from Insight Software Solutions - allows you to program keys with text strings ... Read More
shotkey sHotKey.exe
Y
Related to Chicony_Keyboards It manages the special key functions such as Internet, E-mail, Volume Control and more. Found in Sony's computer and pos ... Read More
SHOVE SHOVE.exe
X
Added by the Troj/Agent-EOM Trojan.
Showbehind SHOWBEHIND.EXE
X
Advertisement display which can be stopped here
ShowFF ShowFF.exe
X
Added by the Adware.FFToolBar adware toolbar.
ShowIcon_SmartDisk Corporation_USB Card Reader v1.14e051 shwicon.exe
?
Card reader for memory cards from digital cameras. Is it required?
showwnd ShowWnd.exe
U
Showwnd is included with the Chicony keyboard software and is used by the software to stop the keyboard driver's taskbar entry from reappearing. This ... Read More
SHPC32 SHPC32.exe
U
Port monitor for Lexmark printers on a USB connection. Ties in with the Printer Control Program. Features like cancelling a print are unavailable if d ... Read More
ShStatEXE SHSTAT.EXE
Y
From McAfee VirusScan NT 4.x. Handles program communication among VShield components, displays VShield icon. Can be started automatically or available ... Read More
Shutdownaware shutdownaware.exe
U
Loaded by the SWEEX 6-in-1 Media Card Reader to properly manage the reader while it is connected to your system ... Read More
ShutDownPro ShutDownPro.exe
U
ShutDownPro - shutdown, reboot, logoff your System with one mouse click
Si Meter SIMETER.EXE
?
??
siapro6 sia.exe
U
Steganos Internet_Anonym privacy software ... Read More
Sicom Sicom.exe
X
Added by the NETLIP WORM!
Sid Meier's Alpha Centauri Planetary Pack sidmeier.exe
X
Added by the W32/Vanebot-Q worm and IRC backdoor.

W32/Vanebot-Q spreads
to other network computers by exploiting common buffer o ... Read More
SideACT SideACT.exe
U
SideACT organizer software
Sidebar Sidebar.exe
X
Searchcentrix hijacker
Sidebar sidebar.exe
U
The Windows sidebar that allows you to add gadgets, rss feeds, and other information. ... Read More
sidematchup sidematchup.exe
X
Identified by AVG antivirus as a variant of the Skodna.Generic.BV malware.
SideWinderTrayV4 SWTrayV4.exe
N
MS SideWinder game controller system tray icon. This is specific to version 4 of the software. Available via Start -> Programs ... Read More
SigmaTel Audio Service stacsv.exe
Y
Part of the drivers for Sigmatel audio chipsets.
SigmatelSysTrayApp stsystra.exe
N
System tray program for the Sigmatel Audio sound card. Often found on Dell computers. ... Read More
SigX sigx.exe
?
??
SigXC SigX.exe
X
SigX is a "dynamic signature image generated based on whatever data your computer sends it though our SigX program. It can display your current Mp3, c ... Read More
SilentSoftech SilentSo.exe
X
Added by the W32/Autorun-ANU removable media worm.
Simcast SimcastAlerts.exe
N
Simcast is a free service that allows you to subscribe to information on a large variety of topics. Alerts will appear on your desktop when a channel ... Read More
SimpLite-MSN SimpLite-MSN.exe
U
Required if you use the SimpLite add-on to MSN Messenger (SimpLite adds encryption to the instant messaging service) ... Read More
Singapore singapore.exe
X
Adds a blue crescent to the taskbar and when double-clicked displays an adult-content web-site. Also known to drop your internet connection and dial a ... Read More
sioco sioco.exe
X
Added by the Troj/Agent-MOD Trojan.
SIPPS SIPPS\SIPPS.exe
U
Web.de Internet phone utility
SiS Tray sistray.exe
U
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
sis7012utility SiSAudUt.exe
Y
SiS Corporation sound card driver
SISAM10M SISAM10M.exe
?
??
siService.exe siService.exe
U
Spam Inspector - anti email spam software
SiSPower SiSPower.dll
U
Power management program for computers with SiS chipsets.
sisraid SRaid.exe
U
Related to the SIS_RAID system from Silicon Integrated Systems. ... Read More
SiSSetCDfmt SiSSetCDfmt.exe
?
Related to a Silicon Integrated Systems Corp (SiS) product?
SISSoundman Soundman.exe
?
Related to a Silicon Integrated Systems Corp (SiS) product?
SiSSWLED sisswled.exe
U
System Tray utility for SiS 900 network cards
sistrai.exe sistrai.exe
X
Added by the PROVA TROJAN!
sistray sistray.exe
X
Added by the PROVA TROJAN!
sistray sistray.exe
U
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
sistry sistry.exe
X
Added by the CEBE WORM!
SiSUSBRG SiSUSBrg.exe
N
SiS USB Registry Patch File - fixes the undetectable problem with SiS USB controller on Windows XP ... Read More
SiteAdvisor SiteAdv.exe
N
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
SiteAdvisor Service SAService.exe
N
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the pa ... Read More
SiteAdware.exe SiteAdware.exe
X
Added by the SiteAdware rogue anti-spyware program.
SIWIO SiwIo.sys
Y
SIWy is an advanced System Information for Windows tool that analyzes your computer and gathers detailed information about system properties and setti ... Read More
sixer566 sscc.exe
X
Identified as a variant of the Mailbot Trojan.
sixtysix sixtypopsix.exe
X
Unidentified adware
SiZhu SiZhu.exe
X
Added by the TW32/AutoRun-IE removable media worm.
sk51 SK51.EXE
U
SaveKeys keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
sk60 SK60.EXE
U
Added by the SaveKeys surveillance software. Uninstall this software unless you put it there yourself. ... Read More
SK9910DM SK9910DM.EXE
U
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys ... Read More
SKDAEMON SKDAEMON.EXE
U
Multi-function keyboard driver. Allows the use of programmable keys on multimedia keyboards. Required if you use the additional keys. ... Read More
skinkers skinkers.exe
U
Selection of desktop messaging/marketing tools with celebrity tie-ins including MTV's "Desktop Ozzy" and Arsenal's "Desktop Wenger" - see here. Leave ... Read More
SKQ skq.exe
X
Added by the W32/VBSilly-D worm. W32/VBSilly-D spreads via file sharing on P2P networks. ... Read More
Skra Skra.exe
X
Identified as a variant of the TrojanDownloader.Matcash malware.
sks-32 sks32proc.exe
U
Added by the Spyware.SpyKeySpy surveillance software. If you did not install this software you should remove it immediately. ... Read More
sks-32 SKS32P~1.EXE
X
SpyKeySpy logs keystrokes and sends the stolen information to a configurable email address. ... Read More
sks2drvr sks2drvr.sys
X
Added by the Backdoor.Haxdoor.G backdoor Trojan.
sksdll sksdll.dll
X
Added by the Backdoor.Haxdoor.F proxy Trojan.
sksdrvr2 sksdrvr2.sys
X
Added by the Backdoor.Haxdoor.F proxy Trojan.
Skunk.exe Skunk.exe
X
Added by the W32/Sunk-A overwriting virus. This virus will copy itself to various locations on your hard drive and then start replacing .exe files on ... Read More
SkyBlaster Scheduler SSFSch.exe
Y
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
skynetave.exe skynetave.exe
X
Added by the SASSER.D WORM!
Skype Skype.exe
N
"Skype is free and simple software that will enable you to make free calls anywhere in the world in minutes" ... Read More
Skype Messenger skype32.exe
X
Added by the W32/Dolebot-A email worm and IRC backdoor. This infection also installs the rootkit file rofl.sys. ... Read More
Skype Startup skyp.exe
X
Added by the W32/VanBot-C worm with IRC backdoor functionality.
SkypeStartup Skype.exe
X
Added by the Mal/Pykse-A worm.
SkySurfer Management Service SmaServ.exe
Y
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
SkyTel SkyTel.exe
U
Program related to the Realtek Voice Manager used by some of their audio chipsets. ... Read More
Slayhacker734 slay7383.exe
X
Added by the Troj/SikBot-A IRC backdoor.
slbcmqad slbcmqad.dll
X
Added by the W32/Stratio-BP worm.
slbrmqtr slbrmqtr.exe
X
Added by the WORM_STRAT.EQ mass-mailing worm.
SleepApp sleep32.dll
X
Identified as a variant of the Trojan-PSW.Win32.Delf.bfh malware.
SleepManager SleepMgr.exe
N
This program locates free contiguous disk spaces and allocates them for storing BASE MEMORY, EXTENDED MEMORY, VIDEO MEMORY, and SM RAM. It helps the c ... Read More
SlickRun sr.exe
U
"SlickRun is a floating command line utility for Windows. It gives you almost instant access to any program or website. SlickRun allows you to create ... Read More
slimp3 SliMP3 Server.exe
N
Slimp3 Server - "presents an entirely new way of accessing and enjoying your music collection. Instead of storing your music on CDs or memory cards, t ... Read More
Slingshot SLINGS~1.EXE
N
Atomica Slingshot - "reference tool with access to dictionary and encyclopedia terms, bios, technical terms, history, geography, and much more" ... Read More
slipstream slipcore.exe
U
Sliptstream Web Accelerator ... Read More
SLMDriver SLM32.sys
X
Added by the Troj/Rootkit-AA rootkit.
slmss slmss.exe
X
SeekSeek search hijacker related - as seen here
sload sload32.exe
X
Added by the W32/Sdbot-OY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
sload sload.exe
X
Win SynchroAd adware, also detected as TROJ/DLOADER-QG TROJAN! ... Read More
slvchost32 slvchost32.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
slysom slysom.exe
X
Added by the W32/Tilebot-KW worm and IRC backdoor.
sm sr_exe.exe
X
Added by the LUKUSPAM TROJAN! ... Read More
sm sf_exe.exe
X
Added by the OLFEB.A TROJAN! ... Read More
sm sm_exe.exe
X
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
sm sa_exe.exe
X
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
SM1BG SM1BG.EXE
?
USB driver for downloading from within Napster to portable MP3 players. Is it required to run at startup or can it be run manually? ... Read More
Sm56acl sm56hlpr.exe
N
Helper utility for Motorola based SM56 software modems - resides in the System Tray ... Read More
sma sma.exe
U
Added by the Smart Keystroke Recorder keylogger and surveillance software. This program should be removed if it is found on your computer without you ... Read More
SMA Negeri 4 SMA Negeri 4.exe
X
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
smail smail.exe
X
Added by the W32/Sexer-C email worm.
small b0t syschk.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SManager smanager.7.exe
X
Added by the Troj/DwnLdr-GUI downloader Trojan.
Smapp smtray.exe
N
System Tray access for the Compaq/ADI SoundMAX integrated digital audio controller ... Read More
Smart Anti-Malware Protection SAa76.exe
X
Added by the Smart Anti-Malware Protection rogue.
Smart Antivirus-2009.exe Smart Antivirus-2009.exe
X
Added by the Smart Antivirus 2009 rogue anti-spyware program.
Smart Card Client SCardClnt.exe
X
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
Smart Card Service ScardSvr.exe
N
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
Smart Connect Monitor SCMon.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
Smart Connect Setup SCSetup.exe
U
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
Smart Defender PRO smrtdefp.exe
X
Added by the Smart Defender Pro rogue anti-spyware program.
Smart Engine SMae0_2129.exe
X
Added by the Smart Engine rogue anti-spyware program.
Smart Label O Server ssloserv.exe
N
Part of the printer software for the smart-label printer made by Seiko. Can be disabled safely ... Read More
Smart Label RFViewer SSLFVIEW.EXE
N
Part of the printer software for the smart-label printer made by Seiko. Can be disabled safely ... Read More
Smart Security SMae0_289.exe
X
Added by the Smart Security rogue anti-spyware program.
Smart Type Assistant sta.exe
N
Smart Type Assistant - a complex typing automation tool, intended to make your work faster and safer ... Read More
Smart Virus Eliminator SM<3 random chars>.exe
X
Added by the Smart Virus Eliminator rogue anti-spyware program.
SmartBarXP SmartBarXP.exe
N
SmartBarXP is a bar that runs down the side of your screen, and can be configured to display interactive panels known as 'panes'. These panes include ... Read More
sMaRTcaPs SMARTC~1.EXE
N
sMaRTcaPs from Phoebus LLC - enables you to configure the time needed to depress Caps Lock, Num Lock & Insert keys ... Read More
SmartFixer SmartFixer.exe
X
Added by the SmartFixer 2007 rogue security product. SmartFixer is a misleading application that may give exaggerated reports about potential risks on ... Read More
SmartLinkService slserv.exe
U
Associated with SmartLink modem and is used to show a tray icon that gives connection information. ... Read More
smartprotector smartprotector.exe
X
Added by the Smart Protector rogue anti-spyware program.
SmartSecurity SmartSecurity.exe
X
Added by the Smart Security rogue anti-spyware program.
smartsync pro SmartSync.exe
U
Related to CompanionLink Software Inc., Synchronization solutions for ACT!, GoldMine, Lotus Notes and Microsoft Outlook. ... Read More
SmartTag Recognizer strecog.exe
X
Added by the W32.Joydotto worm. W32.Joydotto is a worm that spreads by copying itself to all removable drives. It may attempt to download potentially ... Read More
SMax4 SMax4.exe
N
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
SMax4PNP SMax4PNP.exe
U
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
smbdpmi smbdpmi.exe
?
IBM Netfinity Director and Universal Management Services related. What does it do and is it required? ... Read More
smc smc.exe
Y
Sygate Firewall
smc spfsmc.exe
Y
Sygate Firewall
SMC Service smc.exe
Y
Sygate Firewall
SMC Service spfsmc.exe
Y
Sygate Firewall
smcservice smc.exe
Y
Sygate Personal Firewall ... Read More
SmcServices smc.exe
Y
Sygate Firewall
SmcServices spfsmc.exe
Y
Sygate Firewall
smcss smcss.exe
X
Added by the Troj/SCLog-AJ Trojan Spyware.
smcss smcss.dll
X
Added by the Troj/SCLog-AJ Trojan Spyware.
Smcsta.exe Smcsta.exe
?
SMC Networks wireless PCI card driver. Is it required?
smcsvr SmcSVR.exe
X
Added by the LEGMIR.JU ... Read More
smess smess.exe
X
Identified by Nod32 as a variant of the Win32/TrojanDownloader.Delf.PCZ malware. ... Read More
SMI helper driver smihlp.sys
Y
Fingerprint reading driver for IBM Thinkpad laptops.
smi2 smi2.sys
Y
IBM System Management Interrupts Bios driver.
SmileyApp stbapp.exe
X
Added by the Adware.DoubleD adware. Adware.DoubleD is an adware program that displays out-of-context advertisements. ... Read More
SmitFraudFixTool SmitFraudFixTool.exe
X
Added by the SmitFraudFixTool anti-malware program.
Smith Micro try smiptray.exe
N
Smith Micro shared files. Comes with D-Link web cam
smmservice smmservice.exe
X
Added by the Defence Center rogue anti-spyware program.
smoothview SmoothView.exe
N
TOSHIBA Zooming Utility - allows "automatic" zoom feature in some appications, like IE, MS-Office, WMPlayer, Adobe-Reader and also desktop icons. ... Read More
smpautostart smpdemo.exe
U
Related to Smart_Phone_Recorder from KenGolf.com. Answering Machine, Caller ID, Call Recording. ... Read More
SmpcSys SmpSys.exe
?
Found on Packard Bell computers. Legitimate, but unsure as to what it does.
smres smres.exe
X
Added by the W32/Agobot-UA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
smrtprt smrtprt.exe
X
Added by the Smart Protector rogue anti-spyware program.
sms sms.exe
X
Added by the Troj/Dloader-KR TROJAN!
Sms System32 SmsSystem32.exe
X
Unidentified malware
SMS Win9x Message Agent SMSMsg.exe
U
This program assigns a user to a Systems Management Server site
smscc smscc.exe
X
Added by the W32/Sdbot-CPG worm and IRC backdoor.
Smserial sm56hlpr.exe
Y
Motorola based modem driver
SMSERIALWORKERSTART shellexcon.exe
X
Trojan installed with the SpyBurner rogue anti-spyware program.
SMshclkrj0etfg shclkrj0etfg.exe
X
Added by the Malware Protector 2008 rogue anti-spyware program.
SMSI Loader SMLoader.exe
N
Smith Micro HotFax - fax software
smsm smsm.exe
X
Added by the Troj/Banker-CO trojan. This infection attempts to steal information about your online banking. ... Read More
smsrv smsrv.exe
X
Added by the W32/Agobot-SX worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
SMSS smss.exe
X
Added by the FLOOD.F Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
Smss Host smhost.exe
X
Added by the Troj/IRCBot-ACC worm and IRC backdoor.
Smss Host smhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
smss32.exe smss32.exe
X
Unknown malware.
smsslevel4 smss.exe
X
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
SMSSS smsss.exe
X
Added by the SDBOT.ZD WORM!
SMSSS Loader smsss.exe
X
Added by the AGOBOT.MQ WORM!
SMSSU SMSSU.EXE
X
Added by the Troj/Small-EI trojan dropper.
SMSTray SMSTray.exe
U
Samsung Media Studio was developed to manage audio, video, photo collections on Samsung media player devices. This program will check for new media th ... Read More
SMSystemAnalyzer SMSystemAnalyzer.exe
Y
Related to Iolo's System Mechanic program.
sms_msn sms_msn.exe
X
Added by an unknown WORM or TROJAN infection.
sms_msn40 sms_msn40.exe
X
Added by an unknown WORM or TROJAN infection.
smt SMT.exe
U
Win-Spy keyboard logger/monitoring software - remove unless you installed it yourself! ... Read More
SMToolbar SMToolbar.exe
N
StartMake.com toolbar
SMTP32 Mailing Protocol smtp32.exe
X
Added by a variant of the WIN32.RBOT WORM!
smtpdrv smtpdrv.sys
X
Added by the TROJ_PANDEX.AF Trojan.
SMTPSVC smtpsvc.exe
X
Added by the W32/Tilebot-AU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
SmWizard SmWizard.exe
?
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
smx4pnp smx4pnp.dll
X
Identified by Kaspersky Labs as Troj/DwnLdr-ICG. Please note rundll32.exe is a legitimate program and should not be deleted. ... Read More
Snapfish Media Detector SnapfishMediaDetector.exe
U
Used by Snapfish to determine if new media is connected to your computer. The software will then present options on how the images will be imported/u ... Read More
snapple snapple.exe
X
Added by the W32/Forbot-EG worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
snbr snbr.exe
?
??
snbupt snbupt.exe
X
UpSpiralBar adware component ... Read More
sncntr sncntr.exe
X
Adult content dialler
SND Volumes sndvolumes.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
snd332 snd332.exe
X
Added by an unidentified WORM!
Sndcompat Sndcompat.exe
X
Added by the GEMA TROJAN!
snddevice snddevice.scr
X
Added by the Troj/Banker-DIR internet banking Trojan.
SndDRV (MS Sound Driver) snddrv.exe
X
Added by the W32/Rbot-BSC worm and IRC backdoor.
SNDMon SNDMon.exe
U
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
sndrec32.exe sndrec32.exe
X
A variant of the WORM_SPYBOT.BR family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
sndriv32 sndriv32.exe
X
A variant of Backdoor.Win32.Agobot.gen worm and IRC backdoor.
Sndsaver Sndsaver.exe
X
Added by the GEMA TROJAN!
Sndsystem SndSystem.sys
X
Added by the Troj/Raser-AS proxy Trojan.
sndu32 sndu32.dll
X
Added by the Troj/Haxdoor-IN Trojan. This infection utilizes the sndu64.sys rootkit. ... Read More
snippet SnippingTool.exe
U
The Snipping Tool (part of the Experience_Pack for Tablet PC) allows you to easily "cut out" anything on screen and share it with other people. The w ... Read More
snjava snjava.dll
X
Added by a variant of the Goldun.Fam Trojan.
SNM SNM.exe
Y
Part of the SpyNoMore anti-spyware application.
SNMP Trap snmptrap.exe
U
This Windows service receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to ... Read More
Snoop Snoop.exe
U
Added by the Spyware.Snoop surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
snoopfreeui SnoopFreeUI.exe
U
Anti-keylogging software made by SnoopFree_Software._
Snow Sk.exe
X
Snow swon4.exe
X
Added by Backdoor.Fxdoor.
snp generic host process svchost.exe
X
Added by the Troj/Zapchas-O ... Read More
Snsicon Snsicon.exe
N
Launches a screensaver program from Second Nature
SNSS.EXE SNSS.EXE
X
Added by the Dialer.Nunci premium dialer.
SO5 Integrator Pass One sointgr.exe
?
StarOffice 5. See here for more details
SO5 Integrator Pass Two sointgr.exe
?
StarOffice 5. See here for more details
sobicyt Service sobicyt.exe
X
Identified as a variant of the Backdoor:Win32/Refpron.C malware.
Soccer Soccer Mania.exe
X
Added by the W32.Sibaru.A worm. W32.Sibaru.A a worm that spreads itself to network resources and hardcoded drive letters. ... Read More
Social.IM SocialChat.exe
N
Added by the Social.IM facebook chat program.
Sock32 sock32.exe
X
Added by the SDBOT TROJAN!
SoDA Startup SodaStartup.exe
Y
Used by the Rational SoDA project management tool. Unsure of it's actual purpose but it's recommended you leave it enabled if you use the software ... Read More
sofatnet Service sofatnet.exe
X
Identified by Comodo as Backdoor.Win32.Refpron.~B.
soffice SOFFICE.EXE
N
Displays StarOffice quick start applet in System tray. Right clicking on the icon allows rapid starting up of components of the StarOffice 6.0 suite. ... Read More
SoftAuto.exe SoftAuto.exe
N
Creative Labs software updater.
SoftBarrier SoftBarrier.exe
X
Added by the SoftBarrier rogue anti-spyware program.
SoftCop SoftCop.exe
X
Added by the SoftCop rogue anti-spyware program.
Softload softload.exe
X
A SDBot WORM/IRC backdoor variant adds this. The filename buds.exe and the filename forcepog.exe may also be involved. ... Read More
SoftSafeness SoftSafeness.exe
X
Added by the SoftSafeness rogue anti-spyware program.
SoftSafeness Security Service SoftSafenessSvc.exe
X
Added by the SoftSafeness rogue anti-spyware program.
SoftSoldier SoftSoldier.exe
X
Added by the SoftSoldier rogue anti-spyware program.
SoftStronghold SoftStronghold.exe
X
Added by the SoftStronghold rogue anti-spyware program.
softstuff wallpaper changer softstrt.exe
U
AzureBay wallpaper changer ... Read More
SoftThinks Agent Service sftservice.EXE
U
Added by the SoftThinks backup and recovery software commonly bundled on new computers from various manufacturers. ... Read More
SoftVeteran SoftVeteran.exe
X
Added by the SoftVeteran rogue anti-spyware program.
Software software.exe
X
Added by the CRABTON-B TROJAN!
software spools.exe
X
Added by the W32/Autorun-CS removable media worm.
Software Protection sppsvc.exe
Y
This Windows service enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is di ... Read More
software soft stop Spyware Soft Stop.exe
X
This is a Spyware remover of dubious repute. False positives work as goad to purchase. Aggressive/deceptive advertising. Listed on the rogue anti-spyw ... Read More
softwarestation station.exe
N
eAcceleration Stop-Sign related; not recommended; see note
SolidCapture solidcapture.exe
N
Added by the SolidCapture screen capture program.
Solo Sentry Solosent.exe
Y
SoloSchedule Solocfg.exe
U
Scheduler for Solo Antivirus. Leave enabled unless you scan manually on a regular basis ... Read More
SoloSysCheck Syscheck.exe
U
Solo antivirus System Integrity Check - Monitors system registry, system.ini, win.ini and startup to protect you from new Internet Worms and Backdoors ... Read More
somatic somatic.exe
X
Searchcentrix hijacker
some scit.exe
X
Identified as a variant of the Adware/Netproject malware.
songs songs.exe
X
Added by the Troj/Agent-SEG Trojan.
SonicFocus SFIGUI.EXE
Y
Added by the SonicFocus music and audio enhancer.
SoniqueQuickStart sqstart.exe
N
Quickstart for Sonique audio player. Available via Start -> Programs
SonnReg SonnReg.exe
?
Part of E-Color 3Deep for color calibration. Possibly a registration reminder?
SonudMan SonudMan.exe
X
Added by the Trojan.Startpage.Q browser hijacker. This file hijacks the browser to open www.joyiex.com. ... Read More
SonudMon SonudMon.exe
X
Added by the Troj/Lewor-J Trojan.
Sony Ericsson Device 115 driver (WDM) s115bus.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM) s115mgmt.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Driver s115mdm.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC Modem Filter s115mdfl.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Ericsson Device 115 USB WMC OBEX Interface s115obex.sys
Y
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
Sony Programmable I/O Control Device SonyPI.sys
Y
This driver is the interface between Sony Programmable I/O controls, such as jogdials, bluetooth buttons, and Function buttons, and Windows. ... Read More
Sony SPTI Service Sptisrv.exe
N
Legitimate service from Sony. Possibly for video on demand from Sony Pictures Television International (SPTI) ... Read More
SonyPowerCfg SPMgr.exe
?
Related to Sony Power Management for VAIO Computers - is it required?
sophagnt sophagnt.exe
?
Possibly related to Sophocles Screenwriting Software?
Sophos Anti-Virus SavService.exe
Y
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
Sophos Anti-Virus status reporter SAVAdminService.exe
Y
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
sopidkc Service sopidkc.exe
X
Identified by Avast Anti-virus as a variant of the Win32:Refpron-M worm.
SOProc_RegSoAlertWxLiteNnAj soproc.exe
X
Identified as Adware.MyWebSearch.
SOS SOS.exe
X
Added by the PHILIS VIRUS!
sos sql database scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
SoSyncMonitor SoSyncMonitor.exe
?
SuperOffice related. What does it do and is it required?
Sound Config sndcnf.cpl
X
Added by the Virus:Win32/Lefimy.A virus. Virus:Win32/Lefimy.A is the detection for a prepending virus that infects Windows executable files. ... Read More
Sound Driver svdhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Sound Driver for Windows sdshost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Sound Loader sndloader.exe
X
Added by the AGOBOT-BV WORM!
Sound services SOUND32.EXE
X
Added by the AGOBOT.GG WORM!
Sound System Driver svlhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Sound Volume svchosI.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Sound.exe Espanha Sound.exe
X
Added by the Troj/Agent-OUD Trojan.
soundcontrl soundcontrl.exe
X
Added by the GAOBOT.AFJ WORM!
SoundDriver SDB32 sndu64.sys
X
Added by the Troj/Haxdor-Fam rootkit. This infection also creates a service called SoundDriver SDB64 to start this rootkit. ... Read More
sounddrv sndbdrv3104.exe
X
CoolWebSearch parasite variant
sounddrv sounddrv.dll
X
A variant of the CPVFeed adware.
soundfun soundfun.exe
X
Added by the Troj/Banloa-AKQ Trojan.
Soundlibs soundgui.exe
X
Added by the Troj/Dloadr-AON Trojan.
SoundMam SVOHOST.exe
X
Added by the Troj/QQPass-XR Trojan.
SoundMam SVOHOST.exe
X
Added by the Troj/Lewor-AM Trojan.
soundman soundman.exe
N
System Tray icon for the Realtek AC97 Audio Sound Manager for AC97 onboard audio. Available via Start -> Settings-> Control Panel ... Read More
SOUNDMAN Microsoft Help soun.pif
X
Added by the W32/Rbot-AIU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
SoundMAX SMax4.exe
N
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
SoundMAX SoundMAX.exe
X
Added by the W32/Rizon-A worm.
SoundMax startup.exe
X
Added by the W32/Malas-C worm.
SoundMAX Agent Service SMAgent.exe
Y
Sound subsystem driver on many ASUS motherboards.
SoundMax Audio Drivers SndMAX.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SoundMax Audio Drivers soundmax.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SoundMAXPnP SMax4PNP.exe
U
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
SoundMixer smvss.exe
X
Added by the DEDLER-G TROJAN!
Soundmx Soundmx.exe
X
CoolWebSearch parasite variant
soundtask soundtask.exe
X
Added by the AGOBOT-MD WORM!
soundtasks soundtasks.exe
X
Added by a variant of the CRYPTER.C TROJAN!
soundtctrls soundtctrls.exe
X
Added by the AGOBOT-ZV WORM!
sounofts sounofts.exe
X
Added by the AGOBOT-ND WORM!
sountskmanager sountaskmgr
X
Added by an unidentified WORM or TROJAN!
sp sp.reg
X
IE search hijacker - changes the default search to http://www.gocybersearch.com/ ... Read More
sp rundll32 [tempdirectory]\\SE.DLL,DllInstall
X
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
SP service spsys.exe
X
Added by the W32/Codbot-AV worm and IRC backdoor.
SP TimeSync SP TimeSync.exe
U
SP TimeSync lets you synchronize your computer's clock with any Internet atomic clock (time server) ... Read More
SP00LSV Sp00lsv.exe
X
Added by the GRAYBIRD.E TROJAN!
SP1-Update sp1update.exe
X
Added by the W32/Rbot-JG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
sp2 connection patcher SP2ConnPatcher.exe
U
Changes limit of concurrent TCP connections of Windows Service Pack 2.
sp2chk.exe sp2chk.exe
X
Added by the ALUROOT.A TROJAN!
sp2connpatcher sp2connpatcher.exe
?
Unidentified - possibly part of the "Warez" P2P client software what does it do and is it required? ... Read More
sp2ctr sp2ctr.exe
X
Added by the DLUCA-M TROJAN!
sp2fwxp sp2fwxp.exe
X
Added by the WIN32.SMALL.ABW TROJAN!
sp2svc sp2svc.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
sp2update sp2update.exe
X
Added by the Adware.SP2Update adware and spyware.
spam blocker for outlook express SBInst.exe
X
HotBar related ... Read More
Spam Sleuth SpamSleuth.exe
U
Spam Sleuth E-mail spam detection program
spamblocker SbOEAddOn.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
spamfighter agent SFAgent.exe
U
SPAMfighter anti email spam filter ... Read More
spamihilator spamihilator.exe
U
Spamihilator - spam filter
SpamPal spampal.exe
U
SpamPal - anti-spam tool
SpamSubtract SpamSubtract.exe
U
Intermute SpamSubtract - junk email detection and removal program
spa_start sprt_ads.dll
X
Added by the Adware.Superiorads adware. Adware.Superiorads is an adware program that installs a Browser Helper Object for Internet Explorer and displ ... Read More
SPBBCDrv spbbcdrv.sys
Y
Driver associated with the Symantec Firewall.
Spcvl Srv Spcvls.exe
X
Added by the Troj/Kbot-A Trojan.
SpcvlsvsDrv Spcvls.sys
X
Added by the Troj/Kbot-A Trojan.
SPD Driver spdpool.exe
X
Added by the Troj/Bckdr-REA backdoor Trojan.
Spdstart Spdstart.exe
N
Norton Utilities Speed Start. "This feature optimizes the start up speed of launching applications, such as Word and Excel." ... Read More
Speaking Clock Deluxe SpClDlx.exe
U
Speaking Clock Deluxe - turns your computer into a speaking clock with several languages. It can also keep track of up to 50 alarms that can be set to ... Read More
SpecialOffers SpecialOffers*.exe [* = digit]
X
Specialoffersnetworks.com adware. "Special Offers is a state of the art advertising product that delivers to you contextually relevant web offers incl ... Read More
SpecialOffers SpecialOffers.exe
X
Specialoffersnetworks.com adware. "Special Offers is a state of the art advertising product that delivers to you contextually relevant web offers incl ... Read More
specific specixic.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Spectrum 24 Events Monitor sdmAgent20.dll
X
Added by the Trojan.Linkmediac Trojan.

Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
Speed Tec speedtec.exe
U
Accel SpeedTec from Montana Software speeds up your modem. SpeedTec modifies the Internet Protocol settings in the Windows registry to speed downloads ... Read More
speeditup SPEEDITUP.EXE
U
Related to Speed_It_Up Boost your Ram, Prevent Errors and Memory Leaks. ... Read More
SpeedItUpEX SpeedItUp.exe
U
Added by SpeedItUp. Claims to be able to increase the speed of your computer by 248%. ... Read More
Speedkey SPEEDKEY.EXE
U
Additional keyboard shortcuts on MS programmable keyboard
SpeedMeter SpeedMeter.exe
U
Application measuring upload and download speed
SpeedOptimizer spo.exe
U
SpeedOptimizer is designed to optimize and speed-up your Internet data transmission including browsing, streaming, downloading, uploading and e-mail c ... Read More
SpeedRunner SpeedRunner.exe
X
Identified as a variant of the TrojanDownloader.Matcash malware.
SpeedStartup speedstartup.exe
U
Added by the Speed Startup Windows startup programs manager.
speedswitchxp SpeedswitchXP.exe
U
SpeedswitchXP is a CPU frequency control for notebooks running Windows XP ... Read More
speedupmypc SpeedUpMyPC.exe
U
SpeedUpMyPC "automatically fine-tunes all your resources including hardware, system settings and internet usage to operate at peak performance at all ... Read More
Spees1 speedy.scr
X
Added by the OPASERV.Y WORM!
Spees2 Speedy.bat
X
Added by the OPASERV.AD WORM!
Spees3 SPEEDY.PIF
X
Added by the OPASERV.AD WORM!
Spellex Anywhere sa.exe
N
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
spfw spfw.sys
Y
Related to Securepoint firewalls.
Spiceworks spicetray_silent.exe
U
Tray icon for Spiceworks.
SpIDerMail spiderml.exe
Y
DrWeb antivirus Spider Mail e-mail scanner
Spinner Plus spinner.exe
N
"Spinner Plus lets you listen to over 100 channels of music broadcast from Spinner.com. Spinner Plus uses RealNetwork's G2 technology to provide high- ... Read More
spkrmon spkrmon.exe
?
SoundMAX SpeakerMonitor service.
splwow32 splwow32.exe
X
Added by the Troj/Dldr-FC Trojan.
SPnt SPnt.exe
X
Premium rate adult content dialler
SpokeSysTray SpokeSysTray.exe
U
Spoke Software client application. Spoke "uses data in your e-mail and other enterprise information systems to discover the existing relationships of ... Read More
spolsvr2 spolsvr2.exe
X
Added by the Win32/Evilsock.10 TROJAN! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Window ... Read More
spoo1sv spoo1sv.exe
X
Added by the SOULJET TROJAN!
spool spoollv.exe
X
Added by the W32/Sdbot-AES worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
SPOOL Configuration spoolsvc.exe
X
Added by the SDBOT-KD WORM!
spool loader spool.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
spool loadkit spoolv.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Spool lptt01 spool.exe
X
Variant of the RapidBlaster parasite (in a "spool" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
Spool Manager spoolsrv.exe
X
Added by the Troj/Banker-FR password stealing Trojan targeted at customers of Brazilian banks. ... Read More
Spool ml097e spool.exe
X
Variant of the RapidBlaster parasite (in a "spool" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
spool server daemon SPOOLSVD32.EXE
X
Win32.Rbot worm variant ... Read More
spooldr spooldr.sys
X
Added by the Trojan.Peacomm.C rootkit.
Spooler Host smhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Spooler Service Spoolsrv.exe
X
Added by the JOINER.C1 TROJAN!
Spooler Sub System Process SPOOL32.EXE
X
Added by the YAB.A TROJAN!
Spooler Subsystem spoolsub.exe
X
Added by the W32/Sdbot-ABG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Spooler SubSystem App spoolsvc.exe
X
Added by the W32/Poebot-J WORM/IRC backdoor!
Spooler SubSystem App spooIsv.exe
X
Added by the W32.Linkbot.M worm.
Spooler SubSystem App spoolv.exe
X
Added by the W32/Sdbot-BN backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
Spooler SubSystem App spooIsv.exe
X
Added by the W32/Poebot-KL worm and IRC backdoor.
Spooler SubSystem App spooIsv.exe
X
Added by the W32/Poebot-KN worm.
Spooler SubSystem Application spoolsvc.exe
X
Added by the Troj/Dloader-NY trojan.
Spooler Subsystem Application smss.exe
X
Added by the Troj/IRCBot-ZO IRC backdoor Trojan.
Spooler Subsytem App spoolsvc.exe
X
Added by the SDBOT-MM WORM!
SpoolerSubSystemProcess SpooI32.exe
X
Added by the EHKS.21 keylogger! Note - the "I" between "o" and "3" is a captial "i" not a lower case "L" ... Read More
spoolms spoolms.exe
X
Added by the Troj/LegMir-ARO backdoor Trojan.
spoolntA svchost.exe
X
Added by the Troj/Bdoor-ABW backdoor Trojan. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Spools Service Controller spools.exe
X
Added by the W32/Kassbot-C. It will modify the HOSTS file in an attempt to block access to anti-virus related websites, attempt to spread by exploit ... Read More
spoolserv spoolserv.exe
X
Added by the SDBOT-PN WORM!
SpoolService spolsv.exe
X
Added by the AGOBOT-CS WORM!
spoolsrv.exe spoolsrv.exe
X
Unknown malware.
Spoolsv Spoolsv.exe
X
Added by the CIADOOR.121 VIRUS! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.ex ... Read More
spoolsv scvhosts.exe
X
Added by the SMALL-AW TROJAN!
Spoolsv spoolvs.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Qhost.aes malware. ... Read More
spoolsv manager SpoolMgr.exe
X
Added by the W32/Assiral-A Infection! File is found in the Windows folder.
spoolsv service spoolsv32.exe
X
Added by the W32/Rbot-AHP worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
SPOOLSV32 SPOOLSV32.EXE
X
Added by the Troj/CWS-I Trojan dropper.
spoolsvc spoolsvc.exe
X
Added by the Troj/Dropper-AT.
spoolsvc spoolsvc.dll
X
Added by the Troj/Dropper-AT trojan dropper. The presence of this infection usually means there is other malware installed on your computer. ... Read More
spoolsvc.dll spoolsvc.dll
X
Added by the Troj/SCKeyLog-L keylogging Trojan.
spoolsvs.exe spoolsvs.exe
X
Added by the Troj/Dloader-RK downloader Trojan.
spoolsvu SPOOLSVU.EXE
X
Added by the StartPage.K TROJAN! ... Read More
spoolsvv spoolsvv.exe
X
Searchcentrix hijacker
spoolv spoolv.sys
X
Added by the W32/Sdbot-AES worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
spoolvs spoolvs.exe
X
Added by the SDBOT.AUS WORM! ... Read More
Spore.b Scmhlpr.vbs
X
Added by the SPORE.B WORM!
sppbridge sppbridge.exe
?
Associated with an Anycom bluetooth wireless card on laptops - used for printing to portable printers for example. Is it required or can it be started ... Read More
SprintPort SprintPortA.exe
?
Novatel wireless modem related. What does it do and is it required?
Sproc32 sproc32.exe.
X
Added by the Troj/Rightu-A trojan.
sprof sprof.exe
X
Identified as a variant of the Trojan-Downloader.Win32.FraudLoad.vagm malware.
Spruce - Auto Update Spruce.exe
X
Identified as a variant of the Adware Generic2.ZPR adware.
SPSTEALT SmartProtectorPro.exe
U
Smart Protector Pro - internet privacy tool that erases tracks, MRU lists, etc
spstore storesp.exe
?
Softprobe - program designed to provide managers with an analysis of an individuals computer use who are under their supervision. This program is NOT ... Read More
spsvc spsvc.exe
U
Added by the Hacktool.Spagent surveillance tool. If you did not install this software it should be removed. ... Read More
sptd sptd.sys
Y
Driver used by the CD Rom emulation program, Daemon Tools Version 4. There have been some reports of problems with this driver. ... Read More
Spy Blocker spyblocker.exe
U
SpyBlocker blocks the communications of spyware installed on a PC so spyware runs but can't exchange data with the server to which it should report. E ... Read More
Spy Emergency Shield Service SpyEmergencySrv.exe
Y
Added by the Spy Emergency anti-spyware software.
Spy Protector srcss.exe
X
Added by the SpyProtector rogue anti-spyware program.
spy sweeper fix SpySweeperFix.bat
Y
Related to Webroot_SpySweeper ... Read More
spy-control Spy-Control.exe
X
"Spyware remover" of dubious repute - see this list of non-recommended anti parasite software ... Read More
Spy-Keylogger skl.exe
U
Added by the Spyware.SpyKeylogger keylogger. If this was not installed by you, you should uninstall it. ... Read More
Spy-zap Spy-zap.exe
N
The Spy-Zap antispyware program.
SpyAway spyaway.exe
X
The rogue anti-spyware program called SpyAway.
spyaxe spyaxe.exe
X
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here ... Read More
spyban SpyBan.exe
X
"Spyware remover" of dubious repute - see this list of non-Recommended anti parasite software ... Read More
SpyBlast SpyBlast.exe
X
Spyware killer that is in effect autoinstalled foistware, targeted by SpyBot, among others ... Read More
SpyBlocker spyblocker.exe
U
SpyBlocker blocks the communications of spyware installed on a PC so spyware runs but cant exchange data with the server to which it should report. En ... Read More
SpyBlocs SpyBlocs.exe
X
Rogue anti-spyware program
spyblocs3.0 SpyBlocs3.0.exe
X
Rogue anti-spyware program. ... Read More
SpyBotSnD Spybotsd.exe
U
Spybot - Search & Destroy - free multi-spyware removal tool from Patrick Kolla
Spybott lptt01 spybott.exe
X
Variant of the RapidBlaster parasite (in a "Spybott" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
Spybott ml097e spybott.exe
X
Variant of the RapidBlaster parasite (in a "Spybott" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
SpyBurner SpyBurner.exe
X
Added by the SpyBurner rogue anti-spyware program. SpyBurner displays aggressive advertising and exaggerated search results. ... Read More
SpyClock 4 Personal spycl4.exe
U
Added by the Spyware.SpyClock surveillance software. This program should be removed if not installed by yourself. ... Read More
SpyCrush SpyCrush.exe
X
A rogue anti-spyware program that uses false positives and malware as a scare tactic into having you purchase the commercial version of the software. ... Read More
SpyCrush 3.1 SpyCrush 3.1.exe
X
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
SpyCrush 3.2 SpyCrush 3.2.exe
X
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
SpyCrush 3.3 SpyCrush 3.3.exe
X
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
SpyCut SpyCut.exe
X
Added by the SpyCut rogue anti-spyware application. SpyCut is a program claiming to remove spyware, even from those computers which are clean. ... Read More
SpyCut Monitor spycut_monitor.exe
X
Added by the SpyCut rogue anti-spyware application. SpyCut is a program claiming to remove spyware, even from those computers which are clean. ... Read More
SpyDawn SpyDawn.exe
X
Added by the rogue anti-spyware application SpyDawn. This program claims to be a antispyware program but uses exaggerated or fake results as a goad t ... Read More
SpyDefender SpyDefender.exe
X
Added by the SpyDefenderPro misleading application. SpyDefenderPro is a misleading application that may give exaggerated reports about potential risks ... Read More
SpyDetectSVC SpywareDetectorSVC.exe
U
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
SpyDevastator SpyDevastator.exe
X
Added by the SpyDevastator rogue anti-spyware program.
SpyEmergency SpyEmergency.exe
Y
Added by the Spy Emergency anti-spyware software.
SpyFalcon SpyFalcon.exe
X
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
SpyFighter SpyFighter.exe
X
Added by the SpyFighter rogue anti-spyware program.
spyfightermonitor SpyFighter.exe
X
"Spyware remover" of dubious repute - see this list of non-Recommended anti parasite software ... Read More
SpyGuarder spyguarder.exe
X
Added by the SpyGuarder rogue anti-spyware program.
SpyHazard SpyHazard.exe
X
Added by the SpyHazard rogue anti-spyware program.
SpyHeal SpyHeal.exe
X
Added by the rogue-antispyware application SpyHeal.
SpyHeal 3.8 SpyHeal 3.8.exe
X
Added by the rogue-antispyware application SpyHeal.
SpyHealer SpyHealer.exe
X
Added by the SpyHeal rogue anti-spyware program.
SpyHeals SpyHeals.exe
X
Added by the rogue-antispyware application SpyHeals.
SpyHunter SpyHunter.exe
N
SpyHunter - spyware remover of somewhat dubious repute, see note
Spyinator Spyinator.exe
X
Added by the Spyinator rogue anti-spyware program. Spyinator is a Security Risk that may give exaggerated reports of threats on the computer. The prog ... Read More
SpykEy Spyky.exe
X
Added by the Spyware.SpyKy keylogger. Spyware.SpyKy is a spyware program that can be used to record keystrokes on a computer. ... Read More
SpyKey SpyKeyServer.exe
U
Added by the Spyware.SpyKeyboard surveillance program. Spyware.SpyKeyboard is a spyware program that can be used to record keystrokes on a computer an ... Read More
Spykiller Spykiller.exe
U
Shareware "Spyware remover" of questionable quality and repute. There are better alternatives that are freeware to boot ... Read More
SpyKiller.exe SpyKiller.exe
X
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
SpyKillerPro SpyKillerPro.exe
X
Added by the rogue antispyware program.
SpyLax SpyLax.exe
X
Added by the SpyLax rogue anti-spyware program. SpyLax is a program that simulates detection of threats on the computer and may give exaggerated repor ... Read More
SpyLocked SpyLocked.exe
X
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
SpyLocked 3.6 SpyLocked 3.6.exe
X
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
SpyLocked 3.7 SpyLocked 3.7.exe
X
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
SpyLocked 3.9 SpyLocked 3.9.exe
X
Main executable for the SpyLocked 3.9 rogue anti-spyware application. This program is considered a rogue anti-spyware program as it uses fake and exa ... Read More
SpyLocked 4.0 SpyLocked 4.0.exe
X
The SpywareLocked rogue anti-spyware program. This program uses fake results and exaggerated results as a scare tactic to have you purchase their sof ... Read More
SpyLocked 4.1 SpyLocked 4.1.exe
X
The SpyLocked rogue anti-spyware program. This program uses fake results and exaggerated results as a scare tactic to have you purchase their softwar ... Read More
SpyLocked 4.3 SpyLocked 4.3.exe
X
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
SpyMarshal SpyMarshal.exe
X
SpyMarshal is a rogue anti-spyware product that uses false positives, misleading reports, and deceptive advertising in order to scare you into purchas ... Read More
SpyMaxx SpyMaxx.exe
X
Identified as a variant of the Fake_AntiSpyware software.
spymonitor spymonitor.exe
X
Added by the SpywareRemovalWizard security risk. SpywareRemovalWizard is a Security Risk that may give exaggerated reports of threats on the computer. ... Read More
SpyNuker Spynuker.exe
X
A "spyware removal program" by TrekBlue, which is being heavily advertised through junk e-mail from its affiliates and misleading fake-dialogue-box we ... Read More
SpyOnThisScanner SpyOnThis.exe
X
Added by the SpyOnThis rogue anti-spyware program. SpyOnThis is a misleading application that may give exaggerated reports about potential risks on th ... Read More
SpyQuake2.com Spy-Quake2.exe
X
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
SpyRemover SpyRemover.Exe
N
An anti-spyware program.
SpyRid Spy-Rid.exe
X
Added by the SpyRid rogue anti-spyware program. SpyRid is a misleading application that may give false reports of threats on the computer. ... Read More
SpySheriff SpySheriff.exe
X
Rogue antispyware application. Should be uninstalled due to its false positives and sneaky way of installing. ... Read More
SpyShredder SpyShredder.exe
X
Added by the SpyShredder rogue anti-spyware program. SpyShredder is a Security Risk that may give exaggerated reports of threats on the computer. The ... Read More
spysnipe spysnipe.exe
X
Added by the SpySnipe rogue anti-spyware program. SpySnipe is a misleading application that may give exaggerated reports of threats on the computer. ... Read More
spysoldier spysoldier.exe
X
Added by the SpySoldier rogue anti-spyware program. This program uses aggressive advertising, popups, and Internet Explorer start page hijacking. ... Read More
SpySpotter SpySpotter.exe
X
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites. SpySpotter is a security risk that may give exag ... Read More
SpySpotter System Defender SpySpotter.exe
N
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites. SpySpotter is a security risk that may give exag ... Read More
SpyStopper spystopper.exe
U
SpyStopper - blocks intrusive spyware, Web bugs, worms, scripts, advertisements, and cookies. Protects you from being profiled and tracked ... Read More
SpySubtract SpySub.exe
U
SpySubtract - multi spyware removal tool
SpySweeper SpySweeper.exe
U
Spy Sweeper anti-spyware program.
SpySweeper SpySweeperUI.exe
Y
Spy Sweeper anti-spyware program.
spytrooper SpyTrooper.exe
X
SpyTrooper, malware, posing as a spyware remover - alse see here ... Read More
SpyViperDemo SpyViperDemo
X
Added by the Spyviper rogue anti-spyware software. SpyViper is a security risk that may give exaggerated reports of threats on the computer. The progr ... Read More
Spyware Spyware.exe
X
BPS Spyware Remover - reportedly uses an old, "borrowed" SpyBot database. Read this and this. Do not support these guys! ... Read More
Spyware Begone SpywareBeGone.exe
N
Spyware BeGone - free spyware removal utility. Not recommended - see note
spyware cleaner SpywareCleaner.Exe
X
"Spyware remover" of dubious repute - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Spyware Doctor spydoctor.exe
U
Spyware Doctor spyware remover
Spyware Doctor swdoctor.exe
U
Spyware Doctor spyware remover
Spyware Doctor Auxiliary Service svcntaux.exe
Y
Related to the Spyware Doctor anti-spyware program.
Spyware Doctor Service swdsvc.exe
Y
Related to the Spyware Doctor anti-spyware program.
Spyware Guard Control Panel spywar~1.exe
U

"SpywareGuard provides a real-time protection solution against spyware"

Spyware Nuker swn2.exe
U
Part of the Spyware Nuker 2004 program.
Spyware Nuker Installer SpywareNukerInstaller.exe
X
A "spyware removal program" by TrekBlue, which is being heavily advertised through junk e-mail from its affiliates and misleading fake-dialogue-box we ... Read More
Spyware Quake SpywareQuake.exe
X
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
spyware shield Shield.exe
U
Acronis Privacy Expert Spyware_Shield prevents spyware and other suspicious programs from being installed on desktop PCs and laptops. ... Read More
Spyware Slayer SpywareSlayer.Exe
X
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Spyware Stormer SpywareStormer.Exe
N
SpywareStormer spyware remover. Not recommended - see here
Spyware Sweeper SpywareSweeper.exe
X
Added by the SpywareSweeper security risk. SpywareSweeper is a misleading application that may give exaggerated reports about potential risks on the c ... Read More
Spyware Terminator Clam Service sp_clamsrv.exe
Y
Spyware Terminator's real-time anti-virus protection.
Spyware Terminator Realtime Shield Service sp_rsser.exe
Y
Spyware Terminator's real-time spyware protection.
Spyware Vanisher SpywareVanisher.exe
U
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
spyware x-terminator SpywareX.exe
U
Spyware_X-terminator spyware remover ... Read More
spyware-cop Spyware-Cop.exe
X
Spyware-Cop alias SpywareKilla - "Spyware remover" of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
Spyware-Secure Spyware-Secure_trial.exe
X
Added by the SpywareSecure rogue anti-spyware program. SpywareSecure is a misleading application that may give exaggerated reports of threats on the c ... Read More
SpywareBomb SpywareBomb.exe
X
Added by the SpywareBomb security risk. SpywareBomb is a misleading application that may give exaggerated reports about potential risks on the compute ... Read More
spywarebot SpywareBot.exe
N
Spyware remover of somewhat dubious repute; see note ... Read More
SpywareDoctor sdoctor.exe
X
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
spywarefighterguard spfprc.exe
?
Related to Spyware_Fighter Anti spyware program which has not be evaluated by SpywareWarrior. ... Read More
SpywareGuard sgmain.exe
U

"SpywareGuard provides a real-time protection solution against spyware"

spywareguard spywareguard.exe
X
Added by the Spyware Guard 2008 rogue anti-spyware software.
Spywareguard lptt01 Spywareguard.exe
X
Variant of the RapidBlaster parasite (in a "Spyguard" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
Spywareguard ml097e Spywareguard.exe
X
Variant of the RapidBlaster parasite (in a "Spyguard" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
SpywareHeal SpywareHeal.exe
X
The main executable of SpywareHeal. This program is considered a rogue antispyware program. It is advised that you uninstall this program and instead ... Read More
spywareisolator spywareisolator.exe
X
Added by the spywareisolator rogue anti-spyware program.
SpywareKilla SpywareKilla.exe
N
Spyware remover of ill repute. For more info about it do a search for 'SpyareKilla' at this web page on "Rogue/Suspect Anti-Spyware Products & Web ... Read More
spywareknight spywareknight.exe
X
Added by the SpywareKnight rogue anti-spyware program. This program uses aggressive advertising, popups, and Internet Explorer start page hijacking. ... Read More
SpywareLocked SpywareLocked.exe
X
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
SpywareLocked 3.3 Spy-Locked.exe
X
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
SpywareLocked 3.4 SpywareLock.exe
X
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
SpywareLocked 3.5 SpywareLocked 3.5.exe
X
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
SpywareLocker SpywareLocker.exe
X
Added by the SpywareLocker rogue anti-spyware program. SpywareLocker is a misleading application described as a spyware removal utility that may give ... Read More
spywareno SpywareNo.exe
X
Bogus "Spyware remover" - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
SpywareProMFC SpywarePro.exe
X
Added by the SpywarePro rogue anti-spyware program.
SpywareQuake SpywareQuake.exe
X
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
SpywareQuaked SpywareQuaked.exe
X
Rogue anti-spyware program that uses deceptive advertising and malware to install itself. ... Read More
SpywareRemover SpywareRemover.exe
X
Added by the SpywareRemover rogue anti-spyware program. SpywareRemover displays false positives and advertised through the use of malware. ... Read More
SpywareRemover2009 SR.exe
X
Added by the SpywareRemover 2009 rogue anti-spyware program.
spywarescanner spywarescanner.exe
X
Added by the SpywareScanner 2008 rogue anti-spyware program.
spywarestrike SpywareStrike.exe
X
Rogue Spyware product ... Read More
SpywareSweeperProMFC Spyware Sweeper Pro.exe
X
Added by the Spyware Sweeper Pro rogue anti-spyware program.
SpyWarp AntiSpyware SpyWarp.exe
N
Related to the SpyWarp antispyware program.
SPYWATCH SpyWatch.exe
U
BPS Spyware Remover - reportedly uses an old, "borrowed" SpyBot database. Read this and this. Do not support these guys! ... Read More
SpyWatchE SpyWatchE
X
Added by the SpyWatchE rogue anti-spyware program.
SQInstaller SQInstaller.exe
X
Xupiter hijacker
SQL server.exe
X
Added by the W32/Punya-B worm.
SQL Backup Agent SQBCoreService.exe
Y
Added by the SQL Backup database backup program.
SQL Database sql.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SQL Server scm.exe
N
SQL Server Service Control Manager. Available via Start -> Programs
SQL Server (MSSMLBIZ) sqlservr.exe
Y
Microsoft SQL server that comes bundled with the Windows Small Business Server.
SQL Server (MSSQLSERVER) sqlservr.exe
Y
The main executable for Microsoft SQL Database Server.

If Microsoft SQL Server is installed as a named instance the Service and Display names ... Read More
SQL Server Agent (MSSQLSERVER) sqlagent.exe
Y
SQL Server Agent is a Microsoft Windows service that allows you to automate various MSSQL administrative tasks, which are called jobs. SQL Server Agen ... Read More
SQL Server Browser sqlbrowser.exe
Y
SQL Server Browser runs as a Windows service on the server. SQL Server Browser listens for incoming requests for SQL Server resources and provides inf ... Read More
sql server service sql.exe
X
Added by the W32/Rbot-ADF ... Read More
SQL Server VSS Writer sqlwriter.exe
Y
Provides the interface to backup/restore Microsoft SQL server through the Windows VSS infrastructure. ... Read More
sql-smss sql-smss.exe
X
Added by the W32/Tilebot-GI worm and IRC backdoor.
SQLDGM sql-dgm.exe
X
Added by the W32/Tilebot-EX worm and IRC backdoor. This infection utilizes the Remon.sys rootkit to hide itself. ... Read More
sqldps sqldps.exe
X
Added by the W32/Tilebot-GV worm and IRC backdoor.
sqlmanagement sqlmanagement.exe
X
Added by the W32/Tilebot-GB worm and IRC backdoor.
sqvynikp sqvynikp.exe
X
Free_Scratch_Cards foistware
SrchfstUpdate srchupdt.exe
X
SearchFast adware downloader
srePostpone srescan.dll
Y
Related to products from Zonelabs. Though we are not 100% sure as to what this file does, I suggest you do not disable it as it may affect the effect ... Read More
Srmclean srmclean.exe
U
Srmclean helps in the installation and execution of the SoundMax SoftPaq for Compaq/ADI SoundMax Integrated Digital Audio. According to Compaq - "If y ... Read More
SRNG srng.exe
X
Added by the Spyware.2020search search hijacker.
srosa srosa.sys
X
Added by the TROJ_ROOTKIT.JS rootkit.
SRP Startup srrpro.exe
U
System Restore Remover Pro allows you to safely and easily remove System Restore and various other Windows Millennium "features." This is enabled if y ... Read More
srr srr.sys
X
Added by the Rootkit.Agent rootkit.
srrcmsn srsmsn.exe
X
Added by the Troj/Banloa-AB Trojan.
SRS Applet SrsTray.Exe
Y
S3 Sonic Vibes sound card drivers - if disabled you loose sound
SRS Audio Sandbox SRSSSC.exe
U
Added by the SRS Audio Sandbox. This tool allows you to control how the sound comes from your audio card. ... Read More
srshost.exe srshost.exe
X
Added by a variant of the RBOT-ASW worm! Note: This wormtrojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. ... Read More
srtwe srtwe.sys
X
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
srute srute.exe
X
Added by the Troj/Agent-JKX Trojan.
Srv Host srvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Srv32 Srv32.exe
X
Added by the OPASERV.J WORM!
Srv32 Srv32.exe
X
Added by the OPASERV.S WORM!
Srv32 spool service spoolsrv32.exe
X
Topantispyware.com malware, recognized by Kaspersky antivirus as Trojan-Clicker.Win32.Spyre.b ... Read More
Srv325 Srv325.exe
X
Added by W32/Agobot-PR. Found in the Windows system folder.
Srv32Win SpyAgent4.exe
U
SpyAgent - monitoring software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you call it ... Read More
Srv32Win Svchost.exe
U
Realtime-Spy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it a ... Read More
Srv32Win sysdiag.exe
X
NetVizor keystroke logger
Srv32Win services.exe
X
Added by the TROJ_DLOADER.UEF Trojan. This infection should not be confused with the legitimate C:\Windows\System2\services.exe file. ... Read More
srvbtcclient svchost.exe
X
Identified by Microsoft as a variant of the Trojan:Win32/Malex.gen!E malware. This infection should not be confused with the legitimate C:\Windows\Sys ... Read More
Srvce Pack Updte svcpack.exe
X
Added by a variant of the WIN32.RBOT WORM!
srvcm srvcm.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
srvD8 srvD8.tmp
X
Identified by Kaspersky antivirus as a variant of the Packed.Win32.Krap.il malware. Please note that C:\Windows\system32\svchost.exe is a legitimate ... Read More
srvexc.exe srvexc.exe
X
Added by the SERVSAX TROJAN!
srvprc srvprc.exe
U
Added by the Spyware.ActMon surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
SrvSec svchost.exe
X
Added by the W32.Degnax@mm worm. W32.Degnax@mm is a mass-mailing worm that gathers email addresses from the compromised computer. It also spreads via ... Read More
srvsysdriver32 sysdriver32.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
SrxRwxyu srxrwxyu.exe
X
Added by the Troj/Agent-URM Trojan.
srxtray srxTray.exe
N
Titan FTP Server - FTP server
SS Logging Service SSLS.exe
U
Added by the SnoopStick surveillance software. SnoopStick comes on a USB Flash Drive and can be installed by inserting the USB Drive into the computer ... Read More
SsAAD.exe SsAAD.exe
N
The item is added during the installation of Sony's Digital Music Manager software that comes with Sony MP3 players. It monitors your HDD for newly ad ... Read More
SSBkgdUpdate SSBkgdupdate.exe
N
ScanSoft OmniPage auto updater. Can be disabled using the main program's options. This program is also installed with other Nuance products. ... Read More
SSC Service Utility ssc_serv.exe
U
SSC Service Utility is a printer utility for refilled Epson cartridges
SSCFBTN.EXE SSCFBTN.EXE
?
Samsung Scanner or Printer related - what does it do and is it required?
sscrun SSCRun.exe
U
AOL's Firewall protection program. Note: located in C:\Program Files\Common Files\AOL\... ... Read More
Ssd Std.exe
Y
Stealthdisk - file and folder hiding/locking utility
ssdiag ssdiag.exe
U
It's a shared driver components used by Sonic DLA. If DLA is enabled you can use it to burn information to a CD as if it was a floppy drive or other ... Read More
SSDPSRV ssdpsrv.exe
N
Simple Service Discovery Protocol (SSDP) and General Event Notification Architecture (GENA) services for network plug and play functionality. Starts u ... Read More
sserrvv sserrvv.exe
X
Added by the W32/Stratio-AY mass-mailing worm.
ssfs0bbc ssfs0bbc.sys
Y
The Spy Sweeper FileSystem Filter Drive for Webroot's Spy Sweeper.
ssgrate.exe system.exe
X
Added by the MITGLIEDER.C TROJAN!
ssgrate.exe sysdoor.exe
X
Added by the MITGLIEDER.N TROJAN!
ssh32 SSh32.exe
U
2Spy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
SSHNAS sshnas.dll
X
Identified as a variant of the TR/ATRAPS.Gen malware. This service is launched by svchost.exe, which is a legitimate Windows executable that should n ... Read More
SSL svchost.exe
X
Added by an unidentified VIRUS, WORM or TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
SSL SearchNDestrou.exe
X
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
ssldr ssldr32.dll
X
Added by the Troj/Agent-ZD Trojan. This infection will also install and run the file c:\windows\system32\doser.exe. ... Read More
SSLDyn SSLDyn.exE
X
Identified by Trend Micro as a variant of the TSPY_ONLINEG.FAD password-stealing Trojan. ... Read More
ssmmgr ssmmgr.exe
U
Samsung printer monitor - for checking ink levels, etc.
ssms.exe SSMS.EXE
X
Added by the W32.GISMOR WORM! ... Read More
ssp2.exe ssp2.exe
X
Added by the W32/Rbot-BBK worm and IRC backdoor.
sspy SSYTEM.EXE
U
SurfingSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
ssqroon ssqroon.dll
X
Identified by AVG as Trojan.Awax.
sssasasb32 sssasasb32.exe
X
Adware trojan - recognized by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.ig ... Read More
SStb.exe SStb.exe
X
Adpowerzone.com "ServerSide" keyword hijacker
sstray sstray.exe
N
nVidia nForce Taskbar Utility - quick access to the nForce2 "Sound Storm" control panel and related utilitys ... Read More
SSUpdate SSUpdate.exe
X
DyFuCa/MoneyTree parasite variant
ssvchost ssvchost.exe
X
Added by the HELIOS.B TROJAN!
st3 st3.dll
X
Added by the Troj/Hasum-A Trojan.
Stacmon Stacmon.exe
N
Installed with the drivers for a SigmaTel C-Major Audio card (on a Dell Inspiron 600m PC for example). Appears as though it can be disabled with no il ... Read More
stacsystray StacSysTray.exe
U
Related to SigmaTel_software Places an icon for this program on the taskbar next to the clock. Note: located in C:\Program Files\SigmaTel\C-Major Aud ... Read More
Staffcop Scheduler scheduler.exe
U
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
standalone.exe standalone.exe
X
Added by the W32/Agobot-ADS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
star8 svscheld.exe
X
Added by the Troj/DwnLdr-HLK downloading Trojan.
stardust screen saver control 2003 SCMain.exe
N
Related to Stardust_Software Screen Saver Control 2003 ... Read More
StarForce Protection Environment Driver (version 1.x) sfdrv01.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
StarForce Protection Helper Driver (version 2.x) sfhlp02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
StarForce Protection Synchronization Driver (version 2.x) sfsync02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
StarForce Protection VFS Driver (version 2.x) sfvfs02.sys
Y
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
starsk stask.exe
X
Added by the Troj/Bancos-IJ password-stealing Trojan.
starskin starskin.exe
U
StarSkin allows you to change the view and appearance of your Windows XP box with the use of publically available themes. ... Read More
start start.exe
?
??
start sbmntr.exe
X
Identified as a variant of the Adware/Netproject malware.
start extracting spoolvse.exe
X
Added by the W32/Rbot-XF WORM/backdoor Trojan. It allows unauthorized access by malicious user(s) of the IRC network, killing processes and participa ... Read More
start extracting spoolvs.exe
X
Added by a variant of the WIN32.RBOT WORM!
Start It Uping svchosets31.exe
X
Added by a SDBot variant.
start it upping svchosets.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
start page svcnt32.exe
X
Homepage hijacker, also detected as Trojan-Downloader.Win32.Delf.ks
Start Up Cop startcop.exe
U
StartUp Cop - startup manager
start uploading smsss.exe
X
Added by a variant of the SDBOT WORM!
Start Upping SVCHOSTES.EXE
X
Added by the RBOT-NB WORM!
Start Upping spoolnt.exe
X
Added by the W32/Rbot-TM WORM/IRC backdoor trojan!
Start Uppings svcchosts.exe
X
Added by the SDBOT.VY WORM!
Startacc startacc.exe
U
Launches Webroot's Accelerate 2000 software that "speeds up your Internet connection by up to 300%". Leave enabled if you find it improves internet co ... Read More
startdrv startdrv.exe
X
Identified as the Win32:Small-EPJ Trojan.
StartEAK StartEAK.exe
Y
Easy Access Button Support for Compaq PCs. Required if you use these
starter scvhosting.exe
X
Added by the IRCBOT.E TROJAN!
Starter scvhosting.exe
X
Added by the SDBOT.RU WORM!
starter scvhostingg.exe
X
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
startfoxie StartFoxie.exe
U
Related to Foxie_Suite from SOFTONIC INTERNATIONAL. This suite of free tools comes in the form of an Internet Explorer add-on and includes a mix of p ... Read More
startkey svcmgr.exe
X
Added by the Troj/Hipper-B backdoor Trojan.
startkey server.exe
X
Added by the Troj/Bifrose-B Trojan.
startkey systemhosts.exe
X
Added by the Troj/Bifrose-PC Trojan.
startkey svchost.exe
X
Added by the Troj/Agent-FPL Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
startl.exe startl.exe
N
Lingocom LingoWare - translates any application into your language
StartMenu s_menu.exe
X
Added by a variant of the DELF-A TROJAN!
startpage startpage.exe
X
Browser hijacker - redirecting to pages2start.com
STARTPAGE start1.exe
U
NoSpy.org - prevents spyware from changing your startpage and other browser properties. The start1.exe file is located in a NOSPY.ORG folder ... Read More
StartStop STARTSTOP.EXE
U
StartStop from TFI Technology - startup manager
StartSurfing STARTS.exe
U
Start Surfing allows you to protect your privacy while surfing and searching the Internet by acting as a "filter" between you and the website you are ... Read More
startup manager scanner StartupMonitor.exe
U
Startup-Mechanic Startup monitor - offers boot protection of your PC from harmful trojans, adult-dialers, and other scumware. ... Read More
startup scan Sensor.EXE
Y
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
StartupDelayer Startup Launcher GUI.exe
Y
Added by Startup Delayer. Startup Delayer allows you to specify, for each startup program, how many seconds after Windows starts will the program load ... Read More
StartupFaster StrpFstCfg.exe
?
StartupMonitor StartupMonitor.exe
U
Mike Lin's StartupMonitor, throws up an alert and asks your permission every time any change is made to your start-up configuration, either in the re ... Read More
startwin startwin.exe
X
Added by the W32.ANTIMAN.A WORM! ... Read More
StarWind iSCSI Service StarWindService.exe
N
This service belongs to the Alcohol 120% DVD/CD emulation and burning software. This software adds network drive sharing via the iSCSI protocol. ... Read More
Stat 'n' Perf StatnPerf.exe
N
Stat 'n' Perf monitors your internet connection and displays information about sent and received bytes ... Read More
StatBar STATBAR.exe
U
StatBar (system status bar) allows you to quickly get an overview of your system ... Read More
stationplayliststudio SPLStudio.exe
U
Related to Station_Playlist_Studio StationPlaylist Creator Studio combine to provide a very affordable and powerful radio automation software solut ... Read More
Statistics statslist.exe
X
Added by the W32/Opanki-S worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
status status.dll
X
A variant of the Haxdoor Trojan. This infection is hidden by the tage32.sys rootkit. ... Read More
StatusClient StatusClient.exe
?
Part of Hewlett Packard network printer drivers
StatusClient 2.6 StatusClient.exe
?
Part of Hewlett Packard network printer drivers.
statusview StatusView.exe
U
Related to Status_View Electronic intra-office messaging. Note: located in C:\Program Files\IDP Corporation\StatusView\ ... Read More
Stay Connected! StayCon.exe
N
More than just a pinger, actually simulates online activity. Supports AOL, NetZero, MSN, ATT WorldNet, CompuServe and many other ISPs as well. Availab ... Read More
StayAlive sa.exe
U
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
stayalive StayAlive.Exe
U
Related to Stay_Alive Stay connected even after a period of inactiviry on the net. ... Read More
STBVision STBVisn.exe
?
Related to the STB Velocity graphics card. What does it do and is it required?
STBWEBTV STBWEBTV.EXE
N
Used to display TV on your PC
stchost.exe stchost.exe
X
Added by the Troj/Vixup-D trojan.
stcloader stcloader.exe
X
Popup adware by 2ndThought software
stcloader STCLOA~1.exe
X
Popup adware by 2ndThought software
STCLOA~1 stcloader.exe
X
Popup adware by 2ndThought software
STCLOA~1 STCLOA~1.exe
X
Popup adware by 2ndThought software
STCPE STCPE.exe
?
Used to allow access to UCLA computer systems.
STCPO STCPO.exe
Y
Sophos Sweep antivirus software
StdAFX stdafx.exe
X
Added by the W32/Delbot-AF worm and IRC backdoor.
STDSB STDSB.exe
Y
Scrollbar driver for notebooks. If taken out of the Startup, it will not provide scrolling. ... Read More
Stealth Anonymizer 2.5 stealth25.exe
U
Now named Stealther - proxy server agent that lets you travel the Internet with maximum possible privacy ... Read More
stealth.dcom.exe stealth.dcom.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
stealth.ddos.exe stealth.ddos.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
stealth.exe stealth.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
stealth.injector.exe stealth.injector.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
stealth.stat.exe stealth.stat.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
stealth.wm.exe stealth.wm.exe
X
Added by the W32.Theals.A@mm mass-mailing worm.
Steam steam.exe
N
Valve Software's STEAM broadband game client. Steam is Valve's new way of getting games into your hands ASAP. Games like Half-Life, Counter-Strike, an ... Read More
steam steam.exe
X
Added by the W32/Rbot-AJT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Steam Client Service SteamService.exe
Y
Steam is Valve Software's content and game distribution software. This software allows you to purchase software and then download it in the backgroun ... Read More
stefanie SteFanie.vbs
X
Added by the VBS.Stefan ... Read More
Steganos Live Encryption Engine (Version 401) [Service] SLEE401.exe
Y
This is part of the Steganos Security Suite and involved in handling real-time encryption. ... Read More
Stickies STICKIES.EXE
N
Stickies - utility that allows you to put yellow "Post-It" type messages on your desktop and can be used to set reminders. Available via Start -> Prog ... Read More
Sticky Notes stikynot.exe
N
Microsoft Sticky Notes - virtual sticky notes tool
StickyNote StickyNote.exe
N
Utility that allows you to put yellow "Post-It" type messages on your desktop. Available via Start -> Programs ... Read More
Still image service stisvc.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
StillImageMonitor Stimon.exe
U
Stimon.exe enables a USB still-image device (such as a scanner) to initiate data transfer to a program. For example, if your scanning device has a sca ... Read More
stisrv stisrv.exe
X
Added by the RBOT.BQF WORM! ... Read More
stldr stldr1.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Jorik.Koobface.bp malware. ... Read More
stlsvc stlsvc.sys
X
Added by the Mal/RootKit-A rootkit.
stone stone.exe
X
Added by the W32/Agobot-PX WORM! File is found in the Windows system folder.W32/Agobot-PX is capable of spreading to computers on the local network p ... Read More
stonedrv stonedrv.exe
X
Added by the Troj/Cosiam-K Trojan.
Stop The Popup StpPopup.exe
U
Main executable for the Stop-the-Pop-Up popup blocker.
StopingSpy StopingSpy.exe
X
Added by the StopingSpy. StopingSpy is a rogue anti-spyware program that displays exaggerated results and false positives. ... Read More
StopSignStatus stopsinfo.dll
N
eAcceleration Stop-Sign related - not recommended, see note
STOPzilla Stopzilla.exe
U
StopZilla! - pop-up killer
STOPzilla Service SZNTSVC.EXE
U
StopZilla! - pop-up killer
STOPzilla Service SZServer.exe
U
Part of STOPzilla.
Storage Accounts Manager svshost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
StorageGuard sgtray.exe
U
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
StorageProtector SysRep.exe
X
Added by the StorageProtector rogue application.
StormCodec_Helper StormSet.exe
U
Storm Codec is a codec pack for Windows.
STPMGR STPMGR.EXE
?
Part of SafeTP which is transparent FTP security software. Does it need to be running permanently or can it be started manually via Start -> Programs ... Read More
strayk strayk.exe
U
Strayk changes your desktop background to the daily image found at Strayk.com.
strFree strFree.dll
X
Added by the Troj/Mdrop-DRG Trojan. Please note that C:\Windows\System32\rundll32.exe is a legitimate file and should not be removed. ... Read More
strgsync.exe StrgSync.exe
U
SimpleTech Inc's StorageSync backup software - backs up an entire PC, or selected files and folders. ... Read More
strkjhk sdflkj8.exe
X
Added by the Troj/Bckdr-QJT backdoor Trojan.
Strng32 strngbox.exe
X
Added by the STRANO WORM!
strokeit strokeit.exe
U
StrokeIt is an "advanced mouse gesture recognition engine and command processor". ... Read More
strpmon strpmon.exe
X
Added by the BugsDestroyer rogue anti-spyware program. This executable is found with other rogue anti-spyware programs as well. ... Read More
strto strto.exe
X
Added by Troj/Killav-AD to terminates anti-virus and security related applications and delete all files found in their folders. ... Read More
Stubbish Stubbish.exe
X
Added by the W32/Stubbot-A WORM/IRC backdoor!
StubPath Sservice.exe
X
Added by the PRORAT TROJAN!
stup.exe stup.exe
X
Identified by Kaspersky Antivirus as a variant of the Trojan-PSW.Win32.QQRob.le malware. ... Read More
STW stw.exe
X
Added by the WebHelper Startpage adware.
StyleXP StyleXP.exe
U
StyleXP allows you customize the way WinXP looks. If disabled via msconfig it re-instates itself at reboot, therefore uninstall it if you don't want i ... Read More
StyleXPService StyleXPService.exe
Y
"How sleek is your desktop? Style XP unleashes the full potential of your Windows XP desktop by allowing you to download and install XP themes." ... Read More
Sub Connections shmyga.exe
X
Added by an unknown Trojan Downloader. It installs itself as a service with a servicename of Pro. Shmyga.exe is located in the Windows system folder. ... Read More
subah SubAH.exe
X
Added by the SubAH backdoor TROJAN!
subliminal power Subliminal.exe
U
Related to Subliminal_messages A displays subliminal messages of your choice on your computer screen. Note: located in C:\Program Files\Subliminal Po ... Read More
subway1113.3322.org subway1113.3322.org.exe
X
Added by the Troj/Rincux-B. Trojan
Suitcase Startup Suitcase.exe
U
Suitcase. System font manager start up utility. Used for dynamic managment of fonts on your system ... Read More
Suite SuiteOffices.exe
X
Added by the LAZAR trojan downloader.
SULFNBJ.EXE SULFNBJ.EXE
X
Added by the PE_MAGISTR.DAM VIRUS!
Sun svchost32.exe
X
Added by the Troj/Banker-BP TROJAN!
sunasdtserv sunasDTServ.exe
U
SunBelt CounterSpy spyware detection and removal software ... Read More
sunasserv sunasServ.exe
U
SunBelt CounterSpy spyware detection and removal software ... Read More
SunJavaUpdate smvss.exe
X
Added by the DEDLER-G TROJAN!
SunJavaUpdateSched scvhost.exe
X
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
SunJavaUpdatSched spoolsv.exe
X
Added by the Troj/Bancban-NP Trojan.
Sunkist shwicon98.exe
U
Card reader for memory cards from digital cameras, etc
Sunkist2k shwicon2k.exe
U
Card reader for memory cards from digital cameras, etc
SunKistEM shwiconem.exe
U
Used by your computer to communicate with your Alcor_Micro Multimedia Card Reader - necessary if you're using this software ... Read More
SuNotification suatshut.exe
U
ShadowSurfer - "provides a safe computing environment by creating a virtual twin of your PC. Restore the pre-ShadowMode™ system state no matter what c ... Read More
sunprotectionserver SunProtectionServer.exe
U
CounterSpy antispyware software ... Read More
sunserver SunServer.exe
U
CounterSpy antispyware software ... Read More
Sunshine Sunshine.exe
X
Related to the rogue anti-spyware program called SunshineSpy.
SupaDial SupaDial.exe
?
SupaNet.com modem driver related - is it required?
Supastatus status.exe
N
Supanet ISP software
supdate2.dll supdate2.dll
X
Added by the Troj/Zlob-VL Trojan.
super super.exe
X
Added by the W32/Agobot-QT WORM/IRC backdoor, which changes the HOSTS file and allows an attacker access - making possible several other actions. ... Read More
super x desktop version 3.4 SXDesk.exe
U
Related to Super_X_Desktop Manager. 100 reliable virtual desktop, custom caption and wallpaper. ... Read More
SuperAdBlocker SAdBlock.exe
U
SUPERAntiSpyware SUPERAntiSpyware.exe
Y
SuperAntiSpyware's real-time protection process.
SuperBar.Component services.exe
X
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
Supercleaner Supercleaner.exe
U
Supercleaner - all in one disk cleaner for your computer
SuperHeissSex SuperHiessSex.exe
X
Added by the Dialer.HeissSex premium adult dialer.
superheisssex SuperHeissSex.exe
X
Added by the HeissSex premium rate adult content dialer! ... Read More
superproxy superproxy.exe
X
Added by the Troj/Agent-ENY backdoor Trojan.
superproxy superproxy.exe
X
Added by the W32/Vanebot-AQ worm and IRC backdoor.
superram SuperRam.exe
U
Related to SuperRam Tool which allows you to maintain and manage memory. Note: located in C:\Program Files\SuperRam\ ... Read More
SuperSpamKiller Pro Ssk.exe
U
SuperSpamKiller Pro email spam blocker
Supervise.exe Supervise.exe
X
Added by the Troj/Delf-DZX Trojan.
Supervisor.exe Supervisor.exe
?
Has been reported to be associated with various antitrojan software like ATS and PC Doorguard. If so it's required in Startup - any further informatio ... Read More
supporter5 supporter5.exe
X
Part of eScorcher anti-virus software- responsible for updates of new virus bases each time you logon to the web. Used to collect information about th ... Read More
Supports RAS Connections svhost.exe
X
Added by the W32/Rbot-GXH worm and IRC backdoor.
SupportSoft Sprocket Service sprtsvc.exe
Y
Driver related to Dell's support center.
SureCleanProfessional SRClean.exe
U
SureClean PC and Internet tracks cleaner
Sureshotpopupkiller Stopthepop.exe
U
Stop-the-Pop-Up popup blocker
surfaccuracy sacc.exe
X
SurfAccuracy adware ... Read More
SurfChoice SCMan.exe
U
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
Surfer lptt01 surfer.exe
X
Variant of the RapidBlaster parasite (in a "mssurfer" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
Surfer ml097e surfer.exe
X
Variant of the RapidBlaster parasite (in a "mssurfer" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
surfhelper SurfHelp.exe
U
Related to SurfHelperA A free tool to remove popup windows, clear history, control window properties of IE, and more. ... Read More
SurfNavigator SurferClient.exe
X
According to the information found here, this program is supposed to simulate a web surfer that can click on links within a hidden IE window.
Read More
SurfSecret ss2-full.exe
U
"House-cleaning utility that enables you to keep your computer usage to yourself. Runs quietly from the system tray, eliminating tell-tale files at a ... Read More
SurfSideKick Ssk.exe
X
Added by the Adware.SurfSideKick adware.
SurfSideKick 2 Ssk.exe
X
Added by the Adware.SurfSideKick adware.
SurfSideKick 3 Ssk.exe
X
Added by the Adware.SurfSideKick adware.
SurfStream SurfStream.exe
U
Conceiva "SurfStream lets you surf the Web faster. It contains a fully featured proxy server that lets you surf the Web significantly faster. It also ... Read More
SurveyorSession SurveyorSession.exe
Y
Power Management software from Verdiem that allows you to manage the power management settings for all the PCs on your network. ... Read More
Surveysa surveysa.exe
?
Found in the SonyVaiosurvey directory on a Sony Vaio PC. What does it do and is it required? ... Read More
Susp Susp.exe
X
Transponder parasite updater/installer
SV00LSV SV00LSV.EXE
X
Added by the Troj/GrayBird-C backdoor trojan.
SVA Player SVAplayer.exe
X
QuickFlicks Streaming Player - regarded as spyware. See here for details of how to disable or uninstall it ... Read More
Svc svc.exe
X
Hijacker, Clientman parasite variant, redirecting to madfinder.com. Detected by Symantec as the MADFIND TROJAN! ... Read More
SVC Module svchost.exe
X
Added by the W32/Sdbot-ADG worm. This file should not be confused with the legitimate Windows file of the same name located in the Windows %System% fo ... Read More
SVC Service svcinit.exe
X
Added by the SINIT TROJAN!
SVC Service svcinit.exe
X
CoolWebSearch parasite variant
SVC Service svcpack.exe
X
CoolWebSearch parasite variant
SVC Service svc32.pif
X
Added by the W32/Rbot-ASC worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
svcdata.exe svcdata.exe
X
Added by the W32.Spybot.ZIF worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Svced Svced.exe
X
Added by the DELF.F TROJAN!
SVCH Service svch32.pif
X
Added by the W32/Rbot-ASZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
SvcH0st SHCH.EXE
X
Added by the TROJ/BDOOR-EB TROJAN!
SvcH0st SVCHST.EXE
X
Added by the TROJ/BDOOR-EB TROJAN!
SVCH0ST SVCH0ST.EXE
X
Added by the Troj/Lors-A trojan.
SVCH0ST spoo1sv.exe
X
Added by the Troj/VB-HF trojan.
SvcH0st sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
SVCH0TS sp00lvs.exe
X
Added by the Troj/Lineage-AZ password-stealing Trojan for the online game Lineage. ... Read More
svchast svchast.exe
X
Added by the Troj/Lineage-AV password-stealing Trojan for the online game Lineage. ... Read More
SVCHAST SVCHAST.exe
X
Added by the Adware.PPRich adware. Adware.PPRich is a program that displays internet advertisements in Chinese on the computer. ... Read More
svchos svchos.exe
X
Added by the Troj/Singu-C Trojan.
SVCHOSI SVCHOSI.EXE
X
Added by the W32/Vbbot-AA worm and IRC backdoor.
svchost Svch0st.exe
X
Added by the GRAYBIRD.B TROJAN!
SVCHOST svchost.exe
X
System1060 homepage hi-jacker. Found in a Windows\System\1060 directory. Note - this is not the legitimate svchost.exe process which should NOT appear ... Read More
svchost svchost.exe
X
Added by the MORB WORM or TARNO TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
svchost Svch0st.exe
X
Added by the GRAYBIRD TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Svchost svchost.exe
X
Added by the MOXE-A WORM! This is not the valid svchost.exe as described here
Svchost svchosl.pif
X
Added by the INZAE.A or INZAE.B WORMS!
svchost svchost.scr
X
Added by Troj/Bancos-CB.
Svchost svchost.exe
X
Added by Troj/AdClick-AM, a TROJAN that copies itself to the C:\Program Files\Internet Explorer" folder. ... Read More
svchost svchost.exe
X
Added by the Adware.2Search spyware/adware.
svchost svchost.exe
X
Added as part of a new potential CWS infection. This program is part of a suite of programs that installs a web server, php, ftp server, socks, and m ... Read More
SVCHOST SERVlCES.EXE
X
Added by the Troj/Delf-LF backdoor Trojan.
SvcHost svchost32.exe
X
Added by the W32/Agobot-TM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
svchost svchost.com
X
Added by the Troj/Banloa-ABL Trojan.
SVCHOST svchost64.exe
X
Added by the Troj/Startp-G Trojan.
svchost SVSH0ST.EXE
X
Added by the W32.Gexin.A worm. W32.Gexin.A is a worm that spreads through shared folders and removable drives. It modifies certain .htm, .php, and .as ... Read More
svchost svcst.exe
X
Added by the W32/Agent-LIL worm.
svchost Agent svchost.exe
X
Added by the W32/Autorun-DB removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
svchost connection monitor svchost32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
SVCHOST Generic application svchost.exe
X
Added by the Troj/Daemoni-AT TROJAN!
svchost Netware Manager svchost.exe
X
Added by the W32.Exvid.A@mm keylogging virus. This infection should not be confused with the legitimate svchost.exe residing in the Windows %System% ... Read More
SVCHost Protocol32 scvhost32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Svchost Service svchost.exe
X
Added by the W32/VB-DVQ worm. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Svchost Windows Remote Services svhost.exe
X
Added by the W32/IRCBot-IV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
svchost.exe svchost32.exe
X
CoolWebSearch parasite related. Note - this is not the valid svchost.exe as described here ... Read More
SVCHOST.EXE SVCHOST.EXE
X
Added by the Troj/Wrmscan-A . It modifies any files named "mirc.ini", then creates a file named "server.mrc" in the same folder which causes the IRC p ... Read More
svchost.exe svchost.exe
X
Added by the Troj/PWSjx-A password stealing trojan. This infections attempts to steal your password for the game MuYangJX. ... Read More
svchost.exe svchost.exe
X
A variant of the IRCBot family of worms and IRC backdoors.
svchost.exe svcnost.exe
X
Added by the Troj/Mislead-A Trojan.
svchost1 svchost1.exe
X
Added by the AGOBOT.ZZ WORM!
SVCHost2 svchost2.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SvcHost32 svchost32.exe
X
Added by the MIMAIL.I or MIMAIL.J WORMS!
svchost64 svchost64.exe
X
Added by the SDBOTER.G VIRUS!
svchosta svchosta.exe
X
Added by the Troj/Sniffer-I.
svchostb svchostb.exe
X
Added by the Troj/Sniffer-J TROJAN!
svchostBB svchostBB.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostBD svchostBD.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostBDJU svchostBDJU.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostBN svchostBN.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostCX svchostCX.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostdll.scr svchostdll.scr
X
Added by the Troj/Bancban-FM password-stealing Trojan of certain bank web sites. ... Read More
svchostIT svchostIT.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchostn.exe svchosth.exe
X
Added by the Backdoor.IRC.Zlulbot IRC backdoor.
svchostr svchostr.exe
X
Added by an unidentified WORM or TROJAN!
svchostRE svchostRE.scr
X
Added by the Troj/Dloader-MC TROJAN!
svchosts svchosts.exe
X
Added by the Troj/Bancban-DC ... Read More
svchosts sbchost.exe
X
Added by the W32/Rbot-DCM worm and IRC backdoor.
svchosts.exe svchosts.exe
X
Added by the W32/AGOBOT-JN WORM! ... Read More
svchosts.scr svchosts.scr
X
Added by the Troj/Bancban-DQ password-stealing trojan.
svchostUN svchostUN.scr
X
Added by the Troj/Dloader-MC TROJAN!
SVCHOT SVCHOT.exe
X
Added by the Troj/QQRob-U Trojan.
svchoxt svchoxt.exe
X
Added by the Troj/QQPass-FC Trojan.
svchst svchst.exe
X
Added by the Troj/Keylog-HD Trojan.
svcinfo svcinfo.exe
X
Added by the CRYPTER.A TROJAN!
svclhost svcchost.exe
X
Added by an unidentified WORM or TROJAN!
svcmon svcmon.exe
U
Added by the Spyware.PersonInspect surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
Svcnost.exe svcnost.exe
X
Added by the Trojan.Selex.B Trojan.
Svconr Svconr.exe
X
Identified as a variant of the Adware/CPVBHO malware.
svcosvt svcosvt.exe
X
Identified as Trojan-Clicker.Win32.VB.qj.
Svcphpwin sslphp32.exe
X
Added by the W32/Agobot-ABR worm and IRC backdoor.
svcroot svcroot.exe
X
Added by the KEYLOG-AC TROJAN!
svcs32 svcs32.exe
X
Added by the Mal/Agent-VE malware.
svcshare spoclsv.exe
X
Added by the W32.Fujacks.D worm. W32.Fujacks.D is a worm that spreads by copying itself to network shares protected by weak passwords. It also copies ... Read More
svcshare spo0lsv.exe
X
Added by the W32/Fujacks-I prepending virus. W32/Fujacks-J searches for files with HTML and ASP extensions and append code to them. These files are de ... Read More
svcshare sppoolsv.exe
X
Added by the W32/Fujacks-Y prepending virus.
svcshare sppolsv.exe
X
Added by the W32/Fujacks-N backdoor Virus.
svcshare spcolsv.exe
X
Added by the W32/Fujacks-O virus and worm with backdoor functionality.
svcshost svcshost.exe
X
Added by the Troj/Agent-GLN Trojan.
SvcSys svcsys.dll
X
Added by the PWSteal.Bancos.Y password-stealing Trojan.
svcsys registry manager svcsysreg.exe
X
Added by a TROJAN.CLICKER - identified by Kaspersky antivirus as Trojan-Clicker.Win32.Agent.cv ... Read More
svcsys32 svcsys32.exe
X
Added by the AGOBOT-LL WORM!
svctask svctask.exe
X
Added by the Troj/Chuckyb-A backdoor trojan.
SVGA Adapter svgainit.exe
X
Added by Backdoor.Deftcode. This infection connects to an IRC server where it awaits commands. ... Read More
SVGA Adapter svghost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Svhost Svhost.exe
X
Added by the W32/VB-ASG worm.
SVHOST SVCHOST.EXE
X
Added by the W32/Zori-A VIRUS!
Svhost Loader svshost.exe
X
Added by the AGOBOT.G WORM!
Svhost Service Server svhostser.exe
X
A variant of the Backdoor.Win32.Rbot.gat family of worms and IRC backdoor Trojans. ... Read More
svhost System svhost.exe
X
Added as a new service by the Troj/Xrat-A TROJAN, using a servicename of svhost. ... Read More
svhost updates Svhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
svhost.exe svhost.exe
X
Added by the W32/SillyFDC-AY worm.
svhost32 svhost32.exe
X
Added by the W32/Autorun-AWY removable media worm.
svhosts svhosts.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
SVIDC32M SVIDC32M.exe
?
??
sviload32 sviload32.exe
X
Added by the W32/Rbot-AAS WORM/IRC backdoor trojan!
svitch svitch.sys
X
A variant of the Haxdoor rootkit.
SVKP SVKP.sys
Y
Svkp.sys is a clean driver used in anticracking software & several legitimate programs. Disabling this software will cause the legitimate programs to ... Read More
svkvpn svkvpn.dll
X
Added by the Troj/Haxdoor-DB Trojan. This infection utilizes the svkvpn.sys and svjvpn.sys rootkits to hide itself. ... Read More
svlmngr svlmngr.exe
X
Added by the W32/Rbot-BLW worm and IRC backdoor.
svlost Service svlostSrv.exe
X
Unidentified MSN Messenger worm.
SVM Pop svmpop.exe
?
??
svnlitup32 svnlitup32.exe
X
Added by the RBOT.CBJ WORM! ... Read More
svnloader svnload32.exe
X
Added by the W32/Rbot-ACU worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
svohcst.exe svohcst.exe
X
Added by the PWSteal.Kurofoo password-stealing Trojan.
svohost spoclsv.exe
X
Added by the W32/Fujacks-R virus with backdoor functionality.
svohost.exe svchcst.exe
X
Added by the W32/Autorun-ZC removable media worm.
svphost.exe svphost.exe
X
Added by the AGENT.CS TROJAN!
SVPWUTIL SVPWUTIL.exe
U
Part of Toshiba Hardware Setup for their laptops.
svrhost Svrhost.exe
X
Added by the Adware.Satbo adware.
svrpcn.exe svrrec.exe
U
Added by the Spyware.Recon surveillance software. If you did not install this software you should remove it immediately. ... Read More
svrrun svrrun.exe
X
Adware hailing from Deskwizz.com
svschost.exe svschost.exe
X
Added by the Troj/FakeAV-IN Trojan.
SVSEEHOST Svseehost.exe
X
Added by the W32/VBLame-D worm.
svsekin svsekt.exe
X
Added by the TROJAN.PWS.QQPASS.G TROJAN! ... Read More
svshost svshost.exe
X
Added by the W32/Chode-H instant messenger worm.
svshost update service svcbind.exe
X
Added by the MYTOB.LH WORM! ... Read More
svshost32 svshost32.exe
X
Added by a variant of the Rbot worm. This worm, when started, connects to IRC servers where it sits in a desginated channel waiting for commands from ... Read More
svshostdriver svshost.exe
X
Added by the SDBOT-HN TROJAN!
svshots svshots.exe
X
The Troj/Botget-A TROJAN opens a backdoor, and via IRC channels will attempt to download and run C:gdc.exe also. ... Read More
svthall32 svthall32.exe
X
Added by the Troj/Dropper-TL Trojan.
svvhost svvhost.exe
X
Added by the Infostealer.Blurax Trojan. Infostealer.Blurax is a Trojan horse that logs keystrokes and steals confidential information from the comprom ... Read More
svvhostc svvhostc.exe
X
Added by the Infostealer.Blurax.B Trojan. Infostealer.Blurax.B is a Trojan horse that logs keystrokes and steals confidential information from the com ... Read More
SVX Control Service svxhost.exe
X
Added by the FORBOT-K WORM!
sv_ajnag svajnager.exe
X
Unknown malware.
sv_chost sv_chost.dll
X
Added by the Troj/Wanda-B keylogging Trojan. This Trojan also contains rootkit technology in order to hide itself. ... Read More
sw20 sw20.exe
U
Related to Dynamic_Overclocking_Technology ... Read More
sw24 sw24.exe
U
Related to Dynamic_Overclocking_Technology ... Read More
swapdm swapdm.dll
X
Added by a variant of the Goldun.Fam Trojan.
sware SWARE.EXE
X
Related to SmitFraud infections.
SWCaller SWcaller.exe
X
Homepage hijacker - see here
SWCaller Swcaller2.exe
X
Homepage hijacker - see here
Swchost Swhost.exe
X
Added by the Troj/Bdoor-MP backdoor Trojan.
swclient swsys.exe
U
ActivMonAgent Keyboard logger/monitoring program - remove unless you installed it yourself! ... Read More
SWClient swclient.exe
U
Added by the Spyware.StealthWatcher surveillance software. Spyware.StealthWatcher is a spyware program that allows a remote user to view screenshots, ... Read More
swcroot swcroot.exe
X
Unidentified adware
SweetBox SweetBox.exe
X
Added by the Adware.SweetBar adware that display pop-up ads.
sweetim SweetIM.exe
N
Related to SweetIM Send fancier smiley-faces and IM graphics to friends who are using MSN Messenger. BUT - they are only able to see these advanced s ... Read More
SwiftCleaner SwiftCleanerScanner.exe
X
Added by the SwiftCleaner rogue anti-spyware program.
SwimSuitNetwork SwimSuitNetwork.exe
X
Advertising spyware
swingsys SWINGSYS.EXE
X
Added by the Troj/Bancos-CX trojan.
Switch Off swoff.exe
U
Switch Off - tray-based system utility that can automatically perform various frequently used operations like shutdown or restart your computer, disco ... Read More
SwitchBoard SwitchBoard.exe
N
Allows communication between Adobe Bridge and the mini-bridge panel found in Adobe Photoshop or Adobe InDesign. ... Read More
switcher.exe Switcher.exe
U
Sony VAIO Wireless Switch Setting Utility. This program allows you to use a switch to activate and deactivate the wireless lan or bluetooth adapter. ... Read More
switp switpa.exe
X
Added by the Adware.OfferAgent adware. This program will display popups on your computer. ... Read More
SWL SWL.dll
U
Added by the Spyware.StealthWeblog surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
swn2 swnxt.exe
U
A "spyware removal program" by TrekBlue, Previously found to be of dubious repute. SpywareWarrior_List It was delisted. Make sure you have the latest ... Read More
SwTray SWTRAY.EXE
N
MS SideWinder game controller system tray icon. Available via Start -> Programs. May have the version number after it ... Read More
SWTrayV4 SWTrayV4.exe
N
MS SideWinder game controller system tray icon. This is specific to version 4 of the software. Available via Start -> Programs ... Read More
Swupdtmr swupdtmr.exe
N
Software updater for Toshiba computers.
sxfnewqb sxfnewqb.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
SXGDSENU sxgdsenu.exe
?
Yamaha SXG soundcard driver
SxgTkBar sxgtkbar.exe
?
Yamaha SXG soundcard driver
sxmrv sxmrv.pif
X
Added by the Troj/Dloader-KE TROJAN!
Sxplog sxpstub.exe
?
Part of CA Unicenter Software Delivery - manage software across various systems, from desktops and servers to PDAs and mobile phones, in a controlled ... Read More
sxprv sxprv.pif
X
The TROJAN Troj/Dloader-IT adds this to the Windows system folder.
sxrrv sxrrv.pif
X
Added by the Troj/Vax-A trojan.
sy s2.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
syelimS-esreveR-troppuS sample.exe
X
Added by the Troj/Lootbot-B backdoor Trojan.
Syesm Syesm.exe
X
Added by the W32.Buzus worm. W32.Buzus is a worm that spreads by copying itself to removable drives and attempts to steal confidential information fro ... Read More
Sygaete Personal Firewall SyGate.exe
X
Added by the W32/Rbot-GLX worm and IRC backdoor.
Sygate Peral Firewall Syga.exe
X
Added by the W32/Rbot-AQK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Sygate Personal 3 svrv.exe
X
Added by the W32/Rbot-XD WORM/backdoor Trojan, which attempts to modify network shares and users and terminate processes. ... Read More
Sygate Personal Block Studio.exe
X
Added by the W32/RBOT-TW WORM!
Sygate Personal Firewall system32.exe
X
Added by the RBOT.VI WORM!
Sygate Personal Firewall sysgut.exe
X
Added by the SDBOT.WM WORM!
Sygate Personal Firewall Sygate.exe
X
Added by the RBOT-PN WORM!
Sygate Personal Firewall sexy.exe
X
An Rbot WORM variant adds the file to download additional files, steal CD keys and become involved in DoS attacks via an IRC channel and remote attack ... Read More
Sygate Personal Firewall sys.exe
X
Added by the W32/Rbot-ZC WORM/IRC backdoor Trojan!
Sygate Personal Firewall sys.exe
X
Added by a Rbot variant.
Sygate Personal Firewall service.exe
X
Added by a variant of the WIN32.RBOT WORM!
Sygate Personal Firewall Syga.exe
X
Added by the W32/Rbot-AQD worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Sygate Personal Firewall smc.exe
X
Added by the W32/Rbot-AZY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Sygate Personal Firewall Slinder
X
Added by the W32/Rbot-BFQ worm and IRC backdoor.
Sygate Personal Firewall Start services32.exe
X
Added by the RBOT-MB WORM!
Sygate Personal Firewall Start servic.exe
X
Added by the RBOT-RY WORM!
SyGateService sgserv95.exe
U
SyGate is a useful little program that lets you share an internet connection over an intranet. Is it needed - it saves a lot of headache to just let S ... Read More
Symantec Administration Service symlasvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Anti Virus symantec32.exe
X
Added by a variant of the WOOTBOT WORM!
Symantec Boot Config symbootcfg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Client Security symclient.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Configuration Load symloadcfg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Configuration Settings symconfig.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Control Client symclisvc.exe
X
Added by the Troj/Bdoor-ANN backdoor Trojan.
Symantec Core LC symlcsvc.exe
Y
Part of Norton AntiVirus 2004. What does it do?
Symantec Core LTD symlsmd.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec DB Server symdbsvr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Debug Client symdebugs.exe
X
Added by the Troj/IRCBot-ACM Trojan.
Symantec Device Config symldvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Device Manager symlsrd.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Drive Maintenance symldsm.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Drive SecMon symldsv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Drive Services symlssdr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec DVD Record symldvd.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Handler Service symlsmc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec License Server symlcsrv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Licensing Server symlserv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Licensing Source symlsrc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Licensing Svc symlsrv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec NetDriver Monitor SNDMon.exe
U
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
symantec netdriver warning SNDWarn.exe
U
Part of Symantec Live Update - displays the warning when you need to update the firewall database. ... Read More
Symantec Network AI symlsmr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Network Drivers Service SNDSRVC.EXE
U
Part of Norton Personal Firewall and Norton Internet Security. Sndsrvc.exe is the module controlling the send scan for outbound email if the optioin i ... Read More
Symantec Registery Services symlsnreg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Registry Server symsnreg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Remote Services symrdserv.exe
X
Added by the W32/HostInf-D worm and IRC backdoor.
Symantec Restore Services symlsrw.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec RPC Call symlsrp.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Secure Server svrhost.exe
X
Added by the Troj/IRCBot-UB backdoor Trojan.
Symantec SecurePort SymSPort.exe
Y
Part of the Symantec Firewall.
Symantec Security symantec32.exe
X
Added by the RANDEX.PR or RANDEX.YR WORMS!
Symantec Security License symlsrx.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec Service Client symlcserv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec SPBBCSvc SPBBCSvc.exe
Y
Part of Symantec Internet Security Suite.
Symantec Spooler Application symlsma.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec System DB symlssdb.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Symantec System Maintenance symlssm.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SymantecFilterCheck svhost.exe
X
Added by the Troj/Banker-EEO Trojan.
SymAV SymAV.exe
X
Added by the NETSKY.U WORM!
symavc32 symavc32.sys
X
Rootkit added by the Troj/Agent-FZV Trojan.
SYMDNS symdns.sys
Y
Driver used by the Symantec Firewall product to validate DNS responses before allowing them through the firewall. ... Read More
SymEvent symevent.sys
Y
Driver used by Symantec products.
SYMFW symfw.sys
Y
Symantec Firewall driver.
SYMIDS symids.sys
Y
Device driver used by Symantec Antivirus.
Symlcs symlcs.exe
X
Added by the Troj/YaSpy-A Yahoo messenger spying Trojan.
Symmetrical Network symmec.exe
X
Added by the W32/Delbot-N worm and IRC backdoor. W32/Delbot-N spreads to other network computers by exploiting common buffer over flow vulnerabilities ... Read More
symsec(SymSec) symsec.exe
X
Added by the W32/Tilebot-EP worm and IRC backdoor.
SymSnapService SymSnapService.exe
Y
System recovery service used by Ghost and Backup Exec. If this service is not running it could cause certain functionality to be disabled from these ... Read More
SymTray - Norton SystemWorks SYMTRAY.EXE
N
Keeps all System Tray icons for Norton SystemWorks together to reduce clutter. SystemWorks includes Norton Anti-Virus, Norton Utilities and Norton Cle ... Read More
SymTray - Norton SystemWorks Symtrdr.exe
N
The tray icon for Norton System Works to keep all icons related to the various programs included in System Works in one place. ... Read More
SymWMI Service SymWSC.exe
Y
Installed by Norton Internet Security Center. This program is essential to operation of this program when installed on your computer. Disabling this ... Read More
Sync SCVHOST.exe
X
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
Sync svchost.exe
X
Added by the W32.Kenety worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Aut ... Read More
Sync-It Syncit.exe
U
Sync-It - synchronizes the system clock with time servers on the internet
SyncAgent syncagent.exe
U
Ghost Keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" a ... Read More
syncps syncps.dll
X
Added by a variant of the Goldun.Fam Trojan.
Syncronization Task shrhost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
SynSetup SynTP.tmp RunOnce.exe
?
Probably associated Synaptics touchpads on laptops as for the SynTPEnh and SynTPLpr entries but what does it do and is it required? ... Read More
Syntax Script systacq.exe
X
Added by the SDBOT.AI WORM!
Syntax Script saskatcw.exe
X
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
Syntek STK1150 Service StkASv2K.exe
U
Part of the driver for an add on USB video capture dongle. The driver is installed via the video capture software packaged with the dongle. This start ... Read More
SynTPEnh syntpenh.exe
U
Synaptics touchpad tray icon. Displays status and provides quick launch to touchpad features such as scrolling and tap zones. Required on IBM Thinkpad ... Read More
SynTPLpr syntplpr.exe
Y
Synaptics touchpad driver helper. Required for touchpad features to work
syom syom.exe
X
Added by the W32/Tilebot-KV backdoor worm.
sys sysdllwm.reg
X
CoolWebSearch parasite variant
sys systemm4.exe
X
Added by the W32/VB-DXY removable media worm.
Sys Ren SysRen.exe
X
Part of FlashEnhancer adware
sys008 sys008.exe
X
Hijacker, also detected as the TROJ/STARTPA-GK TROJAN! ... Read More
sys009 sys009.exe
X
Added by the Troj/StartPa-ZB trojan.
SYS1 system.exe
X
Added by the W32.SillyFDC worm.
SYS1 scvost.com
X
Added by the W32/AutoIt-JY worm.
sys201 sys209.exe
X
Added by the Troj/StartPa-ZY ... Read More
sys32 sys32.exe
X
Added by the FLUX.E TROJAN!
sys32 sysx32.exe
X
Added by the W32/Kvex-A virus.
sys32.exe sys32.exe
X
Identified by Ikarus as a variant of the Email-Worm.Win32.Generic malware.
sys32dll sys32dll.exe
X
Added by the W32.Aimdes.B WORM!
Sys32DLL Sys32DLL.vbs
X
Added by the VBS/Ediboy-A WORM!
sys32sql sys32win.exe
U
Active Keylogger monitoring software - also see here. From the Symantec article: "This spyware program must be manually installed. However, there are ... Read More
sys32_nov sys32_nov.exe
X
Added by the Troj/Agent-LAX Trojan.
sys33 Sys33.exe
X
Added by the W32/Agobot-WJ worm and IRC backdoor.
SysAgent SysAgent.exe
U
SYSagent - small utility for retrieving all the hardware and software information required by anyone administering a machine and/or the network it's a ... Read More
SysAI SysAI.exe
X
AproposMedia adware - also creates SysAI folder in Program Files where the SysAI.exe is also located ... Read More
SysAntivirus 2009 sysav.exe
X
Added by the SysAntivirus 2009 rogue anti-spyware program.
sysApp sklgr.exe
U
Added by the Spyware.SuperKeylogger surveillance software. Spyware.SuperKeylogger is a spyware program that monitors and records keystrokes, instant m ... Read More
sysApp SChal.exe
X
Added by the Troj/KeyLog-CE keylogger.
SysArchive SysArchive.exe
X
Added by Backdoor.DarkSky.B. This infection listens on ports 5418 and 5419 awaiting commands. ... Read More
SysATW sysatw.exe
X
Added by the W32/Vanebot-AM network worm.
SysBackUp SysBackUp.exe
X
Added by the W32/Gallory-A worm.
sysBoot syskernel.exe
X
Added by the W32/Autorun-BJX removable media worm.
Sysbot sysbot.exe
U
Spector - spying (or monitoring) software to record internet activity
syscfg syscfg32.exe
X
Added by the KWBOT.S WORM!
syscfg34.exe syscfg34.exe
X
Added by the ELECTRON WORM!
syscfgx32 syscfgx32.exe
X
Added by the W32/SdBot-GB worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
SysChk scvhost.vbs
X
Added by the W32/Small-EMQ worm.
SysCleaner SysCleaner.exe
X
Added by the SysCleaner program. SysCleaner is a misleading application that may give exaggerated reports of threats on the computer. ... Read More
syscm Syscm.exe
X
Vanish adware
syscmos sysrun.exe
X
Added by the W32/SillyFDC-CU worm.
SysCom Sgt.sys.vbs
X
Added by the VBS/Sasan-M worm.
syscon syscon.exe
X
Added by the W32.APRILCONE.A WORM! ... Read More
syscon lptt01 syscon.exe
X
Variant of the RapidBlaster parasite (in a "Syscon" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
syscon ml097e syscon.exe
X
Variant of the RapidBlaster parasite (in a "Syscon" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
SysConfig syscfg35.exe
X
Added by the KAZMOR.C WORM!
sysconfig Stealth KeySpy.exe
U
Added by StealthKeySpy Commercial Keylogger ** Note Product must be manually installed. ... Read More
sysconfig32 sysconfig32.exe
X
Added by the Troj/Agent-MSP Trojan.
SysConnect sysconnect.dll
X
Added by the Trojan.Sconato Trojan.
syscore syscore.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
Syscpy Syscpy.exe
X
Firewall-bypassing, proxied spam relayer. Detected by Symantec as the HOGLE TROJAN! ... Read More
SysCtl sysctl.exe
X
Added by the AOK TROJAN!
Sysctl Desktop Handler systr.dll
X
This file will hijack Internet Explorer to show the start page of jimbutt.com or globolook.com. ... Read More
sysctl32 sysctl32.dll
X
Added by the Trojan.Totmau Trojan.
Sysctrls Sysctrls.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
sysdat.dll sysdat.dll.exe
X
Added by the Nishica 1.1 backdoor TROJAN!
sysdbg32.exe sysdbg32.exe
X
Added by the Troj/PWS-BSZ password-stealing Trojan.
SysDefence.exe SysDefence.exe
X
Added by the SysDefence rogue anti-spyware program.
SysDefenders SysDefenders.exe
X
Added by the SysDefenders rogue anti-spyware program.
SysDesk svchoxt.exe
X
Added by the Troj/Delf-EDE Trojan.
sysdiag64.exe sysdiag64.exe
X
Added by the W32/Kolab-G worm.
sysdll32 SystemRestore.exe
X
Added by the Troj/Kimat-A worm. This infection will also create the file C:\Windows\System32\salaaaaammmmmmmmmmmmmmmmmmmmmmmmmmmmmmm.doc which can be ... Read More
Sysdpt sysdpt.exe
X
Win32.Crypt trojan downloader
sysdriver32.exe sysdriver32.exe
X
Unknown malware.
sysdriver32_.exe sysdriver32_.exe
X
Unknown malware.
sysdx sysdx.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
sysdxvid sysdxvid.exe
X
Premium rate adult content dialer
syseq svclgx32.exe
X
Added by the TROJ/IRCBOT-AC TROJAN! ... Read More
sysfiler sysfiler.exe
X
Added by the RETSAM TROJAN!
SYSfit SYSfit.exe
X
AdShooter adware variant
sysfldr sysfldr.dll
X
Identified as a variant of the Trojan-Proxy.Win32.Agent.lv proxy Trojan.
sysflg32 sysflg32.exe
X
Added by a variant of the CRYPTER.C TROJAN!
sysformat sysformat.exe
X
Added by Bagle.AY WORM!. This infections scans your hard drive for email addresses to send itself to. ... Read More
sysfrcx sysfrcx.exe
X
Added by the KEYLOG-SCLOG TROJAN! ... Read More
Sysgate Personal Firewall syst3ms.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
sysguard sysguard.exe
X
Added by the Troj/FakeAV-KI Trojan. This Trojan will display alerts advertising rogue security products on your computer. ... Read More
sysguardn sysguardn.exe
X
Added by the Spyware Protect 2009 rogue anti-spyware program.
syshelp syshelp.exe
X
Added by a variant of the LOVGATE WORM!
syshelps syshelps.dll
X
Identified by Kaspersky Antivirus as Backdoor.Win32.IRCBot.acd.
syshelps sysrcvr246.dll
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
syshelps systesrt32.dll
X
Added by the W32/IRCBot-XF worm.
syshost Syshost.exe
X
Added by the Troj/Banworm-B TROJAN!
syshost32 syshost.exe
X
Added by the Troj/Agent-UTA Trojan.
syshosts syshosts.dll
X
Added by the W32/IRCBot-WB networm worm and IRC backdoor.
SysiNet sysinet.dll
X
Added by the Smart Protector rogue anti-spyware program.
sysinfer sysinfer.exe
X
Added by the Adware.Adtest browser hijacker. Found in the Windows system folder. ... Read More
sysinfo sysinfo.exe
X
Added by the BEDRILL TROJAN!
sysinfo.exe sysinfo.exe
X
Added by the BEAGLE.V WORM!
sysinit services.exe
X
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
sysinit sysinit.exe
X
Added by the W32/Sdbot-DGF worm and IRC backdoor.
sysint16 sysint16.exe
X
Added by the CRYPTER.A TROJAN!
sysj32.exe sysj32.exe
X
Added by the W32/IRCBot-AHH IRC backdoor and worm.
SysKabs S0kic.exe
X
Unknown malware.
Syskey sysinit.exe
X
Added by the BEAGLE.AX WORM!
sysldr sysldr
X
Identified as a variant of the Backdoor:Win32/Rustock.gen!C rootkit.
Syslib Syslib.exe
X
Adult content related downloader trojan
SysLive SysLive.exe
X
Added by the W32.Expichu worm. W32.Expichu is a worm that copies itself to removable drives, attempts to contact remote sites, and may overwrite syste ... Read More
syslnfo.hlp svchost.exe
X
Added by the Troj/Aolog-A keylogging Trojan.
syslog syslog.exe
X
Added by the Spyware.EZKeylogger keylogger.
Syslog lptt01 Syslog.exe
X
Variant of the RapidBlaster parasite (in a "Syslog" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
Syslog ml097e Syslog.exe
X
Variant of the RapidBlaster parasite (in a "Syslog" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
syslogin.exe syslogin.exe
X
Added by the BAGZ-B WORM!
syslogon syslogon.exe
X
Added by the W32/Spybot-EP worm and IRC backdoor.
Sysman Sysman.exe
U
Added by the Spyware.KeyTrap keystroke logger. If you did not install this on your machine then you should remove it. ... Read More
sysman Sysman
U
KeyTrap is a spyware program that records all keyboard activities. If you didn't install it yourself remove it. ... Read More
sysmanager.exe sysmanager.exe.exe
X
Identified as a variant of the Backdoor.Win32.IrcContact malware.
sysme sysme.exe
X
Added by Trojan_PSW_Stealer_c TROJAN! A variant of the Key Logger that captures passwords as they are entered or transmitted. ... Read More
SysMetrix SysMetrix.exe
U
SysMetrix - skinnable clock and metering application. It monitors and reports on a great number of statistics ... Read More
sysmngr32 sys64mnger.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
sysmntrc sysmntrc.exe
X
Added by the Troj/Bancos-FX Trojan.
sysmod sysmod.exe
X
Added by the W32/Spybot-DU worm.
sysmon sysmon.exe
X
Added by the BIZEX WORM!
sysmon sysmon44.exe
X
Added by a variant of the BACKDOOR-CBA TROJAN!
Sysmon SystemMonitor.exe
X
Added by the W32.Nujama worm.
W32.Nujama is a worm that spreads through mapped drives, hides file extensions, and changes system information. ... Read More
sysmonnt sysmonnt
X
Transponder parasite related ... Read More
sysmonnt sysmonnt.exe
X
SearchPounder sends keywords typed into HTML forms and popular Internet search engines to a remote server ... Read More
SysMonXP SysMonXP.exe
X
Added by the NETSKY.Q WORM!
SYSMSG SYSMSG332.EXE
X
Added by the W32/Vampire-C worm. This worm spreads via ICQ. To remove, reboot into safe mode and delete this file. ... Read More
sysmss sysems.exe
X
A variant of the Proxy.Slaper.e malware.
sysnate sysnate.exe
X
Added by the MEDIAS TROJAN!
sysnet snuninst.exe
X
Unidentified adware
Sysnet sysnet.exe
X
Added by the Trojan.Cmapp Trojan.
sysobj.exe sysobj.exe
X
Added by a NTRootKit TROJAN variant! ... Read More
SysOps SysOps
X
Added by the MSNCORRUPT TROJAN!
syspager syspager.exe
X
Added by the W32/Appflet-E worm. W32/Appflet-E sends itself out to email addresses harvested from the infected computer or spreads via Instant Messeng ... Read More
syspare syspare.exe
X
Added by the Troj/Bifrose-AN Trojan.
syspol syspol.exe
X
Added by the TROJ/DREMN-B TROJAN! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows ... Read More
sysprint sysprint.dll
X
Added by the Troj/Haxdoor-DC backdoor Trojan. This infection utilizes the prt47sys.sys rootkit to hide itself. ... Read More
sysprint sysprint.exe
X
Added by the W32.Patahme@mm
worm.
sysproc sysproc.exe
U
Added by the Spyware.Fingerprints surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
sysprocessor update sysprocessor.exe
X
Win32.Rbot worm variant ... Read More
SysProtect System.exe
X
Added by the NETSPY TROJAN!
sysprotect syp.exe
X
SysProtect is detected as a "potentially unwanted program". It purports to be an system repair/maintenance application, but requires paid registration ... Read More
SysProtector SysProtector.exe
X
Added by the SysProtector rogue anti-spyware program.
syspw32.exe syspw32.exe
X
Added by the W32.Appflet.A@mm mass-mailing worm.
SysR sysmd.exe
X
Adult content based "foistware" (adds hidden components to your system)
SysRam SysRam.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
SysReg SysReg.exe
X
Added by the CHEKIN TROJAN!
SysReg SysReg.exe
X
SearchSeekFind textual marketing foistware
SysRegClass sysreg.dll
X
Identified as the Trojan-Downloader.Win32.Agent.bzc malware.
Sysres Sysres.exe
X
Added by the LOGMOD TROJAN!
sysrest.sys sysrest.sys
X
Added by the Troj/Agent-GIN backdoor Trojan.
sysrest32.exe sysrest32.exe
X
Added by the Troj/Agent-GIN backdoor Trojan.
sysrestore32.exe sysrestore32.exe
X
Identified as a variant of the TR/Rootkit.Ge rootkit.
SYSrow32 SYSrowdl32.exe
X
A variant of the Backdoor:W32/PoisonIvy backdoor Trojan. Backdoor:W32/PoisonIvy is a family of backdoors that give a remote user extensive access to a ... Read More
SysRun svshost.dll
X
Added by the BKDR_SMALL.EDI backdoor Trojan.
sysser syshid.exe
X
Added by the RAHACK WORM!
SysService SysService.exe
X
Added by the DELF family of TROJANS!
SysService SERVICES.EXE
U
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
SysService32 SysService32.exe
X
Added by the KINDAL VIRUS!
SysService32l systask32l.exe
X
Added by the THEUG WORM!
SYSsfitb SYSsfitb.exe
X
Searchforit browser hijacker
sysshell svchost.exe
X
Added by the W32.Memesa worm. W32.Memesa is a worm that attempt to email itself out as an attachment, change the desktop background, and open local pa ... Read More
sysshell sysexplorer.exe
X
Added by the W32.Patahme@mm
worm.
SySSL syssl.exe
X
Added by the W32/Rbot-CKH worm and IRC backdoor.
SySSL sysl.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SYSSRV SYSSRV.EXE
X
Added by the W32/Rolog-A worm.
sysStart syswin.exe
X
Added by the W32/Autorun-BJX removable media worm.
SysStrt systemc.exe
X
Added by the AGOBOT-QA TROJAN!
syssvc.exe syssvc.exe
X
Added by the Troj/Agent-QQM Trojan.
syst syst.exe
X
Added by the JOKE_DUMB.A "Joke" virus
systeerm systeerm.exe
X
Added by the Troj/Singu-V password stealing Trojan.
System system.exe
X
Added by various WORMS and TROJANS!
system systemsearch.hta
X
Jetseeker.com hijacker
System SPOOLSU.EXE
X
Added by the Troj/Banker-BJ password stealing Trojan! File is found in the Windows folder. ... Read More
System systray.exe
X
Added by the Troj/Pisaboy-A TROJAN/backdoor! MSN Messenger users are targeted.
System SVCHOST.EXE
X
Added by the Troj/LdPinch-AU TROJAN!
System svchost.EXE
X
Added by the Troj/Bckdr-CST backdoor trojan.
System svchîst.exe
X
Added by the Troj/LdPinch-BF password-stealing trojan.
System serwin.exe
X
Added by the Troj/LdPinch-BN password-stealing and backdoor trojan.
System system.exe
X
Added by the W32/VB-IU worm.
system system23.exe
X
Added by the W32/Lebreat-D ... Read More
System ssmc.dll
X
Added by the Backdoor.Berbew.R Trojan.
System svchiost.exe
X
Added by the Troj/LdPinch-PH Trojan.
System SERVICE5.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
System sipu.exe
X
Unknown malware.
system system.ini
X
Added by the Troj/BDoor-AHQ backdoor Trojan.
SYSTEM SystemFile.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
system sysnet.exe
X
Added by the W32/Vetor-J worm.
system systemdb.exe
X
Added by the Barracuda Antivirus and the Security Central rogue security programs. ... Read More
System systemz.exe
X
Added by the Troj/Vilsel-B Trojan.
System sachost.exe
X
Identified by Kaspersky Antivirus as a variant of the Backdoor.Win32.Hupigon.atgu malware. ... Read More
System 64 Driver for Games sys64dvr.exe
X
Added by the SDBOT TROJAN!
System Account Center svcpost.exe
X
Added by the W32/Oscabot-P worm and IRC backdoor.
System Applications Profile sap.exe
X
Added by the RBOT-QF WORM!
System Auth system52.exe
X
Identified as a variant of the Win32:Rizo-E malware.
System Boot Check sysload3.exe
X
Added by the W32.Fubalca worm. W32.Fubalca is a worm that spreads through removable media and infects various file types, including .exe and .html fil ... Read More
System Boot Check sysload2.exe
X
Added by the W32.Fubalca worm. W32.Fubalca is a worm that spreads through removable media and infects various file types, including .exe and .html fil ... Read More
System Boot Loader sysboot32.exe
X
Added by the WORM_AGENT.AAWD worm.
System Cache SysCache.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
System CGI Manager syscgmgr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Config sysloadcnf.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Config Boot syscgboot.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Config Manager smssl.exe
X
Added by the AGOBOT-ZJ WORM!
System Configuration syscfg32.exe
X
Added by the W32/Mytob-AS worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
System Configurator systemconfig.exe
X
Added by the W32/Sdbot-OR worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
system configure svchost.exe
X
Added by the Troj/Lineage-C password-stealing Trojan for the online game Lineage. ... Read More
System Control Information sysinfo.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Core Memory syscoremem.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
system csrss patch scrtkfg.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
System Database administration systemDA.exe
X
Added by the W32.Derdero.B WORM!
System Database Administration Support Process sysdasp.exe
X
Added by the W32.Derdero.C WORM!
System DataBase Root sysdbroot.exe
X
Added by the Troj/Qhost-W Trojan.
System DB Manager sysdbmg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Debugger SystemDebug.exe
X
Added by the W32/Rbot-FSK worm and IRC backdoor. W32/Rbot-FSK spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
System Development Operations sysdevop.exe
X
Added by the Troj/Agent-OFQ Trojan.
System Device Version systemdv.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
System Diagnostics sysdiag32.exe
X
Added by the SDBOT.GEN TROJAN!
System DirectX DLL Loader sd32dll.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
System DLL Resources sysdll.exe
U
Added by the Spyware.SnapKey surveillance software. If you did not install this you should uninstall it. ... Read More
System Doctor Free systemdoc.exe
X
The rogue anti-spyware application System Doctor. This application is known to install with malware that issues fake security warnings in your taskbar ... Read More
System Download Manager SysMgr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Driver Service sysdriver.exe
X
Added by the W32/Tilebot-GA worm and IRC backdoor.
System Drivers svchost.exe
X
Added by the Troj/PWS-BFT password-stealing Trojan. Please note that this infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
System Error Notification senr32.exe
X
Added by the Troj/Poison-BT Trojan.
System Event Browser sysbrw32.exe
X
Identified as a variant of the Trojan.Win32.Agent.qup malware.
system event log svchost.exe
X
Added by the Troj/GrayBir-AC backdoor Trojan. This should not be confused with the legitimate c:\windows\svchost.exe found in the Windows %System% fo ... Read More
system event manager secsvc.exe
X
Added by the RBOT.BMY WORM! ... Read More
System File sysdll.exe
X
Added by the Troj/VB-CWO Trojan.
System File system.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System File Startup sys32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
system handler srvhandle.exe
X
Added by the W32.Redplut worm. This worm spreads through open shares and installs these other files: C:\Windows\System32\lcc.exe, C:\Windows\System32 ... Read More
System handler svhost.exe
X
Added by the W32/Todnab-B worm.
System Host scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
System Host Manager syshost.exe
X
Added by the W32/Banworm-C worm.
System Host Service svchost.exe
X
Added the the CONE.F WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
System Hosts Virtual Process svhost.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Icons shell16.exe
X
Added by the W32/Sdbot-VD WORM! Found in the Windows system folder.
System Idle Process System Idle Process.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
System Information Manager syspass.exe
X
Added by the W32/Sdbot-MO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
System Init Sÿstem.exe
X
Added by the W32.Gudek worm. W32.Gudek is a worm that spreads by copying itself to fixed and removable drives on the compromised computer. It may also ... Read More
System Init systeminit.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Installer Prep sysprep.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System IP systemip.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Kernal Support system.exe
X
Added by the W32/Rbot-ADN worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
System LifeGuard Scheduler Slsched.exe
U
System LifeGuard scheduler
System Management Service smsc.exe
X
Added by the W32/Rbot-ANN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Manager svchost.exe
X
Added by the BANKER-AE TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
system manager System.exe
X
Added by the FORBOT-BO WORM!
System Manager sysmng.exe
X
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:



c:\windows\system32\hserv.sy ... Read More
System Manager sysmgr.exe
X
Identified as a variant of the IRCBot worm and IRC backdoor.
System Manager sysmngr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Managment Controler smscg.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
System Manger Service 32 smsc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
system messaging queue SMCSS.EXE
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
System Messenger SYSMSG32.EXE
X
Added by W32/Spybot-DK, a WORM!
System Messenger Service smsc.exe
X
Added by the W32/Tilebot-F worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Microsoft Core smc.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Microsoft Service ssms.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Microsoft SS smss.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Microsoft SSS smsss.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Mld sysmlds.exe
U
See Here.
System Mng Srvc smsg.exe
X
Added by the W32/Tilebot-AB worm and IRC backdoor.
System Monitor SYSMON.EXE
U
Comes with some Aopen motherboards. Monitors CPU temp, voltage and fan speed. Warns if any become abnormal ... Read More
System Monitor Sysmon16.exe
X
Added by the SDBOT TROJAN!
System Monitor ssys.exe
U
STARR key logger. "It logs almost everything that goes through the box. It logs all key strokes, all passwords transacted even if they weren't keyed i ... Read More
System Net sys32.exe
X
Added by the W32/Forbot-FX WORM, which also creates a new service called "Win32", with the display name "System Net". ... Read More
System Net Database sysnd.exe
X
Added by the W32/Rbot-AAW WORM/IRC backdoor trojan!
System Networking SYSNET.EXE
X
Added by the W32/Rbot-WJ infection. File is found in the Windows system folder. ... Read More
System Presets systempre.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Process svchost.exe
X
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
System Process Analization sysproc.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
System Process Analization Thread system.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
system proessr system proess.exe
X
Added by the Troj/Feutel-BA Trojan. It also creates the files C:\Windows\system\proess.DLL, C:\Windows\system\proessKey.DLL, and C:\Windows\system\pr ... Read More
system redirect sysbho.exe
X
Downloader trojan, "Melkosoft" adware related
System Registry Manager sysrgmgr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Restore svcnet.exe
X
Added by the TIBICK WORM!
System Restore SysRes.vbs
X
Added by the VBS/Autorun-FM worm. Please note that C:\Windows\System32\wscript.exe is a valid application. ... Read More
System Restore Manager symon.exe
X
Added by the W32/Tilebot-IP worm and IRC backdoor.
System Restore Scheduling Service srsvc.exe
X
Added by the W32/Rbot-GHR worm and IRC backdoor.
System Scheduler svchost.exe
X
Added by the W32/DelCyc-A backdoor worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
System Security syss.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Security Checker ssc.exe
X
Added by the Troj/IRCBot-WI worm and IRC backdoor.
System Server smss.exe
X
Added by the Troj/Feutel-T backdoor Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
system service spoolcrv.cpl
X
Added by the INSPIR.11 TROJAN!
System Service systems.exe
X
Added by the AGOBOT.VZ WORM!
System service system.exe
X
Added by the PWSteal.Bancos.AA password-stealing Trojan.
System Service servicent.exe
X
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Service servicez.exe
X
Added by the W32/Rbot-AOY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
System Service servza.exe
X
Added by the W32/Rbot-CRG worm and IRC backdoor.
System Service serious.exe
X
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
System Service servicess.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Service SystemService.exe
X
Added by the InternetSecurityDeluxe rogue anti-spyware program.
system service helper svchelper.exe
X
Added by the W32/MONKBD-A WORM! ... Read More
System Service Manager Device svho.exe
X
A variant of the Backdoor.Win32.Rbot.gcg family of worms and IRC backdoor Trojans. ... Read More
System Service Monitor servicemon.exe
X
Added by the W32/Tilebot-GH worm and IRC backdoor.
system services svcsenes.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
System Services svcsenes32a.exe
X
Added by the W32/Rbot-AFGworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
system session manager smss.exe
X
Added by the W32/Kalel-E worm.
System Soap Pro soap.exe
X
System Soap Pro internet cleaning software. Bundles foistware like HTTPER and Zipclix - best avoided ... Read More
system spool syspools.exe
X
Added by the W32/Dref-T mass-mailing worm and parasitic virus with IRC backdoor functionality. W32/Dref-T will attempt to infect SCR, HTM, HTA, EXE an ... Read More
System Spooler Host syspool.exe
X
Added by the W32/Sdbot-COV worm and backdoor Trojan.
System Startup sys.exe
X
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
system startup manager smcss.exe
X
Added by the RBOT.AMD WORM! ... Read More
System Startup Service svcproc.exe
X
This infection is identified as Trojan.Win32.Stervis.b. It is usually bundled with nail.exe, a Abetterinternet adware variant. It is notoriously dif ... Read More
System Stats SystemStats.exe
X
Added by a variant of the WOOTBOT WORM!
System Support syscfg.exe
X
Added by the W32/Rbot-AGQ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Support system32.exe
X
Added by the W32/Rbot-AHA worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
System Support syssql.exe
X
Added by the W32/Rbot-AUH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Terminal SYSTEM2.EXE
X
Added by the SPYBOT-BZ TROJAN!
system tool sysguard.exe
X
Added by the Troj/FakeAle-LY Trojan.
System Toolkit Systools.exe
X
Added by the RONOPER-G WORM!
System Tray Services spooles32.exe
X
Added by the AGOBOT.ZH WORM!
System Tray32 SysTray32.exe
X
Added by the REPAD WORM!
System Unix syscfg32.exe
X
Added by a Rbot WORM variant!
System Update suservice.exe
N
Added by the ThinkVantage System Update 3.0 program update software for IBM Lenovo laptops. ... Read More
System Update smss.exe
X
Identified as a variant of the Trojan:Win32/Eson.C Trojan. This infection should not be confused with the legitimate C:\Windows\system32\smss.exe file ... Read More
System Update svchost.exe
X
Added by the Troj/Malex-P Trojan. Please note that this infection should not be confused with the legitimate file located at C:\Windows\System32\svcho ... Read More
System Update Service system.pif
X
Added by the W32/Rbot-ALL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Update Service systemos.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
System Update2 services.exe
X
Added by the AUTOTROJ-C TROJAN!
System Update2 svchost.exe
X
Added by the AUTOTROJ-C TROJAN!
System Update2 system.exe
X
Added by the AUTOTROJ-C TROJAN!
System Updated svchoes.exe
X
Added by the W32/Rbot-ASF worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
System Updater sys.exe
X
Added by the W32/Sdbot-NK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
System Updater Machine system.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
System Updates szwi.exe
X
Added by the W32/Rbot-AXE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
System Uptime Server SYSENTRY.EXE
X
Added by the RBOT.LK WORM!
System Uptime Server SYSENTRY32.EXE
X
Added by the RBOT.LK WORM!
System Virtual Host File scvhost.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System Virtual Hosts File svchosts.exe
X
A variant of the Backdoor.Rizo.A backdoor worm.
System-Config spoolv.exe
X
Added by the W32/Sdbot-Br backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
System-Time systimeupdate.exe
X
Added by Backdoor.Denwp.
system. system..exe
X
Added by the OPTIXPRO.13.C TROJAN!
system... system...exe
X
Added by the OPTIXPRO.13.C TROJAN!
System.exe System.exe
X
Added by various WORMS and TROJANS!
system.exe system.exe
X
Identified as the Backdoor.Win32.Agent.arx malware.
system.update system.update.exe.exe
X
Added by the W32/Minusia-A worm.
system.vbs system.vbs
X
Added by the RAHACK WORM!
system16 system16.exe
X
Added by the Troj/Bancban-OB backdoor Trojan.
System32 system.exe
X
Added by the BUSHTRO122 TROJAN!
System32 System32.exe
X
Added by any number of WORMS or TROJANS!
System32 sysdiag.exe
X
SpyAgent.B spyware
System32 system32,1.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
system32 system32.exe
X
Added by the Troj/Graybird-G Trojan.
system32 svohost.exe
X
Added by the Troj/Bnkmr-A Trojan.
system32 sysprinters.dll
X
Added by the W32/IRCBot-WV worm and IRC backdoor.
System32 PCI Manager syspci32.exe
X
Added by the W32/Rbot-AFR worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
system32 tcp manager systcpm.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
system32 tcp manager systerm.exe
X
Added by the RBOT.AFD WORM!
System32 Temp Service systmp.exe
X
Added by the W32/Rbot-AET worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
system32.dll systeminit.exe
X
CoolWebSearch hijacker re-directing to your-search.info
system32.dll sysdll32.exe
X
CoolWebSearch parasite related. Redirecting to wholeworldmarket.com, most likely other domains as well ... Read More
system32.exe services32.exe
X
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
System32BLSJ Agent System32BLSJ.exe
X
Added by the Troj/Mdrop-BPT Trojan downloader.
System32Ex System32Ex.exe
X
Added by the IRCCONTACT TROJAN!
system32kfvwÆ sysdiag.exe
U
SpyAgent.B surveillance software - uninstall this software unless you put it there yourself! ... Read More
system32WXBP Agent system32WXBP.exe
X
Identified as a variant of the Trojan-Spy.Win32.Ardamax.e Trojan.
System33 services33.exe
X
Added by the W32/Rbot-VQ worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
system34.exe system34.exe
X
Added by the Troj/DwnLdr-FXY downloader Trojan.
System4224411 Systemdll.exe
X
Added by the W32/Yusufali-B worm.
System64A System64A.exe
X
Added by the W32/Smit-A worm.
SYSTEM798RUNNER.exe SYSTEM798RUNNER.exe
X
Added by the Troj/VB-EYW Trojan.
systemadd sysdate32.exe
X
Added by the W32/Autorun-AVN removable media worm.
SystemAgent Sage.exe
U
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
SystemArmor SystemArmor.exe
X
Added by the SystemArmor rogue anti-spyware program.
systemax32win32 systemax32.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
SystemBooster2009 sbr_updater.exe
X
Added by the SystemBooster 2009 rogue anti-spyware program.
SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
SystemCheck Systemcheck.exe
X
Added by the LAVITS WORM!
systemcheck SysCheckBop32.exe
X
Added by the WIN32.VB.TG TROJAN!
SystemCheck svchost.exe
X
Added by the Troj/Delf-KR trojan.
SystemChecker Syschk.exe
X
Added by the GALIL.F WORM!
SystemCleanerPRO sysclpro.exe
X
Added by the SystemCleanPRO rogue anti-spyware program.
SystemComputerLog smsogx32.exe
X
Added by the Troj/Stinx-K backdoor Trojan.
SystemCONF98i SystemCONF98i.exe
X
Added by the GLITCH BOT TROJAN!
SystemCop SystemCop.exe
X
Added by the SystemCop rogue anti-spyware program.
SystemCop Security Service SystemCopSvc.exe
X
Added by the SystemCop rogue anti-spyware program.
SystemDebug Sysdeb32.exe
X
Added by the SYSBUG TROJAN!
SystemDefender SystemDefender.exe
X
Added by the SystemDefender rogue security software. SystemDefender is a misleading application that may give exaggerated reports of threats on the co ... Read More
SystemDll SystemDll.exe
X
Added by the LOXOSCAM TROJAN!
Systemdll Sysdll.exe
X
Added by the Troj/GrayBrd-CC backdoor Trojan.
systemdll32.exe systemdll32.exe
X
Added by the Troj/Feutel-F backdoor trojan.
SystemDoctor 2006 Free sd2006.exe
X
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
SystemDoctor Free systemdoc.exe
X
The rogue anti-spyware application System Doctor. This application is known to install with malware that issues fake security warnings in your taskbar ... Read More
systemdrea systemdrea.dll
X
Added by the Troj/Agent-RKB Trojan. Please note that C:\Windows\System32\rundll32.exe is a legitimate file and should not be deleted. ... Read More
SystemDriverCheck svchost.exe
X
Added by the Troj/Delf-KR trojan.
SystemDriverLoad svchost.exe
X
Added by the Troj/Delf-KR trojan.
SystemErrorFixer SysRep.exe
X
Added by the rogue security software called SystemErrorFixer. SystemErrorFixer is a misleading application that may give exaggerated reports of system ... Read More
SystemExplorerAutoStart SystemExplorer.exe
N
Added by System Explorer. This program includes process monitors, task manager replacements, install snapshots, and other useful features. ... Read More
SystemFighter SystemFighter.exe
X
Added by the SystemFighter rogue anti-spyware program.
systemfile SystemFile.exe
X
Added by the Troj/Dulldoor-A ... Read More
systemguard systemguard.exe
X
Added by the System Guard 2009 rogue anti-spyware program.
SystemGuard&#097;lerter SystemGuard&#097;lerter.exe
U
Related to System Mechanic.
SystemGuardCenter SystemGuardCenter.exe
X
Added by the System Guard Center rogue security software.
systemidle stemIdle.exe
X
Added as a result of the WOOTBOT.AO VIRUS! ... Read More
SystemIL SYSTEMIL.EXE
X
Added by the W32.Aboc worm.
systeminit systeminit.exe
X
Added by the W32/SillyFDC-AN worm.
Systemiom Updater Systemiom.exe
X
Added by the SPYBOT.TY WORM!
systemkernal.exe systemkernal.exe
X
Added by the Troj/Agent-KPQ Trojan.
SystemLoad32 sysload32.exe
X
Added by the MIMAIL.E WORM!
SystemLoader sysldr32.exe
X
Added by the Troj/DownLdr-NS Trojan.
SystemManager Sysman32.exe
X
Added by the DOWNLOADER-BW.B TROJAN!
SystemMessenger SystemMessenger.dll
U
Added by the Spyware.StealthChatMon chat surveillance software. Spyware.StealthChatMon is a spyware program that monitors chat conversations and sends ... Read More
SystemMgr SystemMgr.exe
X
Added by the Troj/Lineage-BU password-stealing Trojan for the online game Lineage. ... Read More
SystemMonitor Sysmon32.exe
X
Added by the AIDID.A WORM!
SystemNT SystemNT.exe
X
Added by the Troj/PWSVB-EG TROJAN to steal passwords!
systemnt systemnt.exe
X
Added by the W32.Bustoy worm. W32.Bustoy is a worm that propagates by copying itself to removable storage devices. ... Read More
systemntfy systemntfy.exe
X
Added by the W32.Minudazash worm. W32.Minudazash is a worm that spreads by copying itself to mapped and removable drives. It also opens a back door an ... Read More
SystemOPsv scrtvc32.exe
X
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
SystemReg svchost.exe
X
Added by the DEWIN.E TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
SystemReg SystemReg.exe
X
Added by the Troj/Antilam-H backdoor Trojan.
SystemRegistry SysReg.vbs
X
Added by VBS/Ediboy-C. File is located in the Windows System directory. Also see WUpdate_35253825.vbs ... Read More
Systems scchost.exe
X
Added by the DAEMOZ.A TROJAN!
Systems Systems.exe
X
Added by the Troj/Bankboa-A TROJAN, it targets a specific website and steals passwords. ... Read More
Systems svch0st.exe
X
Added by the W32.MYDOOM.BI WORM!
Systems sysmon.exe
X
Added by the Troj/Vixup-BI Trojan.
Systems spoolsvc.exe
X
Added by the Troj/Dloadr-SW downloading Trojan.
Systems sescmgr.exe
X
Added by the Troj/DwnLdr-GAH download Trojan.
Systems Restart slchost.exe
X
Added by the BANCOS.RF TROJAN!
Systems Restart spchost.exe
X
Added by a variant of the BANCOS.RF TROJAN!
Systems.exe Systems.exe
U
Keyboard Spectator - monitoring software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you c ... Read More
SystemSafe Syssafe.exe
U
System Safety Monitor - system monitoring tool with additional application firewalling ... Read More
SystemSAS System32.exe
X
Added by the KWBOT.C WORM!
systemscroot systembin.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SystemService shman.exe
X
Premium rate adult content dialler
SystemTasks sexypicz.exe
X
Adult content dialler
Systemtra Systra.exe
X
Added by a variant of the LOVGATE WORM!
SystemTray SysTray.Exe
U
SYSTRAY.EXE - System Tray Services. Provides the Volume Control, PC Card Status, Power Management and other icons that reside in the System Tray (see ... Read More
SystemTray SystemTray.exe
X
Added by the BIGFOOT TROJAN! Note - this is not the valid SystemTray (SysTray.exe) ... Read More
SystemTray SysTray.exe
X
Added by the ALADINZ.P TROJAN! Note - this is not the valid System Tray (systray.exe) which resides in C:\Windows\System (Win9x/Me), C:\Winnt\System32 ... Read More
SystemTray system.bat
X
Added by the W32/Resdoc-A worm.
systemtraysd SDSystemTray.exe
U
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
systemtraysr SRSystemTray.exe
U
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
SystemTuner SystemTuner.exe
X
Added by the System Tuner rogue system optimization software.
systemup systemup.exe
X
Unknown malware.
SystemUpd SystemUpd.exe
N
Updater for Swapoo.com, a kind of Napster for games
SystemVeteran.exe SystemVeteran.exe
X
Added by the SystemVeteran rogue anti-spyware program.
systemw32 systemw32.exe
X
A variant of the Rbot.crm family of worms and IRC backdoor Trojans.
SystemWarrior SystemWarrior.exe
X
Added by the SystemWarrior rogue anti-spyware program.
SystemWindows scvhost.exe
X
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
SystemWizard Sniffer Sniffer.exe
U
SystemWizard for Win98/ME from SystemSoft - diagnoses and solves hardware and software problems on a PC ... Read More
SystemX sthosts.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
systemx32 systemx32.exe
X
A variant of the Backdoor.Rbot.crm family of worms and IRC backdoor Trojans.
systemyom Updater systemyom.exe
X
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
SYSTEMZ Patch SYSZ.exe
X
Added by the ALADINZ.P TROJAN!
systen32.exe systen32.exe
X
Added by the Troj/Dloadr-AQP Trojan.
Systesms.exe systesms.exe
X
Added by the RBOT-HI WORM!
Systest Systest.exe
N
Clean Space temp files cleaner
SysTime systime.exe
X
CoolWebSearch parasite variant
Systm32 systm323.exe
X
Added by an unknown malware.
Systmesy Systmesy.exe
X
Added by the RBOT-KQ WORM!
SYSTMON.EXE SYSTMON.EXE
X
Added by the W32/Silly-H worm.
Systoan32 systoan.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
systr SYSERVER.exe
X
Added by the W32/VB-DQY worms.
systr2 SERVICE.exe
X
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
systr32 systr32.exe
?
??
systrans service.exe
X
Added by the Troj/StartPa-GZ backdoor Trojan.
systrax systrax.exe
?
??
Systray Systray_.Exe
X
Added by the KERGEZ.A WORM!
SysTray SysTray.Exe
U
SYSTRAY.EXE - System Tray Services. Provides the Volume Control, PC Card Status, Power Management and other icons that reside in the System Tray (see ... Read More
SysTray Snnpapi.exe
X
Added by an unidentified TROJAN!
systray SteFanie.vbs
X
Added by the VBS.Stefan ... Read More
SysTray svhost.exe
X
Added by the W32/Rajilo-A removable storage worm.
Systray sockots64.dll
X
Identified as a variant of the Trojan:Win32/Adclicker Trojan.
Systray driver systray.exe
X
Added by the MUTEBOT TROJAN! Note - this is not the real SystemTray which shares the same filename ... Read More
systray.com systray.com
X
Added by the Troj/Certif-R password-stealing Trojan.
SysTrays System32.exe
X
Added by the Trojan.Hidexls Trojan. Trojan.Hidexls is a Trojan horse that hides Microsoft Excel files. ... Read More
systree systree
X
Added by the BANCOS.L TROJAN!
SYStry spoolsvr.exe
X
Added by the SDBOT.GN WORM!
SysTry svchosts.exe
X
Added by the Troj/Banker-BD password stealing Trojan! The file is found in the Windows system folder. If you have this file on your computer, it is r ... Read More
systtray SMLBSBV4.exe
X
Added by the Troj/IMFlood-A Trojan. This infection will attempt to spam the contacts in your Yahoo Instant Messenger contact list. ... Read More
systune systune.exe
U
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
sysu sysu.exe
X
Dynamic Desktop Media adware - see here
SysUdisk.exe SysUdisk.exe
X
Added by the Troj/Dloadr-BLI Trojan.
sysug32.exe sysug32.exe
X
Added by an unidentified TROJAN or WORM!
sysug32.exe sysug32.ex
X
Added by an unidentified TROJAN or WORM!
SysUpd Sysupd.exe
X
VirtuMonde adware
SysUtils smss.exe
X
Added by the W32/Autorun-AWW removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
Sysvupex Sysvupex.exe
X
Added by the MEDIAS TROJAN!
sysvx sysvx_.exe
X
Added by the Troj/Loosky-BX Trojan.
syswav syswav.sys
X
Added by the TROJ_KILLAV.GG rootkit. This infection will also close running security software. ... Read More
SYSWB6 SYSWB6.exe
U
We-Blocker - gives parents the opportunity to monitor their children's Internet access and provide them with age-appropriate content, while filtering ... Read More
SysWin SysWin.exe
X
Added by the IRCCONTACT TROJAN!
syswin32 syswin32.exe
X
Added by a variant of the SPYBOT WORM!
Syswindow Syswindow.exe
X
Added by the COW TROJAN!
syswindrv syswindrv.bin
X
Added by the Backdoor.Rustock backdoor rootkit.
sysX3 sys22.exe
X
Added by the W32.Rants.C@mm mass-mailing worm.
sysyemdl sysedit.exe
X
Added by Backdoor.Evilbot. This infection connects to an IRC server where it awaits remote commands. ... Read More
sysygm32 syscxd32.exe
X
Added by the Troj/IRCBot-PC IRC backdoor Trojan.
SYS_CLEAN Service.exe
X
Added by the FLOPCOPY WORM!
Sys_Kl sys_kl.exe
U
Added by the Spyware.SysKeylog surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
sys_up1 svchostsys.exe
X
Identified by Panda as Trj/Clicker.QE.
sytem32 svost.exe
X
Added by the Troj/Feutel-Z backdoor Trojan.
sywtdxaz sywtdxaz.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
SZMsgSvc.exe SZMsgSvc.exe
U
StopZilla! - pop-up killer
T-DSL SpeedMgr speedmgr.exe
N
T-Online ISP SpeedManager - shows upload and download speed. Also checks for updates automatically ... Read More
Taba stte.exe
X
Clickspring spyware
tabletwizard SPLSHWRP.EXE
U
TalkTalk sprtcmd.exe
?
Software for TalkTalk service.
Tamiami strangler.exe
X
Added by the WORM_TUTIAM.A mass-mailing worm.
Tango Setup.exe
?
Tango Broadband access software. Is it required?
Task spoolsv.exe
X
Added by the W32.Xirtam.A@mm worm. W32.Xirtam.A@mm is a mass-mailing worm that gathers email addresses from the compromised computer. It also spreads ... Read More
Task Client Manager spoolvc.exe
X
Added by the W32/Tilebot-JL worm and IRC backdoor.
Task Debugger sysdll.exe
X
Added by the W32/Rbot-CQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Task Manager svhost12.exe
X
Added by the WORM_SOHANAD.AK instant-messaging worm.
Task Manager svhost32.exe
X
Added by the Troj/Startp-G Trojan.
Task Monitoring Service svchost.exe
X
Added by the CONE.D WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Task Restore Service spoolvc.exe
X
Added by the W32/Tilebot-KR worm and IRC backdoor.
Task Restore Services svshost.exe
X
Added by the Troj/IRCBot-ZK IRC backdoor Trojan.
Task Scheduler spools.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.jjt malware.
Task Scheduler Engine schedsvc32.exe
X
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
Taskman sysdate.exe
X
Added by the W32/AutoRun-AQE removable media worm.
Taskman sysdrv.exe
X
Added by the Troj/Agent-LRB Trojan.
taskmng svchost.exe
X
Added by the W32/Tilebot-AW worm and IRC backdoor.
taskmrg schwoch.exe
X
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
TA_Start stdrun?.exe
X
Added by a variant of the Zenosearch adware. Adware.ZenoSearch is an adware that displays pop-up ads based on searches the user performs on popular we ... Read More
TBMonEx svchost.exe
X
Added by the PE_MUMAWOW.BG-O file infector. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
TCP x IP2 Kernel seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
TCP x IP2 Kernel32 seppgm.sys
X
Variant of the Troj/Haxdor-Fam rootkit.
TCP/IP Service svchost.exe
X
Added by the W32.Fubalca.D worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Telephots google serveet.exe
X
Added by the WORM_FUBALCA.AQ worm.
tempreg s300_1204076086.dll
X
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
Terminal Device Services spoolvc.exe
X
Added by the W32/Sdbot-DDC worm and IRC backdoor.
TEXTCONV services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
THCS svchost.exe
U
Added by the Spyware.AllMonitor surveillance software. Spyware.AllMonitor is a spyware program that records keystrokes and monitors user activities on ... Read More
The Service Pack Loader spxp.exe
X
Added by the W32/Rbot-BYM worm and IRC backdoor.
The Spy Guard spyguard.exe
X
The Spy Guard is a rogue-antispyware application. This application uses deceptive and aggressive advertising in order to scare you into purchasing th ... Read More
The Spy Guard Monitor spyguard_monitor.exe
X
The Spy Guard is a rogue-antispyware application. This application uses deceptive and aggressive advertising in order to scare you into purchasing th ... Read More
Themes Plug and Play services.exe
X
Added by the W32.Dizan.C virus. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. W32.Dizan.C is a viru ... Read More
TheMonitor SYS99.exe
X
Added by the Troj/Dloadr-LO Trojan downloader.
TheMonitor SYSC00.exe
X
Added by the Troj/Dloadr-LO Trojan downloader.
Tiger Shine.exe
X
Added by the HAPPYLOW (or NISHE-A) VIRUS!
tjk8rla0zxexp systs.exe
X
Added by the Troj/Agent-GDC Trojan.
tjstartup svchost.exe
X
Added by the CURDEAL TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
ToBeFree StillAlive.exe
X
Added by the W32/WinLose-A worm.
Tok-Cirrhatus smss.exe
X
Added by the W32/Korbo-A worm and backdoor Trojan.
Tok-Cirrhatus-1959sarc sv711224030r.exe
X
Added by the W32/Brontok-R mass-mailing worm.
Tool Update Windows spooslv.exe
X
Added by the W32/Rbot-GVI worm and IRC backdoor.
Torjan Program services.exe
X
Added by the W32.Autex.C shared folder/drive worm. This should not be confused with the legitimate Microsoft file located in the Windows %System% fold ... Read More
Torjan Program smss.exe
X
Added by the Troj/WowPWS-A password-stealing Trojan.
TotalSecure2009 scan.exe
X
Added by the Total Secure 2009 rogue anti-spyware program.
TProgram smss.exe
X
Added by the Troj/WowPWS-W password-stealing Trojan. Troj/WowPWS-W targets the online game World of Warcraft, and attempts to steal account details. ... Read More
Track4WinMonitor STMonitor.exe
U
Added by the Spyware.Track4Win surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
Transaction Tasker stdhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
tray_ico1 svchost.exe
X
Malware that uninstalls your antivirus program and then display alerts pretending to be that antivirus program. This infection should not be confused ... Read More
TSPower spower.drv
?
Found on a Toshiba laptop. Related to power management?
ttool scvs.exe
X
Added by the Troj/Hiload-A Trojan.
ttool sa23sl.exe
X
Added by the Troj/Bckdr-QZZ backdoor Trojan.
ttool sr882388.exe
X
Added by the Troj/Backdr-AX backdoor Trojan.
tunelling sys64.exe
X
Added by Backdoor.Checkesp. This infection listens on TCP port 666.
TurBo System.Trubo.vbs
X
Added by the VBS/Autom-C worm.
TURXP Protocol sps32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
tvrschedule Schedule.exe
U
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
TVT Scheduler Proxy scheduler_proxy.exe
U
Related to the Lenovo update software on IBM ThinkPad.
TV_Path sigmatv.exe
Y
Sigma TV Card driver.
TwkSCardSrv SCardS32.Exe
N
Used with Towitoko SmartCard Readers for card recognition
TZ Spyware Remover SpyRem.exe
X
Added by the TrackZapper security risk. TrackZapper is a security risk that gives exaggerated reports that the computer contains adware and spyware. ... Read More
u1v4r1 svshost.exe
X
Added by the Troj/Bckdr-QJW backdoor Trojan.
udjudwq sybqnub.exe
X
Added by the W32/SillyFDC-AH worm.
Ulubione sys****.exe
X
Search Hijacker, redirecting to maxxxhosters.com - where **** are random characters ... Read More
UniPrint SetDfltSettings.exe
U
Drivers for Uniprint, a printing help for Terminal Services and Citrix which recieves downloaded files from a Uniprint enabled server and prints them ... Read More
Universal Serial Bus Control Protocol smrs.exe
X
Added by the Troj/Bdoor-JD backdoor Trojan.
universal usb service svchost32.exe
X
Added by the W32.KELVIR.R WORM! ... Read More
Unshare SafeShare.exe
X
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
unsrvc syschost.exe
X
Added by the Trojan.Spy.VB.NB Trojan.
unsrvc setrysrvc.exe
X
Added by the Troj/Bancos-BDW banking Trojan.
Update Sysupd.exe
X
Added by the SLACKBOT VIRUS!
Update svchost.exe
X
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
Update sfcnmdd.exe
X
Added by the Troj/PPdoor-AS backdoor Trojan.
update svch0st.exe
X
Added by the Troj/WoW-FM password stealing Trojan targeted at users of the World of Warcraft online computer game.. This should not be confused with ... Read More
Update systems.exe
X
Added by the W32.Surubat.A@mm mass-mailing worm. W32.Surubat.A@mm is a mass-mailing worm that also copies itself to network shares. It also opens a ba ... Read More
Update Checker scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Update Install Schost.exe
X
Added by the GAOBOT.AO WORM!
Update local SetCPQLC.exe
?
Running on a Compaq desktop. Any ideas?
update service svxhost.exe
X
Added by the RBOT-MG WORM!
Update Service svchost.exe
X
Added by the Your PC Protector rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe ... Read More
update SERVICES sccpn.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Update ver 1.0 Swap.exe
X
Added by the SWAP-C WORM!
Update Windows svch0st.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
UpdateManager sgtray.exe
U
StorageGuard from Veritas (this version by Sonic). Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS ... Read More
updatemsn svhost.exe
X
Added by an unidentified WORM or TROJAN!
Updater Service Process svhost32.exe
X
Added by the AGOBOT.TY WORM!
updater23 service.exe.js
X
Added by the JS/Uragon-A javascript worm.
Updaterd SVCHOSTE.EXE
X
Added by the W32/Rbot-BBE worm and IRC backdoor.
updatesst SE2010.exe
X
Added by the Security Essentials 2011 rogue anti-spyware program.
upDpacketo services.exe
X
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
upgrade sarvice sxchost.exe
X
Added by a variant of the TROJ/TOFGER-I TROJAN! ... Read More
usb SASS.EXE
X
Added by the Troj/Funsta-A Trojan.
USB controller Svcmm32.exe
X
Ouchvideo.com 'n-Lite' spyware
USB Device servicelog.exe
X
Added by the WOOTBOT.CB WORM!
USB Hub Keyboard Patch SKBPATCH.EXE
?
USB HUB Update
UsbD smss32.exe
X
Adware downloader - recognized by Kaspersky antivirus as Trojan-Proxy.Win32.Agent.cj ... Read More
UsbD svhost32.exe
X
Added by the AGENT.IB TROJAN!
usbdrv servicetask.exe
X
Added by a variant of the SDBOT WORM!
usbhwdrv sst4.exe
X
Added by a variant of the TROJ/LOWZONE-I TROJAN! ... Read More
USBHWINFO sst6.exe
X
Added by the Troj/LowZone-I trojan.
USBTray Systroy.exe
X
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
useful-soft svchst.exe
X
Added by the Troj/StartPa-H Internet Explorer start page hijacker.
Usercne SVCH0ST.exe
X
Added by the Troj/LegMi-AJH password-stealing Trojan for the online game Legend of Mir. This infection should not be confused with the legitimate C:\W ... Read More
userd systems.com
X
Added by the W32/OutLaw-A worm.
userinit smss.exe
X
Added by the Troj/Dloadr-B downloader Trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\smss.exe. ... Read More
ushli sscbltqu.exe
X
Obtained from an MP3 search list site. Also generates random processes on reboot ... Read More
usrgtway.exe syswrun4x.exe
X
Added by the MITGLIEDER.E TROJAN!
Utility Tray.lnk sistray.exe
U
System Tray icon for SiS based graphics.
value systimer.exe
X
Added by Adware.Downreceive. File is found in the C:\Program Files\Acceleration Software folder. ... Read More
value spykiller.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
valuename svchosts.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
ValueX services.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
vccacA sdaxzl.exe
X
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
Veo Velocity Connect stim11.exe
U
Related to the Veo Velocity Connect USB 2.0 web camera.
Version1 syspoints.dll
X
Added by the W32/IRCBot-XN worm and IRC backdoor.
Version1 syspoint.dll
X
Identified as a variant of the W32.Mimbot malware.
Version3 syslinks2.dll
X
Added by the W32.Mubla.C@mm worm. W32.Mubla.C@mm is a mass-mailing worm that spreads through email and MSN Messenger. It also opens a back door on the ... Read More
VGA Driver scmhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Video Driver svbhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Video Process sysconf.exe
X
Added by the GAOBOT.GEN!POLY or GAOBOT.UM or GAOBOT.ADX WORMS!
Video Services sys32.exe
X
Added by the AGOBOT.PS WORM!
VideoDriver32 services.exe
X
Added by the Troj/WinSpy-K backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
Virscanner smss.exe
X
Added by the Troj/DwnLdr-GWE Trojan downloader.
virtual-machine svchosts.exe
X
Added by W32/Rbot-US, a WORM/backdoor IRC Trojan, found in the Windows system folder. ... Read More
VISSV symvcs.sys
X
A variant of the Troj/Haxdor-Fam family of rootkits.
vital load process Spoolsvr.exe
X
Added by the RBOT.AIF WORM! ... Read More
VMWare Authorization Servicec Server.exe
X
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
vsadmin smrs.exe
X
Added by the W32/Agobot-RC WORM/IRC backdoor Trojan!
vscanner spooll32.exe
X
Added by the OPTIXPRO.10 TROJAN!
W32.Scran Scran.exe
X
Added by the NARCS WORM!
Wardo syslaunch.exe
X
Added by the ADLCICKER.G TROJAN!
WCESMngr spoolsb.exe
X
An Agobot WORM/IRC backdoor variant adds this to provide unauthorised access which will allow multiple actions to occur. ... Read More
WDefend svohost.exe
X
Part of the Windows Police Pro rogue anti-spyware infection.
weatherontray SbWeatherOnTray.exe
X
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
Web Service sm.exe
X
Added by the Troj/Psyme-BQ downloader trojan.
Web Service soft.exe
X
Added by the W32/Bube-F virus. This infection also displays popups in Internet Explorer. ... Read More
WebOutfitterTray sttray.exe
N
Intel WebOutfitter service System Tray icon
WebProxy sockins32.dll
X
Identified as a variant of the Win32:Agent-TEV malware. This infection will have its file shown as missing in a HJT log. In realty, though, this fi ... Read More
WebProxy sxmg4.dll
X
Identified as a variant of the Trojan-Downloader.Win32.FraudLoad.vcqa Trojan.
Webroot Spy Sweeper Engine SpySweeper.exe
U
Spy Sweeper anti-spyware program.
webscan stopsignav.exe
N
eAcceleration Stop-Sign related - not recommended, see note
Webservice svchost.exe
X
Added as a new service by the Troj/Feutel-B TROJAN, using the same displayname. ... Read More
wescmv sddcss.exe
X
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
WhenUSave Save.exe
X
Rebranded version of SaveNow advertising spyware
WhenUSearch Search.exe
X
WhenUSearch adware
whxpin service ssvsol.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
widpep systra.exe
X
Added by the Troj/Lulador-A backdoor Trojan.
win serlass.exe
X
Added by the Trojan.Startpage.S browser hijacker.
Win CPU sysin.pif
X
Added by the W32/Rbot-AXL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Win Junk Service sysass.exe
X
Added by the W32/Tilebot-FG worm and IRC backdoor.
win name stat.exe
?
??
Win Services Services32.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
Win Update SysUpdate.exe
X
Added by the W32/Agobot-TN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
win32 Shakira_1997_Part_1_.Mpeg_.scr
X
Added by the MYLIFE.N WORM!
win32 Setup_32.exe
X
Added by the EVILBOT.B TROJAN!
Win32 system32.vbs
X
Added by the VBS.Swerun Infection! Found in the Windows directory.
Win32 sys32.exe
X
A service created by W32/Forbot-FX with a display name of "System Net" allows remote attack via IRC channel, deletion of files, modification of data a ... Read More
Win32 sysmon.exe
X
Added by the W32/Mytob-HQ worm and IRC backdoor.
Win32 Driver svchosts.exe
X
Added by the W32/Forbot-FD worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Win32 Driver sysmls.exe
X
Added by the W32/Mytob-JH worm and IRC backdoor.
Win32 Loader svhost.exe
X
Added by the W32/Sdbot-VH WORM. Found in the Windows system folder.
Win32 Security Protocol secure32.exe
X
Added by the W32/Rbot-ETI worm and IRC backdoor.
WIN32 Sound Drivers. sounddv.exe
X
Added by the W32/Tilebot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Win32 Svchosts Driver svchosts.exe
X
Added by the W32/Forbot-FO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Win32 System Spool spoolsvc.exe
X
Added by the SDBOT.UK WORM!
Win32 Update svchosts.exe
X
Added by the W32/Forbot-GN network and mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
win32 update service svchostt.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Win32 Usb Driver svhosint32.exe
X
Added by the FORBOT-BE or FORBOT-J WORMS!
Win32 USB2 Driver smsc.exe
X
Added by the SDBOT.FO WORM!
Win32 USB2 Driver svchosting.exe
X
Added by the FORBOT.J or SDBOT.HU WORM!
Win32 USB2 Driver sys32.exe
X
Added by the WOOTBOT.X WORM!
Win32 USB2 Driver sys32snd.exe
X
Added by the FORBOT-AN WORM!
Win32 USB2.0 Driver service.exe
X
Added by the SDBOT-QF WORM!
Win32G Scandisk.com
X
Added by the ESTRELLA TROJAN
win32ini systroy.exe
X
Added by the IRC.ALADINZ.C TROJAN!
Win32load sysrc32.exe
X
Related to SmitFraud infections.
Win32R Server.com
X
Added by the ESTRELLA TROJAN!
win32serv servicesetup.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
win32serv systemdevices.exe
X
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
win32usbd ssrs.exe
X
Added by the RBOT-RA WORM!
WIN32WN system_wc.exe
X
Added by the Adware.Eziin homepage hijacker.
Win386 sp32.dll
X
Homepage hijacker. Not a dll but a regfile in disguise
Win64 systen64.exe
X
Added by the TSPY_BANKER.DAN information stealing Trojan.
WinAmp Player swphost.exe
X
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
WinAmpAgent sdhch.exe
X
Added by the Win32.Tactslay backdoor Trojan.
winapplog svchost.exe
U
StingKeyLogger keystroke logger/monitoring program - remove unless you installed it yourself! - NOTE - this file is placed in a C:\Program Files\Sting ... Read More
winbin swchost.exe
X
Added by the RBOT.CLS WORM! ... Read More
WinCheck services.exe
X
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
wincheck spdcheck.exe
X
A variant of the Tilebot worm and IRC backdoor.
winconfig.exe smsss.exe
X
Added by the W32/Spybot-MP worm and IRC backdoor. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
wind logd file servicelogd.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Wind0ws Sharing ssprotecter.exe
X
Added by the W32/Rbot-AHW worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam. ... Read More
WinData services.exe
X
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
WinDLL (service.exe) service.exe
X
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
WinDLL (slsass.exe) slsass.exe
X
Added by the Backdoor.Win32.Akbot.e backdoor worm. Please note that the C:\Windows\System32\rundll32.exe file is legitimate and should not be deleted. ... Read More
WinDll (sslms.exe) sslms.exe
X
Added by the W32/Akbot-AS spyware worm. Please do not deleted C:\Windows\System32\rundll32.exe as it is a legitimate application. ... Read More
WinDLL (start0s.exe) start0s.exe
X
A variant of the W32/Akbot family of worms and IRC backdoor Trojans. Please do not delete rundll32.exe as it is a legitimate file. ... Read More
Window Domain Services svchost.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Window Image Worker svchost.exe
X
Identified by Kaspersky Antivirus as a variant of the Trojan.Win32.Delf.amr malware. This infection should not be confused with the legitimate C:\Wind ... Read More
Window Server Sererver.exe
X
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
Window Services Connection smsc.exe
X
Added by the W32/Tilebot-GD worm and IRC backdoor.
window2 ssvchost.exe
X
Added by the IRCBOT.H TROJAN!
windows system copy.exe
X
Added by the SALGA.A WORM!
windows svchost.exe
X
Added by the W32/Slomirc-A WORM/IRC backdoor Trojan!
Windows system.exe
X
Added by the W32/Rbot-ACB worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
Windows smss.exe
X
Added by the Troj/Bancban-OF Internet banking trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\sms ... Read More
Windows smss.scr
X
Added by the Troj/Banloa-ANE Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
windows ssme.txt
X
Added by the Troj/Hupigon-SQ Trojan.
Windows SRVSPOOL.exe
X
Added by the Monagrey Trojan.
Windows spoovlss.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Setup_ver1.1400.0.exe
X
Identified as a variant of the FakeAlert/Fraudload Downloader malware.
Windows Accelerators setup.exe
U
KeySpy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" ... Read More
Windows Accounts Driver SVCH0ST.EXE
X
Added by the Troj/Agent-NDR Trojan. This infection should not be confused with the legitmate C:\Windows\System32\Svchost.exe. Notice the infection us ... Read More
Windows Activate System] syssv.exe
X
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
Windows applications server SysShield.exe
X
Added by the Antivirus'09 rogue anti-spyware program. This program will display a fake Windows Security Center on your computer that promotes Antiviru ... Read More
Windows applications server SysShield.exe
X
Added by the unregistered version of the Personal Anti Malware Center rogue anti-spyware program. ... Read More
Windows Audio sndmic32.exe
X
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
Windows Audio snd.exe
X
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
Windows Audio Mixer svchost.exe
X
Added by the W32/Tilebot-BX worm and IRC backdoor. This infection should not be confused with the legitimate svchost.exe file found in the Windows s ... Read More
Windows Automatic Updater shost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Automatic32Updater svchost32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows backup systemss.exe
X
Added by a variant of the SPYBOT WORM!
Windows Baþlangýç Dosyasý sistem.exe
X
Added by the MUZK WORM!
Windows BootableService svshost.exe
X
Added by the W32/Tilebot-KN worm and IRC backdoor.
Windows Bootup SystemLogin32.exe
X
Added by a variant of the RBOT WORM! This variant connects to an IRC server at lol.selectgex.com. It also creates a mutex called TehHaxScanall64. ... Read More
windows bootup Systemwks32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Windows bypass security SMSS Service SbiCvy.exe
X
Added by the W32/Rbot-GRF worm and IRC backdoor.
Windows Config SSYS.EXE
X
Added by the SPYBOT-DA WORM!
Windows Config for Spool Service SPOOLER32.EXE
X
Added by the W32/Sdbot-DX backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
Windows Control Panel spoolsv.exe
X
Added by the Troj/Agent-NQJ Trojan. Please note that this infection should not be confused with the legitimate C:\Windows\System32\spoolsv.exe file. ... Read More
Windows Control Service32 svhost32.exe
X
A variant of the SDBot family of worms and IRC backdoor Trojans.
Windows DDE servet.exe
X
Added by the W32/WoWMovs-A worm.
Windows DDOSServer serversc.exe
X
Added by the Troj/Bckdr-PMY backdoor Trojan.
Windows Desktop Security svcagnt.exe
U
Added by the Spyware.DesktopScout surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
Windows DLL Loader syscfg16.exe
X
Added by the W32/Domwis-G worm. This infections uses IRC to receive commandsa and to send and receive files. ... Read More
Windows DLL System smsc.exe
X
Added by the W32/Tilebot-GG worm and IRC backdoor.
Windows DLL Tracker spoolsrv.exe
X
Added by a variant of the W32/WOOTBOT WORM!
Windows Drive Compatibility System32Driver32.exe
X
Added by the SUPOVA.Z WORM!
Windows Driver Adapter svchost.exe
X
Added by the W32/Antinny-K backdoor/worm.
Windows Event Notification System_dll.exe
X
Added by the Troj/GrayBrd-G backdoor Trojan.
Windows Event Section sntsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Executer svchostie.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Explorer system32.exe
X
Added by the W32/Rbot-AJH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows ExplorerTM servinfo.exe
X
A service initiated by the W32/Forbot-EN, with a display name of "Windows Server Information" on NT systems. ... Read More
Windows File Depictor and Rotator Service For Service Pack 2 svchost.exe
X
Added by the Backdoor.Ranky backdoor Trojan.
windows file explorer ssms.exe
X
Added by the W32/Tilebot-EN worm and IRC backdoor.
Windows Firewall svchost.exe
X
Added by the Troj/Proxy-HT proxy Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows Firewalll sphost.exe
X
Added by a variant of the WIN32.RBOT WORM!
Windows Firewalll svvhost.exe
X
Added by a variant of the WIN32.RBOT WORM!
Windows Firewalll scvhost.exe
X
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
Windows Framework scvh0st.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
Windows Help Stney.exe
X
Added by the W32/Agobot-VI worm and IRC backdoor.
Windows Help Manager svchost32.exe
X
Added by the RBOT-OZ WORM!
Windows Helper service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Host spoolsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Host Service svchoste.exe
X
Added by the W32/Kelvir-U instant messenger worm. This worm spreads using MSN Messenger. ... Read More
Windows Host Service svchosts32.exe
X
Added by the W32/Kelvir-AK MSN messenger worm.
Windows Host Services services.exe
X
A variant of the IRCBot family of backdoor worms.
Windows Hosts Plugin spoolcv.exe
X
A variant of the SDBot.aad family of worms and IRC backdoor Trojans.
Windows HTML file reader Sysconf32.exe
X
Added by the NOOMY.A WORM!
Windows Identify sysays.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Ins servet.exe
X
Added by the W32/SillyFD-AB worm.
Windows InstallService servet.exe
X
Added by the W32/SillyFD-AF spyware worm.
Windows Internet Manager svchost.exe
X
Added by the Troj/IRCBot-AAC worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows Kernel svchost.exe
X
Added by the W32/Rbot-ANO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Note: This shoul ... Read More
Windows LAN Service Manager svchost.exe
U
Added by the Spyware.ComSurveilSys surveillance software. If this was not installed by you, you should uninstall it. ... Read More
Windows Loader SysUpdate.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Logon Management svclogon.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Logon Procedure Svchoste.exe
X
Added by a variant of the SPYBOT WORM!
Windows Logon Procedure Svchosta.exe
X
Added by a variant of the SPYBOT WORM!
Windows Logon Procedure svchosts.exe
X
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
Windows Logon Service service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows LoL Layer setup.exe
X
A variant of the Backdoor.Win32.Rbot.dnd family of worms and IRC backdoor Trojans. ... Read More
Windows Management svchost.exe
X
Added by the Troj/Feutel-AN Trojan.
Windows Management Extended Licence Service svchost.exe
X
Added by the Backdoor.Robofo.A backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows Management PrintSystem spoo1sv.exe
X
Identified as a variant of the AdWare.Win32.Agent.aad malware.
WINDOWS Maniez sysint.exe
X
Added by the Troj/Pitkom-C Trojan.
Windows Media Player Server.exe
X
Added by the Troj/Feutel-AE backdoor Trojan.
Windows Messanger Control Center svchosl.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows MS Update 32 sucker.exe
X
Added by the W32/Forbot-GJ worm and IRC backdoor.
Windows MSN Live 2.3 svhvchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows MSN2 XP swchost.exe
X
Identified as a variant of the WORM_KOLAB.AA worm.
Windows Net Cfg service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows netdde system32.exe
X
Added by the W32/Rbot-DBU worm and IRC backdoor. This infection utilizes the virdr.sys rootkit. ... Read More
Windows Network Data Management System Service skp66.exe
X
Related to the TR/Crypt.ULPM.Gen malware.
Windows Network Services svchost32.exe
X
Added by the W32.Spybot.ATZN worm.
Windows Network Services svshost.exe
X
A variant of the Backdoor.Win32.SdBot.bhk family of worms and IRC backdoor Trojans. ... Read More
Windows Nivedia Driver sysMGT.exe
X
Added by a variant of the RBOT WORM!
Windows NT Service Name svchcst.exe
X
Added by the W32/Rbot-NV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
Windows NT Session Manager symsec.exe
X
Added by the W32/Tilebot-EQ worm and IRC backdoor.
Windows NT Session Manager smss.exe
X
Added by the TR/Crypt.ULPM.Gen Trojan.
Windows NT Session Manager sess.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Online Tech scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Plugin Application svshost.exe
X
Identified as the SdBot.awe worm.
Windows Print Spooler SCVHOSTS.EXE
?
Suspicious due to the similarity to the valid "svchost.exe" file
Windows Print Spooler SVEHOST.EXE
X
Added by the SPYBOT.H WORM!
Windows Process Manager spoolsc.exe
X
Added by the W32/Tilebot-JM worm and IRC backdoor.
windows reg services ssservice.exe
X
Added by the TROJ/PRORAT-D TROJAN ... Read More
Windows Regedit Manager svshost.exe
X
A variant of the Sdbot family of worms and IRC backdoor Trojans.
windows register settings svmhost.exe
X
Added by a variant of the W32/FORBOT WORM! ... Read More
Windows Registers Svchosts.exe
X
Added by the W32/Rbot-HV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
Windows Registery Center svhchosts.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Registry Scan svcdll.exe
X
Added by the W32/Rbot-TP WORM/IRC backdoor trojan!
Windows report swchost.exe
X
Added by the SMALL-BD TROJAN!
windows run system.exe
X
Added by the W32/Icpass-A worm. Using zip programs installed on the infected computer, it can send the infected files to people as they join the IR ... Read More
Windows Scheduler! scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Screensaver Service.exe
X
Added by the W32.KELVIR.P WORM!
WINDOWS SCREENSAVER ssaver.scr
X
Added by the W32/Sdbot-YZ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows secure setver32.exe
X
Added by the SPYBOT.EP WORM!
Windows Secure Service secsrv.exe
X
Added by the W32/Sdbot-DGP worm and IRC backdoor.
Windows Secure Services ssms.exe
X
Added by the W32/Rbot-GAR worm and IRC backdoor. W32/Rbot-GAR spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Windows Security Center Notification Appls sxe.exe
X
Added by the W32/Rbot-GKX worm and IRC backdoor.
Windows Security Center Notification Applse sxes.exe
X
Added by the W32/Rbot-GLR worm and IRC backdoor.
Windows Security Center Notification Applsee sysecurex.exe
X
Added by an unknown malware.
Windows Security Center Service svrwsc.exe
X
Added by the Troj/Agent-NWQ.
Windows Security Manager svchost.exe
X
Added by the W32.Antinny.AX worm for the Winny file-sharing network. This infection should not be confused with the legitimate svchost.exe found in th ... Read More
Windows Security Survy svchosl.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Security Update secupd.exe
X
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
Windows Server Drivers syssrv.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Server Information servinfo.exe
X
Added by the W32/Forbot-EN WORM/IRC backdoor Trojan, which also starts a new service "Windows ExplorerTM" with a display name of "Windows Server Infor ... Read More
Windows Service SERVICES.EXE
X
Added by the Anker e-mail WORM!
Windows Service Scanvegw.exe
X
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
Windows Service svvhost.exe
X
Added by the W32/AGOBOT-HL WORM!
Windows Service slserv32.exe
X
Added by the W32/Rbot-KO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
Windows Service Agent svchost2.exe
X
A variant of the Backdoor.Win32.Rbot.gen family of worms and IRC backdoor Trojans. ... Read More
Windows Service Agent spools.exe
X
Added by the Troj/Agent-GJF Trojan.
Windows Service Agent SDSEWEW.EXE
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
Windows Service Agent spoolvs.exe
X
Added by the W32/Rbot-GXI worm and IRC backdoor.
Windows Service Controller services.exe
X
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
Windows Service Host scvhost.exe
X
Added by the SDBOT.N TROJAN!
Windows Service Host svchost.exe
X
Added by the CONE.B WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Windows Service Host spools.exe
X
Unknown Malware.
Windows Service Manager svcman.exe
X
Added by the Troj/Dloader-NY trojan.
Windows Service Manager service.exe
X
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
Windows Service Manager srvrmgr.exe
X
Added by the W32/Sdbot-DFU worm and IRC backdoor.
Windows Service Manager svcmgr32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Service Pack 2 Fix sp2fix32.exe
X
Added by the W32/Rbot-BYA worm and IRC backdoor.
windows service pack2 svchhost.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Windows Service Processor shdocvw.exe
X
Identified by Kaspersky Antivirus as a variant of the not-a-virus:FraudTool.Win32.PcPrivacyCleaner.t malware. ... Read More
Windows Service Support Call SVSS32.EXE
X
This R-Bot WORM varaiant adds the file to allow unauthorized access to an attacker through an open IRC channel. ... Read More
Windows Service SV sv32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Service Threads svcthreads.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Service Threads svcthreading.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services service.exe
X
Added by the RANDEX.R WORM!
Windows Services svchosts.exe
X
Added by the AGOBOT-KL TROJAN!
windows services scmsg.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Windows Services spoolsvc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services servicez.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services service2.exe
X
Added by the Mal/VB-ZH malware.
Windows Services 32 shzhost.exe
X
Added by the Troj/SdBot-DNX worm and IRC backdoor.
Windows Services B-Runner svcbrun.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services B-Runner svcbrunner.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Certification svccert.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Guide svcguide.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Guide svcguides.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Host svchost.exe
X
Added by the CONE or CONE.E WORMS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
windows services hosts svhosts.exe
X
Added by the TROJ/SDBOT-YH TROJAN! ... Read More
Windows Services Jog svcjog.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Jog svcjogg.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Joger svcjoger.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Jogging svcjogging.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Joging svcjoging.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Layer sslms.exe
X
Added by the W32/Rbot-GAH worm and IRC backdoor.
Windows Services Operation sevices.exe
X
Added by the W32/Sdbot-DNO worm and IRC backdoor.
Windows Services Registry services.exe
X
Identified as a variant of the Trojan.Win32.Agent.axx malware. This infection should not be confused with the legitimate C:\Windows\System32\services ... Read More
Windows Services Tower svctowers.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Tower svctowing.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Services Update svch0st.exe
X
Added by a variant of the RBOT WORM!
Windows Servser serviser.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
windows session manager smss32.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
windows session manager subsystem smss.exe
X
Added by the W32/Kalel-B worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
windows setup manager startupmgr.exe
X
Added by the W32/Rbot-BFX worm and IRC backdoor.
Windows Shell shell.exe
X
Added by the W32/Mytob-CA worm.
WINDOWS SKY sky.exe
X
Added by the W32/Mytob-CJ worm. This infection when started connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Smart Manager smart.exe
X
Added by the RBOT-SL WORM!
Windows SMB Manager smb32.exe
X
Added by the W32/Rbot-BHZ worm and IRC backdoor.
Windows Smrss Service smrss.exe
X
Added by the W32/Tilebot-X worm and IRC backdoor.
Windows smss service service.exe
X
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
Windows Sound svdhost.exe
X
A variant of the Worm.Rbot.ABCC family of worms and IRC backdoor Trojans.
Windows Sound Driver SndMon32.exe
X
Added by a variant of the SPYBOT WORM!
Windows Sound Emulator snd32_win.exe
X
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
Windows Sound Manager SndMon32.exe
X
Added by the FORBOT-BU WORM!
windows sound manager SndMon16.exe
X
Added by a variant of the W32/FORBOT WORM! ... Read More
Windows SP System svchost.exe
X
Identified as a variant of the Trojan.Win32.KillAV.mc malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost. ... Read More
Windows SP2 Update Sp2update.exe
X
Added by the WOOTBOT.BS WORM!
Windows Spool Server spoolsrv.exe
X
Added by the W32/Sdbot-ACT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows SpoolaPrint Service spoolasrv.exe
X
Added by the W32/Sdbot-AYD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Spooler SPOOLSRV.EXE
X
Added by the SPYBOT.P WORM!
Windows Spooler spool.exe
X
Added by the W32/Sdbot-ADP worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows Spooler Service spoolsrv.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Spooler Services spool.exe
X
The W32/Agobot-AMO WORM adds this to corrupt the HOSTS file, terminate processes,and open a backdoor on the infected computer. ... Read More
Windows SpoolPrint Service spoolersrv.exe
X
Added by the W32/Sdbot-ZT worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
Windows spoolservr Service spoolservr.exe
X
Added by the W32/Sdbot-AAN worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Spoolsre Service spoolsre.exe
X
Added by the W32/Sdbot-AAE worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
windows spoolsrv service spoolssv.exe
X
Added by the W32/Sdbot-AWV worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Spoolsrv Service spoolmsv.exe
X
Added by the W32/Sdbot-ZS worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
Windows Spoolsurf Service spoolsurf.exe
X
Added by the W32/Sdbot-ZZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows SpooltPrint Service spooltsrv.exe
X
Added by the W32/Sdbot-AYE worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Spoolvvv Service spoolvvv.exe
X
Added by the W32/Sdbot-AAW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows SQL management 1.33 scvhost.exe
X
Added by the W32/Spybot-OB worm and IRC backdoor.
windows ssl secondary drivers SSL32Dr.exe
X
Added by the SDBOT.ASQ ... Read More
Windows Stand Sound Drivers Sounddrv.exe
X
Added by the W32/Sdbot-XF WORM/IRC backdoor trojan!
Windows Startup services21.exe
X
Added by the AGOBOT-MX WORM!
Windows Startup 32 Bits sysrun32.exe
X
Added by a variant of the DARKSUN TROJAN!
Windows startup service service.exe
X
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
Windows Sub-Classing Routine Manager scvhost.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows svchost svchost.exe
X
Added by the W32/IRCBot-ZQ worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows svchost service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows svchost servicean.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Svchost Authority slsass.exe
X
Added by the W32/Rbot-UA network worm and IRC backdoor. When started this infection connects to an IRC server where it waits for remote commands to e ... Read More
Windows Svshost Service Update 32 svcsshost32.exe
X
Added by the W32/Forbot-GD worm.
Windows SyncroAd SyncroAd.exe
X
Windupdates adware variant
WINDOWS SYSTEM skybot.exe
X
Added by the W32.Mytob.EB@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows System skybotx.exe
X
Added by the W32.Mytob.FO@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM smsc.exe
X
Added by the W32/Mytob-BR worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
WINDOWS SYSTEM smoc.exe
X
Added by the W32.Mytob.FU@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM servises.exe
X
Added by the W32/Zotob-I worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM servce.exe
X
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM service5.exe
X
Added by the W32/Mytob-JF worm and backdoor.
Windows System 32 sys32.exe
X
Identified by Kaspersky antivirus as the Backdoor.Win32.SdBot.xd worm and IRC backdoor. ... Read More
Windows System 32 System32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
windows system backup SysBackup.exe
X
Unidentified malware
Windows System Configuration SYSCFG16.EXE
X
Added by the WISDOOR.Z TROJAN!
Windows System Control Drivers systcntl.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows System Control Drivers systemcntl.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows System Drivers sysretain.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
windows system gateway SPOOLER.EXE
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
Windows System Manager sysconf.exe
X
Added by the W32.Mytob.AL@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
WINDOWS SYSTEM MANAGER spoolsvc.exe
X
Added by the W32/Mytob-LY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
windows system manager loader smsls.exe
X
Added by the AGOBOT.TF WORM! ... Read More
Windows System Restart Sync slrss.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows System Restore Configuration Sblhost.exe
X
Added by a variant of the SPYBOT WORM!
Windows System Restorer SystemRestorer.exe
X
Added by the DULOAD.C WORM!
WINDOWS SYSTEM SCALPE scalpe91.exe
X
Added by the W32/Mytob-HI mass-mailing worm.
windows system security sys32.pif
X
Added by the W32/Rbot-AOL
Windows System Service system.exe
X
Added by the W32/Tilebot-JH worm and IRC backdoor. W32/Tilebot-JH spreads to other network computers by exploiting common buffer overflow vulnerabilit ... Read More
Windows System Service svchost32.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows System Tray swhost.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
Windows System-Control Drivers syscontrl.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows System32 System32.exe
X
Added by the W32/Sdbot-ALI worm and IRC backdoor.
Windows System32 Kernel system32.exe
X
Added by the W32/Sdbot-AAT worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows System32 Management smsc32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows SystemDown servet.exe
X
Added by the W32/Delf-ESX worm.
WINDOWS SYSTEMn servicces.exe
X
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows Systemnmg stagmr.exe
X
Added by the W32/Mytob-J mass-mailing WORM/IRC backdoor!
Windows SYStry systry.exe
X
Added by the W32/SdBot-E backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute ... Read More
Windows Task Scheduler shtasks.exe
X
Added by the W32/Tilebot-EB worm.
Windows Task Scheduler Scheduler.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Taskmanager svchost.exe
X
Added by the WORM_IMBOT.AC worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Windows Time Updata Svchost.exe
X
Added by the Troj/Feutel-AG Trojan.
Windows TM SVPHOST.exe
X
Added by a variant of the WIN32.RBOT WORM!
Windows UDP Control Center scvhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Updata Server server.exe
X
Added by the Backdoor.Graybird.N backdoor.
windows update sychost.exe
X
Added by the LEOX.B WORM!
Windows Update sdvhost.exe
X
W32/Agobot-AEU is a network worm with backdoor functionality.
Windows Update scvhost.exe
X
Added by the W32/Sdbot-XT WORM.
Windows Update Sqltob.exe
X
Added by the WORM_DASHER.A worm.
Windows Update SICB2.exe
X
Added by the Troj/Banker-DAC Trojan. Troj/Banker-DAC attempts to steal confidential information entered into online banking websites. ... Read More
Windows Update scvhost.exe
X
Added by the Troj/Bckdr-PUT Trojan.
Windows Update SecretStub.exe
X
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
Windows Update sqd.exe
X
A variant of the Backdoor.Win32.Shark.aa backdoor Trojan.
Windows Update svhost.exe
X
Added by the Troj/Mdrop-BPW malware-dropping Trojan.
Windows Update SystemUpgrade.exe
X
Added by the Troj/Sdbot-DIR worm and IRC backdoor.
Windows Update ssms.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Update scrigz.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Update sspool.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Update 32 slsys.exe
X
Added by the W32/Forbot-FT worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
Windows Update 63 shupd64.exe
X
Added by the W32/Forbot-GA backdoor worm.
Windows Update 63 shupd64.exe
X
Added by the W32/Forbot-GA backdoor worm.
windows update center svthx.exe
X
Added by the W32.STUBBOT.A WORM! ... Read More
Windows Update Check syslodr.exe
X
Identified as a variant of the W32/Rootkit.ASA.dropper rootkit.
Windows update config svhost.exe
X
Added by the SDBOT-PF WORM!
windows update configurator svghost.exe
X
Added by a variant of the SPYBOT WORM!
Windows Update Firewall System spack2.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Update Service smcg.exe
X
Added by the SDBOT.QY WORM!
Windows Update Service SP00ISS.exe
X
Added by the W32/Sdbot-ZH worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
Windows Update Service 2004/2005 systemupdate.exe
X
Added by the RBOT-JE WORM!
windows update software system.exe
X
Added by the TOFGER.BX TROJAN! ... Read More
Windows Update System SysFile.exe
X
Added by the W32/Autorun-BQL removable media worm.
Windows Update System Shell svhostcs32.exe
X
Added by the W32/Rbot-AAZ WORM/IRC backdoor trojan!
Windows Updated spoolsae.exe
X
Added by the W32/Rbot-APM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Windows Updated spoolsac.exe
X
Added by the W32/Rbot-BBX worm and IRC backdoor.
Windows Updater svigost.exe
X
W32/Rbot-VS is classified as a worm.
Windows Updater sdsys.exe
X
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Windows Updater svchost.bat
X
Added by the Mal/MSIL-AZ malware.
Windows Updates svihost.exe
X
Added by the Troj/Backdr-DD Trojan.
windows updatess svchots.exe
X
Added by the Troj/Agent-STW Trojan.
Windows upgrade svchost.exe
X
Added by the Antivirus 2011 Edition limitée rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\ ... Read More
Windows USB Monitor servupdate.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Windows Verification Help Tool Svchst.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Version Service sysvers.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows Wave Plugin svshost.exe
X
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
Windows WorkGroup svrhost.abc
X
Added by the Troj/Bckdr-QMD removable media worm.
Windows XP servet.exe
X
Added by the Troj/Dloadr-AYB Trojan.
Windows Xp Service Pack 2 svchost.exe
X
Added by the Troj/Xplos-A backdoor Trojan.
windows-server srystem.bat
X
Added by the Troj/Feutel-CK backdoor Trojan.
Windows-System System32.exe
X
Added by the LOGPOLE.C WORM!
Windows-Xordate sox7.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Windows32 system.exe
X
Unknown malware.
windows32 smss.exe
X
Identified by Kaspersky Antivirus as a variant of the Trojan.Win32.Autoit.aqh malware. ... Read More
Windows32 Host Service Manager smsc.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
windowsagent sysexhook.exe
X
Added by the GOP keyboard logger/TROJAN! ... Read More
WindowsAPI.DLL Server5.exe
X
Added by the "Fear and Hope" TROJAN!
WindowsAudio systemupd.exe
X
Added by the Troj/Agent-TH Trojan.
WindowsDiskEvt svcsvh32.exe
X
Added by the roj/Stinx-U backdoor Trojan.
WindowsExplorer svchost.exe
X
Added by the MessengerBlocker rogue security software. MessengerBlocker is a misleading application that may periodically spam the user's computer wit ... Read More
WindowsFirewall svclcheck.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
windowsflashbrg sqldata1.exe
X
Added by a variant of the AGENT-IC TROJAN! ... Read More
WindowsHelpService service.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
WindowsProxyService sox1.exe
X
Added by the Troj/Proxyser-S backdoor Trojan.
WindowsService service.exe
X
Added by the W32/Tilebot-K worm.
WindowsServices service.exe
X
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
WindowsServicesStartup svchost.exe
X
Added by the W32.Ecup worm which spreads through filesharing networks. This infection should not be confused with the legitimate Microsoft file c:\Win ... Read More
WindowsSp2 sp2.exe
X
Added by the W32.Posse worm.
WindowsSystem32 svchosts.exe
X
Added by the Troj/Agent-EDA backdoor Trojan. This infection will connect to an IRC server where it will wait for commands to execute. ... Read More
WindowsUpdate svchost.exe
X
Added by the ASTEF or RESPAN WORMS or AGENT-V TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startu ... Read More
WindowsUpdate Strad.exe
X
Added by the W32/Culler-D worm.
WindowsUpdateDirect syssvcc.exe
X
Added by the Troj/Dupa-C dropper Trojan.
WindowsUpdateNT svwhost.exe
X
Added by the Troj/Shellot-B backdoor Trojan.
WindowsUpdatesvchostss svchostss.exe
X
Added by the Troj/Agent-HZ Trojan. This infectiona also installs the file C:\Windows\System32\helper\svchostss.exe. ... Read More
WindowsXp Security spool.exe
X
Added by the W32/Rbot-GRK worm and IRC backdoor.
WindowsXPserv svcnxp32.exe
X
WindowSystemMonitor scrhost.exe
X
Added by the W32/Tilebot-DV worm and IRC backdoor.
Windows_Folder Server4.exe
X
Added by the Troj/Hupigon-SK backdoor Trojan.
Windows_Serivce SERVICE.exe
X
Added by the WOOTBOT.AH WORM!
Windows_Updates svthost.exe
X
Added by a variant of the SPYBOT WORM!
Windows_updatesafe Server.exe
X
Added by the Troj/Bckdr-QIS backdoor Trojan.
WinDR SysDre.exe
X
Added by the W32/Dref-H email worm and IRC backdoor..
WinDVR SchSvr SchSvr.exe
N
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
WinINet services.exe
X
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:

c:\WINDOWS\ConnectionStatus\netslot.n ... Read More
winl2.0 sysprot.exe
X
Added by the Troj/Fearles-D Trojan.
WinLd01Service svchost.exe
X
Added by the TROJ_DLOADER.NKY downloading Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
Winlogin.exe steam.exe
X
Added by a variant of the AGENT.AH TROJAN!
winlogo svshost.exe
X
Added by the CXmal/Behav-B malware.
winlogon svchost.exe
X
Added by the W32/AHKHeap-A worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. You can delete the e ... Read More
winlogon system.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Delf.cns malware.
Winlogon scssrr.exe
X
Added by the Troj/Agent-LXB Trojan.
Winlogon Shell svchost.exe
X
Added by the W32.Kipis.M WORM! ... Read More
WinLongLdr smsonx32.exe
X
Added by the Troj/Stinx-I Trojan.
WinLsass servicec.exe
X
Added by the SCANE WORM!
WinManager schost.exe
?
??
WinMessenger syshost.exe
X
Added by the W32/Opanki-E worm and IRC backdoor.
Winmgr.exe scvhost.exe
X
Added by the AGOBOT.AFG WORM!
winnt DNS ident svhost.exe
X
A variant of the W32/Rbot-BAU family of worms and IRC backdoor Trojans.
winomc svchost.exe
X
Added by the CXmal/FkSvc-Q malware.
WinPCDoctor SysRep.exe
X
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. ... Read More
winphonics7536 setups.exe
X
Added by a variant of the MUTIN-C TROJAN!
WinProfile sndcfg16.exe
X
Added by the SNDC.A WORM!
WinProt server.exe
X
Added by the CHUPACABRA TROJAN!
WinReg svchost.exe
X
Added by the Troj/Zapchas-DB Trojan.
winreg_32 Sysdll.exe
X
Added by the Troj/Dloader-IJ Trojan! File is found in the Windows folder.
winreg_32 svchosst.exe
X
added by the Troj/Bancos-CE TROJAN!
WINRUN svchost32.exe
X
Added by the W32/Mytob-AI, a worm that harvests email addresses from files and the Windows Address Book. It also has backdoor trojan functionality. ... Read More
wins update 32 services32.exe
X
Added by the W32/Forbot-FN ... Read More
Winsecure Antivirus SecureAntivirus.exe
X
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
WinSecured32 ssmr.exe
X
Added by a variant of the FORBOT WORM!
winserver Server.txt.vbs
X
Added by the DELTAD.A WORM!
winServer System_dll.exe
X
Added by the Troj/GrayBrd-H backdoor Trojan.
WinService Host scvhosts.exe
X
A variant of the RBot family of worms and IRC backdoor Trojans.
WinService32 ssmgr.exe
U
007 Spy Software - "stealthy monitoring program which allows you to secretly track all activities of computer users and automatically deliver logs to ... Read More
WinService32 svchost.exe
X
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.SpyAnyTime.a Trojan. This infection should not be confused with the legitimate ... Read More
winsock svch0st.exe
X
Added by the SAGE-A WORM!
Winsock2 driver SDJOIJE.EXE
X
Added by the SPYBOT.DR TROJAN!
Winsock2 driver SPOLSV.EXE
X
Added by the SPYBOT-CM WORM!
Winsock2 driver sysreq.exe
X
Added by the W32/SPYBOT-CC WORM
Winsock2 driver svchorsst.exe
X
Added by the W32/Spybot-EE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. This infection ... Read More
Winsock2 driver SYSTEM32.EXE
X
Added by the W32/Spybot-EG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Winsock2 driver svhost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Winsock2 driver sys32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Winsock2 wqr1s SCVVHOST.EXE
X
Added by the W32/Rbot-FSN worm and IRC backdoor.

W32/Rbot-FSN includes functionality to:

- access the internet and commu ... Read More
Winsock32 driver Sdjoije.exe
X
Added by the SPYBOT.B WORM!
Winsock32 driver system32.exe
X
Added by the Troj/IRCBot-VT worm and IRC backdoor.
Winsock32driver sp2XPupdate.exe
X
Added by an unidentified VIRUS, WORM or TROJAN!
winsock32driver svchhost.exe
X
Added by the BKDR_HACKARMY.I TROJAN! ... Read More
Winspector_s sup2.lnk
X
Added by the TROJ_MULDROP.GP dropper Trojan.
Winspool spoolsvr.exe
X
Added by a variant of the SDBOT WORM!
WinSrv SHIZZLE.EXE
X
Added by the HOBBIT.C WORM!
winsrv3 services.exe
X
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
winssystem syssmss.exe
X
Added by the BKDR_DELF.IG TROJAN! ... Read More
WinStart services.exe
X
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
Winstos SVCH0S.EXE
X
Added by the W32/Autorun-EA removable media worm.
winsupdate svchost.exe
X
Added by the Troj/Agent-RHZ Trojan. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
winsys syschost.exe
X
Added by an unidentified TROJAN!
WinSys system.exe
X
Added by the W32.Daprosy worm. W32.Daprosy is a worm that spreads through mapped, fixed, and removable drives. It may also spread through email. ... Read More
Winsys SysWindows.exe
X
Added by the W32/Rimecud-BD worm.
winsystem.sys smss.exe
X
Added by the W32/Sober-K infection. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
WinSysW swchost.exe
X
Added by the TSPY_ONLINEG.KNM password-stealing Trojan.
WINTASK sys32.exe
X
Added by a variant of the Mytob mass-mailing WORM/IRC backdoor Trojan!
WINTASK scvhost.exe
X
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
wintask dll32 smsrss.exe
X
Added by the W32.MYTOB.BS WORM! ... Read More
WINTASKMGR sp2winfix.exe
X
Added by the WORM_MYTOB.KJ mass-mailing worm and IRC backdoor.
Winup svchost.exe
X
Added by the Troj/DelCanti-B Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
WinUpdaterstd svchost.exe
X
Added by the Troj/VBObfus-E Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
WinXPService System
X
Added by the Troj/Zapchas-EJ backdoor Trojan.
Win_api_driver system.exe
X
Added by the REVIRD TROJAN!
Wireless Zero Configuration WZCSVCRpcLocator Setupw.exe
X
Added by the Troj/Kango-F Trojan.
wl svvosts.exe
X
Added by the Troj/PWS-ACU password-stealing Trojan.
wl svhost32.exe
X
Added by the Troj/WowPWS-AF Trojan.
wlinles svchost.exe
X
Added by the W32/Liji-A virus.
wm svhost32.exe
X
Added by the TSPY_LINEAGE.CIS password-stealing Trojan for the online game Lineage. ... Read More
WMAudio services.exe
X
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
WMI Standard Event Consumer - Scripting scrcons32.exe
X
Added by the W32/Rbot-GRD worm and IRC backdoor.
wnddrv svchost.exe
X
Aded by an unidentified TROJAN! - NOTE - this file is placed in the Winnt or Windows folder, and should NOT be confused with the legitimate Windows ... Read More
wnxpupdate spvspool.exe
X
Added by the W32.Dabora.B@mm mass-mailing worm.
Wollf Remote Manager svchost32.exe
X
Added by the Troj/Bdoor-ABJ backdoor Trojan.
Working System Analyzer syswork.exe
X
This is a SDBot variant infection. These types of infections are backdoor trojans. It also creates a Windows Service. ... Read More
Working System Analyzer syswork.exe
X
This is a SDBot variant infection. These types of infections are backdoor trojans. It also creates Run registry entries to start this file. ... Read More
ws2_32 svchst.exe
X
Added by the Troj/Voken-A TROJAN, it will terminate anti-virus and security-related processes. ... Read More
WSAConfiguration svchostt.exe
X
Added by the AGOBOT.ZT WORM!
wsock32 svchost.exe
X
Added by the Troj/Horst-A keylogging trojan. This infection logs your keystrokes to a file named c:\windows\system32\dll.txt ... Read More
WSSVC smsc.exe
X
Added by the W32/AutoRun-AGA removable media worm.
WSVCHO svhost.exe
X
Added by the W32/Spybot-OQ worm.
WSVCS SERVICES.EXE
U
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
WTIndicator SchedInd.exe
U
WinTask - software that automates a variety of routine tasks quickly and simply
wupd symcsvc.exe
X
Adware downloader/installer, CoolWebSearch parasite related ... Read More
Wut Nigga syswork.exe
X
A service created by W32/Forbot-FZ and bearing the display name of Working System Analyzer. ... Read More
wxpdrivers svchost.exe
X
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
X-Grabber sswizard.exe
N
xcxdsaa7 slcskxsdl7.exe
X
Added by the Troj/OnLineG-K password-stealing Trojan for online games.
xem services.exe
X
Identified as a variant of the Trojan-Downloader.Win32.CWS.am downloader Trojan. This infection should not be confused with the legitimate C:\Windows\ ... Read More
XNSearchAssistant SrchAsst.exe
X
iWon Search Assistant - spyware
xor svchost.exe
X
Added by the XORDOOR TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
XP Backup smtxp.exe
X
Identified as a variant of Backdoor.Win32.SdBot.aad worm and IRC backdoor.
XP System systemxp.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Xploit Server server.exe
X
Added by the Troj/Bckdr-JUF information stealing Trojan.
XPPrintSpool spoolsv.exe
X
Identified as the Backdoor.IROffer variant malware.
Xpsystem SERVICES.EXE
X
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
xpsystem services.exe
X
CoolWebSearch parasite variant
xp_system services.exe
X
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
xp_system services.exe
X
Added by the Adware.CWSConyc hijacker.
xrunwin svchost.exe
X
Added by the Troj/Privoxy-B proxy Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
xseaqwt slipmenu1.scp
X
Added by the Backdoor.Rustock backdoor rootkit.
xxcm sys.exe
X
Added by the W32/Krisworm-A worm, it will be found in the %Windir%Fonts folder. ... Read More
xy svhost32.exe
X
Added by the Troj/Lineag-ADH password-stealing Trojan for the online game Lineage. ... Read More
y1959sar sv711224030r.exe
X
Added by the W32/Brontok-AK mass-mailing worm.
Yahoo Messenger svchost32.exe
X
Added by the WORM_SOHANAD.AL worm.
Yahoo Messengger SVICHHOST.exe
X
Added by the Troj/Tiotua-C Trojan.
Yahoo Messengger SSVICHOSST.exe
X
Added by the W32/Sohana-R worm.
Yahoo Messengger SCVHOST.exe
X
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
Yahoo Messengger SSCVIHOST.exe
X
Added by the W32/Sohana-W worm.
Yahoo Messengger SSVICSSHOST.exe
X
Added by the W32.Imaut.AA worm.
Yahoo Messengger SCVVHSOT.exe
X
Added by the W32/SillyFDC-AE worm.
Yahoo Messengger SSVICSSHOST.exe
X
Added by the W32.Imaut.AA worm. W32.Imaut.AA is a worm that spreads through Yahoo! Instant Messenger and through network shares and removable drives. ... Read More
Yahoo Messengger SCVHSOT.exe
X
Added by the W32/Hakag-A worm.
Yahoo Messengger SSCVIIHOST.exe
X
Added by the W32/Sohana-Y spyware worm.
Yahoo Messengger SVICHOOST.exe
X
Added by the W32/Sohana-AE worm.
Yahoo Messengger scvhosts.exe
X
Added by the W32/Sohana-AH spyware worm.
Yahoo Messengger scvshosts.exe
X
Added by the W32/Trax-A worm.
Yahoo Messengger system3_.exe
X
Added by the W32/AutoRun-AOA removable media worm.
Yahoo Messengger sichost.exe
X
Added by the W32/Yahlov-J worm.
Yahoo Patcher! sectoriate.exe
X
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
Yahoo!7 Messenger svchost.exe
X
Added by the W32/Tiotua-O worm.
YahooSpyServer svchost.exe
X
Added by the Troj/PWS-AFA password-stealing Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
ycnbsdgv Shari.sys
X
Added by the Troj/Agent-GHB Trojan.
yemarvd sysmon.exe
X
Added by the Troj/Agent-CH backdoor trojan. This infection modifies your HOSTS file to disable the connection to various antivirus software update sit ... Read More
YeppStudioAgent SamsungMediaStudioAgent.exe
N
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
YSearchProtection SearchProtection.exe
U
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to somethi ... Read More
YVPB video output svjvpn.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
Zone Labs Client Ex svchost.exe
X
Added by the NETSKY.F WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
Zone system szchost.exe
X
Added by the MULTIDR-AC TROJAN!
Zonesoft Cleaner svmgr.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
zSecurity Service szsvc.exe
X
Added by the W32/Sdbot-DAB worm and IRC backdoor. The worm spreads through network shares protected by weak passwords, MS-SQL servers and through vari ... Read More
zsms smss.exe
X
Added by the Troj/Bancos-CK Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
zsmss smss.exe
X
Added by the Troj/Bancos-DD trojan.
zSPGuard Spguard.exe
U
"StartPage Guard (SPG) protects your PC from cyberscam, by detecting and preventing any unauthorized changes to your internet browser's Start and Sear ... Read More
ZTEScandal.A svchost32.exe
X
Added by the W32/AutoRun-XU removable media worm.
ZtgServerSwitch server.vbs
X
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
zztp svchost.exe
X
Added by the Trojan.Tannick.B infection.
zzzCamlnSuitelll setup.exe 46***
?
??
zzzhpsetup setup.exe
?
??
[not used] svohost.exe
X
This dumaru variant attempts to terminate antivirus programs so that it remains undetected. It is a mass-mailing worm with backdoor and keylogging ca ... Read More
[not used] svchost.exe
X
Added by the W32/Tex-A mass-mailing worm.
[not used] sound_drive16.exe
X
Added by the Troj/Bdoor-GP backdoor trojan.
[not used] sys16.exe
X
Added by the Troj/Bancos-BZ password stealing trojan. This trojan attempts to steal the account information of Brazilian bankes. ... Read More
[not used] svcmgr32.exe.exe
X
Added by the W32/Oscabot-D worm. When started, this infection connects to an IRC where it waits for remote commands to execute. ... Read More
[not used] setup32.exe
X
Added by the W32/Rbot-AFJ worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
[not used] svhost32.exe
X
Added by the Troj/Lineage-AB trojan.
[not used] svchsot.exe
X
Added by the Troj/GWGhost-N Trojan.
[not used] STFU.exe
X
Added by the W32/Rirc-E worm and IRC backdoor.
[not used] svcroot.exe
X
Added by the Troj/Heles-B keylogger Trojan.
[not used] svchsto.exe
X
Added by the Troj/GWGhost-R information stealing Trojan.
[not used] System.com
X
Added by the Troj/LegMir-BG keylogger Trojan. It also creates the file CQQ_Fileqq_dll.dll. ... Read More
[not used] systcom32.exe
X
Added by the W32/Spybot-ED worm. When started, this infection connects to a remote IRC server where it waits for commands to execute ... Read More
[not used] stealth.worm.exe
X
Added by the PE_THEALS.A file infector. This infection also utilizes rootkit technology. ... Read More
[not used] stivc.exe
X
Added by the Troj/Agent-FN Trojan.
[not used] svchostl.exe
X
Added by the W32/Blaster-M worm.
[not used] syscom832.exe
X
Added by the W32/Spybot-EN worm.
[not used] syscom32.exe
X
Added by the W32/Spybot-EM worm and IRC backdoor.
[not used] sembako-cfzjkmg.exe
X
Added by the W32/Brontok-M worm.
[not used] sembako-cfzjmmg.exe
X
Added by the W32/Brontok-N worm.
[not used] sfcrt20.exe
X
Added by the Troj/PPdoor-AP backdoor Trojan.
[not used] System Idle Procese.exe
X
Added by the Troj/DDoS-E Trojan.
[not used] spdr.exe
X
Added by the Troj/Zagaban-E Trojan.
[not used] SandboxieHelper.dll
Y
Installed by the Sandboxie security software.
[not used] svchr8k.dll
X
Added by the Troj/Small-BVZ Trojan.
[not used] systf0.dll
X
Added by the Troj/Small-BRK Trojan.
[not used] syst6he.dll
X
Added by the Troj/Small-BXG Trojan.
[not used] syst24.dll
X
Added by the Troj/Small-BXF Trojan.
[random name] Svchosts.exe
X
Added by the SDBOT.N TROJAN!
[random name] se?vices.exe
X
PurityScan adware variant.
[random] swpolws.exe
X
Added by the Troj/Sdbot-ER backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
[system] services.exe
X
Identified as a variant of the W32.Mandaph worm.
[unknown name] SRMER32.EXE
X
Added by the W32/Sdbot-IG worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
[unknown name] SERVSYS32.EXE
X
Added by the W32/Sdbot-KQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
[unknown] SYSCDCFG32.EXE
X
Added by the W32/SdBot-GI worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
[unknown] SPOOLVLC.EXE
X
Added by the W32/Sdbot-HD worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
[Unknown] socketx113.sys
X
A variant of the Haxdoor rootkit.
[VALUE] svcwinra.exe
U
Added by the Spyware.Systemsurv surveillance software. Spyware.Systemsurv is a program which monitors keystrokes, Web sites visited and IM conversatio ... Read More
[various names] svchostss.exe
X
Added by a variant of the RBOT WORM!
[various names] shch.exe
X
Premium rate adult content dialler
[Various Names] Svchost.exe
X
Added by the W32.Welchia.K worm.
[Various Names] SYSTRAV.exe
X
Part of the Wareout infection as described here.
[Various Names] stuffmon.exe
X
Part of the Wareout infection as described here.
[Various Names] sound64.exe
X
Part of the Wareout infection as described here.
[Various Names] Shaitan1678.exe
X
Part of the Wareout infection as described here.
[Various Names] sysmon12.exe
X
Part of the Wareout infection as described here.
[Various Names] srbho.exe
X
Part of the Wareout infection as described here.
[Various Names] sysconf16.exe
X
Part of the Wareout infection as described here.
[Various Names] StartCpl.exe
X
Part of the Wareout infection as described here.
[Various Names] scanSYS.exe
X
Part of the Wareout infection as described here.
[Various Names] slamm.exe
X
Part of the Wareout infection as described here.
[Various Names] SAPSTR.exe
X
Part of the Wareout infection as described here.
[Various Names] SetupExeDll.exe
X
Part of the Wareout infection as described here.
[Various Names] SpyElim.exe
X
Part of the Wareout infection as described here.
[Various Names] Serviceprocess.exe
X
Part of the Wareout infection as described here.
[Various Names] startman.exe
X
Part of the Wareout infection as described here.
[Various Names] ssweeper.exe
X
Part of the Wareout infection as described here.
[Various Names] sbin.exe
X
Part of the Wareout infection as described here.
[Various Names] syspanel.exe
X
Part of the Wareout infection as described here.
[Various Names] SysEntry.exe
X
Part of the Wareout infection as described here.
[Various Names] StatusCheck.exe
X
Part of the Wareout infection as described here.
[Various Names] SysSupport.exe
X
Part of the Wareout infection as described here.
[Various Names] sysmon12.exe
X
Part of the Wareout infection as described here.
_Services.dll SMSS.EXE
X
Added by the W32/Sober-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
_Setv Setv.com
X
Added by the W32.Besam worm.
_svchost.con svchost.com
X
Added by the ERKEZ.C WORM!
_SystemBoot services.exe
X
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
_SystemCheck services.exe
X
Added by the W32/Sober-M WORM!
_WinCheck services.exe
X
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
_WinData services.exe
X
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
_Windows services.exe
X
Added by the W32.Sober.X@mm mass-mailing worm.
_WinINet services.exe
X
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:

c:\WINDOWS\ConnectionStatus\netslot. ... Read More
_winstart services.exe
X
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
_winsystem.sys smss.exe
X
Added by the W32/Sober-K infection.
{01BE3276-1420-45b5-9762-172C5C184EB7} svchstb.dll
X
Added by the Trojan.Nethell Trojan.
Trojan.Nethell is a Trojan horse with keylogging capabilities that can download commands from a remote comp ... Read More
{01d8d081-0f76-4ab5-b5e4-9b23a709670e} sacskza.dll
X
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
{05678D88-71DC-B123-1C5C-A2194F963210} smssm.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{05CD0D77-4947-4a56-94FA-0DF0DC644D7B} sysqyzwud.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{081FE200-A103-11D7-A46D-C770E4459F2F} SysModule64.DLL
X
Added by the Troj/LegMir-AP Trojan. This infection also creates the file C:\windows\system32\expl0rer.exe. ... Read More
{0E74444C-3F09-0401-0105-010602030302} symproc32.exe
X
Identified as the Backdoor.Prorat.CH backdoor and keylogger. Once you remove this infection it is advised that you change all of your passwords. ... Read More
{1493AB5B-51ED-5A06-0805-040306030708} sysreg.dll
X
Identified as the Trojan-PWS.Win32.Steam.l password-stealing malware.
{14C0A9F9-5512-43BA-87FA-ED4860306453} sysutils32.dll
X
Added by the Troj/Lineag-FL Trojan.
{157627A6-2A10-4aa1-B97F-90B8DC6F24AC} sysqkmwfedz.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{15A74989-5015-B6D4-0008-080602010204} shelldrv.exe
X
Added by the Troj/Bckdr-QHJ backdoor Trojan.
{16F5021C-69C7-F9BF-0804-020805080704} Svhosters.exe
X
Added by the Backdoor.Darkmoon.E backdoor.
{1961D16F-FA65-2C7F-0856-602C3407B1E2} svchoster.exe
X
Added by the Troj/Cheuko-D Trojan.
{196F6BD4-27EA-7FAF-F992-9342843C53B9} Systemx.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{1A6C58F2-CB1A-3465-158C-AB34A8FC14F1} shaman.dll
X
Identified by Kaspersky as the Trojan-Spy.Win32.Delf.aan password-stealing Trojan. ... Read More
{1CB622F9-7299-4245-0705-080208070506} SecSystem.exe
X
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
{2250D9C6-4CC7-4826-8EFD-1D04AFC7F7F0} SysInfo.DLL
X
Added by the Troj/LegMir-AA password-stealing Trojan.
{28ABC5C0-4FCB-11CF-AAX5-21CX1C642122} sweet.exe
X
Added by the removable media worm.
{2bf41070-b2b1-21d1-b5c1-0305f4055515} svcr.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{2C70168B-97CE-4f31-B85D-1FEC5002721D} sysawpbkvnq.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{2C70168B-97CE-4f31-B85D-1FEC5002721D} sxpgknrwva.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{2C70168B-97CE-4f31-B85D-1FEC5002721D} sysavxjgdu.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{354558B1-932C-7AA1-7E39-339591EDCC80} svhoost.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{357AA41A-B7A8-4632-A27D-5B980B25CF43} services.exe
X
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
{35TGC6Z0-4FuO-31XF-AVC2-21CX1Z6Og23} STReLjaSTVo.exe
X
Added by the W32.Ircbrute.D worm. W32.Ircbrute.D is a worm that spreads by copying itself to removable drives and opens a back door on the compromised ... Read More
{4535F32F-D292-B784-7926-7419ADE0A94B} scp32.exe
X
Added by the Troj/Delf-EXC Trojan.
{54277B55-E73D-3C13-43DD-6B03660716FA} sydkey.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} shellexecutehook.dll
Y
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} SASSEH.DLL
Y
Part of the Super Antispyware security software.
{6076d2b1-634c-4685-843b-f826045ea5dc} syycum.dll
X
A Trojan used by the rogue anti-spyware program VirusBurst. This Trojan, when installed, will display fake security alerts on your taskbar and install ... Read More
{6211D3F0-B61E-D9E3-2088-F6286B0D22AC} setup40.exe
X
A variant of the Bifrose Trojan.
{63E16148-3A71-99D9-2524-FE3574645AFF} ssopure.exe
X
Added by the Troj/DwnLdr-GTH Trojan.
{66186F05-BBBB-4a39-864F-72D84615C679} sockins32.dll
X
Added by the W32/Dwnldr-HCP worm. Do not delete C:\Windows\System32\rundll32.exe as it is a legitimate Microsoft file. ... Read More
{6E44887F-5214-41F2-AB46-4728735C4CC6} system16.sys
X
Added by the Troj/QQPass-AKG password-stealing Trojan.
{741CC5B5-242A-F54F-7F3E-E0B90901289B} system36.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{758F9C4A-0FD5-A53B-9CCC-0D9064A932D4} scan.exe
X
Added by the Generic.tfr!i!1E6F694​EB997 Trojan.
{78847374-8323-FADC-B443-4732ABCD3787} sidjgzy.dll
X
Added by the PWS-OnlineGames.i password-stealing Trojan.
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3} sxjecknqhu.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3} syssfzvakqg.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3} syspyukrazv.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{7DD4A7AC-A3F1-4495-884A-7947C5B89108} sysahbecjh.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{7F4D1081-25FD-44F5-99C6-FF271CFB7EC2} SysInfo1.dll
X
Added by the Troj/QQSpy-Gen Trojan.
{89aef01d-d237-49c7-84dc-4e1904c1fd31} sbnudh.dll
X
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
{93D836F9-E761-F95D-E69D-A6FB1F9718F7} system32:netde.exe
X
Added by the Backdoor.Darkmoon.F backdoor. Backdoor.Darkmoon.F is a Trojan horse that opens a back door on TCP port 1328 on the compromised computer. ... Read More
{9754B85A-3B34-4969-BE1F-CD03227E9470} sysatjsicj.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{9754B85A-3B34-4969-BE1F-CD03227E9470} syszweuas.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{9915CFD1-6B7D-4AC5-ABAC-136924579E91} system.sys
X
Added by the Troj/QQPass-AIU Trojan.
{9B71D88C-C598-4935-C5D1-43AA4DB90836} svccv.exe
X
Added by the Troj/Bifrose-UJ backdoor Trojan.
{9B71D88C-C598-4935-C5D1-43AA4DB90836} sex.exe
X
Added by the Troj/Agent-GLW Trojan.
{9B71D88C-C598-4935-C5D1-43AA4DB90836} system32dll.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{A2D9D3F0-8C2A-2A1D-A376-1BECFB10AB72} svchosts.dll
X
Added by the Trojan.Spaxe Trojan. This infection creates balloon messages that state:


"Your computer is infected!
Windows ... Read More
{A4C928E8-0ABA-4fd3-83DF-23BE54ADF9A4} sxnwhbvrzc.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{A4C928E8-0ABA-4fd3-83DF-23BE54ADF9A4} sysqrnxstju.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{AC1B4DA2-12FA-31F2-1A7D-CD2B14E6AD4E} suprox.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
{ADA6B0AC-44C2-012B-5A71-C5F8C784FBD6} system32:LoL93993.exe
X
Identified as a variant of the Backdoor.Win32.Poison.k malware. This infection is a Alternate Data Stream file which requires certain tools to remove ... Read More
{B081DB1F-4EE6-4021-9DD4-8B300F0D636D} syssngbeh.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{B998557E-B478-4547-888B-5666C6BEB1DB} sharex32.dll
X
Added by the Troj/Asmado-C downloading Trojan.
{BAAA759D-56F0-428c-B8DA-827EA3B08C2C} sysawechod.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{C5A16DB0-0E3E-68C4-1ABB-636411036D53} scanfl.exe
X
Added by the Troj/PWS-BDE password-stealing Trojan.
{CEB942AC-3873-FEDA-738C-0E08174D6042} SysUpdate.exe
X
Added by the Troj/Bckdr-QPF backdoor Trojan.
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748} search.dll
X
Added by the Troj/OnLineG-C password-stealing Trojan.
{cfda6372-043c-48d2-ba3c-7bfe1cf71854} surzzh.dll
X
Zlob Trojan that installs VirusProtectPro 3.4 and shows fake security alerts from your Windows taskbar. ... Read More
{DD651081-A909-45ad-BD71-2335B0ADE043} sysabmpmfr.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{DD651081-A909-45ad-BD71-2335B0ADE043} sysnxcphmgy.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{DD651081-A909-45ad-BD71-2335B0ADE043} sysutrnez.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{E2CA7CD1-1AD9-F1C4-3D2A-DC1A33E7AF9D} stickrep.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{E4785213-3EFE-4c26-A9B4-332440E31F6F} sysrxmfdksp.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{E996F10E-FCAF-41CC-94C8-B8BF7D6F80AC} sharec32.dll
X
Added by the Troj/Lineag-BAA password-stealing Trojan for the online game Lineage. ... Read More
{EA26CE12-DE64-A1C5-9A4F-FC1A64E6AC2E} sivudro.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
{F758F78B-0885-490e-AA3C-4A38D28B0240} sxpjbwvahn.exe
X
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
{H8I22RB03-AB-B70-7-11d2-9CBD-0O00FS7AH6-9E2121BHJLK} shit.vbs
X
Added by the W32/Autorun-XV removable media worm.
®Windows Update svchosts.exe
X
Added by the FRUCTA TROJAN!


> Status Key
Each entry in the database will have a Status assigned to it. The key to this status is the following:
  • Y - This status flag means that this entry should be left alone and be allowed to run as if it is unchecked it may break the functionality or use of a particular program.
  • N - This status flag means it is unnecessary to run this program automatically when Windows starts as you can run it manually when necessary.
  • U - This status flag means it is up to you whether or not you feel this program needs to run automatically.
  • X - This status flags means the item should definitely not start up automatically. Items that have this flag are generally malware such as viruses, trojans, hijackers, spyware but could also be programs that are not desirable to run on your computer.
  • ? - This status flag means the status of this entry is unknown at this time and more research is necessary.
If you require assistance in removing one of these files you can ask us in the Startup Database Forum.

> Disclaimer
It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. BleepingComputer.com will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides


Portions of this database © Paul Collins
© 2003-2012 All Rights Reserved Bleeping Computer LLC.
PGT: 0.79212 Queries: 4