|
Name
|
Filename
|
Status
|
Description
|
|
|
Setup.exe
|
X
|
Added by the Trojan.Win32.VB.boo Trojan.
|
|
!SASWinLogon
|
SASWINLO.dll
|
Y
|
Related to the SuperAntiSpyware anti-spyware program.
|
|
(357AA41A-B7A8-4632-A27D-5B980B25CF43)
|
svchost.exe
|
X
|
Added by the Troj/Small-AQ trojan!
|
|
(378FCBD5-BE2B-AFC9-0401-111111111111)
|
svcbost.exe
|
X
|
Added by the Troj/Keylog-ZZ keylogger Trojan.
|
|
(Default)
|
Shania.vbs
|
X
|
Added by the SHANIA TROJAN!
|
|
(default)
|
SYSDLL32.exe
|
X
|
Added by the Backdoor.G_Door backdoor.
|
|
(Default)
|
Systrsy.exe
|
X
|
Added by the Trojan.Cdtray Trojan which causes your cd tray to open and close repeatedly. ... Read More
|
|
(default)
|
syspol.exe
|
X
|
Added by the Troj/Dremn-B keylogging Trojan.
|
|
(Default)
|
SYSEXPLR.EXE
|
X
|
Added by the Troj/GDoor-R backdoor Trojan.
|
|
(default)
|
systemxz.exe
|
X
|
Added by the Troj/Hupigo-SH Trojan.
|
|
(default)
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
(Default)
|
SystemMonitor.exe
|
X
|
Added by the W32.Nujama.B worm. W32.Nujama.B is a worm that spreads through mapped drives and shared folders, and lowers security settings on the comp ... Read More
|
|
(L4r1$$4) (4nt1) (V1ruz)
|
SP00Lsv32.pif
|
X
|
Added by the W32/Assiral-B WORM! This worm will terminate processes and also install/run a file C:\WINDOWS\WinVBS.vbs to restrict user activity. ... Read More
|
|
(random filename)
|
slk8x2peu.exe
|
X
|
Added by QuickLinks_Process ADAWARE! ... Read More
|
|
*ntfsqueuedns.exe
|
ntfsqueuedns.exe
|
X
|
Added by the Troj/FakeAV-EMN Trojan.
|
|
*security center
|
secctr.exe
|
X
|
Added by the SDBOT.BRO WORM! ... Read More
|
|
*StateMgr
|
statemgr.exe
|
Y
|
Windows ME default for System Restore. Do NOT disable!
|
|
*streamresamd.exe
|
streamresamd.exe
|
X
|
Added by the Troj/FakeAV-EMM Trojan.
|
|
.mscsbl
|
SVCHOST.EXE
|
X
|
Added by the Troj/Borobot-A infection! It is found in either the Windows system folder or the Application DataMicrosoftInternet Explorer folder. ... Read More
|
|
.mscsbl
|
svhost.exe
|
X
|
Added by the BACKDOOR-CMQ TROJAN!
|
|
.NET config
|
sysmon32.exe
|
?
|
??
|
|
.NET Framework Service
|
svchost.exe
|
X
|
Added by the ShopNav adware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
.nvsvc
|
smss.exe
|
X
|
Added by the TROJ_HORST.GF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
.nvsvcb
|
smssb.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
.Prog
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
1
|
Srvpl0.dll
|
X
|
Added by the W32.Wowlook@mm worm. W32.Wowlook@mm is a mass-mailing worm that spreads by sending itself as an attachment to email. The worm also steals ... Read More
|
|
1
|
smcmcr.exe
|
X
|
Added by the Troj/Bckdr-QIB backdoor Trojan.
|
|
1
|
system32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
1-sukarno
|
sukarno.exe
|
X
|
Added by the W32/Brontok-CR worm.
|
|
100
|
svchost.exe
|
X
|
Added by the Troj/Gampass-O Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
1234klsjdc uiar924c af
|
sxgnsvuxct.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
1234klsjdc uiar924c af
|
sysvtypkbjx.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
180clientstubinstall
|
stubinstaller4528.exe
|
X
|
180Solutions/N-Case adware related ... Read More
|
|
1Srv32
|
SpyAgent4.exe
|
U
|
SpyTech SpyAgent monitoring software. "Spy software that allows you to monitor EVERYTHING users do on your PC." ... Read More
|
|
1Win32Cfg
|
SpyBuddy.exe
|
U
|
SpyBuddy monitoring software
|
|
2-suharto
|
suharto.exe
|
X
|
Added by the W32/Brontok-CR worm.
|
|
27
|
slsorve.exe
|
X
|
Added by the Troj/Slsorve-A trojan. Using it's own own SMTP engine it sends email to a remote address and will terminate anti-virus related processes ... Read More
|
|
2kowmeuswvw3
|
security.exe
|
X
|
Added by the AntiVirus Solution 2010 rogue anti-spyware program.
|
|
32bit system bus driver
|
sysbus32.sys
|
X
|
Added by the Troj/Dropper-EC dropper Trojan.
|
|
333
|
svchost.exe
|
X
|
Added by the Troj/JD-A password-stealing Trojan.
|
|
5T19I3B27A
|
svchost.exe
|
X
|
Added by the Troj/Small-EKA Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
6-susilo b
|
sby.exe
|
X
|
Added by the W32/Brontok-CR worm.
|
|
666
|
Ska.exe
|
X
|
Added by the PIPES TROJAN!
|
|
7X29C2X78Y
|
syss_.exe
|
X
|
Added by the Troj/Agent-GMS Trojan.
|
|
<Date the program was installed>
|
SSS.sys
|
X
|
Added by the XPAntiVirus rogue security software.
|
|
<not used>
|
Spoolsv.exe
|
X
|
Added by the CIADOOR.B TROJAN!
|
|
<not used>
|
spooll.exe
|
X
|
Added by the Troj/Banker-DIO Internet banking Trojan. When selected banking websites are accessed, the Trojan will monitor user activity and send the ... Read More
|
|
<not used>
|
sisbmsxb.dll
|
X
|
Added by the W32/Stration-H mass-mailing worm and backdoor Trojan. W32/Stration-H spreads by sending emails with itself as an attachment to email addr ... Read More
|
|
<not used>
|
svichosst.exe
|
X
|
Added by the W32/Sohana-J worm. W32/Sohana-J may attempt to spread via instant messaging clients. ... Read More
|
|
<not used>
|
setup_.exe
|
X
|
Added by the Troj/KGSpy-A key logging and information-stealing Trojan.
|
|
<not used>
|
sbs.exe
|
X
|
Added by the Troj/Hacksaw-A Trojan. Troj/Hacksaw-A infects a system when a U3 USB drive loaded with it is connected to to a compatible system. ... Read More
|
|
<not used>
|
systeminit.exe
|
X
|
Added by the W32.Solow worm. W32.Solow is a worm that attempts to spread via removable storage drives and copies itself as exe files with various name ... Read More
|
|
<not used>
|
systems.dll
|
X
|
Added by the Troj/WLDrop-A Trojan.
|
|
<not used>
|
services.scr
|
X
|
Added by the W32.Odelud worm. W32.Odelud is a worm that spreads via network shares and removable media and may infect executable files. ... Read More
|
|
<not used>
|
sitta.exe
|
X
|
Added by the W32/Hansah-A worm.
|
|
<not used>
|
SoDAHK.DLL
|
X
|
Added by the Adware.Sogou adware.
|
|
<not used>
|
shchostv.exe
|
X
|
Unidentified malware.
|
|
<not used>
|
spoolsrvc.exe
|
X
|
Unidentified malware.
|
|
<not used>
|
svcvhost.exe
|
X
|
Unidentified malware.
|
|
<not used>
|
svchctrl.exe
|
X
|
Unidentified malware.
|
|
<not used>
|
systems.txt
|
X
|
Related to SmitFraud infections.
|
|
<not used>
|
smsqolqo.dll
|
X
|
Added by the Troj/DwnLdr-GXT Trojan.
|
|
<not used>
|
stdole32.dat
|
X
|
Trojan bundled with SmitFraud infections.
|
|
<not used>
|
sulimo.dat
|
X
|
Related to the SmitFraud infection.
|
|
<not used>
|
skuns.dat
|
X
|
Fakealert Trojan which shows fake security alerts on your computer.
|
|
<not used>
|
salo.exe
|
X
|
Added by the W32/Mabezat-A virus dropper.
|
|
<not used>
|
SVCHOTS.EXE
|
X
|
Added by the W32.HLLP.Arcer virus. W32.HLLP.Arcer is a virus that infects executable files and attempts to steal sensitive information from the compro ... Read More
|
|
<not used>
|
SysWln74_3.dll
|
X
|
Added by the PSW.OnlineGames.NNM password-stealing Trojan.
|
|
<not used>
|
swrcfzc.dll
|
X
|
Added by the PWS-OnlineGames.q password-stealing Trojan.
|
|
<not used>
|
smsikfik.dll
|
X
|
Added by the Trojan.Goldun Trojan. Trojan.Goldun is a hidden process that steals personal information such as usernames and passwords for financial ac ... Read More
|
|
<not used>
|
swggbzc.dll
|
X
|
Added by the PWS-OnlineGames.q.dll password-stealing Trojan.
|
|
<not used>
|
sbwltbxa.exe
|
X
|
Identified as a variant of the Troj/Agent-GRP variant malware.
|
|
<not used>
|
systemio.exe
|
X
|
Added by the W32/Autorun-DH removable media worm.
|
|
<not used>
|
sys.vbs
|
X
|
Added by the W32/Autorun-EL removable media worm. Please note that C:\Wndows\System32\wscript.exe is a legitimate file and should not be deleted. ... Read More
|
|
<not used>
|
soundmgr.exe
|
X
|
Identified as a variant of the TR/Proxy.Gen malware.
|
|
<not used>
|
SecureGuard.vbs
|
X
|
Added by the VBS/Autorun-JP removable media worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate program. ... Read More
|
|
<not used>
|
sertail.exe
|
X
|
Added by the Troj/Inject-DD Trojan.
|
|
<not used>
|
Servicess.exe
|
X
|
Identified as a variant of the Worm.IM.Sohanad worm.
|
|
<not used>
|
synceng.exe
|
X
|
Added by the BKDR_AGENT.VBI backdoor.
|
|
<not used>
|
shmedia.exe
|
X
|
Added by the BKDR_AGENT.VBI backdoor.
|
|
<not used>
|
sdra64.exe
|
X
|
Identified by Sophos as a variant of the Mal/Zbot-I malware.
|
|
<not used>
|
svchostw.exe
|
X
|
Identified by Kaspersky as a variant of the Heur.Trojan.Generic malware.
|
|
<not used>
|
sdra73.exe
|
X
|
Added by the Troj/Zbot-PD Trojan.
|
|
<not used>
|
Spenser.exe
|
X
|
Added by the W32/SillyFDC-EV removable media worm.
|
|
<Not used>
|
suzisuha.dll
|
X
|
Vundo file with random names, means of starting up, and various other means of appearing in the system. ... Read More
|
|
<not used>
|
SE2010.exe
|
X
|
Added by the Security Essentials 2011 rogue anti-spyware program.
|
|
<not used>
|
sysutil.exe
|
X
|
Added by the XLG Security Center rogue anti-spyware program.
|
|
<not used>
|
sysguard.exe
|
X
|
Added by the Privacy Commander rogue anti-spyware program.
|
|
<not used>
|
syssetup.exe
|
X
|
Added by the W32/Autorun-BOF removable media worm.
|
|
<random characters>
|
securewinload32x.exe
|
X
|
Added by the Troj/OptixP-N worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
<Random CLSID>
|
ssvchost.com
|
X
|
Added by the Troj/BluEye-D backdoor Trojan.
|
|
<Random CLSID>
|
sygate.exe
|
N
|
Added by the W32.Focelto.A worm. W32.Focelto.A is a worm that spreads through Microsoft instant messaging clients and uses Rootkit techniques. It open ... Read More
|
|
<random name>
|
Servere.exe
|
X
|
Added by the Troj/LegMir-AQM password-stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
<random name>
|
systs.exe
|
X
|
Added by the Troj/Agent-GDC Trojan.
|
|
<Random Names>
|
suzisuha.dll
|
X
|
Vundo file with random names, means of starting up, and various other means of appearing in the system. Please note that the CSLID also varies. ... Read More
|
|
<Random Names>
|
suzisuha.dll
|
X
|
Vundo file with random names, means of starting up, and various other means of appearing in the system. Please note that the CSLID also varies. ... Read More
|
|
<random>
|
svshost.exe
|
X
|
Added by the W32/Kelvir-AX instant messaging worm and backdoor Trojan.
|
|
<random>
|
svhostu.exe
|
X
|
Added by the Cloud Protection rogue anti-spyware program.
|
|
<unknown>
|
socket573.sys
|
X
|
Added by a variant of Goldun rootkit.
|
|
<unknown>
|
scsipsrvc.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
<unknown>
|
sbsrtyus.sys
|
X
|
Added by the Trojan.Mdropper.S Trojan.
Trojan.Mdropper.S is a Trojan horse program that exploits Microsoft Word Malformed Object Pointe ... Read More
|
|
<unknown>
|
satad645.sys
|
X
|
Added by a variant of the Goldun.Fam rootkit.
|
|
<unknown>
|
sysbl.exe
|
X
|
Added by the Troj/Dload-Y Trojan.
|
|
AAMSFree702
|
sys.exe
|
X
|
Identified as BackDoor-CPC or Mal/OptixPro.
|
|
abss
|
system.exe
|
U
|
Added by the Spyware.ABSystemSpy surveillance software. If this program was not installed yourself you should uninstall it. ... Read More
|
|
abylonsoft Activate modules
|
SAPDrive.EXE
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
Ac97Sound
|
snddrv.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
|
|
Acronis Scheduler2 Service
|
schedhlp.exe
|
U
|
Part of Acronis True Image - backup software. Co-operates with the "schedul2.exe" servuce to perform backup/restore tasks correctly. Required if you w ... Read More
|
|
Acronis Scheduler2 Service
|
schedhlp.exe
|
U
|
Scheduler for backup jobs created with the Seagate's DiscWizard software that comes bundled with certain Seagate hard drives. ... Read More
|
|
Acronis Scheduler_Helper
|
schedhlp.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
ActiveDesktop
|
systray32.exe
|
X
|
Added by the DABOOM WORM!
|
|
activexupdate
|
svcss.exe
|
X
|
Added by a variant of the DEDLER.C TROJAN! ... Read More
|
|
Adline Ssystem
|
sichost.exe
|
X
|
Added by the Trojan-Dropper.Win32.Small.hy Trojan. This Trojan is designed to install and launch other programs on the victim machine without the user ... Read More
|
|
Administrator
|
svchost.scr
|
X
|
Added by the Backdoor.Novacal backdoor.
|
|
AdminSoft
|
sysfile.vbs
|
X
|
Added by the VBS/Stargrub-A WORM, by way of an email attachment. It will attempt to add a user name, change proxies and copy additional files to hard ... Read More
|
|
Adobe
|
sysconfig.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Adobe
|
sysbat32.exe
|
X
|
Added by the LOWZONES.T TROJAN!
|
|
Adobe Acrobat Speed Launcher
|
SC_Acrobat.exe
|
N
|
Added by Adobe Acrobat Reader Standard 7.0, and possibly other versions. This program preloads certain aspects of the program so that it will launch q ... Read More
|
|
Adobe Plugins Reader
|
svshost.exe
|
X
|
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
|
|
Adobe SwitchBoard
|
SwitchBoard.exe
|
Y
|
Adobe SwitchBoard is a process that facilitates communication between Bridge CS5 and the MiniBridge panel in Photoshop CS5 or InDesign CS5. This shoul ... Read More
|
|
Adobe Update Service
|
svchost.exe
|
X
|
Added by the Wireshark Antivirus rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe ... Read More
|
|
AdobeReaderPro
|
service.exe
|
X
|
Added by the W32/Rbot-BCA worm and IRC backdoor.
|
|
AdobeReaderPro
|
spoolss.exe
|
X
|
Added by the W32/Sdbot-AKZ worm and IRC backdoor.
|
|
AdobeReaderPro
|
subset.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
AdobeReaderPros
|
sysmsn.exe
|
X
|
Added by the W32/Rbot-BGH worm and IRC backdoor.
|
|
AdRotator.Application
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
adsblocker
|
stopAds.exe
|
X
|
Reported as Win32/Dialer.DW by NOD32 ... Read More
|
|
adslsystemtray
|
SystemtrayV100B.exe
|
?
|
Apparently Annex A ADSL modem related - what does it do and is it required? ... Read More
|
|
adupdater
|
sysupudt.exe
|
X
|
Unidentified adware downloader/updater
|
|
Advanced DHTML Enable
|
sooo2.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan-Proxy.Win32.Agent.mf Trojan. ... Read More
|
|
Advanced Graphics Driver
|
smvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
aldoa
|
swqzdtj.dll
|
X
|
Added by a Zlob Trojan which installs AntiVirgear 3.7 and display fake security alerts in your Windows taskbar. ... Read More
|
|
ALG32
|
SPOOLSVU.EXE
|
X
|
The Troj/Agent-CJ TROJAN drops this file, alg32.exe and htass.dll into the Windows folder. ... Read More
|
|
Alive SYstem
|
scchost.exe
|
X
|
Added by the Troj/Tofdrop-B dropper Trojan.
|
|
alive system
|
scchostc.exe
|
X
|
Added by the Troj/Tofdrop-B ... Read More
|
|
All Aboard Status
|
stswin.exe
|
U
|
|
|
alligt
|
severe.exe
|
X
|
Added by the W32.Slurk.A worm. W32.Slurk.A is a worm that copies itself to all removable and shared drives, and drops other threats on to the comprom ... Read More
|
|
alpha
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
aluria security center
|
SecurityCenter.exe
|
N
|
Aluria Software's spyware removal tool - we can't really recommend this product as Aluria have recently partnered with WhenU, the well known adware co ... Read More
|
|
Amie Release V6.9D
|
services.exe
|
X
|
Added by the Troj/VB-EAN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
amircivil
|
svchot.exe
|
X
|
Added by the W32.Amirecivel worm.
|
|
ANONYMIZER_SPYWAREKILLER
|
SpyWareKiller.exe
|
U
|
|
|
Anthrax
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
Anti Spam Service
|
spamsvc.exe
|
X
|
Added by the W32/Mytob-BK worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
AntiClicker
|
SVCHST32.EXE
|
X
|
Added by the BackDoor-CBH backdoor.
|
|
AntiMalwareSuite Shell Hook
|
shellext.dll
|
X
|
Added by the AntiMalwareSuite rogue anti-spyware program.
|
|
AntiMalwareSuite Shell Hook
|
shellext.dll
|
X
|
Added by the PCAntiMalware rogue anti-spyware program.
|
|
AntiPol
|
svchast.exe
|
X
|
Added by the Windows Police Pro rogue anti-spyware program.
|
|
AntipyProex
|
svchasts.exe
|
X
|
Added by the Windows Police Pro rouge anti-spyware program.
|
|
AntipyPro_12
|
svchast.exe
|
X
|
Added by the Windows Antivirus Pro rogue anti-spyware program.
|
|
Antivir
|
svchst.exe
|
X
|
Added by the Troj/Ragruk-A backdoor Trojan.
|
|
AntiVir
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
AntiVir
|
smss.exe
|
X
|
Added by the Troj/DwnLdr-GWE Trojan downloader. This infection should not be confused with the legitmate C:\Windows\system32\smss.exe file. ... Read More
|
|
AntiVir PersonalEdition Classic Scheduler
|
sched.exe
|
Y
|
Service that manages the scheduled virus scans for the Avira AntiVir PersonalEdition Classic antivirus program. ... Read More
|
|
Antivirus
|
sav.exe
|
X
|
Added by the System Antivirus 2008 rogue anti-spyware program.
|
|
Antivirus
|
SPP.exe
|
X
|
Added by the Spyware Preventer rogue anti-spyware program.
|
|
AntiVirus AntiSpyware 2011 Security
|
securitymanager.exe
|
X
|
Added by the Antivirus AntiSpyware 2011 rogue anti-spyware program.
|
|
AntiVirusProMFCT
|
StartApp.exe
|
X
|
Added by the Antivirus Pro rogue anti-spyware program.
|
|
aol software
|
smss.exe
|
X
|
Added by the W32/Tilebot-FM worm and IRC backdoor.
|
|
AOLAspSunset2
|
sunsetAsp2.exe
|
?
|
|
|
AolSoftware
|
spoolsv.exe
|
X
|
Added by the W32/Sdbot-BQY worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\spoolsv ... Read More
|
|
AolSoftware
|
services.exe
|
X
|
Added by the W32/Tilebot-FA worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\system32\servic ... Read More
|
|
aposiopetic
|
shlahsd.dll
|
X
|
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
|
|
Application In System
|
Snxmsh.exe
|
X
|
Added by the Troj/Agent-LNV Trojan.
|
|
Application Management Browser
|
smss.exe
|
X
|
Added by the Troj/Comhush-A Trojan. This infection should not be confused with the legitimate smss.exe found in the C:\Windows\System32 (%System%)fol ... Read More
|
|
applicationgateway
|
svchost.exe
|
U
|
Added by the Spyware.PCProwler surveillance software. If this program was not installed by yourself, it should be uninstalled immediately. This progra ... Read More
|
|
ApplicationProtocolRun
|
smsbvl32.exe
|
X
|
Added by the Troj/IRCBot-CX Trojan.
|
|
APVXDWIN
|
syslogz.bat
|
X
|
Added by the Troj/DelFile-V Trojan.
|
|
apyginapygin
|
simenu.exe
|
X
|
Added by the SDBOT.BTR WORM! ... Read More
|
|
armillifer
|
siiyal.dll
|
X
|
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
|
|
armonVirusAnti
|
smss.exe
|
X
|
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
asd
|
ssm.com.cn.exe
|
X
|
Added by the Troj/Bckdr-QKC backdoor Trojan.
|
|
ashcap
|
servirsess.exe
|
X
|
Added by the Spyware.SpySure Spyware. Spyware.SpySure is a spyware program that may steal sensitive information from the computer. ... Read More
|
|
ASocksrv
|
SocksA.exe
|
X
|
Added by the Troj/QQRob-AAT Trojan.
|
|
ASP.NET State Service
|
servicos..exe
|
X
|
Added by the Troj/Dadobra-I downloader Trojan.
|
|
ATI Video Driver Controls
|
sys.exe
|
X
|
Added by the W32/Sdbot-DDS worm and IRC backdoor.
|
|
ATTBroadbandUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
AUDIO
|
SOUND.exe
|
X
|
Added by the Dial/Ployb-A premium porn dialer.
|
|
Audio Device Manager
|
sfhgj.exe
|
X
|
Added by the W32/IRCBot-ZA worm and IRC backdoor.
|
|
Audio Device Manager
|
srn32.exe
|
X
|
Added by the W32.Spybot.Worm worm and IRC backdoor.
|
|
Audiodev
|
SVCHOST.exe
|
U
|
Added by the Spyware.KeySpyware surveillance software. This program should not be confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
|
|
aupd
|
symcsvc.exe
|
X
|
Added by the Troj/Orse-E Trojan.
|
|
aupd
|
sysvcs.exe
|
X
|
Added by the ABWIZ.C TROJAN! ... Read More
|
|
aupd
|
sywsvcs.exe
|
X
|
Added by the Troj/Orse-L Trojan.
|
|
aupd
|
symsvcsa.exe
|
X
|
Added by the Troj/Orse-Q Trojan.
|
|
Aureal A3D Interactive Audio
|
sa3dsrv.exe
|
Y
|
For Aureal based 3D soundcards. A3D sound features won't work with this disabled ... Read More
|
|
Auther Service Manager
|
svshost.exe
|
X
|
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
|
|
Auto File System Conversion Utility
|
scricon.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.yx family of worms and IRC backdoor Trojans. ... Read More
|
|
Auto Update
|
svchost.exe
|
X
|
Added by the Troj/DumarDl-A trojan.
|
|
Auto Updates
|
svchost.exe
|
X
|
Added by the Troj/Cheuko-A trojan.
|
|
AutoAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32/Punya-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
autoload
|
svchost.exe
|
X
|
Related to SmitFraud infections. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
autoload
|
spool.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent variant malware.
|
|
autoload
|
spooll.exe
|
X
|
Identified as a variant of the Trojan-Dropper.Agent.snu malware.
|
|
AutomatedSurfer
|
SurferClient.exe
|
?
|
According to the information found here, this program is supposed to simulate a web surfer that can click on links within a hidden IE window.
< ... Read More
|
|
Automatic Microsoft Windows Updater
|
suchost.exe
|
X
|
Added by the RBOT-EQ WORM!
|
|
autoMe
|
solution.vbs
|
X
|
Added by the VBS.Sasan worm.
|
|
autoMe
|
samok.vbs
|
X
|
Added by the VBS/Samok-A worm. Please note that C:\Windows\System32\wscript.exe is a legitimate program and should not be deleted. ... Read More
|
|
autorun
|
svchost.exe
|
X
|
Related to SmitFraud infections. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
autorun
|
sxs.exe
|
X
|
Added by the W32/SmallVBS-A worm.
|
|
autorundemo
|
svchost.exe
|
X
|
Added by the Troj/Agent-FPX Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
AutoUpdate
|
smss.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
|
|
AutoUpdate32
|
services.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.WinSpy.aa malware.
|
|
autoupdater
|
sox.exe
|
X
|
Added by the Troj/LdPinch-DH password-stealing Trojan.
|
|
avast111111
|
smss55555.exe
|
X
|
Added by the Troj/Lmir-GH information stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
AvG
|
svchost323.exe
|
X
|
Added by the W32/Rbot-ZA WORM/backdoor!
|
|
Avira Premium Security Suite Scheduler
|
sched.exe
|
Y
|
This service manages the scheduled scans for the Avira Premium Security Suite antivirus program. ... Read More
|
|
avnort
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
avptask
|
svch0st.exe
|
X
|
Added by the Troj/Nofere-G Trojan. Troj/Nofere-G contains functionality to communicate with a remote server using HTTP, execute downloaded files, kill ... Read More
|
|
avschedscan
|
SCHSC9X.EXE
|
Y
|
Command antivirus related ... Read More
|
|
AvSer
|
sysup.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
AvSer
|
svosm.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
AV_Update_Client
|
svhost.exe
|
X
|
Added by the TROJ_ISPY.B information-stealing Trojan.
|
|
bab
|
svchst32.exe
|
X
|
|
|
babblement
|
sjrggq.dll
|
X
|
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
|
|
Background Intelligent Transfer Service mircosoft 32
|
systemza32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Backup One
|
smbguard.exe
|
X
|
Added by the W32/Sdbot-MI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
bal
|
SYSMONMS.EXE
|
X
|
Part of the SmitFraud family of infections.
|
|
Bart Station
|
station.sbrt
|
?
|
Related to PeoplePC ISP. May be a dialler for dial-up accounts?
|
|
Basla
|
start.exe
|
X
|
Added by a unclassified Trojan.
|
|
Bat
|
secure2.bat
|
X
|
Added by the ZCREW.C TROJAN!
|
|
Battery Monitor
|
shlapiw32.dll
|
X
|
Added by the Troj/Delf-BPC Trojan.
|
|
bbc news alerts
|
skinkers.exe
|
U
|
BBC News Desktop Alerts service; see here - The BBC News desktop alert and breaking news e-mail services let you find out about all the latest news a ... Read More
|
|
Bcvsrv32
|
system2.exe
|
X
|
Added by the W32/Agobot-PU IRC backdoor Trojan/WORM! Found in the WIndows system folder. ... Read More
|
|
Beawver
|
saqevre.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
beta
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
Black
|
Sword.exe
|
X
|
Added by the WORM_MYTOB.QJ mass-mailing worm and IRC backdoor.
|
|
Black Hole Professional Version
|
svch0st.exe
|
X
|
Identified as Backdoor.Win32.Ciadoor.123.d.
|
|
Blacky
|
Swords.exe
|
X
|
Added by the W32/Kidala-B mass-mailing worm and IRC backdoor.
|
|
blah service
|
smnp.exe
|
X
|
Added by the RBOT.IZ WORM!
|
|
blah service
|
socksxt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
svchosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
servoxt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
sysinfo.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
syscontrol.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Bluetooth
|
sample.exe
|
X
|
Added by the Troj/Agent-OSH Trojan.
|
|
boler.exe
|
syser.exe
|
X
|
Added by the W32/Rbot-AYS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
BookMarkSink
|
syncit.exe
|
N
|
Bookmark synchronization utility
|
|
BookMarkSync
|
syncit.exe
|
N
|
Bookmark synchronization utility
|
|
BookMarkSync2It
|
sync2it.exe
|
N
|
Sync2IT BookMarkSync - "real-time automatic synchronization service that allows you to access your bookmarks, favorites and favorite files from any co ... Read More
|
|
BoolTern
|
svch0st.exe
|
X
|
Added by the W32/Tilebot-U worm and IRC backdoor.
|
|
BootClean
|
smartdrv.exe
|
X
|
Added by the W32/Lurka-A virus.
|
|
boot_reg
|
svchot.exe
|
X
|
Added by Troj/Bancban-BQ, a TROJAN. It is found in the Windows system folder.
|
|
bot loader
|
svchostt.exe
|
X
|
Added by the W32.GAOBOT.ALV WORM! ... Read More
|
|
Bredbandsbolaget
|
servicecenter.exe
|
Y
|
Connectivity software for the Bredbands Bolaget ISP.
|
|
Bron-Spizaetus
|
sempalong.exe
|
X
|
Added by the W32/Brontok-E worm.
|
|
browser
|
s_menu.exe
|
X
|
Added by the WIN32.TACTSLAY.C TROJAN!
|
|
BrO_AcT
|
system.exe
|
X
|
Added by the W32/SillyFDC-J worm.
|
|
BugsDestroyer
|
SysRep.exe
|
X
|
Added by the BugsDestroyer rogue anti-spyware program.
|
|
BuildLab
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
c
|
svchost.scr
|
X
|
Added by the Troj/Bancban-BX TROJAN!
|
|
C:\WINDOWS\system32\SetupCmd.exe
|
SetupCmd.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.aww Trojan.
|
|
Call Function System32
|
sddriver.exe
|
X
|
A variant of the W32/Sdbot.KXQ.worm family of worms and IRC backdoor Trojans.
|
|
Card Adapter
|
smss.exe
|
X
|
Added by the Troj/Maran-I Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
CAS2
|
System.exe
|
X
|
Identified as Adware.Win32.CASClient.D.
|
|
CashToolbar
|
svchost.exe
|
X
|
CashToolbar Downloader-MY adware. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
ccAppr
|
svcrhost.exe
|
X
|
Premium rate adult content dialler
|
|
ccAppr
|
svcshost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
ccApps
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
ccRegVfY
|
svcrhost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
ccRegVfY
|
svcshost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
CCWC7s
|
stealth.exe
|
U
|
Moleculesoft Cache, Cookie & Windows Cleaner Ver. 7
|
|
CDriver
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
CentralCrSr
|
SetCrSr.exe
|
X
|
Added by SetCursor. SetCursor is an application that moves the cursor into the middle of the screen after the computer is resumed from being suspended ... Read More
|
|
CertificateRegistration
|
SafeSignCertReg.exe
|
U
|
SafeSign Certificate Registration Utility for Microsoft Crypto applications.
|
|
cFosSpeed System Service
|
spd.exe
|
Y
|
cFos_Software's
Internet acceleration program.
|
|
cftmon
|
sfcmonit.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Agent.erg malware.
|
|
change me please
|
sysdat.exe
|
X
|
Added by the W32/Tilebot-L worm.
|
|
Changed me
|
systemz32.exe
|
X
|
Added by the W32/Tilebot-JD worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. ... Read More
|
|
changeicon
|
SPMSMON.EXE
|
U
|
Card reader related program. Note: May cause problems with My Computer loading at startup. Disabling through MsConfig seems to solve the problem. ... Read More
|
|
cheatmonitor
|
start.exe
|
U
|
Added by the Spyware.CheatMonitor surveillance software. This software should be uninstalled if found on your computer without your permission. ... Read More
|
|
chicot
|
sgntu.dll
|
X
|
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
|
|
chipdrivepinmanager
|
sokscmpn.exe
|
U
|
ChipDrive Smartcard software ... Read More
|
|
chipdrivesmartcardmanager
|
SCMgr.exe
|
U
|
ChipDrive Smartcard software ... Read More
|
|
Ci Servs
|
SysTuwin.exe
|
X
|
Added by the Troj/Agent-NIQ Trojan.
|
|
Cinnabd Prompt32
|
SP00Lsv32.pif
|
X
|
Added by the W32/Assiral-B WORM! This worm will also install and run a file C:\WINDOWS\WinVBS.vbs to restrict user activity and terminate processes. ... Read More
|
|
Classes
|
srv.exe
|
X
|
"Switch" adult content dialler
|
|
Classes
|
srv2.exe
|
X
|
"Switch" adult content dialler
|
|
Clean up
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe and C:\Windows\System32\dllcache\cleanup.bat s ... Read More
|
|
CleanPCTool
|
SysRep.exe
|
X
|
Added by the CleanPCTool rogue software.
|
|
Cleanup
|
svchost.exe
|
X
|
Added by the Troj/Agent-JRR Trojan. This should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Client Debug Manager
|
spoolvc.exe
|
X
|
Added by the W32/Sdbot-DCX worm and IRC backdoor.
|
|
Client Disk Manager
|
symon.exe
|
X
|
Added by the W32/Tilebot-IN worm and IRC backdoor. W32/Tilebot-IN spreads to other network computers by exploiting common buffer overflow vulnerabilit ... Read More
|
|
client server runtime process
|
smmss.exe
|
X
|
Backdoor TROJAN!, possible W32/Sdbot-gen ... Read More
|
|
Cliente
|
system.exe
|
X
|
Added by the W32/Autorun-GS removable media worm.
|
|
ClientServerRuntimeProcess
|
smss.exe
|
X
|
Added by the Troj/Sufia-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
ClockSync
|
Sync.exe
|
X
|
ClockSynck - synchronizes your system clock with an internet time server. It's by WhenU, the makers of the Save Now spyware, and they're usually seen ... Read More
|
|
CLSID
|
sed.exe
|
X
|
Adult content dialler
|
|
CM-SmWizard
|
SmWizard.exe
|
?
|
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
|
|
cmss
|
system.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
cof.updit
|
Seurit.exe
|
X
|
Identified as a Trojan Downloader.
|
|
Coldlife -icmp
|
Systray.exe
|
X
|
Added by the FLOOD.AV TROJAN! Note - this is not the legitimate SysTray.exe
|
|
COM+ Messages
|
svchosts.exe
|
X
|
Unknown malware.
|
|
COM+ Network AppService
|
svchost.exe
|
X
|
Added by the Troj/GrayBrd-CU backdoor Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
|
|
COM++ System
|
suchost.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
COM++ System
|
svchost.exe...
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
COMDRV32
|
svdhost.exe
|
U
|
Orvell Monitoring 2003 - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how ... Read More
|
|
Command
|
system.exe
|
X
|
Added by the GATECRASH.A or GATECRASH.B TROJANS!
|
|
command
|
shell12.exe
|
X
|
Added by the Backdoor.Ghoice.12 backdoor. This infections listens on TCP port 1001. ... Read More
|
|
Command Lsass Services
|
svshost.exe
|
X
|
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
|
|
Compaq Computer Corp SCCenter Module
|
SCCENTER.EXE
|
N
|
For Compaq PC's. Part of Backweb
|
|
Compaq Knowledge Center
|
silent.exe&matcli.exe
|
U
|
"matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, sta ... Read More
|
|
Compaq Networks
|
svchost.exe
|
X
|
Added by the Backdoor.XTS.B backdoor. Note: This is not the legitimate svchost.exe found in the Windows system32 directory. ... Read More
|
|
Compaq Service Drivers
|
systeminfos.exe
|
X
|
Added by the W32/Sdbot-XC WORM/IRC backdoor trojan!
|
|
Compaq Service Drivers
|
sxrose.exe
|
X
|
Added by the W32/Sdbot-AXP worm and IRC backdoor.
|
|
Compaq Sound Drivers For WINDOWS
|
sounddr.exe
|
X
|
Added by the W32/Sdbot-XG WORM/IRC backdoor trojan!
|
|
Computer Driver
|
scshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Computing Technologie Firewall
|
svcauth.exe
|
X
|
Added as a WORM with backdoor functionality, W32/Sdbot-VO copies itself to the Windows system folder as svcauth.exe and creates registry entries. ... Read More
|
|
COMsys32
|
systemdll32.exe
|
X
|
Added by the Troj/Feutel-F backdoor trojan.
|
|
Config
|
service.exe
|
X
|
Added by the ISRAZ.B WORM!
|
|
Config Loader
|
svchosl.exe
|
X
|
Added by the GAOBOT.P WORM!
|
|
Config Loader
|
sysldr32.exe
|
X
|
Added by the GAOBOT WORM!
|
|
Config Loader
|
scvhost.exe
|
X
|
Added by the GAOBOT.AE or GAOBOT.AO WORMS!
|
|
Configuration Driver
|
scghost.exe
|
X
|
Added by the W32/Sdbot-DLA worm and IRC backdoor.
|
|
Configuration Loader
|
service5.exe
|
X
|
Added by the GAOBOT.AF WORM!
|
|
Configuration Loader
|
sycfg34.exe
|
X
|
Added by the GAOBOT.AN WORM!
|
|
Configuration Loader
|
Service.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Configuration Loader
|
Servicess.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Configuration Loader
|
sw32.exe
|
X
|
Added by the AGOBOT.BQ WORM!
|
|
Configuration Loader
|
System.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Configuration Loader
|
sysinfo.exe
|
X
|
Added by the GAOBOT.FQ WORM!
|
|
Configuration Loader
|
svhst.exe
|
X
|
Added by the GAOBOT.YC WORM!
|
|
Configuration Loader
|
systemry.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM!
|
|
Configuration Loader
|
smss32.exe
|
X
|
Added by the AGOBOT.MB WORM!
|
|
Configuration Loader
|
syscfg32.exe
|
X
|
Added by the SDBOT.B TROJAN!
|
|
Configuration Loader
|
smsai.exe
|
X
|
Added by the W32/Sdbot-YE worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
|
|
configuration loader
|
svupdate.exe
|
X
|
Added by the W32.RANDEX.DXP WORM! ... Read More
|
|
configuration loader
|
svchost2.exe
|
X
|
Added by the AGOBOT.JR WORM! ... Read More
|
|
Configuration Loader
|
scvhost.exe
|
X
|
Added by the W32/Agobot-AAE worm.
|
|
Configuration Loader
|
SVSCHOST.EXE
|
X
|
Added by the W32/Sdbot-NS worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Configuration Loader
|
sysdevice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Configuration Loading
|
svchos1.exe
|
X
|
Added by the GAOBOT.DK WORM!
|
|
Configuration Servecie
|
sewins.exe
|
X
|
Added by the W32/Sdbot-COH worm and IRC backdoor.
|
|
Configuration Service
|
suchost.exe
|
X
|
Added by the TREB TROJAN!
|
|
ConfigVir
|
services.exe
|
X
|
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
ConfLoader
|
sysconf16.exe
|
X
|
Added by the SDBOT-FB TROJAN!
|
|
Connector
|
SYS.EXE
|
X
|
Added by the Dialer.Nunci premium dialer.
|
|
Connector
|
sms.EXE
|
X
|
Added by the Dial/ExDial-B premium rate porn dialer.
|
|
ConsoleDevil
|
server.exe
|
X
|
Added by the Troj/Bckdr-MJO backdoor Trojan.
|
|
control panel
|
smctrlw.exe
|
N
|
System Tray icon for a Silicon Motion LynxEM based PCI Graphics Card
|
|
Control Panel
|
System.exe
|
X
|
Added by the DANI TROJAN!
|
|
ControlPanel
|
systemctrl.exe.
|
X
|
Added by the Troj/StartPa-FX trojan.
|
|
ControlPanel
|
svcc.exe
|
X
|
Added by the Adware.WorldSearch browser hijacker.
|
|
Coordinator System
|
svchoct.exe
|
X
|
Added by the Troj/Sdbot-LI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Core System Hardware
|
syscorehd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
cpl
|
s_menu.exe
|
X
|
Added by the WIN32.TACTSLAY.C TROJAN!
|
|
cpntmgc
|
simcss.exe
|
X
|
MagicControl downloader trojan variant
|
|
CPQSTUTFIX
|
stutfix.exe
|
Y
|
For Compaq PC's. Fixes audio stutter problems for ESS Maestro soundcards. You can download it here. This is a Compaq originated file and has been veri ... Read More
|
|
CRAYON
|
server.exe
|
X
|
Added by the W32/VB-DNI worm.
|
|
CRC Value Verifier
|
svchost32.exe
|
X
|
Added by the RBOT-OA WORM!
|
|
Creates stractures for system management
|
stacture.exe
|
X
|
Added by the W32/Sdbot-DHS worm and IRC backdoor.
|
|
Creative PCI Audio Configuration Utility
|
starter.exe
|
N
|
System Tray icon to configure a Creative Soundblaster PCI soundcard. Not required and re-instates itself when un-checked. Try one of the solutions on ... Read More
|
|
Creative SB Monitoring Utility
|
sbavmon.dll,
|
?
|
Creative utility that monitors AVStreams. Is this needed?
|
|
CrisysTec Sentry
|
Sentry.exe
|
X
|
Added by the CrisysTecSentry security risk. CrisysTecSentry is a misleading application that may give exaggerated reports about potential risks on th ... Read More
|
|
Crnsava
|
scrnsave.pif
|
X
|
Added by the W32/Sdbot-ZV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Crnsavsund
|
scrnsund.pif
|
X
|
Added by the W32/Sdbot-AJQ worm and IRC backdoor.
|
|
crsss
|
Systom.exe
|
X
|
Added by the W32.Motsys worm. W32.Motsys is a worm that spreads by copying itself to removable drives. It also adds an tag to certain files on the co ... Read More
|
|
crtfmon
|
sysdll.exe
|
X
|
Identified by Kaspersky as the Trojan-Dropper.Win32.Small.baf malware.
|
|
csaRem
|
spqmdmui.exe
|
N
|
Compaq modem country selection
|
|
csfdll
|
smartwarxyu.dll
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Delf.asq malware.
|
|
csoftok
|
softok.exe
|
X
|
Added by the Troj/QQPass-H to log key presses & steal passwords.
|
|
CSScheduleCheck
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
ctfnom.exe
|
SVOHOST.exe
|
X
|
Added by the Troj/Digidor-A trojan.
|
|
CTHELPER
|
svhost.exe
|
X
|
Added by the W32/Sdbot-RZ worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
cursor
|
Screendragon_VS_Taskbar.exe
|
N
|
ScreenDragon video player
|
|
cvmsyslpd
|
sdservss.exe
|
X
|
Added by the Troj/Mailbot-BY IRC backdoor Trojan.
|
|
Cyber Trio
|
showmode.exe
|
U
|
From G-Tek Technologies. Allows you to set the PC in one of three modes, Standard, Enhanced and Kiddo. Standard is full function, Enhanced prevents ac ... Read More
|
|
dark
|
smsr.scr
|
X
|
Added by the Troj/Bancban-NU password/information-stealing Trojan for online banks. ... Read More
|
|
dark
|
smsl.exe
|
X
|
Added by the Troj/Banker-BZF Internet banking Trojan. If you are infected with this Trojan you should immediately change all your online banking pass ... Read More
|
|
Darkness
|
surv86.exe
|
X
|
Added by the Trojan.Darkbot Trojan. Trojan.Darkbot is a Trojan horse that performs denial of service (DoS) attacks. ... Read More
|
|
Data
|
System.dat.vbs
|
X
|
Added by the BISCUIT.A WORM!
|
|
dbar_starter
|
starter.exe
|
X
|
Related to the Adware.Deskbar adware program. This program will add a search bar to your Windows taskbar which performs searches on www.w-w-w-dot-com ... Read More
|
|
dc2k5
|
SVIQ.EXE
|
X
|
Added by the W32/CoiDung-A worm.
|
|
dc6_check
|
startmon.ex
|
X
|
Added by the SystemDoctor 2006. This is a rogue anti-spyware and should be removed. ... Read More
|
|
DDriver
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
Debug
|
SMSS.exe
|
X
|
Added by the Adware.DreamAd adware.
|
|
Debug System Manager
|
spoolvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Deewoo
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
Default
|
shell32.exe
|
X
|
Added by the BINGHE backdoor Trojan! It has the ability to log your keystrokes, steal data, and execute commands. ... Read More
|
|
default
|
splvs.exe
|
X
|
Added by the WORM_SDBOT.FS backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
DellSupportCenter
|
sprtcmd.exe
|
N
|
Dell's support tool bundled on their computers. Can be run as necessary.
|
|
designers
|
sttwrd.dll
|
X
|
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
|
|
DesSys
|
system.exe
|
X
|
Added by the WORM_SANKEZU.A worm.
|
|
Detect Kbd Daemon
|
SK2000DM.EXE
|
U
|
This is a driver for IBM Media Access Pro Keyboard. It's used to map and support various keys on the keyboard. ... Read More
|
|
devenv
|
smvss.exe
|
X
|
Identified as a variant of the Trojan.Horst malware.
|
|
DHCP
|
smss.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
DHCP32
|
services.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ag. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Digimax Viewer 2.1
|
STImgBrowser.exe
|
N
|
Application bundled with Samsung Digimax cameras that detects when you connect the camera to the computer and allows you to transfer images to the PC. ... Read More
|
|
Direct settings
|
sdchost.exe
|
X
|
Added by the DAEMONI-I TROJAN!
|
|
directx
|
Sqlexploit.exe
|
X
|
Added by the SDBOT.D TROJAN!
|
|
DirectX Driver
|
stdhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
DirectX for Microsoft Windows
|
Sservice.exe
|
X
|
Added by the PRORAT TROJAN!
|
|
DirectX shell driver
|
sammp32.exe
|
X
|
Added by the Troj/MarktMan-B Trojan.
|
|
Disk Keeper
|
SECURITY.EXE
|
X
|
Added by the Troj/Daoser-A trojan downloader.
|
|
Disk Monitor Manager
|
smcs.exe
|
X
|
Added by the W32/Tilebot-KQ worm and IRC backdoor.
|
|
DiskEventChk
|
smszac32.exe
|
X
|
Added by the Troj/Stinx-H Trojan. This infection also creates the files 442.bat and 952.bat. ... Read More
|
|
Diskstart
|
Snt.exe
|
X
|
Adult content dialler
|
|
Dll Link
|
svchoist.exe
|
X
|
Added by the W32.Autosky worm. W32.Autosky is a worm that attempts to spread to all shared and removable drives that are accessible from the compromis ... Read More
|
|
Dll Link
|
svchost.exe
|
X
|
Added by the W32.Autosky worm. W32.Autosky is a worm that attempts to spread to all shared and removable drives that are accessible from the compromis ... Read More
|
|
Dll Service Manager.
|
SVSHOST.EXE
|
X
|
Added by the W32/Robot-A backdoor trojan. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
DllName
|
status.dll
|
X
|
Added by the Troj/Haxdoor-R rootkit. This infection makes it so you can not see certain processes, files, or registry keys on your computer. It is u ... Read More
|
|
DNS Client Service
|
svshost.exe
|
X
|
Identified as the SdBot.awe worm.
|
|
DNS Server
|
svchost.exe
|
X
|
Added by the Troj/Feutel-Y backdoor Trojab.
|
|
DNS Support Manager
|
svshost.exe
|
X
|
Identified as the SdBot.awe worm.
|
|
doc.lnk
|
svchost.exe
|
X
|
Identified as W32/Malware.SHZ or Trj/Downloader.OLG. This infection should not be confused with the legitimate C:\Windows\system32\svchost.exe file. ... Read More
|
|
dot.net networking
|
Snss32.exe
|
X
|
Added by a variant of the IRC_TROJAN ! ... Read More
|
|
download
|
svcnost.exe
|
X
|
Added by the Troj/FakeAV-BSN Trojan.
|
|
Downloaded Program Files
|
syn.exe
|
X
|
Added by the Troj/GrayBrd-N backdoor Trojan.
|
|
DrefIW
|
SysDrefIWv2.exe
|
X
|
Added by the W32/Dref-C Internet worm.
|
|
DrefIW
|
SysDref.exe
|
X
|
Added by the W32/Dref-D worm.
|
|
Driver Control Manager v7.7
|
sesnaesttoo.exe
|
X
|
Added by the Troj/IRCbot-AJL worm and IRC backdoor.
|
|
Driver Control Manager v8.1
|
sesdessetri.exe
|
X
|
Added by the Troj/ZXC-Q Trojan.
|
|
Driver32
|
Scam32.exe
|
X
|
Added by the SIRCAM WORM!
|
|
DriverCheck
|
svchost.exe
|
X
|
Added by the Troj/Delf-KR trojan.
|
|
DriverDB
|
svcmdx32.exe
|
X
|
Added by the Troj/IRCBot-AR TROJAN/IRC backdoor!
|
|
DriverLoad
|
svchost.exe
|
X
|
Added by the Troj/Delf-KR trojan.
|
|
DriverPath
|
system32.exe
|
X
|
Added by the Troj/Prorat-S backdoor Trojan.
|
|
dRMON SmartAgent
|
SmartAgt.exe
|
U
|
Part of the network monitoring program group for 3Com NIC cards. See here for more info ... Read More
|
|
drmsrv32
|
stmhosts.exe
|
X
|
Identified as a variant of the Trojan.Win32.Agent.fkv malware.
|
|
DSL Monitor
|
spdstrm.exe
|
N
|
Comes with Efficient Networks DSL Modems. Little red/green/yellow flashing icon in system tray ... Read More
|
|
DsmSer
|
sysup.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
DsmSer
|
svosm.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
DTService
|
soundmix.dll
|
X
|
Added by the Troj/Dropper-MJ Trojan.
|
|
Dual
|
services.exe
|
X
|
Added by the Troj/Dloadr-SJ Trojan. This file should not be confused with the legitimate Microsoft file C:\Windows\System32\services.exe. ... Read More
|
|
dumprep
|
spoolc.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Backdoor.Win32.Agent.cxf malware. ... Read More
|
|
DurovVkon
|
svc.exe
|
X
|
Added by the W32/VKon-A social-application worm.
|
|
DwlClient
|
support.exe
|
N
|
Download manager for Dell support alerts
|
|
Dx
|
sys*.exe [* = random number]
|
X
|
Added by the DEXTER.A WORM!
|
|
dx
|
sys#.exe
|
X
|
Added as a result of the DEXTER.A VIRUS! where # is a random number ... Read More
|
|
eanth_critical_update_alert
|
sys_alert.exe
|
N
|
eAcceleration Stop-Sign related; not recommended; see note
|
|
eanth_system_patcher
|
sys_alert.exe
|
N
|
eAcceleration Stop-Sign related - not recommended, see note
|
|
Eapcisetup
|
sbsetup.exe
|
N
|
Rockwell RipTide soundcard application software. Sound works without it
|
|
EarthLink Firewall Process Path Service
|
EFWPPService.exe
|
Y
|
Related to EarthLink's Firewall, a part of the EarthLink Protection Control Center, powered by Aluria. ... Read More
|
|
easyServ
|
Server.exe
|
X
|
Added by the EASYSERV TROJAN!
|
|
Ebola
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
EFS
|
sclgntfy.dll
|
Y
|
Related to the Microsoft Service called Secondary Login Service Notification.
|
|
elnkproxy
|
smproxy.exe
|
X
|
Surfmonkey adware ... Read More
|
|
Encrypt Local Services
|
svshost.exe
|
X
|
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
|
|
ENCSurf
|
surfboard.exe
|
?
|
??
|
|
EnsoniqMixer
|
starter.exe
|
U
|
Puts the Ensoniq mixer in system tray. From Ensoniq Technologies "Our mixer is a critical part of the soundcard as it fixes sound problems and replace ... Read More
|
|
EPSON Background Monitor
|
STMS.EXE
|
N
|
Supposed to keep an Epson printer ready for quick printing. Users report little difference whether it is on or not ... Read More
|
|
ErrClean
|
SysRep.exe
|
X
|
Added by the ErrClean rogue security software. ErrClean is a misleading application that gives false reports of errors on the computer. ... Read More
|
|
Error Monitor Service
|
svshost.exe
|
X
|
A variant of the BackDoor.SdBot family of worms and IRC backdoor Trojans.
|
|
Error Reporting Manager
|
svshost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
erthgdr
|
svc.exe
|
X
|
Added by the W32.Beagle.BW@mm worm.
|
|
erthgdr2
|
svc23.exe
|
X
|
Added by the W32.Beagle.CE@mm mass-mailing worm.
|
|
EService
|
svchost.exe
|
X
|
Added by the W32.Mular.A Emule worm. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
esperantido
|
svxmhpz.dll
|
X
|
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
|
|
Ethernet Drivers
|
smrrs.exe
|
X
|
Added by the W32/Rbot-AAK WORM/IRC backdoor trojan!
|
|
EvenSystems
|
svchost.exe
|
X
|
Added by the Troj/Banloa-EW online banking Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Event Monitor
|
spoolcll.exe
|
X
|
Added by the W32.Spybot.IVQ worm.
|
|
EventApplicationCmd
|
smschk.exe
|
X
|
Added by the Troj/IRCBot-AO IRC backdoor Trojan.
|
|
Events
|
services.exe
|
X
|
Added by the Backdoor.EggHead backdoor.
|
|
exec
|
services.exe
|
X
|
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Explorer
|
shellexpl.exe
|
X
|
Added by the GPIX and SHELDOR VIRUSES!
|
|
Explorer
|
shellexp.exe
|
X
|
Added by a variant of the SHELDOR TROJAN!
|
|
explorer
|
system.exe
|
X
|
Added by the Troj/Agent-FI Trojan.
|
|
EXPLORER
|
sys.exe
|
X
|
Added by the Troj/SillyFDC-A Trojan.
|
|
ExploreUpdSched
|
scntqkdm.exe
|
X
|
Identified as a variant of the Adware-Zeno malware.
|
|
ExtraSystemService3
|
systemsvr.sys
|
X
|
Added by the Troj/Agent-FP Trojan.
|
|
F-Secure 2005
|
svchost.exe
|
X
|
Added by the Troj/Bifrose-CH Trojan.
|
|
F4J
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
FamilyCyberAlert
|
syslogin.exe
|
X
|
Added by the Spyware.CyberAlert spyware and keylogger.
|
|
fast home
|
svcnvt.exe
|
X
|
Reported by Kaspersky Anti-Virus as Trojan-Downloader.Win32.Delf.ks
|
|
fast search
|
svcnv.exe
|
X
|
Homepage, Startpage hijacker. Possible variant of Trojan-Downloader.Win32.Delf
|
|
Fast Start
|
svcnt.exe
|
X
|
Identified by numerous Antivirus products as Delf.KS. When run this trojan will install a variety of other applications such as antivirus gold, ps gu ... Read More
|
|
Fast User Switching Compatibi
|
system34.exe
|
X
|
Added by the Troj/Hupigon-SU Spyware Trojan.
|
|
faststart
|
svcnut.exe
|
X
|
Browser hijacker - a variant of the STARTPAGE.L TROJAN! ... Read More
|
|
faststart
|
svcnut32.exe
|
X
|
Browser hijacker - a variant of the STARTPAGE.L TROJAN! ... Read More
|
|
FastTrack Accelerator
|
SPEED UP.EXE
|
N
|
FastTrack Accelerator - "speedup" utility for programs that use the FastTrack network such as KaZaA Media Desktop, Grokster and Morpheus ... Read More
|
|
FastUserSwitchingCompatibil
|
svchost.exe
|
X
|
Added by the Troj/Keylog-AT keylogging Trojan. This should not be confused with the legitimate svchost.exe file found in the Windows system folder. ... Read More
|
|
Fathers
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
FCI
|
svchost.exe:ext.exe
|
X
|
Identified as Trojan.Win32.Obfuscated.gp. Please note that this infection is an Alternate Data Stream file attached to the legitimate C:\Windows\Syste ... Read More
|
|
fdr command module
|
sp2.exe
|
X
|
Added by the SDBOT.WP WORM! ... Read More
|
|
fegoze
|
SVCH0ST.EXE
|
X
|
Added by the GRAYBIRD.D TROJAN!
|
|
ff
|
svhost32.exe
|
X
|
Added by the Troj/Lineag-AFF password-stealing Trojan for the online game Lineage. ... Read More
|
|
FFI
|
svchost.exe:exm.exe
|
X
|
Unknown malware. Please note that this infection is an Alternate Data Stream file attached to the legitimate C:\Windows\System32\svchost.e ... Read More
|
|
fhpage
|
shdochp.exe
|
X
|
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
|
|
fhstart
|
shdocsvc.exe
|
X
|
Added by the Troj/Delf-Ks TROJAN! Note: ... Read More
|
|
FieldForms Sync
|
SyncService.exe
|
U
|
Resco FieldForms. A solution for building of mobile forms that can be viewed or filled in on the run, on a wide range of mobile devices. Supports Micr ... Read More
|
|
File-Sharing Wizard
|
shwizard.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Files Driver
|
sfdhost.exe
|
X
|
Added by the W32/Agobot-AJC worm.
|
|
Files Driver
|
sdphost.exe
|
X
|
Added by the W32/Sdbot-DKZ worm and IRC backdoor.
|
|
firefox service drivers
|
ssmss.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
firewall
|
spoolsv.exe
|
X
|
Added by the W32.Dizan.F virus. W32.Dizan.F is a virus that spreads by infecting executable files. It also opens a back door on the compromised comput ... Read More
|
|
Firewall
|
SP2 UPDATE.exe
|
X
|
Added by the W32/Elitper-E WORM, and it will exploit P2P applications. Many additional files are created in varios folders found in Documents and Sett ... Read More
|
|
Firewall Controls
|
sys32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Firewall DRV
|
spfhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Firewall Sp2 system
|
sys32Conf.exe
|
X
|
Added by the W32/Rbot-ABT worm. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
|
|
FireWire Driver
|
samx.exe
|
X
|
Added by the SDBOT.AE WORM!
|
|
Flash Media
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Flash Player2
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
|
|
FlashPath Monitor
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
FlashPath Status
|
SDSTAT.EXE
|
N
|
System Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia car ... Read More
|
|
Four
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
fqor
|
stub_113_4_0_4_0.exe
|
X
|
Added by TargetSaver ADAWARE! ... Read More
|
|
FrameWorkService
|
smss.exe
|
X
|
Added by the W32/Kukoo-A network worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
France
|
svchost.exe
|
X
|
Added by the MIMAIL.L WORM!. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
frguk
|
shdrkmck.exe
|
?
|
??
|
|
FriendlyTypeName
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
FriendlyWebQuick-Launch
|
SELFCERT.EXE
|
N
|
selfcert.exe is a stand alone program for creating your own digital certificates for macros - the .exe is installed as an extra basically by clicking ... Read More
|
|
fritz!dsl startcenter
|
StCenter.exe
|
?
|
FRITZ! ISP software "StartCenter" User interface that allows you to manage, tweak and diagnose many aspects of your internet connection - is it requi ... Read More
|
|
fsh
|
svcnva.exe
|
X
|
Malware, detected by Ewido_Security_Suite as TrojanDownloader.Delf.ks ... Read More
|
|
fzg
|
svhost32.exe
|
X
|
Added by the Troj/Lineage-JN information stealing Trojan.
|
|
game
|
shit.exe
|
X
|
Added by the Netclap Gold backdoor TROJAN!
|
|
Games Acceleration
|
svshost.exe
|
X
|
|
|
Games Acceleration
|
svshost1.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan-Downloader.Win32.Small.ase.
|
|
gamma
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.it malware. This infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
GammaHotKeys
|
setgamma.exe
|
U
|
Part of the RadeonTweaker program for adjusting ATI Radeon graphics cards. Allows you to adjust the gamma (or brightness) when playing a full-screen g ... Read More
|
|
gate personal firewall
|
Systpl.exe
|
X
|
Added by the RBOT.ADC WORM ... Read More
|
|
General Socket Service
|
SVCHOST.EXE
|
X
|
Identified by Dr. Web as Trojan.PWS.LDPinch.1607. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
Generic host proccess for windows
|
SVCHOSTS.EXE
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Generic Host Process
|
SCHOST.EXE
|
X
|
Added by the RBOT-NC WORM!
|
|
Generic Host Process
|
svchost.exe
|
X
|
Added by the Troj/Dloader-NX trojan downloader.
|
|
Generic Host Process
|
syshost.exe
|
X
|
A variant of the W32/Banworm worm.
|
|
Generic Host Process for Win-32 Service
|
spoolsv.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans. When removing this infection, please be careful that you do not remove the l ... Read More
|
|
Generic Host Process for Win-32 Service
|
svchost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans. When removing this infection, please be careful that you do not remove the l ... Read More
|
|
Generic Host Process for Win32 Services
|
svchosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Generic Host Process2 System Backup
|
scvhost2.exe
|
X
|
Added by the W32/Rbot-BAH worm and IRC backdoor.
|
|
Generic Host Process326a System Backup
|
scvhost326a.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
generic service process
|
serv1ces.exe
|
X
|
Added by the W32/Agobot-JK WORM! ... Read More
|
|
Genius Mose Driver
|
svghost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
genserv path
|
sdqdqg.exe
|
X
|
Added by the W32/Sdbot-RF worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
GenSrv
|
svchost.exe
|
U
|
Added by the Spyware.StealthLogger surveillance software. Spyware.StealthLogger is a spyware program that records all keystrokes, monitors window and ... Read More
|
|
Gestionnaire de disques universel
|
sysoobe.exe
|
X
|
Added by the Troj/Toader-A backdoor Trojan.
|
|
GLSetT32
|
smsiexec.exe
|
X
|
Added by the OPTIX-D TROJAN!
|
|
GNP Generic Host Process
|
svchost.exe
|
X
|
Added by the Troj/Zapchas-F TROJAN/IRC backdoor!
|
|
golum
|
services.exe
|
X
|
Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should N ... Read More
|
|
golumm
|
services.exe
|
X
|
CoolWebSearch parasite variant. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
gqvqevs
|
seeffkme.exe
|
X
|
Added by the W32/Sdbot-QDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
graphic driver
|
smss32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Gray
|
Scrsss
|
X
|
Added by the Troj/GrayBrd-AM backdoor Trojan.
|
|
GrayPigeon_Hacker.com.cn
|
shun101.exe
|
X
|
Added by the Troj/Hupigon-SX Trojan.
|
|
Gray_Pigeon_Server
|
Srer.exe
|
X
|
Added by the Troj/Bckdr-IUQ backdoor Trojan.
|
|
Guard Service
|
services.exe
|
X
|
Added by the Internet Antivirus Pro rogue anti-malware program.
|
|
Guard Service
|
services.exe
|
X
|
Added by the Live Enterprise Suite rogue anti-spyware program.
|
|
gzg8wud2rcccs
|
systs.exe
|
X
|
Added by the Troj/Agent-GDC Trojan.
|
|
h4m0v0k2
|
svshost.exe
|
X
|
Added by the Troj/IRCbot-YX worm and IRC backdoor.
|
|
HalifaxHowardCluster
|
skinkers.exe
|
U
|
Howard the Weatherman desktop client from Halifax by Skinkers - marketing/messaging tool. Leave enabled if you want to receive messages ... Read More
|
|
HardDriveGuard
|
SysRep.exe
|
X
|
Added by the HardDriveGuard rogue anti-spyware program.
|
|
harodin
|
smss.exe
|
X
|
Unknown removable media worm. This should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
HBService32
|
SYSTEM.EXE
|
X
|
Added by the Infostealer.Hibik.A information stealing Trojan.
|
|
hdloker
|
sxlntr.exe
|
X
|
Added by the Troj/RKDepo-A Trojan rootkit downloader. This trojan contains rootkit stealthing abilities. ... Read More
|
|
hellodolly
|
shost.exe
|
X
|
|
|
helper
|
sweden.exe
|
X
|
AsdPlug premium rate adult content dialer variant ... Read More
|
|
helpmanager
|
spoler.exe
|
X
|
Added by the RANDEX.J WORM!
|
|
hErcUnes
|
softhost.exe
|
X
|
Added by the GARROCH WORM!
|
|
Highspeeddownloader
|
SetupClickHere.EXE
|
X
|
Added by a variant of the Trojan.StartPage malware. When infected with this program, your Internet Explorer home page will be hijacked to turbo-searc ... Read More
|
|
hitman pro surfright helper
|
srhelper.exe
|
U
|
Related to Hitman_Pro A utility to start a number of Security Protection software. The can be started individualy. Note: located in C:\Program Files\ ... Read More
|
|
hoge
|
svchost.exe
|
X
|
Added by the Uploader-X trojan.
|
|
hollaback
|
slvhosts.exe
|
X
|
Added by the SDBOT.BMO WORM! ... Read More
|
|
Home Theater SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with Home Theater Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you ... Read More
|
|
Host Process
|
svchost.exe
|
X
|
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Host Services
|
svhosts.exe
|
X
|
Added by the W32/Tilebot-AC worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
HostSrv
|
sachostx.exe
|
X
|
Added by the Troj/Multidr-EP downloader Trojan.
|
|
Hot Key Kbd 2690 Daemon
|
SK9910DM.exe
|
U
|
Multimedia keyboard manager - required if you use any special keys
|
|
Hot Key Kbd Daemon
|
SKDAEMON.EXE
|
U
|
Multi-function keyboard driver. Allows the use of programmable keys on multimedia keyboards. Required if you use the additional keys. ... Read More
|
|
Hot Key Keybd 9910 Daemon
|
SK9910DM.exe
|
U
|
Multimedia keyboard manager - required if you use any special keys
|
|
Hotfix Updat
|
svdhost32.exe
|
X
|
Added by the GAOBOT.ZW WORM!
|
|
HotKey
|
SFCsrvc.pif
|
X
|
Added by the W32/AutoIt-OC worm.
|
|
hp center UI
|
ShadowBar.exe
|
X
|
User Interface for HP Center
|
|
HP Internet Center
|
SURFBRD.EXE
|
N
|
Loads the HP Internet center surfboard on startup. HP Internet Center allows you to customize the multimedia keys on the fly without having to go the ... Read More
|
|
HP ProLiant System Shutdown Service
|
sysdown.exe
|
Y
|
Utility that will automatically shut down a server if critical events are discovered. ... Read More
|
|
HP System Management Homepage
|
smhstart.exe
|
Y
|
The HP System Management Homepage is a web-based interface that consolidates the infection retrieve by the other Insight agents running on the server. ... Read More
|
|
HPLJ Config
|
SetConfig.exe
|
Y
|
Connects system to networked HP printer.
|
|
hpScannerFirstBoot
|
scannerfb.exe
|
?
|
HP scanner related
|
|
hsim
|
sexgame.exe
|
X
|
Unidentified malware
|
|
HTML TCP IP
|
system.exe
|
X
|
Added by the Backdoor.Greybird.L trojan backdoor..
|
|
HTTP Disk Manager
|
svshost.exe
|
X
|
A variant of the Sdbot worm and IRC backdoor.
|
|
httpd
|
s_menu.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
huigezi
|
SP00LSV.EXE
|
X
|
|
|
Hwp
|
system_wc.exe
|
X
|
Added by the Adware.Eziin homepage hijacker.
|
|
I just want to say I love Milko and I need a drink
|
svchost.exe
|
X
|
Added by the W32.Chiko removable drive worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
i/o controllers
|
svcnet.exe
|
X
|
Added by the TROJ/TIBIK-B TROJAN! ... Read More
|
|
Ias
|
svrmsg.dll
|
X
|
Added by the Troj/Backdr-D backdoor Trojan.
|
|
ICF
|
svchost.exe:exe.exe
|
X
|
Added by the Trojan.Ozdok Trojan. Please note that C:\Windows\System32\svchost.exe is a legitimate program and should not be removed. Instead, you wo ... Read More
|
|
ICQ
|
syscdd2.exe
|
X
|
Added by the W32/Sdbot-ON worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
icq lite
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
IC_KEY_3
|
spvic.exe
|
N
|
|
|
IE6
|
ssmss.exe
|
X
|
Added by the W32.Gaobot.DXO worm.
|
|
IE9
|
snowing.exe
|
X
|
Added by the W32/Rbot-DRD worm and IRC backdoor.
|
|
ieaccess
|
surfya.exe
|
X
|
IEAccess premium rate adult content dialer variant ... Read More
|
|
Iehelper
|
syslaunch.exe
|
X
|
Outwar adware downloader
|
|
igfxtras
|
svchots.exe
|
X
|
Added by the W32/Autorun-AIW removable media worm.
|
|
iIWiper
|
Systemwiper.exe
|
N
|
System Wiper from iI Software - allows you to clear the history of your activites from you computer. Run manually on a regular basis ... Read More
|
|
Image Remote Players
|
sysvn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
image transfer
|
SonyTray.exe
|
N
|
Sony Image Transfer software provides direct image transfer from your digital camera to a PC - can be started manually. ... Read More
|
|
IMClass
|
Svhosl.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Indexing Helper
|
svchost.exe
|
X
|
Identified as Troj/Bckdr-PUV variant. This infection should not be confused with the legitimate c:\Windows\System32\svchost.exe file. ... Read More
|
|
ine
|
svchosts.exe
|
X
|
Added by the W32/Rbot-AIZ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands.
Read More
|
|
inet
|
svhost.exe
|
X
|
Added by the Troj/Sdbot-M worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
INF0
|
SEXSPEED.EXE
|
X
|
Added by the Troj/Sexspeed trojan.
|
|
initnyuser
|
svchosd.exe
|
X
|
Added by the TROJ_POPHOT.OJ Trojan.
|
|
Inom
|
snmoo.exe
|
X
|
Added by the W32/Rbot-DPM worm and IRC backdoor.
|
|
Input Output Ms Driver
|
sunio.sys
|
X
|
Related to the rogue anti-spyware program called SunshineSpy.
|
|
Install Pending Files
|
sifxinst.exe
|
?
|
Uninstall program for Lanovation's Prism Deploy and Prism Pack adminstrators software deployement tools. For specific information see here. Is it requ ... Read More
|
|
InstallNAIProduct
|
SETUP.EXE
|
?
|
Could be related to Network Associates Inc who own the McAfee VirusScan product amongst others. This was found in a directory called "VSC". Could it b ... Read More
|
|
Instance 001
|
sys[randomnumbers].exe
|
X
|
Added by the W32/Alasrou-A email address harvesting worm. When installed it also created the files %Temp%file1.exe and %System%searchpage.htm. ... Read More
|
|
Intel Physical Routine 1.2A
|
stnetlib.exe
|
X
|
Added by the Troj/Backdr-AS backdoor.
|
|
Intel system tool
|
svehost.exe
|
X
|
Added by the Troj/Agent-EBT Trojan.
|
|
InteliSys
|
smss.exe
|
X
|
Advertisingvision adware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Intel® PROSet/Wireless Service
|
S24EvMon.exe
|
?
|
Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? ... Read More
|
|
Internal Memory File
|
sysintmemory.exe
|
X
|
Added by the W32/Rbot-GKT worm and IRC backdoor.
|
|
Internat
|
systray.exe
|
X
|
Added by the ALADINZ.P TROJAN! Note - this is not the legitimate systray.exe process ... Read More
|
|
internet
|
smss.exe
|
X
|
Added by the Troj/Mifeng-B password-stealing trojan.
|
|
Internet Config
|
svchosts.exe
|
X
|
Added by the SDBOT TROJAN!
|
|
Internet Connection Wizard
|
stisvsq.exe
|
X
|
|
|
Internet Connection Wizard
|
stisvsq1.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan-Downloader.Win32.Small.ase.
|
|
Internet Security Service
|
ssyst3m32.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.btd family of worms and IRC backdoor Trojans. ... Read More
|
|
internet service
|
syscfg32.exe
|
X
|
Added by the RBOT-QS WORM!
|
|
internet service
|
ssvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
internet service
|
svho0st98.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Internet Services
|
systemdev.exe
|
X
|
Added by the SDBOT-PW WORM!
|
|
internet suspention
|
story.exe
|
X
|
Added by the WOOTBOT.HV WORM! ... Read More
|
|
Internet Sweeper
|
Sweeper.exe
|
N
|
Internet Sweeper - removes unnecessart left over files after browsing the internet ... Read More
|
|
internew
|
system.exe
|
X
|
Added by the Troj/Cmjspy-BN backdoor Trojan.
|
|
Intervideo WinScheduler
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
intranet
|
SYS32CFG.EXE
|
X
|
Added by the W32/Spybot-DW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Introducing Media Manager
|
SPLASHA.EXE
|
N
|
MS Media Manager tour. Not required
|
|
iolo utility bar
|
SMUtilityBar.exe
|
N
|
Iolo "System Mechanic" Utility_Bar - can be launched manually. ... Read More
|
|
ioroxxo microsoft sux
|
system32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
IPConfig
|
svcxnv32.exe
|
X
|
Added by the HACARMY.E TROJAN!
|
|
ipconfig
|
svcxnw32.exe
|
X
|
Added by a variant of the HACARMY.E TROJAN! ... Read More
|
|
IPODT1000
|
ssipod1.sys
|
X
|
Added by the Troj/Haxdor-Gen rootkit.
|
|
IPv6 network support
|
svchost.exe
|
X
|
Identified by NOD32 as a variant of Win32/TrojanProxy.Daemonize malware.
|
|
irc session
|
sessionmgr.exe
|
X
|
Added by the SDBOT-ACE WORM!
|
|
IRDa Modem device #12
|
se633mxxd.sys
|
X
|
Added by a variant of the Goldun rootkit.
|
|
isp.com high speed
|
slipgui.exe
|
U
|
Sliptstream Web Accelerator ... Read More
|
|
ISPup
|
speeder.exe
|
X
|
Added by the WORM_RBOT.OU worm and IRC backdoor.
|
|
Java
|
script.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
java
|
system.exe
|
X
|
Added by the W32/Rbot-GWF worm and IRC backdoor.
|
|
Java Express
|
sjehost.exe
|
X
|
Added by the W32/Sdbot-DNJ worm and IRC backdoor.
|
|
Java SATARaid
|
siicfg.jar
|
U
|
This starts the Silicon Image SATA RAID array utility - useful if you use a Silicon Image SATA RAID controller. ... Read More
|
|
Java Update
|
svchost.exe.exe
|
X
|
Added by the Troj/Agent-LMM Trojan.
|
|
JavaLOG
|
services.exe
|
X
|
Identified as the Backdoor.IROffer variant malware.
|
|
jiahus
|
svchqs.exe
|
X
|
Added by the Troj/WOW-HA password stealing Trojan for the online game World of Warcraft. ... Read More
|
|
johkjh
|
srvd.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Slaper.e malware.
|
|
johnj3155
|
srvcc.exe
|
X
|
A variant of the Trojan Mailbot.
|
|
johnj3cd
|
srvdc.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Slaper.e malware.
|
|
jon315
|
ssrvc.exe
|
X
|
Added by the Troj/Mailbot-BI Trojan.
|
|
jusodl
|
severe.exe
|
X
|
Added by the Troj/QQRob-ADM Trojan.
|
|
Justice
|
serious.exe
|
X
|
Added by the W32/Mirsa-B mass-mailing worm.
|
|
k3ym4n
|
servicsmjr.exe
|
X
|
Added by the W32/Rbot-RW worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
kaa
|
SVCHHS.exe
|
X
|
Added by the Troj/Agent-JKP Trojan.
|
|
kav
|
svchsot.exe
|
X
|
Added by the Troj/QQRob-AE Trojan.
|
|
KAVPersonal
|
svchost.exe
|
X
|
Added by the Troj/Lineage-V password-stealing trojan for the online game Lineage. ... Read More
|
|
KERNEL 32
|
SKERNEL32.com
|
X
|
Added by the W32/Semapi-A. This mass-mailing worm may display a message: "Unable to locate 'semapi.dll' reinstalling this application may fix this p ... Read More
|
|
Kernel Drivers
|
systemproc.exe
|
X
|
Added by the Troj/DwnLdr-ISX Trojan.
|
|
Kernel Fault Safe
|
smss.exe
|
X
|
Unidentified malware. Most likely a variant of the IRCBot family of worms and IRC backdoors. ... Read More
|
|
Kernel Safe Mode
|
smss.exe
|
X
|
Added by the Mal/78Crack-A downloader Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
kernel services
|
service32.exe
|
X
|
Added by the TROJ/PRX-B TROJAN! ... Read More
|
|
Kerneldll
|
solidsteel.exe
|
X
|
Added by the Troj/Mdrop-BWB Trojan.
|
|
KernelFailCheck
|
syscheck.exe
|
X
|
Identified as a variant of the Backdoor:Win32/Tofsee.F malware.
|
|
KernelFaultChk
|
sms.exe
|
X
|
Added by the DEADHAT WORM! Do not confuse with the valid "kernelfaultcheck" which runs "dumprep 0 -k" or "dumprep 0 -u" ... Read More
|
|
Kernell
|
systems.exe
|
X
|
Added by the TARNO.C TROJAN!
|
|
KernellApps32
|
smss.exe
|
X
|
Added by the Troj/Bancban-AN Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
KeSDM
|
Sdmapi.sys
|
X
|
Added by the HaxDoor.B rootkit/backdoor Trojan. This service is installed as a system driver and is part of the rootkit functionality of this infecti ... Read More
|
|
key
|
sysxp.exe
|
X
|
Added by the BEAGLE.AB WORM!
|
|
key
|
sys_xp.exe
|
X
|
Added by the BEAGLE.AC WORM!
|
|
Key2
|
serve.exe
|
?
|
??
|
|
KeyLogger
|
syssafe.exe
|
U
|
Added by the Spyware.Ghostlo surveillance software. If this program was not installed by yourself, it should be uninstalled immediately. ... Read More
|
|
keyplusplus
|
startk.exe
|
U
|
Added by the Spyware.KeyPlusPlus surveillance software. Spyware.KeyPlusPlus is a spyware program that records information on the computer. ... Read More
|
|
KMX direct access
|
sdcardX2.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
KSD2Service
|
SVCH0ST.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf.azm malware.
|
|
kye_showicon
|
shwicon.exe
|
?
|
USB Card Reader tray icon. Shows when the device is plugged in - is it required? ... Read More
|
|
Laptop Access
|
Sage.exe
|
X
|
Added by the W32/Sdbot-NB worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
LiveUpdate
|
smss.exe
|
X
|
Identified as Trojan-Spy.Win32.WinSpy.ae. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
LiveUpdate32
|
services.exe
|
X
|
Identified as Backdoor.Win32.VB.bau. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
lnternet Update
|
sysmem.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
load
|
svchost.exe
|
X
|
Added by the Troj/Lineage-K Trojan.
|
|
load32
|
swchost.exe
|
X
|
Added by the TURTA.A WORM!
|
|
load=
|
shambl3r.exe
|
X
|
Added by the REMABL WORM!
|
|
LoadAudio
|
snd2d3d.exe
|
X
|
Identified as a variant of the VirTool:Win32/DelfInject.gen!AF malware.
|
|
loads.exe
|
suploads.exe
|
X
|
Popuppers.com adware downloader
|
|
Local runole service
|
srvc32.exe
|
X
|
A TROJAN, Troj/Small-DP uses this file, after first downloading C:t.exe, C:n.exe or C:m.exe. It will also try to modify the Windows Explorer files. ... Read More
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Tilebot-CU worm and IRC backdoor.
|
|
Local Security Authority Subsystem Service
|
scvhost.exe
|
X
|
Added by the W32/Opanki-BT worm and IRC backdoor.
|
|
Logical Disk Manager Provider
|
spool.exe
|
X
|
Added by the Troj/Agent-DA trojan.
|
|
Logical Volume
|
slvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
logitech camera
|
Soundcane.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Logitech RX
|
slrhost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
LogService
|
SVCH0ST.EXE
|
X
|
Added by the Troj/Paproxy-B Trojan.
|
|
lol.exe
|
sys21.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Lotus QuickStart
|
smartctr.exe
|
N
|
Lotus central application, called SmartCenter, which runs on the Windows desktop. SmartCenter toolbar stretches across the top or, optionally, the bot ... Read More
|
|
Lotus SuiteStart
|
suitest.exe
|
U
|
Puts the individual Lotus components in the system tray taskbar when you start Windows. Can be disabled via MSCONFIG -> Startup as "Lotus SuiteStart 9 ... Read More
|
|
LowRiskFileTypes
|
svchost32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
LowRiskFileTypes
|
sysguard.exe
|
X
|
Added by the Troj/FakeAv-UY fake-antivirus alert.
|
|
LSA
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
lsass
|
start.bat
|
X
|
Added by the ZCREW TROJAN!
|
|
lsass
|
svchost32.exe
|
X
|
Added by the W32/Rbot-GVX worm and IRC backdoor.
|
|
LTSMSG
|
Shell32.exe
|
X
|
Added by the LEMIR.B TROJAN!
|
|
ltwob
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
LVSrvLauncher
|
SrvLnch.exe
|
?
|
Related to Logitech products.
|
|
M1cr0s0ft S3rcurity
|
systemconfig.exe
|
X
|
Added by the RBOT.BKB WORM!
|
|
Machine
|
systemse.exe
|
X
|
Added by the W32/Rbot-BD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
mackafy.exe
|
speedup.exe
|
X
|
Added by the W32/Rbot-GUX worm and IRC backdoor.
|
|
macromedia flash update
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
MailExport
|
sendmail.dll
|
X
|
Identified by Kaspersky Antivirus as the Trojan.Win32.BHO.gb malware.
|
|
main
|
system.exe
|
X
|
Added by the Troj/LdPinch-RC Spyware Trojan.
|
|
MainStart
|
svcmfte32.exe
|
X
|
Added by the Troj/Stinx-A IRC backdoor.
|
|
Management System
|
sxml.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Manager 006
|
svchost.exe
|
X
|
Added by the Troj/DwnLdr-DCZ Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Mapa de caracteres para NT
|
sampaerio.exe
|
X
|
Added by the Troj/Bancos-PV password-stealing Trojan.
|
|
mascro soft sdk updates2
|
SDKrepair2.exe
|
X
|
Added by a variant of the W32/SDBOT.W WORM! ... Read More
|
|
Master
|
svcghost.exe
|
X
|
Added by the BKDR_IRCBOT.RB worm and IRC backdoor.
|
|
McaFee virus detect program
|
svchst.exe
|
X
|
Added by the W32.Debsis.A worm. W32.Debsis.A is a worm that spreads by copying itself to network shares and removable drives. ... Read More
|
|
MCAFEEIPS
|
setup.exe
|
X
|
Added by the Trojan.Whitewell Trojan. Trojan.Whitewell is a Trojan horse that opens a back door on the compromised computer. ... Read More
|
|
MCX Updte
|
scorti.exe
|
X
|
Added by a variant of the Rbot worm. This infection will connect to a remote IRC server and wait for commands to execute on your computer. ... Read More
|
|
MDNS
|
service.exe
|
X
|
Identified by Symantec antivirus as a variant of the Adware.Mirar malware. This infection should not be confused with the legitimate C:\Windows\System ... Read More
|
|
MDSA Sentinel X
|
smss.exe
|
U
|
Added by the Spyware.SentinelX surveillance software. This program should be uninstalled if it was not installed by yourself. This program should not ... Read More
|
|
Media Player
|
Sysdll.exe
|
X
|
Added by a Troj/Banker variant!
|
|
Media Serial Number Service
|
SVCH0ST.EXE
|
X
|
Added by the Troj/GrayBrd-BC backdoor Trojan. This infection should not be confused with the legitimate c:\windows\system32\svchost.exe that has a sim ... Read More
|
|
Media service
|
SYSTEM64.EXE
|
X
|
Added by the RBOT.QV WORM!
|
|
Media Software UPdater
|
sscs.exe
|
X
|
Added by the W32/Rbot-ABE. When started this infection connects to an IRC server where it waits for commands, and tries to delete the computer's I$ ... Read More
|
|
MediaFace Integration
|
Sethook.exe
|
N
|
Fellowes Neato™ cd label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
|
|
media_stub
|
stub.exe
|
X
|
Mini-Player, IMESH related foistware.
|
|
Megadrv3
|
srosa.sys
|
X
|
Added by the W32.Beagle.GM rootkit.
|
|
MemConfig
|
SetupIE.com
|
X
|
Added by the TAPLAK WORM!
|
|
Mespanger
|
svchost.exe
|
X
|
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
|
|
Messager
|
svchost.exe
|
X
|
Identified as a variant of the Trojan:Win32/Small.gen!AG malware. This infection should not be confused with the legitimate C:\Windows\System32\svchos ... Read More
|
|
MessagerStarter Freeserve
|
StartMessager.exe
|
N
|
|
|
Messander
|
svchost.exe
|
X
|
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
|
|
Messanger
|
svchost.exe
|
X
|
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
|
|
Messanger
|
s_menu.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
messenger
|
SCANMSG.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Virus Protection. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
Messenger Service
|
service.exe
|
X
|
Added by the Troj/Dloadr-BVG Trojan.
|
|
messenger service updater
|
svshost.exe
|
X
|
Added by the MYTOB.GC WORM! ... Read More
|
|
Messssanger
|
svchost.exe
|
X
|
A variant of the Trojan-Downloader.Win32.Delf.asz Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
|
|
Mi7sft sdce
|
scorti.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Micosoft Data Core
|
shell32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Micosoft Data Core stuff
|
svshosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Micosoft Startup
|
systall.exe
|
X
|
Added by the W32/SdBot-GM worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
Micosoft Startup
|
syscall.exe
|
X
|
Added by the W32/SdBot-JI worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Micosoftartup
|
shrl.exe
|
X
|
Added by the W32/Sdbot-JQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
MicosoftStartup
|
syxall.exe
|
X
|
Added by the W32/Sdbot-JR worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Micr Update
|
soundblaster.exe
|
X
|
Added by the SDBOT.NP WORM!
|
|
Micr0s0ft Agent
|
sxch0st.exe
|
X
|
A variant of the Worm.RBot.UTA family of worms and IRC backdoor Trojans.
|
|
micr0s0ft upd4t4z
|
svchost32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
MICR0SOFT SVCH0ST
|
SVCH0ST.EXE
|
X
|
Identified by AntiVir as TR/Spy.Agent.PV.2.
|
|
Micrcoft Exploerer
|
spoolsal.exe
|
X
|
Added by the W32/Rbot-AKK worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Micrcoft Exploerer
|
svchose.exe
|
X
|
Added by the W32/Rbot-ASL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Micrcoft Updat
|
spoolsae.exe
|
X
|
Added by the W32/Rbot-AIB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Micrcoft Updat
|
spoolsaex.exe
|
X
|
Added by the W32/Rbot-AJM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Micro SVC
|
src.exe
|
X
|
Added by the W32/Rbot-Q worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
MicroedSoft Toolbar
|
Smoked.exe
|
X
|
Added by the W32/Rbot-ALN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microft Exploerer
|
spoolsac.exe
|
X
|
Added by the W32/Rbot-AMD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsft Updtes
|
sarvice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsof Windows Host
|
svhost32.exe
|
X
|
Added by the RBOT.ADY WORM!
|
|
Microsofot x386 System Monitor
|
system32.exe
|
X
|
Added by the WOOTBOT.M WORM!
|
|
microsoft
|
svchost.exe
|
X
|
Added by the ASTEF or RESPAN WORMS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Microsoft
|
smssdriver.exe
|
X
|
The Troj/Roneve-A TROJAN places the file into the Program files folder, creating a sub-folder it calls Xerox.nt when doing so. ... Read More
|
|
Microsoft
|
symtea.exe
|
X
|
Added by the W32.Spybot.AMTE worm. W32.Spybot.AMTE is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
|
|
Microsoft
|
ssmss.exe
|
X
|
Added by the W32/Rbot-FZF worm and IRC backdoor.
|
|
Microsoft
|
soundvol32.exe
|
X
|
Identified by Bitdefender as Backdoor.Spybot.DLN.
|
|
Microsoft
|
sql.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
svchost32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
system32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
systern.exe
|
X
|
Unknown malware.
|
|
Microsoft
|
svhcost.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Rbot.dzw worm and IRC backdoor.
|
|
Microsoft
|
scvhost32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
servicess.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
synstat.exe
|
X
|
Added by the W32/Sdbot-DIG worm and IRC backdoor.
|
|
Microsoft
|
scheduler.exe
|
X
|
Added by the W32/Rbot-GUT worm and IRC backdoor.
|
|
Microsoft
|
systemdtm.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.gci family of worms and IRC backdoor Trojans. ... Read More
|
|
Microsoft
|
sccvrhost.exe
|
X
|
Added by the BKDR_IRCBOT.ARG worm and IRC backdoor.
|
|
Microsoft
|
sqlservice.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
Security.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
system.vbs
|
X
|
Unknown malware.
|
|
Microsoft
|
spolsv.exe
|
X
|
Added by the Troj/PWS-BOO password-stealing Trojan.
|
|
Microsoft (R) Windows Configuration Backup Service
|
svchost.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
Microsoft (R) Windows Configuration Manager
|
svchost.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
Microsoft (R) Windows Network Latency Controller
|
sp2vc.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan. This infection also installs a Windows service of the same name and filename. ... Read More
|
|
Microsoft (R) Windows Protected Content Restoration Service
|
services.exe
|
X
|
Added by the BKDR_AGENT.AGV backdoor. This infection should not be confused with the legitimate Microsoft file c:\Windows\System32\services.exe. ... Read More
|
|
Microsoft .Net Framework
|
servic.exe
|
X
|
Added by the Troj/Agent-GUU Trojan.
|
|
Microsoft ActiveX Debugger NT
|
setdebugnt.exe
|
X
|
Added by the Troj/Bancos- Trojan. If you are infected with this infection you should immediately change all passwords to any online banking sites tha ... Read More
|
|
Microsoft Agent
|
SVCH0ST.exe
|
X
|
Added by the W32/Narcha-A peer-to-peer worm.
|
|
Microsoft Agent
|
snchost.exe
|
X
|
Added by the W32/Vanebot-AB backdoor worm.
|
|
Microsoft Agent
|
suchost.exe
|
X
|
Added by the W32/Sdbot-DDD worm and IRC backdoor.
|
|
Microsoft Agent
|
svqhost.exe
|
X
|
Identified as a variant of the WORM_RANDEX.AL malware.
|
|
Microsoft Agent
|
shvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Agent
|
sxchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft AutoUpdater
|
svhost.exe
|
X
|
Added by the RBOT.QG WORM!
|
|
Microsoft Client Pc
|
spoolsrv.exe
|
X
|
Added by the W32/Rbot-AQM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Com Port Manager
|
svdhost.exe
|
X
|
Added by the W32/Sdbot-NI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Command C
|
sshost.exe
|
X
|
Added by the W32/Rbot-CMK worm and IRC backdoor.
|
|
Microsoft Conf Ldr
|
sysconf.exe
|
X
|
Added by a variant of the SDBOT TROJAN!
|
|
Microsoft Corp
|
svchosts.exe
|
X
|
Added by the Troj/CeeInjec-E Trojan.
|
|
Microsoft Corp SQL Certificates
|
sqlcer.exe
|
X
|
Added by the W32/Zybot-C worm with IRC backdoor.
|
|
Microsoft Corp Updates
|
synet-ud.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Corp. Host Services
|
svchosl.exe
|
X
|
Added by the W32/Rbot-FMZ worm and IRC backdoor.
|
|
Microsoft Corporaticn SQL Handler
|
sqlhandler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Coyshader Runtime
|
service.exe
|
X
|
Added by the W32/Rbot-GHJ worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. This infection should not be confused w ... Read More
|
|
Microsoft Critical Services
|
svhhost.exe
|
X
|
Added by the W32/Agobot-AJA worm and IRC backdoor.
|
|
Microsoft Device Manager
|
svcswin.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Device Manager
|
svchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft DirectX
|
Spoolserv.exe
|
X
|
Added by the DINFOR WORM!
|
|
Microsoft DirectX
|
SMSS32.exe
|
X
|
Added by the W32/SDBot-FP worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. This in ... Read More
|
|
Microsoft DLL Extensions
|
SystemDll.exe
|
X
|
Added by the W32/Rbot-ADV worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft DLL Host Service
|
svcdllhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft DLL Host Service
|
svcdllhst.exe
|
X
|
Added by the BKDR_AGENT.EAK backdoor Trojan.
|
|
Microsoft DLL Service
|
svcdll.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft DLL System
|
smsc.exe
|
X
|
Added by the W32/Tilebot-FY worm and IRC backdoor.
|
|
Microsoft DLL Verifier
|
svhosts.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft DLL Verifier
|
system33.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Driver Setup
|
sysmngsr322.exe
|
X
|
Added by the Troj/Buzus-AS Trojan.
|
|
Microsoft Driver Setup
|
ssqrm.exe
|
X
|
Added by the Troj/Agent-PNC Trojan.
|
|
Microsoft Explorer
|
svapache.exe
|
X
|
Added by the W32/Rbot-VR worm. When started this infection connects to a remote IRC server where it waits for commands to execute. These infections ... Read More
|
|
Microsoft Firewall
|
suvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Firewall 2.9
|
swo4.exe
|
X
|
Added by the Mal/Agent-NK malware.
|
|
Microsoft Genuine Logon
|
svchost.exe
|
X
|
Added by the W32.Scrimge.A worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Microsoft HDA Protocol
|
svhda.exe
|
X
|
Added by the W32/Agobot-AET worm and IRC backdoor.
|
|
microsoft help
|
svh0st.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM! ... Read More
|
|
Microsoft Help
|
svchosl.exe
|
X
|
Added by the Troj/Agent-GPX Trojan.
|
|
Microsoft Helper
|
soundcard.exe
|
X
|
|
|
Microsoft Himu
|
services.exe
|
X
|
Added by the W32.Himu.A@mm worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
microsoft host protocol
|
svhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft Host Scheduler
|
svchostt32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft IIS
|
syshost.exe
|
X
|
Added by the FRANCETTE WORM!
|
|
Microsoft IIS
|
syshost.exe
|
X
|
Added by the W32/Francette-S worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Intellitype Pro
|
speedkey.exe
|
U
|
Additional keyboard shortcuts on MS programmable keyboard
|
|
Microsoft Internal Service
|
spoolsrv.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Internel Corporat
|
smbvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Internet
|
super.exe
|
X
|
Added by the Troj/Banker-DSM information stealing Trojan for online Brazilian banks. ... Read More
|
|
Microsoft Internet Explorer
|
sysini.exe
|
X
|
Added by the Troj/Delf-LN Trojan. This infection also creates the file c:\windows\Roodaa.txt. ... Read More
|
|
Microsoft Internet Services
|
Smss32.exe
|
X
|
Added by the RBOT.MS WORM!
|
|
Microsoft Intrenet Explorer
|
systemR.com
|
X
|
Added by the W32/Rbot-SH worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
microsoft intrenet explorer
|
Soundsyst.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft IPC
|
system.exe
|
X
|
Added by the NULLBOT TROJAN!
|
|
Microsoft IPC
|
svshost.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Microsoft IT Update
|
svchsst.exe
|
X
|
Added by the RBOT-DH WORM!
|
|
MicroSoft Legal Syst3m32
|
Syst3m32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Microsoft LSASS386 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft Machine
|
system32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Manage Services
|
sychost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Manage Services
|
schost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft MSUPDATE
|
SpoolSvc.exe
|
X
|
Added by the SXTB-A TROJAN!
|
|
Microsoft Network Host
|
svc0host.exe
|
X
|
Added by the W32/Sdbot-AEN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft New Game 2
|
svehost32.exe
|
X
|
Added by the W32/Tilebot-I worm.
|
|
Microsoft Office
|
svxhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Microsoft Office Studio
|
scvhvst.exe
|
X
|
Added by the W32/Sdbot-VQ WORM/Backdoor! File is found in the Windows system folder. ... Read More
|
|
Microsoft OfficeToo
|
svchosts.exe
|
X
|
Added by the W32.Dutan.A removable media worm.
|
|
Microsoft OfficeTool
|
svchosts.exe
|
X
|
Added by the W32.Dutan.A worm.
|
|
microsoft outlook express protocol
|
svchst.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft PC Health Remote Assistance File Open & Save controls
|
sfrcdlg32.exe
|
X
|
Added by the W32/Rbot-AVY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Print Spooler
|
scvhost.exe
|
X
|
Added by the W32/Codbot-EW worm and IRC backdoor. W32/Codbot-EW spreads to other network computers by exploiting common buffer overflow vulnerabilitie ... Read More
|
|
Microsoft Printer Drivers
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft RDLL
|
sysconf32.exe
|
X
|
Added by a variant of the SDBOT TROJAN!
|
|
Microsoft Redirec
|
systen.exe
|
X
|
Added by the Troj/Bancos-FO password-stealing Trojan. This Trojan targets Internet Banking passwords, so if you are infected with this Trojan you sho ... Read More
|
|
Microsoft Registro
|
svchostt.exe
|
X
|
Added by the Troj/Bancos-DH password-stealing trojan. If you are infected with this infection you should change any online banking passwords. ... Read More
|
|
Microsoft Restore
|
scrgrd.exe
|
X
|
Added by the SPYBOT.BR WORM!
|
|
Microsoft Safe Mode Manager
|
safemode.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
microsoft scvhost for windows
|
scvhost.exe
|
X
|
Added by the W32/Randex-S worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
Microsoft SCVHOST32 Protocol
|
scvhost32.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft sdk temp
|
sdktemp.exe
|
X
|
Added by the W32/Rbot-ANP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Secure Messenger.NET Service
|
securitychk.exe
|
X
|
Added by the SDBOT.VT WORM!
|
|
Microsoft Security Center
|
savservices.exe
|
X
|
Added by the W32/Rbot-ANU worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
Microsoft Security Monitor Process
|
svcchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Security Update
|
security32.exe
|
X
|
Added by the Troj/Delf-JJ Trojan! File is found in the Windows system folder.
|
|
Microsoft Server Application
|
Sound.exe
|
X
|
Added by the RBOT-NE WORM!
|
|
Microsoft Server Process
|
svhst32.exe
|
X
|
Added by the W32.Relfeer worm. W32.Relfeer is a worm that spreads through network shares and file-sharing applications. It may also attempt to downloa ... Read More
|
|
Microsoft Service
|
system32.exe
|
X
|
Added by the Troj/Kango-C IRC backdoor Trojan.
|
|
Microsoft Service
|
sysreg11.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Service
|
srvchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Service Boot
|
sboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Service Controller
|
services.exe
|
X
|
Added by the W32.Kalel.B@mm mass-mailing worm. Be careful that you do not delete the legitimate file c:\windows\system32\services.exe. ... Read More
|
|
microsoft service drivers
|
System.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft Service Host Process
|
svchost.exe
|
X
|
Added by the W32/Krynos-B WORM! It will send itself to email addresses it has identified on the infected computer. Found in the Windows Help folder. ... Read More
|
|
Microsoft Service Manager
|
service32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
microsoft service pack2.1
|
svchost2.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft Services
|
services.exe
|
X
|
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Microsoft Services
|
svshost.exe
|
X
|
Added by the ALETS.B TROJAN!
|
|
Microsoft Services
|
SMSS32.EXE
|
X
|
Added by the W32/Rbot-AD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Services Manual Contrl
|
smsks.exe
|
X
|
Added by the WORM_MYTOB.NO mass-mailing worm and IRC backdoor.
|
|
Microsoft Servicez Manager
|
servicemgrz.exe
|
X
|
Added by the W32/Rbot-ASN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Session Manager Subsystem
|
smss.exe
|
X
|
Added by the W32.Kalel.B@mm mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Microsoft Shell Detection
|
svchost.exe
|
X
|
Unidentified malware. Most likely a worm of some sort.
|
|
Microsoft Sidewinder Game Controller Software
|
SWTRAY.EXE
|
N
|
MS SideWinder game controller system tray icon. Available via Start -> Programs
|
|
Microsoft SMSS
|
smss.exe
|
X
|
Added by the Troj/Dloadr-MG Trojan.
|
|
Microsoft Software
|
sysinfo33.exe
|
X
|
Added by the RBOT.LS WORM!
|
|
Microsoft Sound Driver
|
sound32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft Sounds
|
soundman.exe
|
X
|
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
|
|
Microsoft Spool 11 Service
|
spool11.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spool 12 Service
|
spool12.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spool 13 Service
|
spool13.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spool 14 Service
|
spool14.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spool Server for Win32
|
spoolsrv.exe
|
X
|
Added by the RANDEX.H WORM!
|
|
Microsoft Spool Service
|
spool23.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spool Svc
|
spoolsvc32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spooler Service
|
svcwin32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Spooler Services
|
Spoolsv.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft SQL Server Debug
|
sqldebug.exe
|
X
|
Added by the W32/Tilebot-FF worm and IRC backdoor.
|
|
Microsoft SQL Services
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MicroSoft ssas3s1
|
SADASDA.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.eix family of worms and IRC backdoor Trojans. ... Read More
|
|
Microsoft SSISVRI32 Protocol
|
ssisvri.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft SSL
|
ssl.exe
|
X
|
Added by the W32/Cuebot-D worm.
|
|
Microsoft ssrsc update
|
ssrsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Star Window Service
|
starwin32.exe
|
X
|
Added by the W32/Rbot-FNT worm and IRC backdoor.
|
|
Microsoft Star Window Service
|
svcshoter.exe
|
X
|
Added by the W32/Vanebot-T worm and IRC backdoor.
|
|
Microsoft startup
|
SoftwareUpdates.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Startup Manager
|
sysservice.exe
|
X
|
Identified as a variant of the Trj/Botnet.A Trojan.
|
|
Microsoft Sum32
|
sum32.exe
|
X
|
Added by the W32/Rbot-YW WORM/IRC backdoor!
|
|
Microsoft Support
|
sys32ms.exe
|
X
|
Added by the W32/Rbot-AHI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Synchronization Manager
|
slhost.exe
|
X
|
Added by the SDBOT.YH WORM!
|
|
Microsoft Synchronization Manager
|
svhost.exe
|
X
|
Added by the SDBOT-PY WORM!
|
|
Microsoft Synchronization Manager
|
svchosts.exe
|
X
|
Added by the W32/Sdbot-LM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Synchronization Manager
|
svxhost.exe
|
X
|
Added by the W32/Sdbot-ZU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Synchronization Manager
|
screen.exe
|
X
|
Added by the W32/Sdbot-ACO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Synchronization Manager
|
sexcam.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MicroSoft sys32
|
sysmsgr32.exe
|
X
|
Identified as the Backdoor.Wootbot.bce malware.
|
|
Microsoft System Administration
|
system.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft System Checkup
|
sysmgr.exe
|
X
|
Added by the SDBOT-OO TROJAN!
|
|
microsoft system debug
|
services32.exe
|
X
|
Added by the RBOT.AKH WORM! ... Read More
|
|
Microsoft System Management
|
system.exe
|
X
|
Unknown malware.
|
|
Microsoft System Monitor
|
system.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
microsoft system nt
|
svhost.exe
|
X
|
Added by the IRC/SDBOT.COU WORM! ... Read More
|
|
Microsoft System Startup
|
svhost.exe
|
X
|
Added by the W32/Sdbot-AKG worm and IRC backdoor.
|
|
microsoft system update
|
sysupdate.exe
|
X
|
Added by the SDBOT.DG WORM! ... Read More
|
|
Microsoft system Value
|
sys57.exe
|
X
|
A variant of the Win32/Rbot.IKI family of worms and IRC backdoor Trojans.
|
|
Microsoft Task Manager
|
scvhost.exe
|
X
|
Added by the W32/Mytob-IT worm and IRC backdoor.
|
|
Microsoft Updat
|
services.exe
|
X
|
Added by the MSIL.Elasrofah Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services file. ... Read More
|
|
Microsoft Update
|
Smss32.exe
|
X
|
Added by the RBOT.CB WORM!
|
|
Microsoft Update
|
sys32cfg.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft Update
|
systemi32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft Update
|
snlogsvc.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update
|
svhost.exe
|
X
|
Added by the RBOT-PI WORM!
|
|
Microsoft Update
|
sysdll32.exe
|
X
|
Added by a Rbot variant infection.
|
|
Microsoft Update
|
sys.exe
|
X
|
Added by the W32/Rbot-AJ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
sysdat.exe
|
X
|
Added by the W32/Rbot-GH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Microsoft Update
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AEM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
service.exe
|
X
|
Added by the W32/Agobot-GY worm and IRC backdoor.
|
|
Microsoft Update
|
system32.exe
|
X
|
Added by the W32/Rbot-GTK worm and IRC backdoor.
|
|
Microsoft Update
|
SP00lSV.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
svschost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
Sygate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
spool.exe
|
X
|
Added by the Troj/Agent-GJC Trojan.
|
|
Microsoft Update
|
SetPoints.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update 32
|
servic.exe
|
X
|
Added by the W32/Rbot-AXN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update 32
|
spoolvs.exe
|
X
|
Added by the W32/Rbot-BBQ worm and IRC backdoor.
|
|
microsoft update 64 bit
|
schvost.exe
|
X
|
Added by the RBOT.CAU WORM! ... Read More
|
|
Microsoft Update Machine
|
servicz.exe
|
X
|
Added by the RBOT-HU WORM!
|
|
Microsoft Update Machine
|
SP2.exe
|
X
|
Added by the SPYBOT.FP WORM!
|
|
Microsoft Update Machine
|
system03.exe
|
X
|
Added by the RBOT-NM WORM!
|
|
Microsoft Update Machine
|
systemll.exe
|
X
|
Added by the RBOT-JT WORM!
|
|
Microsoft Update Machine
|
svshost.exe
|
X
|
Added by the RBOT.AK WORM!
|
|
Microsoft Update Machine
|
scvhost.exe
|
X
|
Added by the RBOT-GS WORM!
|
|
Microsoft Update Machine
|
servicez.exe
|
X
|
Added by the SPYBOT.BI WORM
|
|
microsoft update machine
|
serviz.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft Update Machine
|
system08.exe
|
X
|
Added by the W32/Rbot-BAM worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Machine
|
System.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Machine
|
svrhost.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Machine
|
syspic9.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Manager
|
scvhost.exe
|
X
|
Added by the W32/Agobot-TV worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Microsoft Update Manager
|
svshost.exe
|
X
|
Added by the W32/Rbot-BAL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Manager
|
scvideo.exe
|
X
|
Added by the W32/Sdbot-CVP worm and IRC backdoor.
|
|
Microsoft update service
|
systemm.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft Updater v2
|
services.exe
|
X
|
Added by the W32/AutoRun-BCI removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Microsoft Updaters
|
SYSCONFIGS.EXE
|
X
|
Added by the W32/Rbot-DF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Updates
|
systemc32.exe
|
X
|
Added by the RBOT-GR WORM!
|
|
Microsoft Updates
|
svshost.exe
|
X
|
Added by the W32/Agobot-AIW network worm.
|
|
Microsoft Updates
|
svehost.exe
|
X
|
Added by the W32/Rbot-GRW worm and IRC backdoor.
|
|
Microsoft Updates
|
svdhost.exe
|
X
|
Added by the W32/Rbot-GVH worm and IRC backdoor.
|
|
Microsoft Updates
|
service.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.hpt backdoor Trojan.
|
|
microsoft updates 5 usb
|
sp3fixer.exe
|
X
|
Added by the W32/Rbot-ADS ... Read More
|
|
microsoft updating machine
|
sysc0de.exe
|
X
|
Added by the RBOT.RB WORM! ... Read More
|
|
Microsoft uptime Service
|
sysuptime.exe
|
X
|
Added by the W32/Rbot-ACG worm. This worm connects to an IRC server on startup where it waits for remote commands. ... Read More
|
|
Microsoft uptime Service
|
sycuptime.exe
|
X
|
Added by the W32/Rbot-AHY worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Value Service
|
spool.exe
|
X
|
Added by the W32/Rbot-GTD worm and IRC backdoor.
|
|
Microsoft Virual Machine
|
sms.exe
|
X
|
Added by the RBOT-SP WORM!
|
|
Microsoft Visual SourceSafe
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS!. Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup or the Mic ... Read More
|
|
Microsoft Webserver
|
svctrl.exe
|
U
|
Personal web server program which enables you to create and host a web server from your computer. Not required for most people ... Read More
|
|
Microsoft Windows
|
system.exe
|
X
|
Added by the W32/Rbot-AMQ worm and IRC backdoor.
|
|
Microsoft Windows
|
System.exe.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows 128bit Subsystem
|
system12.exe
|
X
|
Added by the Troj/Ranck-CZ HTTP proxy server Trojan.
|
|
Microsoft Windows BDA Service
|
svhba.exe
|
X
|
Added by the W32/Vanebot-P worm and IRC backdoor.
W32/Vanebot-P spreads:
- to computers vulnerable to common exploits, including ... Read More
|
|
Microsoft Windows Explorer Shell Subsystem
|
shell32.exe
|
X
|
Added by the W32/Tilebot-CX worm and IRC backdoor.
|
|
Microsoft Windows HelpFile
|
services.exe
|
X
|
Added by the W32/Tilebot-FQ worm and IRC backdoor. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\servic ... Read More
|
|
Microsoft Windows Security
|
spvsper.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft Windows Services
|
Sersices.exe
|
X
|
Added by the W32/Sdbot-NO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Windows Services Edt
|
ssvvcchhoosst.exe
|
X
|
Added by the W32/Rbot-FYF worm and IRC backdoor.
|
|
Microsoft Windows Session Manager Subsystem
|
smss.exe
|
X
|
Added by the Troj/KillSec-A Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
|
|
Microsoft Windows Sound
|
svghost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Sound
|
svrhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Sound
|
svshost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Sound Drivers
|
sounddrivers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows System
|
syshost.exe
|
X
|
Added by the W32/Rbot-ASW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Windows System
|
srwhost.exe
|
X
|
Added by the W32/Rbot-AWU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Windows System Kernel Initializer
|
SysInt32.exe
|
X
|
Added by the Troj/Sdbot-EK backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
microsoft windows updata
|
scvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft Windows Update
|
spools.exe
|
X
|
Added by the SDBOT.TD WORM!
|
|
Microsoft Windows Update
|
svchos.exe
|
X
|
Added by the SDBOT.AC WORM!
|
|
Microsoft Windows Update
|
svcshost.exe
|
X
|
Added by the FORBOT-CF WORM!
|
|
Microsoft Windows Update
|
svmhost.exe
|
X
|
Added by the FORBOT-CH WORM!
|
|
Microsoft Windows Update
|
svshost.exe
|
X
|
Added by the WOOTBOT.CJ WORM!
|
|
Microsoft Windows Update
|
scvvhost.exe
|
X
|
Added by the FORBOT-DH WORM!
|
|
Microsoft Windows Update
|
servcs.exe
|
X
|
Backdoor.Sdbot.A backdoor Infection! Found in the Windows system directory.
|
|
Microsoft Windows Update
|
swwhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Microsoft Windows Update
|
svzhost.exe
|
X
|
Added by the W32/Forbot-EV WORM/IRC backdoor trojan, which also installs a new service called Microsoft Update. ... Read More
|
|
Microsoft Windows Update
|
scrhost.exe
|
X
|
Added by the W32/Rbot-AOW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
microsoft windows update
|
sccvhost.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Microsoft Windows Update
|
syssinfos.exe
|
X
|
Added by the W32/Rbot-FWR worm and IRC backdoor. W32/Rbot-FWR spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Microsoft Windows Update
|
srshost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
symantec.exe
|
X
|
Added by the Backdoor.Belmoo backdoor. Backdoor.Belmoo is a Trojan horse that opens a back door on the compromised computer. ... Read More
|
|
Microsoft Windows Update Service
|
services.exe
|
X
|
Added by the W32/Tilebot-DJ worm and IRC backdoor.
|
|
Microsoft Windows Updater
|
svchostz.exe
|
X
|
Added by the DAEMONI-E TROJAN!
|
|
microsoft windows updater
|
suvhost.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Microsoft Winsock
|
svchost.exe
|
X
|
Added by the Troj/Bckdr-QLX backdoor Trojan.
|
|
Microsoft WinUpdate
|
svh0st.exe
|
X
|
Added by the SPYBOT.DL WORM!
|
|
Microsoft WinUpdate
|
syslx32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Microsoft WinUpdate
|
syswin32.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft WinUpdates
|
serm32.exe
|
X
|
Added by the RBOT.GE WORM!
|
|
Microsoft Word System
|
sysword.exe
|
X
|
Added by the W32/Sdbot-ALY worm and IRC backdoor.
|
|
Microsoft Wxdate
|
Syswu32.exe
|
X
|
Added by the SPYBOT.HZ WORM!
|
|
Microsoft's System Module
|
Sysmodule.exe
|
X
|
The Troj/Bdoor-FJ backdoor TROJAN adds the file to allow an attacker unauthorized remote access. ... Read More
|
|
Microsoft(R) System Manager
|
sysmgr.exe
|
X
|
Added by the Trojan.Donbot Trojan. Trojan.Donbot is a Trojan horse that sends spam emails and may also download files on to the compromised computer. ... Read More
|
|
Microsoft--Updates
|
sxvhost.exe
|
X
|
Added by the RBOT-FH WORM!
|
|
Microsoft-Updates
|
svxhost.exe
|
X
|
Added by the RBOT-CT WORM!
|
|
Microsoft? Operating System:
|
svchost.exe
|
X
|
Added by the Troj/Agent-PAF Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
MicrosoftCorp
|
sysdiag64.exe
|
X
|
Added by the Troj/Agent-NXB Trojan.
|
|
Microsoftf DDEs Control
|
soff.pif
|
X
|
Added by the W32/Rbot-AKH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoftf smss Control
|
smss.pif
|
X
|
Identified as a variant of Backdoor.Win32.Rbot.gen worm and IRC backdoor.
|
|
Microsoftkeysd
|
systemproc.exe
|
X
|
Added by the FORBOT-BI WORM!
|
|
Microsoftkeysd
|
systemwin32s.exe
|
X
|
Added by the WOOTBOT.CO WORM!
|
|
microsoftkeysd
|
systemwin32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
MicrosoftNAPC
|
sysdiag64.exe
|
X
|
Added by the W32/AutoInf-AB removable media worm.
|
|
MicrosoftOEM
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
MicrosoftShell
|
Shellcomm.exe
|
X
|
Added by the Troj/Bancban-QG Trojan.
|
|
MicrosoftSys
|
SPOOLSYS.exe
|
X
|
Added by the PWSteal.Tarno.N password-stealing Trojan.
|
|
MicrosoftUpdate
|
syshelper.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
MicrosoftUpdate
|
svhest.exe
|
X
|
Added by the W32/Rbot-ES trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
microsoftupdates
|
syshelped.exe
|
X
|
Added as result of a W32/Forbot-AZ worm infection ... Read More
|
|
MicrosoftValue
|
syscnfg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
|
|
Microsoftvirus
|
sysoverload.exe
|
X
|
Added by the FORBOT-AL WORM!
|
|
Microsoft« ActiveX Debugger NT
|
setdebugnt.exe
|
X
|
Added by the Troj/Bancos-CZ Internet banking trojan. This infection targets Brazilian banks. ... Read More
|
|
Microsoft® System Manager
|
sysmgr.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Agent.cse malware.
|
|
Microsoft® System Mapper
|
SysMap.exe
|
X
|
Added by the MAPSY TROJAN!
|
|
Microsong
|
svchosts11.exe
|
X
|
Added by the Troj/Sdbot-EV backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
microssofts
|
scvhosts.exe
|
X
|
Added by the Troj/Inject-GG Trojan.
|
|
microsystem
|
snddrv.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan.Win32.VB.axg.
|
|
Microszoft Update Mach1nezs
|
svchst.exe
|
X
|
Added by the RBOT-ED WORM!
|
|
Microszoft Update Mach1nezs
|
SVCOHST.EXE
|
X
|
Added by the W32/Rbot-EG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microtek Scanner Finder
|
ScannerFinder.exe
|
N
|
Part of the Microtek Scanner software that detects whether you have a Microtek scanner connected. ... Read More
|
|
Mims service
|
services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\servic ... Read More
|
|
Mini USB Driver
|
svñhîst.exe
|
X
|
Added by the Troj/Proxy-CY Trojan.
|
|
Mircosoft DNS Service
|
svchost.exe
|
X
|
Added by the Troj/IRCBot-AK worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Mircrosoft Svchost32
|
svchost32.exe
|
X
|
Added by the W32/Rbot-AZW WORM/IRC backdoor trojan!
|
|
Mirsft sdce
|
servs.exe
|
X
|
Added by a variant of the Rbot worm and IRC backdoor.
|
|
MM Install
|
setup.exe
|
?
|
Possibly Money Manager from Moneysoft?
|
|
Mmsystem
|
Sachiel.sys.bat
|
X
|
Added by the W32/Sachiel-D worm.
|
|
ModularConfig
|
syscnfg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
|
|
Modulo 00FE0F01 Host Internet
|
syschost.exe
|
X
|
Added by the Troj/Delf-KW backdoor Trojan.
|
|
monitor
|
SD Monitor.exe
|
U
|
Related to SanDisk(1086)-Readers_Writers_and_Adapters.aspx Readers, Writers and Adapters. Transfer data quickly between your memory card and your com ... Read More
|
|
Monitor Resolution
|
svmhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Monitoring Service
|
svchost.exe
|
X
|
Added by the CONE.C WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
monitorsd
|
SDMonitor.exe
|
U
|
Max Spyware Detector
|
|
MotherBoard Sounds
|
SOUNDS.EXE
|
X
|
Added by the W32/Rbot-AAP WORM/IRC backdoor trojan!
|
|
MouTALS
|
SMTPCONFS.DLL
|
X
|
Added by the Troj/QQHelp-DY Trojan.
|
|
Mp3 Loader
|
Sysdata.EXE
|
X
|
Added by the W32/Avette-A MP3 virus.
|
|
MRU-Blaster Scheduler
|
scheduler.exe
|
U
|
MRU-Blaster scheduler - detects and cleans MRU (most recently used) lists on your computer ... Read More
|
|
ms
|
svhost32.exe
|
X
|
Added by the Troj/Lineag-AEV password-stealing Trojan for the online game Lineage. ... Read More
|
|
MS Config Loader
|
svchos1.exe
|
X
|
Added by the AGOBOT.R WORM!
|
|
MS Scandisk
|
Scandisk.exe
|
X
|
Added by the Backdoor.AntiLam backdoor.
|
|
MS Screen Saver
|
scrsave.scr
|
X
|
Added by the W32/Rbot-AGT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MS Security
|
systm.pif
|
X
|
Added by the W32/Rbot-AQN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
MS Security Hotfix
|
service5.exe
|
X
|
Added by the GAOBOT.AG WORM!
|
|
MS Shadow Copy Software
|
scsoft.exe
|
X
|
Added by the W32/Tilebot-JP worm and IRC backdoor.
|
|
MS Software Generic Host Process for Win32 Services
|
svchost.exe
|
U
|
Added by the Spyware.AdvancedKey surveillance software. This software should be uninstalled if it was not installed by yourself. Note: This is not the ... Read More
|
|
MS Sound Config 16bit
|
sndcfg16.exe
|
X
|
Added by the SDBOT.MB TROJAN!
|
|
MS SyS Restore
|
sysrestore.exe
|
X
|
Added by the RBOT.XM WORM!
|
|
MS Update
|
syshost.exe
|
X
|
Added by the EVAMAN-F WORM!
|
|
MS Updates
|
syshosts.exe
|
X
|
Added by the MYDOOM.Y WORM!
|
|
ms valud loader
|
Svhots.exe
|
X
|
Added by the W32/AGOBOT-SP WORM! ... Read More
|
|
MS Windows Update
|
scguard.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
msaconfig
|
smss.exe
|
X
|
Added by the Troj/Agent-GZT Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
MSChoExE
|
suge.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
msconfig
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
MSConfig32
|
smss32.exe
|
X
|
Added by the Troj/Flood-EL TROJAN/backdoor.
|
|
MSConfig64
|
smss64.exe
|
X
|
Added by the Troj/Flood-ES Trojan.
|
|
Msconfige
|
solari.exe
|
X
|
Added by the W32/Autorun-GU removable media worm.
|
|
MSCORE
|
syscnfg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
|
|
MSDLL
|
syscnfg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
|
|
mserv
|
seres.exe
|
X
|
Added by the W32/Agent-LIL worm.
|
|
msgserv_
|
Syss.exe
|
X
|
Added by the FANTA TROJAN!
|
|
Msgtray
|
sys16.exe
|
X
|
Added by an unknown VIRUS!
|
|
MSInstall
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
MSkernel32
|
System.exe 4820
|
X
|
Added by the TUXDER TROJAN!
|
|
MSKExe
|
spamkiller.exe
|
U
|
|
|
MSLARISSA
|
SP00Lsv32.pif
|
X
|
Added by the W32/Assiral-B WORM! This worm will also install and run a file C:\WINDOWS\WinVBS.vbs to restrict user activity and terminate processes. ... Read More
|
|
mslivemsn
|
svchost.exe
|
X
|
Added by the Troj/Delf-FIC Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
msn
|
system32.exe
|
X
|
Added by the KITRO.A WORM!
|
|
MSN
|
serv5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
MSN
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
MSN
|
servicess.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
MSN
|
scvhost.exe
|
X
|
Added by the W32/IRCBot-ZW worm and IRC backdoor.
|
|
MSN
|
SexyMama.JPG.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
systems.exe
|
X
|
Identified as a variant of the Backdoor.PosionIvy keylogging malware.
|
|
MSN
|
scvrun.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
svhost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
MSN Beta
|
SVCHOSTdll.exe
|
X
|
Added by the W32/Rbot-WF WORM! File is found in the Windows system folder.
|
|
MSN BETA
|
SERVICE.EXE
|
X
|
Added by the W32/Rbot-WZ WORM/backdoor Trojan to the Windows system folder.
|
|
MSN Messanger
|
System.exe
|
X
|
Added by the Troj/IrcBot-AFX Trojan.
|
|
MSN MESSENGER
|
svhostes.exe
|
X
|
Added by the W32/Rbot-FAG worm and IRC backdoor.
|
|
MSN Messenger Updater
|
SVCHSST.exe
|
X
|
Added by the W32/Rbot-BIR worm and IRC backdoor.
|
|
msn updates
|
spoolsv32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
msn.exe
|
son.exe
|
X
|
Added by the Troj/StartPa-GS trojan.
|
|
msnager32
|
svchostt.exe
|
X
|
Added by the WOMANIZ.E TROJAN! ... Read More
|
|
MsnExplorer
|
SHCH.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN
|
|
MsnExplorer
|
SVCHST.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN
|
|
MsnExplorer
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
MSNMSGRE
|
swef.bat
|
X
|
IRC backdoor TROJAN or WORM!
|
|
MSNMSGRR
|
swin.bat
|
X
|
IRC backdoor TROJAN or WORM!
|
|
msnmsgrs
|
swiss.bat
|
X
|
IRC worm or backdoor trojan!
|
|
MSNMSGRS1
|
swed.bat
|
X
|
IRC backdoor TROJAN or WORM!
|
|
MSNPluginSrvcs
|
sagate.exe
|
X
|
Added by the SDBOT.AKJ WORM!
|
|
MSOffice
|
services.exe
|
X
|
Browser hijacker. The file is placed in a newly created MSOffice folder in System32. Note - this is NOT the legitimate services.exe process, which sho ... Read More
|
|
msofficecfg
|
ssvr.exe
|
X
|
Premium rate adult material dialer
|
|
msoft-updater23
|
slssystem.exe
|
X
|
Added by the W32/Rbot-ASR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MSOLESTARTUP5.0
|
socrin.exe
|
X
|
Added by the Troj/Agent-GKH Trojan.
|
|
MSRegScan
|
SGP.exe
|
U
|
Added by the Spyware.SpyGator surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
|
|
msregscan
|
SSDemo.exe
|
X
|
Added by the Supremespy ... Read More
|
|
MSRegScan
|
SBPDemo.exe
|
U
|
Added by the Spyware.SpyBossPro surveillance software. Spyware.SpyBossPro is a spyware program that records keystrokes from the computer. This softwar ... Read More
|
|
mssend
|
svcnost.exe
|
X
|
Added by the Mal/Hrup-C malware.
|
|
mssfos
|
sfool.exe
|
X
|
Added by the W32.Randex.EUS ... Read More
|
|
MSSQL2K6
|
sqlsrv.exe
|
X
|
Added by the W32/Tilebot-AV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MSSVC
|
svcsys.exe
|
X
|
Added by the FATOOS-C TROJAN!
|
|
MSSVC
|
SVCHOST.EXE
|
X
|
Added by the Troj/Sandor-C backdoor trojan.
|
|
MSSYSTEM
|
svcsys.exe
|
X
|
Added by the FATOOS-C TROJAN!
|
|
MStask
|
svchost.exe
|
X
|
Added by the Troj/LdPinch-BV password-stealing Trojan.
|
|
MSUpdate
|
svchosthlp.exe
|
X
|
Added by the BLASTER.T WORM!
|
|
msupdate
|
soemuav.dll
|
X
|
Added by the Troj/Dloadr-ASQ Trojan.
|
|
Msupdate
|
svcrhost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Msupdate
|
svcshost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
MsVBdll
|
sys32dll.exe
|
X
|
Added by the W32/Aimdes-C WORM to insure automatically running, it will exploit AOL instant messenger and harvest email addresses. ... Read More
|
|
msvcc25
|
svcchost.exe
|
X
|
Added by the W32/Sdbot-CSE worm and IRC backdoor.
|
|
msvcc25
|
salvage.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
msvccc66
|
svcchosst.exe
|
X
|
Added by the W32/Rbot-GLS worm and IRC backdoor.
|
|
MSWindows
|
spool16.exe
|
X
|
|
|
MsWindows SysDate
|
sysmsvc.exe
|
X
|
Added by the SPYBOT.FCD WORM!
|
|
MSWindowsUpdate
|
Systern.exe
|
X
|
Added by the W32/Rbot-AFDworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
MsWinLibrary
|
scvhost.exe
|
X
|
Added by the Troj/Banker-CLI information stealing Trojan for online banking sites. If you are infected with this Trojan you should immediately change ... Read More
|
|
MSWinlogon
|
SynCor.exe
|
X
|
Added by the Troj/Agent-FZL Trojan.
|
|
mswspl
|
searchbarcash.exe
|
X
|
SearchBarCash adware
|
|
MutexServiceEx
|
Sys32Smm.exe
|
N
|
Webroot Sofware's discontinued "Privacy Master"
|
|
MVSvcs
|
svchost.exe
|
X
|
Added by the Troj/Bishin-A Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
My App
|
SMSSvc.exe
|
X
|
Added by the NEGASMS.A TROJAN!
|
|
My Search Bar Eq
|
S4BAREQ.EXE
|
X
|
|
|
Myapp
|
service.exe
|
X
|
Homepage hijacker
|
|
MyApp
|
SVCHOST32.EXE
|
X
|
Added by the W32/Autorun-DW removable media worm.
|
|
myCIO.com Splash
|
Splash.exe
|
N
|
Splash screen for McAfee VirusScan ASaP on-line scanner
|
|
MyVBApp
|
SysNT.exe
|
X
|
Added by the Adware.ReferAd adware.
|
|
N/A
|
system32.exe
|
X
|
Added by the AGOBOT-KU WORM! Note - has a blank entry under the Startup Item/Name field ... Read More
|
|
NAV Agent
|
systems.exe
|
X
|
Added by the TARNO.C TROJAN! Note - this is not the valid Norton Antivirus entry of the same name ... Read More
|
|
NAV Auto Updates
|
slserves.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
NAV Auto Updates
|
slserver.exe
|
X
|
Unidentified Rbot worm.
|
|
NavAgent32
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
navcheck
|
shman.exe
|
X
|
Adult material premium rate dialer
|
|
navman_20
|
sysnav32.exe
|
X
|
Hijacker, possibly a CoolWebSearch variant
|
|
NAVUpdater32
|
services.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.WinSpy.l malware. ... Read More
|
|
NB Start Menu
|
STARTM.EXE
|
N
|
Part of McAfee Nuts & Bolts. Provides the same control as MSCONFIG and can be used instead if you have N&B ... Read More
|
|
NDAv
|
SVHOST.EXE
|
X
|
Added by the W32/Sumom-C instant messenger and P2P worm.
|
|
NDIS Adapter
|
servenxpp.exe
|
X
|
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displaynam ... Read More
|
|
NDIS TCP Layer Transport Device
|
servenxpp.exe
|
X
|
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. ... Read More
|
|
Negative
|
spain.exe
|
X
|
Added by the Troj/Banker-EXJ online banking Trojan.
|
|
Nero Burner
|
svdhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Net
|
services.exe
|
X
|
Added by the Troj/Bravo-C Trojan.
|
|
Net
|
sllserv.exe
|
X
|
Added by the Troj/LegMir-BW Trojan.
|
|
Net Login
|
serviecs.exe
|
X
|
Added by the Troj/Bckdr-QSV backdoor Trojan.
|
|
Net Login
|
svchost.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.cps malware.
|
|
Net.Tcp Port Sharing Service
|
SMSvcHost.exe
|
U
|
Used by Microsoft's .NET Framework 3.5.
|
|
Net.Tcp Port Sharing Service
|
SMSvcHost.exe
|
Y
|
Windows service that provides ability to share TCP ports over the net.tcp protocol. ... Read More
|
|
net32
|
svhost.exe
|
X
|
Identified as Trojan.Clicker.
|
|
net64
|
svhoster.exe
|
X
|
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
|
|
NetBios Ext
|
services.exe
|
X
|
Added by the W32.Mydoom.AB@mm worm. Note: This should not be confused with the legitimate windows file, services.exe, found in the Windows System32 fo ... Read More
|
|
NetBios Ext32
|
services.exe
|
X
|
Added by the W32.Mydoom.AN@mm worm.
|
|
netc
|
svc.exe
|
X
|
Identified by Bitdefender antivirus as the Trojan.Dropper.LDPinch.Q malware.
|
|
netctrol
|
sysi.dll
|
X
|
Added by the Troj/Singu-BB Trojan.
|
|
netpker
|
svchost.exe
|
X
|
Added by the Troj/Banloa-ER Trojan.
|
|
netscreen-remote
|
SafeCfg.exe
|
U
|
NetScreen_Remote VPN Client Software ... Read More
|
|
netservices
|
svchostn.exe
|
X
|
Added by the SDBOT.GI WORM! ... Read More
|
|
NetStart
|
svchost.exe
|
X
|
Added by the W32/Mkar-A backdoor virus. This infection should not be confused with the legitimate svchost.exe found in the Windows %System% folder. ... Read More
|
|
netsv32
|
sv.exe
|
X
|
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
|
|
netw
|
svw.exe
|
X
|
|
|
network
|
str.exe
|
X
|
Added by the W32.Kasimod.A worm.
|
|
Network Configuration Security Manager
|
secure32.exe
|
X
|
Added by the W32/Sdbot-AVZ worm and IRC backdoor.
|
|
Network DDE DSMA
|
svchost.exe
|
X
|
Added by the W32/Sdbot-BDV worm and IRC backdoor.
|
|
Network Drivers Service
|
svchost.exe
|
X
|
Added by the Troj/Xbot-F backdoor Trojan. This infection also creates the files C:\Windows\dlcomcnf.exe and C:\Windows\svchost.ini. This file, svchos ... Read More
|
|
Network Location Manager
|
svshost.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Rbot.eoo worm and IRC backdoor.
|
|
Network maneger
|
svchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\svchos ... Read More
|
|
Network remote assistant
|
svchost.exe
|
X
|
Added by the W32.Ranetif worm. W32.Ranetif is a worm that opens a back door and infects files. This infection should not be confused with the legitima ... Read More
|
|
Network Security
|
secsvc.exe
|
X
|
Added by the W32/Rbot-ALX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Network Security Provider
|
svshost.exe
|
X
|
Identified as the Backdoor.Win32.SdBot.caq worm and IRC backdoor.
|
|
Network Service
|
svchost.exe
|
X
|
CoolWebSearch parasite related. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Network Services
|
Service.exe
|
X
|
Added by the W32/Shahrokh-A worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Networok Derve H1ots
|
serop.exe
|
X
|
Added by the Troj/GrayBrd-I backdoor Trojan.
|
|
netx
|
svx.exe
|
X
|
Identified by Bitdefender as a variant of the Trojan.Dropper.LDPinch.Q Trojan.
|
|
netzip
|
svzip.exe
|
X
|
Identified by Normon antivirus as the W32/Zapchast.AQK malware.
|
|
Net_Login
|
svchust.exe
|
X
|
Identified as a variant of the Trojan-Clicker.Win32.Delf.cpm malware.
|
|
New Anti Virus
|
System.exe
|
X
|
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
nForce Tray Options
|
sstray.exe
|
N
|
nVidia nForce Taskbar Utility - quick access to the nForce2 "Sound Storm" control panel and related utilitys ... Read More
|
|
Nod32 Runtime
|
sysregi.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
nonep
|
sample.exe
|
X
|
Added by the Troj/Agent-OTO Trojan.
|
|
NoooH
|
Sys.exe
|
X
|
Added by the W32.Alnuh worm. W32.Alnuh is a worm that copies itself to removable drives and closes Registry Editor, Task Manager, Command Prompt and F ... Read More
|
|
Norton Antivirus 2004
|
SYMANTECAV2.EXE
|
X
|
Added by the W32/Spybot-DY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Norton Auto-Protect
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
Norton Live Updater
|
Sochost.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Norton System
|
svchosts.exe
|
X
|
|
|
Norton System Doctor
|
Sysdoc32.exe
|
N
|
Norton Disk Doctor from Norton Utilities. Automatically runs at start-up, major resource hog and best started manually form Start -> Programs. Delete ... Read More
|
|
Nortons AV SYSTEM
|
scvchost.exe
|
X
|
Added by a Rbot variant infection.
|
|
NortonVPlus
|
svchost.exe
|
X
|
Added by the Troj/Roamer-A Trojan.
|
|
NovastorSchedulerd
|
SCHENGD.EXE
|
U
|
NovaStor NovaBACKUP Scheduler - back-up utility. If you don't have regularly scheduled back-ups you don't need it ... Read More
|
|
NSystemMonitor
|
Symmon.exe
|
N
|
Norton Uninstall Deluxe - monitors programs being installed and logs them for removing later. Available via Start -> Programs for manual logging ... Read More
|
|
NT Logging Service
|
Syslog32.exe
|
X
|
Added by the DONK.B or DONK.C or DONK.L or DONK.M or DONK.O WORMS!
|
|
NT Logging Service
|
sysmgr.exe
|
X
|
Added by the W32/Sdbot-OO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
NT Printing Service
|
spoolsc.exe
|
X
|
Added by the Troj/Buzus-K Trojan.
|
|
NTFS Storage
|
services.exe
|
X
|
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file c:\Windows\System ... Read More
|
|
NTFS-Drivers
|
svchost.exe
|
X
|
Identified by Sophos as Mal/Generic-A. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
NtLmSsp
|
system.com
|
X
|
Added by the Troj/Bckdr-BMR backdoor Trojan.
|
|
ntpgds
|
synctime.exe
|
Y
|
Related to the Oracle Database software.
|
|
NTSet32
|
services.exe
|
X
|
Added by the Troj/WinSpy-C Trojan.
|
|
NTSF MICROSOFT SYSTEM
|
soscks32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
sysman.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
systems.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ntuser
|
spool.exe
|
X
|
Identified as a variant of the Trojan.Spy.XUL Trojan.
|
|
ntuser
|
spools.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.jjt malware.
|
|
ntuser
|
svchost.exe
|
X
|
Identified as a variant of the WORM_SOCKS.D malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
NT_Authority
|
svchost.exe
|
X
|
Added by the W32/Kukoo-B worm.
|
|
NvClipRsv
|
svchost.exe
|
X
|
Added by the DUMARU-AK WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
NvClipRsv
|
swchost.exe
|
X
|
Added by the DUMARU-AK WORM!
|
|
NvCplDeamon
|
servise.exe
|
X
|
Added by the W32/Autorun-BNY removable media worm.
|
|
NvCplSystem
|
system.exe
|
X
|
Added by the Troj/Small-CBS Trojan.
|
|
NvMediaCenter2
|
stacvs.exe
|
X
|
Added by the Troj/Banker-EOV information-stealing Trojan for online banks.
|
|
nwss
|
Sp0.exe
|
U
|
Added by the SpyOutside surveillance software. Uninstall this software unless you put it there yourself. ... Read More
|
|
OD
|
SYSCNTR.EXE
|
X
|
HotVideo dialler
|
|
OEM32 Tools
|
sres32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Oesi
|
srts.exe
|
X
|
PurityScan delivers advertisements to your computer.
|
|
Office Monitor Word Exel R
|
svch.exe
|
X
|
Added by the Troj/DwnLdr-GWW Trojan.
|
|
officeagent
|
svcshost.exe
|
X
|
Added by the WIN32.TACTSLAY.A TROJAN! ... Read More
|
|
OfficeAgent
|
svcrhost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
officeguardui
|
svcss.exe
|
X
|
Added by the DEDLER-C TROJAN! ... Read More
|
|
OLE Module
|
smp.dll
|
X
|
Added by the Trojan.SpBot Trojan.
|
|
Olive System
|
Szchost.exe
|
X
|
Added by the MERCURYCAS.A TROJAN!
|
|
OmniPass
|
scureapp.exe
|
U
|
OmniPass from Softex Inc. - secure password management software
|
|
Online Service
|
svchost.exe
|
X
|
Added by the HOSTIDEL.B or HOSTIDEL.C or TARNO.B TROJANS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/St ... Read More
|
|
OnlinePCfix SmoothSurfer
|
SS.exe
|
U
|
Smooth-Surfer - blocks banners, ads, popups, and cleans MRU and Recent file lists ... Read More
|
|
onluna sarvice
|
sachost.exe
|
X
|
Added by the TROJ/TOFGER-AA TROJAN! ... Read More
|
|
Onlune Sarvice
|
sachost.exe
|
X
|
Added by the Troj/Multidr-E Trojan.
|
|
only23
|
SCVHOST.exe
|
X
|
Added by the Troj/Bckdr-PUQ backdoor Trojan.
|
|
Operalaunch
|
svhost.exe
|
X
|
Added by the W32/Agent-IBD worm.
|
|
Outwar
|
syslaunch.exe
|
X
|
Outwar adware downloader
|
|
P0w3rF1Y
|
svchost.exe
|
X
|
Added by the Troj/Bdoor-MM backdoor Trojan.
|
|
paint.exe
|
shnlog.exe
|
X
|
Added by the Troj/Puper-A trojan.
|
|
Panda File Shield Driver
|
ShlDrv51.sys
|
Y
|
Driver used by Panda Antivirus.
|
|
PAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32.Mytob.KM@mm worm and IRC backdoor.
|
|
pc dynamics sdwmon32
|
sdwmon32.exe
|
U
|
SafeHouse "Personal Privacy" protects and hides your private and personal photos, videos, files and folders by making them "invisible" and encrypted. ... Read More
|
|
PCCleaner
|
SysCleaner.exe
|
X
|
Added by the PCCleaner rogue security software. This software is a clone of DriveCleaner and provides exaggerated scan results so that you purchase t ... Read More
|
|
PcEXPLODE
|
specialfile.exe
|
X
|
Added by the RBOT.RH WORM!
|
|
PCHEasySearch
|
STUpdate.exe
|
X
|
PCH EasySearch bar
|
|
pcServer
|
server.exe
|
X
|
|
|
pcServer
|
server.exe
|
X
|
Added by the SSPPYY spyware.
|
|
PCToolPro
|
SysRep.exe
|
X
|
Added by the PCToolPro rogue anti-spyware program.
|
|
pctp_check
|
startmon.exe
|
X
|
Main executable for PC Turbo Pro. This software is considered a rogue security product due to its use of malware to advertise itself. ... Read More
|
|
PDA Commander
|
stisvc32.exe
|
X
|
Added by the W32/Agobot-TX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Perfomance Logs and Alert
|
Spoolsw.exe
|
X
|
Added by the Troj/Agent-DJH backdoor Trojan.
|
|
Perfomance Settings
|
svchost.exe
|
X
|
Added by the Troj/Tofger-AP backdoor Trojan.
|
|
Performance Logs and Alerts
|
smlogsvc.exe
|
N
|
This is a Microsoft services that collects performance data from various applications running on a Windows computer. This service should be set to ma ... Read More
|
|
Persistence ! System
|
spoolsvr32.exe
|
X
|
Added by the Troj/Spy-UO information-stealing Trojan.
|
|
Personal Computer
|
scvhost.exe
|
X
|
Added by the W32/Rbot-AJE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
PHIME2002A
|
svchost.exe
|
X
|
Added by the W32/Puress-B worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
Photoshop
|
svchost.exe
|
X
|
Added by the Troj/Cdopen-E Trojan. Note: This should not be confused with the legitimate svchost.exe in your Windows system folder. ... Read More
|
|
Picture Motion Browser Media Check Tool
|
SPUVolumeWatcher.exe
|
U
|
Part of the software bundled with Sony Digital Cameras. This program will monitor for when media is inserted into your computer and then ask if you w ... Read More
|
|
pictureBUZZTray
|
swtray.exe
|
N
|
System Tray access to PictureBUZZ on-line printing software from Streetwise Software. If you use the software set the page you use as a favourite in y ... Read More
|
|
Pigeon_Server
|
server.exe
|
X
|
Added by the Troj/Feutel-AQ backdoor Trojan. This infection also creates the files c:\windows\server.dll and c:\windows\server_HOOk.DLL. ... Read More
|
|
pile scr
|
Save peak.exe
|
X
|
Added by the Troj/KillAV-ED Spyware Trojan.
|
|
Piracy
|
SysUtil.exe
|
N
|
Software Piracy Alert feature bundled with PGWare software. Cries foul when it detects an 'illegal' version. The alerts are reported to disappear as s ... Read More
|
|
Play Port I/O Driver
|
sysdrv32.sys
|
X
|
Added by the W32/Rbot-GXK worm and IRC backdoor.
|
|
Pluto! Pager
|
srvhandle.exe
|
X
|
Added by the W32.Redplut worm. This worm spreads through open shares and installs these other files: C:\Windows\System32\lcc.exe, C:\Windows\System32 ... Read More
|
|
pnpsvc
|
svchost.exe -k netsvcs
|
X
|
Added by Troj/StartPa-FP as a new service, using "Plug and Play svc service" as a displayname. ... Read More
|
|
pnpsvc_lock
|
startsvs.exe
|
X
|
Browser hijacker
|
|
poen
|
svch0st.exe
|
X
|
Added by the W32/Wantok-A worm.
|
|
PoliceService
|
srksrv.exe
|
X
|
Unknown malware.
|
|
Policies
|
server.exe
|
X
|
Added by the W32.Spyrat worm. W32.Spyrat is a worm that copies itself using removable drives and file-sharing networks. It also opens a back door on t ... Read More
|
|
Power Adapter
|
svchost.exe
|
X
|
Added by the Troj/Maran-K Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Power Manager
|
svchost.exe
|
X
|
Added by the Virus.Win32.Hidrag.a virus. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
PowerManager
|
Svchost.exe
|
X
|
Added by the JEEFO VIRUS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
PowSet
|
Setpow.nec
|
U
|
Energy Start (Energy Star) power configuration startup settings for certain Packard Bell computers. ... Read More
|
|
PPK Setup(Server)
|
SEServe.exe
|
U
|
Programmable Power Key on Sony Vaio laptops. "Using the Programmable Power Key (PPK) button, collect your e-mail automatically with one key stroke. Yo ... Read More
|
|
precpop2
|
starter.exe
|
X
|
PrecisionPop adware
|
|
PrevxHome
|
SAGUI.exe
|
Y
|
PrevX Home intrusion prevention software
|
|
PrevxPro
|
SAGUI.exe
|
Y
|
Pro version of PrevX Home intrusion prevention software
|
|
print services
|
spolserv32.exe
|
X
|
Added by the RBOT.ZP WORM! ... Read More
|
|
print sharing
|
start.bat
|
X
|
Added by the ZCREW TROJAN!
|
|
Print Spool Handler
|
spooler.exe
|
X
|
Added by the W32/Codbot-X worm.
|
|
Print Spooler
|
Spoolsv.exe
|
X
|
Added by the CIADOOR.B TROJAN! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.exe ... Read More
|
|
Print Spooler
|
spoolsvc32.exe
|
X
|
Added by the SDBOT.BB TROJAN!
|
|
Print Spooler
|
spools.exe
|
X
|
Added by the RBOT-LD WORM!
|
|
Print Spooler
|
spool.exe
|
X
|
Added by the Troj/Bdoor-IS backdoor trojan.
|
|
Print Spooler
|
spoolsv.exe
|
Y
|
Windows service that loads files to memory for later printing.
|
|
Print Spooler Service
|
SpoolSvc222
|
X
|
Added by the W32/Bobax-EA worm.
|
|
Printer
|
Spyassault.exe
|
X
|
Spyware remover" of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
printer
|
sysprinter.exe
|
X
|
Added by the TROJ_SMALL.ZY TROJAN! ... Read More
|
|
printer
|
SpyAssaultScanner.exe
|
U
|
SpyAssault keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
Printer Cpl
|
SPOOL32.EXE
|
X
|
Added by the W32.Kangero.A worm. W32.Kangero.A is a worm that copies itself to mapped drives. It also lowers security settings on the compromised comp ... Read More
|
|
Printer Services
|
spool.exe
|
X
|
Added by the W32/Rbot-RL worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Printer spool Service
|
spool.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Printer Spooler
|
spooler.exe
|
X
|
Added by the Troj/Delf-JJ Trojan! File is found in the root of the C: drive.
|
|
Printer Spooler
|
spooler32.exe
|
X
|
Added by the W32/Sharp-L IRC backdoor Trojan.
|
|
Printer Spooler
|
spoolsv.exe
|
X
|
Identified as a variant of the IRC-Worm.Win32.Small worm.
|
|
printer spooler subsystem
|
spoolss.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! - Note - this is NOT the legitimate Windows spoolss.exe process, located in the Winnt\System32 or Window ... Read More
|
|
printmngr
|
system.exe
|
X
|
Added by an unidentified TROJAN!
|
|
PrintSpoolSv
|
System.exe
|
X
|
Added by the BDOOR-S TROJAN!
|
|
Processor
|
svchost.exe
|
X
|
Added by the Troj/AdClick-FR Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
ProcService
|
service32.dll
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Programm manager
|
SVCHOST.EXE
|
X
|
Added by the W32.Sayudio virus. W32.Sayudio is a virus that infects .exe files on the compromised computer. This infection should not be confused with ... Read More
|
|
proteção de tela
|
ssmaze.scr
|
X
|
Added by the BANCBAN-FB TROJAN! ... Read More
|
|
protect
|
SHVRTF.EXE
|
U
|
PC_Angel takes a 5-second snapshot of the current system registry each time the PC boots up. In the event of a crash, PC ANGEL will retrieve everythin ... Read More
|
|
ProtectingTool
|
SysRep.exe
|
X
|
Added by the ProtectingTool rogue anti-spyware program.
|
|
ProtocolControlStat
|
smsxir32.exe
|
X
|
Added by the Troj/Stinx-L Trojan.
|
|
ProtocolDiskChk
|
ssrms.exe
|
X
|
Added by the Troj/Bdoor-ML backdoor Trojan.
|
|
ProtocolDiskChk
|
svcvlw32.exe
|
X
|
Added by the Troj/Stinx-Y IRC backdoor.
|
|
ProtocolModuleCmd
|
svchon32.exe
|
X
|
Added by the BKDR_BREPBOT backdoor.
|
|
Provides secure connections to internet and LAN computers.
|
secsrv.exe
|
X
|
A variant of the Rbot.cgu family of worms and IRC backdoor Trojans.
|
|
PSC main
|
sttool32.exe
|
X
|
Identified by Kaspersky Antivirus as Trojan.Win32.Obfuscated.ev.
|
|
PService
|
svcnow32.exe
|
X
|
Added by Troj/Spybot-DJ, a TROJAN, and found in the Windows system folder.
|
|
PsY
|
service.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
pushbot
|
service5.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
pushbot
|
service52.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
QQ
|
sendmess.exe
|
X
|
Added by the SEMES TROJAN!
|
|
qq
|
svcorer
|
X
|
Added by the Troj/QQPass-AKA password-stealing Trojan.
|
|
QQKAV
|
scvhsot.exe
|
X
|
Added by the W32/QQRob-ABU worm.
|
|
QTSvc
|
shman.exe
|
X
|
Premium rate adult content dialler
|
|
QTSvc
|
ssvr.exe
|
X
|
Premium rate adult content dialler
|
|
Quick Heal Helper Service WSC
|
scanwscs.exe
|
Y
|
Related to the Quick Heal security products.
|
|
quicktime
|
shch.exe
|
X
|
Added by a variant of the TROJ/BDOOR-EB TROJAN! ... Read More
|
|
QWS3270 Sessions
|
sessions.exe
|
U
|
QWS3270 Secure terminal emulation software
|
|
RA Server
|
Slave.exe
|
X
|
Added by the Troj/Bdoor-ABJ backdoor Trojan.
|
|
random filename
|
svchost.scr
|
X
|
Added by Troj/Bancban-BK. This infections attempts to steal passwords for certain Brazilian banking sites. Found in the %System%of Windows. ... Read More
|
|
rare
|
smmain.exe
|
X
|
Added by the Troj/Zlob-ABZ Trojan.
|
|
ravshell
|
SVCH0ST.EXE
|
X
|
Added by the Troj/SpyAge-C Trojan. Troj/SpyAge-C includes functionality to access the internet and communicate with a remote server via HTTP and will ... Read More
|
|
ravtask
|
svch0st.exe
|
X
|
Added by the Troj/Nofere-B Trojan.
|
|
RAX SYSTEM
|
scrigz.exe
|
X
|
Added by the W32/Mytob-ER worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Realplus
|
sserver.exe
|
X
|
Added by the Troj/Paltus-A Trojan.
|
|
real_sl
|
svchost.exe
|
X
|
Added by the Infostealer.Svcstor information stealing Trojan. This infection should not be confused with the legitimate Windows file C:\Windows\System ... Read More
|
|
Recycle Bin Handler 2005
|
system.exe
|
X
|
Added by the Troj/Bdoor-HO .
|
|
reg2.0
|
SVCH0ST.EXE
|
U
|
Added by the Spyware.eSpyNow surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
RegCleaner
|
SYSio32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! Note - do not confuse this with the popular RegCleaner registry cleaner freeware ... Read More
|
|
RegDone
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
regedit
|
svchost.exe ccRegVfy
|
X
|
Added by the Trojan.Rona ... Read More
|
|
reggsdg
|
spoolserv.exe
|
X
|
Added by the SDBOT-MS WORM!
|
|
RegHelp
|
svchosts.exe
|
U
|
SpyGraphica
spy software - "Stealth monitoring of ALL PC or Network Activity with
DVD-like playback. EVERY keystroke can be e-mailed in a detailed
... Read More
|
|
Registry
|
ShakiraPics.jpg.vbs
|
X
|
Added by the VBS.VBSWG.AQ@mm worm.
|
|
Registry
|
Server.exe
|
X
|
Added by the Troj/Small-ALO backdoor Trojan.
|
|
Registry System16 Checkup Monitor
|
SystemReg16.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
registry system166 checkup monitor
|
SystemReg166.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Registry Value Name
|
service.exe
|
X
|
Added by the W32/Rbot-AHT worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
RegistrySettings
|
SystemReg.vbs
|
X
|
Added by the VBS/Ediboy-B WORM!
|
|
regmon
|
svchost.exe
|
X
|
Added by the W32/Gladis-A worm. This infection should not confused with the legitimate file C:\Windows\System32\svchost.exe. ... Read More
|
|
regrun
|
sory.exe
|
X
|
New Purityscan Variant
|
|
regsvc
|
systune.exe
|
U
|
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
|
|
regsvc
|
systune
|
U
|
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
|
|
RegSvc32
|
svchost.exe
|
X
|
Added by the Mal/VB-ABH malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
reg_del
|
setup.exe
|
X
|
Added by the Troj/Bdoor-BDT backdoor Trojan.
|
|
reg_run
|
Systen.exe
|
X
|
Added by the Troj/Bancos-BS TROJAN!
|
|
Reg_WFT
|
scanreg32.com
|
X
|
Added by the Troj/SennaSpy-F trojan.
|
|
Reload Browse
|
svchosts.dll
|
X
|
Added by the Adware.TopAV which replaces the Windows wallpaper with a fake virus alert message containing links to topantivirus.biz or Spyaxe and issu ... Read More
|
|
Remote Acces
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYT Trojan Downloader.
|
|
Remote Access Slave
|
Synchost.exe
|
X
|
Added by the RIPJAC TROJAN!
|
|
Remote Administrator Service
|
SERVICE.EXE
|
X
|
A service displayname set by the Troj/Multidr-CP with a servicename of reg_run.
|
|
Remote Administrator Service
|
systemram.exe
|
X
|
Added by the Troj/Radnag-B backdoor trojan.
|
|
Remote Break Manager
|
svshost.exe
|
X
|
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Connection
|
svchost.exe
|
X
|
Added by the Troj/Singu-AF Trojan. This infection should not be confused with the legitimate file of the same name found in the C:\Windows\System32 f ... Read More
|
|
Remote Connection Mnage
|
svchost.exe
|
X
|
Added by the Troj/GrayBir-H backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Remote Decrypt Services
|
svshost.exe
|
X
|
A variant of the W32/Rbot-GQR worm and IRC backdoor.
|
|
Remote Desktop Help Session Manager
|
sessmgr.exe
|
U
|
Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Depen ... Read More
|
|
Remote Displays Service
|
svshost.exe
|
X
|
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Log
|
ServeHost.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
Remote Neon Services
|
svshost.exe
|
X
|
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
|
|
Remote NetBIOS Manager
|
svshost.exe
|
X
|
A variant of the SDBot.awe family of worms and IRC backdoor Trojans.
|
|
Remote NTstat Services
|
svshost.exe
|
X
|
A variant of the Backdoor.Sdbot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Plugins Manager
|
svshost.exe
|
X
|
Added by the Troj/BDoor-AHJ Trojan.
|
|
Remote Procedure Call (RPC) Lo
|
svchcst.exe
|
X
|
Added by the Troj/GrayBrd-K backdoor Trojan.
|
|
Remote Public Services
|
svshost.exe
|
X
|
A variant of the W32/Rbot-GQR worm and IRC backdoor.
|
|
Remote Republic Services
|
svshost.exe
|
X
|
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Run Services
|
svshost.exe
|
X
|
A variant of the Sdbot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Time Pluger
|
svshost.exe
|
X
|
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
|
|
Remote Transfer Manager
|
svshost.exe
|
X
|
Added by the W32/Rbot-GQR worm and IRC backdoor.
|
|
Remote Win32 Services
|
svshost.exe
|
X
|
Added by the Troj/IRCbot-YW worm and IRC backdoor.
|
|
Remove 54tr10
|
smss.exe
|
X
|
Added by the W32/Brontok-CH email worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
ResearchSpy
|
suspects.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
reseurce
|
svchost.exe
|
X
|
Added by the Troj/Lineage-AI password-stealing Trojan for the online game Lineage. This infection should be confused with the legitimate file found at ... Read More
|
|
RGB video output
|
svkvpn.sys
|
X
|
A variant of the Troj/Haxdor-Gen rootkit.
|
|
RHSI SHS
|
SHS.exe
|
N
|
Rogers Hi-Speed Internet software. "Should you ever lose access to your Rogers Hi-Speed Internet connection or e-mail, the Self-Healing Software (SHS. ... Read More
|
|
RjLyraInstaller
|
setup.exe
|
?
|
??
|
|
rmalt
|
Setup.exe
|
X
|
Added by the Troj/Clicker-CS Trojan.
|
|
RNBOStart
|
sentstrt.exe
|
U
|
Program used to initialise the VxD virtual driver for Sentinel drivers associated with Rainbow H/W keys that plug-in to the parallel port. These are u ... Read More
|
|
Roflcopteur
|
seman.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
rollbk
|
sysup.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
rollbk
|
svosm.exe
|
X
|
Added by the W32.Serflog.B worm. This worms spreads through file-sharing networks and MSN Messenger. ... Read More
|
|
Rout111
|
serv454.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Wootbot.db malware.
|
|
rp
|
Systry.exe
|
X
|
Added by the Troj/RevPack521 trojan.
|
|
rpc Win32
|
shost32.exe
|
X
|
Added by the W32/Rbot-ABL worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
rpc win32
|
spoolscv.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
RPCall_<ComputerName>
|
smhost.exe
|
X
|
Added by the Troj/Redplut-B Trojan.
|
|
RPCser32g
|
services.exe
|
X
|
Added by the W32/Ritdoor-C worm and backdoor Trojan.
|
|
RPCserv32
|
SERVICES.EXE
|
X
|
Added by the MyDoom.AN WORM! File is found in the Windows directory.
|
|
RPCserv32g
|
services.exe
|
X
|
Added by the W32.Bobax.AA mass-mailing worm.
|
|
ruin
|
system32.exe
|
X
|
|
|
run
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker. Found in the %WINDIR%inet10050services.exe folder. ... Read More
|
|
Run Services as Application
|
svcrun.exe
|
X
|
Added by the Troj/Dloader-NY trojan.
|
|
Run StartupMonitor
|
StartupMonitor.exe
|
U
|
Mike Lin's StartupMonitor, throws up an alert and asks your permission every time any change is made to your start-up configuration, either in the re ... Read More
|
|
run windows
|
servic.bat
|
X
|
Added by the REBOOT-AP TROJAN! ... Read More
|
|
run=
|
svcinit.exe
|
X
|
CoolWebSearch parasite variant
|
|
run=
|
smsrun16.exe
|
Y
|
Microsoft Systems Management Server (SMS) related - program that reads SMSRUN16.INI on clients running Win 3.1, Windows for Workgroups, Win95, or OS/2 ... Read More
|
|
run=
|
sec5dec.exe
|
X
|
Added by the ATAK.G WORM!
|
|
RunJava2
|
systtray.exe
|
X
|
Added by the W32/Autorun-AT removable media worm.
|
|
Runner
|
svchost.exe
|
X
|
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
|
|
Runonce
|
smss.exe
|
X
|
Added by the W32.SillyDC worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
RunProg
|
Server.exe
|
X
|
Added by the OPTIX.04.A TROJAN!
|
|
runservices
|
services.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Small.qo malware. This infection should not be confused with the legitimate C:\Windows\System32\serv ... Read More
|
|
Run[0]
|
syscnfg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:\windows\fonts (or C:\winnt\fonts) directory where no *.exe files should r ... Read More
|
|
Rwx
|
svhosts.exe
|
X
|
Added by the Troj/Subzero-B trojan.
|
|
ryan1918
|
servidevice.exe
|
X
|
Added by the W32/Checkout!0e4a3c52 mass-mailing worm.
|
|
r_server
|
SERVICE.EXE
|
X
|
Added by the Troj/Multidr-CP TROJAN! A new service is set also, with the displayname of Remote Administrator Service and servicename r_server. ... Read More
|
|
S0undMan
|
svch0st.exe
|
X
|
Added by the LOVGATE.AB WORM!
|
|
S3 Internal Chip
|
s3serv.exe
|
X
|
Added by the AGOBOT-DD WORM!
|
|
S3apphk
|
S3apphk.exe
|
?
|
S3 graphics related?
|
|
S3Hotkey
|
s3hotkey.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
S3Mon
|
S3Mon.exe
|
?
|
S3DuoVue multi-monitor taskbar helper by S3 Graphics. What does it do and is it required? ... Read More
|
|
S3Psddr
|
s3gnbm.sys
|
Y
|
S3 ProSavage(DDR) & Twister Miniport Driver.
|
|
S3SSavage
|
s3ssavm.sys
|
Y
|
S3 Savage 3D graphics driver.
|
|
S3TRAY
|
S3Tray.exe
|
N
|
S3 display configuration taskbar utility for S3 chipset based graphics cards. Can be run from Start-> Settings -> Control Panel -> Display ... Read More
|
|
s3tray2
|
s3tray2.exe
|
?
|
Same as the s3tray entry in this table?
|
|
S3TRAYHP
|
S3trayhp.exe
|
?
|
S3 Video driver related. What does it do and is it required?
|
|
S4F
|
S4F.exe
|
U
|
S4F internet filtering software
|
|
s4helper
|
s4helper.exe
|
X
|
|
|
SA
|
Sa3.exe
|
?
|
Logitech QuickCam driver. Is it required?
|
|
SA Service
|
SAservice.exe
|
?
|
Associated with Cyber Trio and Warner troubleshooting software from G-Tek Technologies and pre-installed on some Packard Bell and NEC PCs. What functi ... Read More
|
|
Sa3dsrv
|
Sa3dsrv.exe
|
N
|
3D sound extension for Windows
|
|
saap
|
saap.exe
|
X
|
|
|
SABKUTIL
|
SABKUTIL.sys
|
Y
|
|
|
Sabreserver
|
SABSERV.EXE
|
N
|
Airline reservation software from Sabre. Available via Start -> Programs
|
|
sac
|
sac.exe
|
X
|
180Solutions/N-Case adware variant ... Read More
|
|
SACC
|
sacc.exe
|
X
|
Added by the Adware.SurfAccuracy adware.
|
|
sacmemds
|
smcntlwio.exe
|
X
|
Added by the Troj/Mailbot-BZ IRC backdoor Trojan.
|
|
sads
|
sdsa.exe
|
X
|
Added by the W32/Rbot-PA worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Safe
|
SafeWin.exe
|
X
|
Added by the FOCOSENHA TROJAN!
|
|
SafeFighter
|
SafeFighter.exe
|
X
|
Added by the SafeFighter rogue anti-spyware program.
|
|
Safeguard 2009
|
sf2009.exe
|
X
|
Added by the SafeGuard 2009 rogue anti-spyware program.
|
|
Safeguard.exe
|
Safeguard.exe
|
X
|
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
|
|
SafeHardDrive
|
SysRep.exe
|
X
|
Added by the SafeHardDrive rogue PC optimization software.
|
|
safehousesystemtray
|
SDWTRAY.EXE
|
U
|
SafeHouse "Personal Privacy" system tray icon - PP protects and hides your private and personal photos, videos, files and folders by making them "invi ... Read More
|
|
SafeInstall.exe
|
SAFEIN~1.EXE
|
N
|
Monitors a download and ensures an newer version of a file isn't replaced by an older one ... Read More
|
|
SafeOFF
|
SafeOff.exe
|
N
|
Provides protection that if user accidentally presses the power switch a dialog will pop up for confirmation ... Read More
|
|
SafePcAv
|
SafePcAv.exe
|
X
|
Added by the SavePcAv rogue anti-spyware program.
|
|
SafePCTool
|
SysRep.exe
|
X
|
Added by the SafePCTool rogue anti-spyware program.
|
|
SafePrivacy
|
SafePrivacy.exe
|
X
|
Added by the Koren Rogue anti-spyware program called SafePrivacy.
|
|
SaferScan
|
SaferScan.exe
|
X
|
Added by the SaferScan program. SaferScan is a Security Risk that may give exaggerated reports of threats on the computer. The program then prompts th ... Read More
|
|
SafeSearch
|
safesearch.exe
|
X
|
AutoSearch parasite variant
|
|
SafeStrip
|
SafeStrip.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeStripReminder
|
SafeStripReminder.exe
|
X
|
Added by the SafeStrip misleading security software. SafeStrip is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SafeSurfingUpdate
|
SSUpdate.exe
|
X
|
DyFuCa/MoneyTree parasite variant
|
|
SafeSys
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
SafeSysDrv
|
SafeSys.exe
|
X
|
Added by the WORM_AUTORUN.DMI removable media worm.
|
|
Safety Anti-Spyware 3
|
Safety Anti-Spyware 3.exe
|
X
|
Added by the Safety Anti-Spyware rogue security program.
|
|
SafetyKeeper
|
SafetyKeeper.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
SafetyKeeper Security Service
|
SafetyKeeperSvc.exe
|
X
|
Added by the SafetyKeeper rogue security program.
|
|
Sagate Security Firewall
|
sagate.exe
|
X
|
Added by the GAOBOT.BOW WORM!
|
|
SAgent2ExePath
|
SAgent2.exe
|
N
|
Seiko Epson printer status agent. Disable if printer is not used often
|
|
sagentservice
|
Sagent.exe
|
U
|
Added by TinySpyAgent **Note this application must be manually installed.
|
|
sagnt
|
sagnt.exe
|
X
|
Adware web downloader
|
|
SAHagent
|
Sahagent.exe
|
X
|
|
|
sahbundle
|
shop1003.exe
|
X
|
ShopAtHomeSelect adware ... Read More
|
|
saie
|
saie.exe
|
X
|
|
|
saihoi
|
saihoi.exe
|
X
|
Added by the Troj/Mdrop-CUT Trojan.
|
|
SAIMON
|
SaiMon.exe
|
U
|
|
|
sain
|
sain.exe
|
X
|
|
|
sais
|
sais.exe
|
X
|
|
|
SaiSmart
|
SaiSmart.exe
|
?
|
"Smart Button Special Sauce" - included with the latest software for Saitek game controllers. Related to the "S", "Shift" or "Smart" button. What does ... Read More
|
|
SaitekAutoConfigure
|
saicnfig.exe
|
U
|
Configuration for Saitek game controllers
|
|
sakemsneql
|
simenu.exe
|
X
|
Added by the SDBOT.BTO WORM! ... Read More
|
|
Sakora
|
Sakora.exe
|
X
|
Identified as a variant of the Trojan.Downloader Matcash malware.
|
|
SalaatTime
|
SalaatTime.exe
|
N
|
Added by SalaatTime. Salaat Time is a free multi-function Islamic application that calculates the prescribed five daily Muslim prayer times as well as ... Read More
|
|
Salestart
|
startmon.exe
|
X
|
Added by the ErrorProtector misleading application. ErrorProtector is a misleading application that gives false reports of errors on the computer. ... Read More
|
|
Salestart
|
strpmon.exe
|
X
|
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. A va ... Read More
|
|
Salestart
|
stm.exe
|
X
|
Identified as a variant of the Trojan.Fakealert.origin Trojan.
|
|
Salestart(1)
|
strpmon.exe
|
X
|
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. A va ... Read More
|
|
salm
|
salm.exe
|
X
|
|
|
salm
|
salm.exe
|
X
|
|
|
saly
|
saly*****.exe
|
X
|
Identified as a variant of the TR/Dldr.AW.awk malware. The *s standard for random characters. ... Read More
|
|
sam-sung
|
Sam-sung.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
SAMcal
|
SAMcal.exe
|
U
|
SamCal - calendar/reminder program
|
|
SamPs
|
svcvc.exe
|
X
|
Added by the Backdoor.Riken backdoor. Backdoor.Riken is a Trojan horse that opens a back door and steals information from the compromised computer. ... Read More
|
|
samsong
|
Samsong.exe
|
X
|
Added by the SDBOT.BNE WORM! ... Read More
|
|
Samsung
|
Samsungs.exe
|
X
|
Added by an IRC_TROJAN variant!
|
|
Sandbox
|
Sandbox.sys
|
Y
|
Driver used by the free Sandboxie program that allows you to run various tasks in such a way as they can not infect your normal operating system. ... Read More
|
|
Sandboxie Service
|
SandboxieServer.exe
|
Y
|
Installed by the Sandboxie security software.
|
|
SandIcon
|
SandIcon.exe
|
N
|
SanDisk ImageMate CompactFlash card reader SDDR-31 (USB). Very little use except to place the Sandisk icon beside its drive designation in Windows Exp ... Read More
|
|
Sandvich
|
Sys32Disp.exe.exe
|
X
|
Added by the W32/Autorun-BOP removable media worm.
|
|
SANS Service
|
sansv.exe
|
X
|
Added by the W32/Vanebot-AH worm. W32/Vanebot-AH spreads to other network computers by scanning network shares for weak passwords and by exploiting co ... Read More
|
|
Santa Bastards Bitch
|
SANTAS.BITCH.txt
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
SAP control service
|
SAPCtrlSer.exe
|
Y
|
Added by the abylon CRYPTDRIVE file encryption software.
|
|
sapnet
|
sapnet.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
sapp
|
sapp.exe
|
X
|
|
|
SASDIFSV
|
SASDIFSV.SYS
|
Y
|
Driver for the Super Antispyware security software.
|
|
SASENUM
|
SASENUM.SYS
|
Y
|
|
|
sasktel accelerated dial-up
|
sasktelgui.exe
|
Y
|
Related to SaskTel_Accelerated_Dial-up An internet Provider. Note: located in C:\Program Files\SaskTel Accelerated Dial-up\ ... Read More
|
|
SASKUTIL
|
SASKUTIL.sys
|
Y
|
Driver associated with the Super Antispyware security software.
|
|
SATA bus driver
|
satau325.sys
|
X
|
A variant of the Troj/Haxdor-Gen rootkit.
|
|
satad640
|
satad640.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan. This infection also utilizes the satad645.sys rootkit to hide itself. ... Read More
|
|
SATARaid
|
SATARaid.exe
|
U
|
RAID driver for serial ATA disks on some motherboards such as the DFI Lanparty range. Only loaded if one is using RAID support on SATA drives ... Read More
|
|
satau320
|
satau320.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the satau325.sys rootkit to hide itself. ... Read More
|
|
satdll
|
satdll.dll
|
X
|
Added by the Troj/Haxdoor-AS information stealing Trojan.
|
|
satmat
|
satmat.exe
|
X
|
Transponder parasite updater/installer
|
|
satmmc
|
satmmc.dll
|
X
|
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. ... Read More
|
|
sau
|
sau.exe
|
X
|
Added by the Adware.180Search adware.
|
|
SAUpdate
|
SAUpdate.exe
|
U
|
Big Brother from Quest Software. System and network monitor
|
|
SAutoLaunchExe
|
SAutoLaunchExe.exe
|
U
|
Sharp Zaurus PDA related, needed to synchronize information with a Desktop or Notebook. ... Read More
|
|
SAVAgent
|
SAVAgent.exe
|
Y
|
Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial ... Read More
|
|
Save
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
SaveArmor
|
SaveArmor.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveArmor Security Service
|
SaveArmorSvc.exe
|
X
|
Added by the SaveArmor rogue anti-spyware program.
|
|
SaveDate
|
SaveStartDate.Exe
|
X
|
Unidentified adware
|
|
SaveDefender
|
SaveDefender.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefender Security Service
|
SaveDefenderSvc.exe
|
X
|
Added by the SaveDefender rogue anti-spyware program.
|
|
SaveDefense
|
SaveDefense.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveDefense Security Service
|
SaveDefenseSvc.exe
|
X
|
Added by the SaveDefense rogue anti-spyware program.
|
|
SaveKeep
|
SaveKeep.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveKeep Security Service
|
SaveKeepSvc.exe
|
X
|
Added by the SaveKeep rogue anti-spyware program.
|
|
SaveKeeper
|
SaveKeeper.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveKeeper Security Service
|
SaveKeeperSvc.exe
|
X
|
Added by the SaveKeeper rogue anti-spyware program.
|
|
SaveMyWork
|
SaveMyWork.exe
|
U
|
Added by the Spyware.SaveMyWork keylogger. Uninstall this program if it was not installed by yourself. ... Read More
|
|
Savenow
|
SaveNow.exe
|
X
|
Advertising spyware. Installed as part of the Kazaa Media Desktop bundle for example ... Read More
|
|
Savenow
|
savenow.exe
|
X
|
Added by the SPREDA.B VIRUS!
|
|
SaveSoldier
|
SaveSoldier.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SaveSoldier Security Service
|
SaveSoldierSvc.exe
|
X
|
Added by the SaveSoldier rogue anti-spyware program.
|
|
SAVRT
|
SAVRT.SYS
|
Y
|
Related to Symantec Antivirus.
|
|
SAVRTPEL
|
SAVRTPEL.SYS
|
Y
|
Driver associated with Symantec security products.
|
|
SAVScan
|
SAVScan.exe
|
Y
|
This process is part of the real-time scanning engine for Norton Antivirus and associated products. ... Read More
|
|
saw
|
saw.exe
|
X
|
Added by the Adware.SmartAdware adware. This software delivers popups advertisements. ... Read More
|
|
Say The Time 5.0
|
SAYTIME.EXE
|
U
|
This program has audio cues for the system clock in male and female voices, customizes the appearance of the system clock, and can synchronize it to a ... Read More
|
|
SB
|
SB.exe
|
U
|
Acer Soft Button on Acer Tablet PCs
|
|
SB
|
SpywareBomber.exe
|
X
|
Added by the SpywareBomber program. SpywareBomber is a misleading application that will detect clean and nonmalicious registry keys and files as being ... Read More
|
|
SB Watchdog
|
SBWatchdog.exe
|
X
|
Spyware utility installed by the manufacturers of some laptops (Sony) used to monitor browsing habits and send them back to whoever installed it - rel ... Read More
|
|
sb0t
|
service1.dll
|
X
|
Identified as a variant of the Worm:Win32/MSNWorm.gen malware.
|
|
SBAMTray
|
SBAMTray.exe
|
Y
|
Installed with various Sunbelt security products, this file is the tray icon through which the user manages the program. The file will have different ... Read More
|
|
SBAutoUpdate
|
sbautoupdate.exe
|
U
|
SpywareBlaster auto-updater
|
|
sbbotdi
|
sbbotdi.sys
|
Y
|
Added by the SPEEDbit Video Accelerator video acceleration program.
|
|
sbchosy.bat
|
sbchosy.bat
|
X
|
Added by the Troj/GrayBir-AA backdoor Trojan.
|
|
SBDrvDet
|
SBDrv.exe
|
U
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" on the Sound Blaster Audigy 2 Platinium eX. Can be disabled if you don't ha ... Read More
|
|
sbdrvdet
|
sbdrvdet.exe
|
N
|
Detects the "Easy Front-Panel Audio Connectivity Drive Internal Drive Bay" that comes with certain Sound Blaster audio cards.. Can be disabled if you ... Read More
|
|
sbfxi
|
sbfxi.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SBHC
|
sbhc.exe
|
X
|
SuperBar parasite - uninstall available here
|
|
sbmpop
|
SBMPop.exe
|
X
|
SearchByMedia adware
|
|
SBMX
|
sbmx.exe
|
N
|
SoundMAX MPU401 MIDI device emulator for x86 VM DOS games/apps (for Win9x only)
|
|
SBR2009F
|
SystemBooster2009.exe
|
X
|
Added by the SystemBooster2009 rogue anti-spyware program.
|
|
sbrige
|
sbrige.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
sbss Launcher
|
sbss.exe
|
X
|
Added by the Adware.SideBySide search hijacker to sidebysidesearch.com.
|
|
sc
|
scrubxp.exe
|
N
|
ScrubXP - utility that deletes safe to remove files, cookies, browsing history, etc ... Read More
|
|
sc
|
sc.exe
|
U
|
Watchdog 2.0 Software - monitoring program
|
|
sc23exec
|
sc23exec.exe
|
?
|
Possibly related to a digital camera
|
|
SC3300CC
|
SC3300CC.exe
|
Y
|
SiPix digital camera Twain device driver
|
|
scain
|
s030109.Stub.exe
|
X
|
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! ... Read More
|
|
scamdisk
|
SVOHOST.exe
|
X
|
Added by the LEWOR.D WORM! ... Read More
|
|
Scan Register
|
SSMS.EXE
|
X
|
Added by the W32/Rbot-AT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Scan&Repair2006.exe
|
Scan&Repair2006.exe
|
X
|
Added by the ScanandRepair security risk.
According to Symantec, "ScanandRepair is a security risk that may give exaggerated reports of ... Read More
|
|
scandisc
|
satan.exe
|
X
|
Added by the GregStar backdoor TROJAN!
|
|
ScanDisk
|
ScanDisk.exe
|
X
|
Added by the GANDA.A WORM! Note - this is not the valid "ScanDisk" Win9x/Me standard disk error checker ... Read More
|
|
scands32.exe
|
scands32.exe
|
X
|
Added by a variant of the Adclicker TROJAN!
|
|
Scandsk2
|
scandsk2.exe
|
X
|
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scandskx.exe
|
scandskx.exe
|
X
|
Added by the Troj/Dloadr-ARM Trojan.
|
|
Scanner Detector
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
scanpanel
|
ScnPanel.exe
|
?
|
Trust Easy_Webscan scanner related - what does it do and is it required? ... Read More
|
|
scanregg
|
scanregg.exe
|
X
|
Added by the Troj/ScKeylog-A keylogger.
|
|
ScanRegistry
|
scanregv.exe
|
X
|
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as sca ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
Y
|
Scans the system registry and makes back-ups at start-up. Important should the registry become corrupt. The executable "Scanregw.exe" is located in %w ... Read More
|
|
ScanRegistry
|
Scanregw.exe
|
X
|
Added by the STATOR WORM! Not to be confused with the legitimate ScanRegistry entry - which is a vital Windows file. The executable "Scanregw.exe" is ... Read More
|
|
ScanRegistry
|
scanregw.exe
|
X
|
Added by the Nyxem.E worm and file destructor. If the clock date on your computer is the 3 (3rd of February, 3rd of March, etc) and the worm's UPDATE ... Read More
|
|
ScanSpyware v *
|
Scanner.exe
|
X
|
Spyware remover (where * = the version number) of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
scApp
|
scApp.exe
|
X
|
Added by the W32/Stando-E worm.
|
|
SCardSvr
|
scardsvr.exe
|
N
|
Related to SmartCard readers and sometimes uses lots of system resources
|
|
SCardSvr
|
SCardSvr32.Exe
|
X
|
Added by the MOFEI.B WORM!
|
|
sccbxenr
|
sccbxenr.exe
|
X
|
Added by the Troj/StraDr-A Trojan.
|
|
scdemuapp.exe
|
SCDEmuApp.exe
|
U
|
Related to PowerISO Computing Inc. A CD/DVD image file processing tool. ... Read More
|
|
scheck
|
scheck**.exe
|
X
|
Added as a result of the KETCH VIRUS! where ** represents a number ... Read More
|
|
scheck45
|
scheck45.exe
|
X
|
Related to unknown Malware - hidden installer associated with it
|
|
schedl
|
schedl.exe
|
X
|
Added by the W32/VB-DVW worm.
|
|
schedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View Cards&productid=653 TV Tuner Card. Note: located in C:\Program Files\NPG\WinTVR3\Remote.exe ... Read More
|
|
Scheduled Maintenance
|
Scheduled_Maintenance.exe
|
N
|
Scheduler for Iolo System Mechanic tweaking utility. It can cleans your registry and deletes temporary files at defined intervals. Available via Start ... Read More
|
|
scheduler
|
Scheduler daemon.exe
|
U
|
Tenebril GhostSurf or SpyCatcher related scheduler - you can schedule daily, weekly, monthly or one-time only cleanings. ... Read More
|
|
scheduler
|
schedul3.exe
|
X
|
Added by the W32/Rbot-AVX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Scheduler
|
svcrhost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Scheduler
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Scheduler
|
svcshost.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Scheduling Agent
|
Scheduler.exe
|
X
|
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect ... Read More
|
|
Schmaili
|
Schmaili.exe
|
U
|
Schmaili - insert animated smilies into your e-mail
|
|
schoolpop0
|
Schoolpop0.exe
|
U
|
Schoolpop Shopping Buddy ... Read More
|
|
SCHWIZEX
|
SCHWIZEX.EXE
|
Y
|
Part of ConfigSafe - lets you identify changes to the registry, INI files, System asset files, system hardware, network connections, and operating sy ... Read More
|
|
sck.exe
|
sck.exe
|
X
|
Added by the Troj/VBInjec-DV Trojan.
|
|
sclick
|
SCLICK.EXE
|
X
|
Related to SmitFraud infections.
|
|
ScManager
|
scman.exe
|
X
|
Added by the FORBOT-CW WORM!
|
|
scopedll
|
scopedll.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
scoupa
|
sincra.exe
|
X
|
Added by the W32/Sdbot-ST worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
Scr
|
scr.scr
|
X
|
Added by the OPASERV.T WORM!
|
|
ScrapPad
|
Scrappad.exe
|
N
|
ScrapPad allows you to quickly and easily record notes, thoughts, messages, and just about anything you want. Use it like you use scrap paper ... Read More
|
|
scrbmk
|
scrbmk.exe
|
X
|
Added by the Troj/Dloader-VP downloader Trojan.
|
|
Screen Calendar
|
scrcal.exe
|
U
|
Screen Calendar allows you to create custom desktop wallpapers with built in active calendar and scheduler ... Read More
|
|
Screen Guard Message Scan
|
sgms.exe
|
U
|
Part of Access Denied security and privacy software
|
|
Screen Saver
|
scrnsaver.scr
|
X
|
Added by the W32/Rbot-AGP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ScreenPrint32
|
ScreenPrint32.exe
|
N
|
ScreenPrint32 screen capture software - can be launched manually
|
|
ScreensaverControl
|
ScreensaverControl.exe
|
N
|
Tray icon that allows you toggle your screensaver on and off.
|
|
ScreenView
|
ScreenView.exe
|
U
|
Added by the Spyware.ScreenView surveillance software. Spyware.ScreenView is a spyware program that monitors user activity on computers in a local are ... Read More
|
|
screxe
|
scruser2k.exe
|
?
|
??
|
|
script
|
script.bat
|
?
|
Maybe associated with DOS on a Win9x machine
|
|
ScriptBlocking
|
SBServ.exe
|
Y
|
Update to Norton AntiVirus 2001. Detects certain types of script-based viruses without the need for specific virus definitions - such as JavaScript an ... Read More
|
|
ScriptBlocking Service
|
SBServ.exe
|
Y
|
This program is part of Symantec's line of security products and blocks scripts from running on your computer without permission. ... Read More
|
|
ScriptLogic Service
|
slClient.exe
|
Y
|
Part of the Desktop Authority administration program.
|
|
ScriptSentry
|
Scriptsentry.exe
|
Y
|
Script Sentry from Jason's Toolbox. Blocks malicious scripts and allows safe scripts to run. Only required if you want it to check the file associatio ... Read More
|
|
Scroll-In-Mouse V2.0
|
SCROLL.EXE
|
U
|
Toolkit for the Lynx-3D Net scroll mouse from QTronix. Required if you use the special features ... Read More
|
|
scrss
|
scrss.exe
|
X
|
Added by the W32/Rbot-GAE worm and IRC backdoor. W32/Rbot-GAE spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
scrsvc
|
scrsvc.exe
|
X
|
Added by the Troj/Agent-DS proxy trojan.
|
|
ScrSvr
|
ScrSvr.exe
|
X
|
Added by the OPASERV WORM!
|
|
SCService
|
SCSrv.dll
|
X
|
Added by the Troj/Agent-BRK backdoor Trojan with rootkit functionality.
|
|
Scsi
|
Scsi.exe
|
Y
|
SCSI Miniport driver
|
|
scsi2usb
|
scsi2usb.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan.
|
|
scsiusr4
|
scsiusr4.dll
|
X
|
Added by the Troj/Haxdoor-DD Trojan. This infection utilizes the scsipsrvc.sys rootkit to hide itself. ... Read More
|
|
scsrs
|
scsrs.exe
|
X
|
Added by the W32/Rbot-VF worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
scssrr.exe
|
Services.exe
|
X
|
Added by the Troj/VB-EMX Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
|
|
scvhost
|
svzhost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
SCVHOST
|
SCVHOST
|
X
|
Added by the Troj/Feutel-D TROJAN as a new service using the same name as a displayname. ... Read More
|
|
SCVHOST
|
SCVHOST.EXE
|
X
|
|
|
scvhost
|
scvhost.exe
|
U
|
Added by the Spyware.Wiretap surveillance software. Uninstall this software if you did not install it yourself. ... Read More
|
|
scvhost.exe
|
scvhost.exe
|
X
|
Added by the LOHAV-N TROJAN!
|
|
Scxaxs
|
Scxaxs.exe
|
X
|
Unknown Trojan.
|
|
SD
|
SD.exe
|
X
|
Added by the WORM_MYTOB.PU mass-mailing worm and IRC backdoor.
|
|
sd32info
|
sd32info.exe
|
X
|
Added by the CRYPTER.A TROJAN!
|
|
SDaemon
|
sdaemon.exe
|
U
|
PC Security from Tropical Software. 'PC Security™ 5.1 is the ultimate in computer security, offering multiple locking systems for the Windows environm ... Read More
|
|
SDAgentService
|
sde.exe
|
X
|
Added by the Adware.SmartDove Chinese adware that displays pop-up advertisements based on the user's Web surfing activity. ... Read More
|
|
SDAv
|
SVHOST.EXE
|
X
|
Added by the W32/Sumom-C instant messenger and P2P worm.
|
|
sdcard98
|
sdcard98.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the sdcardX2.sys rootkit to hide itself. ... Read More
|
|
SDetect
|
SDetect.exe
|
N
|
ScanSuite Scanner Detector - part of ScanWizard, supplied with Microtek scanners. Waits until you press the "GO" button and seems to serve no other pu ... Read More
|
|
sdfsdfsdf
|
sp2update.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
SDIN Adapter
|
sdin.exe
|
X
|
Added by the FORBOT-AP WORM!
|
|
SDK Codre Function22
|
sdkimddprovment2.exe
|
X
|
Added by the W32/Sdbot-YJ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
SDK Core Component
|
sdkcore.exe
|
X
|
Added by the W32/Sdbot-WC WORM/IRC backdoor Trojan!
|
|
SDK Core Component
|
SDKC0RE.exe
|
X
|
Added by the W32/SDBOT-WC WORM!
|
|
sdk core function
|
sdkimprovment.exe
|
X
|
Added by the RBOT.BHL WORM! ... Read More
|
|
sdk core function2
|
sdkimprovment2.exe
|
X
|
Added by the W32.SPYBOT.OGX WORM! ... Read More
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
Added by the W32/Rbot-ABA WORM/IRC backdoor trojan!
|
|
SDKcore Update Components2
|
SDKC0R3.exe
|
X
|
This is an Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
|
|
sdktemp
|
SDKTEMP.EXE
|
X
|
Added by the W32/Tilebot-A worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdktemp
|
svhosts32.exe
|
X
|
Added by the W32/Tilebot-CD worm and IRC backdoor.
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
sdkupdate22
|
SDK0mCORE.exe
|
X
|
Added by the W32/Forbot-DT network worm. When started this infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
SDKz0r
|
SDKc55rezzz2.exe
|
X
|
Added by the W32/Sdbot-UN worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
SDMSSplash
|
SDMSSplash.exe
|
?
|
Related to the HP Smart Desktop Management System support software.
|
|
SDPhotoBar.exe
|
SDPhotoBar.exe
|
N
|
SmartDraw Photo - "organize, enhance, print, and share your photos. It's also a powerful graphic editor for creating images and web graphics" ... Read More
|
|
sdrss
|
sdrss.exe
|
X
|
Added by the SDBOT-SQ WORM!
|
|
sds20
|
svchost.exe
|
U
|
Added by the Spyware.InlookExpress surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
|
|
sdtray
|
sdtray.exe
|
U
|
RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transacti ... Read More
|
|
SDTrayApp
|
SDTrayApp.exe
|
Y
|
Related to Spyware Doctor.
|
|
sdxsys32
|
sdxsys32.exe
|
X
|
Added by the Troj/Brogger-A password-stealing Trojan.
|
|
SE500 Generic
|
se500mdmd.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
se500mdm
|
se500mdm.dll
|
X
|
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the se500mdmd.sys rootkit to hide itself. ... Read More
|
|
se633mxx
|
se633mxx.dll
|
X
|
Added by a variant of the Goldun Trojan. This infection utilizes the se633mxxd.sys rootkit to hide itself. ... Read More
|
|
Seagate Communications
|
seagatecom.exe
|
X
|
Added by the W32.Gangbo worm and IRC backdoor. W32.Gangbot is a worm that opens a back door and connects to an IRC server. It spreads by searching for ... Read More
|
|
Seagate Sync Service
|
SeaSyncServices.exe
|
U
|
Service that synchronizes folders and files between your computer and a Seagate external hard drive. ... Read More
|
|
SeahawksScreenServer
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
SeahawksScreenServerSvc
|
SeahawksScreenServer.exe
|
N
|
Software from the MercurySports for streaming information about the Seattle Seahawks US Football team. Slightly loose Terms or Use and Privacy policy ... Read More
|
|
sealmon
|
sealmon.exe
|
U
|
SealedMedia enables you to combine document protection and control with your existing applications - such as Microsoft Word, Microsoft Excel, Microsof ... Read More
|
|
Search Defender
|
SearchDefender.exe
|
U
|
Added by SpeedItUp. Warns you when programs attempt to change Internet Explorer's default search provider. ... Read More
|
|
Search Hook
|
srchhook.exe
|
?
|
??
|
|
Search-Exe
|
SE.exe
|
X
|
|
|
SearchEnhancement
|
scbar.exe
|
X
|
IE search hijacker
|
|
SearchIn1Step Service
|
searchin1.exe
|
X
|
Identified by PCTools as the Trojan-Spy.Pophot.WX Trojan.
|
|
SearchLitekr
|
SearchLite.exe
|
X
|
Identified by ESET Nod32 as a variant of the Win32/Adware.Kraddare.AR adware. This program originates from the Korean site searchlite.kr. ... Read More
|
|
searchnav
|
searchnav.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SearchNavVersion
|
searchnavversion.exe
|
X
|
SearchNav adware - IEFeatures/Popnav variant
|
|
SearchNet_Up
|
ServeUp.exe
|
X
|
Added by the Adware.Search Internet Explorer homepage hijacker.
|
|
SearchSetter
|
searchsetter[1].exe
|
X
|
Browser hijacker - redirecting to FindWhateverNow.com
|
|
SearchSquire33
|
SearchUpdate33.exe
|
X
|
|
|
SearchUpgrader
|
SearchUpgrader.exe
|
X
|
Hijacker
|
|
secdrive.exe
|
secdrive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Secdrv
|
secdrv.sys
|
Y
|
A SafeDisc drivers that provides CD/DVD copy protection and digital rights management for Windows applications and games. ... Read More
|
|
second copy 2000
|
SecCopy.exe
|
U
|
Related to Second_Copy®, http://www.centered.com/ A files/Folders Backup Utility. ... Read More
|
|
Secondary Logon
|
seclogon.dll
|
Y
|
Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is ... Read More
|
|
SecondChance
|
sctray.exe
|
U
|
Power Quest Second Chance. Sets checkpoints for saving a backup copy of the registry to a disk so you can restore it if you have a crash ... Read More
|
|
Secret
|
Secret.exe
|
X
|
Added by the Troj/Delf-LW Trojan. This infection will attempt to delete every file on your computer. ... Read More
|
|
Secret-Crush
|
start.exe
|
X
|
Hijacker that may reset your browser's home page and/or search settings to point to undesired sites ... Read More
|
|
secretmaker
|
secretmaker.exe
|
U
|
SECRETMAKER is a combonation of eight privacy-defending programs, including Spam Fighter Pro, Worm Hunter, Pop-Up Killer, Banner Blocker, Cookie Erase ... Read More
|
|
secretsmileys
|
ss.exe
|
U
|
Secret_Smileys is an add-on for AIM® that provides users access to 1000's of new Smileys that can be viewed by anyone using a current version of AIM. ... Read More
|
|
secserv.exe
|
secserv.exe
|
X
|
Reported by Panda as an EasySearch Adware variant. Note: EasySearch modifies the Internet Explorer settings and may download programs onto the infecte ... Read More
|
|
secsrvrc
|
secsrvrc.exe
|
X
|
Added by the Troj/SCKeyLog-G keylogger.
|
|
secsvc32
|
secsvcnt.exe
|
X
|
Added by the Global_Patrol TROJAN! ... Read More
|
|
Secsys
|
Secsys.exe
|
U
|
Key Interceptor - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you ca ... Read More
|
|
Secunia Update Agent
|
sua.exe
|
Y
|
Related to Secunia PSI. This service performs routine software inspections of the system, the results of which can be seen in your Secunia Customer Ar ... Read More
|
|
secure
|
secure.exe
|
X
|
|
|
secure
|
svshost.exe
|
X
|
Added by the W32/Rbot-AFO worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Secure
|
secure.exe
|
X
|
Identified as the Backdoor.Win32.Iroffer malware.
|
|
Secure Socket Layer
|
ssls.exe
|
X
|
Added by the W32/Spybot-NE worm and IRC backdoor.
|
|
Secure Socket Layer Certification
|
sslcert.exe
|
X
|
Added by the W32/Vanebot-AN worm and IRC backdoor.
|
|
Secure32
|
Shell32.com
|
X
|
Added by the W32/Brontok-CJ worm.
|
|
Secure32
|
Shell32.com
|
X
|
Added by the W32/Brontok-EC worm.
|
|
secureclean4regmanager
|
scregmanager4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
secureclean4tray
|
sctray4.exe
|
N
|
WhiteCanyon SecureClean_4 disk cleaner - clean hard drive data, MRUs, temp files and more. Can be started manually ... Read More
|
|
SecureCleaner
|
SecureCleaner.exe
|
X
|
Added by the SecureCleaner rogue anti-spyware program. SecureCleaner is a misleading application that may give false reports of threats on the compute ... Read More
|
|
SecureCleanIEClean
|
SCIEClean.exe
|
N
|
SecureClean - scans your system for hidden temporary files, deleted email messages, Internet histories and caches ... Read More
|
|
SecureExpertCleaner
|
sec.exe
|
X
|
Added by the Secure Expert Cleaner rogue security software.
|
|
SecureFighter
|
SecureFighter.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
SecureFighter Security Service
|
SecureFighterSvc.exe
|
X
|
Added by the SecureFighter rogue anti-spyware program.
|
|
SecureItPro
|
Secureitpro470p.exe
|
U
|
SecureIt Pro - lock your computer when you're not there, to stop malicious users from accessing your desktop ... Read More
|
|
SecureKeeper
|
SecureKeeper.exe
|
X
|
Added by the SecureKeeper rogue anti-spyware program.
|
|
Securemaker Disk Defragmenter Service
|
smdefrag.exe
|
Y
|
Added by the SECUREMAKER computer optimization program.
|
|
SecurePcAv
|
SecurePcAv.exe
|
X
|
Added by the SecurePcAv rogue anti-spyware program.
|
|
Securepoint Personal Firewall
|
spfirewallsvc.exe
|
Y
|
|
|
Securepoint Personal Firewall
|
sppfw.exe
|
Y
|
|
|
securer
|
syshost.exe
|
X
|
Troj/Bdoor-DU is a backdoor Trojan for the Windows platform. It is located in the directory securersyshost.exe. ... Read More
|
|
SecureVeteran
|
SecureVeteran.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureVeteran Security Service
|
SecureVeteranSvc.exe
|
X
|
Added by the SecureVeteran rogue anti-spyware program.
|
|
SecureWarrior
|
SecureWarrior.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
SecureWarrior Security Service
|
SecureWarriorSvc.exe
|
X
|
Added by the SecureWarrior rogue anti-spyware program.
|
|
Security 2009
|
Security2009.exe
|
X
|
Added by the Security 2009 rogue anti-spyware program.
|
|
Security Account Manager
|
SAMSvc.exe
|
X
|
Added by the W32/Tilebot-DL worm and IRC backdoor.
|
|
Security Accounts Manager SM
|
samsm.exe
|
X
|
Added by the SPYBOT.JE WORM!
|
|
security agent
|
securag.exe
|
X
|
Added by the Troj/Bancban-F ... Read More
|
|
Security Antivirus
|
SA345d.exe
|
X
|
Added by the Security Antivirus rogue anti-spyware program.
|
|
Security Center
|
scvhost.exe
|
X
|
W32/Rbot-TG is a network worm with IRC backdoor functionality. File is located in the Windows system directory. ... Read More
|
|
Security Center
|
svchost.exe
|
X
|
Unknown malware.
|
|
Security Center Distribution
|
securesec.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security essentials 2010
|
SE2010.exe
|
X
|
Added by the Security Essentials 2010 rogue anti-spyware program.
|
|
Security Guard
|
SG345d.exe
|
X
|
Added by the Security Guard rogue anti-spyware program.
|
|
Security Host
|
solhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Security iGuard
|
Security iGuard.exe
|
N
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Security Inspector 2010
|
Security_Inspector_2010.exe
|
X
|
Added by the Security Inspector 2010 rogue anti-spyware program.
|
|
Security Manager
|
SecurityManager.exe
|
U
|
A ComCast Internet software suite that provides a variety of features (firewall, popup blocker, parental controls etcetera) to help ensure your comput ... Read More
|
|
Security Manager
|
securitymanager.exe
|
X
|
Added by the AntiVirus System 2011 rogue anti-spyware program.
|
|
Security Master AV
|
SM345d.exe
|
X
|
Added by the Security Master AV rogue anti-spyware program.
|
|
Security Monitor
|
securemon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security Monitor
|
Security Monitor.exe
|
X
|
Added by the Security Monitor 2012 rogue anti-spyware program.
|
|
Security Monitor 2012 Security
|
securitymanager.exe
|
X
|
Added by the Security Monitor 2012 rogue anti-spyware program.
|
|
Security Patch
|
scmss.exe
|
X
|
Added by the W32/Rbot-ZW WORM/IRC backdoor Trojan.
|
|
Security Server DB
|
secserver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
security service
|
syss.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Security Service
|
secsvc.exe
|
X
|
Added by the W32/Rbot-GGF backdoor Worm.
|
|
Security Service
|
svchost.exe
|
X
|
A variant of the TrojanProxy:Win32/Chumpoke.gen!A malware.
|
|
Security Service DB
|
secservice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security System
|
securesys.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Security System Manager
|
spoolvc.exe
|
X
|
Added by the W32/Sdbot-DCW worm and IRC backdoor.
|
|
Security Task Manager
|
spoolvc.exe
|
X
|
Added by the W32/Tilebot-IX worm and IRC backdoor.
|
|
Security Windows services
|
svchost.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
SecurityCenter
|
securitycenter.exe
|
X
|
Added by the Desktop Security 2010 rogue anti-spyware program.
|
|
SecurityFighter
|
SecurityFighter.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
SecurityFighter Security Service
|
SecurityFighterSvc.exe
|
X
|
Added by the SecurityFighter rogue anti-spyware program.
|
|
SecurityScanner
|
ss2008.exe
|
X
|
Added by the SecurityScanner rogue anti-spyware program.
|
|
securityService
|
securityService.dll
|
X
|
Added by the Troj/KillJWS-A Trojan.
|
|
SecuritySoldier
|
SecuritySoldier.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecuritySoldier Security Service
|
SecuritySoldierSvc.exe
|
X
|
Added by the SecuritySoldier rogue anti-spyware program.
|
|
SecurityUpdate
|
SecurityUpdate.exe
|
X
|
Added by the Downloader.Goobiz Trojan downloader. Downloader.Goobiz is a Trojan horse that downloads potentially malicious files on to the compromised ... Read More
|
|
SECWIZ98
|
SECWIZ98.EXE
|
Y
|
Security Wizard 98 by Chris Farmer. Offers you a variety of ways to restrict access to many of the programs and settings on your PC. Available here ... Read More
|
|
seekmo
|
seekmo.exe
|
X
|
Seekmo Search, a_180Solutions adware variant - also see here ... Read More
|
|
seeve
|
seeve.exe
|
X
|
A media-motors.net adware variant. Will cause popups to appear on your computer. ... Read More
|
|
Select server
|
slcsvr.exe
|
X
|
Added by the Troj/Dloader-WD Trojan downloader.
|
|
Selene
|
Selene.exe
|
X
|
Added by the Trojan.Eneles infection!
|
|
SelfHostUtil
|
slefhost.exe
|
?
|
??
|
|
seli
|
seli.exe
|
X
|
Added by the Troj/LowZone-AS Trojan.
|
|
semanticinsight
|
SemanticInsight.exe
|
X
|
Related to RXToolbar ADAWARE! Software that displays pop-up/pop-under advertisements when the primary user interface is not visible. ... Read More
|
|
SeMS
|
SeMS.exe
|
U
|
PCsms - tool that enables you to send sms text messages from your PC to any UK mobile phone ... Read More
|
|
Sensiva
|
Sensiva.exe
|
U
|
Symbol Commander makes the use of your PC, laptop, Tablet PC, and Pocket PC much easier and much faster. It recognizes your handwriting with unparalle ... Read More
|
|
sentinelmon
|
sentinelmon.exe
|
U
|
Added by the Spyware.SmokingGun surveillance software. Spyware.SmokingGun is a spyware program that monitors user activity, logs keystrokes, and captu ... Read More
|
|
SENTRY
|
SENTRY.exe
|
X
|
From IP Insight. Allows website owners "to instantly determine the precise geographic location, connection speed and detailed demographics of every vi ... Read More
|
|
Sepate Security Firewall
|
sepate.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
seppgs
|
seppgs.dll
|
X
|
Added by the Troj/Haxdoor-CY Trojan. This infection utilizes the seppgm.sys rootkit to hide/protect itself. ... Read More
|
|
serazavr
|
serazavr.log
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
Serials
|
serials.exe
|
X
|
Any one of a variety of worms and trojans
|
|
Serices Hostin
|
servicez.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sern
|
Sernet32.exe
|
X
|
Added by the Troj/Bancos-CV password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for your ... Read More
|
|
serpe
|
serbw.exe
|
X
|
Added by the W32.Serflog.A worm. This worms spreads through file sharing networks and MSN messenger. ... Read More
|
|
serrdctl.exe
|
serrdctl.exe
|
Y
|
"Shared Modem Service Client Event Viewer" - used when a number of PCs have access to a number of modems. Required to be running on each PC for access ... Read More
|
|
serrv
|
serrv.exe
|
X
|
Added by the W32/Stratio-AW worm.
|
|
Serv-U
|
serv-u32.exe
|
N
|
FTP server
|
|
Serv-U FTP Server
|
ServUDaemon.exe
|
X
|
Added by the Troj/Bdoor-ABW backdoor Trojan. This program is actually a legitimate program that is bundled with the malware. If it was not installed ... Read More
|
|
Serve User
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
server
|
server.exe
|
X
|
Added by the DELTAD.A WORM!
|
|
server
|
system.exe
|
X
|
Added by the Troj/Meths-A Trojan.
|
|
Server
|
srvsvc.dll
|
Y
|
Windows service that supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will ... Read More
|
|
Server 2.0
|
Server.exe
|
X
|
Added by the Troj/GrayBrd-AN backdoor Trojan.
|
|
Server Advance
|
Security.exe
|
X
|
Added by the Troj/Bckdr-PUS backdoor Trojan.
|
|
Server Backbone
|
server05.exe
|
X
|
Added by the W32/Rbot-ZM worm.
|
|
Server Daemon Host Manager
|
sdhost.exe
|
X
|
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
|
|
Server VSS System
|
sysvrs32.exe
|
X
|
Added by the W32/Sdbot-DES worm and IRC backdoor.
|
|
SERVER.EXE
|
SERVER.EXE
|
X
|
Added by the BUSHTRO122 or SMOKODOOR TROJANS!
|
|
Server2.0
|
Server2.0.exe
|
X
|
Added by the Troj/Feutel-AY trojan Backdoor.
|
|
Server2010
|
Server2010.exe
|
X
|
Added by the Troj/Hupigon-UT Trojan.
|
|
serverex
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
Serverx
|
Serverx.exe
|
X
|
Added by the W32/Madang-A virus.
|
|
serviccs.exe
|
serviccs.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Service
|
service.exe
|
U
|
Added by the ALADINZ.H TROJAN!
|
|
Service
|
services.exe
|
X
|
Added by the NETSKY or NETSKY.B WORMS! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Service
|
Service.pif
|
X
|
Added by the W32/Assiral-C email worm.
|
|
service
|
SYSNT.exe
|
X
|
Added by the BACKDOOR-CHA TROJAN! ... Read More
|
|
Service 8
|
smncs.exe
|
X
|
Added by the W32/Tilebot-DF worm and IRC backdoor.
|
|
Service App
|
Service.exe
|
X
|
Added by the Trojan.Boetac backdoor Trojan. This Trojan should not be confused with the legitimate file c:\Windows\System32\services.exe. ... Read More
|
|
Service Configurator
|
service.exe
|
X
|
A variant of the SdBot.aad family of worms and IRC backdoor Trojans.
|
|
Service Connection
|
sccenter.exe
|
N
|
For Compaq PC's. Part of Backweb
|
|
Service Control
|
smss32bk.exe
|
X
|
Added by the Troj/Stinx-X IRC backdoor.
|
|
Service Control Application
|
system.exe
|
X
|
Added by the worm. This worms spreads via the LSASS exploit.
|
|
Service Controller
|
services.exe
|
X
|
Added by the W32/Sdbot-DDT worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
|
|
Service Filter
|
smncs.exe
|
X
|
Added by the W32/Tilebot-CK worm and IRC backdoor.
|
|
Service Host
|
spoolxx.exe
|
X
|
Added by the TORVEL WORM!
|
|
Service Host
|
svchost.exe
|
X
|
Added by the TORVEL WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Service Host
|
SVCHOST.EXE
|
X
|
Added by the Troj/Daoser-A trojan downloader. This should not be confused with the valid svchost.exe that is found in the Windows\system32 directory. ... Read More
|
|
Service Host Driver
|
svchost.exe
|
X
|
Added by the HITON TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Service Host Manager
|
svchost.exe
|
X
|
Added by the W32/AutoRun-CQ removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Service Host Manager Windwos w32
|
svfhost.exe
|
X
|
Added by the W32/Vora-A worm.
|
|
Service Manager
|
sqlmangr.exe
|
N
|
SQL Server Service Manager - provides tray access to SQL server, the server agent and MSDTC. Available via Start -> Programs ... Read More
|
|
Service Manager
|
SERVICEMGR.EXE
|
X
|
Added by the W32/PassMail-D worm.
|
|
service manager
|
service.exe
|
X
|
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
|
|
Service Manager
|
serv3manager.exe
|
X
|
Added by the W32/Sdbot-AGO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Service Monitor
|
svcmon.exe
|
X
|
Added by the W32/Agent-FS worm and backdoor Trojan.
|
|
Service Monitor
|
srvmon.exe
|
Y
|
Added by the Netintelligence parental controls product.
|
|
Service Monitor
|
svhhda.exe
|
X
|
A IRCBot variant.
|
|
Service Pack 1
|
SPY_NET_RAT.exe
|
X
|
Added by the Troj/Agent-LRO Trojan.
|
|
service pack dll runtime
|
spdll32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Service Process
|
SVCHOST.EXE
|
X
|
Added by the DARKER WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/Dcmbot-C backdoor trojan.
|
|
Service Process
|
service.exe
|
X
|
Added by the Troj/DcmBot-F backdoor Trojan.
|
|
Service Restore Panels
|
servpanel.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Service Scheduler
|
scheduler.exe
|
X
|
Added by the W32/Agobot-OA infection.
|
|
Service Sequence
|
services32.exe
|
X
|
Added by the W32/Tilebot-C worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Service System
|
softdwind.exe
|
X
|
Added by the Troj/Bancos-JS password-stealing Trojan.
|
|
Service Update Client
|
svcupdcli.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Service.exe
|
Service.exe
|
X
|
"servedby.advertising" popup generator
|
|
Service2
|
Service2.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Iroffer malware.
|
|
service32
|
service32.exe
|
X
|
Added by the W32/AGOBOT-ST WORM! ... Read More
|
|
ServiceAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32.Korron.B worm. W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible dr ... Read More
|
|
serviceconnect
|
serviceconnect.exe
|
X
|
Added by the AGOBOT.AIR WORM! ... Read More
|
|
ServiceControlApp
|
services.exe
|
X
|
Added by the W32.SillyFDC.BDO removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
ServiceHost32
|
ServiceHost32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
ServiceHst
|
svcnost.exe
|
X
|
Added by the W32/Agobot-RS WORM/IRC backdoor trojan!
|
|
ServiceLayer
|
ServiceLayer.exe
|
Y
|
Nokia Connectivity Library support task that is needed by NCLTRAY and by the Nokia Connection Manager for either to work properly ... Read More
|
|
ServiceLayer
|
ServiceLayer.exe
|
Y
|
This file is installed with Nokia's PC Suite, a program that enables connections and creates an interface between MS Windows computers and Nokia m ... Read More
|
|
Servicemng
|
service.exe
|
X
|
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:
c:\windows\system32\hserv.sy ... Read More
|
|
Servicer
|
servcr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Servicerepclient1
|
SERVICES.EXE
|
X
|
Added by the W32/Brontok-BT worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
|
|
services
|
start.bat
|
X
|
Added by the ZCREW TROJAN!
|
|
Services
|
services.exe
|
X
|
A variant of the IRC.bot malware. This should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
services
|
svchosts.exe
|
X
|
Added by the Troj/Sdbot-N worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
services
|
socks.exe
|
X
|
Added by the WIN32.SMALL.N Proxy TROJAN! - A PT is a backdoor trojan which allows a remote hacker to connect to other systems via the compromised syst ... Read More
|
|
Services
|
services.exe
|
X
|
Added by the W32.Mydoom.CI@mm mass-mailing worm.
|
|
Services
|
sysamp.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
Services Administrator
|
svcadmin.exe
|
X
|
Added by the Troj/Dloader-NY trojan.
|
|
Services an controller-settings
|
services.exe
|
X
|
Added by the W32/Tilebot-HY worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\services.exe.
... Read More
|
|
Services Control Manager
|
services.exe
|
X
|
Added by the Troj/Delf-CG. This infection should not be confused with the legitimate Microsoft file C:\Windows\System32\service.exe. ... Read More
|
|
Services DLL Loader
|
srvdll.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Services Host
|
Scchost.exe
|
X
|
|
|
Services host
|
svchost.com
|
X
|
Added by the W32/Rbot-EU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Services Host
|
svchost32.exe
|
X
|
Added by the W32/Agobot-TG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Services Hosts
|
shost.exe
|
X
|
Added by the W32/Rbot-AXG worm and IRC backdoor.
|
|
Services Logon
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in C:\Documents and Settings\[user name]\Templates folder. ... Read More
|
|
Services Management
|
services.exe
|
X
|
Identified as the Backdoor.Rizo.A malware.
|
|
Services management
|
serivces.exe
|
X
|
Added by the W32.Whybo.Z virus. W32.Whybo.Z is a virus that infects executable files. It also opens a back door on the compromised computer. ... Read More
|
|
Services Management Clients
|
servc.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Services Managements
|
servcs.exe
|
X
|
Added by the Troj/QHost-B Trojan.
|
|
Services Manager
|
svsmanager.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Services Manager!
|
svmanager.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Services Managers
|
svcmanager.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Services Network
|
Services.exe
|
X
|
Added by the W32/Swisyn-E worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Services Process
|
services.exe
|
X
|
Added by unidentified spyware - recognized by Kaspersky antivirus as Small.X TROJAN! ... Read More
|
|
Services Process
|
smss.exe
|
X
|
Added by the Troj/Small-EK backdoor trojan.
|
|
Services Startup
|
services.exe
|
X
|
Added by the W32.Crowt.A@mm infection. Found in c:\program files\common files.
|
|
Services Startup
|
svhost33.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Services++
|
services.exe
|
X
|
Added by the W32.SillyFDC.BDM worm. W32.SillyFDC.BDM is a worm that spreads by copying itself to removable and mapped drives. This infection should no ... Read More
|
|
services.dll
|
smss.exe
|
X
|
Added by the W32/SOBER-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Services.EXE
|
services.exe
|
X
|
Added by the KAZPING WORM! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
services.exe
|
Services.exe
|
X
|
Added by the CIADOOR-F TROJAN! Note - this is NOT the legitimate services.exe process, which should NOT figure in Msconfig/Startup! ... Read More
|
|
services.exe
|
servicess.exe
|
X
|
Added by the Troj/MSNSpy-B password stealing Trojan.
|
|
services32
|
services32.exe
|
X
|
Added by the W32/Esbot-B worm and IRC backdoor.
|
|
services32.exe
|
services32.exe
|
X
|
Added by the W32/Forbot-FN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ServicesAdministrator
|
SERVICES.EXE
|
X
|
Added by the W32/Punya-B worm. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
Servicesara
|
services.exe
|
X
|
Added by the W32/Brontok-BS worm. This infection should notbe confused with the legitimate C:\Windows\System32\services.exe program. ... Read More
|
|
servicestub.exe
|
servicestub.exe
|
X
|
Identified as a the Backdoor.Win32.DsBot.mu MSN worm.
|
|
Service_SKYNET<random chars>
|
SKYNET<random characters>.dat
|
X
|
SkyNet Rootkit.
|
|
Service_SKYNET<random chars>
|
SKYNET<random characters>.sys
|
X
|
SkyNet Rootkit.
|
|
Servicio
|
sound.exe
|
X
|
Added by the Troj/Banker-FFT online banking Trojan.
|
|
Servicio Local
|
svhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
servico
|
servico.exe
|
X
|
Added by the Troj/Banker-DKE Trojan. Troj/Banker-DKE includes functionality to send notification messages to remote locations. ... Read More
|
|
servico2
|
servico2.exe
|
X
|
Added by the Troj/Banker-DTB banking Trojan.
|
|
Servicos
|
System.exe
|
X
|
Added by the Troj/Bancos-BCM online banking Trojan. If you are infected with this malware you should immediately change all of your online banking pa ... Read More
|
|
servics
|
servics.exe
|
X
|
Added by the Troj/Singu-J password stealing backdoor trojan.
|
|
servisec
|
servisec.exe
|
X
|
Added as a new service by the Troj/Xrat-B TROJAN, using a displayname of the same. ... Read More
|
|
servises
|
servises.exe
|
X
|
Added by the Troj/Agent-JUJ Trojan.
|
|
servlce
|
SERVlCE.EXE
|
X
|
Added by the W32/Agobot-UB ... Read More
|
|
ServUTrayIcon
|
ServUTray.exe
|
?
|
System Tray icon for Serv-U FTP server. Is it required?
|
|
SES Service
|
sesvc.exe
|
X
|
Added by the W32/Sdbot-CZU worm and IRC backdoor.
|
|
session client
|
sescli.exe
|
U
|
SurfSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
Session Manager
|
sessmngr.exe
|
X
|
Added by the Troj/Theef-F backdoor Trojan.
|
|
Session Manager Subsystem
|
smssa.exe
|
X
|
Added by the W32/Rbot-AGS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Session Simulator
|
sssnsml.exe
|
X
|
Added by the DoctorVaccineZ rogue anti-spyware program.
|
|
SessMgr
|
sessmgr.exe
|
X
|
Identified as Trojan:Win32/Rodecap.A by Microsoft.
|
|
SESync
|
sed.exe
|
X
|
Downloadware/SED adware downloader
|
|
setdefprt
|
setdefprt.exe
|
N
|
Sets the Brother Printer to be the default printer after installation of the printer software. ... Read More
|
|
SetHook
|
SetHook.exe
|
N
|
Fellowes Neato CD label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar" ... Read More
|
|
SETI@home
|
SETI@home.exe
|
N
|
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
|
|
seticlient
|
SETI@home.exe
|
N
|
SETI@home is a scientific experiment that uses Internet-connected computers in the Search for Extraterrestrial Intelligence (SETI). You can participat ... Read More
|
|
SetIcon
|
SetIcon.exe
|
N
|
Installed by a 6-in-1 (4 Media Card slots, a floppy drive and a USB connection) device. Constantly updates the icons for the four Media Card slots tha ... Read More
|
|
SetiQueue
|
Setiqu~1.exe
|
N
|
Provides work unit buffering for Seti@Home clients - see here for more details
|
|
SetiSpy
|
SetiSpy.exe
|
N
|
From the site - 'SETI Spy is a little program I wrote to "spy" on the progress and performance of the SETI@home client. I call it a "spy" because I tr ... Read More
|
|
SetPoint
|
SetPoint.exe
|
X
|
Added by the W32/Rbot-BWI worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SetPoint
|
SetPoint.EXE
|
U
|
Logitech keyboard and mouse drivers that allows you to configure and enable special features of your mouse and keyboard. This startup is only require ... Read More
|
|
SetPoint.exe
|
SetPoint.exe
|
X
|
A variant of the Bck/Sdbot.LBM family of worms and IRC backdoor Trojans.
|
|
SetRefresh
|
SetRefresh.exe
|
?
|
Found on a Compaq PC. Video refresh rate utility? Is it required?
|
|
Setting
|
sysweb.exe
|
X
|
Added by the SDBOT.GEN TROJAN!
|
|
Setup
|
Setup.exe
|
X
|
Identified by BOClean as Trojan GMTER.
|
|
Setup experation
|
svchost.exe
|
X
|
Added by the TOFGER-AW TROJAN! Note - this is not the legitimate svchost.exe process, which NOT appear in Msconfig/Startup! ... Read More
|
|
setup.exe
|
setup.exe
|
X
|
Added by the Troj/Goldun-GB Trojan.
|
|
setup2.exe
|
setup2.exe
|
X
|
Added by the WiniBlueSoft rogue anti-spyware program.
|
|
setuzp
|
setuzp.exe
|
?
|
??
|
|
SetVrc
|
setvrc.exe
|
X
|
Added by the HUNTOCX WORM!
|
|
sevenlink
|
sevenlog.sys
|
X
|
Added by the Trojan.Sevensaw Trojan.
|
|
Sevenlink
|
Sevenlog.sys
|
X
|
Added by the Troj/Agent-GIR Trojan.
|
|
SevenSowrd
|
SysSevenSowrd.exe
|
X
|
Added by the Troj/Agent-GIR Trojan.
|
|
SevenSword Service
|
SevenSowrdSvr.exe
|
X
|
Added by the Trojan.Sevensaw Trojan. Trojan.Sevensaw is a Trojan horse that drops a keyboard filter driver to log keystrokes and sends the stolen info ... Read More
|
|
SevenSword Service
|
SevenSowrdSvr.exe
|
X
|
Added by the Troj/Agent-GIR Trojan.
|
|
SevenUp
|
sevenup.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf malware.
|
|
Sex Teris
|
st01b.exe
|
X
|
|
|
Sexnow
|
Sexnow.exe
|
X
|
Added by the Dial/Senow-B premium rate porn dialer.
|
|
sexy_blondes
|
Sexy_Blondes.exe
|
X
|
Added by the Porn.Dialer.Sexy Key Logger ... Read More
|
|
Sexy_ca
|
Sexy_ca.exe
|
X
|
|
|
Sexy_dk
|
Sexy_dk.exe
|
X
|
|
|
Sexy_es
|
Sexy_es.exe
|
X
|
|
|
Sexy_gb
|
Sexy_gb.exe
|
X
|
|
|
Sexy_it
|
Sexy_it.exe
|
X
|
|
|
Sexy_sg
|
Sexy_sg.exe
|
X
|
Premium rate adult content dialler
|
|
sf
|
sf.exe
|
X
|
Added by the WIN32.FAVADD.O TROJAN!
|
|
sfita
|
sfita.exe
|
X
|
Added by the FAVADD.O TROJAN!
|
|
sfool.exe
|
sfool.exe
|
X
|
Added by the W32.Randex.EUS worm.
|
|
sfpc
|
sfpc.exe
|
U
|
Spy4PC is a spyware program that monitors user activity, logs keystrokes, and takes screenshots. If you didn't install this yourself remove it. ... Read More
|
|
SfWinStartInfo
|
sfWinStartupInfo.exe
|
U
|
SFIRM32 Online Banking software
|
|
Sgecrypt
|
Sgecrypt.exe
|
U
|
SafeGuard Easy - "provides total company-wide protection for sensitive information on laptops and workstations. Boot protection, pre-boot user authent ... Read More
|
|
sginst
|
sginst.exe
|
N
|
eAcceleration Stop-Sign related - not recommended, see note
|
|
SGTBox
|
SGTBox.exe
|
?
|
Canon scanner driver. Is it required?
|
|
sgtray
|
sgtray.exe
|
U
|
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
|
|
shambl3r*
|
shambl3r.exe
|
X
|
Added by the REMABL WORM! where * is 2 to 11
|
|
shania
|
Shania.vbs
|
X
|
Added by the SHANIA VIRUS! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to laun ... Read More
|
|
SHAProc
|
SHAProc.exe
|
X
|
Added by the Trojan.OnlineGames.Gen.71 password-stealing Trojan.
|
|
Shareaza
|
Shareaza.exe
|
N
|
|
|
sharedprem
|
sharedprem.exe
|
X
|
Added by the MAKECALL TROJAN!
|
|
sharK Server
|
SharKServer.cmd
|
X
|
Added by the Backdoor.Shark!sd5 backdoor. This infection uses Alternate Data Streams to hide itself. In order to remove these files you will need to ... Read More
|
|
shdde
|
shdde.exe
|
X
|
Added by the Backdoor.Masteseq backdoor.
|
|
shdef
|
shdef.exe
|
X
|
Added by the Troj/VB-DVS information stealing Trojan.
|
|
shdll
|
shdll.dll
|
X
|
Added by the Troj/Bckdr-DBQ Trojan.
|
|
shdosbei
|
shdosbei.dll
|
X
|
|
|
SHDSERV
|
shdserv.exe
|
U
|
Added by the RollBack Rx system restore program.
|
|
SheduIer
|
svchst.exe
|
X
|
Premium rate adult content dialler
|
|
SheduIer
|
shch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Shell
|
Shell32.exe
|
X
|
Added by the BADSECTOR TROJAN!
|
|
Shell
|
svchost.exe
|
X
|
Added by the Troj/Goldspy-B TROJAN!
|
|
Shell
|
svghost.exe
|
X
|
Added by the Troj/Lineage-J.
|
|
Shell
|
smsc.exe
|
X
|
Added by the Troj/Bancban-OY password-stealing Trojan.
|
|
Shell
|
SysTray.com
|
X
|
Added by the W32.Nekat.A worm. W32.Nekat.A is a worm that spreads through removable storage devices. It also lowers security settings on the compromis ... Read More
|
|
shell api32
|
svcnet.exe
|
X
|
Added by the WIN32.TIBICK.C WORM! ... Read More
|
|
Shell Current Manager
|
svshost.exe
|
X
|
A variant of the W32/Rbot-GQR worm and IRC backdoor.
|
|
Shell Extension
|
spollsv.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
Shell Software Detection
|
shellsw.exe
|
X
|
Added by the W32/Tilebot-HR worm and IRC backdoor.
|
|
Shell Tray Window
|
ShellTraywnd.exe
|
X
|
Added by the Troj/Stultdor-A backdoor trojan.
|
|
shell update
|
shellexec.exe
|
X
|
Added by the W32/Rbot-ANC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Shell32
|
Shell32.vbs
|
X
|
Added by the VBS.Scafene WORM!
|
|
Shell32
|
shell32dll.exe
|
X
|
Added by the Troj/Banloa-BKV Trojan.
|
|
ShellApi
|
SHELLMSN.EXE
|
X
|
Added by the NETDEV.B TROJAN!
|
|
Shellapi32
|
Shellapi32.exe
|
X
|
Added by the NETDEVIL (or NERTE) TROJAN!
|
|
Shellapi32
|
svcnet.exe
|
X
|
Added by W32/Tibick-C, a P2P WORM with limited backdoor functionality.
|
|
shellbn
|
shlext32.exe
|
X
|
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
|
|
Shelldaemon
|
Shelldaemon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ShellEx
|
ShellEx.exe
|
X
|
Added by the ANAKHA TROJAN!
|
|
shellservice
|
ShellService.dll
|
U
|
Added by the WebWatcher surveillance tool. This program should be removed if it was not installed by yourself. ... Read More
|
|
Shellspl
|
spools.exe
|
X
|
Added by an unidentified TROJAN!
|
|
shellsystem
|
shellsystem.exe
|
X
|
Added by the UPCHAN TROJAN!
|
|
shhost
|
shhost.exe
|
X
|
Added by the BACKDOOR.WIN32.AGENT.CE TROJAN! ... Read More
|
|
shicoxp
|
shicoxp.exe
|
N
|
Installed with the drivers for multi card readers of various brands. To differentiate between the various card slots on multi slot readers the shicoxp ... Read More
|
|
Shield Security
|
shield.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Shield32 Security
|
shield32.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
ShieldSafeness
|
ShieldSafeness.exe
|
X
|
Added by the ShieldSafeness rogue anti-spyware program.
|
|
Shine
|
Shine.exe
|
X
|
Added by the HAPPYLOW (or NISHE-A) VIRUS!
|
|
SHINITV
|
shinitv.exe
|
?
|
??
|
|
ShockmachineReminder
|
SmReminder.exe
|
N
|
Shockmachine is an entertainment playback device that lets you save your favorite Shockwave.com titles and play them back in full-screen mode, off-lin ... Read More
|
|
ShockMgr
|
ShockMgr.sys
|
Y
|
Driver related to the IBM Active Protection System that protects installed hard drives. ... Read More
|
|
Shockprf
|
Shockprf.sys
|
Y
|
|
|
Shockwave Init
|
SWINIT.EXE
|
N
|
Part of Macromedia Shockwave. Controls the Shockwave Remote Control Panel. The Remote Control can be activated manually from the Start Menu by locatin ... Read More
|
|
Shockwave Updater
|
swhelper.exe
|
N
|
Used by Shockwave to check for and install new updates.
|
|
shoket
|
svchs0t.exe
|
X
|
Added by the Troj/WowPWS-E Trojan. This infection should not be confused with the legitimate Microsoft file found at C:\Windows\System32\svchost.exe. ... Read More
|
|
ShortKeys 99
|
SHORTKEY.EXE
|
N
|
ShortKeys from Insight Software Solutions - allows you to program keys with text strings ... Read More
|
|
shotkey
|
sHotKey.exe
|
Y
|
Related to Chicony_Keyboards It manages the special key functions such as Internet, E-mail, Volume Control and more. Found in Sony's computer and pos ... Read More
|
|
SHOVE
|
SHOVE.exe
|
X
|
Added by the Troj/Agent-EOM Trojan.
|
|
Showbehind
|
SHOWBEHIND.EXE
|
X
|
Advertisement display which can be stopped here
|
|
ShowFF
|
ShowFF.exe
|
X
|
Added by the Adware.FFToolBar adware toolbar.
|
|
ShowIcon_SmartDisk Corporation_USB Card Reader v1.14e051
|
shwicon.exe
|
?
|
Card reader for memory cards from digital cameras. Is it required?
|
|
showwnd
|
ShowWnd.exe
|
U
|
Showwnd is included with the Chicony keyboard software and is used by the software to stop the keyboard driver's taskbar entry from reappearing. This ... Read More
|
|
SHPC32
|
SHPC32.exe
|
U
|
Port monitor for Lexmark printers on a USB connection. Ties in with the Printer Control Program. Features like cancelling a print are unavailable if d ... Read More
|
|
ShStatEXE
|
SHSTAT.EXE
|
Y
|
From McAfee VirusScan NT 4.x. Handles program communication among VShield components, displays VShield icon. Can be started automatically or available ... Read More
|
|
Shutdownaware
|
shutdownaware.exe
|
U
|
Loaded by the SWEEX 6-in-1 Media Card Reader to properly manage the reader while it is connected to your system ... Read More
|
|
ShutDownPro
|
ShutDownPro.exe
|
U
|
ShutDownPro - shutdown, reboot, logoff your System with one mouse click
|
|
Si Meter
|
SIMETER.EXE
|
?
|
??
|
|
siapro6
|
sia.exe
|
U
|
Steganos Internet_Anonym privacy software ... Read More
|
|
Sicom
|
Sicom.exe
|
X
|
Added by the NETLIP WORM!
|
|
Sid Meier's Alpha Centauri Planetary Pack
|
sidmeier.exe
|
X
|
Added by the W32/Vanebot-Q worm and IRC backdoor.
W32/Vanebot-Q spreads
to other network computers by exploiting common buffer o ... Read More
|
|
SideACT
|
SideACT.exe
|
U
|
SideACT organizer software
|
|
Sidebar
|
Sidebar.exe
|
X
|
|
|
Sidebar
|
sidebar.exe
|
U
|
The Windows sidebar that allows you to add gadgets, rss feeds, and other information. ... Read More
|
|
sidematchup
|
sidematchup.exe
|
X
|
Identified by AVG antivirus as a variant of the Skodna.Generic.BV malware.
|
|
SideWinderTrayV4
|
SWTrayV4.exe
|
N
|
MS SideWinder game controller system tray icon. This is specific to version 4 of the software. Available via Start -> Programs ... Read More
|
|
SigmaTel Audio Service
|
stacsv.exe
|
Y
|
Part of the drivers for Sigmatel audio chipsets.
|
|
SigmatelSysTrayApp
|
stsystra.exe
|
N
|
System tray program for the Sigmatel Audio sound card. Often found on Dell computers. ... Read More
|
|
SigX
|
sigx.exe
|
?
|
??
|
|
SigXC
|
SigX.exe
|
X
|
SigX is a "dynamic signature image generated based on whatever data your computer sends it though our SigX program. It can display your current Mp3, c ... Read More
|
|
SilentSoftech
|
SilentSo.exe
|
X
|
Added by the W32/Autorun-ANU removable media worm.
|
|
Simcast
|
SimcastAlerts.exe
|
N
|
Simcast is a free service that allows you to subscribe to information on a large variety of topics. Alerts will appear on your desktop when a channel ... Read More
|
|
SimpLite-MSN
|
SimpLite-MSN.exe
|
U
|
Required if you use the SimpLite add-on to MSN Messenger (SimpLite adds encryption to the instant messaging service) ... Read More
|
|
Singapore
|
singapore.exe
|
X
|
Adds a blue crescent to the taskbar and when double-clicked displays an adult-content web-site. Also known to drop your internet connection and dial a ... Read More
|
|
sioco
|
sioco.exe
|
X
|
Added by the Troj/Agent-MOD Trojan.
|
|
SIPPS
|
SIPPS\SIPPS.exe
|
U
|
Web.de Internet phone utility
|
|
SiS Tray
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
|
|
sis7012utility
|
SiSAudUt.exe
|
Y
|
SiS Corporation sound card driver
|
|
SISAM10M
|
SISAM10M.exe
|
?
|
??
|
|
siService.exe
|
siService.exe
|
U
|
Spam Inspector - anti email spam software
|
|
SiSPower
|
SiSPower.dll
|
U
|
Power management program for computers with SiS chipsets.
|
|
sisraid
|
SRaid.exe
|
U
|
Related to the SIS_RAID system from Silicon Integrated Systems. ... Read More
|
|
SiSSetCDfmt
|
SiSSetCDfmt.exe
|
?
|
Related to a Silicon Integrated Systems Corp (SiS) product?
|
|
SISSoundman
|
Soundman.exe
|
?
|
Related to a Silicon Integrated Systems Corp (SiS) product?
|
|
SiSSWLED
|
sisswled.exe
|
U
|
System Tray utility for SiS 900 network cards
|
|
sistrai.exe
|
sistrai.exe
|
X
|
Added by the PROVA TROJAN!
|
|
sistray
|
sistray.exe
|
X
|
Added by the PROVA TROJAN!
|
|
sistray
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics. Note - this resides in C:\Windows\System ... Read More
|
|
sistry
|
sistry.exe
|
X
|
|
|
SiSUSBRG
|
SiSUSBrg.exe
|
N
|
SiS USB Registry Patch File - fixes the undetectable problem with SiS USB controller on Windows XP ... Read More
|
|
SiteAdvisor
|
SiteAdv.exe
|
N
|
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the ... Read More
|
|
SiteAdvisor Service
|
SAService.exe
|
N
|
Part of McAfee's SiteAdvisor Program. When installed, SiteAdvisor alerts you about whether a site is safe or not when you visit it. The 4608 in the pa ... Read More
|
|
SiteAdware.exe
|
SiteAdware.exe
|
X
|
Added by the SiteAdware rogue anti-spyware program.
|
|
SIWIO
|
SiwIo.sys
|
Y
|
SIWy is an advanced System Information for Windows tool that analyzes your computer and gathers detailed information about system properties and setti ... Read More
|
|
sixer566
|
sscc.exe
|
X
|
Identified as a variant of the Mailbot Trojan.
|
|
sixtysix
|
sixtypopsix.exe
|
X
|
Unidentified adware
|
|
SiZhu
|
SiZhu.exe
|
X
|
Added by the TW32/AutoRun-IE removable media worm.
|
|
sk51
|
SK51.EXE
|
U
|
SaveKeys keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
sk60
|
SK60.EXE
|
U
|
Added by the SaveKeys surveillance software. Uninstall this software unless you put it there yourself. ... Read More
|
|
SK9910DM
|
SK9910DM.EXE
|
U
|
Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys ... Read More
|
|
SKDAEMON
|
SKDAEMON.EXE
|
U
|
Multi-function keyboard driver. Allows the use of programmable keys on multimedia keyboards. Required if you use the additional keys. ... Read More
|
|
skinkers
|
skinkers.exe
|
U
|
Selection of desktop messaging/marketing tools with celebrity tie-ins including MTV's "Desktop Ozzy" and Arsenal's "Desktop Wenger" - see here. Leave ... Read More
|
|
SKQ
|
skq.exe
|
X
|
Added by the W32/VBSilly-D worm. W32/VBSilly-D spreads via file sharing on P2P networks. ... Read More
|
|
Skra
|
Skra.exe
|
X
|
Identified as a variant of the TrojanDownloader.Matcash malware.
|
|
sks-32
|
sks32proc.exe
|
U
|
Added by the Spyware.SpyKeySpy surveillance software. If you did not install this software you should remove it immediately. ... Read More
|
|
sks-32
|
SKS32P~1.EXE
|
X
|
SpyKeySpy logs keystrokes and sends the stolen information to a configurable email address. ... Read More
|
|
sks2drvr
|
sks2drvr.sys
|
X
|
Added by the Backdoor.Haxdoor.G backdoor Trojan.
|
|
sksdll
|
sksdll.dll
|
X
|
Added by the Backdoor.Haxdoor.F proxy Trojan.
|
|
sksdrvr2
|
sksdrvr2.sys
|
X
|
Added by the Backdoor.Haxdoor.F proxy Trojan.
|
|
Skunk.exe
|
Skunk.exe
|
X
|
Added by the W32/Sunk-A overwriting virus. This virus will copy itself to various locations on your hard drive and then start replacing .exe files on ... Read More
|
|
SkyBlaster Scheduler
|
SSFSch.exe
|
Y
|
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
|
|
skynetave.exe
|
skynetave.exe
|
X
|
Added by the SASSER.D WORM!
|
|
Skype
|
Skype.exe
|
N
|
"Skype is free and simple software that will enable you to make free calls anywhere in the world in minutes" ... Read More
|
|
Skype Messenger
|
skype32.exe
|
X
|
Added by the W32/Dolebot-A email worm and IRC backdoor. This infection also installs the rootkit file rofl.sys. ... Read More
|
|
Skype Startup
|
skyp.exe
|
X
|
Added by the W32/VanBot-C worm with IRC backdoor functionality.
|
|
SkypeStartup
|
Skype.exe
|
X
|
Added by the Mal/Pykse-A worm.
|
|
SkySurfer Management Service
|
SmaServ.exe
|
Y
|
For Gilat Communications internet satellite systems - associated with SkyBlaster modem. Required if you have this system ... Read More
|
|
SkyTel
|
SkyTel.exe
|
U
|
Program related to the Realtek Voice Manager used by some of their audio chipsets. ... Read More
|
|
Slayhacker734
|
slay7383.exe
|
X
|
Added by the Troj/SikBot-A IRC backdoor.
|
|
slbcmqad
|
slbcmqad.dll
|
X
|
Added by the W32/Stratio-BP worm.
|
|
slbrmqtr
|
slbrmqtr.exe
|
X
|
Added by the WORM_STRAT.EQ mass-mailing worm.
|
|
SleepApp
|
sleep32.dll
|
X
|
Identified as a variant of the Trojan-PSW.Win32.Delf.bfh malware.
|
|
SleepManager
|
SleepMgr.exe
|
N
|
This program locates free contiguous disk spaces and allocates them for storing BASE MEMORY, EXTENDED MEMORY, VIDEO MEMORY, and SM RAM. It helps the c ... Read More
|
|
SlickRun
|
sr.exe
|
U
|
"SlickRun is a floating command line utility for Windows. It gives you almost instant access to any program or website. SlickRun allows you to create ... Read More
|
|
slimp3
|
SliMP3 Server.exe
|
N
|
Slimp3 Server - "presents an entirely new way of accessing and enjoying your music collection. Instead of storing your music on CDs or memory cards, t ... Read More
|
|
Slingshot
|
SLINGS~1.EXE
|
N
|
Atomica Slingshot - "reference tool with access to dictionary and encyclopedia terms, bios, technical terms, history, geography, and much more" ... Read More
|
|
slipstream
|
slipcore.exe
|
U
|
Sliptstream Web Accelerator ... Read More
|
|
SLMDriver
|
SLM32.sys
|
X
|
Added by the Troj/Rootkit-AA rootkit.
|
|
slmss
|
slmss.exe
|
X
|
SeekSeek search hijacker related - as seen here
|
|
sload
|
sload32.exe
|
X
|
Added by the W32/Sdbot-OY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
sload
|
sload.exe
|
X
|
Win SynchroAd adware, also detected as TROJ/DLOADER-QG TROJAN! ... Read More
|
|
slvchost32
|
slvchost32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
slysom
|
slysom.exe
|
X
|
Added by the W32/Tilebot-KW worm and IRC backdoor.
|
|
sm
|
sr_exe.exe
|
X
|
Added by the LUKUSPAM TROJAN! ... Read More
|
|
sm
|
sf_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! ... Read More
|
|
sm
|
sm_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
|
|
sm
|
sa_exe.exe
|
X
|
Added by the OLFEB.A TROJAN! This infection allows spam to be sent through your computer. ... Read More
|
|
SM1BG
|
SM1BG.EXE
|
?
|
USB driver for downloading from within Napster to portable MP3 players. Is it required to run at startup or can it be run manually? ... Read More
|
|
Sm56acl
|
sm56hlpr.exe
|
N
|
Helper utility for Motorola based SM56 software modems - resides in the System Tray ... Read More
|
|
sma
|
sma.exe
|
U
|
Added by the Smart Keystroke Recorder keylogger and surveillance software. This program should be removed if it is found on your computer without you ... Read More
|
|
SMA Negeri 4
|
SMA Negeri 4.exe
|
X
|
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
|
|
smail
|
smail.exe
|
X
|
Added by the W32/Sexer-C email worm.
|
|
small b0t
|
syschk.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SManager
|
smanager.7.exe
|
X
|
Added by the Troj/DwnLdr-GUI downloader Trojan.
|
|
Smapp
|
smtray.exe
|
N
|
System Tray access for the Compaq/ADI SoundMAX integrated digital audio controller ... Read More
|
|
Smart Anti-Malware Protection
|
SAa76.exe
|
X
|
|
|
Smart Antivirus-2009.exe
|
Smart Antivirus-2009.exe
|
X
|
Added by the Smart Antivirus 2009 rogue anti-spyware program.
|
|
Smart Card Client
|
SCardClnt.exe
|
X
|
Added as a new service by the W32/Codbot-K WORM/IRC backdoor, using SCardClnt as a servicename. ... Read More
|
|
Smart Card Service
|
ScardSvr.exe
|
N
|
For Smart Card readers. Known to cause problems, especially for Windows 2000 users - see here. Probably not required unless you use such a device regu ... Read More
|
|
Smart Connect Monitor
|
SCMon.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
Smart Connect Setup
|
SCSetup.exe
|
U
|
Appears on a Sony Vaio. Smart Connect Version 2.1 enables data transfer between Vaios via i.LINK cable. Smart Connect supports File and Printer Sharin ... Read More
|
|
Smart Defender PRO
|
smrtdefp.exe
|
X
|
Added by the Smart Defender Pro rogue anti-spyware program.
|
|
Smart Engine
|
SMae0_2129.exe
|
X
|
Added by the Smart Engine rogue anti-spyware program.
|
|
Smart Label O Server
|
ssloserv.exe
|
N
|
Part of the printer software for the smart-label printer made by Seiko. Can be disabled safely ... Read More
|
|
Smart Label RFViewer
|
SSLFVIEW.EXE
|
N
|
Part of the printer software for the smart-label printer made by Seiko. Can be disabled safely ... Read More
|
|
Smart Security
|
SMae0_289.exe
|
X
|
Added by the Smart Security rogue anti-spyware program.
|
|
Smart Type Assistant
|
sta.exe
|
N
|
Smart Type Assistant - a complex typing automation tool, intended to make your work faster and safer ... Read More
|
|
Smart Virus Eliminator
|
SM<3 random chars>.exe
|
X
|
Added by the Smart Virus Eliminator rogue anti-spyware program.
|
|
SmartBarXP
|
SmartBarXP.exe
|
N
|
SmartBarXP is a bar that runs down the side of your screen, and can be configured to display interactive panels known as 'panes'. These panes include ... Read More
|
|
sMaRTcaPs
|
SMARTC~1.EXE
|
N
|
sMaRTcaPs from Phoebus LLC - enables you to configure the time needed to depress Caps Lock, Num Lock & Insert keys ... Read More
|
|
SmartFixer
|
SmartFixer.exe
|
X
|
Added by the SmartFixer 2007 rogue security product. SmartFixer is a misleading application that may give exaggerated reports about potential risks on ... Read More
|
|
SmartLinkService
|
slserv.exe
|
U
|
Associated with SmartLink modem and is used to show a tray icon that gives connection information. ... Read More
|
|
smartprotector
|
smartprotector.exe
|
X
|
Added by the Smart Protector rogue anti-spyware program.
|
|
SmartSecurity
|
SmartSecurity.exe
|
X
|
Added by the Smart Security rogue anti-spyware program.
|
|
smartsync pro
|
SmartSync.exe
|
U
|
Related to CompanionLink Software Inc., Synchronization solutions for ACT!, GoldMine, Lotus Notes and Microsoft Outlook. ... Read More
|
|
SmartTag Recognizer
|
strecog.exe
|
X
|
Added by the W32.Joydotto worm. W32.Joydotto is a worm that spreads by copying itself to all removable drives. It may attempt to download potentially ... Read More
|
|
SMax4
|
SMax4.exe
|
N
|
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
|
|
SMax4PNP
|
SMax4PNP.exe
|
U
|
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
|
|
smbdpmi
|
smbdpmi.exe
|
?
|
IBM Netfinity Director and Universal Management Services related. What does it do and is it required? ... Read More
|
|
smc
|
smc.exe
|
Y
|
Sygate Firewall
|
|
smc
|
spfsmc.exe
|
Y
|
Sygate Firewall
|
|
SMC Service
|
smc.exe
|
Y
|
Sygate Firewall
|
|
SMC Service
|
spfsmc.exe
|
Y
|
Sygate Firewall
|
|
smcservice
|
smc.exe
|
Y
|
Sygate Personal Firewall ... Read More
|
|
SmcServices
|
smc.exe
|
Y
|
Sygate Firewall
|
|
SmcServices
|
spfsmc.exe
|
Y
|
Sygate Firewall
|
|
smcss
|
smcss.exe
|
X
|
Added by the Troj/SCLog-AJ Trojan Spyware.
|
|
smcss
|
smcss.dll
|
X
|
Added by the Troj/SCLog-AJ Trojan Spyware.
|
|
Smcsta.exe
|
Smcsta.exe
|
?
|
SMC Networks wireless PCI card driver. Is it required?
|
|
smcsvr
|
SmcSVR.exe
|
X
|
Added by the LEGMIR.JU ... Read More
|
|
smess
|
smess.exe
|
X
|
Identified by Nod32 as a variant of the Win32/TrojanDownloader.Delf.PCZ malware. ... Read More
|
|
SMI helper driver
|
smihlp.sys
|
Y
|
Fingerprint reading driver for IBM Thinkpad laptops.
|
|
smi2
|
smi2.sys
|
Y
|
IBM System Management Interrupts Bios driver.
|
|
SmileyApp
|
stbapp.exe
|
X
|
Added by the Adware.DoubleD adware. Adware.DoubleD is an adware program that displays out-of-context advertisements. ... Read More
|
|
SmitFraudFixTool
|
SmitFraudFixTool.exe
|
X
|
Added by the SmitFraudFixTool anti-malware program.
|
|
Smith Micro try
|
smiptray.exe
|
N
|
Smith Micro shared files. Comes with D-Link web cam
|
|
smmservice
|
smmservice.exe
|
X
|
Added by the Defence Center rogue anti-spyware program.
|
|
smoothview
|
SmoothView.exe
|
N
|
TOSHIBA Zooming Utility - allows "automatic" zoom feature in some appications, like IE, MS-Office, WMPlayer, Adobe-Reader and also desktop icons. ... Read More
|
|
smpautostart
|
smpdemo.exe
|
U
|
Related to Smart_Phone_Recorder from KenGolf.com. Answering Machine, Caller ID, Call Recording. ... Read More
|
|
SmpcSys
|
SmpSys.exe
|
?
|
Found on Packard Bell computers. Legitimate, but unsure as to what it does.
|
|
smres
|
smres.exe
|
X
|
Added by the W32/Agobot-UA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
smrtprt
|
smrtprt.exe
|
X
|
Added by the Smart Protector rogue anti-spyware program.
|
|
sms
|
sms.exe
|
X
|
Added by the Troj/Dloader-KR TROJAN!
|
|
Sms System32
|
SmsSystem32.exe
|
X
|
Unidentified malware
|
|
SMS Win9x Message Agent
|
SMSMsg.exe
|
U
|
This program assigns a user to a Systems Management Server site
|
|
smscc
|
smscc.exe
|
X
|
Added by the W32/Sdbot-CPG worm and IRC backdoor.
|
|
Smserial
|
sm56hlpr.exe
|
Y
|
Motorola based modem driver
|
|
SMSERIALWORKERSTART
|
shellexcon.exe
|
X
|
Trojan installed with the SpyBurner rogue anti-spyware program.
|
|
SMshclkrj0etfg
|
shclkrj0etfg.exe
|
X
|
Added by the Malware Protector 2008 rogue anti-spyware program.
|
|
SMSI Loader
|
SMLoader.exe
|
N
|
|
|
smsm
|
smsm.exe
|
X
|
Added by the Troj/Banker-CO trojan. This infection attempts to steal information about your online banking. ... Read More
|
|
smsrv
|
smsrv.exe
|
X
|
Added by the W32/Agobot-SX worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
SMSS
|
smss.exe
|
X
|
Added by the FLOOD.F Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
Smss Host
|
smhost.exe
|
X
|
Added by the Troj/IRCBot-ACC worm and IRC backdoor.
|
|
Smss Host
|
smhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
smss32.exe
|
smss32.exe
|
X
|
Unknown malware.
|
|
smsslevel4
|
smss.exe
|
X
|
Unidentified malware. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
SMSSS
|
smsss.exe
|
X
|
Added by the SDBOT.ZD WORM!
|
|
SMSSS Loader
|
smsss.exe
|
X
|
Added by the AGOBOT.MQ WORM!
|
|
SMSSU
|
SMSSU.EXE
|
X
|
Added by the Troj/Small-EI trojan dropper.
|
|
SMSTray
|
SMSTray.exe
|
U
|
Samsung Media Studio was developed to manage audio, video, photo collections on Samsung media player devices. This program will check for new media th ... Read More
|
|
SMSystemAnalyzer
|
SMSystemAnalyzer.exe
|
Y
|
Related to Iolo's System Mechanic program.
|
|
sms_msn
|
sms_msn.exe
|
X
|
Added by an unknown WORM or TROJAN infection.
|
|
sms_msn40
|
sms_msn40.exe
|
X
|
Added by an unknown WORM or TROJAN infection.
|
|
smt
|
SMT.exe
|
U
|
Win-Spy keyboard logger/monitoring software - remove unless you installed it yourself! ... Read More
|
|
SMToolbar
|
SMToolbar.exe
|
N
|
StartMake.com toolbar
|
|
SMTP32 Mailing Protocol
|
smtp32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
smtpdrv
|
smtpdrv.sys
|
X
|
Added by the TROJ_PANDEX.AF Trojan.
|
|
SMTPSVC
|
smtpsvc.exe
|
X
|
Added by the W32/Tilebot-AU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SmWizard
|
SmWizard.exe
|
?
|
SmartWizard MFC Application - associated with C-Media who produce audio chipsets commonly used for on-board sound on motherboards. What does it do and ... Read More
|
|
smx4pnp
|
smx4pnp.dll
|
X
|
Identified by Kaspersky Labs as Troj/DwnLdr-ICG. Please note rundll32.exe is a legitimate program and should not be deleted. ... Read More
|
|
Snapfish Media Detector
|
SnapfishMediaDetector.exe
|
U
|
Used by Snapfish to determine if new media is connected to your computer. The software will then present options on how the images will be imported/u ... Read More
|
|
snapple
|
snapple.exe
|
X
|
Added by the W32/Forbot-EG worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
snbr
|
snbr.exe
|
?
|
??
|
|
snbupt
|
snbupt.exe
|
X
|
UpSpiralBar adware component ... Read More
|
|
sncntr
|
sncntr.exe
|
X
|
Adult content dialler
|
|
SND Volumes
|
sndvolumes.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
snd332
|
snd332.exe
|
X
|
Added by an unidentified WORM!
|
|
Sndcompat
|
Sndcompat.exe
|
X
|
Added by the GEMA TROJAN!
|
|
snddevice
|
snddevice.scr
|
X
|
Added by the Troj/Banker-DIR internet banking Trojan.
|
|
SndDRV (MS Sound Driver)
|
snddrv.exe
|
X
|
Added by the W32/Rbot-BSC worm and IRC backdoor.
|
|
SNDMon
|
SNDMon.exe
|
U
|
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
|
|
sndrec32.exe
|
sndrec32.exe
|
X
|
A variant of the WORM_SPYBOT.BR family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
sndriv32
|
sndriv32.exe
|
X
|
A variant of Backdoor.Win32.Agobot.gen worm and IRC backdoor.
|
|
Sndsaver
|
Sndsaver.exe
|
X
|
Added by the GEMA TROJAN!
|
|
Sndsystem
|
SndSystem.sys
|
X
|
Added by the Troj/Raser-AS proxy Trojan.
|
|
sndu32
|
sndu32.dll
|
X
|
Added by the Troj/Haxdoor-IN Trojan. This infection utilizes the sndu64.sys rootkit. ... Read More
|
|
snippet
|
SnippingTool.exe
|
U
|
The Snipping Tool (part of the Experience_Pack for Tablet PC) allows you to easily "cut out" anything on screen and share it with other people. The w ... Read More
|
|
snjava
|
snjava.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
SNM
|
SNM.exe
|
Y
|
Part of the SpyNoMore anti-spyware application.
|
|
SNMP Trap
|
snmptrap.exe
|
U
|
This Windows service receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to ... Read More
|
|
Snoop
|
Snoop.exe
|
U
|
Added by the Spyware.Snoop surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
|
|
snoopfreeui
|
SnoopFreeUI.exe
|
U
|
Anti-keylogging software made by SnoopFree_Software._
|
|
Snow
|
Sk.exe
|
X
|
|
|
Snow
|
swon4.exe
|
X
|
|
|
snp generic host process
|
svchost.exe
|
X
|
Added by the Troj/Zapchas-O ... Read More
|
|
Snsicon
|
Snsicon.exe
|
N
|
Launches a screensaver program from Second Nature
|
|
SNSS.EXE
|
SNSS.EXE
|
X
|
Added by the Dialer.Nunci premium dialer.
|
|
SO5 Integrator Pass One
|
sointgr.exe
|
?
|
StarOffice 5. See here for more details
|
|
SO5 Integrator Pass Two
|
sointgr.exe
|
?
|
StarOffice 5. See here for more details
|
|
sobicyt Service
|
sobicyt.exe
|
X
|
Identified as a variant of the Backdoor:Win32/Refpron.C malware.
|
|
Soccer
|
Soccer Mania.exe
|
X
|
Added by the W32.Sibaru.A worm. W32.Sibaru.A a worm that spreads itself to network resources and hardcoded drive letters. ... Read More
|
|
Social.IM
|
SocialChat.exe
|
N
|
Added by the Social.IM facebook chat program.
|
|
Sock32
|
sock32.exe
|
X
|
Added by the SDBOT TROJAN!
|
|
SoDA Startup
|
SodaStartup.exe
|
Y
|
Used by the Rational SoDA project management tool. Unsure of it's actual purpose but it's recommended you leave it enabled if you use the software ... Read More
|
|
sofatnet Service
|
sofatnet.exe
|
X
|
Identified by Comodo as Backdoor.Win32.Refpron.~B.
|
|
soffice
|
SOFFICE.EXE
|
N
|
Displays StarOffice quick start applet in System tray. Right clicking on the icon allows rapid starting up of components of the StarOffice 6.0 suite. ... Read More
|
|
SoftAuto.exe
|
SoftAuto.exe
|
N
|
Creative Labs software updater.
|
|
SoftBarrier
|
SoftBarrier.exe
|
X
|
Added by the SoftBarrier rogue anti-spyware program.
|
|
SoftCop
|
SoftCop.exe
|
X
|
Added by the SoftCop rogue anti-spyware program.
|
|
Softload
|
softload.exe
|
X
|
A SDBot WORM/IRC backdoor variant adds this. The filename buds.exe and the filename forcepog.exe may also be involved. ... Read More
|
|
SoftSafeness
|
SoftSafeness.exe
|
X
|
Added by the SoftSafeness rogue anti-spyware program.
|
|
SoftSafeness Security Service
|
SoftSafenessSvc.exe
|
X
|
Added by the SoftSafeness rogue anti-spyware program.
|
|
SoftSoldier
|
SoftSoldier.exe
|
X
|
Added by the SoftSoldier rogue anti-spyware program.
|
|
SoftStronghold
|
SoftStronghold.exe
|
X
|
Added by the SoftStronghold rogue anti-spyware program.
|
|
softstuff wallpaper changer
|
softstrt.exe
|
U
|
AzureBay wallpaper changer ... Read More
|
|
SoftThinks Agent Service
|
sftservice.EXE
|
U
|
Added by the SoftThinks backup and recovery software commonly bundled on new computers from various manufacturers. ... Read More
|
|
SoftVeteran
|
SoftVeteran.exe
|
X
|
Added by the SoftVeteran rogue anti-spyware program.
|
|
Software
|
software.exe
|
X
|
Added by the CRABTON-B TROJAN!
|
|
software
|
spools.exe
|
X
|
Added by the W32/Autorun-CS removable media worm.
|
|
Software Protection
|
sppsvc.exe
|
Y
|
This Windows service enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is di ... Read More
|
|
software soft stop
|
Spyware Soft Stop.exe
|
X
|
This is a Spyware remover of dubious repute. False positives work as goad to purchase. Aggressive/deceptive advertising. Listed on the rogue anti-spyw ... Read More
|
|
softwarestation
|
station.exe
|
N
|
eAcceleration Stop-Sign related; not recommended; see note
|
|
SolidCapture
|
solidcapture.exe
|
N
|
Added by the SolidCapture screen capture program.
|
|
Solo Sentry
|
Solosent.exe
|
Y
|
|
|
SoloSchedule
|
Solocfg.exe
|
U
|
Scheduler for Solo Antivirus. Leave enabled unless you scan manually on a regular basis ... Read More
|
|
SoloSysCheck
|
Syscheck.exe
|
U
|
Solo antivirus System Integrity Check - Monitors system registry, system.ini, win.ini and startup to protect you from new Internet Worms and Backdoors ... Read More
|
|
somatic
|
somatic.exe
|
X
|
|
|
some
|
scit.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
songs
|
songs.exe
|
X
|
Added by the Troj/Agent-SEG Trojan.
|
|
SonicFocus
|
SFIGUI.EXE
|
Y
|
Added by the SonicFocus music and audio enhancer.
|
|
SoniqueQuickStart
|
sqstart.exe
|
N
|
Quickstart for Sonique audio player. Available via Start -> Programs
|
|
SonnReg
|
SonnReg.exe
|
?
|
Part of E-Color 3Deep for color calibration. Possibly a registration reminder?
|
|
SonudMan
|
SonudMan.exe
|
X
|
Added by the Trojan.Startpage.Q browser hijacker. This file hijacks the browser to open www.joyiex.com. ... Read More
|
|
SonudMon
|
SonudMon.exe
|
X
|
Added by the Troj/Lewor-J Trojan.
|
|
Sony Ericsson Device 115 driver (WDM)
|
s115bus.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM)
|
s115mgmt.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Driver
|
s115mdm.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC Modem Filter
|
s115mdfl.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Ericsson Device 115 USB WMC OBEX Interface
|
s115obex.sys
|
Y
|
Drivers that allow your computer to communicate with your Sony Ericsson phone/PDA. ... Read More
|
|
Sony Programmable I/O Control Device
|
SonyPI.sys
|
Y
|
This driver is the interface between Sony Programmable I/O controls, such as jogdials, bluetooth buttons, and Function buttons, and Windows. ... Read More
|
|
Sony SPTI Service
|
Sptisrv.exe
|
N
|
Legitimate service from Sony. Possibly for video on demand from Sony Pictures Television International (SPTI) ... Read More
|
|
SonyPowerCfg
|
SPMgr.exe
|
?
|
Related to Sony Power Management for VAIO Computers - is it required?
|
|
sophagnt
|
sophagnt.exe
|
?
|
|
|
Sophos Anti-Virus
|
SavService.exe
|
Y
|
Program associated with Sophos Anti-virus. This service is responsible for starting and running the anti-virus software including the real-time scanne ... Read More
|
|
Sophos Anti-Virus status reporter
|
SAVAdminService.exe
|
Y
|
Program associated with Sophos Anti-virus. On a Windows XP Service Pack 2 (SP2) computer, this service reports to the Windows Security Center (WSC) gi ... Read More
|
|
sopidkc Service
|
sopidkc.exe
|
X
|
Identified by Avast Anti-virus as a variant of the Win32:Refpron-M worm.
|
|
SOProc_RegSoAlertWxLiteNnAj
|
soproc.exe
|
X
|
Identified as Adware.MyWebSearch.
|
|
SOS
|
SOS.exe
|
X
|
Added by the PHILIS VIRUS!
|
|
sos sql database
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
SoSyncMonitor
|
SoSyncMonitor.exe
|
?
|
SuperOffice related. What does it do and is it required?
|
|
Sound Config
|
sndcnf.cpl
|
X
|
Added by the Virus:Win32/Lefimy.A virus. Virus:Win32/Lefimy.A is the detection for a prepending virus that infects Windows executable files. ... Read More
|
|
Sound Driver
|
svdhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Sound Driver for Windows
|
sdshost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Sound Loader
|
sndloader.exe
|
X
|
Added by the AGOBOT-BV WORM!
|
|
Sound services
|
SOUND32.EXE
|
X
|
Added by the AGOBOT.GG WORM!
|
|
Sound System Driver
|
svlhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Sound Volume
|
svchosI.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Sound.exe Espanha
|
Sound.exe
|
X
|
Added by the Troj/Agent-OUD Trojan.
|
|
soundcontrl
|
soundcontrl.exe
|
X
|
Added by the GAOBOT.AFJ WORM!
|
|
SoundDriver SDB32
|
sndu64.sys
|
X
|
Added by the Troj/Haxdor-Fam rootkit. This infection also creates a service called SoundDriver SDB64 to start this rootkit. ... Read More
|
|
sounddrv
|
sndbdrv3104.exe
|
X
|
CoolWebSearch parasite variant
|
|
sounddrv
|
sounddrv.dll
|
X
|
A variant of the CPVFeed adware.
|
|
soundfun
|
soundfun.exe
|
X
|
Added by the Troj/Banloa-AKQ Trojan.
|
|
Soundlibs
|
soundgui.exe
|
X
|
Added by the Troj/Dloadr-AON Trojan.
|
|
SoundMam
|
SVOHOST.exe
|
X
|
Added by the Troj/QQPass-XR Trojan.
|
|
SoundMam
|
SVOHOST.exe
|
X
|
Added by the Troj/Lewor-AM Trojan.
|
|
soundman
|
soundman.exe
|
N
|
System Tray icon for the Realtek AC97 Audio Sound Manager for AC97 onboard audio. Available via Start -> Settings-> Control Panel ... Read More
|
|
SOUNDMAN Microsoft Help
|
soun.pif
|
X
|
Added by the W32/Rbot-AIU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
SoundMAX
|
SMax4.exe
|
N
|
System Tray icon for SoundMax integrated sound. Sound properties can be accessed through the Start Menu or Control Panel ... Read More
|
|
SoundMAX
|
SoundMAX.exe
|
X
|
Added by the W32/Rizon-A worm.
|
|
SoundMax
|
startup.exe
|
X
|
Added by the W32/Malas-C worm.
|
|
SoundMAX Agent Service
|
SMAgent.exe
|
Y
|
Sound subsystem driver on many ASUS motherboards.
|
|
SoundMax Audio Drivers
|
SndMAX.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SoundMax Audio Drivers
|
soundmax.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SoundMAXPnP
|
SMax4PNP.exe
|
U
|
SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments ... Read More
|
|
SoundMixer
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
Soundmx
|
Soundmx.exe
|
X
|
CoolWebSearch parasite variant
|
|
soundtask
|
soundtask.exe
|
X
|
Added by the AGOBOT-MD WORM!
|
|
soundtasks
|
soundtasks.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
soundtctrls
|
soundtctrls.exe
|
X
|
Added by the AGOBOT-ZV WORM!
|
|
sounofts
|
sounofts.exe
|
X
|
Added by the AGOBOT-ND WORM!
|
|
sountskmanager
|
sountaskmgr
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
sp
|
sp.reg
|
X
|
IE search hijacker - changes the default search to http://www.gocybersearch.com/ ... Read More
|
|
sp
|
rundll32 [tempdirectory]\\SE.DLL,DllInstall
|
X
|
Start Page Hijacker. More information can be at this site. For help removing this infection please post a HijackThis log in our HijackThis forum. ... Read More
|
|
SP service
|
spsys.exe
|
X
|
Added by the W32/Codbot-AV worm and IRC backdoor.
|
|
SP TimeSync
|
SP TimeSync.exe
|
U
|
SP TimeSync lets you synchronize your computer's clock with any Internet atomic clock (time server) ... Read More
|
|
SP00LSV
|
Sp00lsv.exe
|
X
|
Added by the GRAYBIRD.E TROJAN!
|
|
SP1-Update
|
sp1update.exe
|
X
|
Added by the W32/Rbot-JG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
sp2 connection patcher
|
SP2ConnPatcher.exe
|
U
|
Changes limit of concurrent TCP connections of Windows Service Pack 2.
|
|
sp2chk.exe
|
sp2chk.exe
|
X
|
Added by the ALUROOT.A TROJAN!
|
|
sp2connpatcher
|
sp2connpatcher.exe
|
?
|
Unidentified - possibly part of the "Warez" P2P client software what does it do and is it required? ... Read More
|
|
sp2ctr
|
sp2ctr.exe
|
X
|
Added by the DLUCA-M TROJAN!
|
|
sp2fwxp
|
sp2fwxp.exe
|
X
|
Added by the WIN32.SMALL.ABW TROJAN!
|
|
sp2svc
|
sp2svc.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
sp2update
|
sp2update.exe
|
X
|
Added by the Adware.SP2Update adware and spyware.
|
|
spam blocker for outlook express
|
SBInst.exe
|
X
|
HotBar related ... Read More
|
|
Spam Sleuth
|
SpamSleuth.exe
|
U
|
Spam Sleuth E-mail spam detection program
|
|
spamblocker
|
SbOEAddOn.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
spamfighter agent
|
SFAgent.exe
|
U
|
SPAMfighter anti email spam filter ... Read More
|
|
spamihilator
|
spamihilator.exe
|
U
|
Spamihilator - spam filter
|
|
SpamPal
|
spampal.exe
|
U
|
|
|
SpamSubtract
|
SpamSubtract.exe
|
U
|
Intermute SpamSubtract - junk email detection and removal program
|
|
spa_start
|
sprt_ads.dll
|
X
|
Added by the Adware.Superiorads adware. Adware.Superiorads is an adware program that installs a Browser Helper Object for Internet Explorer and displ ... Read More
|
|
SPBBCDrv
|
spbbcdrv.sys
|
Y
|
Driver associated with the Symantec Firewall.
|
|
Spcvl Srv
|
Spcvls.exe
|
X
|
Added by the Troj/Kbot-A Trojan.
|
|
SpcvlsvsDrv
|
Spcvls.sys
|
X
|
Added by the Troj/Kbot-A Trojan.
|
|
SPD Driver
|
spdpool.exe
|
X
|
Added by the Troj/Bckdr-REA backdoor Trojan.
|
|
Spdstart
|
Spdstart.exe
|
N
|
Norton Utilities Speed Start. "This feature optimizes the start up speed of launching applications, such as Word and Excel." ... Read More
|
|
Speaking Clock Deluxe
|
SpClDlx.exe
|
U
|
Speaking Clock Deluxe - turns your computer into a speaking clock with several languages. It can also keep track of up to 50 alarms that can be set to ... Read More
|
|
SpecialOffers
|
SpecialOffers*.exe [* = digit]
|
X
|
Specialoffersnetworks.com adware. "Special Offers is a state of the art advertising product that delivers to you contextually relevant web offers incl ... Read More
|
|
SpecialOffers
|
SpecialOffers.exe
|
X
|
Specialoffersnetworks.com adware. "Special Offers is a state of the art advertising product that delivers to you contextually relevant web offers incl ... Read More
|
|
specific
|
specixic.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Spectrum 24 Events Monitor
|
sdmAgent20.dll
|
X
|
Added by the Trojan.Linkmediac Trojan.
Trojan.Linkmediac is a Trojan horse that displays popup advertisements and sends information abo ... Read More
|
|
Speed Tec
|
speedtec.exe
|
U
|
Accel SpeedTec from Montana Software speeds up your modem. SpeedTec modifies the Internet Protocol settings in the Windows registry to speed downloads ... Read More
|
|
speeditup
|
SPEEDITUP.EXE
|
U
|
Related to Speed_It_Up Boost your Ram, Prevent Errors and Memory Leaks. ... Read More
|
|
SpeedItUpEX
|
SpeedItUp.exe
|
U
|
Added by SpeedItUp. Claims to be able to increase the speed of your computer by 248%. ... Read More
|
|
Speedkey
|
SPEEDKEY.EXE
|
U
|
Additional keyboard shortcuts on MS programmable keyboard
|
|
SpeedMeter
|
SpeedMeter.exe
|
U
|
Application measuring upload and download speed
|
|
SpeedOptimizer
|
spo.exe
|
U
|
SpeedOptimizer is designed to optimize and speed-up your Internet data transmission including browsing, streaming, downloading, uploading and e-mail c ... Read More
|
|
SpeedRunner
|
SpeedRunner.exe
|
X
|
Identified as a variant of the TrojanDownloader.Matcash malware.
|
|
SpeedStartup
|
speedstartup.exe
|
U
|
Added by the Speed Startup Windows startup programs manager.
|
|
speedswitchxp
|
SpeedswitchXP.exe
|
U
|
SpeedswitchXP is a CPU frequency control for notebooks running Windows XP ... Read More
|
|
speedupmypc
|
SpeedUpMyPC.exe
|
U
|
SpeedUpMyPC "automatically fine-tunes all your resources including hardware, system settings and internet usage to operate at peak performance at all ... Read More
|
|
Spees1
|
speedy.scr
|
X
|
Added by the OPASERV.Y WORM!
|
|
Spees2
|
Speedy.bat
|
X
|
Added by the OPASERV.AD WORM!
|
|
Spees3
|
SPEEDY.PIF
|
X
|
Added by the OPASERV.AD WORM!
|
|
Spellex Anywhere
|
sa.exe
|
N
|
Spellex-Anywhere - adds spell checking functionality to almost any Window program. Create a shortcut and run manually before it's to be used ... Read More
|
|
spfw
|
spfw.sys
|
Y
|
Related to Securepoint firewalls.
|
|
Spiceworks
|
spicetray_silent.exe
|
U
|
Tray icon for Spiceworks.
|
|
SpIDerMail
|
spiderml.exe
|
Y
|
DrWeb antivirus Spider Mail e-mail scanner
|
|
Spinner Plus
|
spinner.exe
|
N
|
"Spinner Plus lets you listen to over 100 channels of music broadcast from Spinner.com. Spinner Plus uses RealNetwork's G2 technology to provide high- ... Read More
|
|
spkrmon
|
spkrmon.exe
|
?
|
SoundMAX SpeakerMonitor service.
|
|
splwow32
|
splwow32.exe
|
X
|
Added by the Troj/Dldr-FC Trojan.
|
|
SPnt
|
SPnt.exe
|
X
|
Premium rate adult content dialler
|
|
SpokeSysTray
|
SpokeSysTray.exe
|
U
|
Spoke Software client application. Spoke "uses data in your e-mail and other enterprise information systems to discover the existing relationships of ... Read More
|
|
spolsvr2
|
spolsvr2.exe
|
X
|
Added by the Win32/Evilsock.10 TROJAN! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Window ... Read More
|
|
spoo1sv
|
spoo1sv.exe
|
X
|
Added by the SOULJET TROJAN!
|
|
spool
|
spoollv.exe
|
X
|
Added by the W32/Sdbot-AES worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SPOOL Configuration
|
spoolsvc.exe
|
X
|
Added by the SDBOT-KD WORM!
|
|
spool loader
|
spool.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
spool loadkit
|
spoolv.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Spool lptt01
|
spool.exe
|
X
|
Variant of the RapidBlaster parasite (in a "spool" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
|
|
Spool Manager
|
spoolsrv.exe
|
X
|
Added by the Troj/Banker-FR password stealing Trojan targeted at customers of Brazilian banks. ... Read More
|
|
Spool ml097e
|
spool.exe
|
X
|
Variant of the RapidBlaster parasite (in a "spool" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
|
|
spool server daemon
|
SPOOLSVD32.EXE
|
X
|
Win32.Rbot worm variant ... Read More
|
|
spooldr
|
spooldr.sys
|
X
|
Added by the Trojan.Peacomm.C rootkit.
|
|
Spooler Host
|
smhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Spooler Service
|
Spoolsrv.exe
|
X
|
Added by the JOINER.C1 TROJAN!
|
|
Spooler Sub System Process
|
SPOOL32.EXE
|
X
|
Added by the YAB.A TROJAN!
|
|
Spooler Subsystem
|
spoolsub.exe
|
X
|
Added by the W32/Sdbot-ABG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Spooler SubSystem App
|
spoolsvc.exe
|
X
|
Added by the W32/Poebot-J WORM/IRC backdoor!
|
|
Spooler SubSystem App
|
spooIsv.exe
|
X
|
Added by the W32.Linkbot.M worm.
|
|
Spooler SubSystem App
|
spoolv.exe
|
X
|
Added by the W32/Sdbot-BN backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
Spooler SubSystem App
|
spooIsv.exe
|
X
|
Added by the W32/Poebot-KL worm and IRC backdoor.
|
|
Spooler SubSystem App
|
spooIsv.exe
|
X
|
Added by the W32/Poebot-KN worm.
|
|
Spooler SubSystem Application
|
spoolsvc.exe
|
X
|
Added by the Troj/Dloader-NY trojan.
|
|
Spooler Subsystem Application
|
smss.exe
|
X
|
Added by the Troj/IRCBot-ZO IRC backdoor Trojan.
|
|
Spooler Subsytem App
|
spoolsvc.exe
|
X
|
Added by the SDBOT-MM WORM!
|
|
SpoolerSubSystemProcess
|
SpooI32.exe
|
X
|
Added by the EHKS.21 keylogger! Note - the "I" between "o" and "3" is a captial "i" not a lower case "L" ... Read More
|
|
spoolms
|
spoolms.exe
|
X
|
Added by the Troj/LegMir-ARO backdoor Trojan.
|
|
spoolntA
|
svchost.exe
|
X
|
Added by the Troj/Bdoor-ABW backdoor Trojan. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Spools Service Controller
|
spools.exe
|
X
|
Added by the W32/Kassbot-C. It will modify the HOSTS file in an attempt to block access to anti-virus related websites, attempt to spread by exploit ... Read More
|
|
spoolserv
|
spoolserv.exe
|
X
|
Added by the SDBOT-PN WORM!
|
|
SpoolService
|
spolsv.exe
|
X
|
Added by the AGOBOT-CS WORM!
|
|
spoolsrv.exe
|
spoolsrv.exe
|
X
|
Unknown malware.
|
|
Spoolsv
|
Spoolsv.exe
|
X
|
Added by the CIADOOR.121 VIRUS! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.ex ... Read More
|
|
spoolsv
|
scvhosts.exe
|
X
|
Added by the SMALL-AW TROJAN!
|
|
Spoolsv
|
spoolvs.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Qhost.aes malware. ... Read More
|
|
spoolsv manager
|
SpoolMgr.exe
|
X
|
Added by the W32/Assiral-A Infection! File is found in the Windows folder.
|
|
spoolsv service
|
spoolsv32.exe
|
X
|
Added by the W32/Rbot-AHP worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SPOOLSV32
|
SPOOLSV32.EXE
|
X
|
Added by the Troj/CWS-I Trojan dropper.
|
|
spoolsvc
|
spoolsvc.exe
|
X
|
|
|
spoolsvc
|
spoolsvc.dll
|
X
|
Added by the Troj/Dropper-AT trojan dropper. The presence of this infection usually means there is other malware installed on your computer. ... Read More
|
|
spoolsvc.dll
|
spoolsvc.dll
|
X
|
Added by the Troj/SCKeyLog-L keylogging Trojan.
|
|
spoolsvs.exe
|
spoolsvs.exe
|
X
|
Added by the Troj/Dloader-RK downloader Trojan.
|
|
spoolsvu
|
SPOOLSVU.EXE
|
X
|
Added by the StartPage.K TROJAN! ... Read More
|
|
spoolsvv
|
spoolsvv.exe
|
X
|
|
|
spoolv
|
spoolv.sys
|
X
|
Added by the W32/Sdbot-AES worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
spoolvs
|
spoolvs.exe
|
X
|
Added by the SDBOT.AUS WORM! ... Read More
|
|
Spore.b
|
Scmhlpr.vbs
|
X
|
Added by the SPORE.B WORM!
|
|
sppbridge
|
sppbridge.exe
|
?
|
Associated with an Anycom bluetooth wireless card on laptops - used for printing to portable printers for example. Is it required or can it be started ... Read More
|
|
SprintPort
|
SprintPortA.exe
|
?
|
Novatel wireless modem related. What does it do and is it required?
|
|
Sproc32
|
sproc32.exe.
|
X
|
Added by the Troj/Rightu-A trojan.
|
|
sprof
|
sprof.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.FraudLoad.vagm malware.
|
|
Spruce - Auto Update
|
Spruce.exe
|
X
|
Identified as a variant of the Adware Generic2.ZPR adware.
|
|
SPSTEALT
|
SmartProtectorPro.exe
|
U
|
Smart Protector Pro - internet privacy tool that erases tracks, MRU lists, etc
|
|
spstore
|
storesp.exe
|
?
|
Softprobe - program designed to provide managers with an analysis of an individuals computer use who are under their supervision. This program is NOT ... Read More
|
|
spsvc
|
spsvc.exe
|
U
|
Added by the Hacktool.Spagent surveillance tool. If you did not install this software it should be removed. ... Read More
|
|
sptd
|
sptd.sys
|
Y
|
Driver used by the CD Rom emulation program, Daemon Tools Version 4. There have been some reports of problems with this driver. ... Read More
|
|
Spy Blocker
|
spyblocker.exe
|
U
|
SpyBlocker blocks the communications of spyware installed on a PC so spyware runs but can't exchange data with the server to which it should report. E ... Read More
|
|
Spy Emergency Shield Service
|
SpyEmergencySrv.exe
|
Y
|
Added by the Spy Emergency anti-spyware software.
|
|
Spy Protector
|
srcss.exe
|
X
|
Added by the SpyProtector rogue anti-spyware program.
|
|
spy sweeper fix
|
SpySweeperFix.bat
|
Y
|
Related to Webroot_SpySweeper ... Read More
|
|
spy-control
|
Spy-Control.exe
|
X
|
"Spyware remover" of dubious repute - see this list of non-recommended anti parasite software ... Read More
|
|
Spy-Keylogger
|
skl.exe
|
U
|
Added by the Spyware.SpyKeylogger keylogger. If this was not installed by you, you should uninstall it. ... Read More
|
|
Spy-zap
|
Spy-zap.exe
|
N
|
The Spy-Zap antispyware program.
|
|
SpyAway
|
spyaway.exe
|
X
|
The rogue anti-spyware program called SpyAway.
|
|
spyaxe
|
spyaxe.exe
|
X
|
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here ... Read More
|
|
spyban
|
SpyBan.exe
|
X
|
"Spyware remover" of dubious repute - see this list of non-Recommended anti parasite software ... Read More
|
|
SpyBlast
|
SpyBlast.exe
|
X
|
Spyware killer that is in effect autoinstalled foistware, targeted by SpyBot, among others ... Read More
|
|
SpyBlocker
|
spyblocker.exe
|
U
|
SpyBlocker blocks the communications of spyware installed on a PC so spyware runs but cant exchange data with the server to which it should report. En ... Read More
|
|
SpyBlocs
|
SpyBlocs.exe
|
X
|
Rogue anti-spyware program
|
|
spyblocs3.0
|
SpyBlocs3.0.exe
|
X
|
Rogue anti-spyware program. ... Read More
|
|
SpyBotSnD
|
Spybotsd.exe
|
U
|
Spybot - Search & Destroy - free multi-spyware removal tool from Patrick Kolla
|
|
Spybott lptt01
|
spybott.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Spybott" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
|
|
Spybott ml097e
|
spybott.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Spybott" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
|
|
SpyBurner
|
SpyBurner.exe
|
X
|
Added by the SpyBurner rogue anti-spyware program. SpyBurner displays aggressive advertising and exaggerated search results. ... Read More
|
|
SpyClock 4 Personal
|
spycl4.exe
|
U
|
Added by the Spyware.SpyClock surveillance software. This program should be removed if not installed by yourself. ... Read More
|
|
SpyCrush
|
SpyCrush.exe
|
X
|
A rogue anti-spyware program that uses false positives and malware as a scare tactic into having you purchase the commercial version of the software. ... Read More
|
|
SpyCrush 3.1
|
SpyCrush 3.1.exe
|
X
|
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
|
|
SpyCrush 3.2
|
SpyCrush 3.2.exe
|
X
|
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
|
|
SpyCrush 3.3
|
SpyCrush 3.3.exe
|
X
|
Added by the SpyCrush rogue anti-spyware program. SpyCrush is a program that is typically installed by Trojans and uses fake scan results or exaggera ... Read More
|
|
SpyCut
|
SpyCut.exe
|
X
|
Added by the SpyCut rogue anti-spyware application. SpyCut is a program claiming to remove spyware, even from those computers which are clean. ... Read More
|
|
SpyCut Monitor
|
spycut_monitor.exe
|
X
|
Added by the SpyCut rogue anti-spyware application. SpyCut is a program claiming to remove spyware, even from those computers which are clean. ... Read More
|
|
SpyDawn
|
SpyDawn.exe
|
X
|
Added by the rogue anti-spyware application SpyDawn. This program claims to be a antispyware program but uses exaggerated or fake results as a goad t ... Read More
|
|
SpyDefender
|
SpyDefender.exe
|
X
|
Added by the SpyDefenderPro misleading application. SpyDefenderPro is a misleading application that may give exaggerated reports about potential risks ... Read More
|
|
SpyDetectSVC
|
SpywareDetectorSVC.exe
|
U
|
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
|
|
SpyDevastator
|
SpyDevastator.exe
|
X
|
Added by the SpyDevastator rogue anti-spyware program.
|
|
SpyEmergency
|
SpyEmergency.exe
|
Y
|
Added by the Spy Emergency anti-spyware software.
|
|
SpyFalcon
|
SpyFalcon.exe
|
X
|
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
|
|
SpyFighter
|
SpyFighter.exe
|
X
|
Added by the SpyFighter rogue anti-spyware program.
|
|
spyfightermonitor
|
SpyFighter.exe
|
X
|
"Spyware remover" of dubious repute - see this list of non-Recommended anti parasite software ... Read More
|
|
SpyGuarder
|
spyguarder.exe
|
X
|
Added by the SpyGuarder rogue anti-spyware program.
|
|
SpyHazard
|
SpyHazard.exe
|
X
|
Added by the SpyHazard rogue anti-spyware program.
|
|
SpyHeal
|
SpyHeal.exe
|
X
|
Added by the rogue-antispyware application SpyHeal.
|
|
SpyHeal 3.8
|
SpyHeal 3.8.exe
|
X
|
Added by the rogue-antispyware application SpyHeal.
|
|
SpyHealer
|
SpyHealer.exe
|
X
|
Added by the SpyHeal rogue anti-spyware program.
|
|
SpyHeals
|
SpyHeals.exe
|
X
|
Added by the rogue-antispyware application SpyHeals.
|
|
SpyHunter
|
SpyHunter.exe
|
N
|
SpyHunter - spyware remover of somewhat dubious repute, see note
|
|
Spyinator
|
Spyinator.exe
|
X
|
Added by the Spyinator rogue anti-spyware program. Spyinator is a Security Risk that may give exaggerated reports of threats on the computer. The prog ... Read More
|
|
SpykEy
|
Spyky.exe
|
X
|
Added by the Spyware.SpyKy keylogger. Spyware.SpyKy is a spyware program that can be used to record keystrokes on a computer. ... Read More
|
|
SpyKey
|
SpyKeyServer.exe
|
U
|
Added by the Spyware.SpyKeyboard surveillance program. Spyware.SpyKeyboard is a spyware program that can be used to record keystrokes on a computer an ... Read More
|
|
Spykiller
|
Spykiller.exe
|
U
|
Shareware "Spyware remover" of questionable quality and repute. There are better alternatives that are freeware to boot ... Read More
|
|
SpyKiller.exe
|
SpyKiller.exe
|
X
|
Added by the SuperSpywareKiller. SuperSpywareKiller reports false or exaggerated system security threats on the computer. ... Read More
|
|
SpyKillerPro
|
SpyKillerPro.exe
|
X
|
Added by the rogue antispyware program.
|
|
SpyLax
|
SpyLax.exe
|
X
|
Added by the SpyLax rogue anti-spyware program. SpyLax is a program that simulates detection of threats on the computer and may give exaggerated repor ... Read More
|
|
SpyLocked
|
SpyLocked.exe
|
X
|
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
|
|
SpyLocked 3.6
|
SpyLocked 3.6.exe
|
X
|
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
|
|
SpyLocked 3.7
|
SpyLocked 3.7.exe
|
X
|
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
|
|
SpyLocked 3.9
|
SpyLocked 3.9.exe
|
X
|
Main executable for the SpyLocked 3.9 rogue anti-spyware application. This program is considered a rogue anti-spyware program as it uses fake and exa ... Read More
|
|
SpyLocked 4.0
|
SpyLocked 4.0.exe
|
X
|
The SpywareLocked rogue anti-spyware program. This program uses fake results and exaggerated results as a scare tactic to have you purchase their sof ... Read More
|
|
SpyLocked 4.1
|
SpyLocked 4.1.exe
|
X
|
The SpyLocked rogue anti-spyware program. This program uses fake results and exaggerated results as a scare tactic to have you purchase their softwar ... Read More
|
|
SpyLocked 4.3
|
SpyLocked 4.3.exe
|
X
|
Main executable for the rogue anti-spyware program called SpyLocked. This program uses fake and exagerated results, fake security alerts, and other m ... Read More
|
|
SpyMarshal
|
SpyMarshal.exe
|
X
|
SpyMarshal is a rogue anti-spyware product that uses false positives, misleading reports, and deceptive advertising in order to scare you into purchas ... Read More
|
|
SpyMaxx
|
SpyMaxx.exe
|
X
|
Identified as a variant of the Fake_AntiSpyware software.
|
|
spymonitor
|
spymonitor.exe
|
X
|
Added by the SpywareRemovalWizard security risk. SpywareRemovalWizard is a Security Risk that may give exaggerated reports of threats on the computer. ... Read More
|
|
SpyNuker
|
Spynuker.exe
|
X
|
A "spyware removal program" by TrekBlue, which is being heavily advertised through junk e-mail from its affiliates and misleading fake-dialogue-box we ... Read More
|
|
SpyOnThisScanner
|
SpyOnThis.exe
|
X
|
Added by the SpyOnThis rogue anti-spyware program. SpyOnThis is a misleading application that may give exaggerated reports about potential risks on th ... Read More
|
|
SpyQuake2.com
|
Spy-Quake2.exe
|
X
|
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
|
|
SpyRemover
|
SpyRemover.Exe
|
N
|
An anti-spyware program.
|
|
SpyRid
|
Spy-Rid.exe
|
X
|
Added by the SpyRid rogue anti-spyware program. SpyRid is a misleading application that may give false reports of threats on the computer. ... Read More
|
|
SpySheriff
|
SpySheriff.exe
|
X
|
Rogue antispyware application. Should be uninstalled due to its false positives and sneaky way of installing. ... Read More
|
|
SpyShredder
|
SpyShredder.exe
|
X
|
Added by the SpyShredder rogue anti-spyware program. SpyShredder is a Security Risk that may give exaggerated reports of threats on the computer. The ... Read More
|
|
spysnipe
|
spysnipe.exe
|
X
|
Added by the SpySnipe rogue anti-spyware program. SpySnipe is a misleading application that may give exaggerated reports of threats on the computer. ... Read More
|
|
spysoldier
|
spysoldier.exe
|
X
|
Added by the SpySoldier rogue anti-spyware program. This program uses aggressive advertising, popups, and Internet Explorer start page hijacking. ... Read More
|
|
SpySpotter
|
SpySpotter.exe
|
X
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites. SpySpotter is a security risk that may give exag ... Read More
|
|
SpySpotter System Defender
|
SpySpotter.exe
|
N
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites. SpySpotter is a security risk that may give exag ... Read More
|
|
SpyStopper
|
spystopper.exe
|
U
|
SpyStopper - blocks intrusive spyware, Web bugs, worms, scripts, advertisements, and cookies. Protects you from being profiled and tracked ... Read More
|
|
SpySubtract
|
SpySub.exe
|
U
|
SpySubtract - multi spyware removal tool
|
|
SpySweeper
|
SpySweeper.exe
|
U
|
Spy Sweeper anti-spyware program.
|
|
SpySweeper
|
SpySweeperUI.exe
|
Y
|
Spy Sweeper anti-spyware program.
|
|
spytrooper
|
SpyTrooper.exe
|
X
|
SpyTrooper, malware, posing as a spyware remover - alse see here ... Read More
|
|
SpyViperDemo
|
SpyViperDemo
|
X
|
Added by the Spyviper rogue anti-spyware software. SpyViper is a security risk that may give exaggerated reports of threats on the computer. The progr ... Read More
|
|
Spyware
|
Spyware.exe
|
X
|
BPS Spyware Remover - reportedly uses an old, "borrowed" SpyBot database. Read this and this. Do not support these guys! ... Read More
|
|
Spyware Begone
|
SpywareBeGone.exe
|
N
|
Spyware BeGone - free spyware removal utility. Not recommended - see note
|
|
spyware cleaner
|
SpywareCleaner.Exe
|
X
|
"Spyware remover" of dubious repute - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Spyware Doctor
|
spydoctor.exe
|
U
|
Spyware Doctor spyware remover
|
|
Spyware Doctor
|
swdoctor.exe
|
U
|
Spyware Doctor spyware remover
|
|
Spyware Doctor Auxiliary Service
|
svcntaux.exe
|
Y
|
Related to the Spyware Doctor anti-spyware program.
|
|
Spyware Doctor Service
|
swdsvc.exe
|
Y
|
Related to the Spyware Doctor anti-spyware program.
|
|
Spyware Guard Control Panel
|
spywar~1.exe
|
U
|
"SpywareGuard provides a real-time protection solution against spyware"
|
|
Spyware Nuker
|
swn2.exe
|
U
|
Part of the Spyware Nuker 2004 program.
|
|
Spyware Nuker Installer
|
SpywareNukerInstaller.exe
|
X
|
A "spyware removal program" by TrekBlue, which is being heavily advertised through junk e-mail from its affiliates and misleading fake-dialogue-box we ... Read More
|
|
Spyware Quake
|
SpywareQuake.exe
|
X
|
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
|
|
spyware shield
|
Shield.exe
|
U
|
Acronis Privacy Expert Spyware_Shield prevents spyware and other suspicious programs from being installed on desktop PCs and laptops. ... Read More
|
|
Spyware Slayer
|
SpywareSlayer.Exe
|
X
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Spyware Stormer
|
SpywareStormer.Exe
|
N
|
SpywareStormer spyware remover. Not recommended - see here
|
|
Spyware Sweeper
|
SpywareSweeper.exe
|
X
|
Added by the SpywareSweeper security risk. SpywareSweeper is a misleading application that may give exaggerated reports about potential risks on the c ... Read More
|
|
Spyware Terminator Clam Service
|
sp_clamsrv.exe
|
Y
|
Spyware Terminator's real-time anti-virus protection.
|
|
Spyware Terminator Realtime Shield Service
|
sp_rsser.exe
|
Y
|
Spyware Terminator's real-time spyware protection.
|
|
Spyware Vanisher
|
SpywareVanisher.exe
|
U
|
Spyware remover of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
spyware x-terminator
|
SpywareX.exe
|
U
|
Spyware_X-terminator spyware remover ... Read More
|
|
spyware-cop
|
Spyware-Cop.exe
|
X
|
Spyware-Cop alias SpywareKilla - "Spyware remover" of dubious repute, see this list of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
Spyware-Secure
|
Spyware-Secure_trial.exe
|
X
|
Added by the SpywareSecure rogue anti-spyware program. SpywareSecure is a misleading application that may give exaggerated reports of threats on the c ... Read More
|
|
SpywareBomb
|
SpywareBomb.exe
|
X
|
Added by the SpywareBomb security risk. SpywareBomb is a misleading application that may give exaggerated reports about potential risks on the compute ... Read More
|
|
spywarebot
|
SpywareBot.exe
|
N
|
Spyware remover of somewhat dubious repute; see note ... Read More
|
|
SpywareDoctor
|
sdoctor.exe
|
X
|
Added by the Generic Downloader.ak Trojan. This infection should not be confused with the legitimate Spyware Doctor antispyware program. ... Read More
|
|
spywarefighterguard
|
spfprc.exe
|
?
|
Related to Spyware_Fighter Anti spyware program which has not be evaluated by SpywareWarrior. ... Read More
|
|
SpywareGuard
|
sgmain.exe
|
U
|
"SpywareGuard provides a real-time protection solution against spyware"
|
|
spywareguard
|
spywareguard.exe
|
X
|
Added by the Spyware Guard 2008 rogue anti-spyware software.
|
|
Spywareguard lptt01
|
Spywareguard.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Spyguard" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
|
|
Spywareguard ml097e
|
Spywareguard.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Spyguard" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
|
|
SpywareHeal
|
SpywareHeal.exe
|
X
|
The main executable of SpywareHeal. This program is considered a rogue antispyware program. It is advised that you uninstall this program and instead ... Read More
|
|
spywareisolator
|
spywareisolator.exe
|
X
|
Added by the spywareisolator rogue anti-spyware program.
|
|
SpywareKilla
|
SpywareKilla.exe
|
N
|
Spyware remover of ill repute. For more info about it do a search for 'SpyareKilla' at this web page on "Rogue/Suspect Anti-Spyware Products & Web ... Read More
|
|
spywareknight
|
spywareknight.exe
|
X
|
Added by the SpywareKnight rogue anti-spyware program. This program uses aggressive advertising, popups, and Internet Explorer start page hijacking. ... Read More
|
|
SpywareLocked
|
SpywareLocked.exe
|
X
|
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
|
|
SpywareLocked 3.3
|
Spy-Locked.exe
|
X
|
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
|
|
SpywareLocked 3.4
|
SpywareLock.exe
|
X
|
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
|
|
SpywareLocked 3.5
|
SpywareLocked 3.5.exe
|
X
|
Main executable for the rogue anti-spyware program called SpywareLocked. This program uses fake and exagerated results, fake security alerts, and oth ... Read More
|
|
SpywareLocker
|
SpywareLocker.exe
|
X
|
Added by the SpywareLocker rogue anti-spyware program. SpywareLocker is a misleading application described as a spyware removal utility that may give ... Read More
|
|
spywareno
|
SpywareNo.exe
|
X
|
Bogus "Spyware remover" - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products & Web Sites ... Read More
|
|
SpywareProMFC
|
SpywarePro.exe
|
X
|
Added by the SpywarePro rogue anti-spyware program.
|
|
SpywareQuake
|
SpywareQuake.exe
|
X
|
Desktop hijacking, aggressive/deceptive advertising Rogue Anti-Spyware program. For more information Click_Here. ... Read More
|
|
SpywareQuaked
|
SpywareQuaked.exe
|
X
|
Rogue anti-spyware program that uses deceptive advertising and malware to install itself. ... Read More
|
|
SpywareRemover
|
SpywareRemover.exe
|
X
|
Added by the SpywareRemover rogue anti-spyware program. SpywareRemover displays false positives and advertised through the use of malware. ... Read More
|
|
SpywareRemover2009
|
SR.exe
|
X
|
Added by the SpywareRemover 2009 rogue anti-spyware program.
|
|
spywarescanner
|
spywarescanner.exe
|
X
|
Added by the SpywareScanner 2008 rogue anti-spyware program.
|
|
spywarestrike
|
SpywareStrike.exe
|
X
|
Rogue Spyware product ... Read More
|
|
SpywareSweeperProMFC
|
Spyware Sweeper Pro.exe
|
X
|
Added by the Spyware Sweeper Pro rogue anti-spyware program.
|
|
SpyWarp AntiSpyware
|
SpyWarp.exe
|
N
|
Related to the SpyWarp antispyware program.
|
|
SPYWATCH
|
SpyWatch.exe
|
U
|
BPS Spyware Remover - reportedly uses an old, "borrowed" SpyBot database. Read this and this. Do not support these guys! ... Read More
|
|
SpyWatchE
|
SpyWatchE
|
X
|
Added by the SpyWatchE rogue anti-spyware program.
|
|
SQInstaller
|
SQInstaller.exe
|
X
|
|
|
SQL
|
server.exe
|
X
|
Added by the W32/Punya-B worm.
|
|
SQL Backup Agent
|
SQBCoreService.exe
|
Y
|
Added by the SQL Backup database backup program.
|
|
SQL Database
|
sql.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SQL Server
|
scm.exe
|
N
|
SQL Server Service Control Manager. Available via Start -> Programs
|
|
SQL Server (MSSMLBIZ)
|
sqlservr.exe
|
Y
|
Microsoft SQL server that comes bundled with the Windows Small Business Server.
|
|
SQL Server (MSSQLSERVER)
|
sqlservr.exe
|
Y
|
The main executable for Microsoft SQL Database Server.
If Microsoft SQL Server is installed as a named instance the Service and Display names ... Read More
|
|
SQL Server Agent (MSSQLSERVER)
|
sqlagent.exe
|
Y
|
SQL Server Agent is a Microsoft Windows service that allows you to automate various MSSQL administrative tasks, which are called jobs. SQL Server Agen ... Read More
|
|
SQL Server Browser
|
sqlbrowser.exe
|
Y
|
SQL Server Browser runs as a Windows service on the server. SQL Server Browser listens for incoming requests for SQL Server resources and provides inf ... Read More
|
|
sql server service
|
sql.exe
|
X
|
Added by the W32/Rbot-ADF ... Read More
|
|
SQL Server VSS Writer
|
sqlwriter.exe
|
Y
|
Provides the interface to backup/restore Microsoft SQL server through the Windows VSS infrastructure. ... Read More
|
|
sql-smss
|
sql-smss.exe
|
X
|
Added by the W32/Tilebot-GI worm and IRC backdoor.
|
|
SQLDGM
|
sql-dgm.exe
|
X
|
Added by the W32/Tilebot-EX worm and IRC backdoor. This infection utilizes the Remon.sys rootkit to hide itself. ... Read More
|
|
sqldps
|
sqldps.exe
|
X
|
Added by the W32/Tilebot-GV worm and IRC backdoor.
|
|
sqlmanagement
|
sqlmanagement.exe
|
X
|
Added by the W32/Tilebot-GB worm and IRC backdoor.
|
|
sqvynikp
|
sqvynikp.exe
|
X
|
Free_Scratch_Cards foistware
|
|
SrchfstUpdate
|
srchupdt.exe
|
X
|
SearchFast adware downloader
|
|
srePostpone
|
srescan.dll
|
Y
|
Related to products from Zonelabs. Though we are not 100% sure as to what this file does, I suggest you do not disable it as it may affect the effect ... Read More
|
|
Srmclean
|
srmclean.exe
|
U
|
Srmclean helps in the installation and execution of the SoundMax SoftPaq for Compaq/ADI SoundMax Integrated Digital Audio. According to Compaq - "If y ... Read More
|
|
SRNG
|
srng.exe
|
X
|
Added by the Spyware.2020search search hijacker.
|
|
srosa
|
srosa.sys
|
X
|
Added by the TROJ_ROOTKIT.JS rootkit.
|
|
SRP Startup
|
srrpro.exe
|
U
|
System Restore Remover Pro allows you to safely and easily remove System Restore and various other Windows Millennium "features." This is enabled if y ... Read More
|
|
srr
|
srr.sys
|
X
|
Added by the Rootkit.Agent rootkit.
|
|
srrcmsn
|
srsmsn.exe
|
X
|
Added by the Troj/Banloa-AB Trojan.
|
|
SRS Applet
|
SrsTray.Exe
|
Y
|
S3 Sonic Vibes sound card drivers - if disabled you loose sound
|
|
SRS Audio Sandbox
|
SRSSSC.exe
|
U
|
Added by the SRS Audio Sandbox. This tool allows you to control how the sound comes from your audio card. ... Read More
|
|
srshost.exe
|
srshost.exe
|
X
|
Added by a variant of the RBOT-ASW worm! Note: This wormtrojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. ... Read More
|
|
srtwe
|
srtwe.sys
|
X
|
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
|
|
srute
|
srute.exe
|
X
|
Added by the Troj/Agent-JKX Trojan.
|
|
Srv Host
|
srvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Srv32
|
Srv32.exe
|
X
|
Added by the OPASERV.J WORM!
|
|
Srv32
|
Srv32.exe
|
X
|
Added by the OPASERV.S WORM!
|
|
Srv32 spool service
|
spoolsrv32.exe
|
X
|
Topantispyware.com malware, recognized by Kaspersky antivirus as Trojan-Clicker.Win32.Spyre.b ... Read More
|
|
Srv325
|
Srv325.exe
|
X
|
Added by W32/Agobot-PR. Found in the Windows system folder.
|
|
Srv32Win
|
SpyAgent4.exe
|
U
|
SpyAgent - monitoring software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you call it ... Read More
|
|
Srv32Win
|
Svchost.exe
|
U
|
Realtime-Spy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it a ... Read More
|
|
Srv32Win
|
sysdiag.exe
|
X
|
NetVizor keystroke logger
|
|
Srv32Win
|
services.exe
|
X
|
Added by the TROJ_DLOADER.UEF Trojan. This infection should not be confused with the legitimate C:\Windows\System2\services.exe file. ... Read More
|
|
srvbtcclient
|
svchost.exe
|
X
|
Identified by Microsoft as a variant of the Trojan:Win32/Malex.gen!E malware. This infection should not be confused with the legitimate C:\Windows\Sys ... Read More
|
|
Srvce Pack Updte
|
svcpack.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
srvcm
|
srvcm.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
srvD8
|
srvD8.tmp
|
X
|
Identified by Kaspersky antivirus as a variant of the Packed.Win32.Krap.il malware. Please note that C:\Windows\system32\svchost.exe is a legitimate ... Read More
|
|
srvexc.exe
|
srvexc.exe
|
X
|
Added by the SERVSAX TROJAN!
|
|
srvprc
|
srvprc.exe
|
U
|
Added by the Spyware.ActMon surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
SrvSec
|
svchost.exe
|
X
|
Added by the W32.Degnax@mm worm. W32.Degnax@mm is a mass-mailing worm that gathers email addresses from the compromised computer. It also spreads via ... Read More
|
|
srvsysdriver32
|
sysdriver32.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
SrxRwxyu
|
srxrwxyu.exe
|
X
|
Added by the Troj/Agent-URM Trojan.
|
|
srxtray
|
srxTray.exe
|
N
|
|
|
SS Logging Service
|
SSLS.exe
|
U
|
Added by the SnoopStick surveillance software. SnoopStick comes on a USB Flash Drive and can be installed by inserting the USB Drive into the computer ... Read More
|
|
SsAAD.exe
|
SsAAD.exe
|
N
|
The item is added during the installation of Sony's Digital Music Manager software that comes with Sony MP3 players. It monitors your HDD for newly ad ... Read More
|
|
SSBkgdUpdate
|
SSBkgdupdate.exe
|
N
|
ScanSoft OmniPage auto updater. Can be disabled using the main program's options. This program is also installed with other Nuance products. ... Read More
|
|
SSC Service Utility
|
ssc_serv.exe
|
U
|
SSC Service Utility is a printer utility for refilled Epson cartridges
|
|
SSCFBTN.EXE
|
SSCFBTN.EXE
|
?
|
Samsung Scanner or Printer related - what does it do and is it required?
|
|
sscrun
|
SSCRun.exe
|
U
|
AOL's Firewall protection program. Note: located in C:\Program Files\Common Files\AOL\... ... Read More
|
|
Ssd
|
Std.exe
|
Y
|
Stealthdisk - file and folder hiding/locking utility
|
|
ssdiag
|
ssdiag.exe
|
U
|
It's a shared driver components used by Sonic DLA. If DLA is enabled you can use it to burn information to a CD as if it was a floppy drive or other ... Read More
|
|
SSDPSRV
|
ssdpsrv.exe
|
N
|
Simple Service Discovery Protocol (SSDP) and General Event Notification Architecture (GENA) services for network plug and play functionality. Starts u ... Read More
|
|
sserrvv
|
sserrvv.exe
|
X
|
Added by the W32/Stratio-AY mass-mailing worm.
|
|
ssfs0bbc
|
ssfs0bbc.sys
|
Y
|
The Spy Sweeper FileSystem Filter Drive for Webroot's Spy Sweeper.
|
|
ssgrate.exe
|
system.exe
|
X
|
Added by the MITGLIEDER.C TROJAN!
|
|
ssgrate.exe
|
sysdoor.exe
|
X
|
Added by the MITGLIEDER.N TROJAN!
|
|
ssh32
|
SSh32.exe
|
U
|
2Spy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
SSHNAS
|
sshnas.dll
|
X
|
Identified as a variant of the TR/ATRAPS.Gen malware. This service is launched by svchost.exe, which is a legitimate Windows executable that should n ... Read More
|
|
SSL
|
svchost.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
SSL
|
SearchNDestrou.exe
|
X
|
Added by the W32/Sdbot-WG WORM/IRC backdoor Trojan to the Windows system folder. ... Read More
|
|
ssldr
|
ssldr32.dll
|
X
|
Added by the Troj/Agent-ZD Trojan. This infection will also install and run the file c:\windows\system32\doser.exe. ... Read More
|
|
SSLDyn
|
SSLDyn.exE
|
X
|
Identified by Trend Micro as a variant of the TSPY_ONLINEG.FAD password-stealing Trojan. ... Read More
|
|
ssmmgr
|
ssmmgr.exe
|
U
|
Samsung printer monitor - for checking ink levels, etc.
|
|
ssms.exe
|
SSMS.EXE
|
X
|
Added by the W32.GISMOR WORM! ... Read More
|
|
ssp2.exe
|
ssp2.exe
|
X
|
Added by the W32/Rbot-BBK worm and IRC backdoor.
|
|
sspy
|
SSYTEM.EXE
|
U
|
SurfingSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
ssqroon
|
ssqroon.dll
|
X
|
Identified by AVG as Trojan.Awax.
|
|
sssasasb32
|
sssasasb32.exe
|
X
|
Adware trojan - recognized by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.ig ... Read More
|
|
SStb.exe
|
SStb.exe
|
X
|
Adpowerzone.com "ServerSide" keyword hijacker
|
|
sstray
|
sstray.exe
|
N
|
nVidia nForce Taskbar Utility - quick access to the nForce2 "Sound Storm" control panel and related utilitys ... Read More
|
|
SSUpdate
|
SSUpdate.exe
|
X
|
DyFuCa/MoneyTree parasite variant
|
|
ssvchost
|
ssvchost.exe
|
X
|
Added by the HELIOS.B TROJAN!
|
|
st3
|
st3.dll
|
X
|
Added by the Troj/Hasum-A Trojan.
|
|
Stacmon
|
Stacmon.exe
|
N
|
Installed with the drivers for a SigmaTel C-Major Audio card (on a Dell Inspiron 600m PC for example). Appears as though it can be disabled with no il ... Read More
|
|
stacsystray
|
StacSysTray.exe
|
U
|
Related to SigmaTel_software Places an icon for this program on the taskbar next to the clock. Note: located in C:\Program Files\SigmaTel\C-Major Aud ... Read More
|
|
Staffcop Scheduler
|
scheduler.exe
|
U
|
Added by the Spyware.StaffCop surveillance software. Spyware.StaffCop is a spyware program that monitors various activities on a computer in real-time ... Read More
|
|
standalone.exe
|
standalone.exe
|
X
|
Added by the W32/Agobot-ADS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
star8
|
svscheld.exe
|
X
|
Added by the Troj/DwnLdr-HLK downloading Trojan.
|
|
stardust screen saver control 2003
|
SCMain.exe
|
N
|
Related to Stardust_Software Screen Saver Control 2003 ... Read More
|
|
StarForce Protection Environment Driver (version 1.x)
|
sfdrv01.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
StarForce Protection Helper Driver (version 2.x)
|
sfhlp02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
StarForce Protection Synchronization Driver (version 2.x)
|
sfsync02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
StarForce Protection VFS Driver (version 2.x)
|
sfvfs02.sys
|
Y
|
Related to StarForce Protection software that protects software from being copyrighted. Disabling this service could make programs that use its protec ... Read More
|
|
starsk
|
stask.exe
|
X
|
Added by the Troj/Bancos-IJ password-stealing Trojan.
|
|
starskin
|
starskin.exe
|
U
|
StarSkin allows you to change the view and appearance of your Windows XP box with the use of publically available themes. ... Read More
|
|
start
|
start.exe
|
?
|
??
|
|
start
|
sbmntr.exe
|
X
|
Identified as a variant of the Adware/Netproject malware.
|
|
start extracting
|
spoolvse.exe
|
X
|
Added by the W32/Rbot-XF WORM/backdoor Trojan. It allows unauthorized access by malicious user(s) of the IRC network, killing processes and participa ... Read More
|
|
start extracting
|
spoolvs.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Start It Uping
|
svchosets31.exe
|
X
|
Added by a SDBot variant.
|
|
start it upping
|
svchosets.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
start page
|
svcnt32.exe
|
X
|
Homepage hijacker, also detected as Trojan-Downloader.Win32.Delf.ks
|
|
Start Up Cop
|
startcop.exe
|
U
|
StartUp Cop - startup manager
|
|
start uploading
|
smsss.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Start Upping
|
SVCHOSTES.EXE
|
X
|
Added by the RBOT-NB WORM!
|
|
Start Upping
|
spoolnt.exe
|
X
|
Added by the W32/Rbot-TM WORM/IRC backdoor trojan!
|
|
Start Uppings
|
svcchosts.exe
|
X
|
Added by the SDBOT.VY WORM!
|
|
Startacc
|
startacc.exe
|
U
|
Launches Webroot's Accelerate 2000 software that "speeds up your Internet connection by up to 300%". Leave enabled if you find it improves internet co ... Read More
|
|
startdrv
|
startdrv.exe
|
X
|
Identified as the Win32:Small-EPJ Trojan.
|
|
StartEAK
|
StartEAK.exe
|
Y
|
Easy Access Button Support for Compaq PCs. Required if you use these
|
|
starter
|
scvhosting.exe
|
X
|
Added by the IRCBOT.E TROJAN!
|
|
Starter
|
scvhosting.exe
|
X
|
Added by the SDBOT.RU WORM!
|
|
starter
|
scvhostingg.exe
|
X
|
Added by the W32/Forbot-FB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
startfoxie
|
StartFoxie.exe
|
U
|
Related to Foxie_Suite from SOFTONIC INTERNATIONAL. This suite of free tools comes in the form of an Internet Explorer add-on and includes a mix of p ... Read More
|
|
startkey
|
svcmgr.exe
|
X
|
Added by the Troj/Hipper-B backdoor Trojan.
|
|
startkey
|
server.exe
|
X
|
Added by the Troj/Bifrose-B Trojan.
|
|
startkey
|
systemhosts.exe
|
X
|
Added by the Troj/Bifrose-PC Trojan.
|
|
startkey
|
svchost.exe
|
X
|
Added by the Troj/Agent-FPL Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
startl.exe
|
startl.exe
|
N
|
Lingocom LingoWare - translates any application into your language
|
|
StartMenu
|
s_menu.exe
|
X
|
Added by a variant of the DELF-A TROJAN!
|
|
startpage
|
startpage.exe
|
X
|
Browser hijacker - redirecting to pages2start.com
|
|
STARTPAGE
|
start1.exe
|
U
|
NoSpy.org - prevents spyware from changing your startpage and other browser properties. The start1.exe file is located in a NOSPY.ORG folder ... Read More
|
|
StartStop
|
STARTSTOP.EXE
|
U
|
StartStop from TFI Technology - startup manager
|
|
StartSurfing
|
STARTS.exe
|
U
|
Start Surfing allows you to protect your privacy while surfing and searching the Internet by acting as a "filter" between you and the website you are ... Read More
|
|
startup manager scanner
|
StartupMonitor.exe
|
U
|
Startup-Mechanic Startup monitor - offers boot protection of your PC from harmful trojans, adult-dialers, and other scumware. ... Read More
|
|
startup scan
|
Sensor.EXE
|
Y
|
Related to AntiVirus_Quick_Heal Scheduling agent. Note: located in C:\Program Files\QUICKH~1\ ... Read More
|
|
StartupDelayer
|
Startup Launcher GUI.exe
|
Y
|
Added by Startup Delayer. Startup Delayer allows you to specify, for each startup program, how many seconds after Windows starts will the program load ... Read More
|
|
StartupFaster
|
StrpFstCfg.exe
|
?
|
|
|
StartupMonitor
|
StartupMonitor.exe
|
U
|
Mike Lin's StartupMonitor, throws up an alert and asks your permission every time any change is made to your start-up configuration, either in the re ... Read More
|
|
startwin
|
startwin.exe
|
X
|
Added by the W32.ANTIMAN.A WORM! ... Read More
|
|
StarWind iSCSI Service
|
StarWindService.exe
|
N
|
This service belongs to the Alcohol 120% DVD/CD emulation and burning software. This software adds network drive sharing via the iSCSI protocol. ... Read More
|
|
Stat 'n' Perf
|
StatnPerf.exe
|
N
|
Stat 'n' Perf monitors your internet connection and displays information about sent and received bytes ... Read More
|
|
StatBar
|
STATBAR.exe
|
U
|
StatBar (system status bar) allows you to quickly get an overview of your system ... Read More
|
|
stationplayliststudio
|
SPLStudio.exe
|
U
|
Related to Station_Playlist_Studio StationPlaylist Creator Studio combine to provide a very affordable and powerful radio automation software solut ... Read More
|
|
Statistics
|
statslist.exe
|
X
|
Added by the W32/Opanki-S worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
status
|
status.dll
|
X
|
A variant of the Haxdoor Trojan. This infection is hidden by the tage32.sys rootkit. ... Read More
|
|
StatusClient
|
StatusClient.exe
|
?
|
Part of Hewlett Packard network printer drivers
|
|
StatusClient 2.6
|
StatusClient.exe
|
?
|
Part of Hewlett Packard network printer drivers.
|
|
statusview
|
StatusView.exe
|
U
|
Related to Status_View Electronic intra-office messaging. Note: located in C:\Program Files\IDP Corporation\StatusView\ ... Read More
|
|
Stay Connected!
|
StayCon.exe
|
N
|
More than just a pinger, actually simulates online activity. Supports AOL, NetZero, MSN, ATT WorldNet, CompuServe and many other ISPs as well. Availab ... Read More
|
|
StayAlive
|
sa.exe
|
U
|
StayAlive from TFI Technology. "This top-notch tool intercepts crashes when they happen, keeping your programs running so you can save your work." ... Read More
|
|
stayalive
|
StayAlive.Exe
|
U
|
Related to Stay_Alive Stay connected even after a period of inactiviry on the net. ... Read More
|
|
STBVision
|
STBVisn.exe
|
?
|
Related to the STB Velocity graphics card. What does it do and is it required?
|
|
STBWEBTV
|
STBWEBTV.EXE
|
N
|
Used to display TV on your PC
|
|
stchost.exe
|
stchost.exe
|
X
|
Added by the Troj/Vixup-D trojan.
|
|
stcloader
|
stcloader.exe
|
X
|
Popup adware by 2ndThought software
|
|
stcloader
|
STCLOA~1.exe
|
X
|
Popup adware by 2ndThought software
|
|
STCLOA~1
|
stcloader.exe
|
X
|
Popup adware by 2ndThought software
|
|
STCLOA~1
|
STCLOA~1.exe
|
X
|
Popup adware by 2ndThought software
|
|
STCPE
|
STCPE.exe
|
?
|
Used to allow access to UCLA computer systems.
|
|
STCPO
|
STCPO.exe
|
Y
|
Sophos Sweep antivirus software
|
|
StdAFX
|
stdafx.exe
|
X
|
Added by the W32/Delbot-AF worm and IRC backdoor.
|
|
STDSB
|
STDSB.exe
|
Y
|
Scrollbar driver for notebooks. If taken out of the Startup, it will not provide scrolling. ... Read More
|
|
Stealth Anonymizer 2.5
|
stealth25.exe
|
U
|
Now named Stealther - proxy server agent that lets you travel the Internet with maximum possible privacy ... Read More
|
|
stealth.dcom.exe
|
stealth.dcom.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
stealth.ddos.exe
|
stealth.ddos.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
stealth.exe
|
stealth.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
stealth.injector.exe
|
stealth.injector.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
stealth.stat.exe
|
stealth.stat.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
stealth.wm.exe
|
stealth.wm.exe
|
X
|
Added by the W32.Theals.A@mm mass-mailing worm.
|
|
Steam
|
steam.exe
|
N
|
Valve Software's STEAM broadband game client. Steam is Valve's new way of getting games into your hands ASAP. Games like Half-Life, Counter-Strike, an ... Read More
|
|
steam
|
steam.exe
|
X
|
Added by the W32/Rbot-AJT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Steam Client Service
|
SteamService.exe
|
Y
|
Steam is Valve Software's content and game distribution software. This software allows you to purchase software and then download it in the backgroun ... Read More
|
|
stefanie
|
SteFanie.vbs
|
X
|
Added by the VBS.Stefan ... Read More
|
|
Steganos Live Encryption Engine (Version 401) [Service]
|
SLEE401.exe
|
Y
|
This is part of the Steganos Security Suite and involved in handling real-time encryption. ... Read More
|
|
Stickies
|
STICKIES.EXE
|
N
|
Stickies - utility that allows you to put yellow "Post-It" type messages on your desktop and can be used to set reminders. Available via Start -> Prog ... Read More
|
|
Sticky Notes
|
stikynot.exe
|
N
|
Microsoft Sticky Notes - virtual sticky notes tool
|
|
StickyNote
|
StickyNote.exe
|
N
|
Utility that allows you to put yellow "Post-It" type messages on your desktop. Available via Start -> Programs ... Read More
|
|
Still image service
|
stisvc.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
StillImageMonitor
|
Stimon.exe
|
U
|
Stimon.exe enables a USB still-image device (such as a scanner) to initiate data transfer to a program. For example, if your scanning device has a sca ... Read More
|
|
stisrv
|
stisrv.exe
|
X
|
Added by the RBOT.BQF WORM! ... Read More
|
|
stldr
|
stldr1.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Jorik.Koobface.bp malware. ... Read More
|
|
stlsvc
|
stlsvc.sys
|
X
|
Added by the Mal/RootKit-A rootkit.
|
|
stone
|
stone.exe
|
X
|
Added by the W32/Agobot-PX WORM! File is found in the Windows system folder.W32/Agobot-PX is capable of spreading to computers on the local network p ... Read More
|
|
stonedrv
|
stonedrv.exe
|
X
|
Added by the Troj/Cosiam-K Trojan.
|
|
Stop The Popup
|
StpPopup.exe
|
U
|
Main executable for the Stop-the-Pop-Up popup blocker.
|
|
StopingSpy
|
StopingSpy.exe
|
X
|
Added by the StopingSpy. StopingSpy is a rogue anti-spyware program that displays exaggerated results and false positives. ... Read More
|
|
StopSignStatus
|
stopsinfo.dll
|
N
|
eAcceleration Stop-Sign related - not recommended, see note
|
|
STOPzilla
|
Stopzilla.exe
|
U
|
StopZilla! - pop-up killer
|
|
STOPzilla Service
|
SZNTSVC.EXE
|
U
|
StopZilla! - pop-up killer
|
|
STOPzilla Service
|
SZServer.exe
|
U
|
|
|
Storage Accounts Manager
|
svshost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
StorageGuard
|
sgtray.exe
|
U
|
StorageGuard from Veritas. Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system ... Read More
|
|
StorageProtector
|
SysRep.exe
|
X
|
Added by the StorageProtector rogue application.
|
|
StormCodec_Helper
|
StormSet.exe
|
U
|
Storm Codec is a codec pack for Windows.
|
|
STPMGR
|
STPMGR.EXE
|
?
|
Part of SafeTP which is transparent FTP security software. Does it need to be running permanently or can it be started manually via Start -> Programs ... Read More
|
|
strayk
|
strayk.exe
|
U
|
Strayk changes your desktop background to the daily image found at Strayk.com.
|
|
strFree
|
strFree.dll
|
X
|
Added by the Troj/Mdrop-DRG Trojan. Please note that C:\Windows\System32\rundll32.exe is a legitimate file and should not be removed. ... Read More
|
|
strgsync.exe
|
StrgSync.exe
|
U
|
SimpleTech Inc's StorageSync backup software - backs up an entire PC, or selected files and folders. ... Read More
|
|
strkjhk
|
sdflkj8.exe
|
X
|
Added by the Troj/Bckdr-QJT backdoor Trojan.
|
|
Strng32
|
strngbox.exe
|
X
|
Added by the STRANO WORM!
|
|
strokeit
|
strokeit.exe
|
U
|
StrokeIt is an "advanced mouse gesture recognition engine and command processor". ... Read More
|
|
strpmon
|
strpmon.exe
|
X
|
Added by the BugsDestroyer rogue anti-spyware program. This executable is found with other rogue anti-spyware programs as well. ... Read More
|
|
strto
|
strto.exe
|
X
|
Added by Troj/Killav-AD to terminates anti-virus and security related applications and delete all files found in their folders. ... Read More
|
|
Stubbish
|
Stubbish.exe
|
X
|
Added by the W32/Stubbot-A WORM/IRC backdoor!
|
|
StubPath
|
Sservice.exe
|
X
|
Added by the PRORAT TROJAN!
|
|
stup.exe
|
stup.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Trojan-PSW.Win32.QQRob.le malware. ... Read More
|
|
STW
|
stw.exe
|
X
|
Added by the WebHelper Startpage adware.
|
|
StyleXP
|
StyleXP.exe
|
U
|
StyleXP allows you customize the way WinXP looks. If disabled via msconfig it re-instates itself at reboot, therefore uninstall it if you don't want i ... Read More
|
|
StyleXPService
|
StyleXPService.exe
|
Y
|
"How sleek is your desktop? Style XP unleashes the full potential of your Windows XP desktop by allowing you to download and install XP themes." ... Read More
|
|
Sub Connections
|
shmyga.exe
|
X
|
Added by an unknown Trojan Downloader. It installs itself as a service with a servicename of Pro. Shmyga.exe is located in the Windows system folder. ... Read More
|
|
subah
|
SubAH.exe
|
X
|
Added by the SubAH backdoor TROJAN!
|
|
subliminal power
|
Subliminal.exe
|
U
|
Related to Subliminal_messages A displays subliminal messages of your choice on your computer screen. Note: located in C:\Program Files\Subliminal Po ... Read More
|
|
subway1113.3322.org
|
subway1113.3322.org.exe
|
X
|
Added by the Troj/Rincux-B. Trojan
|
|
Suitcase Startup
|
Suitcase.exe
|
U
|
Suitcase. System font manager start up utility. Used for dynamic managment of fonts on your system ... Read More
|
|
Suite
|
SuiteOffices.exe
|
X
|
Added by the LAZAR trojan downloader.
|
|
SULFNBJ.EXE
|
SULFNBJ.EXE
|
X
|
Added by the PE_MAGISTR.DAM VIRUS!
|
|
Sun
|
svchost32.exe
|
X
|
Added by the Troj/Banker-BP TROJAN!
|
|
sunasdtserv
|
sunasDTServ.exe
|
U
|
SunBelt CounterSpy spyware detection and removal software ... Read More
|
|
sunasserv
|
sunasServ.exe
|
U
|
SunBelt CounterSpy spyware detection and removal software ... Read More
|
|
SunJavaUpdate
|
smvss.exe
|
X
|
Added by the DEDLER-G TROJAN!
|
|
SunJavaUpdateSched
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-AVX WORM/IRC backdoor Trojan!
|
|
SunJavaUpdatSched
|
spoolsv.exe
|
X
|
Added by the Troj/Bancban-NP Trojan.
|
|
Sunkist
|
shwicon98.exe
|
U
|
Card reader for memory cards from digital cameras, etc
|
|
Sunkist2k
|
shwicon2k.exe
|
U
|
Card reader for memory cards from digital cameras, etc
|
|
SunKistEM
|
shwiconem.exe
|
U
|
Used by your computer to communicate with your Alcor_Micro Multimedia Card Reader - necessary if you're using this software ... Read More
|
|
SuNotification
|
suatshut.exe
|
U
|
ShadowSurfer - "provides a safe computing environment by creating a virtual twin of your PC. Restore the pre-ShadowMode™ system state no matter what c ... Read More
|
|
sunprotectionserver
|
SunProtectionServer.exe
|
U
|
CounterSpy antispyware software ... Read More
|
|
sunserver
|
SunServer.exe
|
U
|
CounterSpy antispyware software ... Read More
|
|
Sunshine
|
Sunshine.exe
|
X
|
Related to the rogue anti-spyware program called SunshineSpy.
|
|
SupaDial
|
SupaDial.exe
|
?
|
SupaNet.com modem driver related - is it required?
|
|
Supastatus
|
status.exe
|
N
|
|
|
supdate2.dll
|
supdate2.dll
|
X
|
Added by the Troj/Zlob-VL Trojan.
|
|
super
|
super.exe
|
X
|
Added by the W32/Agobot-QT WORM/IRC backdoor, which changes the HOSTS file and allows an attacker access - making possible several other actions. ... Read More
|
|
super x desktop version 3.4
|
SXDesk.exe
|
U
|
Related to Super_X_Desktop Manager. 100 reliable virtual desktop, custom caption and wallpaper. ... Read More
|
|
SuperAdBlocker
|
SAdBlock.exe
|
U
|
|
|
SUPERAntiSpyware
|
SUPERAntiSpyware.exe
|
Y
|
SuperAntiSpyware's real-time protection process.
|
|
SuperBar.Component
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. File is found in the %windir%system32inetsrv folder. ... Read More
|
|
Supercleaner
|
Supercleaner.exe
|
U
|
Supercleaner - all in one disk cleaner for your computer
|
|
SuperHeissSex
|
SuperHiessSex.exe
|
X
|
Added by the Dialer.HeissSex premium adult dialer.
|
|
superheisssex
|
SuperHeissSex.exe
|
X
|
Added by the HeissSex premium rate adult content dialer! ... Read More
|
|
superproxy
|
superproxy.exe
|
X
|
Added by the Troj/Agent-ENY backdoor Trojan.
|
|
superproxy
|
superproxy.exe
|
X
|
Added by the W32/Vanebot-AQ worm and IRC backdoor.
|
|
superram
|
SuperRam.exe
|
U
|
Related to SuperRam Tool which allows you to maintain and manage memory. Note: located in C:\Program Files\SuperRam\ ... Read More
|
|
SuperSpamKiller Pro
|
Ssk.exe
|
U
|
SuperSpamKiller Pro email spam blocker
|
|
Supervise.exe
|
Supervise.exe
|
X
|
Added by the Troj/Delf-DZX Trojan.
|
|
Supervisor.exe
|
Supervisor.exe
|
?
|
Has been reported to be associated with various antitrojan software like ATS and PC Doorguard. If so it's required in Startup - any further informatio ... Read More
|
|
supporter5
|
supporter5.exe
|
X
|
Part of eScorcher anti-virus software- responsible for updates of new virus bases each time you logon to the web. Used to collect information about th ... Read More
|
|
Supports RAS Connections
|
svhost.exe
|
X
|
Added by the W32/Rbot-GXH worm and IRC backdoor.
|
|
SupportSoft Sprocket Service
|
sprtsvc.exe
|
Y
|
Driver related to Dell's support center.
|
|
SureCleanProfessional
|
SRClean.exe
|
U
|
SureClean PC and Internet tracks cleaner
|
|
Sureshotpopupkiller
|
Stopthepop.exe
|
U
|
|
|
surfaccuracy
|
sacc.exe
|
X
|
SurfAccuracy adware ... Read More
|
|
SurfChoice
|
SCMan.exe
|
U
|
SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore ... Read More
|
|
Surfer lptt01
|
surfer.exe
|
X
|
Variant of the RapidBlaster parasite (in a "mssurfer" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
|
|
Surfer ml097e
|
surfer.exe
|
X
|
Variant of the RapidBlaster parasite (in a "mssurfer" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rap ... Read More
|
|
surfhelper
|
SurfHelp.exe
|
U
|
Related to SurfHelperA A free tool to remove popup windows, clear history, control window properties of IE, and more. ... Read More
|
|
SurfNavigator
|
SurferClient.exe
|
X
|
According to the information found here, this program is supposed to simulate a web surfer that can click on links within a hidden IE window. Read More
|
|
SurfSecret
|
ss2-full.exe
|
U
|
"House-cleaning utility that enables you to keep your computer usage to yourself. Runs quietly from the system tray, eliminating tell-tale files at a ... Read More
|
|
SurfSideKick
|
Ssk.exe
|
X
|
Added by the Adware.SurfSideKick adware.
|
|
SurfSideKick 2
|
Ssk.exe
|
X
|
Added by the Adware.SurfSideKick adware.
|
|
SurfSideKick 3
|
Ssk.exe
|
X
|
Added by the Adware.SurfSideKick adware.
|
|
SurfStream
|
SurfStream.exe
|
U
|
Conceiva "SurfStream lets you surf the Web faster. It contains a fully featured proxy server that lets you surf the Web significantly faster. It also ... Read More
|
|
SurveyorSession
|
SurveyorSession.exe
|
Y
|
Power Management software from Verdiem that allows you to manage the power management settings for all the PCs on your network. ... Read More
|
|
Surveysa
|
surveysa.exe
|
?
|
Found in the SonyVaiosurvey directory on a Sony Vaio PC. What does it do and is it required? ... Read More
|
|
Susp
|
Susp.exe
|
X
|
Transponder parasite updater/installer
|
|
SV00LSV
|
SV00LSV.EXE
|
X
|
Added by the Troj/GrayBird-C backdoor trojan.
|
|
SVA Player
|
SVAplayer.exe
|
X
|
QuickFlicks Streaming Player - regarded as spyware. See here for details of how to disable or uninstall it ... Read More
|
|
Svc
|
svc.exe
|
X
|
Hijacker, Clientman parasite variant, redirecting to madfinder.com. Detected by Symantec as the MADFIND TROJAN! ... Read More
|
|
SVC Module
|
svchost.exe
|
X
|
Added by the W32/Sdbot-ADG worm. This file should not be confused with the legitimate Windows file of the same name located in the Windows %System% fo ... Read More
|
|
SVC Service
|
svcinit.exe
|
X
|
Added by the SINIT TROJAN!
|
|
SVC Service
|
svcinit.exe
|
X
|
CoolWebSearch parasite variant
|
|
SVC Service
|
svcpack.exe
|
X
|
CoolWebSearch parasite variant
|
|
SVC Service
|
svc32.pif
|
X
|
Added by the W32/Rbot-ASC worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
svcdata.exe
|
svcdata.exe
|
X
|
Added by the W32.Spybot.ZIF worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Svced
|
Svced.exe
|
X
|
Added by the DELF.F TROJAN!
|
|
SVCH Service
|
svch32.pif
|
X
|
Added by the W32/Rbot-ASZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SvcH0st
|
SHCH.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN!
|
|
SvcH0st
|
SVCHST.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN!
|
|
SVCH0ST
|
SVCH0ST.EXE
|
X
|
Added by the Troj/Lors-A trojan.
|
|
SVCH0ST
|
spoo1sv.exe
|
X
|
Added by the Troj/VB-HF trojan.
|
|
SvcH0st
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
SVCH0TS
|
sp00lvs.exe
|
X
|
Added by the Troj/Lineage-AZ password-stealing Trojan for the online game Lineage. ... Read More
|
|
svchast
|
svchast.exe
|
X
|
Added by the Troj/Lineage-AV password-stealing Trojan for the online game Lineage. ... Read More
|
|
SVCHAST
|
SVCHAST.exe
|
X
|
Added by the Adware.PPRich adware. Adware.PPRich is a program that displays internet advertisements in Chinese on the computer. ... Read More
|
|
svchos
|
svchos.exe
|
X
|
Added by the Troj/Singu-C Trojan.
|
|
SVCHOSI
|
SVCHOSI.EXE
|
X
|
Added by the W32/Vbbot-AA worm and IRC backdoor.
|
|
svchost
|
Svch0st.exe
|
X
|
Added by the GRAYBIRD.B TROJAN!
|
|
SVCHOST
|
svchost.exe
|
X
|
System1060 homepage hi-jacker. Found in a Windows\System\1060 directory. Note - this is not the legitimate svchost.exe process which should NOT appear ... Read More
|
|
svchost
|
svchost.exe
|
X
|
Added by the MORB WORM or TARNO TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
svchost
|
Svch0st.exe
|
X
|
Added by the GRAYBIRD TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Svchost
|
svchost.exe
|
X
|
Added by the MOXE-A WORM! This is not the valid svchost.exe as described here
|
|
Svchost
|
svchosl.pif
|
X
|
Added by the INZAE.A or INZAE.B WORMS!
|
|
svchost
|
svchost.scr
|
X
|
|
|
Svchost
|
svchost.exe
|
X
|
Added by Troj/AdClick-AM, a TROJAN that copies itself to the C:\Program Files\Internet Explorer" folder. ... Read More
|
|
svchost
|
svchost.exe
|
X
|
Added by the Adware.2Search spyware/adware.
|
|
svchost
|
svchost.exe
|
X
|
Added as part of a new potential CWS infection. This program is part of a suite of programs that installs a web server, php, ftp server, socks, and m ... Read More
|
|
SVCHOST
|
SERVlCES.EXE
|
X
|
Added by the Troj/Delf-LF backdoor Trojan.
|
|
SvcHost
|
svchost32.exe
|
X
|
Added by the W32/Agobot-TM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
svchost
|
svchost.com
|
X
|
Added by the Troj/Banloa-ABL Trojan.
|
|
SVCHOST
|
svchost64.exe
|
X
|
Added by the Troj/Startp-G Trojan.
|
|
svchost
|
SVSH0ST.EXE
|
X
|
Added by the W32.Gexin.A worm. W32.Gexin.A is a worm that spreads through shared folders and removable drives. It modifies certain .htm, .php, and .as ... Read More
|
|
svchost
|
svcst.exe
|
X
|
Added by the W32/Agent-LIL worm.
|
|
svchost Agent
|
svchost.exe
|
X
|
Added by the W32/Autorun-DB removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
svchost connection monitor
|
svchost32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
SVCHOST Generic application
|
svchost.exe
|
X
|
Added by the Troj/Daemoni-AT TROJAN!
|
|
svchost Netware Manager
|
svchost.exe
|
X
|
Added by the W32.Exvid.A@mm keylogging virus. This infection should not be confused with the legitimate svchost.exe residing in the Windows %System% ... Read More
|
|
SVCHost Protocol32
|
scvhost32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Svchost Service
|
svchost.exe
|
X
|
Added by the W32/VB-DVQ worm. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Svchost Windows Remote Services
|
svhost.exe
|
X
|
Added by the W32/IRCBot-IV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
svchost.exe
|
svchost32.exe
|
X
|
CoolWebSearch parasite related. Note - this is not the valid svchost.exe as described here ... Read More
|
|
SVCHOST.EXE
|
SVCHOST.EXE
|
X
|
Added by the Troj/Wrmscan-A . It modifies any files named "mirc.ini", then creates a file named "server.mrc" in the same folder which causes the IRC p ... Read More
|
|
svchost.exe
|
svchost.exe
|
X
|
Added by the Troj/PWSjx-A password stealing trojan. This infections attempts to steal your password for the game MuYangJX. ... Read More
|
|
svchost.exe
|
svchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
svchost.exe
|
svcnost.exe
|
X
|
Added by the Troj/Mislead-A Trojan.
|
|
svchost1
|
svchost1.exe
|
X
|
Added by the AGOBOT.ZZ WORM!
|
|
SVCHost2
|
svchost2.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SvcHost32
|
svchost32.exe
|
X
|
Added by the MIMAIL.I or MIMAIL.J WORMS!
|
|
svchost64
|
svchost64.exe
|
X
|
Added by the SDBOTER.G VIRUS!
|
|
svchosta
|
svchosta.exe
|
X
|
Added by the Troj/Sniffer-I.
|
|
svchostb
|
svchostb.exe
|
X
|
Added by the Troj/Sniffer-J TROJAN!
|
|
svchostBB
|
svchostBB.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostBD
|
svchostBD.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostBDJU
|
svchostBDJU.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostBN
|
svchostBN.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostCX
|
svchostCX.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostdll.scr
|
svchostdll.scr
|
X
|
Added by the Troj/Bancban-FM password-stealing Trojan of certain bank web sites. ... Read More
|
|
svchostIT
|
svchostIT.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchostn.exe
|
svchosth.exe
|
X
|
Added by the Backdoor.IRC.Zlulbot IRC backdoor.
|
|
svchostr
|
svchostr.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
svchostRE
|
svchostRE.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
svchosts
|
svchosts.exe
|
X
|
Added by the Troj/Bancban-DC ... Read More
|
|
svchosts
|
sbchost.exe
|
X
|
Added by the W32/Rbot-DCM worm and IRC backdoor.
|
|
svchosts.exe
|
svchosts.exe
|
X
|
Added by the W32/AGOBOT-JN WORM! ... Read More
|
|
svchosts.scr
|
svchosts.scr
|
X
|
Added by the Troj/Bancban-DQ password-stealing trojan.
|
|
svchostUN
|
svchostUN.scr
|
X
|
Added by the Troj/Dloader-MC TROJAN!
|
|
SVCHOT
|
SVCHOT.exe
|
X
|
Added by the Troj/QQRob-U Trojan.
|
|
svchoxt
|
svchoxt.exe
|
X
|
Added by the Troj/QQPass-FC Trojan.
|
|
svchst
|
svchst.exe
|
X
|
Added by the Troj/Keylog-HD Trojan.
|
|
svcinfo
|
svcinfo.exe
|
X
|
Added by the CRYPTER.A TROJAN!
|
|
svclhost
|
svcchost.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
svcmon
|
svcmon.exe
|
U
|
Added by the Spyware.PersonInspect surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
Svcnost.exe
|
svcnost.exe
|
X
|
Added by the Trojan.Selex.B Trojan.
|
|
Svconr
|
Svconr.exe
|
X
|
Identified as a variant of the Adware/CPVBHO malware.
|
|
svcosvt
|
svcosvt.exe
|
X
|
Identified as Trojan-Clicker.Win32.VB.qj.
|
|
Svcphpwin
|
sslphp32.exe
|
X
|
Added by the W32/Agobot-ABR worm and IRC backdoor.
|
|
svcroot
|
svcroot.exe
|
X
|
Added by the KEYLOG-AC TROJAN!
|
|
svcs32
|
svcs32.exe
|
X
|
Added by the Mal/Agent-VE malware.
|
|
svcshare
|
spoclsv.exe
|
X
|
Added by the W32.Fujacks.D worm. W32.Fujacks.D is a worm that spreads by copying itself to network shares protected by weak passwords. It also copies ... Read More
|
|
svcshare
|
spo0lsv.exe
|
X
|
Added by the W32/Fujacks-I prepending virus. W32/Fujacks-J searches for files with HTML and ASP extensions and append code to them. These files are de ... Read More
|
|
svcshare
|
sppoolsv.exe
|
X
|
Added by the W32/Fujacks-Y prepending virus.
|
|
svcshare
|
sppolsv.exe
|
X
|
Added by the W32/Fujacks-N backdoor Virus.
|
|
svcshare
|
spcolsv.exe
|
X
|
Added by the W32/Fujacks-O virus and worm with backdoor functionality.
|
|
svcshost
|
svcshost.exe
|
X
|
Added by the Troj/Agent-GLN Trojan.
|
|
SvcSys
|
svcsys.dll
|
X
|
Added by the PWSteal.Bancos.Y password-stealing Trojan.
|
|
svcsys registry manager
|
svcsysreg.exe
|
X
|
Added by a TROJAN.CLICKER - identified by Kaspersky antivirus as Trojan-Clicker.Win32.Agent.cv ... Read More
|
|
svcsys32
|
svcsys32.exe
|
X
|
Added by the AGOBOT-LL WORM!
|
|
svctask
|
svctask.exe
|
X
|
Added by the Troj/Chuckyb-A backdoor trojan.
|
|
SVGA Adapter
|
svgainit.exe
|
X
|
Added by Backdoor.Deftcode. This infection connects to an IRC server where it awaits commands. ... Read More
|
|
SVGA Adapter
|
svghost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Svhost
|
Svhost.exe
|
X
|
Added by the W32/VB-ASG worm.
|
|
SVHOST
|
SVCHOST.EXE
|
X
|
Added by the W32/Zori-A VIRUS!
|
|
Svhost Loader
|
svshost.exe
|
X
|
Added by the AGOBOT.G WORM!
|
|
Svhost Service Server
|
svhostser.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.gat family of worms and IRC backdoor Trojans. ... Read More
|
|
svhost System
|
svhost.exe
|
X
|
Added as a new service by the Troj/Xrat-A TROJAN, using a servicename of svhost. ... Read More
|
|
svhost updates
|
Svhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
svhost.exe
|
svhost.exe
|
X
|
Added by the W32/SillyFDC-AY worm.
|
|
svhost32
|
svhost32.exe
|
X
|
Added by the W32/Autorun-AWY removable media worm.
|
|
svhosts
|
svhosts.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
SVIDC32M
|
SVIDC32M.exe
|
?
|
??
|
|
sviload32
|
sviload32.exe
|
X
|
Added by the W32/Rbot-AAS WORM/IRC backdoor trojan!
|
|
svitch
|
svitch.sys
|
X
|
A variant of the Haxdoor rootkit.
|
|
SVKP
|
SVKP.sys
|
Y
|
Svkp.sys is a clean driver used in anticracking software & several legitimate programs. Disabling this software will cause the legitimate programs to ... Read More
|
|
svkvpn
|
svkvpn.dll
|
X
|
Added by the Troj/Haxdoor-DB Trojan. This infection utilizes the svkvpn.sys and svjvpn.sys rootkits to hide itself. ... Read More
|
|
svlmngr
|
svlmngr.exe
|
X
|
Added by the W32/Rbot-BLW worm and IRC backdoor.
|
|
svlost Service
|
svlostSrv.exe
|
X
|
Unidentified MSN Messenger worm.
|
|
SVM Pop
|
svmpop.exe
|
?
|
??
|
|
svnlitup32
|
svnlitup32.exe
|
X
|
Added by the RBOT.CBJ WORM! ... Read More
|
|
svnloader
|
svnload32.exe
|
X
|
Added by the W32/Rbot-ACU worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
svohcst.exe
|
svohcst.exe
|
X
|
Added by the PWSteal.Kurofoo password-stealing Trojan.
|
|
svohost
|
spoclsv.exe
|
X
|
Added by the W32/Fujacks-R virus with backdoor functionality.
|
|
svohost.exe
|
svchcst.exe
|
X
|
Added by the W32/Autorun-ZC removable media worm.
|
|
svphost.exe
|
svphost.exe
|
X
|
Added by the AGENT.CS TROJAN!
|
|
SVPWUTIL
|
SVPWUTIL.exe
|
U
|
Part of Toshiba Hardware Setup for their laptops.
|
|
svrhost
|
Svrhost.exe
|
X
|
Added by the Adware.Satbo adware.
|
|
svrpcn.exe
|
svrrec.exe
|
U
|
Added by the Spyware.Recon surveillance software. If you did not install this software you should remove it immediately. ... Read More
|
|
svrrun
|
svrrun.exe
|
X
|
Adware hailing from Deskwizz.com
|
|
svschost.exe
|
svschost.exe
|
X
|
Added by the Troj/FakeAV-IN Trojan.
|
|
SVSEEHOST
|
Svseehost.exe
|
X
|
Added by the W32/VBLame-D worm.
|
|
svsekin
|
svsekt.exe
|
X
|
Added by the TROJAN.PWS.QQPASS.G TROJAN! ... Read More
|
|
svshost
|
svshost.exe
|
X
|
Added by the W32/Chode-H instant messenger worm.
|
|
svshost update service
|
svcbind.exe
|
X
|
Added by the MYTOB.LH WORM! ... Read More
|
|
svshost32
|
svshost32.exe
|
X
|
Added by a variant of the Rbot worm. This worm, when started, connects to IRC servers where it sits in a desginated channel waiting for commands from ... Read More
|
|
svshostdriver
|
svshost.exe
|
X
|
Added by the SDBOT-HN TROJAN!
|
|
svshots
|
svshots.exe
|
X
|
The Troj/Botget-A TROJAN opens a backdoor, and via IRC channels will attempt to download and run C:gdc.exe also. ... Read More
|
|
svthall32
|
svthall32.exe
|
X
|
Added by the Troj/Dropper-TL Trojan.
|
|
svvhost
|
svvhost.exe
|
X
|
Added by the Infostealer.Blurax Trojan. Infostealer.Blurax is a Trojan horse that logs keystrokes and steals confidential information from the comprom ... Read More
|
|
svvhostc
|
svvhostc.exe
|
X
|
Added by the Infostealer.Blurax.B Trojan. Infostealer.Blurax.B is a Trojan horse that logs keystrokes and steals confidential information from the com ... Read More
|
|
SVX Control Service
|
svxhost.exe
|
X
|
Added by the FORBOT-K WORM!
|
|
sv_ajnag
|
svajnager.exe
|
X
|
Unknown malware.
|
|
sv_chost
|
sv_chost.dll
|
X
|
Added by the Troj/Wanda-B keylogging Trojan. This Trojan also contains rootkit technology in order to hide itself. ... Read More
|
|
sw20
|
sw20.exe
|
U
|
Related to Dynamic_Overclocking_Technology ... Read More
|
|
sw24
|
sw24.exe
|
U
|
Related to Dynamic_Overclocking_Technology ... Read More
|
|
swapdm
|
swapdm.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
sware
|
SWARE.EXE
|
X
|
Related to SmitFraud infections.
|
|
SWCaller
|
SWcaller.exe
|
X
|
Homepage hijacker - see here
|
|
SWCaller
|
Swcaller2.exe
|
X
|
Homepage hijacker - see here
|
|
Swchost
|
Swhost.exe
|
X
|
Added by the Troj/Bdoor-MP backdoor Trojan.
|
|
swclient
|
swsys.exe
|
U
|
ActivMonAgent Keyboard logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
SWClient
|
swclient.exe
|
U
|
Added by the Spyware.StealthWatcher surveillance software. Spyware.StealthWatcher is a spyware program that allows a remote user to view screenshots, ... Read More
|
|
swcroot
|
swcroot.exe
|
X
|
Unidentified adware
|
|
SweetBox
|
SweetBox.exe
|
X
|
Added by the Adware.SweetBar adware that display pop-up ads.
|
|
sweetim
|
SweetIM.exe
|
N
|
Related to SweetIM Send fancier smiley-faces and IM graphics to friends who are using MSN Messenger. BUT - they are only able to see these advanced s ... Read More
|
|
SwiftCleaner
|
SwiftCleanerScanner.exe
|
X
|
Added by the SwiftCleaner rogue anti-spyware program.
|
|
SwimSuitNetwork
|
SwimSuitNetwork.exe
|
X
|
Advertising spyware
|
|
swingsys
|
SWINGSYS.EXE
|
X
|
Added by the Troj/Bancos-CX trojan.
|
|
Switch Off
|
swoff.exe
|
U
|
Switch Off - tray-based system utility that can automatically perform various frequently used operations like shutdown or restart your computer, disco ... Read More
|
|
SwitchBoard
|
SwitchBoard.exe
|
N
|
Allows communication between Adobe Bridge and the mini-bridge panel found in Adobe Photoshop or Adobe InDesign. ... Read More
|
|
switcher.exe
|
Switcher.exe
|
U
|
Sony VAIO Wireless Switch Setting Utility. This program allows you to use a switch to activate and deactivate the wireless lan or bluetooth adapter. ... Read More
|
|
switp
|
switpa.exe
|
X
|
Added by the Adware.OfferAgent adware. This program will display popups on your computer. ... Read More
|
|
SWL
|
SWL.dll
|
U
|
Added by the Spyware.StealthWeblog surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
swn2
|
swnxt.exe
|
U
|
A "spyware removal program" by TrekBlue, Previously found to be of dubious repute. SpywareWarrior_List It was delisted. Make sure you have the latest ... Read More
|
|
SwTray
|
SWTRAY.EXE
|
N
|
MS SideWinder game controller system tray icon. Available via Start -> Programs. May have the version number after it ... Read More
|
|
SWTrayV4
|
SWTrayV4.exe
|
N
|
MS SideWinder game controller system tray icon. This is specific to version 4 of the software. Available via Start -> Programs ... Read More
|
|
Swupdtmr
|
swupdtmr.exe
|
N
|
Software updater for Toshiba computers.
|
|
sxfnewqb
|
sxfnewqb.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
SXGDSENU
|
sxgdsenu.exe
|
?
|
Yamaha SXG soundcard driver
|
|
SxgTkBar
|
sxgtkbar.exe
|
?
|
Yamaha SXG soundcard driver
|
|
sxmrv
|
sxmrv.pif
|
X
|
Added by the Troj/Dloader-KE TROJAN!
|
|
Sxplog
|
sxpstub.exe
|
?
|
Part of CA Unicenter Software Delivery - manage software across various systems, from desktops and servers to PDAs and mobile phones, in a controlled ... Read More
|
|
sxprv
|
sxprv.pif
|
X
|
The TROJAN Troj/Dloader-IT adds this to the Windows system folder.
|
|
sxrrv
|
sxrrv.pif
|
X
|
Added by the Troj/Vax-A trojan.
|
|
sy
|
s2.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
syelimS-esreveR-troppuS
|
sample.exe
|
X
|
Added by the Troj/Lootbot-B backdoor Trojan.
|
|
Syesm
|
Syesm.exe
|
X
|
Added by the W32.Buzus worm. W32.Buzus is a worm that spreads by copying itself to removable drives and attempts to steal confidential information fro ... Read More
|
|
Sygaete Personal Firewall
|
SyGate.exe
|
X
|
Added by the W32/Rbot-GLX worm and IRC backdoor.
|
|
Sygate Peral Firewall
|
Syga.exe
|
X
|
Added by the W32/Rbot-AQK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Sygate Personal 3
|
svrv.exe
|
X
|
Added by the W32/Rbot-XD WORM/backdoor Trojan, which attempts to modify network shares and users and terminate processes. ... Read More
|
|
Sygate Personal Block
|
Studio.exe
|
X
|
Added by the W32/RBOT-TW WORM!
|
|
Sygate Personal Firewall
|
system32.exe
|
X
|
Added by the RBOT.VI WORM!
|
|
Sygate Personal Firewall
|
sysgut.exe
|
X
|
Added by the SDBOT.WM WORM!
|
|
Sygate Personal Firewall
|
Sygate.exe
|
X
|
Added by the RBOT-PN WORM!
|
|
Sygate Personal Firewall
|
sexy.exe
|
X
|
An Rbot WORM variant adds the file to download additional files, steal CD keys and become involved in DoS attacks via an IRC channel and remote attack ... Read More
|
|
Sygate Personal Firewall
|
sys.exe
|
X
|
Added by the W32/Rbot-ZC WORM/IRC backdoor Trojan!
|
|
Sygate Personal Firewall
|
sys.exe
|
X
|
|
|
Sygate Personal Firewall
|
service.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Sygate Personal Firewall
|
Syga.exe
|
X
|
Added by the W32/Rbot-AQD worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Sygate Personal Firewall
|
smc.exe
|
X
|
Added by the W32/Rbot-AZY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Sygate Personal Firewall
|
Slinder
|
X
|
Added by the W32/Rbot-BFQ worm and IRC backdoor.
|
|
Sygate Personal Firewall Start
|
services32.exe
|
X
|
Added by the RBOT-MB WORM!
|
|
Sygate Personal Firewall Start
|
servic.exe
|
X
|
Added by the RBOT-RY WORM!
|
|
SyGateService
|
sgserv95.exe
|
U
|
SyGate is a useful little program that lets you share an internet connection over an intranet. Is it needed - it saves a lot of headache to just let S ... Read More
|
|
Symantec Administration Service
|
symlasvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Anti Virus
|
symantec32.exe
|
X
|
Added by a variant of the WOOTBOT WORM!
|
|
Symantec Boot Config
|
symbootcfg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Client Security
|
symclient.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Configuration Load
|
symloadcfg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Configuration Settings
|
symconfig.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Control Client
|
symclisvc.exe
|
X
|
Added by the Troj/Bdoor-ANN backdoor Trojan.
|
|
Symantec Core LC
|
symlcsvc.exe
|
Y
|
Part of Norton AntiVirus 2004. What does it do?
|
|
Symantec Core LTD
|
symlsmd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec DB Server
|
symdbsvr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Debug Client
|
symdebugs.exe
|
X
|
Added by the Troj/IRCBot-ACM Trojan.
|
|
Symantec Device Config
|
symldvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Device Manager
|
symlsrd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Drive Maintenance
|
symldsm.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Drive SecMon
|
symldsv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Drive Services
|
symlssdr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec DVD Record
|
symldvd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Handler Service
|
symlsmc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec License Server
|
symlcsrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Licensing Server
|
symlserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Licensing Source
|
symlsrc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Licensing Svc
|
symlsrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec NetDriver Monitor
|
SNDMon.exe
|
U
|
Part of Symantec's LiveUpate (eg, Norton). Not required if you run manual upadtes but probably require if you leave them to run automatically. Also, i ... Read More
|
|
symantec netdriver warning
|
SNDWarn.exe
|
U
|
Part of Symantec Live Update - displays the warning when you need to update the firewall database. ... Read More
|
|
Symantec Network AI
|
symlsmr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Network Drivers Service
|
SNDSRVC.EXE
|
U
|
Part of Norton Personal Firewall and Norton Internet Security. Sndsrvc.exe is the module controlling the send scan for outbound email if the optioin i ... Read More
|
|
Symantec Registery Services
|
symlsnreg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Registry Server
|
symsnreg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Remote Services
|
symrdserv.exe
|
X
|
Added by the W32/HostInf-D worm and IRC backdoor.
|
|
Symantec Restore Services
|
symlsrw.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec RPC Call
|
symlsrp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Secure Server
|
svrhost.exe
|
X
|
Added by the Troj/IRCBot-UB backdoor Trojan.
|
|
Symantec SecurePort
|
SymSPort.exe
|
Y
|
Part of the Symantec Firewall.
|
|
Symantec Security
|
symantec32.exe
|
X
|
Added by the RANDEX.PR or RANDEX.YR WORMS!
|
|
Symantec Security License
|
symlsrx.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec Service Client
|
symlcserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec SPBBCSvc
|
SPBBCSvc.exe
|
Y
|
Part of Symantec Internet Security Suite.
|
|
Symantec Spooler Application
|
symlsma.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec System DB
|
symlssdb.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Symantec System Maintenance
|
symlssm.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SymantecFilterCheck
|
svhost.exe
|
X
|
Added by the Troj/Banker-EEO Trojan.
|
|
SymAV
|
SymAV.exe
|
X
|
Added by the NETSKY.U WORM!
|
|
symavc32
|
symavc32.sys
|
X
|
Rootkit added by the Troj/Agent-FZV Trojan.
|
|
SYMDNS
|
symdns.sys
|
Y
|
Driver used by the Symantec Firewall product to validate DNS responses before allowing them through the firewall. ... Read More
|
|
SymEvent
|
symevent.sys
|
Y
|
Driver used by Symantec products.
|
|
SYMFW
|
symfw.sys
|
Y
|
Symantec Firewall driver.
|
|
SYMIDS
|
symids.sys
|
Y
|
Device driver used by Symantec Antivirus.
|
|
Symlcs
|
symlcs.exe
|
X
|
Added by the Troj/YaSpy-A Yahoo messenger spying Trojan.
|
|
Symmetrical Network
|
symmec.exe
|
X
|
Added by the W32/Delbot-N worm and IRC backdoor. W32/Delbot-N spreads to other network computers by exploiting common buffer over flow vulnerabilities ... Read More
|
|
symsec(SymSec)
|
symsec.exe
|
X
|
Added by the W32/Tilebot-EP worm and IRC backdoor.
|
|
SymSnapService
|
SymSnapService.exe
|
Y
|
System recovery service used by Ghost and Backup Exec. If this service is not running it could cause certain functionality to be disabled from these ... Read More
|
|
SymTray - Norton SystemWorks
|
SYMTRAY.EXE
|
N
|
Keeps all System Tray icons for Norton SystemWorks together to reduce clutter. SystemWorks includes Norton Anti-Virus, Norton Utilities and Norton Cle ... Read More
|
|
SymTray - Norton SystemWorks
|
Symtrdr.exe
|
N
|
The tray icon for Norton System Works to keep all icons related to the various programs included in System Works in one place. ... Read More
|
|
SymWMI Service
|
SymWSC.exe
|
Y
|
Installed by Norton Internet Security Center. This program is essential to operation of this program when installed on your computer. Disabling this ... Read More
|
|
Sync
|
SCVHOST.exe
|
X
|
Added by the W32.KenetyC worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Au ... Read More
|
|
Sync
|
svchost.exe
|
X
|
Added by the W32.Kenety worm. W32.Kenety is a worm that opens a back door on the compromised computer and spreads by exploiting the RealVNC Remote Aut ... Read More
|
|
Sync-It
|
Syncit.exe
|
U
|
Sync-It - synchronizes the system clock with time servers on the internet
|
|
SyncAgent
|
syncagent.exe
|
U
|
Ghost Keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" a ... Read More
|
|
syncps
|
syncps.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
Syncronization Task
|
shrhost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
SynSetup
|
SynTP.tmp RunOnce.exe
|
?
|
Probably associated Synaptics touchpads on laptops as for the SynTPEnh and SynTPLpr entries but what does it do and is it required? ... Read More
|
|
Syntax Script
|
systacq.exe
|
X
|
Added by the SDBOT.AI WORM!
|
|
Syntax Script
|
saskatcw.exe
|
X
|
Added by the W32/Sdbot-TE WORM/IRC backdoor trojan!
|
|
Syntek STK1150 Service
|
StkASv2K.exe
|
U
|
Part of the driver for an add on USB video capture dongle. The driver is installed via the video capture software packaged with the dongle. This start ... Read More
|
|
SynTPEnh
|
syntpenh.exe
|
U
|
Synaptics touchpad tray icon. Displays status and provides quick launch to touchpad features such as scrolling and tap zones. Required on IBM Thinkpad ... Read More
|
|
SynTPLpr
|
syntplpr.exe
|
Y
|
Synaptics touchpad driver helper. Required for touchpad features to work
|
|
syom
|
syom.exe
|
X
|
Added by the W32/Tilebot-KV backdoor worm.
|
|
sys
|
sysdllwm.reg
|
X
|
CoolWebSearch parasite variant
|
|
sys
|
systemm4.exe
|
X
|
Added by the W32/VB-DXY removable media worm.
|
|
Sys Ren
|
SysRen.exe
|
X
|
Part of FlashEnhancer adware
|
|
sys008
|
sys008.exe
|
X
|
Hijacker, also detected as the TROJ/STARTPA-GK TROJAN! ... Read More
|
|
sys009
|
sys009.exe
|
X
|
Added by the Troj/StartPa-ZB trojan.
|
|
SYS1
|
system.exe
|
X
|
Added by the W32.SillyFDC worm.
|
|
SYS1
|
scvost.com
|
X
|
Added by the W32/AutoIt-JY worm.
|
|
sys201
|
sys209.exe
|
X
|
Added by the Troj/StartPa-ZY ... Read More
|
|
sys32
|
sys32.exe
|
X
|
Added by the FLUX.E TROJAN!
|
|
sys32
|
sysx32.exe
|
X
|
Added by the W32/Kvex-A virus.
|
|
sys32.exe
|
sys32.exe
|
X
|
Identified by Ikarus as a variant of the Email-Worm.Win32.Generic malware.
|
|
sys32dll
|
sys32dll.exe
|
X
|
Added by the W32.Aimdes.B WORM!
|
|
Sys32DLL
|
Sys32DLL.vbs
|
X
|
Added by the VBS/Ediboy-A WORM!
|
|
sys32sql
|
sys32win.exe
|
U
|
Active Keylogger monitoring software - also see here. From the Symantec article: "This spyware program must be manually installed. However, there are ... Read More
|
|
sys32_nov
|
sys32_nov.exe
|
X
|
Added by the Troj/Agent-LAX Trojan.
|
|
sys33
|
Sys33.exe
|
X
|
Added by the W32/Agobot-WJ worm and IRC backdoor.
|
|
SysAgent
|
SysAgent.exe
|
U
|
SYSagent - small utility for retrieving all the hardware and software information required by anyone administering a machine and/or the network it's a ... Read More
|
|
SysAI
|
SysAI.exe
|
X
|
AproposMedia adware - also creates SysAI folder in Program Files where the SysAI.exe is also located ... Read More
|
|
SysAntivirus 2009
|
sysav.exe
|
X
|
Added by the SysAntivirus 2009 rogue anti-spyware program.
|
|
sysApp
|
sklgr.exe
|
U
|
Added by the Spyware.SuperKeylogger surveillance software. Spyware.SuperKeylogger is a spyware program that monitors and records keystrokes, instant m ... Read More
|
|
sysApp
|
SChal.exe
|
X
|
Added by the Troj/KeyLog-CE keylogger.
|
|
SysArchive
|
SysArchive.exe
|
X
|
Added by Backdoor.DarkSky.B. This infection listens on ports 5418 and 5419 awaiting commands. ... Read More
|
|
SysATW
|
sysatw.exe
|
X
|
Added by the W32/Vanebot-AM network worm.
|
|
SysBackUp
|
SysBackUp.exe
|
X
|
Added by the W32/Gallory-A worm.
|
|
sysBoot
|
syskernel.exe
|
X
|
Added by the W32/Autorun-BJX removable media worm.
|
|
Sysbot
|
sysbot.exe
|
U
|
Spector - spying (or monitoring) software to record internet activity
|
|
syscfg
|
syscfg32.exe
|
X
|
Added by the KWBOT.S WORM!
|
|
syscfg34.exe
|
syscfg34.exe
|
X
|
Added by the ELECTRON WORM!
|
|
syscfgx32
|
syscfgx32.exe
|
X
|
Added by the W32/SdBot-GB worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
SysChk
|
scvhost.vbs
|
X
|
Added by the W32/Small-EMQ worm.
|
|
SysCleaner
|
SysCleaner.exe
|
X
|
Added by the SysCleaner program. SysCleaner is a misleading application that may give exaggerated reports of threats on the computer. ... Read More
|
|
syscm
|
Syscm.exe
|
X
|
|
|
syscmos
|
sysrun.exe
|
X
|
Added by the W32/SillyFDC-CU worm.
|
|
SysCom
|
Sgt.sys.vbs
|
X
|
Added by the VBS/Sasan-M worm.
|
|
syscon
|
syscon.exe
|
X
|
Added by the W32.APRILCONE.A WORM! ... Read More
|
|
syscon lptt01
|
syscon.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Syscon" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
syscon ml097e
|
syscon.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Syscon" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
SysConfig
|
syscfg35.exe
|
X
|
Added by the KAZMOR.C WORM!
|
|
sysconfig
|
Stealth KeySpy.exe
|
U
|
Added by StealthKeySpy Commercial Keylogger ** Note Product must be manually installed. ... Read More
|
|
sysconfig32
|
sysconfig32.exe
|
X
|
Added by the Troj/Agent-MSP Trojan.
|
|
SysConnect
|
sysconnect.dll
|
X
|
Added by the Trojan.Sconato Trojan.
|
|
syscore
|
syscore.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
Syscpy
|
Syscpy.exe
|
X
|
Firewall-bypassing, proxied spam relayer. Detected by Symantec as the HOGLE TROJAN! ... Read More
|
|
SysCtl
|
sysctl.exe
|
X
|
|
|
Sysctl Desktop Handler
|
systr.dll
|
X
|
This file will hijack Internet Explorer to show the start page of jimbutt.com or globolook.com. ... Read More
|
|
sysctl32
|
sysctl32.dll
|
X
|
Added by the Trojan.Totmau Trojan.
|
|
Sysctrls
|
Sysctrls.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sysdat.dll
|
sysdat.dll.exe
|
X
|
Added by the Nishica 1.1 backdoor TROJAN!
|
|
sysdbg32.exe
|
sysdbg32.exe
|
X
|
Added by the Troj/PWS-BSZ password-stealing Trojan.
|
|
SysDefence.exe
|
SysDefence.exe
|
X
|
Added by the SysDefence rogue anti-spyware program.
|
|
SysDefenders
|
SysDefenders.exe
|
X
|
Added by the SysDefenders rogue anti-spyware program.
|
|
SysDesk
|
svchoxt.exe
|
X
|
Added by the Troj/Delf-EDE Trojan.
|
|
sysdiag64.exe
|
sysdiag64.exe
|
X
|
Added by the W32/Kolab-G worm.
|
|
sysdll32
|
SystemRestore.exe
|
X
|
Added by the Troj/Kimat-A worm. This infection will also create the file C:\Windows\System32\salaaaaammmmmmmmmmmmmmmmmmmmmmmmmmmmmmm.doc which can be ... Read More
|
|
Sysdpt
|
sysdpt.exe
|
X
|
Win32.Crypt trojan downloader
|
|
sysdriver32.exe
|
sysdriver32.exe
|
X
|
Unknown malware.
|
|
sysdriver32_.exe
|
sysdriver32_.exe
|
X
|
Unknown malware.
|
|
sysdx
|
sysdx.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
sysdxvid
|
sysdxvid.exe
|
X
|
Premium rate adult content dialer
|
|
syseq
|
svclgx32.exe
|
X
|
Added by the TROJ/IRCBOT-AC TROJAN! ... Read More
|
|
sysfiler
|
sysfiler.exe
|
X
|
Added by the RETSAM TROJAN!
|
|
SYSfit
|
SYSfit.exe
|
X
|
|
|
sysfldr
|
sysfldr.dll
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Agent.lv proxy Trojan.
|
|
sysflg32
|
sysflg32.exe
|
X
|
Added by a variant of the CRYPTER.C TROJAN!
|
|
sysformat
|
sysformat.exe
|
X
|
Added by Bagle.AY WORM!. This infections scans your hard drive for email addresses to send itself to. ... Read More
|
|
sysfrcx
|
sysfrcx.exe
|
X
|
Added by the KEYLOG-SCLOG TROJAN! ... Read More
|
|
Sysgate Personal Firewall
|
syst3ms.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sysguard
|
sysguard.exe
|
X
|
Added by the Troj/FakeAV-KI Trojan. This Trojan will display alerts advertising rogue security products on your computer. ... Read More
|
|
sysguardn
|
sysguardn.exe
|
X
|
Added by the Spyware Protect 2009 rogue anti-spyware program.
|
|
syshelp
|
syshelp.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
syshelps
|
syshelps.dll
|
X
|
Identified by Kaspersky Antivirus as Backdoor.Win32.IRCBot.acd.
|
|
syshelps
|
sysrcvr246.dll
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
syshelps
|
systesrt32.dll
|
X
|
Added by the W32/IRCBot-XF worm.
|
|
syshost
|
Syshost.exe
|
X
|
Added by the Troj/Banworm-B TROJAN!
|
|
syshost32
|
syshost.exe
|
X
|
Added by the Troj/Agent-UTA Trojan.
|
|
syshosts
|
syshosts.dll
|
X
|
Added by the W32/IRCBot-WB networm worm and IRC backdoor.
|
|
SysiNet
|
sysinet.dll
|
X
|
Added by the Smart Protector rogue anti-spyware program.
|
|
sysinfer
|
sysinfer.exe
|
X
|
Added by the Adware.Adtest browser hijacker. Found in the Windows system folder. ... Read More
|
|
sysinfo
|
sysinfo.exe
|
X
|
Added by the BEDRILL TROJAN!
|
|
sysinfo.exe
|
sysinfo.exe
|
X
|
Added by the BEAGLE.V WORM!
|
|
sysinit
|
services.exe
|
X
|
Added by the NEWLFRM-A TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
sysinit
|
sysinit.exe
|
X
|
Added by the W32/Sdbot-DGF worm and IRC backdoor.
|
|
sysint16
|
sysint16.exe
|
X
|
Added by the CRYPTER.A TROJAN!
|
|
sysj32.exe
|
sysj32.exe
|
X
|
Added by the W32/IRCBot-AHH IRC backdoor and worm.
|
|
SysKabs
|
S0kic.exe
|
X
|
Unknown malware.
|
|
Syskey
|
sysinit.exe
|
X
|
Added by the BEAGLE.AX WORM!
|
|
sysldr
|
sysldr
|
X
|
Identified as a variant of the Backdoor:Win32/Rustock.gen!C rootkit.
|
|
Syslib
|
Syslib.exe
|
X
|
Adult content related downloader trojan
|
|
SysLive
|
SysLive.exe
|
X
|
Added by the W32.Expichu worm. W32.Expichu is a worm that copies itself to removable drives, attempts to contact remote sites, and may overwrite syste ... Read More
|
|
syslnfo.hlp
|
svchost.exe
|
X
|
Added by the Troj/Aolog-A keylogging Trojan.
|
|
syslog
|
syslog.exe
|
X
|
Added by the Spyware.EZKeylogger keylogger.
|
|
Syslog lptt01
|
Syslog.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Syslog" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
Syslog ml097e
|
Syslog.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Syslog" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
syslogin.exe
|
syslogin.exe
|
X
|
Added by the BAGZ-B WORM!
|
|
syslogon
|
syslogon.exe
|
X
|
Added by the W32/Spybot-EP worm and IRC backdoor.
|
|
Sysman
|
Sysman.exe
|
U
|
Added by the Spyware.KeyTrap keystroke logger. If you did not install this on your machine then you should remove it. ... Read More
|
|
sysman
|
Sysman
|
U
|
KeyTrap is a spyware program that records all keyboard activities. If you didn't install it yourself remove it. ... Read More
|
|
sysmanager.exe
|
sysmanager.exe.exe
|
X
|
Identified as a variant of the Backdoor.Win32.IrcContact malware.
|
|
sysme
|
sysme.exe
|
X
|
Added by Trojan_PSW_Stealer_c TROJAN! A variant of the Key Logger that captures passwords as they are entered or transmitted. ... Read More
|
|
SysMetrix
|
SysMetrix.exe
|
U
|
SysMetrix - skinnable clock and metering application. It monitors and reports on a great number of statistics ... Read More
|
|
sysmngr32
|
sys64mnger.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
sysmntrc
|
sysmntrc.exe
|
X
|
Added by the Troj/Bancos-FX Trojan.
|
|
sysmod
|
sysmod.exe
|
X
|
Added by the W32/Spybot-DU worm.
|
|
sysmon
|
sysmon.exe
|
X
|
|
|
sysmon
|
sysmon44.exe
|
X
|
Added by a variant of the BACKDOOR-CBA TROJAN!
|
|
Sysmon
|
SystemMonitor.exe
|
X
|
Added by the W32.Nujama worm.
W32.Nujama is a worm that spreads through mapped drives, hides file extensions, and changes system information. ... Read More
|
|
sysmonnt
|
sysmonnt
|
X
|
Transponder parasite related ... Read More
|
|
sysmonnt
|
sysmonnt.exe
|
X
|
SearchPounder sends keywords typed into HTML forms and popular Internet search engines to a remote server ... Read More
|
|
SysMonXP
|
SysMonXP.exe
|
X
|
Added by the NETSKY.Q WORM!
|
|
SYSMSG
|
SYSMSG332.EXE
|
X
|
Added by the W32/Vampire-C worm. This worm spreads via ICQ. To remove, reboot into safe mode and delete this file. ... Read More
|
|
sysmss
|
sysems.exe
|
X
|
A variant of the Proxy.Slaper.e malware.
|
|
sysnate
|
sysnate.exe
|
X
|
Added by the MEDIAS TROJAN!
|
|
sysnet
|
snuninst.exe
|
X
|
Unidentified adware
|
|
Sysnet
|
sysnet.exe
|
X
|
Added by the Trojan.Cmapp Trojan.
|
|
sysobj.exe
|
sysobj.exe
|
X
|
Added by a NTRootKit TROJAN variant! ... Read More
|
|
SysOps
|
SysOps
|
X
|
Added by the MSNCORRUPT TROJAN!
|
|
syspager
|
syspager.exe
|
X
|
Added by the W32/Appflet-E worm. W32/Appflet-E sends itself out to email addresses harvested from the infected computer or spreads via Instant Messeng ... Read More
|
|
syspare
|
syspare.exe
|
X
|
Added by the Troj/Bifrose-AN Trojan.
|
|
syspol
|
syspol.exe
|
X
|
Added by the TROJ/DREMN-B TROJAN! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows ... Read More
|
|
sysprint
|
sysprint.dll
|
X
|
Added by the Troj/Haxdoor-DC backdoor Trojan. This infection utilizes the prt47sys.sys rootkit to hide itself. ... Read More
|
|
sysprint
|
sysprint.exe
|
X
|
Added by the W32.Patahme@mm
worm.
|
|
sysproc
|
sysproc.exe
|
U
|
Added by the Spyware.Fingerprints surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
|
|
sysprocessor update
|
sysprocessor.exe
|
X
|
Win32.Rbot worm variant ... Read More
|
|
SysProtect
|
System.exe
|
X
|
Added by the NETSPY TROJAN!
|
|
sysprotect
|
syp.exe
|
X
|
SysProtect is detected as a "potentially unwanted program". It purports to be an system repair/maintenance application, but requires paid registration ... Read More
|
|
SysProtector
|
SysProtector.exe
|
X
|
Added by the SysProtector rogue anti-spyware program.
|
|
syspw32.exe
|
syspw32.exe
|
X
|
Added by the W32.Appflet.A@mm mass-mailing worm.
|
|
SysR
|
sysmd.exe
|
X
|
Adult content based "foistware" (adds hidden components to your system)
|
|
SysRam
|
SysRam.dll
|
X
|
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
|
|
SysReg
|
SysReg.exe
|
X
|
Added by the CHEKIN TROJAN!
|
|
SysReg
|
SysReg.exe
|
X
|
SearchSeekFind textual marketing foistware
|
|
SysRegClass
|
sysreg.dll
|
X
|
Identified as the Trojan-Downloader.Win32.Agent.bzc malware.
|
|
Sysres
|
Sysres.exe
|
X
|
Added by the LOGMOD TROJAN!
|
|
sysrest.sys
|
sysrest.sys
|
X
|
Added by the Troj/Agent-GIN backdoor Trojan.
|
|
sysrest32.exe
|
sysrest32.exe
|
X
|
Added by the Troj/Agent-GIN backdoor Trojan.
|
|
sysrestore32.exe
|
sysrestore32.exe
|
X
|
Identified as a variant of the TR/Rootkit.Ge rootkit.
|
|
SYSrow32
|
SYSrowdl32.exe
|
X
|
A variant of the Backdoor:W32/PoisonIvy backdoor Trojan. Backdoor:W32/PoisonIvy is a family of backdoors that give a remote user extensive access to a ... Read More
|
|
SysRun
|
svshost.dll
|
X
|
Added by the BKDR_SMALL.EDI backdoor Trojan.
|
|
sysser
|
syshid.exe
|
X
|
Added by the RAHACK WORM!
|
|
SysService
|
SysService.exe
|
X
|
Added by the DELF family of TROJANS!
|
|
SysService
|
SERVICES.EXE
|
U
|
Added by the Spyware.NSKeyLogger keylogger. This program has the ability to log keystrokes and capture screenshots. Uninstall if you did not intentio ... Read More
|
|
SysService32
|
SysService32.exe
|
X
|
Added by the KINDAL VIRUS!
|
|
SysService32l
|
systask32l.exe
|
X
|
|
|
SYSsfitb
|
SYSsfitb.exe
|
X
|
Searchforit browser hijacker
|
|
sysshell
|
svchost.exe
|
X
|
Added by the W32.Memesa worm. W32.Memesa is a worm that attempt to email itself out as an attachment, change the desktop background, and open local pa ... Read More
|
|
sysshell
|
sysexplorer.exe
|
X
|
Added by the W32.Patahme@mm
worm.
|
|
SySSL
|
syssl.exe
|
X
|
Added by the W32/Rbot-CKH worm and IRC backdoor.
|
|
SySSL
|
sysl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SYSSRV
|
SYSSRV.EXE
|
X
|
Added by the W32/Rolog-A worm.
|
|
sysStart
|
syswin.exe
|
X
|
Added by the W32/Autorun-BJX removable media worm.
|
|
SysStrt
|
systemc.exe
|
X
|
Added by the AGOBOT-QA TROJAN!
|
|
syssvc.exe
|
syssvc.exe
|
X
|
Added by the Troj/Agent-QQM Trojan.
|
|
syst
|
syst.exe
|
X
|
Added by the JOKE_DUMB.A "Joke" virus
|
|
systeerm
|
systeerm.exe
|
X
|
Added by the Troj/Singu-V password stealing Trojan.
|
|
System
|
system.exe
|
X
|
Added by various WORMS and TROJANS!
|
|
system
|
systemsearch.hta
|
X
|
Jetseeker.com hijacker
|
|
System
|
SPOOLSU.EXE
|
X
|
Added by the Troj/Banker-BJ password stealing Trojan! File is found in the Windows folder. ... Read More
|
|
System
|
systray.exe
|
X
|
Added by the Troj/Pisaboy-A TROJAN/backdoor! MSN Messenger users are targeted.
|
|
System
|
SVCHOST.EXE
|
X
|
Added by the Troj/LdPinch-AU TROJAN!
|
|
System
|
svchost.EXE
|
X
|
Added by the Troj/Bckdr-CST backdoor trojan.
|
|
System
|
svchîst.exe
|
X
|
Added by the Troj/LdPinch-BF password-stealing trojan.
|
|
System
|
serwin.exe
|
X
|
Added by the Troj/LdPinch-BN password-stealing and backdoor trojan.
|
|
System
|
system.exe
|
X
|
Added by the W32/VB-IU worm.
|
|
system
|
system23.exe
|
X
|
Added by the W32/Lebreat-D ... Read More
|
|
System
|
ssmc.dll
|
X
|
Added by the Backdoor.Berbew.R Trojan.
|
|
System
|
svchiost.exe
|
X
|
Added by the Troj/LdPinch-PH Trojan.
|
|
System
|
SERVICE5.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
System
|
sipu.exe
|
X
|
Unknown malware.
|
|
system
|
system.ini
|
X
|
Added by the Troj/BDoor-AHQ backdoor Trojan.
|
|
SYSTEM
|
SystemFile.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
system
|
sysnet.exe
|
X
|
Added by the W32/Vetor-J worm.
|
|
system
|
systemdb.exe
|
X
|
Added by the Barracuda Antivirus and the Security Central rogue security programs. ... Read More
|
|
System
|
systemz.exe
|
X
|
Added by the Troj/Vilsel-B Trojan.
|
|
System
|
sachost.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Backdoor.Win32.Hupigon.atgu malware. ... Read More
|
|
System 64 Driver for Games
|
sys64dvr.exe
|
X
|
Added by the SDBOT TROJAN!
|
|
System Account Center
|
svcpost.exe
|
X
|
Added by the W32/Oscabot-P worm and IRC backdoor.
|
|
System Applications Profile
|
sap.exe
|
X
|
Added by the RBOT-QF WORM!
|
|
System Auth
|
system52.exe
|
X
|
Identified as a variant of the Win32:Rizo-E malware.
|
|
System Boot Check
|
sysload3.exe
|
X
|
Added by the W32.Fubalca worm. W32.Fubalca is a worm that spreads through removable media and infects various file types, including .exe and .html fil ... Read More
|
|
System Boot Check
|
sysload2.exe
|
X
|
Added by the W32.Fubalca worm. W32.Fubalca is a worm that spreads through removable media and infects various file types, including .exe and .html fil ... Read More
|
|
System Boot Loader
|
sysboot32.exe
|
X
|
Added by the WORM_AGENT.AAWD worm.
|
|
System Cache
|
SysCache.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
System CGI Manager
|
syscgmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Config
|
sysloadcnf.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Config Boot
|
syscgboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Config Manager
|
smssl.exe
|
X
|
Added by the AGOBOT-ZJ WORM!
|
|
System Configuration
|
syscfg32.exe
|
X
|
Added by the W32/Mytob-AS worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
System Configurator
|
systemconfig.exe
|
X
|
Added by the W32/Sdbot-OR worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
system configure
|
svchost.exe
|
X
|
Added by the Troj/Lineage-C password-stealing Trojan for the online game Lineage. ... Read More
|
|
System Control Information
|
sysinfo.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Core Memory
|
syscoremem.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
system csrss patch
|
scrtkfg.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
System Database administration
|
systemDA.exe
|
X
|
Added by the W32.Derdero.B WORM!
|
|
System Database Administration Support Process
|
sysdasp.exe
|
X
|
Added by the W32.Derdero.C WORM!
|
|
System DataBase Root
|
sysdbroot.exe
|
X
|
Added by the Troj/Qhost-W Trojan.
|
|
System DB Manager
|
sysdbmg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Debugger
|
SystemDebug.exe
|
X
|
Added by the W32/Rbot-FSK worm and IRC backdoor. W32/Rbot-FSK spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
System Development Operations
|
sysdevop.exe
|
X
|
Added by the Troj/Agent-OFQ Trojan.
|
|
System Device Version
|
systemdv.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
System Diagnostics
|
sysdiag32.exe
|
X
|
Added by the SDBOT.GEN TROJAN!
|
|
System DirectX DLL Loader
|
sd32dll.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
System DLL Resources
|
sysdll.exe
|
U
|
Added by the Spyware.SnapKey surveillance software. If you did not install this you should uninstall it. ... Read More
|
|
System Doctor Free
|
systemdoc.exe
|
X
|
The rogue anti-spyware application System Doctor. This application is known to install with malware that issues fake security warnings in your taskbar ... Read More
|
|
System Download Manager
|
SysMgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Driver Service
|
sysdriver.exe
|
X
|
Added by the W32/Tilebot-GA worm and IRC backdoor.
|
|
System Drivers
|
svchost.exe
|
X
|
Added by the Troj/PWS-BFT password-stealing Trojan. Please note that this infection should not be confused with the legitimate C:\Windows\System32\svc ... Read More
|
|
System Error Notification
|
senr32.exe
|
X
|
Added by the Troj/Poison-BT Trojan.
|
|
System Event Browser
|
sysbrw32.exe
|
X
|
Identified as a variant of the Trojan.Win32.Agent.qup malware.
|
|
system event log
|
svchost.exe
|
X
|
Added by the Troj/GrayBir-AC backdoor Trojan. This should not be confused with the legitimate c:\windows\svchost.exe found in the Windows %System% fo ... Read More
|
|
system event manager
|
secsvc.exe
|
X
|
Added by the RBOT.BMY WORM! ... Read More
|
|
System File
|
sysdll.exe
|
X
|
Added by the Troj/VB-CWO Trojan.
|
|
System File
|
system.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System File Startup
|
sys32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
system handler
|
srvhandle.exe
|
X
|
Added by the W32.Redplut worm. This worm spreads through open shares and installs these other files: C:\Windows\System32\lcc.exe, C:\Windows\System32 ... Read More
|
|
System handler
|
svhost.exe
|
X
|
Added by the W32/Todnab-B worm.
|
|
System Host
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
System Host Manager
|
syshost.exe
|
X
|
Added by the W32/Banworm-C worm.
|
|
System Host Service
|
svchost.exe
|
X
|
Added the the CONE.F WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
System Hosts Virtual Process
|
svhost.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Icons
|
shell16.exe
|
X
|
Added by the W32/Sdbot-VD WORM! Found in the Windows system folder.
|
|
System Idle Process
|
System Idle Process.exe
|
X
|
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
|
|
System Information Manager
|
syspass.exe
|
X
|
Added by the W32/Sdbot-MO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
System Init
|
Sÿstem.exe
|
X
|
Added by the W32.Gudek worm. W32.Gudek is a worm that spreads by copying itself to fixed and removable drives on the compromised computer. It may also ... Read More
|
|
System Init
|
systeminit.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Installer Prep
|
sysprep.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System IP
|
systemip.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Kernal Support
|
system.exe
|
X
|
Added by the W32/Rbot-ADN worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
System LifeGuard Scheduler
|
Slsched.exe
|
U
|
|
|
System Management Service
|
smsc.exe
|
X
|
Added by the W32/Rbot-ANN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Manager
|
svchost.exe
|
X
|
Added by the BANKER-AE TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
system manager
|
System.exe
|
X
|
Added by the FORBOT-BO WORM!
|
|
System Manager
|
sysmng.exe
|
X
|
Added by the WORM_SAVAGE.B mass-mailing worm. This infection also creates the following files:
c:\windows\system32\hserv.sy ... Read More
|
|
System Manager
|
sysmgr.exe
|
X
|
Identified as a variant of the IRCBot worm and IRC backdoor.
|
|
System Manager
|
sysmngr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Managment Controler
|
smscg.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
System Manger Service 32
|
smsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
system messaging queue
|
SMCSS.EXE
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
System Messenger
|
SYSMSG32.EXE
|
X
|
Added by W32/Spybot-DK, a WORM!
|
|
System Messenger Service
|
smsc.exe
|
X
|
Added by the W32/Tilebot-F worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Microsoft Core
|
smc.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Microsoft Service
|
ssms.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Microsoft SS
|
smss.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Microsoft SSS
|
smsss.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Mld
|
sysmlds.exe
|
U
|
|
|
System Mng Srvc
|
smsg.exe
|
X
|
Added by the W32/Tilebot-AB worm and IRC backdoor.
|
|
System Monitor
|
SYSMON.EXE
|
U
|
Comes with some Aopen motherboards. Monitors CPU temp, voltage and fan speed. Warns if any become abnormal ... Read More
|
|
System Monitor
|
Sysmon16.exe
|
X
|
Added by the SDBOT TROJAN!
|
|
System Monitor
|
ssys.exe
|
U
|
STARR key logger. "It logs almost everything that goes through the box. It logs all key strokes, all passwords transacted even if they weren't keyed i ... Read More
|
|
System Net
|
sys32.exe
|
X
|
Added by the W32/Forbot-FX WORM, which also creates a new service called "Win32", with the display name "System Net". ... Read More
|
|
System Net Database
|
sysnd.exe
|
X
|
Added by the W32/Rbot-AAW WORM/IRC backdoor trojan!
|
|
System Networking
|
SYSNET.EXE
|
X
|
Added by the W32/Rbot-WJ infection. File is found in the Windows system folder. ... Read More
|
|
System Presets
|
systempre.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Process
|
svchost.exe
|
X
|
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
|
|
System Process Analization
|
sysproc.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
System Process Analization Thread
|
system.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
system proessr
|
system proess.exe
|
X
|
Added by the Troj/Feutel-BA Trojan. It also creates the files C:\Windows\system\proess.DLL, C:\Windows\system\proessKey.DLL, and C:\Windows\system\pr ... Read More
|
|
system redirect
|
sysbho.exe
|
X
|
Downloader trojan, "Melkosoft" adware related
|
|
System Registry Manager
|
sysrgmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Restore
|
svcnet.exe
|
X
|
Added by the TIBICK WORM!
|
|
System Restore
|
SysRes.vbs
|
X
|
Added by the VBS/Autorun-FM worm. Please note that C:\Windows\System32\wscript.exe is a valid application. ... Read More
|
|
System Restore Manager
|
symon.exe
|
X
|
Added by the W32/Tilebot-IP worm and IRC backdoor.
|
|
System Restore Scheduling Service
|
srsvc.exe
|
X
|
Added by the W32/Rbot-GHR worm and IRC backdoor.
|
|
System Scheduler
|
svchost.exe
|
X
|
Added by the W32/DelCyc-A backdoor worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
System Security
|
syss.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Security Checker
|
ssc.exe
|
X
|
Added by the Troj/IRCBot-WI worm and IRC backdoor.
|
|
System Server
|
smss.exe
|
X
|
Added by the Troj/Feutel-T backdoor Trojan. This should not be confused with the legitimate file found in the Windows system directory. ... Read More
|
|
system service
|
spoolcrv.cpl
|
X
|
Added by the INSPIR.11 TROJAN!
|
|
System Service
|
systems.exe
|
X
|
Added by the AGOBOT.VZ WORM!
|
|
System service
|
system.exe
|
X
|
Added by the PWSteal.Bancos.AA password-stealing Trojan.
|
|
System Service
|
servicent.exe
|
X
|
Added by the W32/Rbot-AJI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Service
|
servicez.exe
|
X
|
Added by the W32/Rbot-AOY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
System Service
|
servza.exe
|
X
|
Added by the W32/Rbot-CRG worm and IRC backdoor.
|
|
System Service
|
serious.exe
|
X
|
Added by the W32/Rbot-FMV worm and IRC backdoor. W32/Rbot-FMV spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
System Service
|
servicess.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Service
|
SystemService.exe
|
X
|
Added by the InternetSecurityDeluxe rogue anti-spyware program.
|
|
system service helper
|
svchelper.exe
|
X
|
Added by the W32/MONKBD-A WORM! ... Read More
|
|
System Service Manager Device
|
svho.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.gcg family of worms and IRC backdoor Trojans. ... Read More
|
|
System Service Monitor
|
servicemon.exe
|
X
|
Added by the W32/Tilebot-GH worm and IRC backdoor.
|
|
system services
|
svcsenes.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
System Services
|
svcsenes32a.exe
|
X
|
Added by the W32/Rbot-AFGworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
system session manager
|
smss.exe
|
X
|
Added by the W32/Kalel-E worm.
|
|
System Soap Pro
|
soap.exe
|
X
|
System Soap Pro internet cleaning software. Bundles foistware like HTTPER and Zipclix - best avoided ... Read More
|
|
system spool
|
syspools.exe
|
X
|
Added by the W32/Dref-T mass-mailing worm and parasitic virus with IRC backdoor functionality. W32/Dref-T will attempt to infect SCR, HTM, HTA, EXE an ... Read More
|
|
System Spooler Host
|
syspool.exe
|
X
|
Added by the W32/Sdbot-COV worm and backdoor Trojan.
|
|
System Startup
|
sys.exe
|
X
|
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
|
|
system startup manager
|
smcss.exe
|
X
|
Added by the RBOT.AMD WORM! ... Read More
|
|
System Startup Service
|
svcproc.exe
|
X
|
This infection is identified as Trojan.Win32.Stervis.b. It is usually bundled with nail.exe, a Abetterinternet adware variant. It is notoriously dif ... Read More
|
|
System Stats
|
SystemStats.exe
|
X
|
Added by a variant of the WOOTBOT WORM!
|
|
System Support
|
syscfg.exe
|
X
|
Added by the W32/Rbot-AGQ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Support
|
system32.exe
|
X
|
Added by the W32/Rbot-AHA worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Support
|
syssql.exe
|
X
|
Added by the W32/Rbot-AUH worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Terminal
|
SYSTEM2.EXE
|
X
|
Added by the SPYBOT-BZ TROJAN!
|
|
system tool
|
sysguard.exe
|
X
|
Added by the Troj/FakeAle-LY Trojan.
|
|
System Toolkit
|
Systools.exe
|
X
|
Added by the RONOPER-G WORM!
|
|
System Tray Services
|
spooles32.exe
|
X
|
Added by the AGOBOT.ZH WORM!
|
|
System Tray32
|
SysTray32.exe
|
X
|
|
|
System Unix
|
syscfg32.exe
|
X
|
Added by a Rbot WORM variant!
|
|
System Update
|
suservice.exe
|
N
|
Added by the ThinkVantage System Update 3.0 program update software for IBM Lenovo laptops. ... Read More
|
|
System Update
|
smss.exe
|
X
|
Identified as a variant of the Trojan:Win32/Eson.C Trojan. This infection should not be confused with the legitimate C:\Windows\system32\smss.exe file ... Read More
|
|
System Update
|
svchost.exe
|
X
|
Added by the Troj/Malex-P Trojan. Please note that this infection should not be confused with the legitimate file located at C:\Windows\System32\svcho ... Read More
|
|
System Update Service
|
system.pif
|
X
|
Added by the W32/Rbot-ALL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Update Service
|
systemos.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Update2
|
services.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
svchost.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
system.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Updated
|
svchoes.exe
|
X
|
Added by the W32/Rbot-ASF worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
System Updater
|
sys.exe
|
X
|
Added by the W32/Sdbot-NK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
System Updater Machine
|
system.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
System Updates
|
szwi.exe
|
X
|
Added by the W32/Rbot-AXE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System Uptime Server
|
SYSENTRY.EXE
|
X
|
Added by the RBOT.LK WORM!
|
|
System Uptime Server
|
SYSENTRY32.EXE
|
X
|
Added by the RBOT.LK WORM!
|
|
System Virtual Host File
|
scvhost.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System Virtual Hosts File
|
svchosts.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
System-Config
|
spoolv.exe
|
X
|
Added by the W32/Sdbot-Br backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
System-Time
|
systimeupdate.exe
|
X
|
|
|
system.
|
system..exe
|
X
|
Added by the OPTIXPRO.13.C TROJAN!
|
|
system...
|
system...exe
|
X
|
Added by the OPTIXPRO.13.C TROJAN!
|
|
System.exe
|
System.exe
|
X
|
Added by various WORMS and TROJANS!
|
|
system.exe
|
system.exe
|
X
|
Identified as the Backdoor.Win32.Agent.arx malware.
|
|
system.update
|
system.update.exe.exe
|
X
|
Added by the W32/Minusia-A worm.
|
|
system.vbs
|
system.vbs
|
X
|
Added by the RAHACK WORM!
|
|
system16
|
system16.exe
|
X
|
Added by the Troj/Bancban-OB backdoor Trojan.
|
|
System32
|
system.exe
|
X
|
Added by the BUSHTRO122 TROJAN!
|
|
System32
|
System32.exe
|
X
|
Added by any number of WORMS or TROJANS!
|
|
System32
|
sysdiag.exe
|
X
|
|
|
System32
|
system32,1.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
system32
|
system32.exe
|
X
|
Added by the Troj/Graybird-G Trojan.
|
|
system32
|
svohost.exe
|
X
|
Added by the Troj/Bnkmr-A Trojan.
|
|
system32
|
sysprinters.dll
|
X
|
Added by the W32/IRCBot-WV worm and IRC backdoor.
|
|
System32 PCI Manager
|
syspci32.exe
|
X
|
Added by the W32/Rbot-AFR worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
system32 tcp manager
|
systcpm.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
system32 tcp manager
|
systerm.exe
|
X
|
Added by the RBOT.AFD WORM!
|
|
System32 Temp Service
|
systmp.exe
|
X
|
Added by the W32/Rbot-AET worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
system32.dll
|
systeminit.exe
|
X
|
CoolWebSearch hijacker re-directing to your-search.info
|
|
system32.dll
|
sysdll32.exe
|
X
|
CoolWebSearch parasite related. Redirecting to wholeworldmarket.com, most likely other domains as well ... Read More
|
|
system32.exe
|
services32.exe
|
X
|
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
|
|
System32BLSJ Agent
|
System32BLSJ.exe
|
X
|
Added by the Troj/Mdrop-BPT Trojan downloader.
|
|
System32Ex
|
System32Ex.exe
|
X
|
Added by the IRCCONTACT TROJAN!
|
|
system32kfvwÆ
|
sysdiag.exe
|
U
|
SpyAgent.B surveillance software - uninstall this software unless you put it there yourself! ... Read More
|
|
system32WXBP Agent
|
system32WXBP.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Ardamax.e Trojan.
|
|
System33
|
services33.exe
|
X
|
Added by the W32/Rbot-VQ worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
system34.exe
|
system34.exe
|
X
|
Added by the Troj/DwnLdr-FXY downloader Trojan.
|
|
System4224411
|
Systemdll.exe
|
X
|
Added by the W32/Yusufali-B worm.
|
|
System64A
|
System64A.exe
|
X
|
Added by the W32/Smit-A worm.
|
|
SYSTEM798RUNNER.exe
|
SYSTEM798RUNNER.exe
|
X
|
Added by the Troj/VB-EYW Trojan.
|
|
systemadd
|
sysdate32.exe
|
X
|
Added by the W32/Autorun-AVN removable media worm.
|
|
SystemAgent
|
Sage.exe
|
U
|
"Microsoft Plus! System Agent automatically tunes your system, performing tasks such as disk optimization and error correction. It can also run any ap ... Read More
|
|
SystemArmor
|
SystemArmor.exe
|
X
|
Added by the SystemArmor rogue anti-spyware program.
|
|
systemax32win32
|
systemax32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
SystemBooster2009
|
sbr_updater.exe
|
X
|
Added by the SystemBooster 2009 rogue anti-spyware program.
|
|
SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depen ... Read More
|
|
SystemCheck
|
Systemcheck.exe
|
X
|
Added by the LAVITS WORM!
|
|
systemcheck
|
SysCheckBop32.exe
|
X
|
Added by the WIN32.VB.TG TROJAN!
|
|
SystemCheck
|
svchost.exe
|
X
|
Added by the Troj/Delf-KR trojan.
|
|
SystemChecker
|
Syschk.exe
|
X
|
Added by the GALIL.F WORM!
|
|
SystemCleanerPRO
|
sysclpro.exe
|
X
|
Added by the SystemCleanPRO rogue anti-spyware program.
|
|
SystemComputerLog
|
smsogx32.exe
|
X
|
Added by the Troj/Stinx-K backdoor Trojan.
|
|
SystemCONF98i
|
SystemCONF98i.exe
|
X
|
Added by the GLITCH BOT TROJAN!
|
|
SystemCop
|
SystemCop.exe
|
X
|
Added by the SystemCop rogue anti-spyware program.
|
|
SystemCop Security Service
|
SystemCopSvc.exe
|
X
|
Added by the SystemCop rogue anti-spyware program.
|
|
SystemDebug
|
Sysdeb32.exe
|
X
|
Added by the SYSBUG TROJAN!
|
|
SystemDefender
|
SystemDefender.exe
|
X
|
Added by the SystemDefender rogue security software. SystemDefender is a misleading application that may give exaggerated reports of threats on the co ... Read More
|
|
SystemDll
|
SystemDll.exe
|
X
|
Added by the LOXOSCAM TROJAN!
|
|
Systemdll
|
Sysdll.exe
|
X
|
Added by the Troj/GrayBrd-CC backdoor Trojan.
|
|
systemdll32.exe
|
systemdll32.exe
|
X
|
Added by the Troj/Feutel-F backdoor trojan.
|
|
SystemDoctor 2006 Free
|
sd2006.exe
|
X
|
The rogue anti-spyware application SystemDoctor 2006. This application is known to install with malware that issues fake security warnings in your tas ... Read More
|
|
SystemDoctor Free
|
systemdoc.exe
|
X
|
The rogue anti-spyware application System Doctor. This application is known to install with malware that issues fake security warnings in your taskbar ... Read More
|
|
systemdrea
|
systemdrea.dll
|
X
|
Added by the Troj/Agent-RKB Trojan. Please note that C:\Windows\System32\rundll32.exe is a legitimate file and should not be deleted. ... Read More
|
|
SystemDriverCheck
|
svchost.exe
|
X
|
Added by the Troj/Delf-KR trojan.
|
|
SystemDriverLoad
|
svchost.exe
|
X
|
Added by the Troj/Delf-KR trojan.
|
|
SystemErrorFixer
|
SysRep.exe
|
X
|
Added by the rogue security software called SystemErrorFixer. SystemErrorFixer is a misleading application that may give exaggerated reports of system ... Read More
|
|
SystemExplorerAutoStart
|
SystemExplorer.exe
|
N
|
Added by System Explorer. This program includes process monitors, task manager replacements, install snapshots, and other useful features. ... Read More
|
|
SystemFighter
|
SystemFighter.exe
|
X
|
Added by the SystemFighter rogue anti-spyware program.
|
|
systemfile
|
SystemFile.exe
|
X
|
Added by the Troj/Dulldoor-A ... Read More
|
|
systemguard
|
systemguard.exe
|
X
|
Added by the System Guard 2009 rogue anti-spyware program.
|
|
SystemGuardalerter
|
SystemGuardalerter.exe
|
U
|
|
|
SystemGuardCenter
|
SystemGuardCenter.exe
|
X
|
Added by the System Guard Center rogue security software.
|
|
systemidle
|
stemIdle.exe
|
X
|
Added as a result of the WOOTBOT.AO VIRUS! ... Read More
|
|
SystemIL
|
SYSTEMIL.EXE
|
X
|
Added by the W32.Aboc worm.
|
|
systeminit
|
systeminit.exe
|
X
|
Added by the W32/SillyFDC-AN worm.
|
|
Systemiom Updater
|
Systemiom.exe
|
X
|
Added by the SPYBOT.TY WORM!
|
|
systemkernal.exe
|
systemkernal.exe
|
X
|
Added by the Troj/Agent-KPQ Trojan.
|
|
SystemLoad32
|
sysload32.exe
|
X
|
Added by the MIMAIL.E WORM!
|
|
SystemLoader
|
sysldr32.exe
|
X
|
Added by the Troj/DownLdr-NS Trojan.
|
|
SystemManager
|
Sysman32.exe
|
X
|
Added by the DOWNLOADER-BW.B TROJAN!
|
|
SystemMessenger
|
SystemMessenger.dll
|
U
|
Added by the Spyware.StealthChatMon chat surveillance software. Spyware.StealthChatMon is a spyware program that monitors chat conversations and sends ... Read More
|
|
SystemMgr
|
SystemMgr.exe
|
X
|
Added by the Troj/Lineage-BU password-stealing Trojan for the online game Lineage. ... Read More
|
|
SystemMonitor
|
Sysmon32.exe
|
X
|
Added by the AIDID.A WORM!
|
|
SystemNT
|
SystemNT.exe
|
X
|
Added by the Troj/PWSVB-EG TROJAN to steal passwords!
|
|
systemnt
|
systemnt.exe
|
X
|
Added by the W32.Bustoy worm. W32.Bustoy is a worm that propagates by copying itself to removable storage devices. ... Read More
|
|
systemntfy
|
systemntfy.exe
|
X
|
Added by the W32.Minudazash worm. W32.Minudazash is a worm that spreads by copying itself to mapped and removable drives. It also opens a back door an ... Read More
|
|
SystemOPsv
|
scrtvc32.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
SystemReg
|
svchost.exe
|
X
|
Added by the DEWIN.E TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
SystemReg
|
SystemReg.exe
|
X
|
Added by the Troj/Antilam-H backdoor Trojan.
|
|
SystemRegistry
|
SysReg.vbs
|
X
|
Added by VBS/Ediboy-C. File is located in the Windows System directory. Also see WUpdate_35253825.vbs ... Read More
|
|
Systems
|
scchost.exe
|
X
|
Added by the DAEMOZ.A TROJAN!
|
|
Systems
|
Systems.exe
|
X
|
Added by the Troj/Bankboa-A TROJAN, it targets a specific website and steals passwords. ... Read More
|
|
Systems
|
svch0st.exe
|
X
|
Added by the W32.MYDOOM.BI WORM!
|
|
Systems
|
sysmon.exe
|
X
|
Added by the Troj/Vixup-BI Trojan.
|
|
Systems
|
spoolsvc.exe
|
X
|
Added by the Troj/Dloadr-SW downloading Trojan.
|
|
Systems
|
sescmgr.exe
|
X
|
Added by the Troj/DwnLdr-GAH download Trojan.
|
|
Systems Restart
|
slchost.exe
|
X
|
Added by the BANCOS.RF TROJAN!
|
|
Systems Restart
|
spchost.exe
|
X
|
Added by a variant of the BANCOS.RF TROJAN!
|
|
Systems.exe
|
Systems.exe
|
U
|
Keyboard Spectator - monitoring software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you c ... Read More
|
|
SystemSafe
|
Syssafe.exe
|
U
|
System Safety Monitor - system monitoring tool with additional application firewalling ... Read More
|
|
SystemSAS
|
System32.exe
|
X
|
Added by the KWBOT.C WORM!
|
|
systemscroot
|
systembin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SystemService
|
shman.exe
|
X
|
Premium rate adult content dialler
|
|
SystemTasks
|
sexypicz.exe
|
X
|
Adult content dialler
|
|
Systemtra
|
Systra.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
SystemTray
|
SysTray.Exe
|
U
|
SYSTRAY.EXE - System Tray Services. Provides the Volume Control, PC Card Status, Power Management and other icons that reside in the System Tray (see ... Read More
|
|
SystemTray
|
SystemTray.exe
|
X
|
Added by the BIGFOOT TROJAN! Note - this is not the valid SystemTray (SysTray.exe) ... Read More
|
|
SystemTray
|
SysTray.exe
|
X
|
Added by the ALADINZ.P TROJAN! Note - this is not the valid System Tray (systray.exe) which resides in C:\Windows\System (Win9x/Me), C:\Winnt\System32 ... Read More
|
|
SystemTray
|
system.bat
|
X
|
Added by the W32/Resdoc-A worm.
|
|
systemtraysd
|
SDSystemTray.exe
|
U
|
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
|
|
systemtraysr
|
SRSystemTray.exe
|
U
|
Spyware Detector, Adware/Spyware remover. The latest version has been significantly improved since older versions thus having it removed from Spyware ... Read More
|
|
SystemTuner
|
SystemTuner.exe
|
X
|
Added by the System Tuner rogue system optimization software.
|
|
systemup
|
systemup.exe
|
X
|
Unknown malware.
|
|
SystemUpd
|
SystemUpd.exe
|
N
|
Updater for Swapoo.com, a kind of Napster for games
|
|
SystemVeteran.exe
|
SystemVeteran.exe
|
X
|
Added by the SystemVeteran rogue anti-spyware program.
|
|
systemw32
|
systemw32.exe
|
X
|
A variant of the Rbot.crm family of worms and IRC backdoor Trojans.
|
|
SystemWarrior
|
SystemWarrior.exe
|
X
|
Added by the SystemWarrior rogue anti-spyware program.
|
|
SystemWindows
|
scvhost.exe
|
X
|
Added by the W32/SillyFDC-CG removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
SystemWizard Sniffer
|
Sniffer.exe
|
U
|
SystemWizard for Win98/ME from SystemSoft - diagnoses and solves hardware and software problems on a PC ... Read More
|
|
SystemX
|
sthosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
systemx32
|
systemx32.exe
|
X
|
A variant of the Backdoor.Rbot.crm family of worms and IRC backdoor Trojans.
|
|
systemyom Updater
|
systemyom.exe
|
X
|
Added by a variant of the BACKDOOR.IRC.BOT TROJAN!
|
|
SYSTEMZ Patch
|
SYSZ.exe
|
X
|
Added by the ALADINZ.P TROJAN!
|
|
systen32.exe
|
systen32.exe
|
X
|
Added by the Troj/Dloadr-AQP Trojan.
|
|
Systesms.exe
|
systesms.exe
|
X
|
Added by the RBOT-HI WORM!
|
|
Systest
|
Systest.exe
|
N
|
Clean Space temp files cleaner
|
|
SysTime
|
systime.exe
|
X
|
CoolWebSearch parasite variant
|
|
Systm32
|
systm323.exe
|
X
|
|
|
Systmesy
|
Systmesy.exe
|
X
|
Added by the RBOT-KQ WORM!
|
|
SYSTMON.EXE
|
SYSTMON.EXE
|
X
|
Added by the W32/Silly-H worm.
|
|
Systoan32
|
systoan.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
systr
|
SYSERVER.exe
|
X
|
Added by the W32/VB-DQY worms.
|
|
systr2
|
SERVICE.exe
|
X
|
Added by the W32/VB-DQY worms. This infection should not be confused with the legitimate Microsoft File, C:\Windows\System32\service.exe. ... Read More
|
|
systr32
|
systr32.exe
|
?
|
??
|
|
systrans
|
service.exe
|
X
|
Added by the Troj/StartPa-GZ backdoor Trojan.
|
|
systrax
|
systrax.exe
|
?
|
??
|
|
Systray
|
Systray_.Exe
|
X
|
Added by the KERGEZ.A WORM!
|
|
SysTray
|
SysTray.Exe
|
U
|
SYSTRAY.EXE - System Tray Services. Provides the Volume Control, PC Card Status, Power Management and other icons that reside in the System Tray (see ... Read More
|
|
SysTray
|
Snnpapi.exe
|
X
|
Added by an unidentified TROJAN!
|
|
systray
|
SteFanie.vbs
|
X
|
Added by the VBS.Stefan ... Read More
|
|
SysTray
|
svhost.exe
|
X
|
Added by the W32/Rajilo-A removable storage worm.
|
|
Systray
|
sockots64.dll
|
X
|
Identified as a variant of the Trojan:Win32/Adclicker Trojan.
|
|
Systray driver
|
systray.exe
|
X
|
Added by the MUTEBOT TROJAN! Note - this is not the real SystemTray which shares the same filename ... Read More
|
|
systray.com
|
systray.com
|
X
|
Added by the Troj/Certif-R password-stealing Trojan.
|
|
SysTrays
|
System32.exe
|
X
|
Added by the Trojan.Hidexls Trojan. Trojan.Hidexls is a Trojan horse that hides Microsoft Excel files. ... Read More
|
|
systree
|
systree
|
X
|
Added by the BANCOS.L TROJAN!
|
|
SYStry
|
spoolsvr.exe
|
X
|
Added by the SDBOT.GN WORM!
|
|
SysTry
|
svchosts.exe
|
X
|
Added by the Troj/Banker-BD password stealing Trojan! The file is found in the Windows system folder. If you have this file on your computer, it is r ... Read More
|
|
systtray
|
SMLBSBV4.exe
|
X
|
Added by the Troj/IMFlood-A Trojan. This infection will attempt to spam the contacts in your Yahoo Instant Messenger contact list. ... Read More
|
|
systune
|
systune.exe
|
U
|
Added by AceSpy SPYWARE! ** Treat as an X if it wasn't intentionally installed. ... Read More
|
|
sysu
|
sysu.exe
|
X
|
Dynamic Desktop Media adware - see here
|
|
SysUdisk.exe
|
SysUdisk.exe
|
X
|
Added by the Troj/Dloadr-BLI Trojan.
|
|
sysug32.exe
|
sysug32.exe
|
X
|
Added by an unidentified TROJAN or WORM!
|
|
sysug32.exe
|
sysug32.ex
|
X
|
Added by an unidentified TROJAN or WORM!
|
|
SysUpd
|
Sysupd.exe
|
X
|
|
|
SysUtils
|
smss.exe
|
X
|
Added by the W32/Autorun-AWW removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe file. ... Read More
|
|
Sysvupex
|
Sysvupex.exe
|
X
|
Added by the MEDIAS TROJAN!
|
|
sysvx
|
sysvx_.exe
|
X
|
Added by the Troj/Loosky-BX Trojan.
|
|
syswav
|
syswav.sys
|
X
|
Added by the TROJ_KILLAV.GG rootkit. This infection will also close running security software. ... Read More
|
|
SYSWB6
|
SYSWB6.exe
|
U
|
We-Blocker - gives parents the opportunity to monitor their children's Internet access and provide them with age-appropriate content, while filtering ... Read More
|
|
SysWin
|
SysWin.exe
|
X
|
Added by the IRCCONTACT TROJAN!
|
|
syswin32
|
syswin32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Syswindow
|
Syswindow.exe
|
X
|
|
|
syswindrv
|
syswindrv.bin
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
sysX3
|
sys22.exe
|
X
|
Added by the W32.Rants.C@mm mass-mailing worm.
|
|
sysyemdl
|
sysedit.exe
|
X
|
Added by Backdoor.Evilbot. This infection connects to an IRC server where it awaits remote commands. ... Read More
|
|
sysygm32
|
syscxd32.exe
|
X
|
Added by the Troj/IRCBot-PC IRC backdoor Trojan.
|
|
SYS_CLEAN
|
Service.exe
|
X
|
Added by the FLOPCOPY WORM!
|
|
Sys_Kl
|
sys_kl.exe
|
U
|
Added by the Spyware.SysKeylog surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
|
|
sys_up1
|
svchostsys.exe
|
X
|
Identified by Panda as Trj/Clicker.QE.
|
|
sytem32
|
svost.exe
|
X
|
Added by the Troj/Feutel-Z backdoor Trojan.
|
|
sywtdxaz
|
sywtdxaz.sys
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
SZMsgSvc.exe
|
SZMsgSvc.exe
|
U
|
StopZilla! - pop-up killer
|
|
T-DSL SpeedMgr
|
speedmgr.exe
|
N
|
T-Online ISP SpeedManager - shows upload and download speed. Also checks for updates automatically ... Read More
|
|
Taba
|
stte.exe
|
X
|
Clickspring spyware
|
|
tabletwizard
|
SPLSHWRP.EXE
|
U
|
|
|
TalkTalk
|
sprtcmd.exe
|
?
|
Software for TalkTalk service.
|
|
Tamiami
|
strangler.exe
|
X
|
Added by the WORM_TUTIAM.A mass-mailing worm.
|
|
Tango
|
Setup.exe
|
?
|
Tango Broadband access software. Is it required?
|
|
Task
|
spoolsv.exe
|
X
|
Added by the W32.Xirtam.A@mm worm. W32.Xirtam.A@mm is a mass-mailing worm that gathers email addresses from the compromised computer. It also spreads ... Read More
|
|
Task Client Manager
|
spoolvc.exe
|
X
|
Added by the W32/Tilebot-JL worm and IRC backdoor.
|
|
Task Debugger
|
sysdll.exe
|
X
|
Added by the W32/Rbot-CQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Task Manager
|
svhost12.exe
|
X
|
Added by the WORM_SOHANAD.AK instant-messaging worm.
|
|
Task Manager
|
svhost32.exe
|
X
|
Added by the Troj/Startp-G Trojan.
|
|
Task Monitoring Service
|
svchost.exe
|
X
|
Added by the CONE.D WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Task Restore Service
|
spoolvc.exe
|
X
|
Added by the W32/Tilebot-KR worm and IRC backdoor.
|
|
Task Restore Services
|
svshost.exe
|
X
|
Added by the Troj/IRCBot-ZK IRC backdoor Trojan.
|
|
Task Scheduler
|
spools.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.jjt malware.
|
|
Task Scheduler Engine
|
schedsvc32.exe
|
X
|
Added by the W32/Rbot-ASJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Taskman
|
sysdate.exe
|
X
|
Added by the W32/AutoRun-AQE removable media worm.
|
|
Taskman
|
sysdrv.exe
|
X
|
Added by the Troj/Agent-LRB Trojan.
|
|
taskmng
|
svchost.exe
|
X
|
Added by the W32/Tilebot-AW worm and IRC backdoor.
|
|
taskmrg
|
schwoch.exe
|
X
|
Added as result of a Troj/LDPinch-Y trojan infection ... Read More
|
|
TA_Start
|
stdrun?.exe
|
X
|
Added by a variant of the Zenosearch adware. Adware.ZenoSearch is an adware that displays pop-up ads based on searches the user performs on popular we ... Read More
|
|
TBMonEx
|
svchost.exe
|
X
|
Added by the PE_MUMAWOW.BG-O file infector. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
TCP x IP2 Kernel
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
TCP x IP2 Kernel32
|
seppgm.sys
|
X
|
Variant of the Troj/Haxdor-Fam rootkit.
|
|
TCP/IP Service
|
svchost.exe
|
X
|
Added by the W32.Fubalca.D worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Telephots google
|
serveet.exe
|
X
|
Added by the WORM_FUBALCA.AQ worm.
|
|
tempreg
|
s300_1204076086.dll
|
X
|
Identified as a variant of the Trojan.Win32.BHO malware. Please note that regsvr32.exe is a legitimate program. ... Read More
|
|
Terminal Device Services
|
spoolvc.exe
|
X
|
Added by the W32/Sdbot-DDC worm and IRC backdoor.
|
|
TEXTCONV
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
THCS
|
svchost.exe
|
U
|
Added by the Spyware.AllMonitor surveillance software. Spyware.AllMonitor is a spyware program that records keystrokes and monitors user activities on ... Read More
|
|
The Service Pack Loader
|
spxp.exe
|
X
|
Added by the W32/Rbot-BYM worm and IRC backdoor.
|
|
The Spy Guard
|
spyguard.exe
|
X
|
The Spy Guard is a rogue-antispyware application. This application uses deceptive and aggressive advertising in order to scare you into purchasing th ... Read More
|
|
The Spy Guard Monitor
|
spyguard_monitor.exe
|
X
|
The Spy Guard is a rogue-antispyware application. This application uses deceptive and aggressive advertising in order to scare you into purchasing th ... Read More
|
|
Themes Plug and Play
|
services.exe
|
X
|
Added by the W32.Dizan.C virus. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. W32.Dizan.C is a viru ... Read More
|
|
TheMonitor
|
SYS99.exe
|
X
|
Added by the Troj/Dloadr-LO Trojan downloader.
|
|
TheMonitor
|
SYSC00.exe
|
X
|
Added by the Troj/Dloadr-LO Trojan downloader.
|
|
Tiger
|
Shine.exe
|
X
|
Added by the HAPPYLOW (or NISHE-A) VIRUS!
|
|
tjk8rla0zxexp
|
systs.exe
|
X
|
Added by the Troj/Agent-GDC Trojan.
|
|
tjstartup
|
svchost.exe
|
X
|
Added by the CURDEAL TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
ToBeFree
|
StillAlive.exe
|
X
|
Added by the W32/WinLose-A worm.
|
|
Tok-Cirrhatus
|
smss.exe
|
X
|
Added by the W32/Korbo-A worm and backdoor Trojan.
|
|
Tok-Cirrhatus-1959sarc
|
sv711224030r.exe
|
X
|
Added by the W32/Brontok-R mass-mailing worm.
|
|
Tool Update Windows
|
spooslv.exe
|
X
|
Added by the W32/Rbot-GVI worm and IRC backdoor.
|
|
Torjan Program
|
services.exe
|
X
|
Added by the W32.Autex.C shared folder/drive worm. This should not be confused with the legitimate Microsoft file located in the Windows %System% fold ... Read More
|
|
Torjan Program
|
smss.exe
|
X
|
Added by the Troj/WowPWS-A password-stealing Trojan.
|
|
TotalSecure2009
|
scan.exe
|
X
|
Added by the Total Secure 2009 rogue anti-spyware program.
|
|
TProgram
|
smss.exe
|
X
|
Added by the Troj/WowPWS-W password-stealing Trojan. Troj/WowPWS-W targets the online game World of Warcraft, and attempts to steal account details. ... Read More
|
|
Track4WinMonitor
|
STMonitor.exe
|
U
|
Added by the Spyware.Track4Win surveillance program. If you did not install this program, you should uninstall it immediately. ... Read More
|
|
Transaction Tasker
|
stdhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
tray_ico1
|
svchost.exe
|
X
|
Malware that uninstalls your antivirus program and then display alerts pretending to be that antivirus program. This infection should not be confused ... Read More
|
|
TSPower
|
spower.drv
|
?
|
Found on a Toshiba laptop. Related to power management?
|
|
ttool
|
scvs.exe
|
X
|
Added by the Troj/Hiload-A Trojan.
|
|
ttool
|
sa23sl.exe
|
X
|
Added by the Troj/Bckdr-QZZ backdoor Trojan.
|
|
ttool
|
sr882388.exe
|
X
|
Added by the Troj/Backdr-AX backdoor Trojan.
|
|
tunelling
|
sys64.exe
|
X
|
Added by Backdoor.Checkesp. This infection listens on TCP port 666.
|
|
TurBo
|
System.Trubo.vbs
|
X
|
Added by the VBS/Autom-C worm.
|
|
TURXP Protocol
|
sps32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
tvrschedule
|
Schedule.exe
|
U
|
Related to Mercury_Ez_View TV Tuner Card. Note: located in C:\Program Files\Kobian\Ez View\ ... Read More
|
|
TVT Scheduler Proxy
|
scheduler_proxy.exe
|
U
|
Related to the Lenovo update software on IBM ThinkPad.
|
|
TV_Path
|
sigmatv.exe
|
Y
|
Sigma TV Card driver.
|
|
TwkSCardSrv
|
SCardS32.Exe
|
N
|
Used with Towitoko SmartCard Readers for card recognition
|
|
TZ Spyware Remover
|
SpyRem.exe
|
X
|
Added by the TrackZapper security risk. TrackZapper is a security risk that gives exaggerated reports that the computer contains adware and spyware. ... Read More
|
|
u1v4r1
|
svshost.exe
|
X
|
Added by the Troj/Bckdr-QJW backdoor Trojan.
|
|
udjudwq
|
sybqnub.exe
|
X
|
Added by the W32/SillyFDC-AH worm.
|
|
Ulubione
|
sys****.exe
|
X
|
Search Hijacker, redirecting to maxxxhosters.com - where **** are random characters ... Read More
|
|
UniPrint
|
SetDfltSettings.exe
|
U
|
Drivers for Uniprint, a printing help for Terminal Services and Citrix which recieves downloaded files from a Uniprint enabled server and prints them ... Read More
|
|
Universal Serial Bus Control Protocol
|
smrs.exe
|
X
|
Added by the Troj/Bdoor-JD backdoor Trojan.
|
|
universal usb service
|
svchost32.exe
|
X
|
Added by the W32.KELVIR.R WORM! ... Read More
|
|
Unshare
|
SafeShare.exe
|
X
|
P2P Program typically installed with adware or spyware. Typically found in C:\Program Files\safe-share. ... Read More
|
|
unsrvc
|
syschost.exe
|
X
|
Added by the Trojan.Spy.VB.NB Trojan.
|
|
unsrvc
|
setrysrvc.exe
|
X
|
Added by the Troj/Bancos-BDW banking Trojan.
|
|
Update
|
Sysupd.exe
|
X
|
Added by the SLACKBOT VIRUS!
|
|
Update
|
svchost.exe
|
X
|
Added by the Troj/AdClick-AG Trojan! File is found in the Windows folder.
|
|
Update
|
sfcnmdd.exe
|
X
|
Added by the Troj/PPdoor-AS backdoor Trojan.
|
|
update
|
svch0st.exe
|
X
|
Added by the Troj/WoW-FM password stealing Trojan targeted at users of the World of Warcraft online computer game.. This should not be confused with ... Read More
|
|
Update
|
systems.exe
|
X
|
Added by the W32.Surubat.A@mm mass-mailing worm. W32.Surubat.A@mm is a mass-mailing worm that also copies itself to network shares. It also opens a ba ... Read More
|
|
Update Checker
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Update Install
|
Schost.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Update local
|
SetCPQLC.exe
|
?
|
Running on a Compaq desktop. Any ideas?
|
|
update service
|
svxhost.exe
|
X
|
Added by the RBOT-MG WORM!
|
|
Update Service
|
svchost.exe
|
X
|
Added by the Your PC Protector rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe ... Read More
|
|
update SERVICES
|
sccpn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Update ver 1.0
|
Swap.exe
|
X
|
Added by the SWAP-C WORM!
|
|
Update Windows
|
svch0st.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
UpdateManager
|
sgtray.exe
|
U
|
StorageGuard from Veritas (this version by Sonic). Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS ... Read More
|
|
updatemsn
|
svhost.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Updater Service Process
|
svhost32.exe
|
X
|
Added by the AGOBOT.TY WORM!
|
|
updater23
|
service.exe.js
|
X
|
Added by the JS/Uragon-A javascript worm.
|
|
Updaterd
|
SVCHOSTE.EXE
|
X
|
Added by the W32/Rbot-BBE worm and IRC backdoor.
|
|
updatesst
|
SE2010.exe
|
X
|
Added by the Security Essentials 2011 rogue anti-spyware program.
|
|
upDpacketo
|
services.exe
|
X
|
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
|
|
upgrade sarvice
|
sxchost.exe
|
X
|
Added by a variant of the TROJ/TOFGER-I TROJAN! ... Read More
|
|
usb
|
SASS.EXE
|
X
|
Added by the Troj/Funsta-A Trojan.
|
|
USB controller
|
Svcmm32.exe
|
X
|
Ouchvideo.com 'n-Lite' spyware
|
|
USB Device
|
servicelog.exe
|
X
|
Added by the WOOTBOT.CB WORM!
|
|
USB Hub Keyboard Patch
|
SKBPATCH.EXE
|
?
|
USB HUB Update
|
|
UsbD
|
smss32.exe
|
X
|
Adware downloader - recognized by Kaspersky antivirus as Trojan-Proxy.Win32.Agent.cj ... Read More
|
|
UsbD
|
svhost32.exe
|
X
|
Added by the AGENT.IB TROJAN!
|
|
usbdrv
|
servicetask.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
usbhwdrv
|
sst4.exe
|
X
|
Added by a variant of the TROJ/LOWZONE-I TROJAN! ... Read More
|
|
USBHWINFO
|
sst6.exe
|
X
|
Added by the Troj/LowZone-I trojan.
|
|
USBTray
|
Systroy.exe
|
X
|
Added by the W32.Bakain worm. W32.Bakain is a worm that spreads by copying itself to network shares protected by weak passwords. ... Read More
|
|
useful-soft
|
svchst.exe
|
X
|
Added by the Troj/StartPa-H Internet Explorer start page hijacker.
|
|
Usercne
|
SVCH0ST.exe
|
X
|
Added by the Troj/LegMi-AJH password-stealing Trojan for the online game Legend of Mir. This infection should not be confused with the legitimate C:\W ... Read More
|
|
userd
|
systems.com
|
X
|
Added by the W32/OutLaw-A worm.
|
|
userinit
|
smss.exe
|
X
|
Added by the Troj/Dloadr-B downloader Trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\smss.exe. ... Read More
|
|
ushli
|
sscbltqu.exe
|
X
|
Obtained from an MP3 search list site. Also generates random processes on reboot ... Read More
|
|
usrgtway.exe
|
syswrun4x.exe
|
X
|
Added by the MITGLIEDER.E TROJAN!
|
|
Utility Tray.lnk
|
sistray.exe
|
U
|
System Tray icon for SiS based graphics.
|
|
value
|
systimer.exe
|
X
|
Added by Adware.Downreceive. File is found in the C:\Program Files\Acceleration Software folder. ... Read More
|
|
value
|
spykiller.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
valuename
|
svchosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ValueX
|
services.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\services.exe file. ... Read More
|
|
vccacA
|
sdaxzl.exe
|
X
|
Added by the W32/Sdbot-RP worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
Veo Velocity Connect
|
stim11.exe
|
U
|
Related to the Veo Velocity Connect USB 2.0 web camera.
|
|
Version1
|
syspoints.dll
|
X
|
Added by the W32/IRCBot-XN worm and IRC backdoor.
|
|
Version1
|
syspoint.dll
|
X
|
Identified as a variant of the W32.Mimbot malware.
|
|
Version3
|
syslinks2.dll
|
X
|
Added by the W32.Mubla.C@mm worm. W32.Mubla.C@mm is a mass-mailing worm that spreads through email and MSN Messenger. It also opens a back door on the ... Read More
|
|
VGA Driver
|
scmhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Video Driver
|
svbhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Video Process
|
sysconf.exe
|
X
|
|
|
Video Services
|
sys32.exe
|
X
|
Added by the AGOBOT.PS WORM!
|
|
VideoDriver32
|
services.exe
|
X
|
Added by the Troj/WinSpy-K backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\services.exe. ... Read More
|
|
Virscanner
|
smss.exe
|
X
|
Added by the Troj/DwnLdr-GWE Trojan downloader.
|
|
virtual-machine
|
svchosts.exe
|
X
|
Added by W32/Rbot-US, a WORM/backdoor IRC Trojan, found in the Windows system folder. ... Read More
|
|
VISSV
|
symvcs.sys
|
X
|
A variant of the Troj/Haxdor-Fam family of rootkits.
|
|
vital load process
|
Spoolsvr.exe
|
X
|
Added by the RBOT.AIF WORM! ... Read More
|
|
VMWare Authorization Servicec
|
Server.exe
|
X
|
Added by the Backdoor.Graybird.O backdoor Trojan. This infection also drops the file %System%8g.DLL. ... Read More
|
|
vsadmin
|
smrs.exe
|
X
|
Added by the W32/Agobot-RC WORM/IRC backdoor Trojan!
|
|
vscanner
|
spooll32.exe
|
X
|
Added by the OPTIXPRO.10 TROJAN!
|
|
W32.Scran
|
Scran.exe
|
X
|
|
|
Wardo
|
syslaunch.exe
|
X
|
Added by the ADLCICKER.G TROJAN!
|
|
WCESMngr
|
spoolsb.exe
|
X
|
An Agobot WORM/IRC backdoor variant adds this to provide unauthorised access which will allow multiple actions to occur. ... Read More
|
|
WDefend
|
svohost.exe
|
X
|
Part of the Windows Police Pro rogue anti-spyware infection.
|
|
weatherontray
|
SbWeatherOnTray.exe
|
X
|
Related to Hotbar's Weather Forecast tool for your desktop. ... Read More
|
|
Web Service
|
sm.exe
|
X
|
Added by the Troj/Psyme-BQ downloader trojan.
|
|
Web Service
|
soft.exe
|
X
|
Added by the W32/Bube-F virus. This infection also displays popups in Internet Explorer. ... Read More
|
|
WebOutfitterTray
|
sttray.exe
|
N
|
Intel WebOutfitter service System Tray icon
|
|
WebProxy
|
sockins32.dll
|
X
|
Identified as a variant of the Win32:Agent-TEV malware. This infection will have its file shown as missing in a HJT log. In realty, though, this fi ... Read More
|
|
WebProxy
|
sxmg4.dll
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.FraudLoad.vcqa Trojan.
|
|
Webroot Spy Sweeper Engine
|
SpySweeper.exe
|
U
|
Spy Sweeper anti-spyware program.
|
|
webscan
|
stopsignav.exe
|
N
|
eAcceleration Stop-Sign related - not recommended, see note
|
|
Webservice
|
svchost.exe
|
X
|
Added as a new service by the Troj/Feutel-B TROJAN, using the same displayname. ... Read More
|
|
wescmv
|
sddcss.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Slaper Trojan.
|
|
WhenUSave
|
Save.exe
|
X
|
Rebranded version of SaveNow advertising spyware
|
|
WhenUSearch
|
Search.exe
|
X
|
|
|
whxpin service
|
ssvsol.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
widpep
|
systra.exe
|
X
|
Added by the Troj/Lulador-A backdoor Trojan.
|
|
win
|
serlass.exe
|
X
|
Added by the Trojan.Startpage.S browser hijacker.
|
|
Win CPU
|
sysin.pif
|
X
|
Added by the W32/Rbot-AXL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win Junk Service
|
sysass.exe
|
X
|
Added by the W32/Tilebot-FG worm and IRC backdoor.
|
|
win name
|
stat.exe
|
?
|
??
|
|
Win Services
|
Services32.exe
|
X
|
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
|
|
Win Update
|
SysUpdate.exe
|
X
|
Added by the W32/Agobot-TN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
win32
|
Shakira_1997_Part_1_.Mpeg_.scr
|
X
|
Added by the MYLIFE.N WORM!
|
|
win32
|
Setup_32.exe
|
X
|
Added by the EVILBOT.B TROJAN!
|
|
Win32
|
system32.vbs
|
X
|
Added by the VBS.Swerun Infection! Found in the Windows directory.
|
|
Win32
|
sys32.exe
|
X
|
A service created by W32/Forbot-FX with a display name of "System Net" allows remote attack via IRC channel, deletion of files, modification of data a ... Read More
|
|
Win32
|
sysmon.exe
|
X
|
Added by the W32/Mytob-HQ worm and IRC backdoor.
|
|
Win32 Driver
|
svchosts.exe
|
X
|
Added by the W32/Forbot-FD worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win32 Driver
|
sysmls.exe
|
X
|
Added by the W32/Mytob-JH worm and IRC backdoor.
|
|
Win32 Loader
|
svhost.exe
|
X
|
Added by the W32/Sdbot-VH WORM. Found in the Windows system folder.
|
|
Win32 Security Protocol
|
secure32.exe
|
X
|
Added by the W32/Rbot-ETI worm and IRC backdoor.
|
|
WIN32 Sound Drivers.
|
sounddv.exe
|
X
|
Added by the W32/Tilebot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win32 Svchosts Driver
|
svchosts.exe
|
X
|
Added by the W32/Forbot-FO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win32 System Spool
|
spoolsvc.exe
|
X
|
Added by the SDBOT.UK WORM!
|
|
Win32 Update
|
svchosts.exe
|
X
|
Added by the W32/Forbot-GN network and mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe fi ... Read More
|
|
win32 update service
|
svchostt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win32 Usb Driver
|
svhosint32.exe
|
X
|
Added by the FORBOT-BE or FORBOT-J WORMS!
|
|
Win32 USB2 Driver
|
smsc.exe
|
X
|
Added by the SDBOT.FO WORM!
|
|
Win32 USB2 Driver
|
svchosting.exe
|
X
|
Added by the FORBOT.J or SDBOT.HU WORM!
|
|
Win32 USB2 Driver
|
sys32.exe
|
X
|
Added by the WOOTBOT.X WORM!
|
|
Win32 USB2 Driver
|
sys32snd.exe
|
X
|
Added by the FORBOT-AN WORM!
|
|
Win32 USB2.0 Driver
|
service.exe
|
X
|
Added by the SDBOT-QF WORM!
|
|
Win32G
|
Scandisk.com
|
X
|
Added by the ESTRELLA TROJAN
|
|
win32ini
|
systroy.exe
|
X
|
Added by the IRC.ALADINZ.C TROJAN!
|
|
Win32load
|
sysrc32.exe
|
X
|
Related to SmitFraud infections.
|
|
Win32R
|
Server.com
|
X
|
Added by the ESTRELLA TROJAN!
|
|
win32serv
|
servicesetup.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
win32serv
|
systemdevices.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
win32usbd
|
ssrs.exe
|
X
|
Added by the RBOT-RA WORM!
|
|
WIN32WN
|
system_wc.exe
|
X
|
Added by the Adware.Eziin homepage hijacker.
|
|
Win386
|
sp32.dll
|
X
|
Homepage hijacker. Not a dll but a regfile in disguise
|
|
Win64
|
systen64.exe
|
X
|
Added by the TSPY_BANKER.DAN information stealing Trojan.
|
|
WinAmp Player
|
swphost.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
WinAmpAgent
|
sdhch.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
winapplog
|
svchost.exe
|
U
|
StingKeyLogger keystroke logger/monitoring program - remove unless you installed it yourself! - NOTE - this file is placed in a C:\Program Files\Sting ... Read More
|
|
winbin
|
swchost.exe
|
X
|
Added by the RBOT.CLS WORM! ... Read More
|
|
WinCheck
|
services.exe
|
X
|
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
|
|
wincheck
|
spdcheck.exe
|
X
|
A variant of the Tilebot worm and IRC backdoor.
|
|
winconfig.exe
|
smsss.exe
|
X
|
Added by the W32/Spybot-MP worm and IRC backdoor. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
wind logd file
|
servicelogd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Wind0ws Sharing
|
ssprotecter.exe
|
X
|
Added by the W32/Rbot-AHW worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam. ... Read More
|
|
WinData
|
services.exe
|
X
|
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
|
|
WinDLL (service.exe)
|
service.exe
|
X
|
Identified as a variant of the Spammer:Win32/Cutwail.gen!B malware.
|
|
WinDLL (slsass.exe)
|
slsass.exe
|
X
|
Added by the Backdoor.Win32.Akbot.e backdoor worm. Please note that the C:\Windows\System32\rundll32.exe file is legitimate and should not be deleted. ... Read More
|
|
WinDll (sslms.exe)
|
sslms.exe
|
X
|
Added by the W32/Akbot-AS spyware worm. Please do not deleted C:\Windows\System32\rundll32.exe as it is a legitimate application. ... Read More
|
|
WinDLL (start0s.exe)
|
start0s.exe
|
X
|
A variant of the W32/Akbot family of worms and IRC backdoor Trojans. Please do not delete rundll32.exe as it is a legitimate file. ... Read More
|
|
Window Domain Services
|
svchost.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Window Image Worker
|
svchost.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Trojan.Win32.Delf.amr malware. This infection should not be confused with the legitimate C:\Wind ... Read More
|
|
Window Server
|
Sererver.exe
|
X
|
Added by the Troj/Feutel-BB backdoor Trojan. This infection also creates the files C:\Windows\Sererver.DLL, C:\Windows\SererverKey.DLL, and C:\Windows ... Read More
|
|
Window Services Connection
|
smsc.exe
|
X
|
Added by the W32/Tilebot-GD worm and IRC backdoor.
|
|
window2
|
ssvchost.exe
|
X
|
Added by the IRCBOT.H TROJAN!
|
|
windows
|
system copy.exe
|
X
|
Added by the SALGA.A WORM!
|
|
windows
|
svchost.exe
|
X
|
Added by the W32/Slomirc-A WORM/IRC backdoor Trojan!
|
|
Windows
|
system.exe
|
X
|
Added by the W32/Rbot-ACB worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Windows
|
smss.exe
|
X
|
Added by the Troj/Bancban-OF Internet banking trojan. This infection should not be confused with the legitimate Microsoft file c:\windows\system32\sms ... Read More
|
|
Windows
|
smss.scr
|
X
|
Added by the Troj/Banloa-ANE Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\smss.exe. ... Read More
|
|
windows
|
ssme.txt
|
X
|
Added by the Troj/Hupigon-SQ Trojan.
|
|
Windows
|
SRVSPOOL.exe
|
X
|
Added by the Monagrey Trojan.
|
|
Windows
|
spoovlss.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows
|
Setup_ver1.1400.0.exe
|
X
|
Identified as a variant of the FakeAlert/Fraudload Downloader malware.
|
|
Windows Accelerators
|
setup.exe
|
U
|
KeySpy keylogger (monitoring program). Given a "U" recommendation because it depends if you intentionally installed it. If you didn't treat it as "X" ... Read More
|
|
Windows Accounts Driver
|
SVCH0ST.EXE
|
X
|
Added by the Troj/Agent-NDR Trojan. This infection should not be confused with the legitmate C:\Windows\System32\Svchost.exe. Notice the infection us ... Read More
|
|
Windows Activate System]
|
syssv.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Windows applications server
|
SysShield.exe
|
X
|
Added by the Antivirus'09 rogue anti-spyware program. This program will display a fake Windows Security Center on your computer that promotes Antiviru ... Read More
|
|
Windows applications server
|
SysShield.exe
|
X
|
Added by the unregistered version of the Personal Anti Malware Center rogue anti-spyware program. ... Read More
|
|
Windows Audio
|
sndmic32.exe
|
X
|
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
|
|
Windows Audio
|
snd.exe
|
X
|
Added by the W32.Ackantta.C@mm worm. W32.Ackantta.C@mm is a mass-mailing worm that spreads through file-sharing programs and sends spam email that con ... Read More
|
|
Windows Audio Mixer
|
svchost.exe
|
X
|
Added by the W32/Tilebot-BX worm and IRC backdoor. This infection should not be confused with the legitimate svchost.exe file found in the Windows s ... Read More
|
|
Windows Automatic Updater
|
shost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Automatic32Updater
|
svchost32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows backup
|
systemss.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Baþlangýç Dosyasý
|
sistem.exe
|
X
|
|
|
Windows BootableService
|
svshost.exe
|
X
|
Added by the W32/Tilebot-KN worm and IRC backdoor.
|
|
Windows Bootup
|
SystemLogin32.exe
|
X
|
Added by a variant of the RBOT WORM! This variant connects to an IRC server at lol.selectgex.com. It also creates a mutex called TehHaxScanall64. ... Read More
|
|
windows bootup
|
Systemwks32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Windows bypass security SMSS Service
|
SbiCvy.exe
|
X
|
Added by the W32/Rbot-GRF worm and IRC backdoor.
|
|
Windows Config
|
SSYS.EXE
|
X
|
Added by the SPYBOT-DA WORM!
|
|
Windows Config for Spool Service
|
SPOOLER32.EXE
|
X
|
Added by the W32/Sdbot-DX backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
Windows Control Panel
|
spoolsv.exe
|
X
|
Added by the Troj/Agent-NQJ Trojan. Please note that this infection should not be confused with the legitimate C:\Windows\System32\spoolsv.exe file. ... Read More
|
|
Windows Control Service32
|
svhost32.exe
|
X
|
A variant of the SDBot family of worms and IRC backdoor Trojans.
|
|
Windows DDE
|
servet.exe
|
X
|
Added by the W32/WoWMovs-A worm.
|
|
Windows DDOSServer
|
serversc.exe
|
X
|
Added by the Troj/Bckdr-PMY backdoor Trojan.
|
|
Windows Desktop Security
|
svcagnt.exe
|
U
|
Added by the Spyware.DesktopScout surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
Windows DLL Loader
|
syscfg16.exe
|
X
|
Added by the W32/Domwis-G worm. This infections uses IRC to receive commandsa and to send and receive files. ... Read More
|
|
Windows DLL System
|
smsc.exe
|
X
|
Added by the W32/Tilebot-GG worm and IRC backdoor.
|
|
Windows DLL Tracker
|
spoolsrv.exe
|
X
|
Added by a variant of the W32/WOOTBOT WORM!
|
|
Windows Drive Compatibility
|
System32Driver32.exe
|
X
|
Added by the SUPOVA.Z WORM!
|
|
Windows Driver Adapter
|
svchost.exe
|
X
|
Added by the W32/Antinny-K backdoor/worm.
|
|
Windows Event Notification
|
System_dll.exe
|
X
|
Added by the Troj/GrayBrd-G backdoor Trojan.
|
|
Windows Event Section
|
sntsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Executer
|
svchostie.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Explorer
|
system32.exe
|
X
|
Added by the W32/Rbot-AJH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows ExplorerTM
|
servinfo.exe
|
X
|
A service initiated by the W32/Forbot-EN, with a display name of "Windows Server Information" on NT systems. ... Read More
|
|
Windows File Depictor and Rotator Service For Service Pack 2
|
svchost.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
windows file explorer
|
ssms.exe
|
X
|
Added by the W32/Tilebot-EN worm and IRC backdoor.
|
|
Windows Firewall
|
svchost.exe
|
X
|
Added by the Troj/Proxy-HT proxy Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows Firewalll
|
sphost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Windows Firewalll
|
svvhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Windows Firewalll
|
scvhost.exe
|
X
|
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Windows Framework
|
scvh0st.exe
|
X
|
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
|
|
Windows Help
|
Stney.exe
|
X
|
Added by the W32/Agobot-VI worm and IRC backdoor.
|
|
Windows Help Manager
|
svchost32.exe
|
X
|
Added by the RBOT-OZ WORM!
|
|
Windows Helper
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Host
|
spoolsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Host Service
|
svchoste.exe
|
X
|
Added by the W32/Kelvir-U instant messenger worm. This worm spreads using MSN Messenger. ... Read More
|
|
Windows Host Service
|
svchosts32.exe
|
X
|
Added by the W32/Kelvir-AK MSN messenger worm.
|
|
Windows Host Services
|
services.exe
|
X
|
A variant of the IRCBot family of backdoor worms.
|
|
Windows Hosts Plugin
|
spoolcv.exe
|
X
|
A variant of the SDBot.aad family of worms and IRC backdoor Trojans.
|
|
Windows HTML file reader
|
Sysconf32.exe
|
X
|
Added by the NOOMY.A WORM!
|
|
Windows Identify
|
sysays.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Ins
|
servet.exe
|
X
|
Added by the W32/SillyFD-AB worm.
|
|
Windows InstallService
|
servet.exe
|
X
|
Added by the W32/SillyFD-AF spyware worm.
|
|
Windows Internet Manager
|
svchost.exe
|
X
|
Added by the Troj/IRCBot-AAC worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows Kernel
|
svchost.exe
|
X
|
Added by the W32/Rbot-ANO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Note: This shoul ... Read More
|
|
Windows LAN Service Manager
|
svchost.exe
|
U
|
Added by the Spyware.ComSurveilSys surveillance software. If this was not installed by you, you should uninstall it. ... Read More
|
|
Windows Loader
|
SysUpdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Logon Management
|
svclogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Logon Procedure
|
Svchoste.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Logon Procedure
|
Svchosta.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Logon Procedure
|
svchosts.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Windows Logon Service
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows LoL Layer
|
setup.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.dnd family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Management
|
svchost.exe
|
X
|
Added by the Troj/Feutel-AN Trojan.
|
|
Windows Management Extended Licence Service
|
svchost.exe
|
X
|
Added by the Backdoor.Robofo.A backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows Management PrintSystem
|
spoo1sv.exe
|
X
|
Identified as a variant of the AdWare.Win32.Agent.aad malware.
|
|
WINDOWS Maniez
|
sysint.exe
|
X
|
Added by the Troj/Pitkom-C Trojan.
|
|
Windows Media Player
|
Server.exe
|
X
|
Added by the Troj/Feutel-AE backdoor Trojan.
|
|
Windows Messanger Control Center
|
svchosl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows MS Update 32
|
sucker.exe
|
X
|
Added by the W32/Forbot-GJ worm and IRC backdoor.
|
|
Windows MSN Live 2.3
|
svhvchost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows MSN2 XP
|
swchost.exe
|
X
|
Identified as a variant of the WORM_KOLAB.AA worm.
|
|
Windows Net Cfg
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows netdde
|
system32.exe
|
X
|
Added by the W32/Rbot-DBU worm and IRC backdoor. This infection utilizes the virdr.sys rootkit. ... Read More
|
|
Windows Network Data Management System Service
|
skp66.exe
|
X
|
Related to the TR/Crypt.ULPM.Gen malware.
|
|
Windows Network Services
|
svchost32.exe
|
X
|
Added by the W32.Spybot.ATZN worm.
|
|
Windows Network Services
|
svshost.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.bhk family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Nivedia Driver
|
sysMGT.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Windows NT Service Name
|
svchcst.exe
|
X
|
Added by the W32/Rbot-NV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
Windows NT Session Manager
|
symsec.exe
|
X
|
Added by the W32/Tilebot-EQ worm and IRC backdoor.
|
|
Windows NT Session Manager
|
smss.exe
|
X
|
Added by the TR/Crypt.ULPM.Gen Trojan.
|
|
Windows NT Session Manager
|
sess.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Online Tech
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Plugin Application
|
svshost.exe
|
X
|
Identified as the SdBot.awe worm.
|
|
Windows Print Spooler
|
SCVHOSTS.EXE
|
?
|
Suspicious due to the similarity to the valid "svchost.exe" file
|
|
Windows Print Spooler
|
SVEHOST.EXE
|
X
|
Added by the SPYBOT.H WORM!
|
|
Windows Process Manager
|
spoolsc.exe
|
X
|
Added by the W32/Tilebot-JM worm and IRC backdoor.
|
|
windows reg services
|
ssservice.exe
|
X
|
Added by the TROJ/PRORAT-D TROJAN ... Read More
|
|
Windows Regedit Manager
|
svshost.exe
|
X
|
A variant of the Sdbot family of worms and IRC backdoor Trojans.
|
|
windows register settings
|
svmhost.exe
|
X
|
Added by a variant of the W32/FORBOT WORM! ... Read More
|
|
Windows Registers
|
Svchosts.exe
|
X
|
Added by the W32/Rbot-HV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Windows Registery Center
|
svhchosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Registry Scan
|
svcdll.exe
|
X
|
Added by the W32/Rbot-TP WORM/IRC backdoor trojan!
|
|
Windows report
|
swchost.exe
|
X
|
Added by the SMALL-BD TROJAN!
|
|
windows run
|
system.exe
|
X
|
Added by the W32/Icpass-A worm. Using zip programs installed on the infected computer, it can send the infected files to people as they join the IR ... Read More
|
|
Windows Scheduler!
|
scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Screensaver
|
Service.exe
|
X
|
Added by the W32.KELVIR.P WORM!
|
|
WINDOWS SCREENSAVER
|
ssaver.scr
|
X
|
Added by the W32/Sdbot-YZ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows secure
|
setver32.exe
|
X
|
Added by the SPYBOT.EP WORM!
|
|
Windows Secure Service
|
secsrv.exe
|
X
|
Added by the W32/Sdbot-DGP worm and IRC backdoor.
|
|
Windows Secure Services
|
ssms.exe
|
X
|
Added by the W32/Rbot-GAR worm and IRC backdoor. W32/Rbot-GAR spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Windows Security Center Notification Appls
|
sxe.exe
|
X
|
Added by the W32/Rbot-GKX worm and IRC backdoor.
|
|
Windows Security Center Notification Applse
|
sxes.exe
|
X
|
Added by the W32/Rbot-GLR worm and IRC backdoor.
|
|
Windows Security Center Notification Applsee
|
sysecurex.exe
|
X
|
Added by an unknown malware.
|
|
Windows Security Center Service
|
svrwsc.exe
|
X
|
Added by the Troj/Agent-NWQ.
|
|
Windows Security Manager
|
svchost.exe
|
X
|
Added by the W32.Antinny.AX worm for the Winny file-sharing network. This infection should not be confused with the legitimate svchost.exe found in th ... Read More
|
|
Windows Security Survy
|
svchosl.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Security Update
|
secupd.exe
|
X
|
Added by the Troj/Sepuc-B TROJAN, which installs a service with both service & displaynames being Windows Security Update. ... Read More
|
|
Windows Server Drivers
|
syssrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Server Information
|
servinfo.exe
|
X
|
Added by the W32/Forbot-EN WORM/IRC backdoor Trojan, which also starts a new service "Windows ExplorerTM" with a display name of "Windows Server Infor ... Read More
|
|
Windows Service
|
SERVICES.EXE
|
X
|
Added by the Anker e-mail WORM!
|
|
Windows Service
|
Scanvegw.exe
|
X
|
Added by the Backdoor.Delf backdoor. This infection will attempt to protect itself by terminating known antivirus programs. ... Read More
|
|
Windows Service
|
svvhost.exe
|
X
|
Added by the W32/AGOBOT-HL WORM!
|
|
Windows Service
|
slserv32.exe
|
X
|
Added by the W32/Rbot-KO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Windows Service Agent
|
svchost2.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.gen family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Service Agent
|
spools.exe
|
X
|
Added by the Troj/Agent-GJF Trojan.
|
|
Windows Service Agent
|
SDSEWEW.EXE
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.msnmgnr
|
|
Windows Service Agent
|
spoolvs.exe
|
X
|
Added by the W32/Rbot-GXI worm and IRC backdoor.
|
|
Windows Service Controller
|
services.exe
|
X
|
Added by the W32/Kalel-B mass-mailing worm and backdoor Trojan. Note: This file should not be confused with the legitimate %WinDir%System32services.ex ... Read More
|
|
Windows Service Host
|
scvhost.exe
|
X
|
Added by the SDBOT.N TROJAN!
|
|
Windows Service Host
|
svchost.exe
|
X
|
Added by the CONE.B WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Windows Service Host
|
spools.exe
|
X
|
Unknown Malware.
|
|
Windows Service Manager
|
svcman.exe
|
X
|
Added by the Troj/Dloader-NY trojan.
|
|
Windows Service Manager
|
service.exe
|
X
|
Added by the Troj/Bckdr-IAQ backdoor Trojan. This should not be confused with the legitimate file C:\Windows\System32\services.exe. ... Read More
|
|
Windows Service Manager
|
srvrmgr.exe
|
X
|
Added by the W32/Sdbot-DFU worm and IRC backdoor.
|
|
Windows Service Manager
|
svcmgr32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Service Pack 2 Fix
|
sp2fix32.exe
|
X
|
Added by the W32/Rbot-BYA worm and IRC backdoor.
|
|
windows service pack2
|
svchhost.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Windows Service Processor
|
shdocvw.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the not-a-virus:FraudTool.Win32.PcPrivacyCleaner.t malware. ... Read More
|
|
Windows Service Support Call
|
SVSS32.EXE
|
X
|
This R-Bot WORM varaiant adds the file to allow unauthorized access to an attacker through an open IRC channel. ... Read More
|
|
Windows Service SV
|
sv32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Service Threads
|
svcthreads.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Service Threads
|
svcthreading.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
service.exe
|
X
|
Added by the RANDEX.R WORM!
|
|
Windows Services
|
svchosts.exe
|
X
|
Added by the AGOBOT-KL TROJAN!
|
|
windows services
|
scmsg.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Windows Services
|
spoolsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
servicez.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
service2.exe
|
X
|
Added by the Mal/VB-ZH malware.
|
|
Windows Services 32
|
shzhost.exe
|
X
|
Added by the Troj/SdBot-DNX worm and IRC backdoor.
|
|
Windows Services B-Runner
|
svcbrun.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services B-Runner
|
svcbrunner.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Certification
|
svccert.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Guide
|
svcguide.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Guide
|
svcguides.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Host
|
svchost.exe
|
X
|
Added by the CONE or CONE.E WORMS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
windows services hosts
|
svhosts.exe
|
X
|
Added by the TROJ/SDBOT-YH TROJAN! ... Read More
|
|
Windows Services Jog
|
svcjog.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Jog
|
svcjogg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Joger
|
svcjoger.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Jogging
|
svcjogging.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Joging
|
svcjoging.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Layer
|
sslms.exe
|
X
|
Added by the W32/Rbot-GAH worm and IRC backdoor.
|
|
Windows Services Operation
|
sevices.exe
|
X
|
Added by the W32/Sdbot-DNO worm and IRC backdoor.
|
|
Windows Services Registry
|
services.exe
|
X
|
Identified as a variant of the Trojan.Win32.Agent.axx malware. This infection should not be confused with the legitimate C:\Windows\System32\services ... Read More
|
|
Windows Services Tower
|
svctowers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Tower
|
svctowing.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services Update
|
svch0st.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Windows Servser
|
serviser.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
windows session manager
|
smss32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows session manager subsystem
|
smss.exe
|
X
|
Added by the W32/Kalel-B worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
windows setup manager
|
startupmgr.exe
|
X
|
Added by the W32/Rbot-BFX worm and IRC backdoor.
|
|
Windows Shell
|
shell.exe
|
X
|
Added by the W32/Mytob-CA worm.
|
|
WINDOWS SKY
|
sky.exe
|
X
|
Added by the W32/Mytob-CJ worm. This infection when started connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Smart Manager
|
smart.exe
|
X
|
Added by the RBOT-SL WORM!
|
|
Windows SMB Manager
|
smb32.exe
|
X
|
Added by the W32/Rbot-BHZ worm and IRC backdoor.
|
|
Windows Smrss Service
|
smrss.exe
|
X
|
Added by the W32/Tilebot-X worm and IRC backdoor.
|
|
Windows smss service
|
service.exe
|
X
|
Added by the Troj/Agent-FPY multi-component Trojan. The files C:\Windows\System32\DRIVERS\etc\smss.exe, C:\Windows\System32\DRIVERS\etc\services.exe, ... Read More
|
|
Windows Sound
|
svdhost.exe
|
X
|
A variant of the Worm.Rbot.ABCC family of worms and IRC backdoor Trojans.
|
|
Windows Sound Driver
|
SndMon32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Sound Emulator
|
snd32_win.exe
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
Windows Sound Manager
|
SndMon32.exe
|
X
|
Added by the FORBOT-BU WORM!
|
|
windows sound manager
|
SndMon16.exe
|
X
|
Added by a variant of the W32/FORBOT WORM! ... Read More
|
|
Windows SP System
|
svchost.exe
|
X
|
Identified as a variant of the Trojan.Win32.KillAV.mc malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost. ... Read More
|
|
Windows SP2 Update
|
Sp2update.exe
|
X
|
Added by the WOOTBOT.BS WORM!
|
|
Windows Spool Server
|
spoolsrv.exe
|
X
|
Added by the W32/Sdbot-ACT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows SpoolaPrint Service
|
spoolasrv.exe
|
X
|
Added by the W32/Sdbot-AYD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Spooler
|
SPOOLSRV.EXE
|
X
|
Added by the SPYBOT.P WORM!
|
|
Windows Spooler
|
spool.exe
|
X
|
Added by the W32/Sdbot-ADP worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Spooler Service
|
spoolsrv.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Spooler Services
|
spool.exe
|
X
|
The W32/Agobot-AMO WORM adds this to corrupt the HOSTS file, terminate processes,and open a backdoor on the infected computer. ... Read More
|
|
Windows SpoolPrint Service
|
spoolersrv.exe
|
X
|
Added by the W32/Sdbot-ZT worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Windows spoolservr Service
|
spoolservr.exe
|
X
|
Added by the W32/Sdbot-AAN worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Spoolsre Service
|
spoolsre.exe
|
X
|
Added by the W32/Sdbot-AAE worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
windows spoolsrv service
|
spoolssv.exe
|
X
|
Added by the W32/Sdbot-AWV worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Spoolsrv Service
|
spoolmsv.exe
|
X
|
Added by the W32/Sdbot-ZS worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Windows Spoolsurf Service
|
spoolsurf.exe
|
X
|
Added by the W32/Sdbot-ZZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows SpooltPrint Service
|
spooltsrv.exe
|
X
|
Added by the W32/Sdbot-AYE worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Spoolvvv Service
|
spoolvvv.exe
|
X
|
Added by the W32/Sdbot-AAW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows SQL management 1.33
|
scvhost.exe
|
X
|
Added by the W32/Spybot-OB worm and IRC backdoor.
|
|
windows ssl secondary drivers
|
SSL32Dr.exe
|
X
|
Added by the SDBOT.ASQ ... Read More
|
|
Windows Stand Sound Drivers
|
Sounddrv.exe
|
X
|
Added by the W32/Sdbot-XF WORM/IRC backdoor trojan!
|
|
Windows Startup
|
services21.exe
|
X
|
Added by the AGOBOT-MX WORM!
|
|
Windows Startup 32 Bits
|
sysrun32.exe
|
X
|
Added by a variant of the DARKSUN TROJAN!
|
|
Windows startup service
|
service.exe
|
X
|
Added by the W32/Sdbot-CXA worm and IRC backdoor. W32/Sdbot-CXA spreads to other network computers by exploiting common buffer overflow vulnerabiliti ... Read More
|
|
Windows Sub-Classing Routine Manager
|
scvhost.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows svchost
|
svchost.exe
|
X
|
Added by the W32/IRCBot-ZQ worm and IRC backdoor. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows svchost
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows svchost
|
servicean.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Svchost Authority
|
slsass.exe
|
X
|
Added by the W32/Rbot-UA network worm and IRC backdoor. When started this infection connects to an IRC server where it waits for remote commands to e ... Read More
|
|
Windows Svshost Service Update 32
|
svcsshost32.exe
|
X
|
Added by the W32/Forbot-GD worm.
|
|
Windows SyncroAd
|
SyncroAd.exe
|
X
|
Windupdates adware variant
|
|
WINDOWS SYSTEM
|
skybot.exe
|
X
|
Added by the W32.Mytob.EB@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows System
|
skybotx.exe
|
X
|
Added by the W32.Mytob.FO@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
smsc.exe
|
X
|
Added by the W32/Mytob-BR worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
smoc.exe
|
X
|
Added by the W32.Mytob.FU@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
servises.exe
|
X
|
Added by the W32/Zotob-I worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
servce.exe
|
X
|
Added by the W32/Mytob-EI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
service5.exe
|
X
|
Added by the W32/Mytob-JF worm and backdoor.
|
|
Windows System 32
|
sys32.exe
|
X
|
Identified by Kaspersky antivirus as the Backdoor.Win32.SdBot.xd worm and IRC backdoor. ... Read More
|
|
Windows System 32
|
System32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
windows system backup
|
SysBackup.exe
|
X
|
Unidentified malware
|
|
Windows System Configuration
|
SYSCFG16.EXE
|
X
|
Added by the WISDOOR.Z TROJAN!
|
|
Windows System Control Drivers
|
systcntl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System Control Drivers
|
systemcntl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System Drivers
|
sysretain.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
windows system gateway
|
SPOOLER.EXE
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Windows System Manager
|
sysconf.exe
|
X
|
Added by the W32.Mytob.AL@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM MANAGER
|
spoolsvc.exe
|
X
|
Added by the W32/Mytob-LY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
windows system manager loader
|
smsls.exe
|
X
|
Added by the AGOBOT.TF WORM! ... Read More
|
|
Windows System Restart Sync
|
slrss.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows System Restore Configuration
|
Sblhost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows System Restorer
|
SystemRestorer.exe
|
X
|
Added by the DULOAD.C WORM!
|
|
WINDOWS SYSTEM SCALPE
|
scalpe91.exe
|
X
|
Added by the W32/Mytob-HI mass-mailing worm.
|
|
windows system security
|
sys32.pif
|
X
|
Added by the W32/Rbot-AOL
|
|
Windows System Service
|
system.exe
|
X
|
Added by the W32/Tilebot-JH worm and IRC backdoor. W32/Tilebot-JH spreads to other network computers by exploiting common buffer overflow vulnerabilit ... Read More
|
|
Windows System Service
|
svchost32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows System Tray
|
swhost.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Windows System-Control Drivers
|
syscontrl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System32
|
System32.exe
|
X
|
Added by the W32/Sdbot-ALI worm and IRC backdoor.
|
|
Windows System32 Kernel
|
system32.exe
|
X
|
Added by the W32/Sdbot-AAT worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows System32 Management
|
smsc32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows SystemDown
|
servet.exe
|
X
|
Added by the W32/Delf-ESX worm.
|
|
WINDOWS SYSTEMn
|
servicces.exe
|
X
|
Added by the W32/Mytob-EL worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Systemnmg
|
stagmr.exe
|
X
|
Added by the W32/Mytob-J mass-mailing WORM/IRC backdoor!
|
|
Windows SYStry
|
systry.exe
|
X
|
Added by the W32/SdBot-E backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute ... Read More
|
|
Windows Task Scheduler
|
shtasks.exe
|
X
|
Added by the W32/Tilebot-EB worm.
|
|
Windows Task Scheduler
|
Scheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Taskmanager
|
svchost.exe
|
X
|
Added by the WORM_IMBOT.AC worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Windows Time Updata
|
Svchost.exe
|
X
|
Added by the Troj/Feutel-AG Trojan.
|
|
Windows TM
|
SVPHOST.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Windows UDP Control Center
|
scvhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Updata Server
|
server.exe
|
X
|
Added by the Backdoor.Graybird.N backdoor.
|
|
windows update
|
sychost.exe
|
X
|
Added by the LEOX.B WORM!
|
|
Windows Update
|
sdvhost.exe
|
X
|
W32/Agobot-AEU is a network worm with backdoor functionality.
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the W32/Sdbot-XT WORM.
|
|
Windows Update
|
Sqltob.exe
|
X
|
Added by the WORM_DASHER.A worm.
|
|
Windows Update
|
SICB2.exe
|
X
|
Added by the Troj/Banker-DAC Trojan. Troj/Banker-DAC attempts to steal confidential information entered into online banking websites. ... Read More
|
|
Windows Update
|
scvhost.exe
|
X
|
Added by the Troj/Bckdr-PUT Trojan.
|
|
Windows Update
|
SecretStub.exe
|
X
|
Identified as the Trojan-Dropper.Win32.Sramler.c downloader Trojan.
|
|
Windows Update
|
sqd.exe
|
X
|
A variant of the Backdoor.Win32.Shark.aa backdoor Trojan.
|
|
Windows Update
|
svhost.exe
|
X
|
Added by the Troj/Mdrop-BPW malware-dropping Trojan.
|
|
Windows Update
|
SystemUpgrade.exe
|
X
|
Added by the Troj/Sdbot-DIR worm and IRC backdoor.
|
|
Windows Update
|
ssms.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
scrigz.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
sspool.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update 32
|
slsys.exe
|
X
|
Added by the W32/Forbot-FT worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
Windows Update 63
|
shupd64.exe
|
X
|
Added by the W32/Forbot-GA backdoor worm.
|
|
Windows Update 63
|
shupd64.exe
|
X
|
Added by the W32/Forbot-GA backdoor worm.
|
|
windows update center
|
svthx.exe
|
X
|
Added by the W32.STUBBOT.A WORM! ... Read More
|
|
Windows Update Check
|
syslodr.exe
|
X
|
Identified as a variant of the W32/Rootkit.ASA.dropper rootkit.
|
|
Windows update config
|
svhost.exe
|
X
|
Added by the SDBOT-PF WORM!
|
|
windows update configurator
|
svghost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Update Firewall System
|
spack2.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Service
|
smcg.exe
|
X
|
Added by the SDBOT.QY WORM!
|
|
Windows Update Service
|
SP00ISS.exe
|
X
|
Added by the W32/Sdbot-ZH worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
Windows Update Service 2004/2005
|
systemupdate.exe
|
X
|
Added by the RBOT-JE WORM!
|
|
windows update software
|
system.exe
|
X
|
Added by the TOFGER.BX TROJAN! ... Read More
|
|
Windows Update System
|
SysFile.exe
|
X
|
Added by the W32/Autorun-BQL removable media worm.
|
|
Windows Update System Shell
|
svhostcs32.exe
|
X
|
Added by the W32/Rbot-AAZ WORM/IRC backdoor trojan!
|
|
Windows Updated
|
spoolsae.exe
|
X
|
Added by the W32/Rbot-APM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Updated
|
spoolsac.exe
|
X
|
Added by the W32/Rbot-BBX worm and IRC backdoor.
|
|
Windows Updater
|
svigost.exe
|
X
|
W32/Rbot-VS is classified as a worm.
|
|
Windows Updater
|
sdsys.exe
|
X
|
Added by the W32/Forbot-JG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Updater
|
svchost.bat
|
X
|
Added by the Mal/MSIL-AZ malware.
|
|
Windows Updates
|
svihost.exe
|
X
|
Added by the Troj/Backdr-DD Trojan.
|
|
windows updatess
|
svchots.exe
|
X
|
Added by the Troj/Agent-STW Trojan.
|
|
Windows upgrade
|
svchost.exe
|
X
|
Added by the Antivirus 2011 Edition limitée rogue anti-spyware program. This infection should not be confused with the legitimate C:\Windows\System32\ ... Read More
|
|
Windows USB Monitor
|
servupdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Verification Help Tool
|
Svchst.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Version Service
|
sysvers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Wave Plugin
|
svshost.exe
|
X
|
A variant of the SdBot.awe family of worms and IRC backdoor Trojans.
|
|
Windows WorkGroup
|
svrhost.abc
|
X
|
Added by the Troj/Bckdr-QMD removable media worm.
|
|
Windows XP
|
servet.exe
|
X
|
Added by the Troj/Dloadr-AYB Trojan.
|
|
Windows Xp Service Pack 2
|
svchost.exe
|
X
|
Added by the Troj/Xplos-A backdoor Trojan.
|
|
windows-server
|
srystem.bat
|
X
|
Added by the Troj/Feutel-CK backdoor Trojan.
|
|
Windows-System
|
System32.exe
|
X
|
Added by the LOGPOLE.C WORM!
|
|
Windows-Xordate
|
sox7.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows32
|
system.exe
|
X
|
Unknown malware.
|
|
windows32
|
smss.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Trojan.Win32.Autoit.aqh malware. ... Read More
|
|
Windows32 Host Service Manager
|
smsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
windowsagent
|
sysexhook.exe
|
X
|
Added by the GOP keyboard logger/TROJAN! ... Read More
|
|
WindowsAPI.DLL
|
Server5.exe
|
X
|
Added by the "Fear and Hope" TROJAN!
|
|
WindowsAudio
|
systemupd.exe
|
X
|
Added by the Troj/Agent-TH Trojan.
|
|
WindowsDiskEvt
|
svcsvh32.exe
|
X
|
Added by the roj/Stinx-U backdoor Trojan.
|
|
WindowsExplorer
|
svchost.exe
|
X
|
Added by the MessengerBlocker rogue security software. MessengerBlocker is a misleading application that may periodically spam the user's computer wit ... Read More
|
|
WindowsFirewall
|
svclcheck.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
windowsflashbrg
|
sqldata1.exe
|
X
|
Added by a variant of the AGENT-IC TROJAN! ... Read More
|
|
WindowsHelpService
|
service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsProxyService
|
sox1.exe
|
X
|
Added by the Troj/Proxyser-S backdoor Trojan.
|
|
WindowsService
|
service.exe
|
X
|
Added by the W32/Tilebot-K worm.
|
|
WindowsServices
|
service.exe
|
X
|
Added by the W32.Folmess worm. W32.Folmess is a worm that spreads by copying itself to all folders on the compromised computer. This infection should ... Read More
|
|
WindowsServicesStartup
|
svchost.exe
|
X
|
Added by the W32.Ecup worm which spreads through filesharing networks. This infection should not be confused with the legitimate Microsoft file c:\Win ... Read More
|
|
WindowsSp2
|
sp2.exe
|
X
|
Added by the W32.Posse worm.
|
|
WindowsSystem32
|
svchosts.exe
|
X
|
Added by the Troj/Agent-EDA backdoor Trojan. This infection will connect to an IRC server where it will wait for commands to execute. ... Read More
|
|
WindowsUpdate
|
svchost.exe
|
X
|
Added by the ASTEF or RESPAN WORMS or AGENT-V TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startu ... Read More
|
|
WindowsUpdate
|
Strad.exe
|
X
|
Added by the W32/Culler-D worm.
|
|
WindowsUpdateDirect
|
syssvcc.exe
|
X
|
Added by the Troj/Dupa-C dropper Trojan.
|
|
WindowsUpdateNT
|
svwhost.exe
|
X
|
Added by the Troj/Shellot-B backdoor Trojan.
|
|
WindowsUpdatesvchostss
|
svchostss.exe
|
X
|
Added by the Troj/Agent-HZ Trojan. This infectiona also installs the file C:\Windows\System32\helper\svchostss.exe. ... Read More
|
|
WindowsXp Security
|
spool.exe
|
X
|
Added by the W32/Rbot-GRK worm and IRC backdoor.
|
|
WindowsXPserv
|
svcnxp32.exe
|
X
|
|
|
WindowSystemMonitor
|
scrhost.exe
|
X
|
Added by the W32/Tilebot-DV worm and IRC backdoor.
|
|
Windows_Folder
|
Server4.exe
|
X
|
Added by the Troj/Hupigon-SK backdoor Trojan.
|
|
Windows_Serivce
|
SERVICE.exe
|
X
|
Added by the WOOTBOT.AH WORM!
|
|
Windows_Updates
|
svthost.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows_updatesafe
|
Server.exe
|
X
|
Added by the Troj/Bckdr-QIS backdoor Trojan.
|
|
WinDR
|
SysDre.exe
|
X
|
Added by the W32/Dref-H email worm and IRC backdoor..
|
|
WinDVR SchSvr
|
SchSvr.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
WinINet
|
services.exe
|
X
|
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:
c:\WINDOWS\ConnectionStatus\netslot.n ... Read More
|
|
winl2.0
|
sysprot.exe
|
X
|
Added by the Troj/Fearles-D Trojan.
|
|
WinLd01Service
|
svchost.exe
|
X
|
Added by the TROJ_DLOADER.NKY downloading Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
Winlogin.exe
|
steam.exe
|
X
|
Added by a variant of the AGENT.AH TROJAN!
|
|
winlogo
|
svshost.exe
|
X
|
Added by the CXmal/Behav-B malware.
|
|
winlogon
|
svchost.exe
|
X
|
Added by the W32/AHKHeap-A worm. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. You can delete the e ... Read More
|
|
winlogon
|
system.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf.cns malware.
|
|
Winlogon
|
scssrr.exe
|
X
|
Added by the Troj/Agent-LXB Trojan.
|
|
Winlogon Shell
|
svchost.exe
|
X
|
Added by the W32.Kipis.M WORM! ... Read More
|
|
WinLongLdr
|
smsonx32.exe
|
X
|
Added by the Troj/Stinx-I Trojan.
|
|
WinLsass
|
servicec.exe
|
X
|
|
|
WinManager
|
schost.exe
|
?
|
??
|
|
WinMessenger
|
syshost.exe
|
X
|
Added by the W32/Opanki-E worm and IRC backdoor.
|
|
Winmgr.exe
|
scvhost.exe
|
X
|
Added by the AGOBOT.AFG WORM!
|
|
winnt DNS ident
|
svhost.exe
|
X
|
A variant of the W32/Rbot-BAU family of worms and IRC backdoor Trojans.
|
|
winomc
|
svchost.exe
|
X
|
Added by the CXmal/FkSvc-Q malware.
|
|
WinPCDoctor
|
SysRep.exe
|
X
|
The WinPCDoctor rogue anti-spyware program. This program is installed via the use of malware and display false or exaggerated infection results. ... Read More
|
|
winphonics7536
|
setups.exe
|
X
|
Added by a variant of the MUTIN-C TROJAN!
|
|
WinProfile
|
sndcfg16.exe
|
X
|
Added by the SNDC.A WORM!
|
|
WinProt
|
server.exe
|
X
|
Added by the CHUPACABRA TROJAN!
|
|
WinReg
|
svchost.exe
|
X
|
Added by the Troj/Zapchas-DB Trojan.
|
|
winreg_32
|
Sysdll.exe
|
X
|
Added by the Troj/Dloader-IJ Trojan! File is found in the Windows folder.
|
|
winreg_32
|
svchosst.exe
|
X
|
added by the Troj/Bancos-CE TROJAN!
|
|
WINRUN
|
svchost32.exe
|
X
|
Added by the W32/Mytob-AI, a worm that harvests email addresses from files and the Windows Address Book. It also has backdoor trojan functionality. ... Read More
|
|
wins update 32
|
services32.exe
|
X
|
Added by the W32/Forbot-FN ... Read More
|
|
Winsecure Antivirus
|
SecureAntivirus.exe
|
X
|
Added by a Spybot worm variant. Attempts to connect to the IRC server bckup7.rioxx.ms to wait for commands. ... Read More
|
|
WinSecured32
|
ssmr.exe
|
X
|
Added by a variant of the FORBOT WORM!
|
|
winserver
|
Server.txt.vbs
|
X
|
Added by the DELTAD.A WORM!
|
|
winServer
|
System_dll.exe
|
X
|
Added by the Troj/GrayBrd-H backdoor Trojan.
|
|
WinService Host
|
scvhosts.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
WinService32
|
ssmgr.exe
|
U
|
007 Spy Software - "stealthy monitoring program which allows you to secretly track all activities of computer users and automatically deliver logs to ... Read More
|
|
WinService32
|
svchost.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan-Spy.Win32.SpyAnyTime.a Trojan. This infection should not be confused with the legitimate ... Read More
|
|
winsock
|
svch0st.exe
|
X
|
Added by the SAGE-A WORM!
|
|
Winsock2 driver
|
SDJOIJE.EXE
|
X
|
Added by the SPYBOT.DR TROJAN!
|
|
Winsock2 driver
|
SPOLSV.EXE
|
X
|
Added by the SPYBOT-CM WORM!
|
|
Winsock2 driver
|
sysreq.exe
|
X
|
Added by the W32/SPYBOT-CC WORM
|
|
Winsock2 driver
|
svchorsst.exe
|
X
|
Added by the W32/Spybot-EE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. This infection ... Read More
|
|
Winsock2 driver
|
SYSTEM32.EXE
|
X
|
Added by the W32/Spybot-EG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Winsock2 driver
|
svhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 driver
|
sys32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 wqr1s
|
SCVVHOST.EXE
|
X
|
Added by the W32/Rbot-FSN worm and IRC backdoor.
W32/Rbot-FSN includes functionality to:
- access the internet and commu ... Read More
|
|
Winsock32 driver
|
Sdjoije.exe
|
X
|
Added by the SPYBOT.B WORM!
|
|
Winsock32 driver
|
system32.exe
|
X
|
Added by the Troj/IRCBot-VT worm and IRC backdoor.
|
|
Winsock32driver
|
sp2XPupdate.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
winsock32driver
|
svchhost.exe
|
X
|
Added by the BKDR_HACKARMY.I TROJAN! ... Read More
|
|
Winspector_s
|
sup2.lnk
|
X
|
Added by the TROJ_MULDROP.GP dropper Trojan.
|
|
Winspool
|
spoolsvr.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
WinSrv
|
SHIZZLE.EXE
|
X
|
Added by the HOBBIT.C WORM!
|
|
winsrv3
|
services.exe
|
X
|
Added by the W32/Nafbot-A P2P worm. This infection will also modify your hosts file so that you are unable to reach various antivirus vendor's web si ... Read More
|
|
winssystem
|
syssmss.exe
|
X
|
Added by the BKDR_DELF.IG TROJAN! ... Read More
|
|
WinStart
|
services.exe
|
X
|
Added by the W32/Sober.p@MM worm. To remove this infection, reboot into safe mode and delete C:\WINDOWS\Connection Wizard\Status\services.exe. Then ... Read More
|
|
Winstos
|
SVCH0S.EXE
|
X
|
Added by the W32/Autorun-EA removable media worm.
|
|
winsupdate
|
svchost.exe
|
X
|
Added by the Troj/Agent-RHZ Trojan. This file should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
winsys
|
syschost.exe
|
X
|
Added by an unidentified TROJAN!
|
|
WinSys
|
system.exe
|
X
|
Added by the W32.Daprosy worm. W32.Daprosy is a worm that spreads through mapped, fixed, and removable drives. It may also spread through email. ... Read More
|
|
Winsys
|
SysWindows.exe
|
X
|
Added by the W32/Rimecud-BD worm.
|
|
winsystem.sys
|
smss.exe
|
X
|
Added by the W32/Sober-K infection. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
WinSysW
|
swchost.exe
|
X
|
Added by the TSPY_ONLINEG.KNM password-stealing Trojan.
|
|
WINTASK
|
sys32.exe
|
X
|
Added by a variant of the Mytob mass-mailing WORM/IRC backdoor Trojan!
|
|
WINTASK
|
scvhost.exe
|
X
|
Added by the W32/Mytob-I mass-mailing worm with IRC backdoor functionality..
|
|
wintask dll32
|
smsrss.exe
|
X
|
Added by the W32.MYTOB.BS WORM! ... Read More
|
|
WINTASKMGR
|
sp2winfix.exe
|
X
|
Added by the WORM_MYTOB.KJ mass-mailing worm and IRC backdoor.
|
|
Winup
|
svchost.exe
|
X
|
Added by the Troj/DelCanti-B Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
WinUpdaterstd
|
svchost.exe
|
X
|
Added by the Troj/VBObfus-E Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
WinXPService
|
System
|
X
|
Added by the Troj/Zapchas-EJ backdoor Trojan.
|
|
Win_api_driver
|
system.exe
|
X
|
Added by the REVIRD TROJAN!
|
|
Wireless Zero Configuration WZCSVCRpcLocator
|
Setupw.exe
|
X
|
Added by the Troj/Kango-F Trojan.
|
|
wl
|
svvosts.exe
|
X
|
Added by the Troj/PWS-ACU password-stealing Trojan.
|
|
wl
|
svhost32.exe
|
X
|
Added by the Troj/WowPWS-AF Trojan.
|
|
wlinles
|
svchost.exe
|
X
|
Added by the W32/Liji-A virus.
|
|
wm
|
svhost32.exe
|
X
|
Added by the TSPY_LINEAGE.CIS password-stealing Trojan for the online game Lineage. ... Read More
|
|
WMAudio
|
services.exe
|
X
|
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
WMI Standard Event Consumer - Scripting
|
scrcons32.exe
|
X
|
Added by the W32/Rbot-GRD worm and IRC backdoor.
|
|
wnddrv
|
svchost.exe
|
X
|
Aded by an unidentified TROJAN! - NOTE - this file is placed in the Winnt or Windows folder, and should NOT be confused with the legitimate Windows ... Read More
|
|
wnxpupdate
|
spvspool.exe
|
X
|
Added by the W32.Dabora.B@mm mass-mailing worm.
|
|
Wollf Remote Manager
|
svchost32.exe
|
X
|
Added by the Troj/Bdoor-ABJ backdoor Trojan.
|
|
Working System Analyzer
|
syswork.exe
|
X
|
This is a SDBot variant infection. These types of infections are backdoor trojans. It also creates a Windows Service. ... Read More
|
|
Working System Analyzer
|
syswork.exe
|
X
|
This is a SDBot variant infection. These types of infections are backdoor trojans. It also creates Run registry entries to start this file. ... Read More
|
|
ws2_32
|
svchst.exe
|
X
|
Added by the Troj/Voken-A TROJAN, it will terminate anti-virus and security-related processes. ... Read More
|
|
WSAConfiguration
|
svchostt.exe
|
X
|
Added by the AGOBOT.ZT WORM!
|
|
wsock32
|
svchost.exe
|
X
|
Added by the Troj/Horst-A keylogging trojan. This infection logs your keystrokes to a file named c:\windows\system32\dll.txt ... Read More
|
|
WSSVC
|
smsc.exe
|
X
|
Added by the W32/AutoRun-AGA removable media worm.
|
|
WSVCHO
|
svhost.exe
|
X
|
Added by the W32/Spybot-OQ worm.
|
|
WSVCS
|
SERVICES.EXE
|
U
|
Added by the Spyware.WALogge surveillance program. If you did not install this program on your computer then it should be removed. ... Read More
|
|
WTIndicator
|
SchedInd.exe
|
U
|
WinTask - software that automates a variety of routine tasks quickly and simply
|
|
wupd
|
symcsvc.exe
|
X
|
Adware downloader/installer, CoolWebSearch parasite related ... Read More
|
|
Wut Nigga
|
syswork.exe
|
X
|
A service created by W32/Forbot-FZ and bearing the display name of Working System Analyzer. ... Read More
|
|
wxpdrivers
|
svchost.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
X-Grabber
|
sswizard.exe
|
N
|
|
|
xcxdsaa7
|
slcskxsdl7.exe
|
X
|
Added by the Troj/OnLineG-K password-stealing Trojan for online games.
|
|
xem
|
services.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.CWS.am downloader Trojan. This infection should not be confused with the legitimate C:\Windows\ ... Read More
|
|
XNSearchAssistant
|
SrchAsst.exe
|
X
|
iWon Search Assistant - spyware
|
|
xor
|
svchost.exe
|
X
|
Added by the XORDOOR TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
XP Backup
|
smtxp.exe
|
X
|
Identified as a variant of Backdoor.Win32.SdBot.aad worm and IRC backdoor.
|
|
XP System
|
systemxp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Xploit Server
|
server.exe
|
X
|
Added by the Troj/Bckdr-JUF information stealing Trojan.
|
|
XPPrintSpool
|
spoolsv.exe
|
X
|
Identified as the Backdoor.IROffer variant malware.
|
|
Xpsystem
|
SERVICES.EXE
|
X
|
Added by the DAEMOZ.A TROJAN! Note - this is not the legitimate services.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
xpsystem
|
services.exe
|
X
|
CoolWebSearch parasite variant
|
|
xp_system
|
services.exe
|
X
|
Added by the KREPPER-G TROJAN! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
xp_system
|
services.exe
|
X
|
Added by the Adware.CWSConyc hijacker.
|
|
xrunwin
|
svchost.exe
|
X
|
Added by the Troj/Privoxy-B proxy Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
xseaqwt
|
slipmenu1.scp
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
xxcm
|
sys.exe
|
X
|
Added by the W32/Krisworm-A worm, it will be found in the %Windir%Fonts folder. ... Read More
|
|
xy
|
svhost32.exe
|
X
|
Added by the Troj/Lineag-ADH password-stealing Trojan for the online game Lineage. ... Read More
|
|
y1959sar
|
sv711224030r.exe
|
X
|
Added by the W32/Brontok-AK mass-mailing worm.
|
|
Yahoo Messenger
|
svchost32.exe
|
X
|
Added by the WORM_SOHANAD.AL worm.
|
|
Yahoo Messengger
|
SVICHHOST.exe
|
X
|
Added by the Troj/Tiotua-C Trojan.
|
|
Yahoo Messengger
|
SSVICHOSST.exe
|
X
|
Added by the W32/Sohana-R worm.
|
|
Yahoo Messengger
|
SCVHOST.exe
|
X
|
Added by the W32.Pitin.C worm. W32.Pitin.C is a worm that downloads files from the internet and copies itself to the local drive and network shares. T ... Read More
|
|
Yahoo Messengger
|
SSCVIHOST.exe
|
X
|
Added by the W32/Sohana-W worm.
|
|
Yahoo Messengger
|
SSVICSSHOST.exe
|
X
|
Added by the W32.Imaut.AA worm.
|
|
Yahoo Messengger
|
SCVVHSOT.exe
|
X
|
Added by the W32/SillyFDC-AE worm.
|
|
Yahoo Messengger
|
SSVICSSHOST.exe
|
X
|
Added by the W32.Imaut.AA worm. W32.Imaut.AA is a worm that spreads through Yahoo! Instant Messenger and through network shares and removable drives. ... Read More
|
|
Yahoo Messengger
|
SCVHSOT.exe
|
X
|
Added by the W32/Hakag-A worm.
|
|
Yahoo Messengger
|
SSCVIIHOST.exe
|
X
|
Added by the W32/Sohana-Y spyware worm.
|
|
Yahoo Messengger
|
SVICHOOST.exe
|
X
|
Added by the W32/Sohana-AE worm.
|
|
Yahoo Messengger
|
scvhosts.exe
|
X
|
Added by the W32/Sohana-AH spyware worm.
|
|
Yahoo Messengger
|
scvshosts.exe
|
X
|
Added by the W32/Trax-A worm.
|
|
Yahoo Messengger
|
system3_.exe
|
X
|
Added by the W32/AutoRun-AOA removable media worm.
|
|
Yahoo Messengger
|
sichost.exe
|
X
|
Added by the W32/Yahlov-J worm.
|
|
Yahoo Patcher!
|
sectoriate.exe
|
X
|
Added by the W32.Haytap@mm mass-mailing worm that sends itself to Yahoo messenger contacts. ... Read More
|
|
Yahoo!7 Messenger
|
svchost.exe
|
X
|
Added by the W32/Tiotua-O worm.
|
|
YahooSpyServer
|
svchost.exe
|
X
|
Added by the Troj/PWS-AFA password-stealing Trojan. This infection should not be confused with the legitimate C:\Windows\System32\svchost.exe file. ... Read More
|
|
ycnbsdgv
|
Shari.sys
|
X
|
Added by the Troj/Agent-GHB Trojan.
|
|
yemarvd
|
sysmon.exe
|
X
|
Added by the Troj/Agent-CH backdoor trojan. This infection modifies your HOSTS file to disable the connection to various antivirus software update sit ... Read More
|
|
YeppStudioAgent
|
SamsungMediaStudioAgent.exe
|
N
|
Software bundled with some Samsung MP3 players that allows you to manage your music collection. ... Read More
|
|
YSearchProtection
|
SearchProtection.exe
|
U
|
Related to Yahoo Search Protection. This program will alert you if another program attempts to change your browser's default search engine to somethi ... Read More
|
|
YVPB video output
|
svjvpn.sys
|
X
|
A variant of the Troj/Haxdor-Gen rootkit.
|
|
Zone Labs Client Ex
|
svchost.exe
|
X
|
Added by the NETSKY.F WORM! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Zone system
|
szchost.exe
|
X
|
Added by the MULTIDR-AC TROJAN!
|
|
Zonesoft Cleaner
|
svmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
zSecurity Service
|
szsvc.exe
|
X
|
Added by the W32/Sdbot-DAB worm and IRC backdoor. The worm spreads through network shares protected by weak passwords, MS-SQL servers and through vari ... Read More
|
|
zsms
|
smss.exe
|
X
|
Added by the Troj/Bancos-CK Trojan. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
zsmss
|
smss.exe
|
X
|
Added by the Troj/Bancos-DD trojan.
|
|
zSPGuard
|
Spguard.exe
|
U
|
"StartPage Guard (SPG) protects your PC from cyberscam, by detecting and preventing any unauthorized changes to your internet browser's Start and Sear ... Read More
|
|
ZTEScandal.A
|
svchost32.exe
|
X
|
Added by the W32/AutoRun-XU removable media worm.
|
|
ZtgServerSwitch
|
server.vbs
|
X
|
ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent a ... Read More
|
|
zztp
|
svchost.exe
|
X
|
Added by the Trojan.Tannick.B infection.
|
|
zzzCamlnSuitelll
|
setup.exe 46***
|
?
|
??
|
|
zzzhpsetup
|
setup.exe
|
?
|
??
|
|
[not used]
|
svohost.exe
|
X
|
This dumaru variant attempts to terminate antivirus programs so that it remains undetected. It is a mass-mailing worm with backdoor and keylogging ca ... Read More
|
|
[not used]
|
svchost.exe
|
X
|
Added by the W32/Tex-A mass-mailing worm.
|
|
[not used]
|
sound_drive16.exe
|
X
|
Added by the Troj/Bdoor-GP backdoor trojan.
|
|
[not used]
|
sys16.exe
|
X
|
Added by the Troj/Bancos-BZ password stealing trojan. This trojan attempts to steal the account information of Brazilian bankes. ... Read More
|
|
[not used]
|
svcmgr32.exe.exe
|
X
|
Added by the W32/Oscabot-D worm. When started, this infection connects to an IRC where it waits for remote commands to execute. ... Read More
|
|
[not used]
|
setup32.exe
|
X
|
Added by the W32/Rbot-AFJ worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
[not used]
|
svhost32.exe
|
X
|
Added by the Troj/Lineage-AB trojan.
|
|
[not used]
|
svchsot.exe
|
X
|
Added by the Troj/GWGhost-N Trojan.
|
|
[not used]
|
STFU.exe
|
X
|
Added by the W32/Rirc-E worm and IRC backdoor.
|
|
[not used]
|
svcroot.exe
|
X
|
Added by the Troj/Heles-B keylogger Trojan.
|
|
[not used]
|
svchsto.exe
|
X
|
Added by the Troj/GWGhost-R information stealing Trojan.
|
|
[not used]
|
System.com
|
X
|
Added by the Troj/LegMir-BG keylogger Trojan. It also creates the file CQQ_Fileqq_dll.dll. ... Read More
|
|
[not used]
|
systcom32.exe
|
X
|
Added by the W32/Spybot-ED worm. When started, this infection connects to a remote IRC server where it waits for commands to execute ... Read More
|
|
[not used]
|
stealth.worm.exe
|
X
|
Added by the PE_THEALS.A file infector. This infection also utilizes rootkit technology. ... Read More
|
|
[not used]
|
stivc.exe
|
X
|
Added by the Troj/Agent-FN Trojan.
|
|
[not used]
|
svchostl.exe
|
X
|
Added by the W32/Blaster-M worm.
|
|
[not used]
|
syscom832.exe
|
X
|
Added by the W32/Spybot-EN worm.
|
|
[not used]
|
syscom32.exe
|
X
|
Added by the W32/Spybot-EM worm and IRC backdoor.
|
|
[not used]
|
sembako-cfzjkmg.exe
|
X
|
Added by the W32/Brontok-M worm.
|
|
[not used]
|
sembako-cfzjmmg.exe
|
X
|
Added by the W32/Brontok-N worm.
|
|
[not used]
|
sfcrt20.exe
|
X
|
Added by the Troj/PPdoor-AP backdoor Trojan.
|
|
[not used]
|
System Idle Procese.exe
|
X
|
Added by the Troj/DDoS-E Trojan.
|
|
[not used]
|
spdr.exe
|
X
|
Added by the Troj/Zagaban-E Trojan.
|
|
[not used]
|
SandboxieHelper.dll
|
Y
|
Installed by the Sandboxie security software.
|
|
[not used]
|
svchr8k.dll
|
X
|
Added by the Troj/Small-BVZ Trojan.
|
|
[not used]
|
systf0.dll
|
X
|
Added by the Troj/Small-BRK Trojan.
|
|
[not used]
|
syst6he.dll
|
X
|
Added by the Troj/Small-BXG Trojan.
|
|
[not used]
|
syst24.dll
|
X
|
Added by the Troj/Small-BXF Trojan.
|
|
[random name]
|
Svchosts.exe
|
X
|
Added by the SDBOT.N TROJAN!
|
|
[random name]
|
se?vices.exe
|
X
|
PurityScan adware variant.
|
|
[random]
|
swpolws.exe
|
X
|
Added by the Troj/Sdbot-ER backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
[system]
|
services.exe
|
X
|
Identified as a variant of the W32.Mandaph worm.
|
|
[unknown name]
|
SRMER32.EXE
|
X
|
Added by the W32/Sdbot-IG worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
[unknown name]
|
SERVSYS32.EXE
|
X
|
Added by the W32/Sdbot-KQ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
[unknown]
|
SYSCDCFG32.EXE
|
X
|
Added by the W32/SdBot-GI worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
[unknown]
|
SPOOLVLC.EXE
|
X
|
Added by the W32/Sdbot-HD worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
[Unknown]
|
socketx113.sys
|
X
|
A variant of the Haxdoor rootkit.
|
|
[VALUE]
|
svcwinra.exe
|
U
|
Added by the Spyware.Systemsurv surveillance software. Spyware.Systemsurv is a program which monitors keystrokes, Web sites visited and IM conversatio ... Read More
|
|
[various names]
|
svchostss.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
[various names]
|
shch.exe
|
X
|
Premium rate adult content dialler
|
|
[Various Names]
|
Svchost.exe
|
X
|
Added by the W32.Welchia.K worm.
|
|
[Various Names]
|
SYSTRAV.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
stuffmon.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
sound64.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
Shaitan1678.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
sysmon12.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
srbho.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
sysconf16.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
StartCpl.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
scanSYS.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
slamm.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
SAPSTR.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
SetupExeDll.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
SpyElim.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
Serviceprocess.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
startman.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
ssweeper.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
sbin.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
syspanel.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
SysEntry.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
StatusCheck.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
SysSupport.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
sysmon12.exe
|
X
|
Part of the Wareout infection as described here.
|
|
_Services.dll
|
SMSS.EXE
|
X
|
Added by the W32/Sober-L worm. This infection should not be confused with the legitimate C:\Windows\System32\smss.exe. ... Read More
|
|
_Setv
|
Setv.com
|
X
|
Added by the W32.Besam worm.
|
|
_svchost.con
|
svchost.com
|
X
|
Added by the ERKEZ.C WORM!
|
|
_SystemBoot
|
services.exe
|
X
|
Added by the Sober.Q mass-mailing worm. This worm does not spread itself via email but rather sends out political messages in German or English depend ... Read More
|
|
_SystemCheck
|
services.exe
|
X
|
Added by the W32/Sober-M WORM!
|
|
_WinCheck
|
services.exe
|
X
|
Added by the WORM_SOBER.AD mass-mailing worm. Note: This should not be confused with the legitimate services.exe in the Windows system folder. ... Read More
|
|
_WinData
|
services.exe
|
X
|
Added by the W32/Sober-AD mass-mailing worm. This infection should not be confused with the legitmate C:\Windows\System32\services.exe file. ... Read More
|
|
_Windows
|
services.exe
|
X
|
Added by the W32.Sober.X@mm mass-mailing worm.
|
|
_WinINet
|
services.exe
|
X
|
Added by the W32/Sober.r@MM mass-mailing worm. The following files are created by this infection:
c:\WINDOWS\ConnectionStatus\netslot. ... Read More
|
|
_winstart
|
services.exe
|
X
|
Added by the W32.SOBER.O WORM! - Note - this file is placed in a "%Windir%\Connection Wizard\Status folder, and should NOT be confused with the legi ... Read More
|
|
_winsystem.sys
|
smss.exe
|
X
|
Added by the W32/Sober-K infection.
|
|
{01BE3276-1420-45b5-9762-172C5C184EB7}
|
svchstb.dll
|
X
|
Added by the Trojan.Nethell Trojan.
Trojan.Nethell is a Trojan horse with keylogging capabilities that can download commands from a remote comp ... Read More
|
|
{01d8d081-0f76-4ab5-b5e4-9b23a709670e}
|
sacskza.dll
|
X
|
A Trojan used by the rogue anti-spyware program VirusBursters. This Trojan, when installed, will display fake security alerts on your taskbar and inst ... Read More
|
|
{05678D88-71DC-B123-1C5C-A2194F963210}
|
smssm.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{05CD0D77-4947-4a56-94FA-0DF0DC644D7B}
|
sysqyzwud.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{081FE200-A103-11D7-A46D-C770E4459F2F}
|
SysModule64.DLL
|
X
|
Added by the Troj/LegMir-AP Trojan. This infection also creates the file C:\windows\system32\expl0rer.exe. ... Read More
|
|
{0E74444C-3F09-0401-0105-010602030302}
|
symproc32.exe
|
X
|
Identified as the Backdoor.Prorat.CH backdoor and keylogger. Once you remove this infection it is advised that you change all of your passwords. ... Read More
|
|
{1493AB5B-51ED-5A06-0805-040306030708}
|
sysreg.dll
|
X
|
Identified as the Trojan-PWS.Win32.Steam.l password-stealing malware.
|
|
{14C0A9F9-5512-43BA-87FA-ED4860306453}
|
sysutils32.dll
|
X
|
Added by the Troj/Lineag-FL Trojan.
|
|
{157627A6-2A10-4aa1-B97F-90B8DC6F24AC}
|
sysqkmwfedz.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{15A74989-5015-B6D4-0008-080602010204}
|
shelldrv.exe
|
X
|
Added by the Troj/Bckdr-QHJ backdoor Trojan.
|
|
{16F5021C-69C7-F9BF-0804-020805080704}
|
Svhosters.exe
|
X
|
Added by the Backdoor.Darkmoon.E backdoor.
|
|
{1961D16F-FA65-2C7F-0856-602C3407B1E2}
|
svchoster.exe
|
X
|
Added by the Troj/Cheuko-D Trojan.
|
|
{196F6BD4-27EA-7FAF-F992-9342843C53B9}
|
Systemx.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{1A6C58F2-CB1A-3465-158C-AB34A8FC14F1}
|
shaman.dll
|
X
|
Identified by Kaspersky as the Trojan-Spy.Win32.Delf.aan password-stealing Trojan. ... Read More
|
|
{1CB622F9-7299-4245-0705-080208070506}
|
SecSystem.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.dzm malware.
|
|
{2250D9C6-4CC7-4826-8EFD-1D04AFC7F7F0}
|
SysInfo.DLL
|
X
|
Added by the Troj/LegMir-AA password-stealing Trojan.
|
|
{28ABC5C0-4FCB-11CF-AAX5-21CX1C642122}
|
sweet.exe
|
X
|
Added by the removable media worm.
|
|
{2bf41070-b2b1-21d1-b5c1-0305f4055515}
|
svcr.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{2C70168B-97CE-4f31-B85D-1FEC5002721D}
|
sysawpbkvnq.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{2C70168B-97CE-4f31-B85D-1FEC5002721D}
|
sxpgknrwva.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{2C70168B-97CE-4f31-B85D-1FEC5002721D}
|
sysavxjgdu.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{354558B1-932C-7AA1-7E39-339591EDCC80}
|
svhoost.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{357AA41A-B7A8-4632-A27D-5B980B25CF43}
|
services.exe
|
X
|
Added by the Adware.Clickbank adware. This should not be confused with the legitimate C:\Windows\System32\svchost.exe. ... Read More
|
|
{35TGC6Z0-4FuO-31XF-AVC2-21CX1Z6Og23}
|
STReLjaSTVo.exe
|
X
|
Added by the W32.Ircbrute.D worm. W32.Ircbrute.D is a worm that spreads by copying itself to removable drives and opens a back door on the compromised ... Read More
|
|
{4535F32F-D292-B784-7926-7419ADE0A94B}
|
scp32.exe
|
X
|
Added by the Troj/Delf-EXC Trojan.
|
|
{54277B55-E73D-3C13-43DD-6B03660716FA}
|
sydkey.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{57B86673-276A-48B2-BAE7-C6DBB3020EB8}
|
shellexecutehook.dll
|
Y
|
|
|
{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}
|
SASSEH.DLL
|
Y
|
Part of the Super Antispyware security software.
|
|
{6076d2b1-634c-4685-843b-f826045ea5dc}
|
syycum.dll
|
X
|
A Trojan used by the rogue anti-spyware program VirusBurst. This Trojan, when installed, will display fake security alerts on your taskbar and install ... Read More
|
|
{6211D3F0-B61E-D9E3-2088-F6286B0D22AC}
|
setup40.exe
|
X
|
A variant of the Bifrose Trojan.
|
|
{63E16148-3A71-99D9-2524-FE3574645AFF}
|
ssopure.exe
|
X
|
Added by the Troj/DwnLdr-GTH Trojan.
|
|
{66186F05-BBBB-4a39-864F-72D84615C679}
|
sockins32.dll
|
X
|
Added by the W32/Dwnldr-HCP worm. Do not delete C:\Windows\System32\rundll32.exe as it is a legitimate Microsoft file. ... Read More
|
|
{6E44887F-5214-41F2-AB46-4728735C4CC6}
|
system16.sys
|
X
|
Added by the Troj/QQPass-AKG password-stealing Trojan.
|
|
{741CC5B5-242A-F54F-7F3E-E0B90901289B}
|
system36.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{758F9C4A-0FD5-A53B-9CCC-0D9064A932D4}
|
scan.exe
|
X
|
|
|
{78847374-8323-FADC-B443-4732ABCD3787}
|
sidjgzy.dll
|
X
|
Added by the PWS-OnlineGames.i password-stealing Trojan.
|
|
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3}
|
sxjecknqhu.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3}
|
syssfzvakqg.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{78B578D7-BCE1-4d83-9CD4-195BC34D8CB3}
|
syspyukrazv.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{7DD4A7AC-A3F1-4495-884A-7947C5B89108}
|
sysahbecjh.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{7F4D1081-25FD-44F5-99C6-FF271CFB7EC2}
|
SysInfo1.dll
|
X
|
Added by the Troj/QQSpy-Gen Trojan.
|
|
{89aef01d-d237-49c7-84dc-4e1904c1fd31}
|
sbnudh.dll
|
X
|
A file used by the rogue antispyware app, SpyFalcon, to issue fake security alerts on your taskbar. ... Read More
|
|
{93D836F9-E761-F95D-E69D-A6FB1F9718F7}
|
system32:netde.exe
|
X
|
Added by the Backdoor.Darkmoon.F backdoor. Backdoor.Darkmoon.F is a Trojan horse that opens a back door on TCP port 1328 on the compromised computer. ... Read More
|
|
{9754B85A-3B34-4969-BE1F-CD03227E9470}
|
sysatjsicj.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{9754B85A-3B34-4969-BE1F-CD03227E9470}
|
syszweuas.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{9915CFD1-6B7D-4AC5-ABAC-136924579E91}
|
system.sys
|
X
|
Added by the Troj/QQPass-AIU Trojan.
|
|
{9B71D88C-C598-4935-C5D1-43AA4DB90836}
|
svccv.exe
|
X
|
Added by the Troj/Bifrose-UJ backdoor Trojan.
|
|
{9B71D88C-C598-4935-C5D1-43AA4DB90836}
|
sex.exe
|
X
|
Added by the Troj/Agent-GLW Trojan.
|
|
{9B71D88C-C598-4935-C5D1-43AA4DB90836}
|
system32dll.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{A2D9D3F0-8C2A-2A1D-A376-1BECFB10AB72}
|
svchosts.dll
|
X
|
Added by the Trojan.Spaxe Trojan. This infection creates balloon messages that state:
"Your computer is infected!
Windows ... Read More
|
|
{A4C928E8-0ABA-4fd3-83DF-23BE54ADF9A4}
|
sxnwhbvrzc.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{A4C928E8-0ABA-4fd3-83DF-23BE54ADF9A4}
|
sysqrnxstju.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{AC1B4DA2-12FA-31F2-1A7D-CD2B14E6AD4E}
|
suprox.dll
|
X
|
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
|
|
{ADA6B0AC-44C2-012B-5A71-C5F8C784FBD6}
|
system32:LoL93993.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.k malware. This infection is a Alternate Data Stream file which requires certain tools to remove ... Read More
|
|
{B081DB1F-4EE6-4021-9DD4-8B300F0D636D}
|
syssngbeh.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{B998557E-B478-4547-888B-5666C6BEB1DB}
|
sharex32.dll
|
X
|
Added by the Troj/Asmado-C downloading Trojan.
|
|
{BAAA759D-56F0-428c-B8DA-827EA3B08C2C}
|
sysawechod.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{C5A16DB0-0E3E-68C4-1ABB-636411036D53}
|
scanfl.exe
|
X
|
Added by the Troj/PWS-BDE password-stealing Trojan.
|
|
{CEB942AC-3873-FEDA-738C-0E08174D6042}
|
SysUpdate.exe
|
X
|
Added by the Troj/Bckdr-QPF backdoor Trojan.
|
|
{CFCF4540-DEA5-4C5D-B3BA-EA823D7AB748}
|
search.dll
|
X
|
Added by the Troj/OnLineG-C password-stealing Trojan.
|
|
{cfda6372-043c-48d2-ba3c-7bfe1cf71854}
|
surzzh.dll
|
X
|
Zlob Trojan that installs VirusProtectPro 3.4 and shows fake security alerts from your Windows taskbar. ... Read More
|
|
{DD651081-A909-45ad-BD71-2335B0ADE043}
|
sysabmpmfr.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{DD651081-A909-45ad-BD71-2335B0ADE043}
|
sysnxcphmgy.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{DD651081-A909-45ad-BD71-2335B0ADE043}
|
sysutrnez.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{E2CA7CD1-1AD9-F1C4-3D2A-DC1A33E7AF9D}
|
stickrep.dll
|
X
|
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
|
|
{E4785213-3EFE-4c26-A9B4-332440E31F6F}
|
sysrxmfdksp.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{E996F10E-FCAF-41CC-94C8-B8BF7D6F80AC}
|
sharec32.dll
|
X
|
Added by the Troj/Lineag-BAA password-stealing Trojan for the online game Lineage. ... Read More
|
|
{EA26CE12-DE64-A1C5-9A4F-FC1A64E6AC2E}
|
sivudro.dll
|
X
|
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and install SpywareQuake without your consent. ... Read More
|
|
{F758F78B-0885-490e-AA3C-4A38D28B0240}
|
sxpjbwvahn.exe
|
X
|
Identified as a variant of the Trojan.CL.Agent.EDXZ malware.
|
|
{H8I22RB03-AB-B70-7-11d2-9CBD-0O00FS7AH6-9E2121BHJLK}
|
shit.vbs
|
X
|
Added by the W32/Autorun-XV removable media worm.
|
|
®Windows Update
|
svchosts.exe
|
X
|
Added by the FRUCTA TROJAN!
|