|
Name
|
Filename
|
Status
|
Description
|
|
a-winpoet-service
|
winpppoverethernet.exe
|
Y
|
WinPoET is the industry's first Windows-based PPP over Ethernet client. Developed by iVasion, WinPoET is attractive to equipment providers, modem supp ... Read More
|
|
[not used]
|
wpshrc.exe
|
Y
|
Required to prevent configuration errors on a Compaq LBP-660 parallel port laser printer (and maybe others) ... Read More
|
|
McAfeeWebscanX
|
WebScanX.exe
|
Y
|
From McAfee VirusScan up to version 4.x. Provides functionality for VShield Download Scan and Internet Filter modules. Enables internet scanning. Guar ... Read More
|
|
Regrun2
|
WatchDog.exe
|
Y
|
Greatis Software's RegRun 3 Security Suite which amongst other things replaces MSCONFIG. The WatchDog check for registry changes caused by trojan's, v ... Read More
|
|
run=
|
wswpd.exe
|
Y
|
Used with some models of Panasonic, Epson and NEC printers - required for printer to work ... Read More
|
|
W75P2PSERVER
|
W75P2PS.EXE
|
Y
|
Printer utility which is required in order to make the printer work correctly
|
|
WanMPSvc
|
WanMPSvc.exe
|
Y
|
An AOL component, the Wan miniport (ATW) service. If you delete this and logon, AOL reports a problem with your internet connection, and reinstalling ... Read More
|
|
web3trap
|
web3trap.exe
|
Y
|
PC-Cillin 2000 anti-virus software -> ActiveX filter. Guards against malicious ActiveX programs, etc ... Read More
|
|
WebScanX
|
WebScanX.exe
|
Y
|
From McAfee VirusScan up to version 4.x. Provides functionality for VShield Download Scan and Internet Filter modules. Enables internet scanning. Guar ... Read More
|
|
Webtrap
|
webtrap.exe
|
Y
|
Part of PC-Cillin anti-virus software. Checks web-sites for malicious Java and ActiveX elements in a similar way to McAfee WebScanX. A few users find ... Read More
|
|
WebTrapNT.exe
|
WebTrapNT.exe
|
Y
|
Part of PC-Cillin Anti-Virus software. Checks visited web-sites for malicious Java and ActiveX elements ... Read More
|
|
wfxsnt40
|
wfxsnt40.exe
|
Y
|
WinFax 10.0 and maybe earlier versions. The program that opens the port for WinFax and not normally in the start menu. Needed if you want to run WinFa ... Read More
|
|
WG511WLU
|
WG511WLU.exe
|
Y
|
Netgear configuration programme for the 54g wireless lan card - required to monitor and manage the lan card ... Read More
|
|
WIN32SL
|
Win32sl.exe
|
Y
|
Part of Dell OpenManage Client Instrumentation - software that allows remote management application programs to access information about, monitor the ... Read More
|
|
WinFaxAppPortStarter
|
wfxsnt40.exe
|
Y
|
WinFax 10.0 and maybe earlier versions. Used to initiate the WinFax port to enable printing to the WinFax printer (send a fax) from any application. ... Read More
|
|
Winguard
|
WGFE95.EXE
|
Y
|
|
|
winlogon
|
winlogon.exe
|
Y
|
Windows Logon Process - handles user logons described here
|
|
winmodem
|
wmexe.exe
|
Y
|
Software for software based modems. Required if you have one of these. WinModems use software rather than hardware - hence putting a load on the CPU. ... Read More
|
|
WinPoet
|
WinPPPoverEthernet.exe
|
Y
|
WinPoET is the industry's first Windows-based PPP over Ethernet client. Developed by iVasion, WinPoET is attractive to equipment providers, modem supp ... Read More
|
|
WLAN_Cfg.exe
|
WLAN_Cfg.exe
|
Y
|
Linksys Instant Wireless USB Network Adapter driver
|
|
WMP54Gv4
|
WMP54Gv4.exe
|
Y
|
Linksys WMP54G Wireless-G PCI Adapter driver
|
|
WPCycle.exe
|
WpCycleWin.exe
|
Y
|
Added when selecting Mplayer2 to open media files. Forces other codes to Wait for Previous instructions to end, preventing instability of your CPU (fr ... Read More
|
|
wstimeb
|
wstimeb.exe
|
Y
|
Used with NEC printers. You can disable it before printing but it re-loads itself when printing so you may as well leave it ... Read More
|
|
wswpd
|
wswpd.exe
|
Y
|
Used with some models of Panasonic, Epson and NEC printers. Some older drivers known to have a "memory leak". Needed for printing to work ... Read More
|
|
WUOLService
|
WUOLService9x.exe
|
Y
|
Remote wakeup status agent. Part of Novell's ZenWorks. Processes Wake-up on LAN requests (turn on a computer remotely on LAN) ... Read More
|
|
WUSB11B.exe
|
WUSB11B.exe
|
Y
|
Linksys WUSB11 WLAN USB adapter
|
|
Novell ZfD Wake on LAN Status Agent
|
WolSerNT.exe
|
Y
|
Part of the Novell Windows Client. The service name is Prometheus Wake-On-LAN Status Agent. It is found in the C:\Program Files\Novell\ZENworks\Remote ... Read More
|
|
Workstation Manager
|
wm.exe
|
Y
|
Part of the Novell Windows client. Found in the C:\Program Files\Novell\ZENworks folder. ... Read More
|
|
WLTRYSVC
|
WLTRYSVC.EXE
|
Y
|
Part of the Broadcom Corporation Wireless Network Tray Applet which allows you to change and see settings for the hardware. ... Read More
|
|
WUSB54Gv4
|
WUSB54Gv4.exe
|
Y
|
Wireless-G USB Wireless Network Adapter related - would appear to be required
|
|
NettGain2000
|
WgwMngr.exe
|
Y
|
Required for Starband satellite service.
|
|
acecad.wtxpload
|
Wtxpload.exe Acecad
|
Y
|
driver for an AceCad USB Graphics Tablet ... Read More
|
|
windvrctrl
|
WDVRCtrl.exe
|
Y
|
Driver task installed by the drivers for some TV capture cards; no further information available, so best left alone. ... Read More
|
|
wordq carat flag
|
WordQcrs.exe
|
Y
|
Related to WordQ Writing Aid Software ... Read More
|
|
wm24pan
|
Wm24Pan.Exe
|
Y
|
ESI external sound card driver ... Read More
|
|
aniwzcs2service
|
WZCSLDR2.exe
|
Y
|
ALPHA_Networks wireless driver ... Read More
|
|
Webroot Spy Sweeper Engine
|
WRSSSDK.exe
|
Y
|
Webroot Spysweeper's realtime scanning engine.
|
|
Windows Socket 2.0 Non-IFS Service Provider Support Environment
|
ws2ifsl.sys
|
Y
|
This is a legitimate service and is used by LSPs which do not use IFS (Installable File System) supported sockets. ... Read More
|
|
WRNotifier
|
WRLogonNTF.dll
|
Y
|
|
|
WinTab Service
|
WTSRV.EXE
|
Y
|
Part of the Windows Tablet driver. Necessary for certain functions like eraser or being pressure sensitive among other options. ... Read More
|
|
UnrealIRCd
|
wircd.exe
|
Y
|
The UnrealIRCd Daemon. This is the actual FTP Server.
|
|
onecareui
|
winssnotify.exe
|
Y
|
Part of the Windows Live OneCare support package from Microsoft.
|
|
WPDShServiceObj
|
WPDShServiceObj.dll
|
Y
|
Windows Portable Device Shell Service Object
|
|
Windows Live OneCare
|
winss.exe
|
Y
|
Part of the Windows Live OneCare support package from Microsoft.
|
|
WgaLogon
|
WgaLogon.dll
|
Y
|
This file is a legitimate Windows oeprating system file. It used as part of Windows Genuine Advantage and alerts when you are using an unvalidated Mi ... Read More
|
|
WU713STA.EXE
|
WU713STA.EXE
|
Y
|
Blitzz Technology wireless NIC adapter driver
|
|
Cyclope Internet Filtering Proxy
|
WebFilterAccess.exe
|
Y
|
Related to the Cyclope Internet Filtering Proxy Internet site and content filtering software. ... Read More
|
|
Windows Live OneCare
|
winss.exe
|
Y
|
Microsoft's Windows Live One Care security software.
|
|
Webroot Desktop Firewall network service
|
wdfsvc.exe
|
Y
|
|
|
Webroot Desktop Firewall
|
WDF.exe
|
Y
|
|
|
xBus_ReceiverService
|
Wrapper.exe
|
Y
|
|
|
Maya 7.0 Documentation Server
|
wrapper.exe
|
Y
|
|
|
WLANKEEPER
|
WLKeeper.exe
|
Y
|
Service related to Intel's wireless software.
|
|
wlcrdplauncher
|
wlcrdplauncher.dll
|
Y
|
Used by Microsoft Live Mesh. This program is necessary to use the Remote Desktop component of Live Mesh. ... Read More
|
|
Intel(R) PROSet/Wireless SSO Service
|
WLKeeper.exe
|
Y
|
Service related to Intel's wireless software.
|
|
GW-NS54CW Service
|
WLService.exe
|
Y
|
Driver for the Planex GW-NS54CW router.
|
|
NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter NT Driver
|
wg111v2.sys
|
Y
|
Driver for the Netgear WG111 USB wireless adapter.
|
|
WUSB300NSvc
|
WLService.exe
|
Y
|
|
|
Webroot Client Service
|
WRConsumerService.exe
|
Y
|
Related to Webroot's Spy Sweeper.
|
|
Windows Event Log
|
wevtsvc.dll
|
Y
|
This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing eve ... Read More
|
|
Workstation
|
wkssvc.dll
|
Y
|
Windows service that creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these conn ... Read More
|
|
Windows Activation Technologies Service
|
WatAdminSvc.exe
|
Y
|
Microsoft service that periodically determines if your Windows Product ID is valid, and if not, displays warnings that your copy of Windows may not be ... Read More
|
|
!NoLoad
|
winrecon.exe
|
N
|
WinRecon - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you call it ... Read More
|
|
Bose Wave/PC Monitor
|
wavepcmonitor.exe
|
N
|
System Tray access for this system (more info on the system here). Available via Start -> Programs ... Read More
|
|
Check for One Touch Update
|
wiseupdt.exe
|
N
|
Checks for updates for Visioneer OneTouch scanners
|
|
Controller
|
WFXCTL32.EXE
|
N
|
From Symantec's TalkWorks Pro and WinFax. Appears if you chose to have the program appear in the taskbar (System Tray) during installation and display ... Read More
|
|
CriticalUpdate
|
Wucrtupd.exe
|
N
|
MS Windows Critical Update Notification. If you want to keep Windows up-to-date, check the Windows Update site ... Read More
|
|
D-Link AirPlus DWL-650+ Utility
|
WLANMON.exe
|
N
|
D-Link Air Plus Wireless PC modem connection monitor
|
|
DLHelperEXE
|
WATCH.exe
|
N
|
Download helper distributed with some software that allows the software installation to redirect download locations. Not required once the installatio ... Read More
|
|
EAPCISETUP
|
wizard.exe
|
N
|
Part of the Creative Sounblaster PIC Installation Wizard. Probably left as a result of a failed installation ... Read More
|
|
EbatesMoeMoneyMaker
|
wjview ...Code
|
N
|
|
|
Encoder Agent
|
WMENCAGT.EXE
|
N
|
MS Windows Media Encoder, which already has a shortcut in the Start Menu if installed ... Read More
|
|
FileFreedom_Plugin
|
wtm.exe
|
N
|
FileFreedom peer-to-peer sharing program
|
|
Folding@home
|
WINFAH.EXE
|
N
|
Folding@Home is a distributed computing project which studies protein folding, misfolding, aggregation, and related diseases - must be running in orde ... Read More
|
|
Fromine WinPopup
|
winpopup.exe
|
N
|
Instant Messenger program
|
|
Intervideo Win Cinema Manager
|
WinCinemaMgr.exe
|
N
|
WinCinema Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
Intervideo Win Cinema Manager
|
WINCIN~1.EXE
|
N
|
WinCinema Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
Intervideo WinCinema Manager
|
WinCinemaMgr.exe
|
N
|
WinCinema Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
Intervideo WinCinema Manager
|
WINCIN~1.EXE
|
N
|
WinCinema Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
Intervideo WinScheduler
|
WinScheduler.exe
|
N
|
WinScheduler is installed with WinDVD Remote Control for WinDVD from Intervideo. If you want to schedule recordings from your TV tuner card, you will ... Read More
|
|
iRis Active Monitor
|
winmon32.exe
|
N
|
Iris Antivirus - discontinued, replace with good alternative
|
|
iRiS AntiVirus Active Monitor
|
WIMMUN32.exe
|
N
|
Iris Antivirus - discontinued, replace with good alternative
|
|
Microsoft Works Calendar Reminders
|
wkcalrem.exe
|
N
|
Produces a pop-up reminder of events scheduled using the MS Works Calendar
|
|
Microsoft Works Portfolio
|
WksSb.exe
|
N
|
The Works Portfolio tool lets you collect and organize text and pictures from the Web or your favorite program.Can be prevented from starting from a s ... Read More
|
|
Microsoft Works Update Detection
|
wkdetect.exe
|
N
|
Checks for updates to MS Works
|
|
MMCWINMGMT
|
winmgmt.exe
|
N
|
Used for Enterprise Management. If you are not an IT Administrator you don't need it to be running. Also runs from the PCHealth "scheduler" - refer he ... Read More
|
|
NB Windows Patterns
|
WINDBKGND.EXE
|
N
|
Part of McAfee Nuts & Bolts. With Background Patterns, you can change background patterns of wizard and dialog windows ... Read More
|
|
PivotSoftware
|
wpctrl.exe
|
N
|
PivotPro from Portrait Studios - allows a screen to be rotated to match rotated LCD screens, for example). Shortcut available via Display Properties ... Read More
|
|
Q152404
|
wsript.exe Q152404.VBS
|
N
|
Appears to run Scandisk at bootup on NEC PCs
|
|
SWd
|
winwd.exe
|
N
|
PC Security from Tropical Software - lock files, password protect, etc
|
|
Tour
|
wincool.exe
|
N
|
Component of WinME that's annoying as hell. Pop's up a prompt to play the C:\WINDOWS\Application Data\Microsoft\INTRO\CONTENT.HTA that plays a full sc ... Read More
|
|
Tray Temperature
|
Weatherbug.exe
|
N
|
Weatherbug provides current outdoor temperature in the System Tray, also weather alerts. Available via Start -> Programs ... Read More
|
|
Update Grokster
|
WiseUpdt.exe
|
N
|
Automatically updates the Grokster file sharing software. Beware of adware and spyware when using this type of program, for instance, Grokster contain ... Read More
|
|
Wanadoo Messenger.exe
|
Wanadoo Messenger.exe
|
N
|
Wanadoo ISP instant messenger client
|
|
war-ftpd.exe
|
WAR-FTPD.EXE
|
N
|
War FTP Daemon from JGAA's Internet - FTP client
|
|
warez
|
warez.exe
|
N
|
|
|
WARSVR
|
war-ftpd.exe
|
N
|
" War FTP Daemon - the original free FTP server for windows"
|
|
Washerie.exe
|
washerie.exe
|
N
|
Cookie Washer for Internet Explorer from Webroot Software. Light version of Windows Washer, specific for cleaning the IE cache and cookies. Available ... Read More
|
|
Watch
|
watch.exe
|
N
|
Found to be used by a Trust USB scanner for auto starting the scanning software when the lid is lifted ... Read More
|
|
Watch Dog Program
|
watchdog.exe
|
N
|
For Compaq PC's. Associated with Compaq's internet services. Not required if you don't use services provided by them and may not be required even if y ... Read More
|
|
Watchdog
|
Watchdog.exe
|
N
|
Definitely part of the Mustek scanner drivers and software (for 600 III EP Plus and maybe others), launches from the Startup folder in the Start Menu, ... Read More
|
|
WaveTop Launcher
|
WaveTop.exe
|
N
|
WaveTop - "Get push content from TV without an Internet connection" - now possibly a defunct system in the US included as an optional part of WebTV in ... Read More
|
|
Wbiff
|
Wbiff.exe
|
N
|
Wbiff! E-mail checker - automatically checks your e-mail and notifies you if any new e-mail has been received ... Read More
|
|
WCESCOMM
|
WCESCOMM.EXE
|
N
|
Active sync for use with Windows CE based palm PC
|
|
wcmdmgr
|
wcmdmgr.exe
|
N
|
Web Driver delivery system for WildTangent on-line games. Periodically checks for updates - can be disabled within the programs control panel. Note th ... Read More
|
|
WEATHER
|
WEATHER.EXE
|
N
|
Weatherbug provides current outdoor temperature in the System Tray, also weather alerts. Available via Start -> Programs ... Read More
|
|
WeatherCast
|
Weather.exe
|
N
|
Weather reporting in the System Tray. Available via Start -> Programs. Installed via Radlight ... Read More
|
|
WeatherWatcher
|
ww.exe
|
N
|
WeatherWatcher - weather reporting in the System Tray
|
|
WebArmyKnife
|
WAK.exe
|
N
|
Web Army Knife - a suite of web site developer's tools
|
|
WebcamRT.exe
|
WEBCAMRT.exe
|
N
|
For Logitech Web Cams. Not required - camera works fine without it
|
|
WebKey
|
WebKey.exe
|
N
|
WebKey from JB Utilities. Utility to keep track of login data required when browsing the internet ... Read More
|
|
Webposition Gold 2
|
wpsche~1.exe
|
N
|
Scheduler for Web Position Gold - utility to help optimize the position of web-sites in search engines ... Read More
|
|
Webshots
|
Webshots Tray.exe
|
N
|
Screensaver program that automatically downloads from the webshots web site
|
|
Webshots
|
websho~1.exe
|
N
|
Screensaver program that automatically downloads from the webshots web site
|
|
Welcome
|
Welcome.exe
|
N
|
Launches the Welcome to Windows tutorial on boot up
|
|
WetSock
|
wetsock.exe
|
N
|
RoboMagic Wetsock - weather reporting in the System Tray
|
|
WFGStartup
|
WFGStartup.exe
|
N
|
World Weather. "This midlet displays the current weather conditions for major cities around the world. This version is for memory limited mobile phone ... Read More
|
|
WFXCTL32.EXE
|
WFXCTL32.EXE
|
N
|
From WinFax 10.0 and possibly earlier versions. Appears if you chose to have WinFax appear in the taskbar (System Tray) during installation and displa ... Read More
|
|
Wildwire Monitor
|
WWMon.exe
|
N
|
This places a status icon on the taskbar for the DSL WildWire Tiger Modem. This is also a shortcut to the diagnostics utility for the DSL modem ... Read More
|
|
Willow Road
|
WillowRoad.exe
|
N
|
Willow Road Screen Saver
|
|
WINCINEMAMGR
|
WINCIN~1.EXE
|
N
|
WinCinema_Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
WinCinemaMgr
|
WinCinemaMgr.exe
|
N
|
WinCinema_Manager is needed when using the WinDVD Remote Control for WinDVD from Intervideo. Available via Start -> Programs ... Read More
|
|
WinDates
|
windates.exe
|
N
|
WinDates is a calendar, date organizer and event reminder program from Rockin' Software ... Read More
|
|
WinDVRCtrl
|
WinDVRCtrl.exe
|
N
|
Control center software for an AOpen VA1000 TV tuner card
|
|
WinFax PRO Controller
|
WFXCTL32.EXE
|
N
|
From WinFax 10.0 and possibly earlier versions. Appears if you chose to have WinFax appear in the taskbar (System Tray) during installation and displa ... Read More
|
|
WinGuage Pro
|
WGPRO32.EXE
|
N
|
Part of McAfee Nuts & Bolts. "WinGauge is a dynamic reporting tool that constantly monitors your use of Windows and your applications, to alert you to ... Read More
|
|
WinMgmt
|
WinMgmt.exe
|
N
|
Used for Enterprise Management. If you are not an IT Administrator you don't need it to be running. Also runs from the PCHealth "scheduler" - refer he ... Read More
|
|
WinMX
|
WinMX.exe
|
N
|
WinMX file sharing application
|
|
winmysqladmin
|
winmysqladmin.exe
|
N
|
Starts the MySQL database admin tool
|
|
WinMySQLadmin Tool
|
winmysqladmin.exe
|
N
|
Starts the MySQL database admin tool
|
|
WinPopup
|
WINPOPUP.EXE
|
N
|
Intranet chat software provided by windows for chat on small networks. Handy little LAN messaging utility. Has been included in Windows since 95, and ... Read More
|
|
winroute
|
winroute.exe
|
N
|
Win-Route 4.27. WinRoute Tray Icon for starting and stopping the WrCtrl.exe process, also to log in to the console to view logs and change settings. C ... Read More
|
|
Wintercooler Pro
|
WINCOOL.EXE
|
N
|
Wintercooler Pro - utility that monitors CPU usage, RAM consumption and Internet connection speed ... Read More
|
|
WinTidy
|
WinTidy.exe
|
N
|
Desktop icon manager from PC Magazine (Ziff-Davis) for Win95. Available via Start -> Programs ... Read More
|
|
Wintime Wtxpload
|
Wxpload.exe Wintime
|
N
|
Part of the software to support a Dexxa USB graphics tablet. From a visitor - "This gets started anyway when you plug in the USB connector for the gra ... Read More
|
|
WinZip Quick Pick
|
WZQKPICK.EXE
|
N
|
Added with WinZip version 8.1. "The new WinZip Quick Pick taskbar tray icon gives you instant access to WinZip and your Zip files. Just left click the ... Read More
|
|
wjview
|
wjview.exe
|
N
|
MS tool used to view window-based Java applications from the command line
|
|
wkcalrem
|
wkcalrem.exe
|
N
|
Produces a pop-up reminder of events scheduled using the MS Works Calendar
|
|
WkDetect
|
WkDetect.exe
|
N
|
Checks for updates to MS Works
|
|
wkfud
|
wkfud.exe
|
N
|
A marketing program for MS Works
|
|
WksSb
|
WksSb.exe
|
N
|
The Works Portfolio tool lets you collect and organize text and pictures from the Web or your favorite program. The Works Portfolio provides a locatio ... Read More
|
|
WkUFind
|
WkUFind.exe
|
N
|
MS Works Update Detection. MS Picture It! (versions 7 to current) use this automatic update feature during the log on process. It can also cause your ... Read More
|
|
WLAN Status Tray Applet
|
WLANSTA.EXE
|
N
|
System Tray icon for checking the status of a Wireless LAN
|
|
Woowatch
|
Watch.exe
|
N
|
Wanadoo ISP software, not required
|
|
WordWeb
|
wweb32.exe
|
N
|
WordWeb - free theasaurus and dictionary. Start manually
|
|
Works Calendar Reminder
|
wkcalrem.exe
|
N
|
Produces a pop-up reminder of events scheduled using the MS Works Calendar
|
|
WorksFUD
|
wkfud.exe
|
N
|
A marketing program for MS Works
|
|
Wpctrl
|
wpctrlnt.exe
|
N
|
WinPortrait plug-in for PivotPro from Portrait Studios - allows a screen to be rotated to match rotated LCD screens, for example). Shortcut available ... Read More
|
|
Wpctrl
|
wpctrl95.exe
|
N
|
WinPortrait plug-in for PivotPro from Portrait Studios - allows a screen to be rotated to match rotated LCD screens, for example). Shortcut available ... Read More
|
|
wpctrl95
|
wpctrlnt.exe
|
N
|
WinPortrait plug-in for PivotPro from Portrait Studios - allows a screen to be rotated to match rotated LCD screens, for example). Shortcut available ... Read More
|
|
wpctrl95
|
wpctrl95.exe
|
N
|
WinPortrait plug-in for PivotPro from Portrait Studios - allows a screen to be rotated to match rotated LCD screens, for example). Shortcut available ... Read More
|
|
WrCtrl
|
WrCtrl.exe
|
N
|
Win-Route 4.27 NAT engine on Win2k Pro for connection sharing and security using Win-Route by Tiny Software. A connection sharing/Firewall Application ... Read More
|
|
WT Game Channel
|
wtgamechannel.exe
|
N
|
WildTangent GameChannel - notification of new games, quick access to games and fast and easy game downloads. Note that WildTanget's privacy policy use ... Read More
|
|
WT GameChannel
|
wtgamechannel.exe
|
N
|
WildTangent GameChannel - notification of new games, quick access to games and fast and easy game downloads. Note that WildTanget's privacy policy use ... Read More
|
|
WXProcMgr Module
|
WXprocMgr.exe
|
N
|
TVTonic from Wavexpress - "enjoy 3 full-screen, DVD-quality video channels for FREE". Allows data content to be downloaded and synchronized on your sy ... Read More
|
|
WLANSTA.EXE
|
WLANSTA.EXE
|
N
|
System Tray icon for checking the status of a Wireless LAN
|
|
war ftpd tray icon
|
wartray.exe
|
N
|
|
|
weblink
|
WebLink.exe
|
N
|
Softex WebLink is a "cost-effective way to provide software updates, technical support or new product information to specific end-users - it can sile ... Read More
|
|
wm vcr
|
WMVCR.exe
|
N
|
WM_Recorder allows you to record Windows Media™ streaming Video or Audio content. Can be accessed via Start Menu -> Programs ... Read More
|
|
WeatherEye
|
WeatherEye.exe
|
N
|
The Weather Network's taskbar weather monitoring software.
|
|
stardust wallpaper control 2003
|
WCMain.exe
|
N
|
Related to Stardust_Software Screen Saver Control 2003 ... Read More
|
|
WarReg_PopUp
|
WarReg_PopUp.exe
|
N
|
Displays a popup asking you to register your Acert product.
|
|
WebTime
|
WebTime.exe
|
N
|
Added by the WebTime time synchronization program. WebTime 2000 is a small utility program that will synchronize your PC's internal clock with one of ... Read More
|
|
Wakoopa
|
Wakoopa.exe
|
N
|
Wakoopa is a new social network that, when using this software, tracks what software and games you use on your computer. This information will then b ... Read More
|
|
Folding@Home 5.03
|
winfah.exe
|
N
|
Folding@Home is a distributed computing project which studies protein folding, mis-folding, aggregation, and related diseases. This program must be r ... Read More
|
|
WorkFlowTray
|
WorkFlowTray.exe
|
N
|
Taskbar tray icon for OmniPagePro.
|
|
Wippien
|
Wippien.exe
|
N
|
Added by the Wippien open source p2p VPN software.
|
|
Windows Mobile Device Center
|
wmdc.exe
|
N
|
Added by the Windows Mobile Device Center. The Windows Mobile Device Center enables you to set up new partnerships, synchronize content and manage mus ... Read More
|
|
WrtMon.exe
|
WrtMon.exe
|
N
|
This program is part of Presto PageManager that is bundled with Canon Scanners.
|
|
NETGEAR WG111v2 Smart Wizard
|
WG111v2.exe
|
N
|
Setup and diagnostics program for the Netgear WG111v2 wireless USB adapter.
|
|
TVTonic RSS
|
WXRSS.exe
|
N
|
Added by the TVTonic podcast / Internet TV download manager.
|
|
AFAFilter
|
windefault.exe
|
U
|
AFAFilter - internet filter software
|
|
Configuration Utility
|
wlanutil.exe
|
U
|
NetGear Wireless LAN configuration utility for the MA311 802.11b (and maybe other cards) ... Read More
|
|
Eicon NetworksLAN_DAEMON
|
watch.exe
|
U
|
Associated with an Eicon Networks ISDN or ADSL modem. Watch protocols your connection with numbers and duration. You need callvu.exe (from Start Menu) ... Read More
|
|
Eicon TechnologyLAN_DAEMON
|
watch.exe
|
U
|
Associated with an Eicon Networks ISDN or ADSL modem. Watch protocols your connection with numbers and duration. You need callvu.exe (from Start Menu) ... Read More
|
|
ELSA WINman Suite
|
Winmsuit.exe
|
U
|
Allows you to totally customize your ELSA graphics card settings, including overclocking the GPU ... Read More
|
|
H/PC Connection Agent
|
WCESCOMM.EXE
|
U
|
Active sync for use with Windows CE based palm PC
|
|
Instant Wireless Configuration Utility
|
WUSB11cfg.exe
|
U
|
Utility used by the LINKSYS LINKSYS wireless USB Adapter (WUSB11) and indicates when a wireless access connection is made by a screen colour change. A ... Read More
|
|
Login
|
winlog.exe
|
U
|
Salfeld Child Control 2003 - parental control software
|
|
NetPatrol
|
winclient.exe
|
U
|
NetPatrol network monitoring software
|
|
OWCWebCamDV
|
wcdvtray.exe
|
U
|
WebCamDV from Orange Micro, Inc - enables the user to use a DV camera connected via Firewire as a Webcam ... Read More
|
|
Pervasive.SQL Workgroup Engine
|
W3dbsmgr.exe
|
U
|
Database Service Manager for Pervasive SQL 2000 Workgroup edition. Required if you use Pervasive SQL but it's recommended you start it manually before ... Read More
|
|
Restart WSC Setting
|
wscrestp.exe
|
U
|
WinStart Commander - part of Ultra WinCleaner Utility Suite. Starts Windows faster and controls hidden programs to boost performance and prevent syste ... Read More
|
|
Run POPFile in background
|
wperl.exe
|
U
|
POPFile - E-mail spam blocker
|
|
SurfinGuard Pro
|
winsfcm.exe
|
U
|
SurfinGuard Pro - internet protection software
|
|
Touch Manager
|
WinLED.exe
|
U
|
Dell keyboard utility. Disabling can result in loss of screen saver and power saver functionality ... Read More
|
|
Warner
|
warner.exe
|
U
|
Also known as "CyberWarner". From G-Tek Technologies and pre-installed on some Packard Bell PCs. Protects critical files ... Read More
|
|
Warnet
|
warnet.exe
|
U
|
Warnet - system cleanup software
|
|
Washer
|
washer.exe
|
U
|
Windows Washer from Webroot Software. Useful utility that deletes safe to remove files, cookies, browsing history, etc. Available via from Start -> Pr ... Read More
|
|
washindex
|
washidx.exe
|
U
|
Windows Washer from Webroot Software. Useful utility that deletes safe to remove files, cookies, browsing history, etc. Available via from Start -> Pr ... Read More
|
|
wcmdmgr
|
wcmdmgrl.exe
|
U
|
Web Driver delivery system for WildTangent on-line games. Periodically checks for updates - can be disabled within the programs control panel. Note th ... Read More
|
|
wcmdmgrl
|
wcmdmgrl.exe
|
U
|
Web Driver delivery system for WildTangent on-line games. Periodically checks for updates - can be disabled within the programs control panel. Note th ... Read More
|
|
WD Button Manager
|
WDBtnMgr.exe
|
U
|
Button manager installed with a western digital external disk drive. Allows you to back up your system with one click ... Read More
|
|
websaverlive
|
websaverlive.exe
|
U
|
WebSaver Live! is a companion program to Websaver that retrieves information from the Internet on a schedule and displays it on your screen when your ... Read More
|
|
WebWasher
|
wwasher.exe
|
U
|
Free Pop-up/ad/javascript filter program from Siemens. If not running then browsers will not be protected but will still work. Available via Start -> ... Read More
|
|
WFXSwtch
|
WFXSWTCH.exe
|
U
|
Related to WinFax. Allows you to use Winfax as a virtual printer so that you can print directly to the application. ... Read More
|
|
WGWLocalManager
|
WGWLocalManager.exe
|
U
|
Part of Flash-Networks NettGain2000 product. NettGain 2000 is a combined hardware/software networking solution, which is designed to improve performan ... Read More
|
|
WildTangent Web Driver updater
|
wcmdmgrl.exe
|
U
|
Web Driver delivery system for WildTangent on-line games. Periodically checks for updates - can be disabled within the programs control panel. Note th ... Read More
|
|
Win Chimes
|
winchi~1.exe
|
U
|
WinChimes - enhancement software for the system clock that runs in the system tray ... Read More
|
|
Winampa
|
WINAMPa.exe
|
U
|
Loads the System Tray icon for the WinAmp media player. Can be used to mantain file associations so programs like QuickTime and RealPlayer don't take ... Read More
|
|
WinampAgent
|
WINAMPa.exe
|
U
|
Loads the System Tray icon for the WinAmp media player. Can be used to mantain file associations so programs like QuickTime and RealPlayer don't take ... Read More
|
|
WinBackup Scheduler
|
Wbsched.exe
|
U
|
LIUtilities WinBackup scheduler - backup software
|
|
WinBar
|
WinBar.exe
|
U
|
"WinBar is a free and compact program that lets you monitor your system and provides easy access to frequently used controls" ... Read More
|
|
WINDLL
|
WSYS.EXE
|
U
|
STARR key logger. "It logs almost everything that goes through the box. It logs all key strokes, all passwords transacted even if they weren't keyed i ... Read More
|
|
Window Washer
|
wwDisp.exe
|
U
|
Windows Washer from Webroot Software. Useful utility that deletes safe to remove files, cookies, browsing history, etc. Available via from Start -> Pr ... Read More
|
|
WindowBlinds
|
wbload.exe
|
U
|
WindowBlinds from Stardock. Skin application to change the appearence on Windows desktops. Available as an individual download or as part of Object De ... Read More
|
|
WindowFX
|
wfxload.exe
|
U
|
Stardock WindowFX - "Allows you to add an unprecedented number of special effects to windows" ... Read More
|
|
WinDSL MTU-Adjust
|
WinDSL_MTU.exe
|
U
|
Adjusts the registry setting of the DUN-Adapters (MTU) and the TCP/IP-Protocol (RWIN) by ENGEL Technologieberatung ... Read More
|
|
WinFast Schedule
|
Wfwiz.exe
|
U
|
Leadtek WinFast TV tuner scheduler
|
|
Winfast_2K
|
WF2k.exe
|
U
|
System Tray application that starts up the Winfox utility for a Leadtek Winfast grpahics card to restore settings. Can be started manually from Start ... Read More
|
|
WinFoxV2
|
WF2k.exe
|
U
|
System Tray application that starts up the Winfox utility for a Leadtek Winfast grpahics card to restore settings. Can be started manually from Start ... Read More
|
|
WinGate Engine Monitor
|
wgengmon.exe
|
U
|
WinGate Internet Client Dialup Monitor - component of WinGate proxy server software. Displays the status of the WinGate engine, and appears in the sys ... Read More
|
|
WinGuard Pro
|
wgp.exe
|
U
|
|
|
Winkb6
|
winkb6.exe
|
U
|
Part of We-Blocker, works in tandem with syswb6. Both files are needed to run WeBlocker. Required if We-Blocker is installed ... Read More
|
|
WinKey
|
winkey.exe
|
U
|
Loads Copernic's WinKey. Used to map out Windows key hotkey combinations. Not required for the system, but is necessary for this to be running if you ... Read More
|
|
winmatrix.exe
|
WinMatrixXP.exe
|
U
|
WinMatrix XP - wallpaper replacement that shows different matrix effects (including flowing matrix codes from 'The Matrix' movie) on your desktop ... Read More
|
|
WinMem
|
WinMem.exe
|
U
|
WinMem Cleaner - part of Ultra WinCleaner Utility Suite. Makes more memory available for your programs and the Operating System. It also defragments y ... Read More
|
|
WinPatrol
|
WinPatrol.exe
|
U
|
WinPatrol - "Manage Startup programs, tasks, cookies; will sniff out Worms, Trojan horses, Cookies, Adware, Spyware, Klez, Assumption and other malici ... Read More
|
|
WinProxy
|
WinProxy.EXE
|
U
|
"WinProxy is the world-first proxy server and a firewall with integrated mail server for Windows 95/98/ME/NT/2000/XP" ... Read More
|
|
Winsys
|
Winsys.exe
|
U
|
Win-Spy - surveillance software that creates records of everything people do on a computer, ie, spying or monitoring depending upon how you call it ... Read More
|
|
WinSysAppMon
|
WinSysRM.exe
|
U
|
Home & Family Content Filter related. See here
|
|
WinTasks Traybar
|
wintasks.exe
|
U
|
WinTasks - "Efficient Resource and Task Management is absolutely critical if you want to achieve the highest system performance levels possible. WinTa ... Read More
|
|
WinVNC
|
WinVNC.exe
|
U
|
WinVNC is an application that allows you to remote control your PC from another PC somewhere on the internet ... Read More
|
|
Wireless PCI Card Configuration Utility
|
WMP11Cfg.exe
|
U
|
Utility used by the LINKSYS wireless PCI card (WMP11) and indicates when a wireless access connection is made by a screen colour change. Also used for ... Read More
|
|
Wireless-G Notebook Adapter Utility
|
WPC54CFG.EXE
|
U
|
Utility used by the LINKSYS Wireless-G Notebook Adapter ( WPC54G)
|
|
WMIEXE.exe
|
wmiexe.exe
|
U
|
NT component, used by Windows Millennium to detect Plug and Play-compliant IEEE 1394 devices during the startup process. Since this is important for ... Read More
|
|
Workstation Scheduler
|
wm95.exe
|
U
|
Desktop Management Scheduler. Part of Novell's Netware Client. Schedueles NDS events. If events have been schedueled, it is required, otherwise, it is ... Read More
|
|
Worm Detector
|
wd.exe
|
U
|
Worm Detector - antivirus add-on for Outlook 2K or XP for handling worms and spam ... Read More
|
|
wrexec
|
wrexec.exe
|
U
|
Watch Right - monitoring program, part of the PowerTools add-on for AOL. Records instant messages, E-mail, chat. Watch Right appears to be, and funct ... Read More
|
|
WScheduler
|
WScheduler.exe
|
U
|
Windows Scheduler - "schedule unattended running of applications, batch files, scripts and much more. Also, you can schedule popup reminders so you'll ... Read More
|
|
WService
|
WService.exe
|
U
|
Tablet client Driver for UC-Logic Pen/Graphics Tablet
|
|
z-WrDialer
|
WrDialer.exe
|
U
|
WinPoet DSL dialer
|
|
_winadm
|
winadm.exe
|
U
|
Parents Friend - "Log any activity and protect programs with a password. Further more you can lock the pc any hour in the week you want with the main ... Read More
|
|
Index Washer
|
WashIdx.exe
|
U
|
Windows Washer from Webroot Software. Useful utility that deletes safe to remove files, cookies, browsing history, etc. Available via from Start -> Pr ... Read More
|
|
wlancfg
|
wlancfg.exe
|
U
|
Inventel wireless router related - required in order to automatically connect to the Net at bootup. ... Read More
|
|
RegRun WinBait
|
winbait.exe
|
U
|
Part of RegRun
- used to detect unknown viruses. RegRun compares winbait.exe with the
original copy called winbait.org and warns if the files are
... Read More
|
|
uninstall_wintools
|
WTuninst.exe
|
U
|
WinTools adware uninstaller. Should only need to run once in order to complete uninstall; when done, disable. ... Read More
|
|
winscheduler
|
WINSCH~1.EXE
|
U
|
InterVideo WinDVR scheduler ... Read More
|
|
wise-ftp scheduler
|
WF_Scheduler.exe
|
U
|
WISE-FTP file transfer software scheduler ... Read More
|
|
winirxhelper
|
WinIRXHelper.exe
|
U
|
MSI™ Media Center Deluxe software - see here ... Read More
|
|
wait4ip
|
wait4IP.exe
|
U
|
Packard Bell net2Plug allows you to network PCs anywhere in your house ... Read More
|
|
real spy monitor
|
Winrsm.exe
|
U
|
Realspy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
winacsr
|
Winacsr.exe
|
U
|
AceScreenSpy keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
wsg32
|
wsg32.exe
|
U
|
GoldenKeylog keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
|
|
wintective
|
wintective.exe
|
U
|
Added by the Spyware.Wintective keylogger and screen capture program. If you did not install this program, then you should uninstall it. ... Read More
|
|
wsys.exe
|
wsys.exe
|
U
|
Added by the Spyware.SpyloPCMonitor surveillance software. If you did not install this software you should remove it immediately. ... Read More
|
|
wallchgr.exe wstart
|
Wallchgr.exe
|
U
|
Blue Tree Software ... Read More
|
|
wssys
|
wssys.exe
|
U
|
Added by the Spyware.WebPI surveillance software. If you did not install this software, you should immediately remove it. ... Read More
|
|
WinLoad
|
Winload.exe
|
U
|
Added by the Spyware.PCTattletale surveillance software. If you did not install this software, then uninstall it immediately.
NOTE TO V ... Read More
|
|
SysWsa32
|
WSA32.EXE
|
U
|
Added by the Spyware.BEverywhere.B surveillance software. This program should be uninstalled if it was not installed by yourself. ... Read More
|
|
WinSystem
|
WinSystems.exe
|
U
|
Added by the Spyware.CMKeyLogger surveillance software. This should be removed if it was not installed by yourself. ... Read More
|
|
srv32win
|
win16dll.exe
|
U
|
Screenspy captures screenshots silently. If you didn't install this yourself, remove it. ... Read More
|
|
win16.dll
|
win16dll.exe
|
U
|
Screenspy captures screenshots silently. If you didn't install this yourself, remove it. ... Read More
|
|
winsos verify
|
WINSOS.EXE
|
U
|
WinSOS - "deletes spyware, optimizes your computer - backs up selected data" ... Read More
|
|
wskrnl
|
wskrnl.exe
|
U
|
Added by the Spyware.ActMon surveillance software. Uninstall this software if it was not installed by yourself. ... Read More
|
|
winplosion
|
WinPlosion.exe
|
U
|
WinPLOSION allows you to immediately view and select from all the windows running on your computer, just those of the active application, or to minimi ... Read More
|
|
WhatPulse
|
WhatPulse.exe
|
U
|
WhatPulse sends statistics on how much you type on your computer and ranks you based on that. It does not log your keystrokes, but only the counts of ... Read More
|
|
WinFax PRO
|
WFXSVC.EXE
|
U
|
This service handles many of the automated tasks of Winfax Pro such as receiving faxes. Disabling this service will impair the functioning of this pr ... Read More
|
|
AMP WinOFF
|
winoff.exe
|
U
|
WinOFF is " a utility designed to shut down Windows computers automatically, with several working ways and fully configurable." ... Read More
|
|
instant wireless configuration utility
|
WPC11Cfg.exe
|
U
|
Utility used by the LINKSYS wireless USB Adapter (WUSB11) and indicates when a wireless access connection is made by a screen colour change. Also use ... Read More
|
|
winamp to google talk
|
winamptogoogletalk.exe
|
U
|
Winamp to Google Talk, available here shows your current Winamp track in your Google_Talk status ... Read More
|
|
winremote
|
WinRemote.exe
|
U
|
InterVideo WinCinema Manager - needed for the use of WinDVD_Remote_Control
|
|
web2pop
|
Web2Pop.exe
|
U
|
Web2Pop allows you to retrieve your web-based accounts messages to read them in your favorite e-mail client. ... Read More
|
|
[not used]
|
wmfhotfix.dll
|
U
|
Added by the Windows WMF Metafile Vulnerability HotFix. This patch is used to protect your computer for the unpatched WMF vulnerability in Windows. ... Read More
|
|
LoadWatcher
|
watcher.exe
|
U
|
Added by the Watcher surveillance software. Spyware.Watcher is a remote surveillance application that can use a computer's webcam to secretly monitor ... Read More
|
|
dell wireless manager ui
|
WLTRAY
|
U
|
Related to Dell Wireless WLAN Card. Provides additional configuration options for these devices. ... Read More
|
|
wonderfrog
|
WonderFrog.exe
|
U
|
Wonder Frog typing monitor ... Read More
|
|
Mobipocket Web Companion
|
webcomp.exe
|
U
|
Installed by Mobipocket Reader to create readable documents from RSS or eNews feeds on the web. ... Read More
|
|
workpace 3.0
|
workpace.exe
|
U
|
Related to WorkPace Stress Injury prevention software. WorkPace comes in two editions, Personal and Professional. Note: located in C:\Program Files\W ... Read More
|
|
winpower
|
Winpower.exe
|
U
|
Related to InstallAnywhere ZeroG Software is now owned by Macrovision. Note: located in C:\Program Files\UpsPilot\ ... Read More
|
|
windows media connect 2
|
WMCCFG.exe
|
U
|
Related to Windows_Media_Connect from Microsoft. Stream digital media files on your computer to digital media receivers (DMRs) that are connected to ... Read More
|
|
wallpaperchanger
|
Wallpaper.exe
|
U
|
A wallpaper changer and manager utility. There is the Freeware version and the Pro version. The freeware version is completely free. The Pro version i ... Read More
|
|
Currency
|
windowsintd.exe
|
U
|
Added by the Spyware.Intruder surveillance software. If this program was not installed by you it should be uninstalled immediately. ... Read More
|
|
Wdc
|
Wdc.exe
|
U
|
Added by the Spyware.Watchdog surveillance software. Spyware.WatchDog is a spyware program that logs keystrokes. It monitors Instant Messenger convers ... Read More
|
|
Wspn
|
wspn.exe
|
U
|
Added by the Spyware.Espion surveillance software. Spyware.Espion is a spyware program that monitors and records keystrokes, instant message conversat ... Read More
|
|
NETGEAR WG311v2 Smart Configuration
|
wlancfg5.exe
|
U
|
This is Netgear's program for running it's wireless network cards. This program can also configure your wireless settings and monitor your throughput. ... Read More
|
|
Wireless Configuration Utility HW.32
|
WlanCU.exe
|
U
|
Wireless configuration utility used by various wireless devices. This only needs to run if you do not have Windows managing your wireless connection. ... Read More
|
|
WMPNSCFG
|
WMPNSCFG.exe
|
U
|
A program associated with Windows Media Player. According to this technote, wmpnscfg.exe is used to alert users when a new media device is found on t ... Read More
|
|
Windows Desktop Search
|
WindowsSearch.exe
|
U
|
|
|
UltraVNC Server
|
winvnc.exe
|
U
|
Server component which listens for incoming connections for the UltraVnc application. This application allows you to take over your computer from a ... Read More
|
|
WMUAgent.exe
|
WMUAgent.exe
|
U
|
Added by the WakeMeUp! alarm clock.
|
|
WakeMeUp! Service
|
WMUSvc.exe
|
U
|
Added by the WakeMeUp! alarm clock.
|
|
Broadcom Wireless Manager UI
|
WLTRAY.exe
|
U
|
Related to Broadcom_Network Adapters for additional configuration options for these devices. Should not be terminated unless suspected to be causing p ... Read More
|
|
ChicoSys
|
webtmr.exe
|
U
|
Added by the Child Control parental control software.
|
|
CCWinTray
|
wintmr.exe
|
U
|
Added by the Child Control parental control software.
|
|
SKRSpyWarn
|
Warn.exe
|
U
|
Added by the Smart Keystroke Recorder keylogger and surveillance software. This program should be removed if it is found on your computer without you ... Read More
|
|
Sagem - Utilitaire réseau pour Clé USB Wi-Fi 802.11g
|
WLANUTL.exe
|
U
|
WiFi configuration utility for the Sagem wireless USB dongle.
|
|
IEEE 802.11g Wireless LAN Utility
|
WLANUTL.exe
|
U
|
Configuration utility for your wireless card.
|
|
Sitecom Wireless LAN Utility
|
WLANUTL.exe
|
U
|
Configuration utility for your wireless card.
|
|
WL230USB Wireless B+G Utility
|
WLANUTL.exe
|
U
|
Configuration utility for your wireless card.
|
|
SMC2862W-G 54Mbps WLAN Monitor
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Sitecom Wireless Utility
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Sitecom WL-112 Utility
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Sitecom WL-115 Utility
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
SMC2862W-G 54Mbps WLAN Monitor
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Program sieciowy dla SAGEM Wi-Fi 11g USB adapter
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Sagem - 802.11g Wi-Fi USB Dongle LAN Utility
|
WLANUTL.exe
|
U
|
Generic wireless configuration utility used by many wireless brands.
|
|
Microsoft Service
|
winspl.exe
|
U
|
Added by the Spyware.SpyMan surveillance software. If this software was installed without your knowledge it should be removed. ... Read More
|
|
WATCHPNP_Xerox
|
watchPnp.exe
|
U
|
Printer software used by Xerox printers.
|
|
WATCHPNP_Samsung
|
watchPnp.exe
|
U
|
Printer software used by Samsung printers.
|
|
WisLMSvc
|
WisLMSvc.exe
|
U
|
Found on Acer laptops. Anyone know what it is?
|
|
ukl
|
wmpusrvc.exe
|
U
|
Added by the Spyware.UltimateKeylog surveillance software. Spyware.UltimateKeylog is a program that records keystrokes and takes screenshots of the co ... Read More
|
|
Hidetools Spy Monitor
|
wmispe.exe
|
U
|
Added by the Spyware.HidetoolsSpy surveillance software. Spyware.HidetoolsSpy is a spyware program that records screen shots and logs keystrokes on t ... Read More
|
|
winchk
|
winchk.exe
|
U
|
Added by the Spyware.RemoteSpy surveillance software.
|
|
mynsw
|
wntsrv.exe
|
U
|
Added by the Spyware.NetScreenWatch surveillance software. Spyware.NetScreenWatch is a spyware program that monitors user activity on the compromised ... Read More
|
|
Web Management Service
|
WMSvc.exe
|
U
|
Allows you to manage Microsoft Internet Information Services (IIS) via the web.
|
|
Genesis Streaming Service
|
WPGApplicationLauncher.exe
|
U
|
Allows you to communicate with projectors via wireless.
|
|
Windows Mobile-based device managemen
|
wmdSync.exe
|
U
|
Added by the Windows Mobile Device Center is a program for Windows Vista and Windows 7 that allows you to manage device settings, media, and programs ... Read More
|
|
Windows Search
|
WindowsSearch.exe
|
U
|
Windows Search adds support for indexing encrypted files, and enables PC-to-PC search on every operating system where Windows Search 4.0 runs-while an ... Read More
|
|
WFPService
|
WFPService.exe
|
U
|
Added by Microsoft's Windows Feedback Program utility.
|
|
(*)API Machine
|
winSOCKS.exe
|
X
|
Homepage hijacker. (* = any digit)
|
|
(*)Run
|
win32API.exe
|
X
|
Homepage hijacker. (* = any digit)
|
|
(default)
|
winhelp.exe
|
X
|
Added by the BLACKMAL.C WORM!
|
|
*windows update
|
wrauclt.exe
|
X
|
Added by the RBOT-QU WORM!
|
|
*windows update
|
wuanclt.exe
|
X
|
Added by the RBOT-PG WORM!
|
|
*windows update
|
wuaucrlt.exe
|
X
|
Added by the SPYBOT.HUR WORM!
|
|
*windows update
|
wuraclt.exe
|
X
|
Added by the RBOT-PO WORM!
|
|
,main drive Loader
|
wininfo.exe
|
X
|
Suspected malware as it appears in 3 different registry locations - see here
|
|
.Prog
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
AKEYNAME
|
WinServ.exe
|
X
|
Added by the EVILBOT.C TROJAN!
|
|
APIMon
|
winapix.exe
|
X
|
Added by a variant of the TIBSER.A downloader TROJAN!
|
|
won update
|
WAPDATE.EXE
|
X
|
Added by the WIN32.RBOT.N WORM! ... Read More
|
|
atisrc2
|
windfind.exe
|
X
|
Adult content dialler - see here. This has to be cleared at the same time as MSStartOptimizer (WINUPD.EXE), mmxrun (msosa.exe) and RegCompres (REGCPM3 ... Read More
|
|
Auto Updat
|
WindowsSys32.exe
|
X
|
Added by a variant of the FORBOT WORM!
|
|
blah service
|
winupdate.exe
|
X
|
Added by the GAOBOT.BIA WORM!
|
|
blah service
|
winsysengine.exe
|
X
|
Added by the RBOT-KI WORM!
|
|
BuildLab
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Bymer.Scanner
|
Wininit.exe
|
X
|
Added by the W32.HLLW.Bymer worm! Please note that this infection should not be confused with the legitimate Windows file located at %System%\wininit. ... Read More
|
|
ccApp
|
WMADZ.EXE
|
X
|
Added by the RBOT-LJ WORM!
|
|
ccApps
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
CFDStart
|
WinMuschi.exe
|
X
|
|
|
ComTry Web Searcher
|
wstray.exe
|
X
|
Comtry MP3 Downloader related - spyware
|
|
Config Loadr
|
winsys32.exe
|
X
|
Added by the AGOBOT-HN WORM!
|
|
Configuration Default
|
Wuxat.exe
|
X
|
Added by the SPYBOT-CA WORM!
|
|
Configuration File
|
Winset32.exe
|
X
|
Added by the FLUX.101 TROJAN!
|
|
Configuration Loaded
|
wupdated.exe
|
X
|
Added by the MOEGA or MOEGA.AG or MOEGA.AP WORMS!
|
|
Configuration Loader
|
wincrt32.exe
|
X
|
Added by the GAOBOT.BF WORM!
|
|
Configuration Loader
|
windex.exe
|
X
|
Added by the GAOBOT.BZ WORM!
|
|
Configuration Loader
|
Winreg.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
configuration loader
|
winicfg32.exe
|
X
|
Added by the GAOBOT.GEN!POLY WORM!
|
|
Configuration Loader
|
wincffg.exe
|
X
|
Added by the AGOBOT.A3 WORM!
|
|
ContentService
|
winservn.exe
|
X
|
Homepage hijacker
|
|
cpntmgc
|
wincomp.exe
|
X
|
MagicControl downloader trojan variant
|
|
cpntmgc
|
winmgts.exe
|
X
|
MagicControl downloader trojan variant
|
|
cqlyg
|
world_cup_.bat
|
X
|
Added by the WCUP.A WORM!
|
|
Delete Me
|
worm.exe
|
X
|
Added by the DOOMHUNTER WORM!
|
|
drmu
|
W95Mm.exe
|
X
|
Homepage hijacker installing a toolbar: http://tdko.com/. Lop.com in disguise. See this thread ... Read More
|
|
dvd98
|
windvd98.exe
|
X
|
Added by the CULT.P WORM!
|
|
Dvx
|
wsxsvc.exe
|
X
|
Delfin Media Viewer or "Promulgate" adware variant
|
|
Enumerate Service
|
wsys.exe
|
X
|
Added by the MANIFEST TROJAN!
|
|
erthgdr
|
windll.exe
|
X
|
Added by the BEAGLE.AO or BEAGLE.AQ WORMS!
|
|
ExeName32
|
Warm.scr
|
X
|
|
|
explorer
|
wscript.exe [filename]
|
X
|
Sneaky way to start any VBS script. Many viruses use VBS files
|
|
eZWO
|
wo.exe
|
X
|
Ezula "Web Offer" foistware
|
|
File System Service
|
wmiprvsc.exe
|
X
|
Added by the AGOBOT-HZ TROJAN!
|
|
FileManager32
|
Wscript.exe ..ChkMgr32.vbs
|
X
|
Added by the NOTUP.A WORM!
|
|
FileSoft
|
Wscript.exe UpdataFiles.vbs
|
X
|
|
|
Folder Service
|
wssdtu.exe
|
X
|
Added by the MANIFEST TROJAN!
|
|
FriendlyTypeName
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Generic Host Process for Win32 Services
|
winsvc.exe
|
X
|
Added by the SDBOT-O WORM!
|
|
gremier
|
wscript.exe gpremier.vbs
|
X
|
Added by the GPREMIER WORM!
|
|
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
|
windowsupdate.exe
|
X
|
Added by the FORBOT-BJ WORM! (where HKLMRun represents HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun) ... Read More
|
|
ICQ Net
|
winlogon.exe
|
X
|
Added by variants of the NETSKY WORMS! Note - this is not the legitimate winlogon.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
internct
|
WinSocks5.exe
|
X
|
Added by the GRAYBIRD.F TROJAN!
|
|
INTERNET SERVISES
|
winz32.exe
|
X
|
Added by the KWBOT.Z WORM!
|
|
INTERNET_SERVISES
|
winz32.exe
|
X
|
Added by the SDBOT.Q TROJAN!
|
|
InterU
|
WINDRV.EXE
|
X
|
Added by the IRCINTER.A TROJAN!
|
|
IPTable Configuration
|
Winipcfgs.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
KavRuns
|
Windll.exe
|
X
|
Added by the TRYNOMA TROJAN!
|
|
Kernel_check
|
wmiprvse.exe
|
X
|
Added by the SONEBOT-B WORM!
|
|
key
|
winxp.exe
|
X
|
Added by the BEAGLE.AG WORM!
|
|
Load-Guard
|
Wscript.exe LGuarg.exe.vbs
|
X
|
Added by the YENO.B and YENO.C WORMS!
|
|
load=
|
win32exec.exe
|
X
|
Added by the BITTER WORM!
|
|
loader
|
WMPLAYER.EXE
|
X
|
Unknown malware. This infection replaces the legitimate wmplayer.exe file with an infection file of the same name. ... Read More
|
|
LTM2
|
winupdate.exe
|
X
|
Added by the LITMUS.203 TROJAN!
|
|
MC
|
wintrims.exe
|
X
|
Added by the WINTRIM TROJAN!
|
|
MD IE Plugin
|
winy.exe
|
X
|
Adware
|
|
Media Player
|
wmplayer.exe
|
X
|
Added by the AGOBOT-BM WORM!
|
|
Microsof Winlog Host
|
wilogon32.exe
|
X
|
Added by the RBOT.XC WORM!
|
|
Microsoft 16Bit Update
|
wuapdate16.exe
|
X
|
Added by the RBOT.CZ WORM!
|
|
Microsoft auto update
|
winupdate.exe
|
X
|
Added by the BMBOT TROJAN!
|
|
Microsoft DirectX
|
wuamgrd.exe
|
X
|
Added by the SDBOT.MY WORM!
|
|
Microsoft Dll Management
|
windll.exe
|
X
|
Added by the RBOT-MT WORM!
|
|
Microsoft Drivers
|
WSconf.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft ErgoPack
|
wserb32.exe
|
X
|
Added by the RBOT-RI WORM!
|
|
Microsoft Excell
|
wuamngr32.exe
|
X
|
Added by the RBOT-QH WORM!
|
|
Microsoft Internet
|
windows32.exe
|
X
|
Added by the SDBOT-F WORM!
|
|
Microsoft IT Update
|
win64.exe
|
X
|
Added by the RBOT.GA WORM!
|
|
Microsoft IT Update
|
winn43.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft IT Update
|
win43.exe
|
X
|
Added by the RBOT-SA WORM!
|
|
Microsoft IT Update
|
windows.exe
|
X
|
Added by the RBOT-GL WORM!
|
|
Microsoft Java Virtual Machine
|
winscr32.exe
|
X
|
Added by a variant of the WOOTBOT WORM!
|
|
Microsoft Kernel
|
Windows_kernel32.exe
|
X
|
Added by the NETSKY.AE WORM!
|
|
Microsoft media
|
winmplayers.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft media services
|
winmplayer.exe
|
X
|
Added by the RBOT.ZO WORM!
|
|
Microsoft NT Update
|
winexec32.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Office Start
|
winupdates.exe
|
X
|
Added by the GAOBOT.BC WORM!
|
|
Microsoft Security Management
|
winnt.exe
|
X
|
Added by the RBOT-MQ WORM!
|
|
Microsoft Security Management
|
winserv.exe
|
X
|
Added by the RBOT-MJ WORM!
|
|
Microsoft Service
|
winsvc.exe
|
X
|
Added by the SPYBOT-DB WORM!
|
|
Microsoft Synchronization Manager
|
WinLoginnn.exe
|
X
|
Added by the SPYBOT.FO WORM!
|
|
Microsoft Synchronization Manager
|
winupdate.exe
|
X
|
Added by the SDBOT.ER WORM!
|
|
Microsoft Synchronization Manager
|
win.exe
|
X
|
Added by the SDBOT.AK WORM!
|
|
Microsoft System Checkup
|
Wnetlib.exe
|
X
|
Added by the DONK.C WORM!
|
|
Microsoft Update
|
winsys32.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update
|
wuamgrd.exe
|
X
|
Added by the RBOT-LK WORM!
|
|
Microsoft Update
|
wuammgr32.exe
|
X
|
Added by the RBOT-AW WORM!
|
|
Microsoft Update
|
wudmate.exe
|
X
|
Added by the RBOT.AP WORM!
|
|
Microsoft Update
|
wuamgrd32.exe
|
X
|
Added by the RBOT.ZB WORM!
|
|
Microsoft Update
|
webm.exe
|
X
|
Added by the SDBOT.WK WORM!
|
|
Microsoft Update
|
wuagrd.exe
|
X
|
Added by the RBOT-FK WORM!
|
|
Microsoft Update
|
wauguard.exe
|
X
|
Added by the RBOT.AEE WORM!
|
|
Microsoft Update
|
winscv.exe
|
X
|
Added by the RBOT-BH WORM!
|
|
Microsoft Update
|
winsys.exe
|
X
|
Added by the RBOT-GV WORM!
|
|
Microsoft Update
|
wserv32.exe
|
X
|
Added by the RBOT.AF WORM!
|
|
Microsoft Update
|
wtm32.exe
|
X
|
Added by the RBOT-AQ WORM!
|
|
Microsoft Update
|
wumgrd.exe
|
X
|
Added by the SDBOT-KY WORM!
|
|
MICROSOFT UPDATE CONFIGURATION
|
WIN32SNC.EXE
|
X
|
Added by the RBOT-AI WORM!
|
|
Microsoft Update Machine
|
winini.exe
|
X
|
Added by the RBOT-KV WORM!
|
|
Microsoft Update Machine
|
wuawx.exe
|
X
|
Added by the RBOT-CE WORM!
|
|
Microsoft Update Machine
|
winupdt.exe
|
X
|
Added by the RBOT-FP WORM!
|
|
Microsoft Update Machine
|
wuamgd.exe
|
X
|
Added by the SDBOT.HQ WORM!
|
|
Microsoft Update Machine
|
wupdt32x.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Microsoft Update Machine
|
windowsu.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update Machine
|
wininigo.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update Machine
|
winmgr.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update Machine
|
Winmsixp32.exe
|
X
|
Added by the RBOT.DN WORM!
|
|
Microsoft Update Machine
|
Winregs32.exe
|
X
|
Added by the RBOT.DN WORM!
|
|
Microsoft Update Machine
|
winxpini.exe
|
X
|
Added by the RBOT-OB WORM!
|
|
Microsoft Update Machine
|
wuamgrd.exe
|
X
|
Added by the RBOT-HE WORM!
|
|
Microsoft Update Machine
|
wuagrd.exe
|
X
|
Added by the RBOT-GF WORM!
|
|
Microsoft Update Machine
|
winhost.exe
|
X
|
Added by the RBOT-GK WORM!
|
|
Microsoft Update Machine
|
winss.exe
|
X
|
Added by the RBOT.JU WORM!
|
|
Microsoft Update Machine
|
WUAMGRDXS.EXE
|
X
|
Added by the RBOT-GL WORM!
|
|
Microsoft Update Manager
|
WINRLS.EXE
|
X
|
Added by the RBOT-AF WORM!
|
|
Microsoft Update Time
|
wuam.exe
|
X
|
Added by the RBOT-M WORM!
|
|
Microsoft Update Win32a
|
winupdate32a.exe
|
X
|
Added by the RBOT-LO WORM!
|
|
Microsoft Updaters Pros
|
WINDLL32XP.EXE
|
X
|
Added by the SPYBOTTER.GEN VIRUS!
|
|
Microsoft Updates Resources
|
WinFixIDs.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Visual SourceSafe
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup or the Microsoft Visual ... Read More
|
|
Microsoft Windows 2000
|
Winupdsdgm.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Microsoft Windows GUI
|
Windowz.exe
|
X
|
Added by the RANDEX.AEV WORM!
|
|
Microsoft Windows Kernel Services
|
winkrnl386.exe
|
X
|
Added by the ZEBROXY TROJAN!
|
|
Microsoft Windows Loader
|
wloader.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM!
|
|
Microsoft Windows Media Player
|
wimp.exe
|
X
|
Added by the RBOT-FN WORM!
|
|
Microsoft Windows Securety
|
wurguar.exe
|
X
|
Added by the RBOT-KY WORM!
|
|
Microsoft Windows Update Service
|
wupdmgr32.exe
|
X
|
Added by the DOS.AUTOCAT TROJAN!
|
|
Microsoft Windows Updater
|
winupdgm.exe
|
X
|
Added by the GAOBOT.BI WORM!
|
|
Microsoft Windows Updater
|
WINIUPDATES.EXE
|
X
|
Added by the RBOT-KK WORM!
|
|
Microsoft Windows Updater
|
WINUPDATE.EXE
|
X
|
Added by the SDBOT-PU WORM!
|
|
Microsoft Windows Updater
|
win32upd.exe
|
X
|
Added by the RBOT-EC WORM!
|
|
Microsoft Winsock Wrapper
|
ws2_32s.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Microsoft World Service
|
winworld.exe
|
X
|
Added by an unidentified IRC worm with backdoor capability!
|
|
Microsoft-Update
|
wngard.exe
|
X
|
Added by the RBOT-JV WORM!
|
|
Microsofts media
|
winmplayd.exe
|
X
|
Added by an undidentified WORM or TROJAN!
|
|
MicrosoftServiceManager
|
Wintsk32.exe
|
X
|
Added by the YAHA.U WORM!
|
|
MicrosoftUpdate
|
WinUp32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Micrsoft Driver
|
windrive.exe
|
X
|
Added by the SDBOT.AF TROJAN!
|
|
Miosf Update
|
wimsqaad.exe
|
X
|
Added by the SDBOT.AG TROJAN!
|
|
MS-Connect
|
web.exe
|
X
|
Adult content dialler - see here
|
|
msconfig
|
wins.exe
|
X
|
Added by an unidentified IRC WORM with backdoor trojan capabilities!
|
|
MSIdll
|
winmp.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
MSOleath32
|
winss.exe
|
X
|
Added by the Kather Trojan. This infection should not be confused with the legitimate winss.exe used by Windows Live One Care. ... Read More
|
|
MSStartOptimizer
|
WINUPD.EXE
|
X
|
Adult content dialler - see here. This has to be cleared at the same time as RegCompres (REGCPM32.EXE), atisrc2 (windfind.exe) and mmxrun (msosa.exe), ... Read More
|
|
MSUpdate
|
wupd.exe
|
X
|
Added by the ALADINZ.M TROJAN!
|
|
MyPointsPointAlert
|
wjview ...MyPointsPointAlertrun.exe
|
X
|
"With MyPoints you can earn rewards from name-brand merchants. You can even earn vacations and frequent flyer miles". Dubious privacy policy ... Read More
|
|
mysoft
|
winexplor.exe
|
X
|
Homepage hijacker
|
|
NAV Agent
|
winsnav.vbs
|
X
|
|
|
NDIS Adapter
|
windows.exe
|
X
|
Added by the FORBOT-BR WORM!
|
|
NDplDeamon
|
winlogin.exe
|
X
|
Added by the RANDEX.E WORM!
|
|
Net
|
WINREG.EXE
|
X
|
Added by the ASSASIN.D TROJAN!
|
|
NetApp
|
winserv.exe
|
X
|
Added by the SHADOWTHIEF TROJAN!
|
|
Netunit32
|
wunit32.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Network Protocol Service
|
wuamgrd.exe
|
X
|
Added by the RBOT.EA WORM!
|
|
Network protocol service
|
wintcp.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM!
|
|
Norton Updater
|
winset.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Patches Value
|
WinGamed.exe
|
X
|
Added by the SDBOT.BR WORM!
|
|
PMedia
|
winsrvc.exe
|
X
|
Internet marketing sofware from PMedia as used in E-Card FriendGreetings foistware - see here. Treated by Trend as the FRIENDGRT.B WORM! ... Read More
|
|
quicken
|
Winrar.exe
|
X
|
CoolWebSearch parasite variant. Note - this is not the file zipping utility also known as WinRAR! ... Read More
|
|
quicken
|
Waol.exe
|
X
|
CoolWebSearch parasite variant
|
|
Quicktime Mediaplayer
|
winmplyer32.exe
|
X
|
Added by the RBOT-PM WORM!
|
|
Quicktime Pro 3.0
|
winuodps.exe
|
X
|
Added by the GAOBOT.BH WORM!
|
|
Reg Service
|
winsy.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Reg Services
|
Winboot32.exe
|
X
|
Added by the RBOT.PB WORM!
|
|
RegDone
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Registry
|
wscript.exe
|
X
|
Added by the VBSWG.AQ WORM!
|
|
Registry Checkup
|
winreg.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Registry Loader
|
winhlpp32.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
RegistryChk
|
winbackup.exe
|
X
|
Added by the MERTIAN WORM!
|
|
Remote Procedure Call
|
winrpc.exe
|
X
|
Added by the RBOT-KM WORM!
|
|
Remote Procedure Call
|
winsysrpc.exe
|
X
|
Added by the SDBOT-PS WORM!
|
|
Remote Procedure Calls
|
win.exe
|
X
|
Added by the SDBOT-QI WORM!
|
|
Run MSupdt32
|
wscript MSupdt32.vbs
|
X
|
|
|
run32dll
|
WINClock.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
run=
|
wmplayer.exe
|
X
|
CoolWebSearch parasite variant - Note: this is not the Windows Media Player executable! ... Read More
|
|
Rund1l32
|
Winfi1e32.exe
|
X
|
Added by the MERTIAN WORM!
|
|
RunDLL32
|
winupdate.exe
|
X
|
Added by an unidentified TROJAN! - possibly a BMBOT variant
|
|
Rundll32
|
Windows.exe
|
X
|
Added by the QQPASS.E TROJAN!
|
|
RunProg
|
wini.exe
|
X
|
Added by the OPTIX.04.D TROJAN!
|
|
Serv-U
|
wssdsu.exe
|
X
|
Added by the MANIFEST TROJAN!
|
|
Service Process
|
winset.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Services
|
winread.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Shell
|
wmedia16.exe
|
X
|
Added by the GOLDUN TROJAN!
|
|
SkynetRevenge
|
winlogon.scr
|
X
|
Added by the NETSKY.AA WORM!
|
|
smcserv
|
winsrv.exe
|
X
|
Added by the AGOBOT-OU WORM!
|
|
Sound System
|
WinSound1.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
SPINX
|
Wscript.exe OXNEY.B.VBS
|
X
|
Added by the YENO.B and YENO.C WORMS!
|
|
SpywareGuard
|
winproc32.exe
|
X
|
|
|
SpywareGuardPlus
|
winmm64.exe
|
X
|
StartPage.ht homepage hijacker
|
|
ssate.exe
|
winsys.exe
|
X
|
Added by the BEAGLE.K WORM!
|
|
ssgrate.exe
|
winerdir.exe
|
X
|
Added by the MITGLIEDER.O TROJAN!
|
|
SSK Service
|
winssk32.exe
|
X
|
Added by the SOBIG.E WORM!
|
|
Start
|
windows.vbs
|
X
|
Homepage hijacker
|
|
stmha
|
wkfxi.js
|
X
|
|
|
Svchost
|
winhost.exe
|
X
|
Added by the LOLAWEB.A TROJAN! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! ... Read More
|
|
Sygate Personal Firewall
|
Win32x.exe
|
X
|
Added by the RBOT-KZ WORM!
|
|
Sys29
|
win***32.exe [* = random char]
|
X
|
|
|
SysA
|
win***32.exe [* = random char]
|
X
|
|
|
Syscheck
|
win.hta
|
X
|
Browser hijacker
|
|
SysConfig
|
wincfg32.exe
|
X
|
Added by the SDBOT.ZD WORM!
|
|
sysdir
|
winrun.exe
|
X
|
Added by the WINBUR.B WORM!
|
|
SysInit
|
wininit32.exe
|
X
|
|
|
System Manager
|
winsrv32.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
System Update
|
wupdmgr.exe
|
X
|
Added by the SOROMO-A TROJAN!
|
|
System Update Service
|
wmiprvsa.exe
|
X
|
Added by the AGOBOT-RG TROJAN!
|
|
System Update2
|
webcheck.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
wininet.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
winlogon.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
winspool.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Update2
|
wupdmgr.exe
|
X
|
Added by the AUTOTROJ-C TROJAN!
|
|
System Updater Service
|
wmiprvsw.exe
|
X
|
Added by the GAOBOT.AFC WORM!
|
|
SystemAdministration
|
Wincmp32.exe
|
X
|
Added by the ASYLUM TROJAN!
|
|
SystemReg
|
WINREG.EXE
|
X
|
Added by the DEWIN.A TROJAN!
|
|
systhread
|
winkernal.exe
|
X
|
Added by the LIAMED WORM!
|
|
Taskmon driver
|
winampa.exe
|
X
|
Added by the LOONY-I TROJAN!
|
|
TEXTCONV
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Time Zone Synchronization
|
wscript zshell.js
|
X
|
Added by the NETDEX-A TROJAN!
|
|
TrayX
|
winppr32.exe
|
X
|
Added by the SOBIG.F WORM!
|
|
updater
|
wupdater.exe
|
X
|
eUniverse KeenValue parasite related
|
|
updater32
|
winload32.exe
|
X
|
Added by the CULT.M WORM!
|
|
upddateit
|
winit.exe
|
X
|
Added by the RBOT-MS WORM!
|
|
UPNPService
|
WinSVCservice.exe
|
X
|
Added by the AGOBOT.UN WORM!
|
|
UPSUtl
|
web.exe
|
X
|
CoolWebSearch parasite variant
|
|
USB 2.1 Driver
|
winupdate1.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
USB Device
|
win32usb.exe
|
X
|
Added by the FORBOT-BQ WORM!
|
|
Video
|
winamp32.exe
|
X
|
Added by the AGOBOT-NG WORM!
|
|
Video Proces
|
winaps.exe
|
X
|
Added by the AGOBOT.HD WORM!
|
|
virtual
|
winit.exe
|
X
|
Added by the MUGLY.A or MUGLY.B WORMS!
|
|
virtual
|
winprotect.exe
|
X
|
Added by the MUGLY.C WORM!
|
|
Windows Protection Suite
|
WI345d.exe
|
X
|
Added by the Windows Protection Suite rogue anti-spyware program.
|
|
w32
|
w32.exe
|
X
|
Added by the SOKEVEN TROJAN!
|
|
w32sup
|
w32sup.exe
|
X
|
Adult content dialler
|
|
W32Tc
|
WTC32.scr
|
X
|
Added by the VOTE.D or VOTE.K WORMS!
|
|
WAPI
|
wts**.exe [* = random char]
|
X
|
|
|
WareOut
|
WareOut.exe
|
X
|
Malware masquerading as a spyware and dialer remover, see here
|
|
Wast
|
wast.exe
|
X
|
Grokster ads updater
|
|
WCPI
|
wintsvit.exe
|
X
|
|
|
WCPS
|
Wint**.exe [* = random char]
|
X
|
|
|
WCPT
|
wintsvtr.exe
|
X
|
|
|
WDInfo
|
wdinfo.exe
|
X
|
Adult content dialler
|
|
wdskctl
|
wdskctl.exe
|
X
|
|
|
wdwctrl
|
wdwctrl.exe
|
X
|
Added by the DLUCA.E TROJAN!
|
|
WeatherOnTray
|
WeatherOnTray.exe
|
X
|
Hotbar's Weather Forecast tool for your desktop - adware
|
|
webalize
|
webalize.exe
|
X
|
|
|
webassist
|
webassist.exe
|
X
|
Adware popup generator
|
|
Webcelerator
|
webcel.exe
|
X
|
Webcelerator from eAcceleration speeds your Web browsing by both remembering where you have been and anticipating where you will go. Only needed if yo ... Read More
|
|
WebCheck
|
WebCheck.pif
|
X
|
Added by the CONE.C or CONE.F WORMS!
|
|
WebCpr0
|
WebCpr0.exe
|
X
|
|
|
Webdav.exe
|
webdav.exe
|
X
|
IRC DDoS bot which gives the hacker full control over your system
|
|
WebHancer Agent
|
whagent.exe
|
X
|
System Tray application that starts up Webhancer software. Software that optimizes your web browser and is also advertising spyware that you can find ... Read More
|
|
webHancer Survey Companion
|
whSurvey.exe
|
X
|
WebHancer foistware - traffic measurement service that uses a client agent that is stealth installed on user machines, gathering detailed data about s ... Read More
|
|
WebInstall
|
WebInstall.exe
|
X
|
ClipGenie adware downloader
|
|
WebInstall2
|
WebInstall.exe
|
X
|
ClipGenie adware downloader
|
|
WebRebates0
|
WebRebates0.exe
|
X
|
|
|
WebSavingsfromEbates
|
WebSavingsfromEbatesrun.exe
|
X
|
Web Savings From Ebates Software, a shopping tool that opens pop-up windows
|
|
WebSavingsFromEbates0
|
WebSavingsFromEbates0.exe
|
X
|
Web Savings From Ebates Software, a shopping tool that opens pop-up windows
|
|
websearch
|
wjview ...websearch.exe
|
X
|
"Web Savings" From Ebates Software, a shopping tool that opens pop-up windows
|
|
WebSecureAlert
|
WebSecureAlert.exe
|
X
|
WebSecureAlert. "Can help protect your browser security and privacy". However, it's by GAIN Publishing, and will display pop up ads on your computer s ... Read More
|
|
whagent
|
whagent.exe
|
X
|
System Tray application that starts up Webhancer software. Software that optimizes your web browser and is also advertising spyware that you can find ... Read More
|
|
Whvlxd
|
Whvlxd.exe
|
X
|
Added by the W32.LXD.MIRC TROJAN!
|
|
Win Comm
|
WinComm.exe
|
X
|
WebRebates related adware
|
|
WIN HOST PROCESS
|
WIN HOST PROCESS.EXE
|
X
|
Added by the KEYLOGGER.CLONE TROJAN!
|
|
Win l5oahder
|
winampa.exe
|
X
|
Added by the SPYBOTER.GEN VIRUS! Not the valid Winamp Agent which uses the same filename. This resides in the System32 sub-folder wheras real one is l ... Read More
|
|
Win Server
|
winserv.exe
|
X
|
Added by the IMISERV.A TROJAN!
|
|
Win Server Updt
|
wupdt.exe
|
X
|
Added by the IMISERV.A TROJAN!
|
|
win update
|
wupda32.exe
|
X
|
Added by the SDBOT.J WORM!
|
|
WIN-BUGSFIX
|
WIN-BUGSFIX.EXE
|
X
|
Added by the LOVELETTER (I LOVE YOU) VIRUS!
|
|
WIN32
|
WIN32.EXE
|
X
|
Added by the RATEGA TROJAN!
|
|
Win32
|
Win32.exe
|
X
|
Added by the ISRAZ.A and the W32/Mytob-AB WORMS!
|
|
win32
|
winsrv32.exe
|
X
|
Added by the ADUENT TROJAN! Acts as a hi-jacker redirecting to Surferbar.com and adult content sites ... Read More
|
|
win32
|
WinSetup.exe
|
X
|
Added by the EVILBOT.B TROJAN!
|
|
Win32 Device Loader
|
Win32ldr.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM!
|
|
Win32 DRK Driver
|
wdrk32.exe
|
X
|
Added by the WOOTBOT.CY WORM!
|
|
Win32 exe file
|
winstr32.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Win32 Services1
|
wuamngr1.exe
|
X
|
Added by the SDBOT-PV WORM!
|
|
Win32 Src Service
|
win32src.exe
|
X
|
Added by the RBOT-SX WORM!
|
|
Win32 SSL Driver
|
winssv.exe
|
X
|
Added by the FORBOT-BH WORM!
|
|
Win32 USB Driver
|
winxpinit.exe
|
X
|
Added by the SDBOT.AA TROJAN!
|
|
Win32 USB2 Driver
|
win32usb.exe
|
X
|
Added by the SPYBOT.DHV WORM!
|
|
Win32 USB2 Driver
|
wind32.exe
|
X
|
Added by the FORBOT-AH WORM!
|
|
Win32 USB2 Driver
|
winupdate.exe
|
X
|
Added by the AGOBOT.YE WORM!
|
|
Win32 USB2 Driver
|
winsnd32.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Win32 USB2.0 Driver
|
w32usb2.exe
|
X
|
Added by the SPYBOT.DN WORM!
|
|
Win32 Wmls Driver
|
winitr32.exe
|
X
|
Added by the WOOTBOT.B WORM!
|
|
win32.exe
|
win32.exe
|
X
|
Added by the STARTPAGE TROJAN!
|
|
Win32BaseServiceMOD
|
Wintask.exe
|
X
|
Added by the NAVIDAD WORM!
|
|
win32clf
|
win32clf.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Win32DLL
|
Win32DLL.vbs
|
X
|
Added by the LOVELETTER (I LOVE YOU) VIRUS!
|
|
Win32dll
|
Win32dll.exe
|
X
|
Added by the BANPAES TROJAN!
|
|
win32gb
|
win32gb.exe
|
X
|
All-In-One-Telcom (adult content dialler) variant
|
|
win32info
|
win32info.exe
|
X
|
Adult content dialler
|
|
Win32System
|
win32s.exe
|
X
|
Added by the MYDOOM.V WORM!
|
|
win32us
|
win32us.exe
|
X
|
All-In-One-Telcom (adult content dialler) variant
|
|
win32_i lptt01
|
win32_i.exe
|
X
|
Variant of the RapidBlaster parasite (in a "win32_i" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
|
|
win32_i ml097e
|
win32_i.exe
|
X
|
Variant of the RapidBlaster parasite (in a "win32_i" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapi ... Read More
|
|
Win386
|
Win386.exe
|
X
|
Added by the GOSUSUB VIRUS!
|
|
WIN3S2SNDS
|
winabsmod.exe
|
X
|
Added by the AGENT.DN TROJAN - known to BOClean as "CWS/INDEX", "shuts down anything that wants to open and is used as a spam proxy as well" ... Read More
|
|
WIN3S2SNDS
|
winiprtx.exe
|
X
|
Added by the AGENT.DN TROJAN - known to BOClean as "CWS/INDEX", "shuts down anything that wants to open and is used as a spam proxy as well" ... Read More
|
|
winactive
|
WINACTIVE.EXE
|
X
|
Active variant of LOP.com hijacker - see here
|
|
WinActiveJ
|
WinActiveJ.exe
|
X
|
Added by the ROTARRAN VIRUS!
|
|
Winad Client
|
Winad.exe
|
X
|
WinAd adware by eXact Advertising
|
|
winadm
|
winadm.exe
|
X
|
Browser hijacker - redirecting to Search-World.net. Related to the SMALL.LR TROJAN! ... Read More
|
|
Winahlp.exe
|
Winahlp.exe
|
X
|
Added by a variant of the VAGRNOCKER TROJAN!
|
|
winallap
|
winallap.exe
|
X
|
Added by the DELF.E TROJAN!
|
|
winallapu
|
winallapu.exe
|
X
|
Added by the DELF.E TROJAN!
|
|
Winamp
|
winamp.hta
|
X
|
Hijacker - re-directing to adult content sites. Note - this isn't the real Winamp ... Read More
|
|
Winamp
|
winamp.exe
|
X
|
Added by the AGOBOT-MC WORM! Note - this is NOT the Winamp Media Player (WinAmpa.exe) ... Read More
|
|
Winamp media player
|
winapa.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Winampa
|
winampa.exe
|
X
|
Added by the AGOBOT-GS WORM!
|
|
Winampa Agent
|
WINAMPA.EXE
|
X
|
Added by the SPYBOT-BR WORM! Note - this is NOT the Winamp Media Player
|
|
WinApi
|
winapix.exe
|
X
|
Added by a variant of the TIBSER.A downloader TROJAN!
|
|
Winapp
|
winpup32.exe
|
X
|
Produces popup ads to adult content sites
|
|
WinAuth
|
winlogon.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! Note - this is not the valid winlogon.exe process ... Read More
|
|
winbas12
|
winbas12.exe
|
X
|
Adware, probably CoolWebSearch parasite related - recognized by Kaspersky antivirus as TrojanDownloader.Win32.VB.du ... Read More
|
|
Winbed
|
winbed.exe
|
X
|
Hijacker
|
|
WinCheck
|
WinCheck.exe
|
X
|
Added by the PWS-CY TROJAN!
|
|
wind.exe
|
wind.exe
|
X
|
Added by the MITGLIEDER.BD TROJAN!
|
|
WIND0WS
|
WIND0WS.exe
|
X
|
Added by the SPYBOT.DQ WORM!
|
|
windbs
|
winxtc.exe
|
X
|
Added by the AGOBOT-WD WORM!
|
|
Winde
|
winde.exe
|
X
|
Added by the DLUCA TROJAN!
|
|
windef
|
Win32sp.vbs
|
X
|
|
|
windir
|
winrun.exe
|
X
|
Added by the WINBUR.B WORM!
|
|
Windll
|
Windll.exe
|
X
|
Added by the TRYNOMA TROJAN!
|
|
windll
|
windll32.exe
|
X
|
Added by the ASTEF or RESPAN WORMS!
|
|
Windll.exe
|
Windll.exe
|
X
|
Added by the STEALER TROJAN!
|
|
Windll32
|
Windll32.exe
|
X
|
Added by the MSNPWS TROJAN!
|
|
windllsys32.exe
|
windllsys32.exe
|
X
|
Added by a variant of the MITGLIEDER.BY TROJAN!
|
|
WinDNS
|
windns32.exe
|
X
|
Added by the GAOBOT.WX WORM!
|
|
Window Monitor
|
winmon32.exe
|
X
|
Added by the SDBOT.RT WORM!
|
|
window.exe
|
window.exe
|
X
|
Added by the MITGLIEDER.H or MITGLIEDER.J TROJANS!
|
|
WindowEnhancer
|
Winex.exe
|
X
|
|
|
Windows
|
Windows.exe
|
X
|
Added by the KAZMOR, BOBBINS & ALADINZ.D TROJANS!
|
|
Windows AdControl
|
WinAdCtl.exe
|
X
|
Windupdates adware variant
|
|
Windows AdService
|
WinAdServ.exe
|
X
|
Windupdates adware variant
|
|
Windows AdTools
|
WinAdTools.exe
|
X
|
Windupdates adware variant
|
|
Windows Auto Update
|
winupdater.exe
|
X
|
Added by the SDBOT.TF WORM!
|
|
Windows Automatic Update
|
wuamgrder.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Windows Communicator
|
wincomm.exe
|
X
|
Added by the AGOBOT-BH WORM!
|
|
Windows Config Loader
|
Wincfg32.exe
|
X
|
Added by the SILVERFTP TROJAN!
|
|
Windows Configuration
|
wsys32.exe
|
X
|
Added by the GAOBOT.FB WORM!
|
|
Windows ControlAd
|
WinCtlAd.exe
|
X
|
Windupdates adware variant
|
|
Windows Database
|
WinDat.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Windows debug logging
|
winlogg.exe
|
X
|
Added by the RBOT-OY WORM!
|
|
Windows debug logging
|
winloggs.exe
|
X
|
Added by the RBOT-QN WORM!
|
|
Windows Debugger
|
windbg.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Windows DNS Daemon
|
windnsd.exe
|
X
|
Added by the WOOTBOT.AS WORM!
|
|
Windows Explorer Shell
|
Winexec32.exe
|
X
|
Added by the REDIST.B WORM!
|
|
Windows Explorer-3212
|
WINRE16.EXE
|
X
|
Added by the HARDOC WORM!
|
|
Windows File Protection
|
winprotect.exe
|
X
|
Added by the AGOBOT.JB WORM!
|
|
Windows Graphics Loaders
|
wingraphics.exe
|
X
|
Added by the SPYBOT.JG WORM!
|
|
Windows Help File
|
winhelper32.exe
|
X
|
Added by the SDBOT-QK TROJAN!
|
|
Windows Help Service
|
winhelpsv.exe
|
X
|
Added by the RBOT-LP WORM!
|
|
Windows Internet Protocol
|
winproc32.exe
|
X
|
CoolWebSearch parasite variant
|
|
Windows JavaScript Daemon
|
Winjsd.exe
|
X
|
Added by the WOOTBOT.AF WORM!
|
|
Windows Loader
|
wstart32.exe
|
X
|
Added by the GAOBOT.CA WORM!
|
|
Windows logging
|
winlogd.exe
|
X
|
Added by the RBOT-ON WORM!
|
|
Windows Logon
|
winlogin.exe
|
X
|
Added by the SPYBOT-C TROJAN!
|
|
Windows Manager
|
winmants.exe
|
X
|
Added by the MANTAS WORM!
|
|
Windows mangement
|
winlogonn.exe
|
X
|
Added by the RANDEX.FC WORM!
|
|
Windows Media Player
|
wmediaplayer.exe
|
X
|
Added by the AGOBOT-NQ WORM!
|
|
Windows Monitor
|
winmon.exe
|
X
|
Added by the SDBOT.VB WORM!
|
|
Windows Monitoring Service
|
winmon.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
Windows Nets
|
WinNET.exe
|
X
|
Added by the RBOT-MO WORM!
|
|
Windows Network Service
|
winvc32.exe
|
X
|
Added by the RBOT.RY WORM!
|
|
Windows Networking
|
winsys32.exe
|
X
|
Added by the GAOBOT.FL WORM!
|
|
Windows NT Service Name
|
winshock.exe
|
X
|
Added by the RBOT-PK WORM!
|
|
Windows NT Update Manager
|
WINL0G0N.exe
|
X
|
Added by the AGOBOT-NU WORM! Note that those are zeroes in the filename and not capital "o" ... Read More
|
|
Windows OEM Tools
|
winres32.exe
|
X
|
Added by the SPYBOT.FD WORM!
|
|
Windows Registry Cleaner
|
winclean.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Windows Registry Startup
|
wind32.exe
|
X
|
Added by the AGOBOT-BZ WORM!
|
|
Windows Runtime Help
|
win32hlp.exe
|
X
|
Added by a variant of the AIMVISION TROJAN!
|
|
Windows Runtime Help
|
WinRunHelp.wrh
|
X
|
Added by a variant of the AIMVISION TROJAN!
|
|
Windows Security Assistant
|
winsec.exe
|
X
|
CoolWebSearch parasite variant
|
|
Windows ServeAd
|
WinServAd.exe
|
X
|
Windupdates adware variant
|
|
Windows service
|
wuamgrd.exe
|
X
|
Added by the RBOT-QW WORM!
|
|
Windows SSL File
|
winssv.exe
|
X
|
Added by the WOOTBOT.CA WORM!
|
|
Windows Startup
|
winsta~1.exe
|
X
|
|
|
Windows Startup
|
winstartup.exe
|
X
|
|
|
Windows Startup
|
Wdrun32.exe
|
X
|
Added by the GAOBOT.AO WORM!
|
|
Windows System Manager
|
winsystem.exe
|
X
|
Added by the RBOT-AN WORM!
|
|
Windows System Manager Proc
|
winsmc.exe
|
X
|
Added by the RBOT.JH WORM!
|
|
Windows System Security
|
winmp.exe
|
X
|
Added by the RBOT.IV WORM!
|
|
Windows System Serivce
|
winserv.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
windows system service
|
winsock.exe
|
X
|
Added by the RBOT-MR WORM!
|
|
Windows TaskAd
|
Wintaskad.exe
|
X
|
Windupdates adware variant
|
|
Windows TCP/IP
|
wintcp.exe
|
X
|
Added by the AGOBOT-ZH WORM!
|
|
Windows Telnet Server
|
wintel.exe
|
X
|
Added by the AGOBOT-MW WORM!
|
|
Windows Update
|
wudate.exe
|
X
|
Added by the AGOBOT.ML WORM!
|
|
Windows Update
|
wupdate.exe
|
X
|
|
|
Windows Update
|
Wuamgrd.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
windows update
|
wuraclt.exe
|
X
|
Added by the RBOT-PO WORM!
|
|
windows update
|
Wuanclt.exe
|
X
|
Added by the RBOT.XZ WORM!
|
|
Windows Update
|
windows.exe
|
X
|
Added by the RBOT-RB WORM!
|
|
windows update
|
wuaurlt.exe
|
X
|
Added by the RBOT.ADG WORM!
|
|
Windows Update
|
winmguard.exe
|
X
|
Added by the RBOT-EM WORM!
|
|
Windows Update
|
wuampd.exe
|
X
|
Added by the RBOT.UM WORM!
|
|
windows update
|
wuarclt.exe
|
X
|
Added by the RBOT-OF WORM!
|
|
Windows Update AutoUpdate Client Product
|
wuauct.exe
|
X
|
Added by the AGOBOT.ACL WORM!
|
|
Windows Update Client
|
wuclient.exe
|
X
|
Added by the SMALL-RN TROJAN!
|
|
Windows Update Client Service
|
windrvl32.exe
|
X
|
Added by the AGOBOT-MM TROJAN!
|
|
Windows Update Manager
|
wupdmngr.exe
|
X
|
Added by the RANDEX.BTB WORM!
|
|
Windows Update Manager
|
Winlog0n.exe
|
X
|
Added by the AGENT-BO TROJAN!
|
|
Windows Update Manager for NT
|
wupdmgr32.exe
|
X
|
Added by the SDBOT.AH WORM!
|
|
Windows Update Monitoring Service
|
winupdt.exe
|
X
|
Added by the RBOT-PL WORM!
|
|
Windows Update Process
|
wmiprvsc.exe
|
X
|
Added by the SDBOT-CB WORM!
|
|
Windows Updater
|
wupdmgr32.exe
|
X
|
Added by a variant of the DOS.AUTOCAT TROJAN!
|
|
Windows Video Acquisition (WVA)
|
wvsvc.exe
|
X
|
Added by the AGOBOT.YM WORM!
|
|
WindowsAgent
|
WindowsAgent.exe
|
X
|
|
|
WindowsCriticalUpdate
|
windows_critical_update.exe
|
X
|
Added by the ASTEF or RESPAN WORMS!
|
|
WindowsMGM
|
Winmgm32.exe
|
X
|
Added by the SOBIG WORM and LALA.C TROJAN!
|
|
WindowsRegKey update
|
winupdate.exe
|
X
|
Added by the RBOT-QJ WORM!
|
|
WindowsRegKeys update
|
winsysi.exe
|
X
|
Added by the SDBOT.WE WORM!
|
|
WindowsUpd
|
WindowsUpd4.exe
|
X
|
|
|
WindowsUpd1
|
WindowsUpd1.exe
|
X
|
|
|
WindowsUpd2
|
WindowsUpd2.exe
|
X
|
|
|
WindowsUpdate
|
windows_update.exe
|
X
|
|
|
WindowsUpdate Service
|
wuautlc.exe
|
X
|
Added by the RBOT-NR WORM!
|
|
WindowsXP Update
|
windowsxpupdate.exe
|
X
|
Added by the RBOT-PB WORM!
|
|
WinDriv32
|
WinDriv32.exe
|
X
|
Added by the SMALL-BA TROJAN!
|
|
WinDriver Configuration
|
windrvconf.exe
|
X
|
Added by the AGOBOT-LX TROJAN!
|
|
windrv
|
windrv32.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN! - possibly a strain of OBLIVION or BIONET ... Read More
|
|
WinDrv
|
windrvx.exe
|
X
|
Added by a variant of the TIBSER.A downloader TROJAN!
|
|
WinDSNX
|
Win????.exe
|
X
|
Added by the DNSX TROJAN!
|
|
WindUpdates
|
WinUpdt.exe
|
X
|
|
|
WinExec
|
Winexec.exe.vbs
|
X
|
Added by the AINESEY.A WORM!
|
|
WinExec32
|
WinExec32.exe
|
X
|
Added by the KAZWIN WORM!
|
|
WinFavorites
|
WinFavorites.exe1
|
X
|
Loudmarketing.com adware downloader
|
|
winfont
|
winfont.exe
|
X
|
Added by the DEATH TROJAN!
|
|
WinGate
|
WinGate.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
WinGate initialize
|
WinGate.exe
|
X
|
Added by a variant of the LOVGATE WORM!
|
|
wingo
|
wingo.exe
|
X
|
Added by the BEAGLE.AW or BEAGLE.AV WORMS!
|
|
Winhelp
|
winhe1p.exe
|
X
|
Added by the QQPASS.E TROJAN!
|
|
WinHelp
|
WinHelp.exe
|
X
|
Added by a variant of the LOVGATE WORM! Note - "winhelp.exe" resides in C:\Windows\System (Win9x/Me), C:\Winnt\System32 (WinNT/2K), or C:\Windows\Syst ... Read More
|
|
winhlp3.exe
|
winhlp3.exe
|
X
|
Added by a variant of the EASTO.A TROJAN!
|
|
Winhlp32
|
Wscript.exe ..Msexec32.vbs
|
X
|
Added by the GANT.B WORM!
|
|
winhlp32.exe
|
winhlp32.exe
|
X
|
Added by a variant of the EASTO.A TROJAN!
This should not be confused with the legitimate winhlp32.exe file residing in your C:\Windows directory. ... Read More
|
|
winhlpp32.exe
|
winhlpp32.exe
|
X
|
Added by the GAOBOT.SY WORM!
|
|
Winhost
|
wintt.exe
|
X
|
Added by the LOLAWEB.B TROJAN!
|
|
Winhost
|
win.exe
|
X
|
Added by the DLOADER-AP TROJAN!
|
|
winhost32.exe
|
winhost32.exe
|
X
|
Added by the TABDIM TROJAN!
|
|
wininet32
|
wininet32.exe
|
X
|
Added by the RAZNEW-A TROJAN!
|
|
wininetd
|
wininetd.exe
|
X
|
Added by the WINET TROJAN!
|
|
wininit
|
wininit.exe
|
X
|
Added by the WOLLF.16 TROJAN! Please note that this infection should not be confused with the legitimate Windows file located at %System%\wininit.exe. ... Read More
|
|
Wink*.exe
|
Wink*.exe [* = random char]
|
X
|
Added by a variant of the KLEZ WORM!
|
|
WinKernel
|
WinKer.exe
|
X
|
Added by the MIRAB or SERVIDOR TROJANS!
|
|
winkernel32
|
wWin32.com
|
X
|
Added by the BANSAP TROJAN!
|
|
winlibs.exe
|
winlibs.exe
|
X
|
Added by the EVAMAN.C WORM!
|
|
Winlink
|
winlink32.exe
|
X
|
Added by the GAOBOT.AAY WORM!
|
|
Winlme
|
windll.exe
|
X
|
|
|
WinLogin
|
winlogin.exe
|
X
|
Added by the AGOBOT-IX WORM!
|
|
winlogon
|
winlogon.exe
|
X
|
Hijacker or adult content dialler - file is located in C:\Windows or C:\Winnt, and not in it's System or System32 subdirectory, as is the case with th ... Read More
|
|
winlogon
|
winlogin.exe
|
X
|
Added by the RANDEX.E WORM!
|
|
winlogon
|
winlogon.exe
|
X
|
Added by the TRODAL TROJAN! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! File is located in C: ... Read More
|
|
winltmpv
|
winln.exe
|
X
|
Added by the TCXMEDI-C TROJAN!
|
|
winltmpv
|
wutop.exe
|
X
|
Added by the TCXMEDI-C TROJAN!
|
|
Winmain
|
winmain.exe
|
X
|
One of the first of a new breed of malware. When run it immediately loads MSHTA.EXE from the Windows folder, placing it on "hot standby", ready to acc ... Read More
|
|
WinMenssage
|
winmax.exe
|
X
|
Added by the BANCOS.B TROJAN!
|
|
WinMgr32
|
winmgr32.exe
|
X
|
Added by the MIMAIL.P WORM!
|
|
WinMsrv32
|
WinMsrv32.exe
|
X
|
Added by the GAOBOT.AFJ WORM!
|
|
winnet
|
winnet.exe
|
X
|
CommonName Toolbar spyware. To uninstall see here
|
|
WinNtBB
|
WinntBB.exe
|
X
|
Added by the DULOAD.C WORM!
|
|
Winnup
|
win32nls.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
winocx32
|
winocx32.exe
|
X
|
Added by the PROTORIDE.I WORM!
|
|
Winpack
|
winpack.exe
|
X
|
Adware downloader - recognized by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.gg ... Read More
|
|
winpipe
|
winpipe.exe
|
X
|
Browser hijacker redirecting to wow-access.com
|
|
winpopup
|
winupie.exe
|
X
|
Adware by Tradeexit.com
|
|
WinProt
|
Winprot.exe
|
X
|
Added by the CHUPACABRA TROJAN!
|
|
winprotect
|
win32.exe
|
X
|
Added by the MUGLY.E WORM!
|
|
winpsd
|
winpsd.exe
|
X
|
Added by the MYDOOM.Q WORM!
|
|
winrar
|
winrar.exe
|
X
|
CoolWebSearch parasite variant. Note - this is not the file zipping utility also known as WinRAR and it's located in C:\Winnt or C:\Windows ... Read More
|
|
winrarshell
|
winrarshell32.exe
|
X
|
Added by the SALIRA TROJAN!
|
|
winReg
|
winReg.exe
|
X
|
Added by the YAHA.H or YAHA.J WORMS!
|
|
winregsrv
|
winregsrv.exe
|
X
|
Added by the SYNRG TROJAN!
|
|
winrun
|
winrun.exe
|
X
|
Added by the WINBUR.B WORM!
|
|
WinRunners
|
WinDrivers.exe
|
X
|
Added by the DULOAD.C WORM!
|
|
WinSec
|
winsec16.exe
|
X
|
Added by the AGOBOT.ZF WORM!
|
|
winsecure
|
winsecure.exe
|
X
|
Browser hijacker, redirecting to specificsearches.com
|
|
WinServices
|
WinServices.exe
|
X
|
Added by the YAHA.K or YAHA.M WORMS!
|
|
winservn
|
winservn.exe
|
X
|
|
|
winservs
|
winservs.exe
|
X
|
|
|
Winsock2 driver
|
WINCFG.SCR
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
Winsock2 driver
|
winupdate.exe
|
X
|
Added by the SPYBOT-BX WORM!
|
|
Winsock2.dll
|
WINLODR.SCR
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
Winsock32driver
|
win32server.scr
|
X
|
Added by the HACARMY TROJAN!
|
|
Winsock32driver
|
win32server.exe
|
X
|
Added by the BACKDOOR-AZV TROJAN!
|
|
Winsock32driver
|
win32server.exe
|
X
|
Added by the HACARMY.F TROJAN!
|
|
Winsock32driver
|
winXPupdate.exe
|
X
|
Added by the HACKARMY.9728 TROJAN!
|
|
winsockdriver
|
winsock2.2.exe
|
X
|
Added by a variant of the SPYBOT WORM!
|
|
WinSPF
|
windrv32.exe
|
X
|
Added by the MYDOOM.T WORM!
|
|
WinSPF
|
winspf32.exe
|
X
|
Added by the MYDOOM.S WORM!
|
|
Winspl
|
winsplx.exe
|
X
|
Added by a variant of the TROLL-A TROJAN!
|
|
Winsrv
|
winsrv.exe
|
X
|
Added by the OPASERV.T WORM!
|
|
WinStart
|
WinStart.exe
|
X
|
From IGetNet - turns the IE address bar into a keyword engine piped into IGetNet. In other words, with this installed, typing "car" in the IE address ... Read More
|
|
WinStart
|
Wscript.exe WinStart.vbs
|
X
|
Added by the CIAN.C WORM!
|
|
WinStart
|
winstart32.exe
|
X
|
|
|
WinStart
|
WinStart.pif
|
X
|
Added by the CONE.E WORM!
|
|
WinStart001
|
WinStart001.exe
|
X
|
From IGetNet - turns the IE address bar into a keyword engine piped into IGetNet. In other words, with this installed, typing "car" in the IE address ... Read More
|
|
WinStart001.EXE
|
WinStart001.exe
|
X
|
From IGetNet - turns the IE address bar into a keyword engine piped into IGetNet. In other words, with this installed, typing "car" in the IE address ... Read More
|
|
Winsta~1
|
winsta~1.exe
|
X
|
|
|
WinSth16
|
WinSth16.exe
|
X
|
|
|
Winsvc32
|
Winsvc32.exe
|
X
|
Homepage hijacker
|
|
WinSys32
|
Winsys32.exe
|
X
|
Added by the CIGIVIP TROJAN or RECKUS WORM!
|
|
winsys32 Driver
|
winsys32.exe
|
X
|
Added by the LOONY-O TROJAN!
|
|
winsyslog lptt01
|
winsyslog.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Winsyslog" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Ra ... Read More
|
|
WinSyst32
|
winsyst32.exe
|
X
|
|
|
WinSystem
|
winsystem.exe
|
X
|
Added by the WHITEBAIT WORM!
|
|
Winsystem
|
winsystem.exe
|
X
|
Added by the BANCOS.CR TROJAN!
|
|
WINT
|
wcp****.exe [* = random char]
|
X
|
|
|
WINT
|
wcpcc.exe
|
X
|
|
|
WINT
|
wcpsvit.exe
|
X
|
|
|
WinTask
|
Wintask.exe
|
X
|
Added by the HIPO or LEMIR.F TROJANS!
|
|
WinTask driver
|
wintask.exe
|
X
|
Added by the SMALL.ABD downloader TROJAN!
|
|
wintasks.exe
|
wintasks.exe
|
X
|
Added by the EVAMAN WORM!
|
|
Wintime
|
Wintime.exe
|
X
|
Added by the HARNIG TROJAN!
|
|
WinTools
|
WToolsA.exe
|
X
|
|
|
WinTray
|
wintray.exe
|
X
|
Added by the LEGUARDIEN.B TROJAN!
|
|
winupated.exe
|
winupated.exe
|
X
|
Added by a variant of the SDBOT WORM!
|
|
winupd.exe
|
winupd.exe
|
X
|
Added by the BEAGLE.M or BEAGLE.N WORMS!
|
|
winupdat
|
winupdat.exe
|
X
|
Added by the CANBOT.A WORM!
|
|
WinUpdate
|
wmbem.exe
|
X
|
Added by the REVCUSS.B TROJAN!
|
|
winupdate.exe
|
winupdate.exe
|
X
|
Added by the RADO TROJAN!
|
|
winupdate.reg
|
winupdate.exe
|
X
|
Added by the SPYBOT.EAS WORM!
|
|
winupdtl
|
winupdtl.exe
|
X
|
SecondThought adware variant
|
|
winur
|
winrun.exe
|
X
|
Added by the WINBUR.B WORM!
|
|
winusb.dll
|
winguard.exe
|
X
|
Added by the FORBOT-CN WORM!
|
|
winversion
|
winversion.exe
|
X
|
Browser hijacker, redirecting to specificsearches.com
|
|
winwan lptt01
|
winwan.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Winwan" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
winwan ml097e
|
winwan.exe
|
X
|
Variant of the RapidBlaster parasite (in a "Winwan" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use Rapid ... Read More
|
|
winxpdll32.exe
|
winxpdll32.exe
|
X
|
Added by a variant of the SMALL downloader TROJAN!
|
|
win_spool2
|
win_spool2.exe
|
X
|
Added by the SCKEYLOG.B TROJAN!
|
|
win_upd.exe
|
WINdirect.exe
|
X
|
Added by the MITGLIEDER.M TROJAN!
|
|
win_upd2.exe
|
WINdirect.exe
|
X
|
Added by the BEAGLE.AO WORM!
|
|
Win_vader
|
Win_vader.vbs
|
X
|
Added by the INVASION.A VIRUS!
|
|
WIP Config GUI
|
Winipcfgs.exe
|
X
|
Added by the RBOT-CN WORM!
|
|
Wireless Provider Server
|
wpsvr.exe
|
X
|
Added by the FORBOT-AD WORM!
|
|
Wlan Drier
|
Winusb2.exe
|
X
|
Added by the WOOTBOT.DC WORM!
|
|
WMAudio
|
winlogon.exe
|
X
|
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! ... Read More
|
|
Wminf
|
Wminf.exe
|
X
|
Added by the GEMA TROJAN!
|
|
Wminfo
|
Wminfo.exe
|
X
|
Added by the GEMA TROJAN!
|
|
wmiprv
|
wmiprv.exe
|
X
|
Added by the RBOT-WM WORM!
|
|
wmsys32
|
wmsys32.exe
|
X
|
Added by the BANPAES.B TROJAN!
|
|
WNAD
|
WNAD.EXE
|
X
|
Spyware added as a result of running a program called "Yo Mama Osama" (osama.exe). See here for more and how to get rid of it. There are other ways th ... Read More
|
|
WNSC
|
wns*****.exe [* = random char]
|
X
|
|
|
WNSI
|
wnscp**.exe [* = random char]
|
X
|
|
|
WNST
|
wns*****.exe [* = random char]
|
X
|
|
|
Workstation Services
|
wrkstn.exe
|
X
|
Added by the RBOT-OJ WORM!
|
|
wormexe
|
winstart.exe
|
X
|
Added by the EARLYBIRD WORM!
|
|
wovax
|
wovax.exe
|
X
|
Added by the DAQA.A TROJAN!
|
|
WQK
|
WQK.exe
|
X
|
Added by a variant of the KLEZ WORM!
|
|
WRDialer
|
WrDialer.exe
|
X
|
WinPoet DSL dialler
|
|
ws2help
|
ws2help.exe
|
X
|
Added by a variant of the SMALL.AN TROJAN!
|
|
WSAConfiguration
|
wmon32.exe
|
X
|
Added by the GAOBOT.BAJ WORM!
|
|
WSAConfiguration
|
win32upd.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Wsdata service
|
WSconf.exe
|
X
|
Added by the SDBOT.ZU WORM!
|
|
wserver
|
wserver.exe
|
X
|
Added by the NETSKY.AC or SASSER.G WORMS!
|
|
WSSAConfiguration
|
wmmon32.exe
|
X
|
Added by the AGOBOT-KC WORM!
|
|
Wstat32 driver
|
Wstat32.exe
|
X
|
Added by the LOONBOT TROJAN!
|
|
WTSI
|
wapisvit.exe
|
X
|
|
|
WTSS
|
wap***.exe [* = random char]
|
X
|
|
|
WTST
|
wapisvtr.exe
|
X
|
|
|
wupdt
|
wupdt.exe
|
X
|
Added by the IMISERV.A TROJAN!
|
|
wvsvc
|
wvsvc.exe
|
X
|
Added by the AGOBOT.YM WORM!
|
|
wzhelper
|
wzhelper.exe
|
X
|
|
|
X10Weax
|
WTHRTRAY.EXE
|
X
|
WeatherCheck - "bring the latest local weather to your desktop". Not recommended as it reportedly pops ads, and contains no uninstaller ... Read More
|
|
xp_system
|
winlogon.exe
|
X
|
KREPPER-G trojan, a CoolWebSearch parasite variant. Note - this is NOT the legitimate winlogon.exe process, which should NOT figure in Msconfig/Startu ... Read More
|
|
[random name]
|
wincpu.exe
|
X
|
Added by an unidentified VIRUS, WORM or TROJAN!
|
|
[various names]
|
Windows32.exe
|
X
|
Added by any of a number of WORM or TROJAN variants
|
|
[various names]
|
winlogon32.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
[various names]
|
win32snd.exe
|
X
|
Added by the RBOT-DQ WORM!
|
|
[]
|
winbas12.exe
|
X
|
Adware, probably CoolWebSearch parasite related - recognized by Kaspersky antivirus as TrojanDownloader.Win32.VB.du ... Read More
|
|
Windows AdStatus
|
WinStat.exe
|
X
|
Unknown adware which causes popups. Can be removed via Add/Remove Programs in your control panel. ... Read More
|
|
WINDOWS MANAGEMENT SYSTEM
|
wm1exe.exe
|
X
|
W32/Rbot-VT is a network worm that has backdoor functionality. Located in the Window system directory. ... Read More
|
|
*windows update
|
wuaruclt.exe
|
X
|
Added by W32/Rbot-TF. File is found in the Windows system directory.
|
|
WindowsUpdate
|
WUpdate_35253825.vbs
|
X
|
Added by VBS/Ediboy-C. File is located in the Windows directory. Also see SysReg.vbs ... Read More
|
|
Windows Messenger Service
|
winsmsgr.exe
|
X
|
Added by W32/Rbot-VW. Found in the Windows system folder.
|
|
virtual-machine
|
winlogin.exe
|
X
|
|
|
Windows DDE Loader
|
windde32.exe
|
X
|
Added by the W32/Sdbot-UZ WORM! Found in the Windows system folder.
|
|
win32
|
winhost.exe
|
X
|
Added by the Bropia.F worm.
|
|
winpsd.exe
|
winlibs.exe
|
X
|
Added by the Mydoom.S WORM! Located in the Windows system directory.
|
|
Windows Logger
|
winlog.exe
|
X
|
added by the Backdoor.Netshadow backdoor.
|
|
FIX
|
WinFIX1.0.vbs
|
X
|
Added by the VBS.Gormlez@mm infection! Found in the Windows directory.
|
|
UPDATE
|
WinUpdater5.0.vbs
|
X
|
Added by the VBS.Gormlez@mm infection! Found in the Windows directory
|
|
Win32 Services1
|
wuamngr1.exe.exe
|
X
|
Added by the
Backdoor.Sdbot.AN Backdoor! Found in the Windows system directory. ... Read More
|
|
Secboot
|
w32tm.exe
|
X
|
Added by the Backdoor.Haxdoor.D backdoor. Found in the Windows system directory. ... Read More
|
|
Winserv
|
Winserv.ila
|
X
|
Added by the W32.Nodmin@mm infection!. Found in the Windows directory.
|
|
Web Service
|
[random filename]
|
X
|
Added by the Trojan.Admincash infection!
|
|
winhlp.exe
|
winhlp.exe
|
X
|
Added by the PWSteal.Formglieder Infection! Found in the Windows directory.
|
|
System Document Application
|
winsvc32.exe
|
X
|
Added by the W32/Sdbot-VA WORM! Found in the Windows system folder.
|
|
Windows Network Controller
|
winmms32.exe.exe
|
X
|
Added by the
W32/Forbot-ED wORM! It is found in the Windows system directory. ... Read More
|
|
SYSTEM
|
wuamgre.exe
|
X
|
Added by the W32/Rbot-WA Backdoor/WORM! Found in the Windows system folder.
|
|
win-xp
|
winis.exe
|
X
|
Added by the W32/Rbot-BBD WORM! Found in the Windows system folder.
|
|
Wireless Conections
|
WireConnect.exe
|
X
|
Added by the W32/Sdbot-VF WORM! Found in the Windows system folder.
|
|
winprotect
|
winprotect.exe
|
X
|
Added by the W32/Sdbot-SB worm! Found in the Windows system folder.
|
|
winupdtl
|
winupdt.exe
|
X
|
|
|
Wireless Zero Daemon
|
wzdsvc.exe
|
X
|
Added by the W32/Codbot-E WORM! This service loads in safe mode to make it more difficult to remove. ... Read More
|
|
Windows IPv6 Drivers
|
wipv6.exe
|
X
|
Added by the W32/Sdbot-VJ WORM! Found in the Windows system folder.
|
|
Sistray32
|
win.bat
|
X
|
The W32/Jupir-A is spread via MIRC. The file can be found in the Windows system directory. ... Read More
|
|
Video Process
|
wincrt32.exe
|
X
|
Added by the W32/Agobot-GR WORM/IRC Backdoor. File is found in the Windows system folder. ... Read More
|
|
win32app
|
Winpup32.exe
|
X
|
Added by the Troj/AdClick-N Trojan! File is found in the Windows system folder. ... Read More
|
|
winsystem.sys
|
WINLOGON.EXE
|
X
|
Added by the W32/Sober-K infection! File will be found in the %WINDIR%msagentwin32 folder. ... Read More
|
|
_winsystem.sys
|
WINLOGON.EXE
|
X
|
Added by the W32/Sober-K infection! File will be found in the %WINDIR%msagentwin32 folder. ... Read More
|
|
Microsoft Update Engine
|
wumgpds.exe
|
X
|
W32/Rbot-WK WORM! File is found in the Windows system folder.
|
|
LSA
|
wfdmgr.exe
|
X
|
Added by the W32/MyDoom-BG WORM! File is found in the Windows system folder.
|
|
winltmpv
|
WINLTMPV.EXE
|
X
|
Added by the TCXMEDI-C TROJAN!
|
|
Winamp Agent
|
winamp.exe
|
X
|
Added by the W32/Poebot-I WORM! This file is found in the Windows system folder. ... Read More
|
|
MsnExplorer
|
winagent.exe
|
X
|
Added by Troj/Bdoor-EQ, a backdoor TROJAN found in the Windows folder.
|
|
winshost.exe
|
winshost.exe
|
X
|
Added by the Troj/BagleDl-K Trojan. The file for this infection is found in the Windows system folder. ... Read More
|
|
Daily Weather Forecast
|
WEATHER.EXE
|
X
|
Added by Troj/Dloader-IP TROJAN to the Windows program folder.
|
|
WindowsCRC
|
wscrc.exe
|
X
|
Added by W32/Sdbot-VU, a WORM!
|
|
Firewall
|
wmlaunch .exe
|
X
|
Added by a WORM, W32/Elitper-A.
It will be found in the Windows Program Files folder. ... Read More
|
|
Printer Monitor
|
webprinter.exe
|
X
|
A TROJAN, Troj/IRCBot-Z adds this file to the Windows system folder.
|
|
Microsoft SpA Service
|
win32.exe
|
X
|
This is a SDBot variant backdoor infection. When run this infection connects to an IRC server, d-3.biz. ... Read More
|
|
Windows Domain Name Drivers
|
windns.exe
|
X
|
Added by the W32/Forbot-EP WORM/IRC backdoor Trojan to thee Windows system folder,and is as a new service called "IEXPLORER-Drivers" with a display na ... Read More
|
|
IEXPLORER-Drivers
|
windns.exe
|
X
|
A service is created by the W32/Forbot-EP WORM, and run using the display name of "Windows Domain Name Drivers". ... Read More
|
|
twhe
|
wbta.exe
|
X
|
PurityScan delivers advertisements to your computer.
|
|
Windows Time
|
winmgr.exe
|
X
|
The W32/Rbot-XC WORM/backdoor Trojan adds this and allows malicious remote access by way of the IRC network. ... Read More
|
|
Website Administrator Info
|
webadmin.exe
|
X
|
W32/Forbot-FY will connect to an IRC server and establish a new service named "Connection Reset", with the display name "Website Administrator Info". ... Read More
|
|
Connection Reset
|
webadmin.exe
|
X
|
A new service is set by W32/Forbot-FY with a display name of "Website Administrator Info" ... Read More
|
|
NTSF MICROSOFT SYSTEM
|
wntsf.exe
|
X
|
An Rbot variant. This infection connects to an IRC server where it will await commands from a remote user. ... Read More
|
|
Windows Service Loader
|
window.exe
|
X
|
An Rbot variant. This infections connects to an IRC server where it awaits commands from a remote user. ... Read More
|
|
USB 2.0 Driver
|
winsystem.exe
|
X
|
Added by the W32/Agobot-QS WORM/IRC backdoor, it kills a variety of processes relating to anti-virus and security related programs. ... Read More
|
|
WINLOGON
|
WINL0GON.exe
|
X
|
The Troj/Nethief-K TROJAN adds the file, which you'll note contains "zero" instead of "o". ... Read More
|
|
Windows System Configuration
|
WINFRW.EXE
|
X
|
Added by the W32/Domwis-H WORM/IRC backdoor Trojan, it will grant an attacker remote access to perform a wide variety of actions. ... Read More
|
|
USB 2.0 Driver
|
Winsys32.exe
|
X
|
W32/Agobot-QM WORM will add this file, resulting in unauthorised access, by way of an IRC channel, through a backdoor. ... Read More
|
|
AdAware
|
wini.exe
|
X
|
Added by the W32/Rbot-XN WORM/IRC backdoor.
|
|
WINAPLOGUPD
|
WINAPLOGUPD.EXE
|
X
|
Added by the W32/Capside-C WORM, which exploits typical P2P program folders, and spreads via IRC clients and through netwerk shares. ... Read More
|
|
UpData
|
wupdata.exe
|
X
|
Troj/IRCBot-AA , a TROJAN/IRC backdoor, will allow an attacker to access and exploit the computer when this file is added. ... Read More
|
|
Microsoft MediaScope
|
winmes.exe
|
X
|
Added by the W32/Rbot-XU WORM/backdoor, it's file will allow a remote attacker to create new accounts, terminate processes, record keysrokes and other ... Read More
|
|
Windows Media Player
|
wmplayer.exe
|
X
|
An R-bot variant adds this, opening a backdoor to a malicious user and allowing the start of a remote shell, and download/upload/execution of various ... Read More
|
|
WCESMngr
|
WCEMNGR.EXE
|
X
|
The W32/Agobot-QX WORM/backdoor Trojan adds this, modifying the HOSTS file and terminating security-related/anti-virus processes also. ... Read More
|
|
Windows Monitor Services
|
winmonitor.exe
|
X
|
The W32/Rbot-XX WORM/IRC backdoor Trojan adds this, allowing unauthorized remote access and termination of processes, DoS attack participation, and do ... Read More
|
|
Windows Media Player 3.6d
|
wmpa36d.exe
|
X
|
The W32/Rbot-YA WORM/backdoor places this to spread to network shares, and allow unauthorised remote access. ... Read More
|
|
Microsoft Windows Registry Service
|
wregistry.exe
|
X
|
A Rbot WORM/IRC backdoor variant adds the file, making possible DoS attacks, running of a file server, password theft or a remote command shell put i ... Read More
|
|
*windows update
|
wurauclt.exe
|
X
|
Added by the RBOT-SY WORM! This file runs in safe mode as well making it slightly harder to remove. ... Read More
|
|
0190 Warner
|
WARN0190.EXE
|
X
|
Anti-dialer program (Germany)
|
|
0900 Warner
|
WARN0900.EXE
|
X
|
Anti-dialer program (Germany)
|
|
erghgjhjgdr
|
windlhhl.exe
|
X
|
Added by the BEAGLE.BG mass-mailing worm!
|
|
WinSvc16.exe
|
WinSvc16.exe
|
X
|
Added by the SDBOT.FQ TROJAN!
|
|
NvCplScan
|
winasp.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Video Process
|
winasp.exe
|
X
|
Added by the AGOBOT-IS WORM!
|
|
WhenUSearchWHSE
|
whse.exe
|
X
|
|
|
Windows FormatAd
|
WinForm.exe
|
X
|
Windupdates adware variant
|
|
Windows Network Controller
|
WinxPupd.exe
|
X
|
Added by the FORBOT-DK WORM!
|
|
load32
|
winldra.exe
|
X
|
Added by the Troj/Dumaru-AT TROJAN!
These files are known to be part of an infection that transmits information about your bank accounts, ... Read More
|
|
LTM2
|
winscan.exe
|
X
|
Added by the Troj/Litmus-B TROJAN!
|
|
Winhost
|
winhost.exe
|
X
|
Added by the Troj/Delf-JL TROJAN!
|
|
Configuration Loader Service
|
winsys32.exe
|
X
|
Added by the W32/Rbot-YV WORM/IRC backdoor!
|
|
Windows Media Player
|
wmplayer.exe
|
X
|
The W32/Rbot-YT WORM/IRC backdoor adds the file, a hidden, read-only, system file. ... Read More
|
|
Systems Backups
|
windrives.exe
|
X
|
Added by an Agobot WORM/IRC backdoor variant, also creating a new service, servicename "Restoreds" and a displayname "Systems Backups". ... Read More
|
|
Restoreds
|
windrives.exe
|
X
|
A new service added by the W32/Agobot-RB WORM/IRC backdoor, it's displayname is Systems Backups
. ... Read More
|
|
Microsoft Rundll
|
windos.exe
|
X
|
Added by the W32/Sdbot-WF WORM/IRC backdoor!
|
|
[X]
|
WUCMDEX.EXE
|
X
|
Added by the W32/Rbot-DO WORM/IRC backdoor Trojan!
|
|
WinInit
|
Win86.exe
|
X
|
Added by the Troj/Small-PB TROJAN!
|
|
virtual
|
wini.exe
|
X
|
Added by the W32/Rbot-YX WORM/IRC backdoor Trojan!
|
|
Windows Media Player
|
wmplayer.exe
|
X
|
|
|
update service
|
winx.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Windows USB Driver Support
|
Windowsusb.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM!
|
|
*windows update
|
wscxt.exe
|
X
|
Added by an unidentified WORM!
|
|
[random name]
|
w?nlogon.exe
|
X
|
PurityScan adware variant.
|
|
[random name]
|
w?nword.exe
|
X
|
PurityScan adware variant.
|
|
Microsoft MicroP Protocol
|
wdgmr32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Microsoft Updates
|
wuamgrds.exe
|
X
|
|
|
Configuration Loading Service
|
wscel.exe
|
X
|
Added by the W32/Sdbot-WJ WORM/IRC backdoor Trojan!
|
|
Winsock driver
|
winnt update.exe
|
X
|
Added by the Troj/Spybot-DM TROJAN/IRC backdoor!
|
|
WinAMP
|
winamp62.exe
|
X
|
Added by the W32/Sdbot-WN WORM/IRC backdoor Trojan!
|
|
Windows DLL Services
|
winsvc32.exe
|
X
|
Added by the W32/Rbot-ZF WORM/IRC backdoor Trojan!
|
|
winmdgr
|
winsvcmgr.exe
|
X
|
Added as a new service by the W32/Sdbot-WQ WORM/IRC backdoor, and uses a displayname of Microsoft Service Manager. ... Read More
|
|
winbin32
|
win32exe.exe
|
X
|
Added by the W32/Rbot-ZL WORM/IRC backdoor!
|
|
[random name]
|
w?auboot.exe
|
X
|
|
|
[random name]
|
w?auclt.exe
|
X
|
|
|
ssgrate.exe
|
winsystems.exe
|
X
|
Added by the TROJ/BAGLEDL-J TROJAN
|
|
WINLOG0N
|
WINLOG0N.EXE
|
X
|
Added by the W32.MYDOOM.BI WORM!
|
|
Windows_Protect
|
winregal.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
couponsandoffers
|
wjview.exe
|
X
|
Added by the Adware.TopMoxie adware. Not to be confused with the legitimate wjview.exe Microsoft file. ... Read More
|
|
winmrg
|
winmrg.exe
|
X
|
Added by the Backdoor.AntiLam.20 backdoor.
|
|
Hrxmp
|
Win Const.exe
|
X
|
|
|
Internet Explorer Plugin
|
WinStop32.exe
|
X
|
Added by the Backdoor.Backage backdoor.
|
|
Hello World
|
WinPad.exe
|
X
|
Added by Backdoor.CHCP. This infection listens on TCP port 1145 awaiting remote connections. ... Read More
|
|
Microsoft auto update
|
wuauclt.exe
|
X
|
Added by BackDoor CLT. This infections connects to an IRC server where it awaits commands. If this infection is on a Windows XP, NT, 2000, 2003, or V ... Read More
|
|
Windll
|
wingmnt.exe
|
X
|
|
|
Wingmnt
|
wingmnt.exe
|
X
|
|
|
Windows Logon Application
|
winlogon.exe
|
X
|
Added by Backdoor.Dsklite. This infection listens on port 890 awaiting commands. ... Read More
|
|
Wincfg.exe
|
Wincfg.exe
|
X
|
|
|
FTH2004
|
WindowsDAT.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
MAT
|
WliveUPdate.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
NortonAVProtect
|
WliveUPdate.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
Player00997
|
WliveUPdate.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
Shell2938
|
WliveUPdate.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
QuickTask
|
WliveUPdate.exe
|
X
|
Added by the Backdoor.Futh backdoor. This infection listens on TCP ports 7896 and 7897 awaiting commands. ... Read More
|
|
Windows Update
|
winupdate.exe
|
X
|
Added by the W32/Sdbot-WS WORM/IRC backdoor Trojan.
|
|
Winapp32.exe
|
Winapp32.exe
|
X
|
Added by the Backdoor.GF.13 backdoor trojan!
|
|
Windows NetStart Service
|
winsN2S.exe
|
X
|
|
|
Distributed File System
|
win.exe
|
X
|
Added by the W32/Myfip-L WORM, which also creates a new service/displayname called Distributed Link Tracking Extensions. ... Read More
|
|
WinAdCnt.exe
|
WinAdCnt.exe
|
X
|
Added by Troj/Banker-BU to compromise online banking sites.
|
|
wuanguard
|
wuanguard32.exe
|
X
|
Added by W32/Rbot-AAF. The WORM has IRC backdoor trojan functionality.
|
|
wmv
|
winmonv.exe
|
X
|
Added by the Troj/Agent-DG TROAJAN/backdoor.
|
|
MicroSoft Window Updater
|
winsupdater.exe
|
X
|
|
|
Registry Integritycheck
|
WCPDT.EXE
|
X
|
Added by the W32/Agobot-RF WORM.
|
|
updater
|
wisvc.exe
|
X
|
Added by Troj/Orse-A, which also creates a service using the same name, with a displayname of Windows update Service. ... Read More
|
|
windhost.exe
|
windhost.exe
|
X
|
|
|
winnt DNS ident
|
wuamgrd32.exe
|
X
|
Added by an Rbot WORM variant.
|
|
wintsk32dll
|
wintsk32dll.exe
|
X
|
Added by the W32/Rbot-AAJ WORM/IRC backdoor trojan!
|
|
Windows Firewall
|
WindowsFirewall.exe
|
X
|
Added by the W32/Mytob-X WORM/IRC backdoor trojan!
|
|
longos
|
WIWT.EXE
|
X
|
Added by the Troj/Banker-CD TROJAN!
|
|
xpstat
|
winlogins.exe
|
X
|
Added by the W32/Rbot-AAR WORM/IRC backdoor trojan!
|
|
PPPOEOE
|
WINLITE.EXE
|
X
|
Added by the W32/Rbot-AAN WORM/IRC backdoor trojan!
|
|
Shell
|
wmedia32.exe
|
X
|
Added by the Troj/Goldun-B TROJAN!
|
|
winzip
|
winzip.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
NTSF MICROSOFT SYSTEM
|
win32db.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
Microsoft Update
|
wssvr.exe
|
X
|
Added by the W32/RBOT-OD WORM!
|
|
Windows DLL host
|
winupd32.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM!
|
|
Update Service
|
winu32.exe
|
X
|
Added by the W32/RBOT-MG WORM!
|
|
System Update Service
|
winupd32.exe
|
X
|
Added by the ADTODA-A TROJAN!
|
|
Microsoft Update
|
windows24.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Microsoft Update Machine
|
wupdate32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Registry Checkup System326a Monitor
|
Winregs326a.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
Windows Logon Application
|
WinIogon.exe
|
X
|
Added by the "Cruel Intentionz" backdoor TROJAN!
|
|
*windows update
|
wkmst.exe
|
X
|
Added by the SDBOT.AVD WORM!
|
|
System Drivers
|
wingmt.exe
|
X
|
Added by the W32/SDBOT-MG WORM!
|
|
Windows Network Controller
|
wingmt.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
SvcH0st
|
WINAGENT.EXE
|
X
|
Added by the TROJ/BDOOR-EB TROJAN!
|
|
Microsofts MediaScope
|
winmedplay.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Microsoft Hosting Service
|
WINHOSTING.EXE
|
X
|
Added by the RBOT.AEV WORM!
|
|
Start Upping
|
windupds.exe
|
X
|
Added by the SDBOT.AFH WORM!
|
|
Windows Driver
|
winxpdriver.exe
|
X
|
Added by the WOOTBOT.EE WORM!
|
|
Windows Update Auto Update
|
wuaumgr.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM!
|
|
Machine Update Soft
|
wusas.exe
|
X
|
Added by an unidfentified WORM!
|
|
Msn Updater
|
windatemanager.exe
|
X
|
Added by the SDBOT.TS WORM!
|
|
Task Help
|
wualcts.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
*wuauclt.exe
|
wxmct.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
wuviewer
|
wuviewer.exe
|
X
|
Added by a Proxy_Trojan variant
|
|
Microsoft Update
|
wuamagr32.exe
|
X
|
Added by the SPYBOT.CG WORM!
|
|
msgina
|
wuauclt2.exe
|
X
|
Added by the Troj/Iyus-H TROJAN!
|
|
Registry Checkup System32cd Monitor
|
Winregs32cdn.exe
|
X
|
Added by the W32/Rbot-AAV WORM/IRC backdoor trojan!
|
|
*windows update
|
wuruclt.exe
|
X
|
Added by the W32/Rbot-TA WORM/IRC backdoor trojan!
|
|
Microsoft SpAr Service
|
winsbsd32.exe
|
X
|
Added by the W32/Rbot-TJ WORM/IRC backdoor trojan!
|
|
Microsoft Update
|
winupdate32.exe
|
X
|
Added by the W32/Rbot-TI WORM/IRC backdoor trojan!
|
|
DNS Config service
|
win32.exe
|
X
|
Added by the W32/Rbot-TL WORM/IRC backdoor trojan!
|
|
System
|
winipck.exe
|
X
|
Added by the W32/Rbot-TK WORM/backdoor trojan!
|
|
Microsoft Windows Registry Updater
|
wreg.exe
|
X
|
Added by the W32/Forbot-DN WORM/IRC backdoor trojan, while it creates a new service called wreg. ... Read More
|
|
Microsoft Windows Storage Machine Service
|
winms.exe
|
X
|
Added by the W32/Rbot-AHK WORM/IRC backdoor trojan!
|
|
WindowsFY
|
wp.exe
|
X
|
Identified as Trojan.Win32.Agent.ct. When run this file extracts a bmp file to the c: folder and sets it as your desktop background. ... Read More
|
|
WinAdCnt16.exe
|
WinAdCnt16.exe
|
X
|
Added by the Troj/Banker-AT TROJAN!
|
|
Windows Desktop Controler
|
windesktop.exe
|
X
|
Added by the W32/Sdbot-XH WORM/IRC backdoor trojan!
|
|
load
|
wuauc1t.exe
|
X
|
Added by the Troj/Dloader-LY TROJAN!
|
|
wuauc1t.exe
|
wuauc1t.exe
|
X
|
Added by the Troj/Clicker-DR TROJAN!
|
|
[unknown]
|
WUAGMSD.EXE
|
X
|
Added by the W32/Rbot-AX trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
MS Unix Binary
|
Win32Update.exe
|
X
|
Added by the W32/Rbot-BAS trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windowsxp Updater 16Bit
|
winupdos.exe
|
X
|
Added by the W32/Rbot-BE trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
WINMGARD.EXE
|
X
|
Added by the W32/Rbot-BI trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wuamgrd16.exe
|
X
|
Added by the W32/Rbot-BQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wuamgrb.exe
|
X
|
Added by the W32/Rbot-BS trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wssvrs.exe
|
X
|
Added by the W32/Rbot-BV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Updating
|
WAMQUARD.EXE
|
X
|
Added by the W32/Rbot-BX trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Updating
|
WUAMGUARDS.EXE
|
X
|
Added by the W32/Rbot-BY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
MICROSOFT UPDATE
|
WUAGTRD.EXE
|
X
|
Added by the W32/Rbot-CJ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Windows Updater
|
WINFIX.EXE
|
X
|
Added by the W32/Rbot-CM trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
winsyst.exe
|
X
|
Added by the W32/Rbot-DL trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update Debugger
|
wincfg32.exe
|
X
|
Added by the W32/Rbot-DT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wingrd32.exe
|
X
|
Added by the W32/Rbot-DW trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Updates
|
wkssvrs.exe
|
X
|
Added by the W32/Rbot-EB trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
A New Windows Updater
|
w32NTupdt.exe
|
X
|
added by the W32/Mytob-AG WORM, which has IRC channel backdoor trojan functionality. ... Read More
|
|
BossIdea
|
winlogin.exe
|
X
|
Added by the Troj/Lineage-I TROJAN!
|
|
Meeting Connection
|
wowdache.exe
|
X
|
Added by the Troj/PPdoor-D TROJAN!
|
|
Window_Protect
|
winsi32.exe
|
X
|
Added by a variant of the Rbot worm. This worm, when started, connects to IRC servers where it sits in a desginated channel waiting for commands from ... Read More
|
|
wupdate
|
wisvccz.exe
|
X
|
Added by the Troj/Orse-B TROJAN!
|
|
win update
|
wupdate.exe
|
X
|
Added by the W32/Rbot-P worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft IT Update
|
winsyst32.exe
|
X
|
Added by the W32/Rbot-FC trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Microsoft Intranet
|
WIN31.EXE
|
X
|
Added by the W32/Rbot-FD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
[unknown]
|
WUAPDCT32.EXE
|
X
|
Added by the W32/Rbot-FG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft UpdateS Machine
|
wgrd.exe
|
X
|
Added by the W32/Rbot-FI trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Microsoft Update Machine
|
WININI2.EXE
|
X
|
Added by the W32/Rbot-FR trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WindowsRegKey update
|
windowsup.EXE
|
X
|
Added by the W32/Rbot-FV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Patches
|
WUACMGRD.EXE
|
X
|
Added by the W32/Rbot-FX trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Patches Value
|
WinGasys.exe
|
X
|
Added by the W32/Rbot-GD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update Emulator
|
wuaddsff.exe
|
X
|
Added by the W32/Rbot-GX trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Guard
|
WAUMGRD.EXE
|
X
|
Added by the W32/Rbot-GY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Windows Updater
|
WINDATES.EXE
|
X
|
Added by the W32/Rbot-H trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WinXp Updater
|
winxp32.exe
|
X
|
Added by the W32/Rbot-HG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows USB controler
|
winusb.exe
|
X
|
Added by the W32/Rbot-HR trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Machine
|
winxp43.exe
|
X
|
Added by the W32/Rbot-IA trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
MicrosoftUpdate
|
windll.exe
|
X
|
Added by the W32/Rbot-IH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Security Patches
|
wuamgrdr.exe
|
X
|
Added by the W32/Rbot-IN trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Security Patches
|
wuamgrdk.exe
|
X
|
Added by the W32/Rbot-IQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Security Patches
|
wuamgrdn.exe
|
X
|
Added by the W32/Rbot-JI trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Loader
|
winsdnz.exe
|
X
|
Added by the W32/Rbot-JJ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
mismo
|
win32x.exe
|
X
|
Added by the W32/Rbot-JP trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This ... Read More
|
|
Microsoft Update Machine
|
winftp32.exe
|
X
|
Added by the W32/Rbot-JX trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WindowsRegKey update
|
winsys.exe
|
X
|
Added by the W32/Rbot-JY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Update Service
|
wuacltl.exe
|
X
|
Added by the W32/Rbot-KB trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
MSN Service
|
wuampskum.exe
|
X
|
Added by the W32/Rbot-KC trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This i ... Read More
|
|
Microsoft DirectX
|
wupdate.exe
|
X
|
Added by the W32/Rbot-L trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wangard.exe
|
X
|
Added by the W32/Rbot-LH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Windows Loader
|
windat32.exe
|
X
|
Added by the W32/Rbot-LU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
SCNDmem
|
WINLOW.SYS
|
X
|
Added by the Troj/Haxdoor-CN rootkit infection. This file is installed as system driver and is used to hide processes, files, and registry keys from ... Read More
|
|
secboot
|
w32_ss.exe
|
X
|
Added by the HaxDoor.B rootkit/backdoor Trojan.
|
|
Starting up
|
wvsvc.exe
|
X
|
Added by the W32/Rbot-NF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
Regkey for autostart
|
winservice.exe
|
X
|
Added by the W32/Rbot-NU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
Microsoft Update Machine
|
winortho.exe
|
X
|
Added by the W32/Rbot-NW trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
Winmon32
|
winmon32.exe
|
X
|
Added by the W32/Rbot-OQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
Sygate Personal Firewall Startup
|
wint.exe
|
X
|
Added by the W32/Rbot-OV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These ... Read More
|
|
.service
|
winlgon.exe
|
X
|
Added by the Troj/Bdoor-BX trojan backdoor.
|
|
*wmstu
|
wmstu.exe
|
X
|
Added by the W32/Rbot-TV worm. When started this infection connects to an IRC server where it waits for commands. This program starts in safe mode to ... Read More
|
|
Windows Service Pack 2
|
WindowsSP2.exe
|
X
|
Added by the W32/Sdbot-TQ worm/backdoor.
|
|
xpstart
|
wini.exe
|
X
|
Added by the W32/Rbot-ABC. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are ... Read More
|
|
IPC Spool Manager
|
wnmgre.exe
|
X
|
Added by the W32/Sdbot-ZC. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
SystemKey
|
WIN2000.EXE
|
X
|
Added by the Troj/QQify-A. It also copies itself as nsconfig.exe, msconfig.exe, regedita.exe and regedit.exe to %Windir%. ... Read More
|
|
Windows Database
|
wiinsvc.exe
|
X
|
Added by the W32/Agobot-RU.
When started this infection connects to an IRC server where it waits for remote commands. It can log key strokes, list o ... Read More
|
|
Services32 Startup
|
win32dll.exe
|
X
|
Added by the W32/Sdbot-XO. When started this infection connects to an IRC server where it waits for remote commands, able to steal CD game keys, pe ... Read More
|
|
Norton Service Driver
|
wsul.exe
|
X
|
Added by the W32/Rbot-ABI. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections a ... Read More
|
|
*wuauclt.exe
|
wmsvc.exe
|
X
|
Added by the W32/Rbot-UG network worm. When started this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
System Updates Manager
|
winserv32.exe
|
X
|
Added by the W32/Agobot-AGA network worm.
|
|
Reg Service
|
WinnConfig.exe
|
X
|
Added by the W32/Agobot-PF network worm.
|
|
Windows System32
|
winsystem32.exe
|
X
|
Added by the W32/Rbot-UO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wscntfys
|
wsscntfy.exe
|
X
|
Added by the W32/Sdbot-TN. When started this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft System
|
winamp1.exe
|
X
|
Added by the W32/Sdbot-UF worm. When started, this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Windows Update
|
winupupdate1.exe
|
X
|
Added by the W32/Rbot-UV worm. When started, this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
USB Hardware32c Monitoring
|
USBHARDWARE32C.EXE
|
X
|
Added by the W32/Rbot-UU worm. When started, this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
mIRC Exchanger
|
wavasdw.exe
|
X
|
Added by the W32/Sdbot-UO worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
update
|
winis.exe
|
X
|
Added by the Rbot-VD worm. This infections connects to an IRC server where it waits for remote commands. ... Read More
|
|
Messenger
|
WINAMPA.EXE
|
X
|
Added by the Troj/Ranck-CG trojan.
|
|
Compaq Jes Drivers
|
winjes.exe
|
X
|
Added by the W32/Sdbot-XR worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows NetStart Service2
|
winsN2S.exe
|
X
|
Added by the W32/Rbot-ABN trojan. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infec ... Read More
|
|
IE Runtime
|
wini.exe
|
X
|
Added by the W32/Rbot-ABK worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows DNS
|
windns.exe
|
X
|
Added by the W32/Sdbot-XU worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WindowsRegKey update XP
|
windexv1.exe
|
X
|
Added by the W32/Rbot-ABM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infectio ... Read More
|
|
Windows Media Player 3.6b
|
WMPA36B.EXE
|
X
|
Added by the W32/Rbot-VV worm. When started this infection connects to a remote IRC server where it waits for commands to execute. These infections ... Read More
|
|
Microsofts MediaScope
|
winmep.exe
|
X
|
Added by the W32/Rbot-WB worm. When started this infection connects to a remote IRC server where it waits for commands to execute. These infections ... Read More
|
|
xp
|
winis.exe
|
X
|
Added by the W32/Rbot-WO worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
USB Fixes
|
wuafix.exe
|
X
|
An SDBot variant. These infections connect to IRC servers and wait for remote commands to execute. ... Read More
|
|
Windows 32 Rescue
|
win32resc.exe
|
X
|
Added by the W32/Forbot-EU worm. When started this infection connects to an IRC server where it waits for remote commands to executed. ... Read More
|
|
Windows 32 Rescue
|
win32resc.exe
|
X
|
Added by the W32/Forbot-EU worm. When started this infection connects to an IRC server where it waits for remote commands to executed. This startup ... Read More
|
|
wupdate
|
wi32.exe
|
X
|
Added by a new variant of Trojan.Abwiz.
|
|
Windows Executable
|
winmys.exe
|
X
|
Added by the W32/Rbot-ABO worm. When started, this infection connects to an IRC server where it waits for commands to execute. ... Read More
|
|
winhost.exe
|
winhost.exe
|
X
|
Added by the roj/Lohav-R proxy server and downloader trojan. Machines that are infected with this can be used by the remote user to send Internet tra ... Read More
|
|
Dynamic Dns Binary
|
winxp34.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM!
|
|
Windoxs Update Center
|
W32RfSA.exe
|
X
|
Added by a variant of the W32/SDBOT WORM!
|
|
winsy32.exe
|
winsy32.exe
|
X
|
Trojan related to the CoolWebSearch group of malware.
|
|
winipsec
|
winipsec.exe
|
X
|
Unidentified malware
|
|
1wincfg32
|
WebMailSpy.exe
|
X
|
Added by WebMailSpy SPYWARE! ... Read More
|
|
calc microsoft windows
|
wincalc.exe
|
X
|
Added by an unidentied WORM or TROJAN!
|
|
BootsCfg
|
wscript.exe C:\\WINDOWS\\Update\\Date.POP.vbs %
|
X
|
Added by the VBS.KUULLIO WORM!
|
|
logservice
|
wincalc.exe
|
X
|
Added by the BACKDOOR.PAPROXY TROJAN! ... Read More
|
|
microsoft update process
|
wmipcvse.exe
|
X
|
Added by the TROJ/AGOBOT-JF TROJAN! ... Read More
|
|
microsoft updater resources
|
WinFixd32.exe
|
X
|
Added by the SPYBOT.CA WORM! ... Read More
|
|
microsoft updating client
|
websvc.exe
|
X
|
Added by the RBOT.AQ WORM! ... Read More
|
|
microsoft windows services controller
|
wservices.exe
|
X
|
Added by the WIN32.RBOT.FD WORM!
|
|
microsoft xp systems loader
|
winsystem32xp.exe
|
X
|
Added by the W32.KELVIR.W WORM! ... Read More
|
|
microsoft xp systems loaders
|
win32xpsys.exe
|
X
|
Added by the W32.SPYBOT.NYT WORM! ... Read More
|
|
microsofts media
|
wingtp.exe
|
X
|
Added by the W32/RBOT-VO WORM! ... Read More
|
|
regrun
|
winfix22490.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
sndpnpmix
|
wauctlxp4.exe
|
X
|
Added by the WIN32.MUDROP.N TROJAN!
|
|
start upping
|
windupdts.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
system update
|
wauluclt.exe
|
X
|
Added by the SDBOT.EF WORM! ... Read More
|
|
usb fix 1.1
|
wuservices.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
wast
|
wast2.exe
|
X
|
Grokster ads updater
|
|
wifeman
|
wifeman.exe
|
X
|
Unidentified malware
|
|
win microsoft config
|
wnmsconfig.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
win32 debug manager
|
Win32Debug.exe
|
X
|
Added by a variant of the W32/WOOTBOT WORM! ... Read More
|
|
win32 usb3 driver
|
win32tool.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
win98 dns
|
wingrd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows network controller
|
Win9x.exe
|
X
|
Added by the WOOTBOT.I WORM! ... Read More
|
|
windows update services
|
wservices.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows32 serivces
|
winser32.exe
|
X
|
Added by the SPYBOT.AAF WORM! ... Read More
|
|
winprocer32 update
|
winprocer32.exe
|
X
|
Added by the RBOT.GW WORM! ... Read More
|
|
winprocessor update
|
winprocessor.exe
|
X
|
Added by the RBOT.IO WORM! ... Read More
|
|
winprot
|
Winprot.exeserver.exe
|
X
|
Added as a result of the CHUPACABRA VIRUS! ... Read More
|
|
winupdsv
|
winupdsv.exe
|
X
|
Added by the X97M.DROPO Macro VIRUS! ... Read More
|
|
wnsck2 driver
|
wlogf.exe
|
X
|
Added by the W32/SPYBOT-AF WORM! ... Read More
|
|
wuosdial
|
wuosdial.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Win32 Bios
|
Winbios.exe
|
X
|
Added by the W32/Semapi-A. This mass-mailing worm may display a message: "Unable to locate 'semapi.dll' reinstalling this application may fix this ... Read More
|
|
Windows Services
|
winsvc32.exe
|
X
|
Added by the W32/Mytob-CB. This infection connects to an IRC server on startup where it waits for remote commands to execute. ... Read More
|
|
windhost.exe
|
winos.exe
|
X
|
Added by the Troj/PWSAgent-A trojan.
|
|
*windows update
|
wuacrlt.exe
|
X
|
Added by the W32/Rbot-QI worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
*windows update
|
wruaclt.exe
|
X
|
Added by the W32/Rbot-QP worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft Service Pack
|
WindowsSP.exe
|
X
|
Added by the W32/Rbot-RF worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
*windows update
|
wruauclt.exe
|
X
|
Added by the W32/Rbot-SF worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Windows Video
|
wvidsvc.exe
|
X
|
Added by the W32/Rbot-SJ worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
WlN32
|
winsys.cer
|
X
|
Added by the Troj/Zikdow-B Trojan. This infections redirects your browser to use www.3241.com as it's start page. ... Read More
|
|
win32client
|
win32client.exe
|
X
|
Added by the Troj/Restarter trojan.
|
|
Whistler
|
whismng.exe
|
X
|
Added by the Troj/Whistler-F. It also creates a file at C:WXP to copy over other files and deletes files. ... Read More
|
|
Windows drivers update
|
windowsupdate.exe
|
X
|
Added by the W32/Rbot-ACE worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Microsoft Update Machine
|
winnie.exe
|
X
|
Added by the W32/Rbot-ACD worm. This infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
windowsbackup
|
WINDOWSBACKUP.EXE
|
X
|
Added by the W32.Stang WORM! ... Read More
|
|
BootsCfg
|
wscript.exe C:\WINDOWS\User\All Users.vbs %
|
X
|
Added by the VBS.Spiltron@mm mass-mailing worm.
|
|
intel system tool
|
winnook.exe
|
X
|
Added by the Troj/Spyre-C trojan. This infection will display on your desktop a false message in the attempts to goad you into buying their software. ... Read More
|
|
windowsregkeys update
|
windup.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows update services
|
wins32svcs.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows sp2 firewall
|
wfirewall7.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows 32 update
|
Windows-Update.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
win update
|
wapdate.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
logitech desktop controller
|
wrcam.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
System Servers
|
windows.exe
|
X
|
Added by the Troj/GrayBrd-L Trojan.
|
|
Microsoft Synchronization Manager
|
WIN932.EXE
|
X
|
Added by the W32/Sdbot-IL worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
microsoft update machine
|
wins32.exe
|
X
|
Added by the RBOT.EZ WORM! ... Read More
|
|
winlog
|
windowxs.exe
|
X
|
Added by the W32/Sdbot-KT worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Windows FAT 32
|
WINFAT32B.exe
|
X
|
Added by the W32/Spybot-AGT worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
*windows update
|
waurclt.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
MS PLUS INC
|
wpad.exe
|
X
|
Added by the W32/Mytob-AN mass-mailing worm.
|
|
win32 system server
|
winserver.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows services ink platform tablet input subsystem
|
wsiptis.exe
|
X
|
Added by the RBOT.APC WORM! ... Read More
|
|
windows sz host
|
winshvc.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
wwks
|
wsass.exe
|
X
|
Added by the W32/SDBOT-BT WORM! ... Read More
|
|
XTN Service Drivers
|
winxtn.exe
|
X
|
Added by the W32/Sdbot-YK worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wmplayer.exe
|
wmplayer.exe
|
X
|
Added by the Troj/Bancban-CT password-stealing trojan. If you were infected with this trojan you should immediately change all your passwords for you ... Read More
|
|
sygate personal firewall
|
winxpstat.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft system checkup
|
wnetmgr.exe
|
X
|
Added by the W32.DONK.Q WORM! ... Read More
|
|
microsoft update machine
|
wins32.exe
|
X
|
Added by the RBOT.EZ WORM! ... Read More
|
|
microsoft winupdate
|
Winamp61.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
security patches
|
WinLab32.exe
|
X
|
Added by the W32/SDBOT-KB WORM! ... Read More
|
|
client update
|
wup.exe
|
X
|
Added by a variant of the W32/OPANKI-A WORM! ... Read More
|
|
tsk mng hlp
|
wins32.exe
|
X
|
Added by the W32/AGOBOT-JB WORM! ... Read More
|
|
win server updt
|
winserver.exe
|
X
|
Added by a variant of the WIN32.IMISERV TROJAN! ... Read More
|
|
GenericHostXP
|
WinLoaderXP.exe
|
X
|
Added by the Troj/Bdoor-ACX Trojan.
|
|
win32 usb2
|
wins32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows imessenger messenger
|
winimsg.exe
|
X
|
Added by the W32.ALLIM.A WORM! ... Read More
|
|
windows media player 3.6
|
wmpa36.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows media player 3.9
|
wmpa36.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows messenger messenger
|
winmsg.exe
|
X
|
Added by W32.Velkbot.A WORM! ... Read More
|
|
windows secure connection
|
winsc.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows security manager
|
winsecurity.exe
|
X
|
Added by the W32/AGOBOT-KI WORM! ... Read More
|
|
windows sp2 version load
|
wuauclt32.exe
|
X
|
Added by the GAOBOT.CX WORM! ... Read More
|
|
windows user starter
|
winuser32.exe
|
X
|
Added by the RBOT.SN WORM! ... Read More
|
|
windowsregkey update
|
winupdatexx.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winnt updatc
|
wupgrd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winrun z
|
W1NT45K.exe
|
X
|
Added by W32.Mytob.BL WORM! ... Read More
|
|
winusr
|
WinUsr.exe K1S2
|
X
|
Added by the W32.CLUNK.A WORM! ... Read More
|
|
winvxd32
|
winvxd32.exe
|
X
|
Added by the W32.Gabloliz.A WORM! ... Read More
|
|
WinCfg32
|
WinCfg32.exe
|
X
|
Added by the W32/Ronoper-A worm/backdoor trojan.
|
|
win32napp
|
win32napp.exe
|
X
|
Added by the W32/Smelles-A virus.
|
|
Win32reg.dll
|
Wind32reg.dll.exe
|
X
|
Added by the W32/Rackum-A worm/keylogger. This infection attempts to delete the regedit.exe file and logs keystrokes in the Winsck32.sys.Txt file. ... Read More
|
|
Windows Lord Anti-Virus
|
winlord32.EXE
|
X
|
Added by the Troj/SdBot-GW worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
Microsoft Windows Runtime DLL Services
|
WINDEV.EXE
|
X
|
Added by the W32/Randex-M worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
Work
|
world.exe
|
X
|
Added by the W32/Randon-AE worm. This infection, when started, connects to an IRC server using a provided MIRC client to receive commands. ... Read More
|
|
WinVM32
|
WINVM32.EXE
|
X
|
Added by the Troj/RasAsper-A dialer. This infection divers all numbers dialed via modem to a phone number preceded with 0190. ... Read More
|
|
Plug and Play
|
wininet32.exe
|
X
|
Added by the Troj/Raznew-B trojan proxy server. This infection allows remote computers to use the Internet through your computer to hide their tracks ... Read More
|
|
Thsys
|
winrun.sys.pif
|
X
|
Added by the W32/Sachiel-D worm.
|
|
Microsoft Update
|
wkfix.exe
|
X
|
Added by the W32/Rbot-ABZ. This worm connects to an IRC server on startup where it waits for remote commands. ... Read More
|
|
Reg Service
|
winslogon.exe
|
X
|
Added by the W32/Agobot-SC WORM!
|
|
Win32 Services Config
|
winwkys.exe
|
X
|
Added by a new Rbot worm variant.
|
|
WTF Test
|
wtftest.exe
|
X
|
Added by the W32/Rbot-ACM worm. When started this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
SysUpd
|
WindowsUpd1.exe
|
X
|
|
|
erghgjhgdr
|
windlhhl.exe
|
X
|
Added by the W32.Beagle.BG or W32.Beagle.BH or W32.Beagle.BI or W32.Beagle.BJ WORM! ... Read More
|
|
bootscfg
|
wscript.exe[path] Install.log.vbs
|
X
|
Added by the VBS.YPSAN.E WORM! ... Read More
|
|
microsoft wind0ws updater
|
winsupdater.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
popmark
|
WinTask.exe
|
X
|
"Pop Marketing" adware
|
|
syntax
|
windows32.exe
|
X
|
Added by the SDBOT.CQ WORM! ... Read More
|
|
win updater
|
WINUPDATER.EXE
|
X
|
Added by the RBOT.IP WORM! ... Read More
|
|
windows 128 module
|
win128.exe
|
X
|
Added by the W32/FORBOT-ES WORM! ... Read More
|
|
windows host
|
winhost.exe
|
X
|
Added by the BACKDOOR.PRYSAT TROJAN! ... Read More
|
|
windows security updater
|
WINFRW.exe
|
X
|
Added by the Solufina TROJAN! ... Read More
|
|
windowsupd1.exe
|
WindowsUpd1.exe
|
X
|
VirtuMonde adware ... Read More
|
|
windowsupd2.exe
|
WindowsUpd2.exe
|
X
|
|
|
winis
|
winis.exe
|
X
|
Added by the W32/RBOT-WI WORM! ... Read More
|
|
winpup32
|
Winpup32.exe
|
X
|
Added as a result of the ADCLICKER VIRUS! ... Read More
|
|
winsvc32.exe
|
winsvc32.exe
|
X
|
Added by the GREPAGE TROJAN! ... Read More
|
|
MS Unix Binary
|
WinGuard.exe
|
X
|
Added by the W32/Rbot-ACL worm. When started, this infection connects to an IRC where it waits for remote commands to execute. ... Read More
|
|
Windows Service Manager
|
userint32.exe
|
X
|
Added by the W32/Oscabot-C worm. When started, this infection connects to an IRC where it waits for remote commands to execute. ... Read More
|
|
Windows Updates
|
winupd32.exe
|
X
|
Added by the W32/Mytob-AY worm. When started, this infection connects to an IRC where it waits for remote commands to execute. ... Read More
|
|
notn
|
wtta.exe
|
X
|
PurityScan/Clickspring adware ... Read More
|
|
internet2 optimizer
|
wkfix.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winscmngr
|
winsmc.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
Windows Services
|
winspsv.exe
|
X
|
Added by the Troj/Sdbot-BA backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
Module WinMeter
|
wimmtre.exe
|
X
|
Added by the W32/Sdbot-BE backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
Security Patch
|
WinUpdate32.exe
|
X
|
Added by the W32/SdBot-BM backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
WinReg
|
win32cfg.exe
|
X
|
Added by the Troj/Sdbot-CR backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execu ... Read More
|
|
Update
|
WinUpdate.exe
|
X
|
Added by the W32/Sdbot-CV backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
Windows Clock Configuration
|
windowstm.exe
|
X
|
Added by the W32/Sdbot-DB backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
Windows Manager
|
windows31.exe
|
X
|
Added by the W32/Sdbot-DY backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execut ... Read More
|
|
winlog
|
wintask.exe
|
X
|
Added by the W32/Sdbot-GR worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
ipc spool manager
|
winspec.exe
|
X
|
Added by the W32/SDBOT-BLU WORM! ... Read More
|
|
startup
|
WinlogonStartup
|
X
|
Unidentified malware
|
|
d2
|
winloadhh.dll
|
X
|
Added by the Troj/Labrap-A downloader trojan.
|
|
Windows Application Layer Gateway
|
walg32.exe
|
X
|
Added by the W32/Agobot-AAZ worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
ICQNet
|
winlogon.exe
|
X
|
Added by the W32/Netsky-C mass-mailing worm.
|
|
winsockdriver
|
winsock3.exe
|
X
|
Added by the W32/Spybot-DO worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
MBsync
|
WUAPDC.EXE
|
X
|
Added by the W32/Sdbot-IS worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
REMOVE ME
|
windos.exe
|
X
|
Added by the Troj/Sdbot-JC worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
[unknown name]
|
WINBASICS32.EXE
|
X
|
Added by the Troj/Sdbot-JH worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
InternetGetConnectedState
|
winupdate.exe
|
X
|
Added by the W32/SdBot-JN worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Win FTP
|
wintftp.exe
|
X
|
Added by the W32/Sdbot-KA worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
winsys32mon
|
winsysmon32.exe
|
X
|
Added by the SecurityRisk.SexxPass security risk. This infection adds certain sites to your IE trusted zone allowing software to install on your comp ... Read More
|
|
IE Runtimes
|
winis.exe
|
X
|
Added by the W32/Rbot-ADZ worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Registry Name
|
winses.exe
|
X
|
Added by the W32/Rbot-ADB worm. When started this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ms builders
|
Wupated.exe
|
X
|
Added by the W32/AGOBOT-SS WORM! ... Read More
|
|
updatecheck
|
winstall.exe
|
X
|
Added by the W32/SPYBOT-CY WORM! ... Read More
|
|
windows media utility
|
wmediautil.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM! ... Read More
|
|
windows sq drivers
|
winmsn32.exe
|
X
|
Added by the W32/Rbot-ADI ... Read More
|
|
windows_protect
|
wincontrol32.exe
|
X
|
Added by the W32/Rbot-ADK ... Read More
|
|
winierun
|
winierun.exe
|
X
|
Added by the Troj/RNWatch-A ... Read More
|
|
winword
|
winword.exe
|
X
|
Added by the Troj/Torpid-C ... Read More
|
|
autoupdate
|
WINUP2DATE.DLL,SHStart
|
X
|
Unidentified adware - detected by Panda antivirus as Trj/Clicker.CY ... Read More
|
|
microsoft security
|
winService.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft windows service
|
winsys.exe
|
X
|
Added by the W32/Rbot-ADP ... Read More
|
|
random 10-character filename
|
Winupdates.exe
|
X
|
Added as result of a W32/Rbot-MM worm infection ... Read More
|
|
windowregkey update
|
wins.exe
|
X
|
Added by the SPYBOT.I WORM! ... Read More
|
|
windows firewall log
|
winlog.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows msconfig startup logger
|
winlog.exe
|
X
|
Added by the RBOT.BCU WORM! ... Read More
|
|
winimage
|
wvsvc.exe
|
X
|
Added by the RBOT.TX WORM! ... Read More
|
|
winservice
|
winmain.exe
|
X
|
porn related malware
|
|
IE Runtime
|
wini.exe
|
X
|
Added by the W32/Rbot-ADM worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Win Tmp Service
|
wstmp.exe
|
X
|
Added by the W32/SdBot-YS. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
wupd
|
win32.exe
|
X
|
Added by the Troj/Orse-C trojan.
|
|
Windows Web Services
|
websvc.exe
|
X
|
Added by the Troj/Dloader-NY trojan.
|
|
Microsoft Update USB2
|
wuammgrd32.exe
|
X
|
Added by the W32/Rbot-ADT worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
USBConfigration2
|
wmmndir.exe
|
X
|
Added by the W32/Agobot-SV worm. When started this infection connects to an IRC server where it waits for remote commands. ... Read More
|
|
Windows Management Instrumentation
|
wmimgr.exe
|
X
|
Added by the W32.Qdens.A QQ messenger worm.
|
|
wineula
|
wineula.dll
|
X
|
Added by the Trojan.Vundo.B adware/redirector.
|
|
Windows Workstation Service (32-bits)
|
wkssvc32.exe
|
X
|
Identified as a SDBot variant.
|
|
Windows PDG
|
winpdg.exe
|
X
|
Added by the W32/Rbot-ADW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft WinRaR
|
winrar.exe
|
X
|
Added by the W32/Rbot-AEC worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows System
|
WINSYS.exe
|
X
|
Added by the W32/Rbot-AEF worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Micro Drivers
|
wupdates32.exe
|
X
|
Added by the W32/Rbot-AEH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WINLOGON
|
wscript.exe %System%\WINLOGON.vbs %
|
X
|
Added by the VBS.Ypsan.F@mm mass-mailing worm. When cleaning this infection you only want to delete the %System%Winlogon.vbs file. ... Read More
|
|
Lien Van de Kelder
|
www.lienvandekelder.be.exe
|
X
|
Added by the W32.Mytob.DB@mm mass-mailing worm with backdoor capabilities.
|
|
Windows Updtee Mgnr
|
W1NT45K.exe
|
X
|
Added by the W32.Mytob.DC@mm worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
http://www.lienvandekelder.be
|
We Love Lien Van de Kelder.exe
|
X
|
Added by the W32/Mytob-CV email worm and backdoor IRC trojan.
|
|
win32beta
|
win32sys4.exe
|
X
|
Added by the Troj/Banker-DA password-stealing trojan for Brazilian banks.
|
|
Nero Updater.6.12
|
wmp9.exe
|
X
|
Added by the W32/Agobot-AAG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Configuration Loader
|
win32exec.exe
|
X
|
Added by the W32/Sdbot-LA worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Winsock2 Loader
|
WICONF.EXE
|
X
|
Added by the W32/Sdbot-LC worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Configuration Loader
|
winfix.exe
|
X
|
Added by the W32/Sdbot-MA worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
winlog
|
winsx.exe
|
X
|
Added by the W32/Sdbot-MH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft video capture controls
|
winshosts.exe
|
X
|
Added by the W32/Sdbot-MP worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
System Information Manager
|
win.exe
|
X
|
Added by the W32/Sdbot-MU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Updates
|
w32dns.exe
|
X
|
Added by the W32/Sdbot-BFW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WinStabilizer
|
WinStabilizer.exe
|
X
|
Added by the W32/Agobot-SW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Update
|
winlogin.exe
|
X
|
Added by the Troj/Banker-DV password-stealing trojan.
|
|
WINTASKS
|
winxpro.exe
|
X
|
Added by the W32/Mytob-T worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Win32 Services
|
wuamngr.exe
|
X
|
Added by the W32/Sdbot-N worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
SysInit
|
wininit32.exe
|
X
|
Added by the W32/Sdbot-NA worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection ... Read More
|
|
System Information Manager
|
windowsNt.com
|
X
|
Added by the W32/Sdbot-ND worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Security Fixers
|
WINCAT32.EXE
|
X
|
Added by the W32/Sdbot-NR worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
RNBz Test
|
wf32vbc.exe
|
X
|
Added by the W32/Rbot-AEY worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
\Generic Host Process for Win32 Services
|
winsvc32.exe
|
X
|
Added by the W32/Sdbot-Pworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
win-update
|
wiupdat.exe
|
X
|
Added by the W32/Sdbot-QPworm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows XP Automatic Update
|
wXPupdate.exe
|
X
|
Added by the W32/Rbot-AFC worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
win-mang.exe
|
X
|
Added by the W32/Rbot-AFK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update
|
wuamkop.exe
|
X
|
Added by the W32/Rbot-AFI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Configuration
|
wincfg32.exe
|
X
|
Added by the W32.Mytob.ED@mm mass-mailing worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
ctfmon
|
WinConst.exe
|
X
|
Added by the Troj/Assasin-G backdoor trojan and keylogger.
|
|
WINDOWS SYSTEM
|
winsys33.exe
|
X
|
Added by the W32/Mytob-BI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Login Service
|
winlog.exe
|
X
|
Added by the W32/Rbot-AFN worm. This infection when started, connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Machine
|
wftestb.exe
|
X
|
Added by the W32//Rbot-AFZ worm. When started, this infection connects to an IRC server where it waits for remote commands to execute. ... Read More
|
|
ssgrate.exe
|
wintems.exe
|
X
|
Added by the Trojan.Mitglieder.Q trojan backdoor/proxy.
|
|
Microsoft Windows DLL Services Configuration
|
winDSL.exe
|
X
|
Added by the W32/Sdbot-ZG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Security
|
winmon.exe
|
X
|
Added by the W32/Sdbot-SR worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
winligon.exe
|
X
|
Added by the W32/Mytob-FD worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
LoadPFW
|
wmimgr.exe
|
X
|
Added by the W32/Qeds-B virus.
|
|
WINDOWS SYSTEM
|
win.exe.exe
|
X
|
Added by the W32.Mytob.FA@mm worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM Dns
|
windsns.exe
|
X
|
Added by the W32.Mytob.EY@mm worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
winvnc.exe
|
X
|
Added by the W32.Mytob.EU@mm worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Windows User Mode Driver Manager
|
wdfmrg.exe
|
X
|
Added by the W32/Sdbot-ZN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wintnask32.exe
|
wintnask32.exe
|
X
|
Added by the W32/Rbot-AFP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
SYSTEM MESSAGER
|
wmisg.exe
|
X
|
Added by the W32.Mytob.ES@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows32
|
Windows32.exe
|
X
|
Added by the Troj/Resod-C trojan.
|
|
WINDOWS SYSTEM
|
winxpserv.exe
|
X
|
Added by the W32/Mytob-BQ worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WinRep
|
winrep.exe
|
X
|
Added by the W32/Rbot-AFW worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Winsock2 driver
|
WUAUMQR.EXE
|
X
|
Added by the W32/Spybot-DP worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update Services
|
wsnfty.exe
|
X
|
Added by the W32/Rbot-AFU worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
windows system 32-bat service
|
win32bat.exe
|
X
|
Added by the W32.Mytob.FI(AT)mm ... Read More
|
|
Windows Update Service
|
wupdated.exe
|
X
|
Added by the W32/Sdbot-TB worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
[unknown]
|
WIN32OP.EXE
|
X
|
Added by the W32/SdBot-U worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Winzip Compression Utility
|
Winzip32.exe
|
X
|
Added by the Troj/Sdbot-UI worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
Windows installer
|
winstall.exe
|
X
|
Related to the SpySheriff infection.
|
|
Configuration32 Loader32
|
winamp32.exe
|
X
|
Added by the W32/Sdbot-BIC worm. When started, this infection connects to a remote IRC server and waits for commands to execute. ... Read More
|
|
NAV Agent
|
wmilib32.exe
|
X
|
Added by the Troj/VB-XU trojan.
|
|
windows16
|
windows16.exe
|
X
|
Added by the Troj/VB-XU trojan.
|
|
Microsoft Sound Technology
|
winsound.exe
|
X
|
Added by the W32/Rbot-AGG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wlogon
|
wlogon.dll
|
X
|
Added by the W32/Wenper-B worm.
|
|
winupdates
|
winupdates.exe
|
X
|
Added by the W32/Alcra-B worm.
|
|
Microsoft Update Services
|
wcsnfty.exe
|
X
|
Added by the W32/Rbot-AGK worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WinAwk
|
WinAwk.exe
|
X
|
Added by the W32/Sdbot-AYF worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
OSA
|
winword.exe
|
X
|
Added by the Trojan.Kangenie trojan.
|
|
Windows Update
|
wininfo.exe
|
X
|
Added by the W32.Mytob.GA@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
winmon.exe
|
X
|
Added by the W32.Mytob.GB@mm worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
WinSys4.exe
|
X
|
Added by the W32.Mytob.GG@mm worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Prog
|
winsys.exe
|
X
|
Added by the Siteno.Trojan trojan.
|
|
[not used]
|
Winn.exe
|
X
|
Added by the Snob.IRCworm IRC worm.
|
|
WINDOWS SYSTEM
|
wdns33.exe
|
X
|
Added by the W32/Mytob-BY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WDNS SYSTEM
|
wdns33.exe
|
X
|
Added by the W32/Mytob-BY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win32Host Process
|
webemir.exe
|
X
|
Added by the Troj/Turgen-A password-stealing trojan.
|
|
winchost
|
winchost.exe
|
X
|
Added by the Troj/Dloader-PO downloader trojan.
|
|
RNBc Test
|
wf32vbs.exe
|
X
|
Added by the W32/Rbot-AGR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
System
|
WINL0G0N.EXE
|
X
|
Added by the Troj/Bancos-DB trojan.
|
|
KAVFOX
|
win1ogoin.exe
|
X
|
Added by the Troj/GWGhost-M key logging Trojan.
|
|
WMI Application Interface
|
wmiapi.exe
|
X
|
Added by the W32.Spybot.RBY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wow
|
wwf.exe
|
X
|
Added by the Troj/Lineage-Y password stealing trojan for the online game Lineage. ... Read More
|
|
WindowsRegKey update
|
winupdat32.exe
|
X
|
Added by the W32/Rbot-AGW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
dynamic dns binary
|
WinHelpcfn.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft update
|
wuamkop32.exe
|
X
|
Added by the RBOT.BGU WORM! ... Read More
|
|
microsoft updates 2 usb
|
wgafixer.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft windows dll services configuration
|
windir32a.exe
|
X
|
Added by a variant of the SDBOT.BHF WORM! ... Read More
|
|
microsoft windows update logon
|
win-logon.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoftf ddes control
|
wees.exe
|
X
|
Added by a variant of the the RBOT.BOF WORM! ... Read More
|
|
rndc test
|
wf32b.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
service
|
wN2S.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
system updates
|
winsci.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
weirdontheweb
|
WeirdOnTheWeb.exe
|
X
|
Added by the Adware.WeirdOnTheWeb ... Read More
|
|
windows command
|
wincmd.exe
|
X
|
Added by the RBOT.ANV WORM! ... Read More
|
|
windows nt login session manager
|
WNSM.EXE
|
X
|
Added by the RBOT.BIV WORM! ... Read More
|
|
windows tm
|
WinxSys.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winnt dns ident
|
wuamgrd33.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Compaq Service Drivers
|
winmsn.exe
|
X
|
Added by a variant of the W32/Sdbot WORM/IRC backdoor Trojan, it also drops a file named msdirectx.sys in your %UserProfile% which acts as a rootkit. ... Read More
|
|
Microsoft U
|
wuamkopxp.exe
|
X
|
Added by the W32/Rbot-AHC worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Jufualt
|
winxp2.exe
|
X
|
Added by the W32/Sdbot-AAB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update
|
wuamk032.exe
|
X
|
Added by the W32/Rbot-AHD worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update 64 BIT
|
wininit32.exe
|
X
|
Added by the W32/Rbot-AHE worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Updates
|
wtemp32.exe
|
X
|
Added by the W32/Rbot-AHQ worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
winudll.exe
|
winudll.exe
|
X
|
Added by the Troj/Mitglie-CE backdoor trojan.
|
|
wpwmgrs
|
wpwmgrs.exe
|
X
|
Added by the W32/Mytob-DH worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
winstart
|
winstart.exe
|
X
|
Added by the Troj/SCKeyLo-AB trojan.
|
|
winstart
|
winstart.dll
|
X
|
Added by the Troj/SCKeyLo-AB trojan.
|
|
winlog manager
|
winlog.exe
|
X
|
Added by the Trojan.Spexta trojan. When infected your computer will become an open mail relay which will allow your computer to be used to send out s ... Read More
|
|
loadwin
|
winset.exe
|
X
|
Added by the Troj/QQPass-I password-stealing trojan.
|
|
WINDOWS SYSTEM
|
winsvc32.exe
|
X
|
Added by the W32/Mytob-DJ worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam. ... Read More
|
|
Micsorosft Security Center
|
wcnsfty.exe
|
X
|
Added by the W32/Rbot-AHU worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam. ... Read More
|
|
CPU Temp Control
|
wuitgurd.exe
|
X
|
Added by the W32/Rbot-AHV worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam ... Read More
|
|
loadwin
|
winsys.exe
|
X
|
Added by the Troj/QQPass-J password-stealing trojan.
|
|
WINDOWS SYSTEM
|
winNTsys32.exe
|
X
|
Added by the W32/Mytob-DM worm. When infected your computer will become an open mail relay which will allow your computer to be used to send out spam. ... Read More
|
|
Windowsfw
|
windowsfw.exe
|
X
|
Added by the W32/Agobot-TA backdoor worm.
|
|
Winsock driver
|
winnt64.exe
|
X
|
Added by the W32/Spybot-DR worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WINDOWS SYSTEM
|
winaup.exe
|
X
|
Added by the W32/Mytob-DN worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Sql Service For Windows 32 Bit
|
winsql32.exe
|
X
|
Added by the W32/Forbot-FC worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MS_Update Check
|
wdfmgr.exe
|
X
|
Added by the W32/Agobot-TB worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Servic2
|
winsy.exe
|
X
|
Added by the W32/Rbot-AIA worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
microsoft unpack system
|
winrarx.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
hostserv
|
wiz98.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
ie6
|
wkstmg.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
lsass
|
woekd.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
microsoft crs fix serv
|
wincrs.exe
|
X
|
Added by the SDBOT.BWF WORM! ... Read More
|
|
microsoft dde control
|
wupades.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
microsoft web device
|
wdevice.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
mircosoft update
|
wuampkd.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
network access
|
winssh.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
windows system init
|
winit32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows system notepad
|
wnpsm.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
spool
|
wys.exe
|
X
|
WhileUSurf adware component
|
|
system checking
|
wasul.exe
|
X
|
Added by the RBOT.BHM WORM! ... Read More
|
|
usb updates 2
|
wugfixx.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows 32 editor
|
Win32edit.exe
|
X
|
Added by the WOOTBOT.GQ WORM! ... Read More
|
|
windows cpu host
|
winbog32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows desktop daemon
|
winpadg.exe
|
X
|
Added by a variant of the W32.SPYBOT WORM! ... Read More
|
|
windows dll loader
|
wdevice.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
winlogon
|
wpwlogon.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
winmovieplugin
|
WinMoviePlugIn.exe
|
X
|
Sfonditalia adult content premium rate dialer ... Read More
|
|
winspd32dll
|
winspd32.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM! ... Read More
|
|
wntlgns
|
wntlgns.exe
|
X
|
Added by a CoolWebSearch parasite related TROJAN! ... Read More
|
|
microsoft windows system service manager
|
winsvc.exe
|
X
|
Added by the SPYBOT.LR WORM! ... Read More
|
|
msn messeng
|
windns.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
registry oidet
|
win32.exe
|
X
|
Added by the RBOT.BMT WORM! ... Read More
|
|
scheduler service
|
wsass.exe
|
X
|
Added by the WIN32.LIOTEN.KX WORM! ... Read More
|
|
system manager updates
|
winsvc.exe
|
X
|
Added by the AGOBOT.AEM WORM! ... Read More
|
|
win winamp
|
winamp.exe
|
X
|
Added by the RBOT.AGF WORM! NOTE - this is NOT the Winamp Media Player executable (WinAmpa.exe) ... Read More
|
|
windows application layer
|
walg32.exe
|
X
|
Added by the AGOBOT.ATN WORM! ... Read More
|
|
windows dynamic loading header
|
winDLL32.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
winows system
|
winnt.exe
|
X
|
Added by the MYTOB.ID WORM! ... Read More
|
|
services
|
windows32.exe
|
X
|
Added by the W32/FlyVB-C worm.
|
|
WIN
|
windows.exe
|
X
|
Added by the W32/Lebreat-B worm.
|
|
Windows Icons Manager
|
wicomgr.exe
|
X
|
Added by the W32/Rbot-AIF worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
winlgz2
|
winlgz2.exe
|
X
|
Added by the Troj/KillFil-Q trojan.
|
|
SysMon
|
wowexece.exe
|
X
|
Added by the Troj/Mulan-A trojan.
|
|
Winbot
|
winbot.exe
|
X
|
Added by the Troj/Midrug-A backdoor trojan.
|
|
Microsoft Update Loaders 2005
|
winusers.exe
|
X
|
Added by the W32/Rbot-AIQ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Config Manager
|
winconf.exe
|
X
|
Added by the W32/Rbot-AIT worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
KV2005
|
word.EXE
|
X
|
Added by the Troj/VB-IW backdoor Trojan.
|
|
winfws
|
winfws.exe
|
X
|
Added by the W32/Sdbot-ABA worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
252
|
winmgr.exe
|
X
|
Added by the Troj/Mugger-A Trojan.
|
|
Win_Pigeon_Server
|
Win_Server.dll
|
X
|
Added by the Troj/Feutel-N backdoor Trojan.
|
|
Microsoft Windows Security
|
wscndrives.exe
|
X
|
Added by the W32/Rbot-AJK worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
WinExec
|
WinExec.exe
|
X
|
Added by the W32/Falus-A worm.
|
|
Microsoft Locator Service
|
wkssvc.exe
|
X
|
Added by the W32/Sdbot-ABE worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update Win32x
|
winupdate32x.exe
|
X
|
Added by the W32/Rbot-AJN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows NetDDe
|
wrmana32.exe
|
X
|
Added by the W32.Mytob.IM@mm worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Win32 Drivers
|
winlogons.exe
|
X
|
Added by the W32/Forbot-FG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
wesumu
|
wiustv.exe
|
X
|
Added by the Troj/QQPass- Trojan.
|
|
icqbeta
|
webcamupdate.exe
|
X
|
Added by an unidentified TROJAN!
|
|
inetservices
|
wsock32.exe
|
X
|
Added by the Backdoor.Win32.Delf.ej or TROJ/WOCK32-A TROJAN! ... Read More
|
|
microsoft internet
|
wincfg16.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
microsoft winupdate
|
WinNTinit32.exe
|
X
|
Added by the RBOT.VS WORM! ... Read More
|
|
ntsf microsoft system
|
winsis32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
quicktime mediaplayr
|
wnmplyr.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
registry value name
|
winapi32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
wincx
|
wincore332.exe
|
X
|
Added by the W32/AGOBOT-MG WORM! ... Read More
|
|
windows system32
|
windowsp.exe
|
X
|
Added by the MYTOB.GD WORM! ... Read More
|
|
windows32
|
wuuaclt.exe
|
X
|
Added by the W32.Bratle.B
|
|
winfixer 2005
|
wfx5.exe
|
X
|
"Foistware", pretending to be system optimization, protection and recovery software - stealth installed, see here ... Read More
|
|
winnt dns ident
|
windowsp.exe
|
X
|
Added by the RBOT.BAL WORM! ... Read More
|
|
winrestore1
|
winrestore.exe
|
X
|
Added by the TROJ/KILLFIL-Q TROJAN! ... Read More
|
|
wsock32
|
wsock32.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
Microsoft Login
|
winlogin.exe
|
X
|
Added by the W32/Rbot-AJP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Windows DLL Services Configuration
|
windir32.exe
|
X
|
Added by the W32/Sdbot-ABM worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ms ownage
|
winPE.exe
|
X
|
Added by the W32/Rbot-AJL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WNSI
|
wnscpit.exe
|
X
|
PurityScan delivers advertisements to your computer.
|
|
[not used]
|
Winroad.exe
|
X
|
Added by the Backdoor.Augudor backdoor.
|
|
[not used]
|
wsv.com
|
X
|
Added by the Backdoor.Beasty.B backdoor. This backdoor listens on port 666.
|
|
[not used]
|
wb.com
|
X
|
Added by the Backdoor.Beasty.E backdoor. This backdoor listens on port 666.
|
|
[not used]
|
wb.com
|
X
|
Added by the Backdoor.Beasty.F backdoor. This backdoor listens on port 666.
|
|
Systray
|
w32explorer.exe
|
X
|
Added by the W32/Rbot-AJY worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows System Configuration
|
WINCFG32.EXE
|
X
|
Added by the W32/Agobot-TE worm.
|
|
Windows DLL Loader
|
WINCFG32.EXE
|
X
|
Added by the W32/Agobot-TE worm.
|
|
Microsoft standard protector
|
winsocks5.exe
|
X
|
Added by the Troj/Stox-A Trojan.
|
|
UpTimes service
|
WinUp.exe
|
X
|
Added by the W32/Rbot-AKB worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WinTasks DLL Library (32-bits)
|
winkll.exe
|
X
|
Added by the W32/Rbot-AJZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows System Configuration
|
WinNeth.exe
|
X
|
Added by the W32/Rethe-A worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
W32Time
|
w32t.dll
|
X
|
Added by the Backdoor.Fuwudoor backdoor.
|
|
Microsoft Update 32
|
wininit.exe
|
X
|
Added by the W32/Rbot-AKD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Please note that ... Read More
|
|
syncman
|
winsync.exe
|
X
|
Added by the Troj/MancSyn-A Trojan.
|
|
Microsoft Update 64 BIT
|
winman32.exe
|
X
|
Added by the W32/Rbot-AKI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Update 32
|
winlogons.exe
|
X
|
Added by the W32/Forbot-FI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Login Security
|
winlogin.pif or random name
|
X
|
Added by the W32/Rbot-AKL worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update 32
|
wininit32.exe
|
X
|
Added by the W32/Rbot-AKJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows PNP
|
winpnp.exe
|
X
|
Added by the W32/Rbot-AKN worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update
|
wininit.exe
|
X
|
Added by the W32/Rbot-AKR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Please note that ... Read More
|
|
WinFire
|
WF.exe
|
X
|
Added by the Troj/Delf-SY keylogging Trojan.
|
|
WinDrg32
|
windrg32.exe
|
X
|
Added by the W32/Dogbot-A worm/backdoor. This file may be found in other directories as well. ... Read More
|
|
wintbp.exe
|
wintbp.exe
|
X
|
Added by the W32/Tpbot-A worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wintbpx.exe
|
wintbpx.exe
|
X
|
Added by the W32/Zotob-F worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WindowsProduct Activation
|
wpa.exe
|
X
|
Added by the W32/Hwbot-B worm.
|
|
windown
|
wiusyt.exe
|
X
|
Added by the Troj/QQPass-M password-stealing Trojan.
|
|
Windows Help Service
|
winhlp.pif
|
X
|
Added by the W32/Rbot-AKW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wintnpx.exe
|
wintnpx.exe
|
X
|
Added by the W32.Zotob.H worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Wupdm32
|
Wupdm32.exe
|
X
|
Added by the W32.Midlak@mm mass-mailing worm.
|
|
Win Microsoft 98
|
win14.exe
|
X
|
Added by the W32/Rbot-AKX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win32 service
|
WIN32SVC.EXE
|
X
|
Added by the Backdoor.Selka backdoor.
|
|
Windows 32-bit PnP Driver
|
winpnp32.exe
|
X
|
Added by the W32.Wallz worm.
|
|
Network Client
|
winlogon.exe
|
X
|
Added by the Trojan.Boxed.E Trojan.
|
|
*microsoft update
|
wuytc.exe
|
X
|
Added by the STMU TROJAN!
|
|
windows firewalll
|
winmu.exe
|
X
|
Added by a variant of the RBOT WORM!
|
|
windows media ap
|
winmapp.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows media app
|
wmapp.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows process manager
|
winproc.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows logon procedure
|
winlogonpc.exe
|
X
|
Added by the "WinLogon" TROJAN! ... Read More
|
|
windows download manager
|
windlmngr.exe
|
X
|
Added by an unidentified TROJAN!
|
|
wincms
|
wincms.exe
|
X
|
Added by the RBOT.CBR WORM! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to lau ... Read More
|
|
microsoft security management
|
wuauct1.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft server applacations
|
wuauct1.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft update
|
Wudates.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft update 32
|
winitXP32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft windows update application
|
wuap.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
Microsoft
|
win32.exe
|
X
|
Added by the Backdoor.Darkmoon backdoor Trojan. It also adds the following files as part of the infection: %System%\Yxgunlzu.d1l
% ... Read More
|
|
windows Loadxm
|
Win_.exe
|
X
|
Added by the Troj/Fodder-A password-stealing backdoor Trojan.
|
|
runing
|
win.exe
|
X
|
Added by the Troj/Delf-LC Trojan.
|
|
SpyEx
|
Winllogo.exe
|
X
|
Added by the W32/PrsKey-A password-stealing and keylogging worm. The worm will store the logged keystrokes into the file C:text.txt. ... Read More
|
|
PNP
|
wuaaclt.exe
|
X
|
Added by the W32/Lilbre-A worm.
|
|
Windows NT Logon Application
|
WINLOGON.SCR
|
X
|
Added by the W32/Rbot-ALP worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
win32 internet server
|
winserver.exe
|
X
|
Added by the Troj/Dermon-D Trojan.
|
|
Windows Debugger
|
windbg32.exe
|
X
|
Added by the W32.Zotob.L worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wintnl.exe
|
wintnl.exe
|
X
|
Added by the W32.Zotob.K worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Update
|
windowsx.exe
|
X
|
Added by the Troj/Bancd-A password-stealing Trojan.
|
|
OLE Automation Module
|
Wsthunk.dll
|
X
|
Added by the Backdoor.Thunker Trojan.
|
|
Wlan1934
|
wlan1934.sys
|
X
|
Added by the Troj/Dloader-TB Trojan.
|
|
Microsoft Update
|
wuamgrd3.exe
|
X
|
Added by the W32/Rbot-AMC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
messenger
|
Wmsngr.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
microsoft file demand manager
|
wmgrdf.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
weatherscope
|
Weatherscope.exe
|
X
|
WeatherScope software - bundles Gain/Gator adware ... Read More
|
|
win ctl app
|
wuctl.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
windows netstart service2
|
winsN2SD.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winrapid
|
winrapid.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winreups
|
winreups.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
IE Runtime
|
winlogo.exe
|
X
|
Added by the W32/Rbot-AMJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Security Service
|
windows.pif
|
X
|
Added by the W32/Rbot-AMG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Login Service
|
winlogin.pif
|
X
|
Added by the W32/Sdbot-ACU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ROOT_Machine
|
winlogon.exe
|
X
|
Added by the Troj/Banker-FI Trojan.
|
|
winstats
|
winstats.exe
|
X
|
Added by the Trojan.Gargafx Trojan.
|
|
*winstats
|
winstats.exe
|
X
|
Added by the Trojan.Gargafx Trojan.
|
|
Microsoftf DDEs Control
|
why-.exe
|
X
|
Added by the W32/Rbot-AMV worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Update 32
|
wiit.exe
|
X
|
Added by the W32/Rbot-AMS worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
userinit
|
winlogon.exe
|
X
|
Added by the Troj/Dloader-TP Trojan.
|
|
[not used]
|
winmgd.win
|
X
|
Added by the VBS_GEDZA.A worm.
|
|
softIce Update 32
|
wininits.exe
|
X
|
Added by the W32/Rbot-ANB worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wordpad
|
wordpad.exe
|
X
|
Added by the W32.Spybot.WON worm.
|
|
Microsoft X Update
|
wuamkoppnp.exe
|
X
|
Added by the W32/Rbot-ANI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
pnpext
|
wmc.exe
|
X
|
Added by the Troj/LeechPie-D Trojan.
|
|
Windows Update 64
|
WinV.exe
|
X
|
Added by the W32/Forbot-FP worm and IRC backdoor.
|
|
winint
|
winint.exe
|
X
|
Added by the W32/Sdbot-ADA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
123
|
wintask.exe
|
X
|
Added by the Troj/LegMir-AY password-stealing Trojan for the online game Legend of Mir. ... Read More
|
|
erthegdr
|
windll2.exe
|
X
|
Added by the W32.Beagle.CG@mm mass-mailing worm.
|
|
Windows Update
|
wupdmgr.exe
|
X
|
Added by the Troj/Bancban-FC password stealing Trojan.
|
|
sqservices
|
wins32.exe
|
X
|
Added by the Troj/Progent-B Trojan.
|
|
Wind0ws
|
wordpad.exe
|
X
|
Added by the W32/Agobot-TL worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. ... Read More
|
|
anti-virus update scheduler
|
winsp3.exe
|
X
|
Malware - detected by Kaspersky antivirus as TrojanProxy.Agent.fp - A Proxy Trojan is a backdoor which allows a remote hacker to connect to other sys ... Read More
|
|
microsoft 64 bit runtime updater
|
wupdt64.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
etunnel
|
winfw.exe
|
X
|
Added by an unidentified TROJAN!
|
|
microsoft machine
|
winjava.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM! ... Read More
|
|
microsoft update loaders 2006
|
winusersystem32.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM! ... Read More
|
|
neroupdater6.8
|
winjava.exe
|
X
|
Added by the AGOBOT.AMK WORM! ... Read More
|
|
the
|
wind0s.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
vsample
|
winxpsock.exe
|
X
|
Added by the SDBOT.BLK WORM! ... Read More
|
|
win32 firewall driver
|
winfw.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winantispyware 2005
|
was5.exe
|
X
|
WinAntiSpyware: MALWARE, posing as a spyware remover - for more information, search the Spywarewarrior_List of non-Recommended anti parasite sit ... Read More
|
|
wincmap
|
wincmapp.exe
|
X
|
CasClient adware variant - also known as Trojan.Cmapp ... Read More
|
|
windows java update
|
weatherBug32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows run-time 64bit
|
win64rt.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windows update center
|
W32RSA.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
windows xp sp2 keygen
|
Windows XP SP2 KeyGen.exe
|
X
|
Added by the W32/TIBICK-C WORM! ... Read More
|
|
winxpusbd
|
winxp64.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
wn services
|
wnsvc.exe
|
X
|
|
|
Windows Logon Service
|
winlogon.pif
|
X
|
Added by the W32/Rbot-AOU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows UPnP Service
|
wupnp.exe
|
X
|
Added by the W32/Cuebot-F backdoor worm.
|
|
[not used]
|
winlog.exe
|
X
|
Added by the Troj/Sharp-J Trojan.
|
|
Windows GMT32
|
wingmt32.exe
|
X
|
Added by the W32/Mytob-EN worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Enables Java Support
|
winjava.exe
|
X
|
Added by the W32/Codbot-AA backdoor worm.
|
|
MSControl31
|
winnsyst.exe
|
X
|
Added by the W32/Rbot-APF worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
wupdmgr32.exe
|
wupdmgr32.exe
|
X
|
Added by the Troj/Certif-I password-stealing Trojan.
|
|
microfot update
|
winldx32.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
windowsupdate
|
winnnint.exe
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
WildFlics
|
WildFlics.exe
|
X
|
Added by the Dial/Direct-B premium rate dialer.
|
|
[not used]
|
winldr.exe
|
X
|
Added by the W32/Bagle-AK worm.
|
|
Service System
|
windowsXP.exe
|
X
|
Added by the Troj/Bancos-EL Internet banking Trojan which attempts to capture confidential banking information and send it to a remote location. ... Read More
|
|
winwsl.exe
|
winwsl.exe
|
X
|
Added by the W32/Zotob-J worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Security
|
win.pif
|
X
|
Added by the W32/Rbot-APT worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Windows WinSaSS Management
|
winsass.exe
|
X
|
Added by the W32/Rbot-APW worm and IRC backdoor.
|
|
win_supp00.exe
|
Win Const.exe
|
X
|
Added by the Troj/Assasin-H Trojan.
|
|
Wins Service Driver
|
winet.exe
|
X
|
Added by the W32/Rbot-APV worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft WINGS32 Protocol
|
WinSGR32.exe
|
X
|
Added by the W32/Rbot-APU worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
windows update
|
wudupdate.exe
|
X
|
Adware downloader - Istbar related ... Read More
|
|
wsrv32
|
wsrv32.exe
|
X
|
Added by a TROJAN.CLICKER - identified by Kaspersky antivirus as Win32.Agent.ep ... Read More
|
|
NTP
|
winlogon.exe
|
X
|
Added by the Troj/Jtram-D IRC backdoor Trojan.
|
|
Microsoft Update 32
|
winnit.exe
|
X
|
Added by the W32/Rbot-AOM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microft Update 32
|
winssx.exe
|
X
|
Added by the W32/Rbot-AQS worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
windef
|
windef.exe
|
X
|
Added by the W32/Wurmark-O mass-mailing worm.
|
|
WinAmp Player
|
winampp.exe
|
X
|
Added by the W32/Rbot-AQI worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
MCX Update
|
wisp.exe
|
X
|
Added by the W32/Rbot-AQH worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Service Monitor
|
WinOcx.exe
|
X
|
Added by the W32/Rbot-AQJ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Windows Internet/Server
|
winlogo.exe
|
X
|
Added by the Troj/GrayBrd-AC Trojan.
|
|
Automatic Update Service
|
wuapi.exe
|
X
|
Added by the W32/Codbot-AC worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
Microsoft Update 64 BIT
|
winl32xe.exe
|
X
|
Added by the W32/Rbot-AQO worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
|
|
wininet
|
wininet.exe
|
X
|
Added by the W32/Stubbot-C worm and backdoor Trojan.
|
|
Microsoft Updote
|
wins0cks.exe
|
X
|
Added by the W32/Rbot-ARG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. The file name ... Read More
|
|
WindowsSysBoot
|
winsys.exe
|
X
|
Added by the W32/Rbot-ARJ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Firewall Update System1
|
WinedowsUpdater1.exe
|
X
|
Added by the W32/Rbot-ARU worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Microsoft Update 32
|
winin.exe
|
X
|
Added by the W32/Rbot-ARR worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Microsoft ConfgKeys
|
wurmgrd32.exe
|
X
|
Added by the W32/Rbot-ARX worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
WINDOWS SVC
|
winsvc.exe
|
X
|
Added by the W32.Mytob.KR@mm worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
WINDOWS SYSTEM By FEnR
|
windasz-updote.exe
|
X
|
Added by the W32/Mytob-EZ worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Gerenciamento de arquivos do Windows
|
Winmod32.exe
|
X
|
Added by the Troj/Dloader-WG downloader Trojan.
|
|
Startup Configuration
|
wztoid.exe
|
X
|
Added by the W32/Rbot-ASD worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
WINDOWS ID SYSTEM
|
wID32.exe
|
X
|
Added by the W32/Mytob-FA worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Windows Workstation Service
|
wkssvc.exe
|
X
|
Added by the W32/Sdbot-AED worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
Windows Service Utitity
|
winsrvc.exe
|
X
|
Added by the W32/Rbot-ASI worm. This infection will connect to a remote IRC server and wait for commands to be executed on the infected computer. ... Read More
|
|
virtual-ie
|
winlogi.exe
|
X
|
Malware - detected by Kaspersky antivirus as Trojan-Dropper.Win32.WinAD.h ... Read More
|
|
winlogoff
|
winlogoff.exe
|
X
|
Added by the W32/AGOBOT-TR WORM! ... Read More
|
|
worldantispy
|
worldantispy.exe
|
X
|
WorldAntiSpy, "rogue" spyware remover, installed as part of this_scam ... Read More
|
|
wscsvc.exe
|
wscsvc.exe
|
X
|
Added by a password stealing Banker TROJAN! ... Read More
|
|
micromedia flash update
|
wdfmrg.exe
|
X
|
Added by a variant of the W32/SDBOT WORM! ... Read More
|
|
microsoft command line
|
wincmd.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
upgrade service
|
winupd.exe
|
X
|
Added by the TROJ/TOFGER-U TROJAN! ... Read More
|
|
windows pc
|
winmgr.exe
|
X
|
Added by the W32/BIBOT-A WORM! ... Read More
|
|
windows subsys
|
winload.exe
|
X
|
Added by the NETSPREE.C WORM! ... Read More
|
|
windows updater online
|
winupdatexx.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
winproxy personal
|
WINPROXY.EXE
|
X
|
Added by the SDBOT.BMF WORM! ... Read More
|
|
wintnl
|
wintnl.exe
|
X
|
Added by a variant of the W32.ZOTOB.K WORM! ... Read More
|
|
winzip update
|
WinZip.exe
|
X
|
Added by a variant of the WIN32.RBOT WORM! ... Read More
|
|
_winmain
|
winexec.exe
|
X
|
Malware - detected by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.ts ... Read More
|
|
configuration loader
|
WinHelper.exe
|
X
|
Added by a variant of the AGOBOT/GAOBOT WORM!
|
|
[random name]
|
wuauboot.exe
|
X
|
PurityScan/Clickspring adware. Note - do not confuse with the legitimate wuauboot.exe file, which should not figure in Msconfig/Startup! ... Read More
|
|
KAVPersonal90
|
wscntfy.exe
|
X
|
Added by the Troj/Banker-FZ password-stealing Trojan for certain online Brazilian banks. ... Read More
|
|
WinCRT32
|
wincrt32.exe
|
X
|
Added by the W32/Dogbot-D worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WindowsSysBoot
|
winsysnet.exe
|
X
|
Added by the W32/Tilebot-AF worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Security Accounts Center
|
windowo.exe
|
X
|
Added by the Troj/Bckdr-AWQ Trojan.
|
|
windows drivers32
|
windrvrs32.exe
|
X
|
Added by the W32/Tilebot-AG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WRM CPU driver
|
wrmdrv.sys
|
X
|
Added by the W32/Goldax-B worm.
|
|
Windows UDP Communication
|
wudpcom.exe
|
X
|
Added by the IRC-Mocbot IRC backdoor.
|
|
KernelCheck
|
wscnty.exe
|
X
|
Added by the Troj/LegMir-BE password-stealing Trojan.
|
|
wcsys
|
wcsys.exe
|
X
|
Added by the Troj/Keylog-AP keylogging Trojan.
|
|
Microsoft Update
|
wuamk0032.exe
|
X
|
Added by a variant of the Rbot worm and IRC backdoor.
|
|
WIN ID SYS64
|
w3264.exe
|
X
|
Added by the W32/Mytob-BO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Whitman Software
|
whitsoft.exe
|
X
|
Added by the W32/Rbot-AUB worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Standard Executions Library
|
win32lib.exe
|
X
|
Added by the W32/Rbot-AUK worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Login Folder
|
winzep.exe
|
X
|
Added by the W32/Agobot-TZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WinPWD Manager
|
wpwdmgr.exe
|
X
|
Added by the W32/Rbot-AUT worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Spools SV
|
winsv.exe
|
X
|
Added by the W32/Rbot-AUQ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Corp Updates
|
wupdates.exe
|
X
|
Added by the W32/Rbot-AUU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MsTask
|
wstask32.exe
|
X
|
Added by the W32/Mytob-FE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows Internet Service
|
wininet.exe
|
X
|
Added by the W32/Rbot-AUX worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
ad-aware-6
|
WINDOWSUPDATER.EXE
|
X
|
Added by an unidentified WORM or TROJAN!
|
|
w32pluginsdownloaderxmlhttpselfclearing7520
|
wiper.exe
|
X
|
Added by the Troj/Proxyser-M ... Read More
|
|
Windows update Service
|
wisvcc.exe
|
X
|
Added by the Troj/Orse-G Trojan. This infection also creates the file %System%zlbw.dll. ... Read More
|
|
Update Symantec
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
Symantec Update
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
Update MCafee
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
MCafee Update
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
Update
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
MCafee
|
WinNT.exe
|
X
|
Added by the W32.Vig.C virus.
|
|
wingerver2.0.exe
|
wingerver2.0.exe
|
X
|
Added by the Troj/GrayBrd-AE backdoor Trojan.
|
|
Microsoft Intrenet Explorer
|
wcumrg.exe
|
X
|
Added by the W32/Sdbot-AFD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
RPCserr32g
|
winlogon.exe
|
X
|
Added by the W32/Ritdoor-B backdoor worm.
|
|
Windows Update
|
winupdmon.exe
|
X
|
Added by the W32/Tilebot-AR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Proc993
|
wqxfne.exe
|
X
|
Added by the W32/Ixbot-D worm and IRC backdoor.
|
|
Microsoft Generic Update Manager
|
wupdate.exe
|
X
|
Added by the W32/Rbot-AWC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Win Login
|
winlogin.exe
|
X
|
Added by the W32/Rbot-AWE worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Please do not con ... Read More
|
|
Service System
|
wernell87.exe
|
X
|
Added by the Troj/Bancos-FJ Internet Banking Trojan. If you have this infection you should change the passwords to all your online banking accounts. ... Read More
|
|
WindowsNT
|
winat.exe
|
X
|
Added by the W32/Tilebot-AZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MSWinupd
|
winupd.exe
|
X
|
Added by the Troj/Dloader-YE downloader Trojan.
|
|
WinZap Check
|
winzbp.exe
|
X
|
Added by the W32/Rbot-AWZ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
WNILOGON
|
WNILOGON.exe
|
X
|
Added by the W32/Lewor-M instant messenger worm.
|
|
WINP
|
winmic.exe
|
X
|
Added by the W32/Spybot-EB worm. When started, this infection connects to a remote IRC server where it waits for commands to execute ... Read More
|
|
Microsoft Windows
|
windets.com
|
X
|
Added by the Troj/Flood-EQ backdoor Trojan.
|
|
Windows SSH Client
|
winssh.exe
|
X
|
Added by the W32/Rbot-AXC worm. When started, this infection connects to a remote IRC server where it waits for commands to execute ... Read More
|
|
Windows Archiver
|
windat.exe
|
X
|
Added by the W32/Tilebot-BA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
wintroters
|
wintroters.exe
|
X
|
Added by the Troj/GrayBrd-AJ backdoor Trojan. This infection also creates the file c:\windows\wintroters.DLL. ... Read More
|
|
System Windos
|
winsyscfg.exe
|
X
|
Added by a Mytob mass-mailing worm and IRC backdoor variant.
|
|
Microsoft Update 32
|
wuinit.exe
|
X
|
Added by the W32/Agobot-UE worm and IRC backdoor.
|
|
(default)
|
WINLOGON.EXE
|
X
|
Added by the Troj/Delf-LP information stealing Trojan.
|
|
Windows 32 Bit
|
WinVid32.exe
|
X
|
Added by the W32/Tilebot-BH worm and IRC backdoor. This infection also installs the rootkit Rdriv.sys. ... Read More
|
|
Blah Service
|
win32.exe
|
X
|
Added by the W32/Rbot-AXO worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Winlogun
|
winlogin.exe
|
X
|
Added by the W32/P2Load-C worm.
|
|
[not used]
|
winupdate.exe
|
X
|
Added by the Troj/Agent-FD Trojan. This infection also creates the files c:\windows\system32\Filesys.ini and c:\windows\system32\ntfilesys.ini.
|
|
webcam
|
webcam.exe
|
X
|
Added by the Troj/Monad-A backdoor Trojan.
|
|
windowsnetwork
|
winkernel32.exe
|
X
|
Added by the W32/Tilebot-BM worm and IRC backdoor. This infection will also install the rdriv.sys rootkit. ... Read More
|
|
WINDOWS SYSTEM
|
Win32IMAPSVR.exe
|
X
|
Added by the W32/Mytob-FQ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Microsoft Windows Service Pack
|
winspkn.exe
|
X
|
Added by the W32/Rbot-AYD worm and IRC backdoor.
|
|
winskype
|
winskype.exe
|
X
|
Added by the Troj/Brogger-C information-stealing Trojan.
|
|
Microsoft Windows DVR
|
windvr.exe
|
X
|
Added by the W32/Rbot-AXD worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
MS Dns Service
|
wincntrl.exe
|
X
|
Added by the W32/Tilebot-BR worm and IRC backdoor.
|
|
MSN Service Updates
|
winproc.exe
|
X
|
Added by the W32/Kelvir-BB instant messenger worm.
|
|
german.exe
|
winsystems.exe
|
X
|
Added by the Troj/BagleDl-AE Trojan downloader.
|
|
Erfgddfk
|
wind2ll2.exe
|
X
|
Added by the WORM_BAGLE.BX mass-mailing worm.
|
|
Windows MSX drivers
|
winmsx.exe
|
X
|
Added by the W32/Rbot-AYG worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Still Image Instrumenta
|
WinMgnt.exe
|
X
|
Added by the Troj/Feutel-AP backdoor Trojan. This infection also creates the files c:\windows\WinMgnt.DLL, c:\windows\WinMgntKey.DLL, and c:\windows\ ... Read More
|
|
System Updates
|
wmkl.exe
|
X
|
Added by the W32/Rbot-AYJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
german.exe
|
wintems.exe
|
X
|
Added by the TROJ_MGLIEDER.AA Trojan.
|
|
MStask
|
win2sys.dll
|
X
|
Added by the Troj/Dropper-BS dropper Trojan.
|
|
Windows Time Sync
|
wstime.exe
|
X
|
Added by the W32/Rbot-AZA worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Windows System32
|
winsys32.exe
|
X
|
Added by the W32/Sdbot-AFW worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. It also creates ... Read More
|
|
key2
|
winlog.exe
|
X
|
Added by the Trojan.Lodav.C Trojan that lowers security settings on your computer. ... Read More
|
|
(7B484C2F-AEE6-4e29-B894-EDEAA5DAF000)
|
winunits.dll
|
X
|
Added by the Troj/Lineage-BN password-stealing Trojan for the online game Lineage. ... Read More
|
|
getwin
|
winB_.exe
|
X
|
Added by the Troj/Banker-HS password-stealing Trojan.
|
|
system
|
wiinlogon.exe
|
X
|
Added by the W32/Rbot-AVG ... Read More
|
|
Windows DLL Verifier
|
windlls.exe
|
X
|
Added by the W32/Rbot-AZQ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
Network ADSL Server
|
woaisaomm.exe
|
X
|
Added by the Troj/GrayBrd-AQ backdoor Trojan.
|
|
win32debug
|
win32debug.exe
|
X
|
Added by the W32.Gudeb worm.
|
|
MSWinupdate
|
winupdate.exe
|
X
|
Added by the Troj/Dloadr-AAW Trojan.
|
|
Windows Security
|
winscure.exe
|
X
|
Added by the W32/Rbot-BAF worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
(04ED35B6-9A10-4EB3-9C1E-66B2CFA5AC77)
|
windir32.dll
|
X
|
Added by the Troj/Lineage-JA Trojan.
|
|
(32A43994-9CDC-4633-A2F4-3152097D404D)
|
winme32.dll
|
X
|
Added by the Troj/Lineage-MO password-stealing Trojan for the online game Lineage. ... Read More
|
|
(3B354F63-A696-424c-9E88-7F6BDFBA5CA5)
|
winhosts.dll
|
X
|
Added by the Troj/Lineage-AH password-stealing Trojan for the online games Lineage. ... Read More
|
|
winsupdatesysmngr64
|
winsys64mnger.exe
|
X
|
Added by the W32/Rbot-BAG worm and IRC backdoor.
|
|
Woods Inc
|
wcmd.exe
|
X
|
Added by the Troj/KillFil-O Trojan.
|
|
KernelFaultCheck
|
winbin.exe
|
X
|
Added by the Troj/Dloadr-AAX downloader Trojan.
|
|
NetworkDiskRun
|
winzsq.exe
|
X
|
Added by the Troj/Stinx-G worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
|
|
UDP Packet Correction
|
Wnlogon.sys
|
X
|
Identified as part of a variant of Trojan.PWS.Egold. This file will usually be hidden by the rootkit logon032.dll. ... Read More
|
|
WinMan
|
winmngr.exe
|
X
|
Added by the W32/Tilebot-BY worm and IRC backdoor.
|
|
MicroSoft Windows Command
|
wincmdXP.exe
|
X
|
Added by the W32/Tilebot-CC worm and IRC backdoor.
|
|
Windows Config Loader
|
WINNITE.EXE
|
X
|
Added by the Troj/Wisdoor-A backdoor Trojan.
|
|
WinHound
|
WinHound.exe
|
X
|
Rogue antispyware/AV app which issues fake virus alert messages.
|
|
winboot
|
winboot.exe
|
X
|
Added by the Troj/Banload-W Trojan.
|
|
wnxpupdate
|
wcupshell.exe
|
X
|
Added by the W32/Combra-I mass-mailing worm.
|
|
WinMedia32
|
winmedia32.exe
|
X
|
Added by the Troj/Agent-UF Trojan. This infection also creates the file %Temp%removeMe290233.bat. ... Read More
|
|
wpds.exe
|
wnrot.exe
|
X
|
Added by the TROJ_BAGLE.CC Trojan.
|
|
Winlogo
|
Winlogo.EXE
|
X
|
Added by the Troj/GrayBir-CQ backdoor Trojan.
|
|
SonudMan
|
WNILOGON.exe
|
X
|
Added by the W32/Lewor-AA worm.
|
|
FireFly
|
WinDeBug.exe
|
X
|
Added by the Troj/FireFly-A Trojan.
|
|
ws_d
|
ws32.exe
|
X
|
Added by the Troj/LegMir-RL password-stealing Trojan. This infection also creates the file C:\Windows\win32.dll. ... Read More
|
|
winctrl
|
winupgrm.exe
|
X
|
Added by the Troj/Kbroy-A keylogging Trojan.
|
|
DRam prosessor
|
WindowsUpdate.exe
|
X
|
Added by the W32/Rbot-BBZ worm and IRC backdoor.
|
|
WindowsNod
|
winnod.exe
|
X
|
Added by the W32/Tilebot-CG worm and IRC backdoor.
|
|
wpconfigs
|
wpconfigs.exe
|
X
|
Added by the Troj/Sdbot-AGX backdoor Trojan.
|
|
Windows Application Extension
|
W32AppSrv.exe
|
X
|
Added by the Troj/GrayBrd-AX backdoor Trojan.
|
|
DRam prosessor
|
winupl.exe
|
X
|
Added by the W32/Rbot-BCQ worm and IRC backdoor.
|
|
Service Monitor
|
winxpser.exe
|
X
|
Added by the W32/Rbot-BDF worm and IRC backdoor.
|
|
{5EE30F07-BB1C-4067-9BFB-7D5B11389506}
|
winewtpas.dll
|
X
|
Added by the Troj/Lineage-PO password-stealing Trojan for the online game Lineage. ... Read More
|
|
winIogom
|
winIogom.exe
|
X
|
Added by the Troj/Bancban-ML Internet banking Trojan.
|
|
(44B40E3F-E91C-4ae3-89A6-1D1048A162A6)
|
wintt1.dll
|
X
|
Added by the Troj/Lineage-KX password-stealing Trojan for the online game Lineage. ... Read More
|
|
startkey
|
win32i.exe
|
X
|
Added by the Troj/Bifrose-R Trojan.
|
|
Windows Workstation Service
|
wksssv.exe
|
X
|
Added by the W32/Tibick-B P2P worm and IRC backdoor Trojan.
|
|
KernelCheck
|
winbery.exe
|
X
|
Added by the Troj/LegMir-CG password stealing Trojan for the online game Legend of Mir. ... Read More
|
|
Windows RPC Services
|
winrpc.exe
|
X
|
Added by the W32/Tilebot-CR worm and IRC backdoor.
|
|
winsfc
|
winsfc.exe
|
X
|
Added by the W32.Wisfc worm.
|
|
WUpdates
|
WUpdates.exe
|
X
|
Added by the Trojan.Swepdat Trojan.
|
|
WEP Manager for NT
|
webpmgr.exe
|
X
|
Added by the WORM_QQPASS.A worm.
|
|
Windows SRT Client
|
winsrt.exe
|
X
|
Added by the W32/Rbot-BFR worm and IRC backdoor.
|
|
MICROSFT MX UPDATE SUPPORT
|
winmx32.EXE
|
X
|
Added by the W32/Rbot-BFU worm and IRC backdoor.
|
|
Winsock32driver
|
win32scs.exe
|
X
|
Added by the Troj/Hackarmy-C backdoor.
|
|
{A2C8F6B1-7C2A-3D1C-A3C6-A1FDA113B43F}
|
wbeconm.dll
|
X
|
Added by the Adware.TopAV which replaces the Windows wallpaper with a fake virus alert message containing links to topantivirus.biz or Spyaxe and issu ... Read More
|
|
ASP.NET State Service
|
winupgrad.exe
|
X
|
Added by the Troj/Banload-AJ Trojan.
|
|
Windows Services32
|
winsvc32.exe
|
X
|
Added by the W32/Mytob-GK worm and IRC backdoor.
|
|
global startup
|
WinDash.EXE
|
X
|
Reported by Kaspersky Anti-Virus as IM-Worm.Win32.VB.q, may be related to the W32/Attech-C ... Read More
|
|
Microsoft Update
|
windows32.exe
|
X
|
Added by the W32/Rbot-BHQ worm and IRC backdoor.
|
|
Microsoft Update Manager
|
wupdate.exe
|
X
|
Added by the W32/Rbot-BIA worm and IRC backdoor.
|
|
windows driver manager
|
windriv32.exe
|
X
|
Added by the W32/Tilebot-CY worm and IRC backdoor.
|
|
ImagePath
|
win32ssr.exe
|
X
|
Added by the W32/Tilebot-CW worm and IRC backdoor.
|
|
Microsoft Redirect
|
winred.exe
|
X
|
Added by the Troj/Banker-VK banking Trojan.
|
|
[not used]
|
winspols.scr
|
X
|
Added by the Troj/Fusion-B keylogging backdoor Trojan.
|
|
Mlcr0s0ftf DDEs C0ntr0i
|
WAed.pif
|
X
|
Added by the W32/Rbot-BJW worm and IRC backdoor.
|
|
Winzip Application
|
winzip81.exe
|
X
|
Added by the W32/Rbot-BJY worm and IRC backdoor.
|
|
Windows live Support
|
wlmsngr.exe
|
X
|
Added by the W32/Rbot-BKL worm and IRC backdoor.
|
|
ctfmon
|
WinUP.exe
|
X
|
Added by the Troj/Banker-VV password/information-stealing Trojan for online banks. ... Read More
|
|
GrayPigeon_Hacker.com.cn
|
windows.exe
|
X
|
Added by the Troj/GrayBrd-BA backdoor Trojan.
|
|
Windows configuration
|
wsconfig.exe
|
X
|
An Agobot worm and IRC backdoor variant.
|
|
{C1A2FDA2-2A5B-2C8A-F2A2-BA2DB3A2C31C}
|
wiatwain.dll
|
X
|
Added by a rogue antispyware program who's affiliates install files that replaces the Windows wallpaper with a fake virus alert message and issues fak ... Read More
|
|
mspp system update 64
|
wiaadmgr.exe
|
X
|
Reported by Kaspersky Anti-Virus as Trojan-Proxy.Win32.Ranky.gen.
|
|
[Various Names]
|
WinInitDll.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
WTFCTF.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
wormexe.exe
|
X
|
Part of the Wareout infection as described here.
|
|
[Various Names]
|
WhatsNewBot.exe
|
X
|
Part of the Wareout infection as described here.
|
|
WINDOWS SYSTEM 32
|
windowsupdated32.exe
|
X
|
Added by the WORM_MYTOB.NS worm and IRC backdoor.
|
|
bob
|
winuping.exe
|
X
|
Added by the Troj/Banload-IU Trojan.
|
|
System
|
winsock32.dll
|
X
|
Added by the Troj/Agent-SH Trojan.
|
|
Microsoft Win Update
|
WinUP.exe
|
X
|
Added by the W32/Rbot-BPR worm and IRC backdoor.
|
|
WINDOWS INIT
|
wininit.exe
|
X
|
Added by the W32/Zotob-K worm and IRC backdoor. Please note that this infection should not be confused with the legitimate Windows file located at %Sy ... Read More
|
|
Windows Client/Server Runtime Server Subsystem
|
wcsrss.exe
|
X
|
Added by the W32/Tilebot-DA worm and IRC backdoor.
|
|
wkssvc
|
wkssvc.exe
|
X
|
Added by the W32/Sdbot-AOR worm and IRC backdoor.
|
|
Win32Sr
|
win32ssr.exe
|
X
|
Added by the W32/Sdbot-AOT worm and IRC backdoor.
|
|
Platform SDK Enviroment
|
win32ssr.exe
|
X
|
Added by the W32/Rbot-BSD worm and IRC backdoor.
|
|
Microsoft Windows Logon Process
|
winlogon.exe
|
X
|
Added by the Troj/Proxyser-R proxy Trojan. This malware is also commonly bundled with rogue anti-spyware program. ... Read More
|
|
winsysban
|
winsysban.exe
|
X
|
Added by the Troj/Clicker-CD Trojan.
|
|
winsysupd
|
winsysupd.exe
|
X
|
Added by the Troj/StartPa-NI Internet Explorer hijacker.
|
|
pro
|
winstall.exe
|
X
|
Added by the Troj/Spywad-V Trojan.
|
|
winsrv
|
winntui.exe
|
X
|
Added by the Troj/Netsnake-M password-stealing Trojan.
|
|
Windows Update
|
wrundll2.exe
|
X
|
Added by the Troj/Bdoor-VK backdoor Trojan.
|
|
Windows Secure Update
|
WinUpdate.exe
|
X
|
Added by the Troj/Banker-AAO banking Trojan.
|
|
DsplObjects
|
windspl.exe
|
X
|
Added by the W32/Bagle-CF mass-mailing worm and backdoor Trojan.
|
|
Microsoft Windows System
|
Windows.exe
|
X
|
Added by the W32/Zotob-L mass-mailing worm and IRC backdoor.
|
|
WinMedia
|
wwwloader.exe
|
X
|
Added by the Troj/Dloadr-KB Trojan.
|
|
firefox startup drivers
|
wuaclt.exe
|
X
|
Added by the RBOT.BYX ... Read More
|
|
mswindows drt drivers
|
wsdrt32.exe
|
X
|
Added by the RBOT.ALT ... Read More
|
|
windows media loader
|
wmloader.exe
|
X
|
Added by the W32.HLLW.Gaobot.gen WORM! ... Read More
|
|
DsplObjects
|
windspl.exe
|
X
|
Added by the W32/Bagle-CK mass-mailing worm and backdoor Trojan.
|
|
Compaq Service Drivers
|
winsvc.exe
|
X
|
Added by the W32/Sdbot-AGD worm and IRC backdoor.
|
|
Microsoft Plug n Play
|
win32pnp.exe
|
X
|
Added by the W32/Mytob-GW worm and IRC backdoor.
|
|
wintjv32
|
wintjv32.dll
|
X
|
Added by the Troj/Bckdr-AOI backdoor Trojan.
|
|
Windows USB Service
|
wsftpsrv32.exe
|
X
|
Added by the W32/Rbot-CDV worm and IRC backdoor.
|
|
WinCon (wincon net driver)
|
wincon.exe
|
X
|
Added by the W32/Sdbot-DJB worm and IRC backdoor.
|
|
WinLoad
|
win.exe
|
X
|
Added by the Troj/Asb-A backdoor Trojan.
|
|
WebShell
|
webshell.dll
|
X
|
Added by the Backdoor.Bebshell Trojan horse with backdoor capabilities.
|
|
useful-soft
|
wartsrv.exe
|
X
|
Added by the Troj/StartPa-WB IE startpage hijacker. This infection hijackthis your startpage to www.teengb.com. ... Read More
|
|
winshell
|
windll32lib.exe
|
X
|
Added by the W32/Bagle-DM mass-mailing and P2P worm.
|
|
Windows Service
|
windowz.exe
|
X
|
Added by the W32/Sdbot-AYI worm and IRC backdoor. This infection utilizes stealth rootkit technology to protect itself via the c:\Windows\System32\ms ... Read More
|
|
Sygate Personal Firewall
|
wins.exe
|
X
|
Added by the W32/Rbot-DZW worm and IRC backdoor.
|
|
win_shell
|
win32lib.exe
|
X
|
Added by the W32/Bagle-DO mass-mailing and peer to peer worm.
|
|
Windows SRS Client
|
winsrs.exe
|
X
|
Added by the W32/Rbot-BXQ worm and IRC backdoor. This infection also modifies your C:\Windows\system32\drivers\etc\hosts file so that you can not con ... Read More
|
|
security centre
|
wscntify.exe
|
X
|
Added by the W32.Spybot.AFEW worm and IRC backdoor.
|
|
wmsger
|
wmsger.exe
|
X
|
Added by the Troj/QQPass-EP Trojan.
|
|
Winspector
|
winspector.lnk
|
X
|
Added by the TROJ_MULDROP.GP dropper Trojan. This link corresponds to the file C:\Windows\System32\drivers\shellz\winspector.exe. ... Read More
|
|
Microsoft Command C
|
winhost32.exe
|
X
|
Added by the W32/Sdbot-BBA worm and IRC backdoor.
|
|
winsystems25
|
winsystems.exe
|
X
|
Added by the W32/Rbot-CNZ worm and IRC backdoor.
|
|
Windows Workstation Service [5.1-2600]
|
windrm.exe
|
X
|
Added by the W32/Rbot-CNY worm and IRC backdoor. This infection also utilizes the rootkit msdirectx.sys to hide itself and associated registry entrie ... Read More
|
|
WindowsShell
|
winsrc32.exe
|
X
|
Added by the Troj/Bancos-RT Internet banking Trojan.
|
|
mc
|
WINTRIM.EXE
|
X
|
Added by the WINTRIM_A TROJAN! ... Read More
|
|
windows loader
|
winServices.pif
|
X
|
Reported by Kaspersky Anti-Virus as Spy.Win32.Cardspy.d TROJAN!
|
|
winfixer helper
|
wfxcwr.exe
|
X
|
WinFixer web installer - Winfixer is "Foistware", pretending to be system optimization, protection and recovery software - stealth installed, generall ... Read More
|
|
NtDIC(ntdic)
|
winz0r.exe
|
X
|
Added by the W32/Tilebot-D worm and IRC backdoor.
|
|
winopn32
|
winopn32.dll
|
X
|
Identified by Kaspersky antivirus as Trojan-Downloader.Win32.Small.cml.
|
|
WMedia16
|
wmedia16.exe
|
X
|
Added by the WORM_MYDOOM.BK worm and IRC backdoor. This infection also has rootkit capabilities which hook into the following APIs in order to hide it ... Read More
|
|
wins(WINS)
|
winscntrl.exe
|
X
|
Added by the W32/Sdbot-BCJ worm and IRC backdoor.
|
|
Windows Media Player
|
winmedia.exe
|
X
|
Added by the Troj/Banker-AVX password-stealing Trojan.
|
|
Microsotufed Update 32
|
windinit.exe
|
X
|
Added by the W32/Rbot-CTJ worm and IRC backdoor.
|
|
winsupdater
|
winsupdater.exe
|
X
|
Added by the W32/Alcra- P2P worm.
|
|
Windows Loader
|
winBoot_INI.pif
|
X
|
Added by the PWSteal.Marlap information-stealing Trojan.
|
|
Windows System Tray
|
wintray.exe
|
X
|
Added by the W32/Tilebot-EH worm and IRC backdoor.
|
|
windows updaters
|
winupdats.exe
|
X
|
Added by the W32/Spybot-IS worm and IRC backdoor. This infections spreads to computers already infected with Troj Sub7 and Troj/Kuang. ... Read More
|
|
winyvo32
|
winyvo32.dll
|
X
|
Added by the Troj/Bckdr-GIR Trojan.
|
|
Win32 Kernel Update
|
win32update.exe
|
X
|
Added by the Troj/Proxy-BS backdoor Trojan.
|
|
MICROSOFT WINDOWS SYSTEM 2
|
winds.exe
|
X
|
Added by the WORM_MYTOB.OD mass-mailing worm and IRC backdoor.
|
|
WMI-Service
|
wmiaqsrv.exe
|
X
|
Added by the Troj/Mdrop-AIA multi-dropper backdoor Trojan.
|
|
winm64 TCP
|
winm64.sys
|
X
|
Troj/Haxdor-Gen rootkit utilized by the Troj/Haxdoor family.
|
|
winm TCP
|
winm32.sys
|
X
|
Troj/Haxdor-Gen rootkit utilized by the Troj/Haxdoor family.
|
|
winm32
|
winm32.dll
|
X
|
Added by the Troj/Haxdoor-BQ backdoor Trojan. This infection utilizes the winm64.sys and the winm32.sys rootkit. ... Read More
|
|
Windows Update Servers
|
winupdate.exe
|
X
|
Added by the Troj/Dloadr-HAD Trojan downloader.
|
|
win24
|
win24.exe
|
X
|
Added by the WORM_KIDALA.A network worm.
|
|
W32Time
|
w32time.exe
|
X
|
Added by the Troj/Bckdr-HLO backdoor Trojan. If there is another service called W32Time it will replace it. ... Read More
|
|
WMedia32
|
wmedia32.exe
|
X
|
Added by the PWSteal.Banger password-stealing Trojan.
|
|
[not used]
|
wmiadapt.exe
|
X
|
Added by the Troj/Small-BNQ backdoor Trojan.
|
|
WINDOWS
|
winhlpapi.exe
|
X
|
Added by the W32/Mytob-QG mass-mailing worm and IRC backdoor.
|
|
wxtwdx
|
wxtwdx.dll
|
X
|
Added by the Troj/Haxdoor-IJ Trojan backdoor.
|
|
wxtwdu PNP DRIVER
|
wxtwdu.sys
|
X
|
Added by the Troj/Haxdor-Gen rootkit.
|
|
wxtw PNP DRIVER
|
wxtwdx.sys
|
X
|
Added by the Troj/Haxdor-Gen rootkit.
|
|
Windows Firewall Exception List Management Subsystem
|
wfwmss.exe
|
X
|
Added by the Troj/Ranck-EH HTTP proxy server Trojan.
|
|
Windows Disk Defragmenter
|
wpabaln32.exe
|
X
|
Added by the Troj/Bancos-AEK Internet banking Trojan. If you are infected with this Trojan it is advised that you change all your online banking passw ... Read More
|
|
Windows modez Verifier
|
Windows-.exe
|
X
|
Added by the W32/Rbot-DIO worm and IRC backdoor.
|
|
WINDOWS SYSTEM
|
wupdate.exe
|
X
|
Added by the W32/Mytob-HT mass-mailing worm and IRC backdoor.
|
|
ZPoint
|
winmuse.exe
|
X
|
Added by the Troj/Dloadr-VJ Trojan.
|
|
Windows Update
|
Windows Update.exe
|
X
|
Added by the Troj/Banker-BIQ Trojan.
|
|
winconfig.exe
|
win32dll.exe
|
X
|
Added by the W32/Kassbot-P worm and IRC backdoor.
|
|
wincqt32
|
wincqt32.dll
|
X
|
Added by the Troj/Bckdr-JCK backdoor Trojan.
|
|
[not used]
|
WINGUIS.DLL
|
X
|
Added by the Troj/Oscor-B backdoor Trojan.
|
|
windows
|
WindowsMediaPlayer.exe
|
X
|
Added by the Backdoor.Sekorbdal backdoor Trojan.
|
|
Windows Fix Services
|
winfix32.exe
|
X
|
Added by the W32/Tilebot-EW worm and IRC backdoor.
|
|
winowl32
|
winowl32.dll
|
X
|
Added by the Trojan.Nebuler Trojan.
|
|
msn
|
winlogon.exe
|
X
|
Added by the BKDR_PROSTI.A backdoor. This infection should not be confused with the legitimate microsoft file C:\Windows\System32\winlogon.exe. ... Read More
|
|
KernelCheck
|
winmer.exe
|
X
|
Added by the Troj/LegMir-XG password-stealing Trojan for the online game the Legends of Mir. ... Read More
|
|
Windows Core Kernel Update
|
win32bootcfg.exe
|
X
|
Added by the Troj/Ranck-EL proxy Trojan.
|
|
{0c7416f0-dd23-420f-97f5-aae352ea2bf1}
|
wfkduei.dll
|
X
|
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
|
|
{0976BE78-EA53-4DD6-91E6-E6175940032B}
|
winstyle32.dll
|
X
|
Identified by Kaspersky Antivirus as a variant of Trojan-Downloader.Win32.Delf.qq. ... Read More
|
|
Ldr
|
winnt.exe
|
X
|
Added by the TROJ_HARNIG.EO Trojan.
|
|
{E22DC74F-B084-F0F8-1BCE-00C8AF63188D}
|
winlogon_patchv1.dll
|
X
|
Added by the Troj/BeastPWS-C keylogging Trojan.
|
|
Navegate
|
wisterd.exe
|
X
|
Added by the Troj/Banker-BOS spyware Trojan
|
|
WinXP
|
win.exe
|
X
|
Added by the Troj/Gaduka-G backdoor Trojan.
|
|
Winconfig
|
Windows Update.exe
|
X
|
Added by the Troj/Banker-BUM information-stealing Trojan for online banking sites. If you are infected with this you should immediately change all yo ... Read More
|
|
{24E27EA9-FCF3-444F-BD80-20543BA5D946}
|
wschtm35.dll
|
X
|
A program in the TrustInCash malware suite, which includes Trust Cleaner, that issues fake security notification on your desktop and when you click on ... Read More
|
|
WinetWork
|
WinetWork.exe
|
X
|
Added by the Troj/Banker-BQQ Internet banking Trojan.
|
|
Winsock driver
|
winupdate32.exe
|
X
|
Added by the Troj/Spybot-JZ i worm and IRC backdoor.
|
|
Win32 Kernel Update
|
win32host.exe
|
X
|
Added by the W32/Tilebot-FE worm and IRC backdoor.
|
|
winvex32
|
winvex32.dll
|
X
|
Added by the Troj/Nebuler-B Trojan.
|
|
[not used]
|
win_sk6.dll
|
X
|
Added by the Troj/Small-BVX Trojan.
|
|
[not used]
|
win_7p5.dll
|
X
|
Added by the Troj/Small-BWA Trojan.
|
|
axel
|
wam.exe
|
X
|
Added by the W32/Melo-E worm.
|
|
Microsoft wd
|
windmrg.exe
|
X
|
Added by the W32/Rbot-EEF worm and IRC backdoor.
|
|
Windows Update Firewall System
|
winmsfw.exe
|
X
|
Added by the W32/Rbot-EEO worm and IRC backdoor.
|
|
BLUETOOTH IPv4 service
|
wnlogow.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
WinZip
|
wzip32.exe
|
X
|
Added by the Infostealer.Orcu information-stealing Trojan. This infection steals confidential info such as banking information. ... Read More
|
|
SadNet
|
winlogon.cab.exe
|
X
|
Added by the WORM_NETSAD.A worm.
|
|
win32
|
w32word.exe
|
X
|
Added by the Trojan.Gared Trojan that overwrites or deletes Word documents.
|
|
Windows Genuine Advantage Validation Notification
|
wgavn.exe
|
X
|
Identified as W32/Cuebot-K instant messaging worm and IRC backdoor.
|
|
Microsoft web update
|
webmsn.exe
|
X
|
Added by the W32/Rbot-EMQ worm and IRC backdoor.
|
|
system32
|
wcntfy.exe
|
X
|
Added by the Troj/Banker-CSY Internet banking Trojan. If you have this infection you should immediately change all of your online banking account inf ... Read More
|
|
SadNet3
|
WinServicces.cab.bak.exe
|
X
|
Added by the W32.Amirecivel.F@mm mass-mailing worm.
|
|
WinQak32
|
WinQak32.exe
|
X
|
Added by the W32.HLLW.Ducktest worm.
|
|
winbeans
|
winbeans.exe
|
X
|
Added by the W32/Sdbot-BZB worm and IRC backdoor.
|
|
Windows Server AutoUpdate
|
Winupdate.exe
|
X
|
Added by the Troj/GrayBrd-CF backdoor Trojan.
|
|
GrayPigeon_Hacker.com.cn
|
windows update.exe
|
X
|
Added by the Troj/GrayBrd-CE backdoor Trojan.
|
|
SystemDriver
|
windrv.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Clicker.Win32.Delf.fj.
|
|
ADriver
|
windrv.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Clicker.Win32.Delf.fj.
|
|
CDriver
|
windrv.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Clicker.Win32.Delf.fj.
|
|
DDriver
|
windrv.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Clicker.Win32.Delf.fj.
|
|
FDriver
|
windrv.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Clicker.Win32.Delf.fj.
|
|
atisrc2
|
winfind.exe
|
X
|
Adult content dialler - see here . This has to be cleared at the same time as MSStartOptimizer (WINUPD.EXE), mmxrun (msosa.exe) and RegCompres (REGCP ... Read More
|
|
ni.uwa6p_0001_n69m0303
|
WinAntiVirusPro2006Installer[1].exe
|
X
|
Related to the WinAntivirus programs: bogus, stealth installed "Spyware remover" - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products ... Read More
|
|
ni.uwa6p_0001_n56m1001
|
WinAntiVirusPro2006Installer.exe
|
X
|
Related to the WinAntivirus programs: bogus, stealth installed "Spyware remover" - see the SpywareWarrior_List of Rogue/Suspect Anti-Spyware Products ... Read More
|
|
windows performance monitor
|
wmscupd.exe
|
X
|
Added by Ircbot_Gen WORM! Note: located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) ... Read More
|
|
windows clean-up pro
|
WINDOWS CLEAN-UP PRO.Exe
|
X
|
WINDOWS CLEAN-UP PRO Rogue anti-spyware program. ... Read More
|
|
winrnt32
|
winrnt32.dll
|
X
|
Added by the Troj/Nebuler-C Trojan. Troj/Nebuler-C gathers details relating to dialup services and sends collected
information to a remote site ... Read More
|
|
Windows Decrypt manager
|
wincrypt32.exe
|
X
|
Added by the W32/Tilebot-GC worm and IRC backdoor.
|
|
winwxj32
|
winwxj32.dll
|
X
|
Added by the Troj/Small-DYN Trojan.
|
|
DSS
|
winoscnfg.exe
|
X
|
Added by the HTTPBruteForcer hacking utility.
|
|
winjne32
|
winjne32.dll
|
X
|
Added by the Troj/Agent-CIK Trojan Trojan.
|
|
wdmcert
|
winsdrv.exe
|
X
|
Added by the Troj/Dloadr-AKP Trojan.
|
|
win***32
|
win***32.dll
|
X
|
Added by the Trojan.Nebuler Trojan. Trojan.Nebuler is a Trojan horse that attempts to download and execute files from remote sites. It also sends info ... Read More
|
|
Microsoft DLL Verifier
|
wns.exe
|
X
|
Added by the W32/Spybot-LA worm and IRC backdoor.
|
|
SOUNDM
|
winsmd.exe
|
X
|
Added by the Troj/Wlook-B information stealing Trojan.
|
|
<not used>
|
win_ak.dll
|
X
|
Added by the Troj/Foghorn-A downloading Trojan.
|
|
startkey
|
winampXP.exe
|
X
|
Added by the Troj/Bifrose-OY backdoor Trojan.
|
|
{B212D577-05B7-4963-911E-4A8588160DFA}
|
winstyle3.dll
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Downloader.Win32.Delf.h.
|
|
wndtx1
|
wndtx1.dll
|
X
|
Added by a variant of the Goldun Trojan. This infection utilizes the ipudpb2.sys rootkit to hide itself. ... Read More
|
|
winMem
|
winMem.exe
|
X
|
Added by the W32.Hocgaly.A@mm worm.
|
|
[not used]
|
winvsp.exe
|
X
|
Added by the Troj/Paproxy-C Trojan.
|
|
WinampPlugin
|
winampa.exe
|
X
|
Added by the W32/Sdbot-CNF worm and IRC backdoor.
|
|
win32 socket
|
win325b.exe
|
X
|
Added by the W32/Tilebot-GE worm and IRC backdoor.
|
|
winform
|
winform.exe
|
X
|
Added by the Troj/PWS-ALB password-stealing Trojan.
|
|
WindowsMessenger
|
win32boot.exe
|
X
|
Added by the W32/Tilebot-GF worm and backdoor Trojan.
|
|
Windows Updater
|
win64tyt.exe
|
X
|
Added by the W32/Sdbot-CNH worm and IRC backdoor.
|
|
Windows Genuine Advantage Registration Service
|
wgareg.exe
|
X
|
Added by the W32/Cuebot-L worm and IRC backdoor.
|
|
MS Service Drivers
|
winscv.exe
|
X
|
Added by the W32/Sdbot-COG worm and IRC backdoor.
|
|
Windows Genuine Advantage Validation Monitor
|
wgavm.exe
|
X
|
Added by the W32/Cuebot-M worm and IRC backdoor.
|
|
Fire Wall services
|
wnlmzsfhobi.exe
|
X
|
Added by the W32/IRCBot-QY worm and IRC backdoor.
|
|
Torjan Program
|
WINLOGON.EXE
|
X
|
Added by the Troj/WoW-EA password stealing Trojan targetting of the World of Warcraft online computer game. This infection should not be confused with ... Read More
|
|
wsass32
|
wsass32.exe
|
X
|
Added by the Troj/Bankem-V password stealing Trojan.
|
|
Microsoft Security Process
|
wininit.exe
|
X
|
Added by the W32/Rbot-FKM worm and IRC backdoor. Please note that this infection should not be confused with the legitimate Windows file located at %S ... Read More
|
|
Microsoft Winsock32 System
|
winsock32.exe
|
X
|
Added by the W32.Spybot.AKKC worm and IRC backdoor.
|
|
Ms Java for Windows NT
|
WunosJava.exe
|
X
|
Added by the WORM_RANDEX.AM network worm.
|
|
MS Java Service Wrapper Windows NT & XP
|
wrapper.exe
|
X
|
Added by the W32/Vanebot-D worm and IRC backdoor.
|
|
nvchost
|
winlogon.exe
|
X
|
Added by the Troj/Klone-J Trojan. This infection should not be confused with the legitimate file C:\Windows\System32\winlogon.exe. ... Read More
|
|
winxtx32
|
winxtx32.dll
|
X
|
Added by the Troj/Nebuler-D Trojan. Troj/Nebuler-D gathers details relating to dialup services and sends collected information to a remote site via HT ... Read More
|
|
Windows Kernel System Service
|
wkssvr.exe
|
X
|
Added by the W32/Rbot-FLL worm and IRC backdoor. W32/Rbot-FLL spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Microsoft Corporation
|
wordpad.exe
|
X
|
Added by the W32/Tilebot-GL worm and IRC backdoor. This infection should not be confused with the legitimate file C:\Program Files\Windows NT\Accessor ... Read More
|
|
Ms Update WinServices NT/XP
|
winservnt32.exe
|
X
|
Added by the W32/Vanebot-G worm. W32/Vanebot-G spreads to other network computers by exploiting common buffer overflow vulnerabilities, including: SRV ... Read More
|
|
Mgsgi service
|
wkzfn.exe
|
X
|
Added by the W32/Agobot-AHL worm and IRC backdoor.
|
|
Windows Socket System Service
|
wksrvs.exe
|
X
|
Added by the Troj/IRCBot-RC worm and IRC backdoor Trojan.
|
|
winnok32
|
winnok32.dll
|
X
|
Added by the Troj/Nebuler-F Spyware Trojan. Troj/Nebuler-F gathers details relating to dialup services and sends collected information to a remote sit ... Read More
|
|
Windows Sound Verifier
|
WinIp32.exe
|
X
|
Added by the W32/Rbot-FMO worm and IRC backdoor.
W32/Rbot-FMO runs continuously in the background, providing a backdoor server
w ... Read More
|
|
winafg32
|
winafg32.dll
|
X
|
Added by the Troj/Nebuler-G Trojan.
|
|
winsis32
|
winsis32.dll
|
X
|
Added by the Troj/Nebuler-H Trojan. Troj/Nebuler-H gathers details relating to dialup services and sends collected information to a remote site via HT ... Read More
|
|
WindowsFileSystem
|
winsfs32.exe
|
X
|
Added by the W32/Rbot-FMQ worm and IRC backdoor.
|
|
Microsoft Windows System32
|
winservs.exe
|
X
|
Added by the W32/Tilebot-GU worm and IRC backdoor.
W32/Tilebot-GU spreads to other network computers by exploiting common buffer overfl ... Read More
|
|
{168cf174-6dab-461c-a761-a7adfa5a5719}
|
wuwbxp.dll
|
X
|
A Trojan used by the rogue anti-spyware program VirusBurst. This Trojan, when installed, will display fake security alerts on your taskbar and install ... Read More
|
|
wke.exe
|
wke.exe
|
X
|
Added by the Troj/Small-CPQ Trojan.
|
|
<not used>
|
winhe1p.exe
|
X
|
Added by the Troj/Agent-DFT Trojan.
|
|
useful-soft
|
winspsrv.exe
|
X
|
Added by the Troj/StartP-BCG Trojan.
Troj/StartP-BCG changes the Start Page for Microsoft Internet Explorer by setting the registry an ... Read More
|
|
Windows Socket Procedure
|
WinSock32.exe
|
X
|
Added by the W32/Rbot-FMX worm and IRC backdoor.
|
|
Winuser
|
Winuser.exe
|
X
|
Added by the Troj/Banker-DLT Trojan.
|
|
Windows modez Verifier
|
winl0g0z.exe
|
X
|
Added by the W32/Rbot-FNB worm and IRC backdoor.
W32/Rbot-FNB spreads to other network computers by exploiting common buffer overflow v ... Read More
|
|
sysygm64
|
winrxd64.exe
|
X
|
Added by the Troj/IRCBot-RK worm and IRC backdoor.
|
|
WinSvc
|
WinSvc.exe
|
X
|
Added by the Troj/Dloadr-ANJ downloading Trojan.
|
|
MClear Service
|
wnmicf.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
FClear Service
|
wnmifc.sys
|
X
|
Added by a variant of the Troj/Haxdor-Gen rootkit.
|
|
wnmicf
|
wnmicf.dll
|
X
|
Added by a variant of the Haxdoor Trojan family. This infection utilizes the wnmicf.sys and the wnmifc.sys rootkits to hide itself. ... Read More
|
|
MSWinupd
|
winnampis.exe
|
X
|
Added by the TROJ_BANLOAD.BEX Trojan.
|
|
Windows LoL Layer
|
winlolx.exe
|
X
|
Added by the W32/Rbot-FOR worm and IRC backdoor.
|
|
WinFk
|
winfk32.dll
|
X
|
Added by the Backdoor.Ginwui.E backdoor Trojan.
|
|
<not used>
|
winfkhide.dll
|
X
|
Added by the Backdoor.Ginwui.E rootkit.
|
|
_WGAw
|
WgsDisp.exe
|
X
|
Added by the Troj/Small-CSJ Trojan.
|
|
Microsoft
|
winsock.exe
|
X
|
Added by the W32/Rbot-FOT worm and IRC backdoor.
|
|
wdfmgr32
|
wdfmfr32.exe
|
X
|
Added by the Troj/Pindow-A downloader Trojan.
|
|
wintxr32
|
wintxr32.dll
|
X
|
Added by the Troj/Bckdr-PLK Trojan.
|
|
<not used>
|
WMISSHIM.DLL
|
X
|
Added by the WORM_STRAT.BT mass-mailing worm.
|
|
wdfmgr32
|
wdfmgr32.exe
|
X
|
Added by the Troj/Dloadr-AOT Trojan.
|
|
Windows Update Service
|
WindowsUP.exe
|
X
|
Added by the W32/Sdbot-CRV worm and backdoor.
W32/Sdbot-CRV is capable of spreading to network shares protected by weak passwords. The ... Read More
|
|
Windows Fixer
|
winfix.exe
|
X
|
Added by the W32/Virut-I virus and backdoor Trojan.
W32/Virut-I runs continuously in the background, providing a backdoor server which ... Read More
|
|
Windows System32
|
windows32.exe
|
X
|
Added by the W32/Rbot-FPB worm and IRC backdoor.
W32/Rbot-FPB spreads to other network computers by exploiting common buffer overflow v ... Read More
|
|
wrclib
|
wrclib.dll
|
X
|
Added by the W32/Akbot-AH worm. W32/Akbot-AH spreads to other network computers by exploiting common buffer overflow vulnerabilities, including ASN.1 ... Read More
|
|
WorkFile
|
WorkFile.exe
|
X
|
Added by the Troj/Bancos-AWN Trojan.
|
|
Win Tasks 32
|
wintasks32.exe
|
X
|
Added by the W32/Rbot-FPD worm and IRC backdoor.
W32/Rbot-FPD spreads:
- to other network computers infected with: W32/M ... Read More
|
|
Microsoft Svchost local services
|
winoem.exe
|
X
|
Added by the W32/Rbot-FPE worm and IRC backdoor.
|
|
Microsoft Updates
|
winit.exe
|
X
|
Added by the W32/Sdbot-CSB worm and IRC backdoor.
|
|
Local area connection
|
winlive.exe
|
X
|
Added by the W32/Rbot-FPH worm and IRC backdoor.
W32/Rbot-FPH spreads to other network computers by:
- exploiting common ... Read More
|
|
wingvd32
|
wingvd32.dll
|
X
|
Added by the Troj/Bckdr-PNT backdoor Trojan.
|
|
Cpanel
|
WINLOGIN32.EXE
|
X
|
Added by the WORM_SPYBOT.MO worm and IRC backdoor.
|
|
WinDevils
|
WinDevils.exe
|
X
|
Added by the W32/Brontok-BS worm.
|
|
MSMSGS
|
winlogon.exe
|
X
|
Added by the W32/Brontok-BS worm. This infection should notbe confused with the legitimate C:\Windows\System32\winlogon.exe program. ... Read More
|
|
Windows Drivers
|
wmimgr.exe
|
X
|
Added by the Troj/Keylog-JT keylogger.
|
|
wingsc32
|
wingsc32.dll
|
X
|
Added by the Troj/Bckdr-PNH backdoor.
|
|
winbyq32
|
winbyq32.dll
|
X
|
Added by the Troj/Agent-DMC Trojan.
|
|
winsys2freg
|
winsys2freg.dll
|
X
|
Added by the Troj/Xorpix-X proxy Trojan.
|
|
System Check
|
win_klr32.exe
|
X
|
Added by the W32/Delf-DRA worm.
|
|
WindowsLogon
|
winlogon.exe
|
X
|
Added by the W32/Todnab-A worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
<not used>
|
w3sskbda.dll
|
X
|
Added by the W32/Stration-AG worm.
|
|
Windows Email
|
winemail.exe
|
X
|
Added by the W32/Mytob-JI worm. W32/Mytob-JI is a mass-mailing worm and backdoor Trojan that can be controlled through the Internet Relay Chat (IRC) n ... Read More
|
|
MSN Messanger Live
|
winntmsn.exe
|
X
|
Added by the W32/Rbot-FSO worm and IRC backdoor. W32/Rbot-FSO spreads via network shares with weak passwords and the following vulnerabilities : LSASS ... Read More
|
|
Windows Email Server
|
wmserv.exe
|
X
|
Added by the W32/Foundu-A worm and IRC backdoor.
|
|
WinDrives
|
WinDrives.EXE
|
X
|
Added by the W32/Small-DHR worm.
|
|
Windows System 32
|
winsys_32.exe
|
X
|
Added by the W32/Rbot-FTR worm and IRC backdoor. W32/Rbot-FTR spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Windows WMF Fix
|
winfix.exe
|
X
|
Added by the W32/Rbot-FTQ worm and IRC backdoor. W32/Rbot-FTQ spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
Windows LoL Layer
|
win.exe
|
X
|
Added by the W32/Rbot-FTO worm and IRC backdoor.
|
|
windows32
|
windows32.exe
|
X
|
Added by the W32/Rbot-FUK worm and IRC backdoor.
W32/Rbot-FUK spreads to other network computers by:
- exploiting common ... Read More
|
|
msennger
|
winfix.com
|
X
|
Added by the Troj/IRCFlood-R Trojan. When used with an IRC client, it can be used to provide DDoS attacks. ... Read More
|
|
UpdateService
|
wservice.exe
|
X
|
Added by the W32/Dref-K mass-mailing worm. W32/Dref-K will attempt to infect SCR EXE and RAR files then email itself as an attachment to email address ... Read More
|
|
Microsoft
|
wuauclt.exe
|
X
|
Added by the Troj/QQRob-AAQ Trojan.
|
|
KernelFaultCheck
|
winabc3.exe
|
X
|
Added by the W32/Nubys-A EXE virus.
|
|
Microsoft Windows Man Service
|
winmgr.exe
|
X
|
Added by the W32/Sdbot-DTL worm and IRC backdoor. W32/Sdbot-DTL spreads to other network computers over network shares and by exploiting common buffer ... Read More
|
|
{9AFE2F49-58BA-4E47-A085-16E9123DD660}
|
winplfg.dll
|
X
|
Added by the Troj/Lineag-AET password-stealing Trojan.
|
|
wsfit32
|
wsfit32.sys
|
X
|
Rootkit used by the Rogoo LSP Hijacker to protect it's files. Other associated files are discussed here. ... Read More
|
|
wlmsngr
|
wlmsngr.exe
|
X
|
Added by the W32/Sdbot-CTX worm and IRC backdoor.
W32/Sdbot-CTX spreads via:
- to computers vulnerable to common exploits, incl ... Read More
|
|
winluj32
|
winluj32.dll
|
X
|
Added by the Troj/Nebuler-L Trojan.
|
|
winnt.exe
|
winnt.exe
|
X
|
Added by the W32/Mona-B instant messenger and email worm.
|
|
Microsoft Windows Socketx32 Services
|
winsockx32.exe
|
X
|
Added by the W32/Rbot-FWT worm and IRC backdoor.
|
|
winla
|
winla.exe
|
X
|
Added by the Troj/Dloadr-AQL Trojan.
|
|
winool32
|
winool32.dll
|
X
|
Added by the Troj/Nebuler-N Trojan.
|
|
System Event Notificat
|
winlogon.exe
|
X
|
Added by the Troj/Hupigo-SA Trojan. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe. ... Read More
|
|
Windows Network Firewall
|
w32svc.exe
|
X
|
Added by the W32/Sdbot.worm!811a7027 worm and IRC backdoor.
|
|
windowstime.exe
|
windowstime.exe
|
X
|
Added by the Troj/Dloadr-AQV downloading Trojan.
|
|
windows_update
|
win32.exe
|
X
|
Added by the TROJ_SMALL.FAR Trojan.
|
|
SECURE SHELL access driver
|
wartamd.sys
|
X
|
A variant of the Haxdoor Trojan rootkit.
|
|
wartamll
|
wartamll.dll
|
X
|
Added by a variant of the Haxdoor Trojan family. This infection utilizes the wartamd.sys rootkit to hide itself. ... Read More
|
|
Win32
|
wveygxi.exe
|
X
|
Added by the W32/Rbot-FYK worm and IRC backdoor.
|
|
Web Live Information Messenger
|
webmsn.exe
|
X
|
Added by the W32/Sdbot-CWA worm and IRC backdoor.
|
|
WinAntiVirusPro2006
|
WinAV.exe
|
X
|
Part of WinAntivirus Pro. This program is fake, stealth installed, and bundled with other malware. It is also on the Rogue anti-spyware list. ... Read More
|
|
Windows DHCP Service
|
windhcp.ocx
|
X
|
Added by the Troj/Agent-DWU Trojan. Do not delete C:\Windows\system32\rundll32.exe as that is a legitimate file. ... Read More
|
|
wupd32
|
wupd.exe
|
X
|
Added by the W32.Stration.EL@mm worm. W32.Stration.EL@mm is a worm that spreads by emailing itself to other computers. It also drops and downloads oth ... Read More
|
|
{2D0CCE2D-2EEF-4432-0503-020002010803}
|
wmp.exe
|
X
|
Added by the TSPY_SKPE.A spyware.
|
|
Windows Kernel System Service
|
wkssvc.exe
|
X
|
Added by the W32/Vanebot-AA worm and IRC backdoor.
|
|
Windows Services Layer
|
winlogz2.exe
|
X
|
Added by the W32/Rbot-FZE worm and IRC backdoor.
W32/Rbot-FZE spreads to other network computers by:
- exploiting common buffer ... Read More
|
|
Windows Services Layer
|
winl0g0.exe
|
X
|
Added by the W32/Rbot-FZQ worm and IRC backdoor.
|
|
Logon
|
winlog.com
|
X
|
Added by the W32.Rungbu.C virus. W32.Rungbu.C is a virus that replaces Word Documents with a copy of the virus. ... Read More
|
|
Microsoft
|
wcsntfy.exe
|
X
|
Added by the W32/Agobot-AHT worm and IRC backdoor.
|
|
WinUPDbc
|
winupdbc.exe
|
X
|
Added by the Troj/Banker-DSN Internet banking Trojan. Troj/Banker-DSN will then continuously monitor Microsoft Internet Explorer for certain strings r ... Read More
|
|
Windows System Service
|
wnuserv.exe
|
X
|
Added by the W32.Spybot.ANDM worm. W32.Spybot.ANDM is a worm that spreads through mIRC and to network shares protected by weak passwords. It also spre ... Read More
|
|
webwork
|
webwork.dll
|
X
|
Added by the Webwork downloader/updater DLL which is known to download and install advertising software. The adware applications Boran and Yokgug may ... Read More
|
|
Windows Update
|
winlog.exe
|
X
|
Added by the Troj/IRCBot-TJ Trojan.
|
|
msconfig
|
winlog.exe
|
X
|
Added by the Troj/IRCBot-TJ Trojan.
|
|
icq lite
|
winlog.exe
|
X
|
Added by the Troj/IRCBot-TJ Trojan.
|
|
Update Checker
|
winlog.exe
|
X
|
Added by the Troj/IRCBot-TJ Trojan.
|
|
AntiVir
|
winlog.exe
|
X
|
Added by the Troj/IRCBot-TJ Trojan.
|
|
Explorer
|
Windows Explorer.exe
|
X
|
Added by the W32/SillyFDC-I worm. This infection should not be confused with the legitimate C:\Windows\explorer.exe file. ... Read More
|
|
(default)
|
winligom.exe
|
X
|
Added by the W32/Rbot-GAI worm and IRC backdoor. W32/Rbot-GAI spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
wgeax
|
wgeax.exe
|
X
|
Added by the W32/IRCBot-TM worm and IRC backdoor.
|
|
Install Driver Table Manager
|
wpablan.exe
|
X
|
Added by the W32/Sdbot-CWR worm and IRC backdoor. W32/Sdbot-CWR spreads to other network computers by exploiting the buffer overflow vulnerabilities: ... Read More
|
|
{7B587C5A-28E3-4763-A5B5-CC19D89DFD22}
|
winall.dll
|
X
|
Added by the Troj/Lineag-H password-stealing Trojan for the online game Lineage. ... Read More
|
|
Microsoft WPCEmail
|
wpcem.exe
|
X
|
Added by the Troj/Sniffer-N Trojan. Troj/Sniffer-N monitors network traffic for email addresses. Harvested addresses are submitted to a preconfigured ... Read More
|
|
wsvbs
|
wsvbs.exe
|
X
|
Added by the Troj/Lineag-AIQ password-stealing Trojan for the online game Lineage. ... Read More
|
|
Windows Logon Service
|
winlogoservice.exe
|
X
|
Added by the W32.Spybot.ANOO worm and IRC backdoor.
|
|
wincom32
|
wincom32.sys
|
X
|
Added by the Trojan.Peacomm downloader Trojan. This infection contains rootkit functionality that enables it to hide some of its associated files. ... Read More
|
|
<not used>
|
wuaucll.exe
|
X
|
Added by the W32/SillyFDC-M worm.
|
|
Windows Secure Update
|
WinSecUp.exe
|
X
|
Added by the W32/Rbot-GCD worm and IRC backdoor.
|
|
Windows Secure Update
|
winupser.exe
|
X
|
Added by the W32/Rbot-GCG worm and IRC backdoor.
|
|
Microsoft Apache for Windows
|
wpablin.exe
|
X
|
Added by the W32/Tilebot-IL worm and IRC backdoor.
|
|
winclean
|
winclean.exe
|
X
|
Added by the Troj/Cimuz-BO spyware Trojan. Troj/Cimuz-BO may also steal information such as email account usernames and passwords, and create screensh ... Read More
|
|
SOUNDM
|
win32smd.exe
|
X
|
Added by the Troj/WOW-JA spyware Trojan. This infection utilizes the npf.sys rootkit to hide itself. ... Read More
|
|
ReloadMicrosoftwin
|
worldcstt2.exe
|
X
|
Added by the Troj/Bancos-AZA information-stealing Trojan for online banks. It is advised that you change your online banking passwords if you were in ... Read More
|
|
ReloadMicrosoftwinamplay
|
worldcstl2.exe
|
X
|
Added by the Troj/Bancos-AYZ information-stealing Trojan for online banks. It is advised that you change your online banking passwords if you were in ... Read More
|
|
WinMsg
|
winmsgr.exe
|
X
|
Added by the Troj/Dloadr-AS downloading Trojan.
|
|
Microsoft Corp SSL Certificates
|
windowz.exe
|
X
|
Added by the W32/Rbot-GCZ worm and IRC backdoor.
|
|
Windows MSN
|
wmsnlivexp.exe
|
X
|
Added by the W32/Sdbot-CXR worm and IRC backdoor.
|
|
antivirusdll
|
winmsgslive.exe
|
X
|
Added by the W32/Sdbot-CXQ worm and IRC backdoor.
|
|
Windows Systems16
|
winjews16.exe
|
X
|
Added by the W32/Sdbot-CXT worm and IRC backdoor.
|
|
<not used>
|
winwork.exe
|
X
|
Added by the TSPY_WOWCRAFT.BL information stealing Trojan for the online game the World of Warcraft. ... Read More
|
|
DirectX Service
|
WinSxS\explorer.exe
|
X
|
Added by the Troj/Bckdr-PXK backdoor Trojan.
|
|
Windows Secure Update
|
WinSecure.exe
|
X
|
Added by the W32/Rbot-GDO worm and IRC backdoor. W32/Rbot-GDO spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
|
|
WinAntiVirus Pro 2007
|
WinAV.exe
|
X
|
Startup program associated with WinAntiVirus Pro 2007. WinAntiVirus Pro 2007 is a rogue anti-spyware program that displays fake alerts, and downloads ... Read More
|
|
System
|
wmplayer.exe
|
X
|
Added by the W32/Lazy-A worm.
|
|
InternetExplorer2
|
windows.exe
|
X
|
Added by the W32/Sdbot-CZP worm and IRC backdoor.
|
|
WinSystems
|
winsystems16.exe
|
X
|
Added by the W32/Sdbot-CZT worm and IRC backdoor.
|
|
<Random Name>
|
winview2.exe
|
X
|
Added by the W32/Jared-A worm.
|
|
System
|
WM_.exe
|
X
|
Added by the Troj/Dropper-NR Trojan.
|
|
Zone Labs Client
|
win32dll.exe
|
X
|
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
|
|
W32 Sercure Service
|
wsecur3.exe
|
X
|
Added by the W32/Sdbot-DAR worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself. ... Read More
|
|
Firewall auto setup
|
winlogon.exe
|
X
|
Added by the Troj/Agent-EDB Trojan. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
wmstream32
|
wmstream32.dll
|
X
|
Added by the Troj/PWS-AHX password-stealing Trojan.
|
|
Windows System
|
winsys32.exe
|
X
|
Added by the W32/Mytob-IS mass-mailing worm and IRC backdoor.
|
|
Win32 Help32 Service
|
win32help.exe
|
X
|
Added by the W32/Delbot-U worm and IRC backdoor.
|
|
1
|
winhp32.exe
|
X
|
Added by the Troj/Clckr-KY Trojan.
|
|
Microsoft Updates
|
wkssvr.exe
|
X
|
Added by the WORM_RBOT.R worm and IRC backdoor.
|
|
Windows Critical Alert
|
wincrt.exe
|
X
|
Trojan that display fake security warnings on your computer. This Trojan is part of the Smitfraud family of malware. You should use the guide below t ... Read More
|
|
Print System Service
|
wlpnsv.exe
|
X
|
Added by the Backdoor.Win32.SdBot.aad worm and IRC backdoor.
|
|
ActiveSync
|
wcescom32.exe
|
X
|
Added by the Troj/MancSyn-E Trojan.
|
|
Xordate
|
wuauclt10.exe
|
X
|
Added by the W32/Rbot-GKN worm and IRC backdoor.
|
|
wsttrs
|
wsttrs.exe
|
X
|
Added by the Troj/LdPinch-QS information-stealing Trojan.
|
|
wgs3
|
wgs3.exe
|
X
|
Added by the Troj/LegMir-AQH password-stealing Trojan.
|
|
wms3
|
wms3.exe
|
X
|
Added by the Troj/LegMir-AQG password-stealing Trojan for the online game The Legend of Mir. ... Read More
|
|
9m
|
winlog0n.exe
|
X
|
Added by the Troj/LegMir-AQK password-stealing Trojan for the Legend of Mir.
|
|
Xordate
|
wuauclt11.exe
|
X
|
Added by the W32/Rbot-GLI worm and IRC backdoor.
|
|
Xordate
|
wuauclt13.exe
|
X
|
Added by the W32/Rbot-GLM worm and IRC backdoor.
|
|
Windows Ocx Service
|
winocx.exe
|
X
|
A IRCBot worm and IRC backdoor variant.
|
|
<not used>
|
winsys16_070307.dll
|
X
|
Added by the Troj/Hiphop-G data stealing Trojan.
|
|
WinRPC
|
winrpcmx.exe
|
X
|
Added by the Troj/Banker-EEI online banking Trojan. This infection attempts to steal logon credential when you use online banking. It is advised that ... Read More
|
|
Xordate
|
wuauclt12.exe
|
X
|
Added by the W32/Rbot-GLQ worm and IRC backdoor.
|
|
WebPrint
|
webprint.exe
|
X
|
Added by the Troj/Bckdr-QHH backdoor Trojan.
|
|
TCPIP route manager
|
winsys.exe
|
X
|
Added by the Troj/Lydra-AB Spyware Trojan.
|
|
WebTime
|
WebTime.exe
|
X
|
Added by the Troj/SleepSrv-A Trojan.
|
|
mcafee
|
Win32.dll.vbs
|
X
|
Added by the W32/Catcher-B worm. W32/Catcher-B spreads by copying itself to the root of all mapped drives. ... Read More
|
|
StreamAppliance
|
wuauclt14.exe
|
X
|
Added by the W32/Rbot-GLT worm and IRC backdoor.
|
|
Wkyo86
|
Wk86.exe
|
X
|
Added by the W32.Pitin worm. W32.Pitin is a worm that copies itself to the local drive and network shares. ... Read More
|
|
Microsoft
|
windl32.exe
|
X
|
Added by the W32/Sdbot-DCZ worm and IRC backdoor.
|
|
winzoa32
|
winzoa32.dll
|
X
|
Identified as a Virtumonde related file.
|
|
WinFlyer32.dll
|
WinFlyer32.dll
|
X
|
Identified as Trojan.Downloader-WinFlyer.Process.
|
|
W32SYS
|
w32sys.exe
|
X
|
Added by the W32/Jambu-A worm. W32/Jambu-A is a mass mailer for the Windows platform that also targets peer-to-peer file sharing networks and local sh ... Read More
|
|
Local Security Policy
|
wpablan.exe
|
X
|
A variant of the W32/Sdbot family of worms and IRC backdoors.
|
|
KSD2Service
|
winl0gon.exe
|
X
|
Added by the Troj/Dloadr-AXH Trojan.
|
|
w4y4n9
|
w4y4n9.exe
|
X
|
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
|
|
w32 Wayang
|
w32 Wayang.exe
|
X
|
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
|
|
Server Runtime Process
|
wbemstest.exe
|
X
|
Added by the W32/Sdbot-DDB worm and IRC backdoor.
|
|
Microsoft Validation Service
|
wmiprsv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
StreamAppliance
|
wuauclt16.exe
|
X
|
Added by the W32/Rbot-GME worm and IRC backdoor.
|
|
Performs peer to peer connection
|
WinPTTP.exe
|
X
|
Added by the W32/Rbot-GMI worm and IRC backdoor.
|
|
Wincbr.exe
|
Wincbr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
winlogin.exe
|
winlogin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
wupdmgr.exe
|
wupdmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
(default)
|
winxp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
AdobeReaderPro
|
winslog.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
Automatic Updates
|
wupdmgr32x.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
win32exec.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
Windows.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
blah service
|
windowsXT.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
winsock.client
|
winsock.exe
|
X
|
Added by the Troj/Diablo-M backdoor Trojan.
|
|
<not used>
|
wandrv.exe
|
X
|
Added by the Troj/Bckdr-QHR backdoor Trojan.
|
|
blah service.
|
widows.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoors.
|
|
{585A8A5E-27F0-9E11-21EA-07F58E9ED69B}
|
wmhost.exe
|
X
|
Added by the Troj/Bckdr-QHS backdoor Trojan.
|
|
Device Manager
|
wfxmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
DLINK dfe drivers for Windows NT
|
windfe.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
DRam prosessor
|
winsys.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Hardware Shell Detection
|
WinHSD.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Intec Service Drivers
|
winrvc.exe
|
X
|
Added by a variant of the W32/Sdbot family of worms and IRC backdoor Trojans.
|
|
Internet
|
winlogom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Internet
|
WinSecUp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Internet
|
winsas32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winsplog
|
wsmmlog.exe
|
X
|
Added by the Troj/Mailbot-CA IRC Backdoor Trojan.
|
|
Windows Updates
|
WindowsUpdates.exe
|
X
|
Added by the WORM_SDBOT.CLU worm and IRC backdoor. This infection is also bundled the rdriv.sys rootkit. ... Read More
|
|
Microsoft Windows Update
|
wuautcl.exe
|
X
|
Added by the Troj/Spybot-NQ worm and backdoor Trojan.
|
|
Secure
|
WindowsUpdates.exe
|
X
|
Identified as AdWare.Win32.Agent.bm.
|
|
winnload
|
winnload.COM
|
X
|
Added by the Troj/DownLd-ABG Trojan downloader.
|
|
w7zip
|
w7zip.exe
|
X
|
Added by the Troj/Bancban-PX online banking information stealing Trojan. If you are infected with this, you should contact your banks and change any ... Read More
|
|
Windows Mail Services
|
WinMailSrv.exe
|
X
|
Added by the Troj/Hupigo-VY Trojan.
|
|
EXPLORER
|
wab32res.exe
|
X
|
Added by the W32.Fubalca.B worm. W32.Fubalca.B is a worm that spreads through removable media and infects various file types, including .exe and .html ... Read More
|
|
(default)
|
win32sys.exe
|
X
|
Identifed as the Sdbot.KIN worm and IRC backdoor.
|
|
Windows Configuration Service
|
WinConfSrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
{2BDEC973-B5AC-4e5b-8AB3-5A0500880DA2}
|
winload.dll
|
X
|
Identified as a variant of the Infostealer.Nuklus Trojan. Infostealer.Nuklus is a Trojan horse that steals sensitive information from the compromised ... Read More
|
|
Windowsxxx
|
windowsxxx.exe
|
X
|
Added by the Troj/DuBing-A Trojan.
|
|
Config
|
WinService32.exe
|
X
|
Added by the Troj/Crutcha-A Trojan.
|
|
Microsoft System Service
|
winIogon2.exe
|
X
|
A variant of the IRCbot family of backdoor worms.
|
|
6435748
|
winupdates.exe
|
X
|
Identified as the Spybot.BMKF worm.
|
|
wincls
|
wincls.dll
|
X
|
Added by the W32/Akbot-AR worm. W32/Akbot-AR spreads to other network computers infected with W32/Sasser and to other network computers by exploiting ... Read More
|
|
wsmsag
|
wsmsag.dll
|
X
|
A variant of the Troj/Haxdor-Fam Trojan. This infection utilizes the mswsaf.sys and the mswsag.sys rootkits to hide itself. ... Read More
|
|
wtzlank.dll
|
wtzlank.dll
|
X
|
Added by the Adware.DisableKey adware. When installed this program will display advertisements on your computer. The filename and registry name may b ... Read More
|
|
Windows Auto Update Tool
|
wault.exe
|
X
|
Added by the W32/Tilebot-JQ worm with IRC backdoor Trojan functionality.
|
|
Monitor Infrared System
|
WinMIS.exe
|
X
|
A variant of the RBot family of backdoor worms. Identified as Backdoor.Win32.Rbot.bll by Kaspersky Antivirus. ... Read More
|
|
startkey
|
win32.exe
|
X
|
Added by a variant of the Backdoor.Bifrose family of Trojans. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a ... Read More
|
|
WinService
|
WinServ.exe
|
X
|
Added by the W32/Skowor-O worm.
|
|
winprint
|
winprint.dll
|
X
|
A variant of the Troj/Haxdor-Fam Trojan. This infection utilizes the eps32sys.sys rootkit to hide itself. ... Read More
|
|
waxw2k
|
waxw2k.dll
|
X
|
A variant of the Troj/Haxdor-Fam Trojan.
|
|
Microsoftf DDEs Control
|
w33s.exe
|
X
|
Identified as a variant of the RBot family of worms and IRC backdoors.
|
|
Microsoftf DDEs Control
|
waes.exe
|
X
|
Identified as a variant of the RBot family of worms and IRC backdoors.
|
|
Microsoft Lsass Service
|
wintcp32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NT LM Security Support Provider
|
WinNTLM.exe
|
X
|
Identified as the SdBot.bil worm and IRC backdoor.
|
|
Sygate Personal Firewall
|
win31243.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SystemTray
|
wekls4.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
T4skM4n4g3r
|
Wink3sk9.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 wqr1s
|
wuaumqr1.exe
|
X
|
Identified as the Backdoor.Win32.SpyBoter.fv worm and IRC backdoor.
|
|
wudb
|
wudb.dll
|
X
|
Identified as Trojan.Downloader.Agent.BFO.
|
|
WinPatch Protection
|
winpatch.exe
|
X
|
Identified as Backdoor/VanBot.do.
|
|
Microsoft
|
wsim32.exe
|
X
|
Added by the W32/Rbot-GTL worm and IRC backdoor.
|
|
Win32Usr
|
WinCab.exe
|
X
|
Added by the W32/Dedmir-A worm.
|
|
Maxtor Performance Analysis Tool
|
winrcn.exe
|
X
|
Added by the Troj/IRCBot-VY worm and IRC backdoor.
|
|
IE6
|
winsnt.exe
|
X
|
Added by the W32/Rbot-GOV worm and IRC backdoor.
|
|
Windows Service Agent
|
winupds32.exe
|
X
|
Added by the W32/Rbot-GQT worm and IRC backdoor.
|
|
Microsoft
|
WinSecUp.exe
|
X
|
Added by the W32/Rbot-GPL worm and IRC backdoor.
|
|
Microsoft Update Machine
|
wlimyc.exe
|
X
|
Added by the W32/Rbot-GQN worm and IRC backdoor.
|
|
windev-b51-433
|
windev-b51-433.sys
|
X
|
Added by the Troj/Dorf-H rootkit.
|
|
WinNT
|
WinNT.com
|
X
|
Added by the W32.Autosky worm. W32.Autosky is a worm that attempts to spread to all shared and removable drives that are accessible from the compromis ... Read More
|
|
Winini.dll
|
winini.vbs
|
X
|
Added by the VBS.Lido virus and worm.
|
|
l44sys33
|
winmine.exe
|
X
|
Added by the VBS.Lido virus and worm. The winmine.exe program is actually a legitimate Windows game bundled with the OS, but in this is case, is being ... Read More
|
|
winme
|
winme.exe
|
X
|
Added by the W32.Rahiwi.B worm.
|
|
Automatic Updates
|
wupdmgr32.exe
|
X
|
Unknown worm and IRC backdoor variant.
|
|
DRam rar proc
|
winupdaterar.exe
|
X
|
Part of the Rbot family of worms and IRC backdoors.
|
|
LoghDriver
|
winlde.exe
|
X
|
Identified as a variant of the IRCBot family of worms and backdoors.
|
|
Microsoft Windows 32 Update
|
win32update.exe
|
X
|
Part of the IRCBot family of worms and backdoors.
|
|
Symantec Antivirus professional
|
windows .exe
|
X
|
Identified as Backdoor.Win32.Rbot.ckj.
|
|
Windows Config
|
winbot.exe
|
X
|
Identified as an IRCbot variant.
|
|
Windows Service Agent
|
wmscc.exe
|
X
|
Added by the W32/Rbot-GQP worm and IRC backdoor.
|
|
winxp
|
winxp.exe
|
X
|
Added by the W32/Brontok-DN worm.
|
|
Windows Service Agent
|
win32wins.exe
|
X
|
Added by the W32/Rbot-LOL worm and IRC backdoor.
|
|
Memorex Network Analysis Tool
|
winsntp.exe
|
X
|
Added by the W32/Vanebot-AT network worm.
|
|
Windows Service Agent
|
wit.exe
|
X
|
Added by the W32/Rbot-GQV worm and IRC backdoor.
|
|
gpmce
|
windows.exe
|
X
|
Added by the W32/SillyFDC-HO worm.
|
|
windows.bat
|
windows.bat
|
X
|
Added by the Troj/Bckdr-MSY backdoor Trojan.
|
|
Monitor Infrared Output
|
WinMIO.exe
|
X
|
Identified as Rbot.cnk family of worms and IRC backdoor Trojans.
|
|
SPHandler
|
wuauclt28.exe
|
X
|
Identified as the Rbot.bll worm and IRC backdoor Trojan.
|
|
Sony Network Analysis Tool
|
winsony.exe
|
X
|
Added by the W32/Spybot-NS worm and IRC backdoor.
|
|
windev-4a8c-4822
|
windev-4a8c-4822.sys
|
X
|
Added by the Troj/Dorf-C Trojan.
|
|
Windows Service Agent
|
winup32.exe
|
X
|
Added by the W32/Rbot-GQX worm and IRC backdoor.
|
|
Microsoft dll Host Service
|
wkssr.exe
|
X
|
Unidentifed worm and IRC backdoor.
|
|
EnGenius Network Analysis Tool
|
winegne.exe
|
X
|
Added by the W32/Rbot-GRC worm and IRC backdoor.
|
|
WinCTL
|
winctl.dll
|
X
|
Added by the Troj/Small-EJG Trojan downloader.
|
|
wuauclt3
|
wuauclt3.exe
|
X
|
Unidentified malware.
|
|
SSH Client for Windows
|
winshp.exe
|
X
|
Added by the Win32/Duiskbot.BE worm and IRC backdoor.
|
|
Senao Network Controller
|
winsno.exe
|
X
|
Added by the W32/Vanebot-AU worm and IRC backdoor.
|
|
{B9BA1F0E-091E-ECF9-0A09-CC4C2EE29C62}
|
task.exe
|
X
|
Identified as a variant of the Troj/Poison-K backdoor and keylogger. It is advised that once you remove this infection you immediately change all of ... Read More
|
|
Microsoft Corporation Server
|
wupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Stuff you know
|
winslogin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Updater Services
|
winupdate.exe
|
X
|
Identified as the Spybot.AHM.worm worm and IRC backdoor.
|
|
Win
|
windata.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsSystem32
|
Winsec.exe
|
X
|
Identified as the Sdbot-DFG worm and IRC backdoor.
|
|
WinForm
|
WinForm.exe
|
X
|
Added by the Troj/PWS-ANN password-stealing Trojan.
|
|
Windows File Update Auto Check Program
|
WuxService.exe
|
X
|
Added by the Troj/Dloadr-BAF downloader Trojan.
|
|
WebBuying
|
Webbuying.exe
|
X
|
Added by the Adware.Webbuy adware. Adware.Webbuy is a Browser Helper Object that displays advertisements. ... Read More
|
|
WinAmp Agent Full
|
wina.exe
|
X
|
Identified by Kaspersky Anti-Virus as Trojan-Downloader.Win32.Banload.bfb. If you are infected with this file you should immediately change all of yo ... Read More
|
|
<not used>
|
WinSit.exe
|
X
|
Added by the W32/CoiDung-A worm.
|
|
Microsoft
|
wuaudit.exe
|
X
|
A variant of the RBot.cij family of worms and IRC backdoor Trojans.
|
|
Microsoft TCP Protocol
|
wintcp32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windir Working
|
wuaumqr1.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Help
|
Wizardnil.exe
|
X
|
Added by the Troj/Bancos-BCZ online banking Trojan. If you are infected with this file you should immediately change all of your online banking passw ... Read More
|
|
Log Manager
|
winup.exe
|
X
|
Added by the W32/Spybot-NV network worm.
|
|
WinPop
|
winpop.exe
|
X
|
Added by the Brudevic A adware.
|
|
SysMonitor
|
WinSystem.exe
|
X
|
Added by the W32/VB-DWI worm that spreads to removeable storage devices.
|
|
SWSetup
|
winrar.exe
|
X
|
Added by the Troj/GrayBrd-CQ backdoor Trojan.
|
|
winbo32.exe
|
winbo32.exe
|
X
|
Added by the W32/Rbot-GRU worm and IRC backdoor.
|
|
Microsoft
|
winlog.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
winlogom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft AntiVirus
|
winav32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft CONFIG
|
winmx.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SystemTray
|
Windowsupd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Vista Corparation Agent Services
|
winxp_sp3.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windxs mxzez Vexifier
|
winlogos.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft (R) Windows Update Service
|
wuauclt.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan. This infection should not be confused with the legitimate C:\Windows\System32\wuauclt.exe file. ... Read More
|
|
OKGO
|
winutade.exe
|
X
|
Added by the Troj/Banker-EHZ online banking Trojan. If you are infected with this file you should immediately contact your banks and change your onli ... Read More
|
|
automatic updates for Microsoft Windows
|
wuauclt.exe
|
X
|
Added by the W32/Tilebot-JW network worm.
|
|
KnowledgeBase GUI
|
wppewafaj.exe
|
X
|
Added by the W32/Rbot-GRZ worm and IRC backdoor.
|
|
windbg48
|
windbg48.sys
|
X
|
Added by the Troj/RKAgen-A rootkit.
|
|
Windowssyesm
|
Windowssyesm
|
X
|
Added by the Troj/GrayBir-I backdoor Trojan.
|
|
CueX44_stil_here
|
WINLOGON.EXE
|
X
|
Added by the W32/Punya-A worm. This infection should not be confused with the legitimate C:\Windows\System32\WINLOGON.EXE file. ... Read More
|
|
{9af8f31b-b778-4413-b8ed-ae63a62e1f7d}
|
wfcof.dll
|
X
|
Zlob Trojan that installs VirusProtectPro 3.3 and shows fake security alerts from your Windows taskbar. ... Read More
|
|
Windows Update Manager
|
winup.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Process Analization
|
wininxt.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Machine
|
winsys.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Notification Service
|
winntify.exe
|
X
|
Rootkit found with SmitFraud infections.
|
|
Microsoft Genuine Advantage
|
winmga.exe
|
X
|
Identified by Kaspersky as the Backdoor.Win32.VanBot.dk worm and IRC backdoor.
|
|
Microsoft DLL Library
|
winlib32.exe
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
Graphics adapter service
|
windll.exe
|
X
|
Added by the W32.Atnas.A worm. W32.Atnas.A is a worm that performs distributed denial of service attacks and spreads through file-sharing programs. ... Read More
|
|
Windows modez Verifier
|
Windows12.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Shell
|
winshell.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows-Management Service
|
WinMgmt.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Maintenance
|
WINMAINT.EXE
|
X
|
Identified by VBA32 antivirus as Trojan-Dropper.Agent.35.
|
|
wsmsge
|
wsmsge.dll
|
X
|
A variant of the Goldun Trojan. This infection utilizes the mswsaf.sys rootkit to hide itself. ... Read More
|
|
{5889f7b0-3277-4266-b4bd-1bf2d394aee6}
|
wpchz.dll
|
X
|
Zlob Trojan that installs VirusProtectPro 3.4 and shows fake security alerts from your Windows taskbar. ... Read More
|
|
WinAntiSpyware 2007
|
was7.exe
|
X
|
Added by the rogue anti-spyware program WinAntiSpyware.
|
|
was7cw
|
was7cw.exe
|
X
|
Added by the rogue anti-spyware program WinAntiSpyware.
|
|
Microsoft Update
|
wuampd.exe
|
X
|
Unidentified worm.
|
|
Microsoft Update
|
windoc.exe
|
X
|
Added by the WORM_SDBOT.PF worm and IRC backdoor.
|
|
Windows Help
|
winhlep.exe
|
X
|
Added by the Troj/Hupigon-SM Trojan.
|
|
WinAVX
|
WinAvX.exe
|
X
|
Malware related to and installed with the rogue anti-spyware program called WinAntiSpyware 2006 or WinAntiSpyware 2007. This Trojan is responsible for ... Read More
|
|
{aa6d4f53-4c8d-4549-84d2-02d584acc4e9}
|
wzhtjqo.dll
|
X
|
Zlob Trojan that installs VirusProtectPro 3.5 and shows fake security alerts from your Windows taskbar. ... Read More
|
|
wmplayer
|
wmplayer.dll
|
X
|
A variant of the Cpvfeed adware.
|
|
wmsound
|
wmsound.dll
|
X
|
A variant of the Cpvfeed adware.
|
|
Windows service
|
winsrv.exe
|
X
|
A variant of the SdBot.bhk family of worms and IRC backdoor Trojans.
|
|
NvCpIDeamon
|
WUAUMQR.EXE
|
X
|
A variant of the SpyBot.ag family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Microsoft Update Machine
|
wuampd.exe
|
X
|
A variant of the Rbot-UT family of worms and IRC backdoor Trojans.
|
|
windefender.exe
|
windefender.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.byh Trojan.
|
|
ShareSearcher
|
wsusupd.exe
|
X
|
Added by the Troj/Enclag-A Trojan.
|
|
syshelps
|
wmhs32.dll
|
X
|
Identified as a variant of the IM-Worm.Win32.Agent worm.
|
|
SmansaApp
|
winlogon.exe
|
X
|
Added by the W32/Romario-A mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe. ... Read More
|
|
urudjeffni
|
winlogon.exe
|
X
|
Added by the W32/Romario-A mass-mailing worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe. ... Read More
|
|
MSWinlogon
|
Winlogon.exe
|
X
|
Added by the Troj/Small-EJW Trojan.
|
|
winlogon
|
winlogon32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winbug32
|
winbug32.dll
|
X
|
A variant of the Trojan.Win32.Agent.qt Trojan.
|
|
winbjv32
|
winbjv32.dll
|
X
|
A variant of the Trojan.Win32.Agent.qt Trojan.
|
|
WinAmpAgent
|
winagent.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
Scheduler
|
winagent.exe
|
X
|
Added by the Win32.Tactslay backdoor Trojan.
|
|
WinCore32.exe
|
WinCore32.exe
|
X
|
Added by the Troj/Clicker-EN Trojan.
|
|
Microsoft Update Machine
|
WINDOWSUPDATE.exe
|
X
|
A variant of the Rbot.bwj family of worms and IRC backdoor Trojans.
|
|
MSUpdate
|
winup.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Updater Service Manager
|
winupdatr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winsaf32
|
winsaf32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Agent.qt Trojan.
|
|
Windows Media Sharing
|
wmsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinAVX
|
WinAvXX.exe
|
X
|
Malware related to and installed with different rogue anti-spyware programs including WinAntiSpyware 2006 or WinAntiSpyware 2007. This Trojan is respo ... Read More
|
|
Wapp
|
Wapp.exe
|
X
|
Added by the Troj/Banker-EIK information-stealing Trojan for online banks. If you are infected with this file you should immediately change your onli ... Read More
|
|
Microsoft Update Machine
|
winmanwan.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
Internet
|
WinSecUps.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft windows log service
|
winlog.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSUpdater
|
winnoob.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 driver
|
wuaumqr3.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
MSN
|
winlog32.exe
|
X
|
A variant of the Backdoor.IRCBot.acd family of worms and IRC backdoor Trojans.
|
|
xem
|
winlogon.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.CWS.am downloader Trojan. This infection should not be confused with the legitimate C:\Windows\ ... Read More
|
|
winudu32
|
winudu32.dll
|
X
|
Identified as the BackDoor-CVT malware.
|
|
WinXDefender
|
WinXDefender.exe
|
X
|
Added by the WinXDefender rogue anti-spyware program. WinXDefender is a misleading application described as a spyware removal utility that may give ex ... Read More
|
|
Microsoft
|
winsys32.exe
|
X
|
A variant of the W32/Rbot-GSQ family of worms and IRC backdoor Trojans.
|
|
WinXpUpdate32
|
WinXpUpdate32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
winzzc32
|
winzzc32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Agent.qt malware.
|
|
<not used>
|
WINFBI32.dll
|
X
|
Added by the Backdoor.Ginwui.F backdoor. Backdoor.Ginwui.F is a Trojan horse that opens a back door and uses rootkit techniques to hide its presence. ... Read More
|
|
wmpconf
|
wmpconf.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
wmpenv
|
wmpenv.dll
|
X
|
Added by a variant of the MyGeek/CPVFeed adware.
|
|
Bron
|
winxp.exe
|
X
|
Added by the W32.Phoney.A worm. W32.Phoney.A is a worm that spreads through mapped drives. It also lowers security settings on the compromised compute ... Read More
|
|
Rontok
|
winxp.exe
|
X
|
Added by the W32.Phoney.A worm. W32.Phoney.A is a worm that spreads through mapped drives. It also lowers security settings on the compromised compute ... Read More
|
|
Windows help Manager
|
winhelp.exe
|
X
|
Added by the W32.Scrimge.G worm. W32.Scrimge.G is a worm that spreads through Microsoft instant messaging clients and opens a back door on the comprom ... Read More
|
|
Microsoft
|
wmism23.exe
|
X
|
Added by the W32/Rbot-GSU worm and IRC backdoor.
|
|
Windows Security Alert
|
wsçntfy.exe
|
X
|
Added by the W32/Spelit-A mass-mailing worm and IRC backdoor.
|
|
NetworSVSA
|
wnipsvr.exe
|
X
|
Added by the W32.Bratsters worm.
|
|
syWMI Performance Adapter Services
|
wmiapsrvs.exe
|
X
|
A variant of the RBot family of worms and IRC backdoor Trojans.
|
|
winpsa32
|
winpsa32.dll
|
X
|
Identified as the Trojan.Agent.qt malware.
|
|
Windows Utilities Manager
|
Windows.exe
|
X
|
A variant of the Sdbot family of worms and IRC backdoor Trojans.
|
|
Userinit
|
winsys16_070813.dll
|
X
|
Added by the W32/AutoRun-C Trojan. When run, this infection will disable antivirus programs running on your computer. Please note that the rundll32.ex ... Read More
|
|
ssms.exe
|
winn.exe
|
X
|
Added by the W32/Sdbot-DHE worm and IRC backdoor.
|
|
ytghyuiokjnmvrq
|
wincab.sys
|
X
|
Added by the Mal/RootKit-A rootkit. The service and display name are typically random. ... Read More
|
|
{4F12545B-1212-1314-5679-4512ACEF8904}
|
wddpri.dll
|
X
|
Added by the Troj/QQPass-AOZ Trojan.
|
|
wmphost
|
wmphost.dll
|
X
|
Malware related to Smitfraud infections.
|
|
wmpdev
|
wmpdev.dll
|
X
|
Malware related to Smitfraud infections.
|
|
WinSpyDemo
|
WinSpyDemo.exe
|
X
|
Added by the WinSpy rogue anti-spyware program. WinSpy is a misleading application that may give exaggerated reports about potential risks on the comp ... Read More
|
|
Windows Server Client Verification Service
|
wscvs.exe
|
X
|
A variant of the Backdoor.Ranky malware.
|
|
crypt32unchain
|
wlnotlfy.dll
|
X
|
Added by the TSPY_AGENT.AAVG spyware Trojan.
|
|
AdobeReaderPro
|
winini.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Audio Device Manager
|
windrivers.exe
|
X
|
A variant of the Backdoor.Win32.IRCBot.afc family of worms and IRC backdoor Trojans. ... Read More
|
|
Internet
|
WinSUp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
Windows Update.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Video Camera Frog
|
wcamfrog.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Kernel Server
|
wkserver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wab.exe
|
wab.exe
|
X
|
A variant of the SDBot.bhk family of worms and IRC backdoor Trojans.
|
|
Microsoft Visual Application
|
winsyshp.exe
|
X
|
A variant of the SDBot.blt family of worms and IRC backdoor Trojans.
|
|
msupdates
|
win32chk.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.aad family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Connection Extension
|
wcmsvc.exe
|
X
|
A variant of the SDBot family of worms and IRC backdoor Trojans.
|
|
Windows Drivers Version
|
WinDV.exe
|
X
|
A variant of the SDBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
winserv.exe
|
X
|
Identified as the Trojan.Win32.Agent.awz malware.
|
|
mjd
|
w32_mjd.dll
|
X
|
Identified as a variant of the W32.Mimbot malware.
|
|
WindowsUpdate.exe
|
WindowsUpdate.exe
|
X
|
Identified as a SpamTrojan malware.
|
|
Windows Population Logger
|
winpo32.exe
|
X
|
Identified as the WORM_AGENT.YKR malware.
|
|
wanman.exe
|
wanman.exe
|
X
|
A variant of the Win32/Rbot.HDO family of worms and IRC backdoor Trojans.
|
|
Win32 Info
|
windowsnfo.exe
|
X
|
A variant of the W32/Spybot.SLI family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
AVP sub
|
Winspss.exe
|
X
|
Added by the Troj/Dloadr-BDM Trojan.
|
|
winlogon
|
winlogon.dll
|
X
|
Identified as the Trojan.Popuper malware.
|
|
waumgr
|
waumgr.exe
|
X
|
A variant of the W32/Sdbot.BNM family of worms and IRC backdoor Trojans.
|
|
Windows Installer Manager
|
winins.exe
|
X
|
Added by the W32/Sdbot-DHP worm and IRC backdoor.
|
|
Microsoft DLL Verifier
|
winavguard.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft DLL Verifier
|
wind0w.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
MSN
|
wkssvr.exe
|
X
|
Added by the W32/IRCBot-XT worm.
|
|
Audio Device Manager
|
winfp.exe
|
X
|
Added by the W32/IRCBot-XS worm.
|
|
{AA6B979A-796F-452A-94B3-DF1F17B72031}
|
winpow32.dll
|
X
|
Added by the Troj/Lineag-BJ information stealing Trojan for the online game Lineage. ... Read More
|
|
Mims service
|
winmngr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wdcs
|
wdcs.exe
|
X
|
A variant of the W32/SDBot.AWGW family of worms and IRC backdoor Trojans.
|
|
Windows Plug and Play
|
wpnsvc.exe
|
X
|
A variant of the W32/SDBot family of worms and IRC backdoor Trojans.
|
|
wdfmgr.exe
|
wdfmgr.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.bti family of worms and IRC backdoor Trojans. ... Read More
|
|
Microsoft windows FTPd
|
winnthosts.exe
|
X
|
A variant of the W32/Rbot-FUS family of worms and IRC backdoor Trojans.
|
|
Winsock2 driver
|
WINLOGO.EXE
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Winsock2 driver
|
wuaumqr12.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Windows Image Acquisition (WIASC)
|
WIAcs.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Image Acquisition (WIASSC)
|
WIAcss.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Login Screen
|
winlogin.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Logins Screen
|
winlogins.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Logon Screen
|
winlogon.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Windows Logons Screen
|
winlogons.exe
|
X
|
A variant of the Backdoor.Rizo.A backdoor worm.
|
|
Display Device Driver
|
winadll.exe
|
X
|
Unidentified malware.
|
|
MSN
|
wksvr.exe
|
X
|
Added by the W32/IRCBot-XU worm and IRC backdoor.
|
|
Windows Update
|
winlogonEvt.exe
|
X
|
Added by the Troj/VB-DXM Trojan.
|
|
{143404b0-ee92-40a7-8705-06fba9a7abf4}
|
wqzdtjg.dll
|
X
|
Added by a Zlob Trojan which installs AntiVirgear 3.7 and display fake security alerts in your Windows taskbar. ... Read More
|
|
winctl
|
winctl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winmfu32
|
winmfu32.dll
|
X
|
Identified as the Trojan.Win32.Agent.qt/BackDoor-CVT malware.
|
|
wsnpoem.sys
|
wsnpoem.sys
|
X
|
Identified as the Backdoor.Win32.Small.lu/Rootkit.V malware.
|
|
Version3
|
winviews32.dll
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Updates
|
wgcptsud.exe
|
X
|
Added by the W32/Rbot-GTF worm and IRC backdoor.
|
|
scApp
|
wmiprvse.exe
|
X
|
Added by the W32/SillyFDC-AW worm.
|
|
Messanger modix Configuration
|
winmsn.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.aie family of worms and IRC backdoor Trojans. ... Read More
|
|
Microsoft startup
|
wmpIayer.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows USB v3.2
|
wsvc.exe
|
X
|
A variant of the WORM_SDBOT family of worms and IRC backdoor Trojans. This infection hides itself using the msdirectx.sys rootkit. ... Read More
|
|
STV
|
winscrne.exe
|
X
|
A variant of the WORM_SDBOT family of worms and IRC backdoor Trojans.
|
|
Windows Service Manager
|
winmgr32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winamp Player 6
|
Winamp6.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
Winsock2 driver
|
winsock3.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
winjvd32
|
winjvd32.dll
|
X
|
Identified as the Trojan.Agent.qt/Win32/Nebuler.BW malware.
|
|
Windows File Verification Service
|
wfvs.exe
|
X
|
Identified as a variant of the Backdoor.Ranky malware.
|
|
Windows Bool Service
|
WinBool32.exe
|
X
|
Added by the Troj/Agent-GCV Trojan.
|
|
Microsoft Windows Updater2
|
WINUPDATE2.EXE
|
X
|
Added by the W32/Rbot-GTR worm and IRC backdoor.
|
|
w32tcomr
|
w32tcomr.dll
|
X
|
Added by the WORM_STRATION.RE worm.
|
|
WinRAR
|
WinRAR.exe
|
X
|
Added by the W32.Snaban worm. W32.Snaban is a worm that spreads by copying itself to removable drives and network drives on the compromised computer. ... Read More
|
|
lost
|
WinUpdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
windowsapp.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
systems usb driver
|
Windows2.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Microsoft Verifier
|
winauth23.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Registry Name
|
WinUUpdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Input Service
|
wibsvc.exe
|
X
|
A variant of the Backdoor.Win32.SdBot.bzc family of worms and IRC backdoor Trojans. ... Read More
|
|
Words
|
Words.exe
|
X
|
A variant of the AdWare.Win32.Agent.dn adware.
|
|
Local Services
|
winserv32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
w32s
|
win442.dll
|
X
|
A variant of the Backdoor.Win32.IRCBot.bam family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Update SP3
|
Windat.EXE
|
X
|
Added by the W32/Rbot-GTS worm and IRC backdoor.
|
|
Windows Service Find
|
wrfkuk.exe
|
X
|
Added by the Troj/IRCBot-XZ worm and IRC backdoor.
|
|
Windows Image
|
wintimage.exe
|
X
|
A variant of the SDBot worm and IRC backdoor.
|
|
winazs32
|
winazs32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.qn dialer.
|
|
WinSL
|
WinSL.exe
|
X
|
Added by the Spyware.StarLogger spyware. Spyware.StarLogger is a spyware program that may steal sensitive information from the computer. ... Read More
|
|
Win32 Critical File
|
Win32.exe
|
X
|
Added by the W32/Rbot-GUB worm and IRC backdoor.
|
|
Windows 32bit System Manager
|
win32sys.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Service Agent
|
wgl23.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Config 32
|
win32conf.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
winenv
|
winenv.exe
|
X
|
A variant of the Backdoor:W32/SdBot.BZY family of worms and IRC backdoor Trojans. ... Read More
|
|
Audio Device Manager
|
WNDXP.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Telecoms Center
|
winrestore.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Telecoms Center
|
winupcd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
win32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
WinDrv32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update
|
wkops.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update 32
|
windowsp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Machine
|
winupdte.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Update Device Drivers
|
wuauclt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\wuaucl ... Read More
|
|
MSN
|
win32dll.exe
|
X
|
Added by the Troj/Jenny-A Trojan.
|
|
WebSpyShield
|
WebSpyShield.exe
|
X
|
Added by the WebSpyShield rogue security software. WebSpyShield is a misleading application that may give exaggerated reports of threats on the comput ... Read More
|
|
Microsoft Windows Communicator for NT/XP
|
wincomm.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows DLL Services Configuration
|
windll32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Drivers
|
windrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Secure
|
windocs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Updata
|
windows.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update
|
WINUPDATE.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Update 32
|
winupdate32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows Updates
|
wsap32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Ms load for Windows NT
|
winskd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Ms sock for Windows NT
|
winser.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MS Unix Binary
|
win32ttb.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MS Unix Binary
|
wrdpad05.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Mlcrosoft Updates
|
wmwplayers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MS-Windows Login Service
|
winlogin32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win Critical File
|
win.exe
|
X
|
A variant of the W32/IRCbot.BGA.worm family of worms and IRC backdoor Trojans.
|
|
Windows Firewall Service
|
wfsvc.exe
|
X
|
Added by the W32/IRCBot-YL worm and IRC backdoor.
|
|
system32 master
|
windowsys.com
|
X
|
Added by the W32/Sdbot-DIE worm and IRC backdoor.
|
|
WinAble
|
winable.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Adload.lv malware.
|
|
winshow
|
winshow.exe
|
X
|
Added by the Troj/VB-DXP backdoor Trojan.
|
|
Intec Service Drivers
|
wing32.exe
|
X
|
A variant of the W32/Rbot-BCR family of worms and IRC backdoor Trojans.
|
|
mssonfig
|
winupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Network DDE DSDM
|
WinDDE.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NTSF MICROSOFT SYSTEM
|
WinAbring.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
{5640F1A1-C8EB-170B-7DE1-F55B77CA0E98}
|
winocxdll.exe
|
X
|
Added by the Troj/Dloadr-BEV Trojan.
|
|
wscntfy
|
wscntfy.exe
|
X
|
Added by the W32/VBSp-A worm.
|
|
<random name>
|
winlogan.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Small.gdv malware.
|
|
Adsl Not-A-Virus
|
winlogn.exe
|
X
|
Added by the W32/Rbot-GUU worm and IRC backdoor.
|
|
mscheck
|
wincheck071008.dll
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Agent.adq malware.
|
|
Windows Rescue System
|
winsto.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.avf malware.
|
|
Undefined
|
winter.exe
|
X
|
Fakealert Trojan which shows fake security alerts on your computer.
|
|
wmsrc.exe
|
wmsrc.exe
|
X
|
Rogue security software called Privacy Redeemer that displays exaggerated results about security issues on your computer. ... Read More
|
|
SPHandler
|
wuauclt23.exe
|
X
|
Added by the W32/Sdbot-DIL worm and IRC backdoor.
|
|
Windows Helper
|
winhelp.exe
|
X
|
Identified as a variant of the Trojan-Spy.Win32.Banker.ape malware.
|
|
WindowsUpdateManager
|
wupdmng.exe
|
X
|
Identified as a variant of the Trojan.Win32.Mnless.sun malware.
|
|
_
|
wmq.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.euu malware.
|
|
g_rkt
|
win32_rkt.sys
|
X
|
Identified as a variant of the Win32.Rootkit.Agent.MO rootkit.
|
|
Remote Desktop Help Session Manager
|
WinRDH.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
secure socket layer
|
wins32a.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
spoolsvs
|
wincfy.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinTouch
|
WinTouch.exe
|
X
|
Identified as a variant of the Win32/Matcash.BU malware.
|
|
winexy32
|
winexy32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Agent.qt malware.
|
|
Sysctrls
|
winupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
sysprep
|
wscntfx.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SYSTEM
|
windmupdr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System
|
winupd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SystemTray
|
winligom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
System Update
|
winamp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Updade Windows
|
winlogom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Update
|
winzip.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ValueWin
|
Wink2sk7.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win32
|
winnnit.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winamp Media Player
|
winaamp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windowfdgfds DLL fgfdg Verifier
|
winsecure.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Anti Verifier
|
Windows-Anti.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Application Security
|
winappp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Automatic Updater
|
windrg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsFirewallSvc
|
winsvcup.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Guardian
|
WinGuard.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows HTTP services
|
winhttps.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Login Manager
|
winlogin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Logon Application
|
win32help.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Media Player Service
|
wmedia.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Microsoft Update
|
wintask32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
vbe
|
win.vbe
|
X
|
Added by the Bat/LoseSlp-A worm.
|
|
<not used>
|
winsys16_061230.dll
|
X
|
Added by the WORM_AGENT.AFFZ worm. Please note that rundll32.exe is a legitimate program. ... Read More
|
|
winbfi32
|
winbfi32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Agent.qt Trojan.
|
|
wmupdate
|
wmupdate.exe
|
X
|
Added by the Troj/Agent-GGJ Trojan.
|
|
bayoneting
|
wygomd.dll
|
X
|
Zlob Trojan which installs the Virus Protect 3.8 rogue anti-spyware program. This program displays fake security alerts stating that your computer ha ... Read More
|
|
winhld32
|
winhld32.dll
|
X
|
Identified as a variant of the Trojan.Agent.qt malware.
|
|
w0rmname.exe
|
w0rmname.exe
|
X
|
Added by the W32/Woned-C worm.
|
|
(default)
|
winmain.exe
|
X
|
Added by the Troj/LdPinch-RC Spyware Trojan.
|
|
Microsoft Updote
|
winmsg.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
System Service
|
WinFx.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Updater
|
WinUpdater.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
winserver Server
|
winserver.exe
|
X
|
Added by the Troj/Agent-GHC Trojan.
|
|
Microsoft Windows TCP Protocol
|
wintcps.exe
|
X
|
Added by the W32/Sdbot-DIY worm and IRC backdoor.
|
|
Windows Logical Driver
|
wzrsvc.exe
|
X
|
Identified by Kaspersky Anti-Virus as a variant of the Backdoor.Win32.IRCBot.arv worm and IRC backdoor. ... Read More
|
|
scNine
|
windates.exe
|
X
|
Unknown malware.
|
|
geosphere
|
wowlze.dll
|
X
|
Zlob Trojan which installs the VirusProtect 3.9 rogue anti-spyware program. This program displays fake security alerts stating that your computer has ... Read More
|
|
winmgmt
|
wmiprvse.exe
|
X
|
Added by the Troj/Agent-GHP Trojan.
|
|
Microsoft Windows TCP Analysis
|
winmwta.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
WinRegork
|
Walcult.exe
|
X
|
Identified by Dr. Web as a variant of the Trojan.PWS.Banker.origin Trojan.
|
|
windows.exe
|
windows.exe
|
X
|
Added by the W32/SillyP2P-A worm.
|
|
Windows Remote Addressing
|
wnpcgs.exe
|
X
|
Added by the Troj/Delf-EZN Trojan.
|
|
smsger
|
Win.exe
|
X
|
A variant of the W32/SDBot.BGIU family of worms and IRC backdoor Trojans.
|
|
winepi32
|
winepi32.dll
|
X
|
Identified as Win32/Nebuler variants.
|
|
winosz32
|
winosz32.dll
|
X
|
Identified as Win32/Nebuler variants.
|
|
winwim32
|
winwim32.dll
|
X
|
Identified as Win32/Nebuler variants.
|
|
winmsg.exe
|
winmsg.exe
|
X
|
Added by the W32/Blehs-A worm.
|
|
wscmgr
|
wscmgr.exe
|
X
|
Added by the W32/Autorun-AA removable media worm.
|
|
Winservices
|
winlogon.exe
|
X
|
Added by the Troj/KeyLog-JQ keylogging Trojan. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
DomPlayer Service
|
wakeservice.exe
|
X
|
Added by the DomPlayer. DomPlayer is a potentially unwanted application that may download another program and other security risks. ... Read More
|
|
oledll
|
wmldap.dll
|
X
|
Identified as a variant of the Trojan-PSW.Win32.Agent.uv malware.
|
|
winthelp
|
winthelp.exe
|
X
|
A Trojan installed by a fake video codec supposedly required to view a movie on the Internet. ... Read More
|
|
Windows Update Automation
|
winuptdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
sis32
|
winsos.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Small.gye malware.
|
|
winroot
|
winsn.exe
|
X
|
Identified as a variant of the Trojan-PSW.Win32.QQPass.aom malware.
|
|
<not used>
|
wuaucl.exe
|
X
|
Added by the W32.Vapka.A worm. W32.Vapka.A is a worm that spreads by copying itself to removable media and steals confidential information. ... Read More
|
|
WinSpyKiller
|
WinSpyKiller.exe
|
X
|
Added by the WinSpyKiller rogue anti-spyware program. Uses false advertising and exaggerated scan results as a tactic to have you purchase the softwa ... Read More
|
|
MSN
|
wplayer.exe
|
X
|
Added by a variant of the Win32/Pushbot worm and IRC backdoor. Win32/Pushbot is a family of worms that spread using MSN Messenger. ... Read More
|
|
Windows32
|
win.exe
|
X
|
Added by the Troj/Banker-EKI Trojan.
|
|
UserLogon
|
winlogon.exe
|
X
|
Added by the W32/VB-DYF worm. This infection should not be confused with the legitmate C:\Windows\System32\winlogon.exe. ... Read More
|
|
Windows Reverse Preperation
|
winrvp.exe
|
X
|
Identified as a variant of the Backdoor.Win32.IRCBot.axp worm.
|
|
Winupdate Engine
|
wupeng.exe
|
X
|
Added by the MalwareCrush program. MalwareCrush is a rogue anti-spyware program installed through Trojans and other malware. When run, the program wi ... Read More
|
|
<not used>
|
win32ipzip.dll
|
X
|
Added by the Trojan.Goldun Trojan.
|
|
wineij32
|
wineij32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
winemx32
|
winemx32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
wingsa32
|
wingsa32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
winhoq32
|
winhoq32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
winmxw32
|
winmxw32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
winuqw32
|
winuqw32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
winwly32
|
winwly32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
msnnt
|
winampb.exe
|
X
|
Identified as a variant of the Trojan.Win32.Agent.tl malware.
|
|
autorun
|
winmain.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf.cns malware.
|
|
userinit
|
winmain.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf.cns malware.
|
|
winrvc32
|
winrvc32.dll
|
X
|
Identified as a variant of the Trojan.Win32.Dialer.yz malware.
|
|
Windows Registry DLL
|
winregdll.exe
|
X
|
Unknown malware.
|
|
WinPerformance
|
WinPerformance.lnk
|
X
|
Added by the RogueAntiSpyware.WinPerf rogue anti-spyware proram.
|
|
service
|
win32ev.exe
|
X
|
Added by the Troj/Bckdr-QKR backdoor Trojan.
|
|
Windows Account Alternation
|
wauclt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Event Service
|
winserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Logical Connection
|
wcnsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Memory Manager
|
windowsmem.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Registry Control
|
winreg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Reversed Virus Protection
|
winrsvp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System Manager
|
winsysmngr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Time Keeper
|
windowstime.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Windows XP/2K Explorer
|
winexplorer.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
winsck.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Shark.bb malware.
|
|
Microsoft Word
|
WINWORD.EXE
|
X
|
Added by the W32.Kangero.A worm. W32.Kangero.A is a worm that copies itself to mapped drives. It also lowers security settings on the compromised comp ... Read More
|
|
SystemW
|
Winalx.bat
|
X
|
Added by the Virus.Win32.HLLW.Anirak virus/worm.
|
|
Access Control App
|
winsto.exe
|
X
|
Identified as a variant of the Win32/TrojanDownloader.Small.CYF Trojan.
|
|
Windows Service Supply
|
winsupply.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NET Service
|
wmssvc.exe
|
X
|
Added by the Troj/Trinity-C Trojan.
|
|
{9311b8a8-0fd7-f849-5b42-67bbb89472f7}
|
C:\windows:schost.exe
|
X
|
Identified as a variant of the Troj/Poison-K backdoor and keylogger. It is advised that once you remove this infection you immediately change all of ... Read More
|
|
7G21B2J74A
|
wisyst32.exe
|
X
|
Added by the Troj/Dloadr-BHE Trojan.
|
|
auto
|
win32.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Small.hpb malware.
|
|
Windows Event Detection
|
wecsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Event Provider
|
wposvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
<not used>
|
WgaTrays.exe
|
X
|
Added by the W32.SillyDC worm.
|
|
S-1-5-21-1635847982-2902227367-3824404516-500}
|
windoskey.exe
|
X
|
Added by the Troj/Dropin-A Trojan.
|
|
Windows Update
|
win32update.exe
|
X
|
A variant of the Worm.SdBot.FTK family of worms and IRC backdoor Trojans.
|
|
winlog
|
winlog.exe
|
X
|
Added by the Backdoor.Win32.Bifrose.acs backdoor Trojan.
|
|
Windows Live Msgs
|
wlivemsg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Live Msgs!
|
wlivemsgs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Live Manager
|
winlivemgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
SysSupport
|
WindowsServerService.exe
|
X
|
Added by the W32.Degnax@mm worm. W32.Degnax@mm is a mass-mailing worm that gathers email addresses from the compromised computer. It also spreads via ... Read More
|
|
Windows Defender
|
wdc*.exe
|
X
|
A variant of the Trojan.Fakealert malware. This infection displays fake Windows Defender alerts which link to spyware-kicker.com. ... Read More
|
|
Windows Defender Adds
|
wda*.exe
|
X
|
A variant of the Trojan.Fakealert malware. This infection displays fake Windows Defender alerts which link to spyware-kicker.com. ... Read More
|
|
Windows Defender Monitor
|
wdm*.exe
|
X
|
A variant of the Trojan.Fakealert malware. This infection displays fake Windows Defender alerts which link to spyware-kicker.com. ... Read More
|
|
Windows Defender Updater
|
wdu*.exe
|
X
|
A variant of the Trojan.Fakealert malware. This infection displays fake Windows Defender alerts which link to spyware-kicker.com. ... Read More
|
|
Windows Console Norms
|
wnbsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Console Source
|
wnbsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
<not used>
|
wowfx.dll
|
X
|
Identified as a variant of the Win32/TrojanDownloader.Fakealert.G Trojan. This Trojan displays fake security alerts on your computer. ... Read More
|
|
Windows mod Verifier
|
Windows-mod.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Mode Verifier
|
WindowsActivation.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows modez Verifier
|
Window2.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows modez Verifier
|
Windows-.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows modez Verifier
|
winl0g0z.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows modez Verifier
|
winlogom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsRegKey update
|
winhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsRegKey update
|
winupdte.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Registers
|
winservicess.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Registry
|
winhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Registry Name
|
winupdate_.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Secure Update
|
wupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Security Update
|
winupdat.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Service
|
WINSVC.EXE
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Service Agent
|
winserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows spyware remover
|
Windows-spyware.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System32
|
wingrd32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
windowsupdats.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Automation
|
winupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Automation
|
wndupdate.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Firewall System
|
winmsfws.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update GUI Executable x32x
|
wupdategux32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Manager
|
WindowsUpdateManager.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Updates
|
winlogon32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Winhlp32 Stub Service
|
winhlp32.pif
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Workstation Service
|
wor.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows-Xdate
|
wuauclt4.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows-Xordate
|
wuauclt9.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows-Xordate
|
wuauclt6.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winguard
|
wingrd32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft wscntfy Service
|
wscntfy.exe
|
X
|
Added by the Troj/Tanto-H Trojan. This infection should not be confused with the legitimate C:\Windows\System32\wscntfy.exe file. ... Read More
|
|
Windows Console Component
|
wrasvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Network Security Service
|
wnss.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Agent.dvq backdoor Trojan.
|
|
Windows Taskmanager
|
wdtsvc.exe
|
X
|
Unknown malware.
|
|
Winsock driver
|
wuaumqr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winsock32
|
winsock32
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 driver
|
win.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock2 driver
|
winnt4.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winystems25
|
winystems.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Control Server
|
wlmsvcxp.exe
|
X
|
Added by the W32/Bckdr-QLH worm and IRC backdoor.
|
|
LoggonAdministrator
|
WINLOGON.EXE
|
X
|
Added by the W32.Korron.A worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
agony
|
wininit.sys
|
X
|
Added by the NTRootKit-K rootkit.
|
|
WSockDrv32
|
WSockDrv32.exe
|
X
|
Unknown malware.
|
|
Winsock2 driver
|
WINDATE.EXE
|
X
|
Added by the W32.Spybot.Worm worm and IRC backdoor.
|
|
WindowsIPRelay
|
winipsvc.exe
|
X
|
Added by the W32/IRCBot-AAA worm and IRC backdoor.
|
|
Windows Console
|
wkssvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
HOT FIX
|
windsys2.exe
|
X
|
Identified as a variant of the Forbot worm.
|
|
System
|
wind32.exe
|
X
|
Added by an unknown malware.
|
|
jkdfj94kgdftdf
|
winlogan.exe
|
X
|
Identified by Trend Micro as a variant of the PE_VIRUT.XV spamming Trojan.
|
|
MSN
|
winsystem.exe
|
X
|
Added by the W32/Sdbot.worm.gen.a worm and IRC backdoor.
|
|
TBMonEx
|
wdfmgr.exe
|
X
|
Added by the W32/MumaWow malware.
|
|
Windows Video Component
|
wvcsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Display Driver
|
windsp.exe
|
X
|
Identified by Kaspersky antivirus as the Backdoor.Win32.Rbot.aeu worm and IRC backdoor. ... Read More
|
|
winetn32
|
winetn32.dll
|
X
|
Added by the BackDoor-CVT malware.
|
|
W32PT
|
W32PT.dll.vbs
|
X
|
Identified by Kaspersky as a variant of the Worm.VBS.Solow.a worm.
|
|
IExplorerService
|
WinSock.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Visual Studio
|
w32mvs.exe
|
X
|
Identified by VBA32 as a variant of the Backdoor.Win32.Agent.cjo malware.
|
|
Windows Printing Driver
|
WinPrint.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Network Services
|
winnetwork.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Network Services
|
winnetwork32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Network Services
|
winnetwork64.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winzwr32
|
winzwr32.dll
|
X
|
Added by the Trojan.Win32.Dialer.qn malware.
|
|
windefend
|
windefend.exe
|
X
|
Related to the WinAntivirus rogue anti-spyware program.
|
|
wp
|
wp.exe
|
X
|
Added by the W32/Rbot-GWA worm and IRC backdoor.
|
|
Windows Keyboard Services
|
winkeybrd.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
AvpWx
|
WErcx.exe
|
X
|
Identified by Kaspersky antivirus as a variant of the Backdoor.IRC.Agent.a malware. ... Read More
|
|
Windows Printing Driver
|
WinSpooler.exe
|
X
|
Unknown malware.
|
|
WinUpdating
|
WinUpdating.exe
|
X
|
Unknown malware.
|
|
Windows Messenger Share
|
wmssvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Problem Doctor
|
windr32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Problem Doctor
|
windr64.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messenger Connect
|
wmdsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Problem Doctor
|
windr128.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
didact
|
wuuawkz.dll
|
X
|
Zlob Trojan that infects you with the VirusHeat rogue anti-spyware program. Please use the guide below to remove this infection. ... Read More
|
|
WinReanimator
|
WinReanimator.exe
|
X
|
Added by the WinReanimator rogue anti-spyware program. WinReanimator uses aggressive advertising and displays false positives. ... Read More
|
|
WinRam
|
WinRam.dll
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Agent.feh malware. ... Read More
|
|
winghy32
|
winghy32.dll
|
X
|
Identified by Kaspersky antivirus as a variant of the Trojan.Win32.Dialer.yz malware. ... Read More
|
|
wvurqqo
|
wvurqqo.dll
|
X
|
Identified by Kaspersky antivirus as a variant of the not-a-virus:AdWare.Win32.Virtumonde.gen malware. ... Read More
|
|
Windows Cleaner Service
|
winclean.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Virtual Services
|
winvirtual.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MS NET Service
|
wiadss.exe
|
X
|
Identified as a variant of the Net-Worm.Win32.Kolabc.b worm.
|
|
Google Online Search Service
|
winlagons.exe
|
X
|
Identified by Bitdefender as a variant of the Trojan.Downloader.Small.AAJM Trojan. ... Read More
|
|
MSN
|
wdlrss.exe
|
X
|
Identified as a variant of the Backdoor.Win32.SdBot.cwm worm and IRC backdoor.
|
|
Windows Update Manager Security Service
|
wumss.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Agent.ekc backdoor Trojan.
|
|
Windows Messenger Panel
|
wbcsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messenger Starter
|
wmvsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Virtual Services
|
winvirtual32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft Service Login Manager
|
winlogin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Audio Device Manager
|
WinNT.exe
|
X
|
A variant of the Backdoor.IRCBot.USP family of worms and IRC backdoor Trojans.
|
|
WLCtrl32
|
WLCtrl32.dll
|
X
|
Identified as a variant of the Email-Worm.Win32.Agent.e worm.
|
|
Windows Security Tool
|
WinSecure.exe
|
X
|
Added by the Troj/Agent-GPY Trojan.
|
|
SMSERIALSTARTER
|
win32st.exe
|
X
|
Trojan installed with the SpyBurner rogue anti-spyware program.
|
|
SMSERIALWORKERSTARTER
|
winstrse.exe
|
X
|
Trojan installed with the SpyBurner rogue anti-spyware program.
|
|
Windows Messenger Fileshare
|
wivsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wemwpxpjdb
|
wemwpxpjdb.exe
|
X
|
Added by the Troj/Agent-GQB Trojan.
|
|
djuka
|
wbchha.dll
|
X
|
Zlob Trojan that infects you with the VirusHeat rogue anti-spyware program. Please use the guide below to remove this infection. ... Read More
|
|
Microsoft Web CP Manager
|
webcp32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Flash Driver
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft CP Web Manager
|
webcp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows DDE
|
wmservet.exe
|
X
|
Added by the Troj/OnLineG-AO password-stealing Trojan.
|
|
Streams Drivers
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
ws2_64.exe
|
ws2_64.exe
|
X
|
Identified as a variant of the Trojan-Proxy.Win32.Agent.ji malware.
|
|
WinIFixer
|
WinIFixer.exe
|
X
|
Added by the WinIFixer rogue anti-spyware program.
|
|
WindowsUpdate
|
WindowsUpdate.scr
|
X
|
Added by the W32/Scrapkut-A worm.
|
|
infoxmid
|
wseqnx.inf
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
Windows Default Server
|
wfdmgrsp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows File XP Manager
|
wfdmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Logical Adapter
|
wsrsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Taskmanager
|
winpifviewer.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Default Server
|
winampa.exe
|
X
|
Added by the WORM_IRCBOT.AUN worm and IRC backdoor.
|
|
Windows Registry XP
|
winxptdl.exe
|
X
|
Added by the WORM_IRCBOT.AUN worm and IRC backdoor.
|
|
WinMed
|
winmed.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Agent.ktf malware.
|
|
Windows Instruction Services
|
winstruct32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Keyboard Services
|
winkeyboard.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Media Server!
|
wmserver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Mouse Services
|
winmouse.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Mouse Services
|
winmouse64.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Virus Scanner
|
winvsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
1Google Online Search Service
|
winlugan.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Winlagons.ak malware.
|
|
werasqlp
|
werasqlp.cur
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
Windows Scheduler
|
wmscheduler.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Media Server
|
wmserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WmdmPmSn
|
wmdmsvc32.dll
|
X
|
Added by the Troj/Dloadr-BJH Trojan.
|
|
Googles Onlines Search Services
|
wnslogan.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Winlagons.an malware.
|
|
SystemMigration
|
WinMedia.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Hosts
|
winhosts.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Spooler
|
winsplr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
hyperproduction
|
wcscqa.dll
|
X
|
Zlob Trojan that infects you with the VirusHeat rogue anti-spyware program. Please use the guide below to remove this infection. ... Read More
|
|
runwinlogon
|
winlogon.exe
|
X
|
Identified as a variant of the SpamTool.Win32.Agent.gj malware.
|
|
Win Defrag
|
windfrag.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win Defrag!
|
windefrag.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Booter!
|
winbooter.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Driver
|
windrive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Server
|
winserv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Server!
|
winsvr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Spool
|
winspool.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WLogon
|
wlogon32.dll
|
X
|
Identified as a variant of the Trojan-Spy.Banker malware.
|
|
1Google Online Search Service
|
winlegal.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Winlagons.an malware.
|
|
Wifi Boot
|
wifiboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Booter
|
wifibooter.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Configuration
|
wificonfig.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Configuration!
|
wificonfigs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Connection
|
wificon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Connection!
|
wificonnect.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Debug
|
wifidebug.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Loader
|
wifiload.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Loader!
|
wifiloader.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Wifi Setup
|
wifisetup.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Boot
|
winboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
CommonService
|
winup.exe
|
X
|
Added by the Troj/Dloadr-BJJ Trojan.
|
|
system
|
Winhelp.exe
|
X
|
Added by the W32.Imaut.CN worm. W32.Imaut.CN is a worm that spreads through Yahoo! Instant Messenger and network shares. It may also download potentia ... Read More
|
|
Windows Config
|
winconfig.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Drivers
|
windrivers.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Google Online Search Service
|
winlast.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Configurator
|
winconf.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System Manager
|
winsysmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows System
|
winsystem.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinSys3
|
winsys3.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Banload.ibq malware.
|
|
Windows Update
|
winupd.exe
|
X
|
Added by the Troj/Dwnldr-ZLD Trojan.
|
|
Windows Boot
|
windowsboot.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Conf
|
windowsconf.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Driver!
|
windriver.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Reserve
|
winrvs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Process Dump
|
windumper32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Security Center Notification App
|
wscnfty.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Security Center Notification Appl
|
wscnfty.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Taskbar Manager
|
wlmsn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update AutoUpdate Client
|
waucult.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update Host
|
winupsvc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Application Layer Gateway
|
WeRecl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Application Layer Service
|
weRecv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSMSGNER
|
wcbi.exe
|
X
|
Added by the Troj/Bckdr-QMS backdoor Trojan.
|
|
<not used>
|
wsnpoema.exe
|
X
|
Identified as a variant of the Troj/SpyAgent-H malware.
|
|
Windos Service Protocol Line
|
wspl.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
WinXProtector
|
WinXProtector.exe
|
X
|
Added by the WinXProtector rogue anti-spyware program.
|
|
wldmgr
|
wldmgr.exe
|
X
|
Added by the W32.Mytob.SA@mm worm.
|
|
Windows MSN Updates
|
wnd32.exe
|
X
|
Added by the Troj/IRCBot-ABA worm and IRC backdoor.
|
|
wmpdriver
|
wmpdriver.exe
|
X
|
Added by the Troj/Lurk-A Trojan.
|
|
Microsoft XP TCP Ack Timing
|
winxptcp.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Win32 Servermgr12345
|
winimgr.exe
|
X
|
Added by the W32/Tiotua-M worm.
|
|
{8169E97B-3F20-C6CB-E19B-C29D99B4F767}
|
WinIni.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Delf.cxm malware.
|
|
Windows modez Verifier
|
wuamguard.exe
|
X
|
A variant of the Backdoor.Win32.Rbot.cya family of worms and IRC backdoor Trojans. ... Read More
|
|
Windows Live Msgr
|
wllivemsgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsUpdater
|
WinUpdter.exe
|
X
|
Added by the W32/Autorun.worm.cb removable media worm.
|
|
XMLmedia 10.0
|
wmsdkns.exe
|
X
|
Identified as a variant of the Trojan.Downloader.VB.VQL malware.
|
|
autoload
|
windowsupdate.exe
|
X
|
Identified as a variant of the WORM_SOCKS.D malware.
|
|
win23.exe
|
win23.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
MSSysInterv
|
winself.exe
|
X
|
Identified as a variant of the Trojan-Downloader.Win32.Small.ufd malware.
|
|
MSN Live Login Mgr
|
wlloginmsgs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wdmon
|
wdmon.exe
|
X
|
Added by the Infostealer.Ldpinch Trojan. Infostealer.Ldpinch is a password-stealing Trojan horse that attempts to steal information from an infected c ... Read More
|
|
ooocromosomasgenetics
|
Winlogon.vbs
|
X
|
Added by the VBS.Wisfidix worm. VBS.Wisfidix is a worm that spreads to preconfigured mapped drives on the compromised computer. Please note that the ... Read More
|
|
WPlayer
|
WPlayer.exe
|
X
|
Identified as a variant of the LDPinch.A malware.
|
|
Windows Live Messenger Addon
|
wllivemsngr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MsSecurity Updated
|
winself.exe
|
X
|
Added by the TROJ_DNSCHANG.EU Trojan.
|
|
wdpoefan
|
wdpoefan.dll
|
X
|
Identified as a variant of the Adware.Agent malware.
|
|
Sysctrls
|
win32dll.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
widuxngq
|
widuxngq.sys
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
Windows Network Policy Manager Service
|
wnpms.exe
|
X
|
Added by the Backdoor.Wnetpols backdoor Trojan.
|
|
REPCLIENT1
|
win.pif
|
X
|
Added by the W32/AutoRun-DO removable media worm.
|
|
regManager
|
WinSevices.exe
|
X
|
Added by the W32/VB-DZJ worm.
|
|
windowsmp
|
windowsmp.exe
|
X
|
Added by the W32/Autorun-DP removable media worm.
|
|
Microsoft Windows Express
|
websploit.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Live Messanger
|
wllmsngr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows NT application
|
winlogon.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Security Center
|
winmgr.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
windowsupdate
|
windowsupdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
WinLiveMessanger
|
wlliveapp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WServing Service
|
wserving.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Trojan-Downloader.Win32.Delf.gru malware. ... Read More
|
|
Windows Advance Firewall Protection Service
|
wafps.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Advanced GFX Devolping Software
|
wagfxds.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Client Login Identafacation System
|
wclis.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
winsyser.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
wetkadmr
|
wetkadmr.dll
|
X
|
Identified as a variant of the Adware.Agent malware.
|
|
vbwq cute
|
winnt.exe
|
X
|
Added by the W32.Madag.A worm. W32.Madag.A is a worm that spreads by copying itself to removable storage devices and infects .doc files. ... Read More
|
|
this free
|
winsyst.exe
|
X
|
Added by the W32.Madag.A worm. W32.Madag.A is a worm that spreads by copying itself to removable storage devices and infects .doc files. ... Read More
|
|
ws2_32
|
ws2_32.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Shutdown Service Launcher
|
wssl.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winexec32
|
win.exe
|
X
|
Added by the Troj/Banker-ELQ information stealing Trojan for online banking.
|
|
Microsoft
|
wplayer.exe
|
X
|
Added by the Troj/IRCBot-ABP worm and IRC backdoor.
|
|
WinNt32
|
WinNt32.dll
|
X
|
Identified as a variant of the TrojanDownloader:Win32/Cutwail.S malware.
|
|
PaRaY_VM
|
winlogon.exe
|
X
|
Added by the W32/Autorun-DV removable media worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
wzghui
|
wzghui.sys
|
X
|
Added by the Backdoor.Rustock backdoor rootkit.
|
|
Windows NT Logon Application
|
winlogon.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
Windows Control Server
|
wksmgrtsgs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinSysmc
|
Win32Sysmc.exe
|
X
|
Added by the Troj/Dloadr-BLU Trojan.
|
|
WinCtrl32
|
WinCtrl32.dll
|
X
|
Added by a variant of the Trojan-Downloader.Win32.Mutant.yf Trojan.
|
|
Windows Defender
|
windowsdefender.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Protector
|
winprot32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
WinSpywareProtect (ver. 5.1)
|
WinSpywareProtect.exe
|
X
|
Added by the WinSpywareProtect rogue anti-spyware program.
|
|
Windows UDP Control
|
winudspm.exe
|
X
|
Added by an unknown worm and IRC backdoor.
|
|
Microsoft
|
winline.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Wbcmgr
|
wbcmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Manager
|
winudpmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows SYN Control Center
|
winmnon32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Antivirus
|
wav.exe
|
X
|
Added by the Windows Antivirus 2008 rogue anti-spyware program.
|
|
Microsoft
|
winampaa.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
winudpmg.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
winuscn32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
wksvcsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winsock driver
|
win.exe
|
X
|
A variant of the W32.Spybot.Worm family of worms and IRC backdoor Trojans. This family of worms spread via mIRC and the Kazaa file sharing network. ... Read More
|
|
1
|
winx86.dll.js
|
X
|
Added by the JS/Uragon-A javascript worm.
|
|
Windows UDP Control Center
|
winlive32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
winupmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Time Service Diagnostic Tool
|
winscrvs.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
WinNt64
|
WinNt64.dll
|
X
|
Added by the Troj/DwnLdr-HEI Trojan.
|
|
Windows UDP Control Services
|
wksvcsc.exe
|
X
|
Added by the Troj/AntiAV-C backdoor Trojan.
|
|
waults
|
waults.exe
|
X
|
Added by the Backdoor.Bifrose.L backdoor.
|
|
winrun.dll
|
winrun.dll.vbs
|
X
|
Added by the VBS.Solow.G worm.
|
|
System32
|
winds32.exe
|
X
|
Identified as a variant of the Trojan:Win32/Tibs.FZ malware.
|
|
Wind32
|
Wind32.exe
|
X
|
Identified as a variant of the Backdoor.Win32.Poison.avs malware.
|
|
Asus Protocol Driver Control
|
wingptd.exe
|
X
|
Identified as a variant of the Trojan.Rootkit.Gen malware.
|
|
Internet
|
wins.exe
|
X
|
A variant of the Worm.Rbot.AAYF family of worms and IRC backdoor Trojans.
|
|
Windows xp
|
Wins.exe
|
X
|
A variant of the BKDR_RBOT.VH family of worms and IRC backdoor Trojans.
|
|
Windows Updates Agent
|
winupdate.exe
|
X
|
A variant of the Worm.Rbot.AAOO family of worms and IRC backdoor Trojans.
|
|
Winamp Media Player
|
winamap.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows ARP Detectionc
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Controls Center
|
winudmr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winamp Media Player
|
winamp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messanger Control Center
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Modifiet Amateur HTPB
|
wuaclt.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windowfdgfds DasdLL Verifier
|
winupdatr.exe
|
X
|
Identified as a variant of the WORM_AGOBOT.HZ worm.
|
|
wksscvs
|
wksscvs.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
windows
|
windowssys.exe
|
X
|
Added by the Troj/Banloa-FK Trojan.
|
|
wpvmqosg
|
wpvmqosg.dll
|
X
|
Identified as a variant of the Adware.Agent malware.
|
|
Windows UDP Control Center
|
winudpmgrs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
C:\Documents and Settings\All Users\Application Data\ADSL Software Limited\WinSpywareProtect\winspywareprotect.exe
|
winspywareprotect.exe
|
X
|
Added by the WinSpywareProtect rogue anti-spyware program.
|
|
MSN
|
wkssvrs.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Anti Virus Control Center
|
winavscan.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinX Security Center
|
WinX Security Center.exe
|
X
|
Added by the WinX Security Center rogue anti-spyware program.
|
|
WinDefender 2008
|
WDefDemo.exe
|
X
|
Added by the WinDefender 2008 rogue privacy program.
|
|
Windows UDP Control Center
|
winrofl32.exe
|
X
|
Added by the Troj/LdPinch-RZ Trojan.
|
|
Windows Driver Sup
|
windvrhost.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
winudpmgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Service Client
|
winsvcli.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Kernel Log
|
WinKettle.exe
|
X
|
Added by the Troj/Agent-HFA Trojan.
|
|
Windows Services
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
winudp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WindowsUpdate
|
wupdmgr98.exe
|
X
|
Identified as a variant of the MIRC/Backdoor malware.
|
|
Windows Services
|
w32services.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
w32service.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinAntispyware2008
|
WinAntispyware2008.exe
|
X
|
Added by the WinAntispyware2008 rogue anti-spyware program.
|
|
some
|
wcs.exe
|
X
|
Identified as a variant of the Adware/Netproject malware. Typically bundled with rogue anti-spyware programs and fake codecs. ... Read More
|
|
Windows ARP Detectioncx
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wistaantivirus
|
wistaantivirus.exe
|
X
|
Added by the Wista Antivirus rogue anti-spyware program.
|
|
Windows MSN Live Messenger
|
winlivemsn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messanger Control Center
|
winlogin.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
w32edus.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows WKS Services
|
wkssvr1.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
win
|
winupdt.exe
|
X
|
Identified as a variant of the BKDR_SMALL.GSJ malware.
|
|
win aggior
|
winupdt.exe
|
X
|
Identified as a variant of the BKDR_SMALL.GSJ malware.
|
|
win aggiornamento
|
winupdt.exe
|
X
|
Identified as a variant of the BKDR_SMALL.GSJ malware.
|
|
{10388970-0592-BCC4-1BCB-3147DA75A2F6}
|
wblinds.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
{10388970-0592-BCC4-1BCB-3147DA75A2F6}
|
wga.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Windows Services
|
winsysdll.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
wasfsd
|
wasfsd.sys
|
X
|
Trojan that create fake alerts and popups advertising rogue anti-spyware program. Though the guide below is not for this particular infection, it wil ... Read More
|
|
Generic Host Process for Win32 Services
|
winlogon.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans. This infection should not be confused with the legitimate C:\Windows\System32\winlog ... Read More
|
|
Win Config
|
winconfig.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messenger Live Startup
|
windowslivemsn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win Security
|
winsecure.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Temperate Services
|
wintmp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Local ISP
|
winthcr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Helper
|
wsctnfy.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Genuine Validate
|
winservicessss.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
wnslvxtf
|
wnslvxtf.dll
|
X
|
Identified as a variant of the Adware.Agent malware.
|
|
WinManage
|
wmanage.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
{19787F52-F569-66C9-0107-060800060008}
|
WinSecDir.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
wmisrv
|
wmisrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win Antivirus 2008
|
Win Antivirus 2008.exe
|
X
|
Added by the Win Antivirus 2008 rogue antivirus program.
|
|
Win Antivir 2008
|
Win Antivir 2008.exe
|
X
|
Added by the Win Antiv 2008 rogue antivirus program.
|
|
Windows Server IP Verification Service
|
wsivs.exe
|
X
|
Added by the Backdoor.Ranky backdoor Trojan.
|
|
{0C8106F9-EAD2-8A05-0204-070602040008}
|
wjn.exe
|
X
|
Added by the Troj/Inject-CM Trojan.
|
|
wmpdriver
|
wmpdriverd.exe
|
X
|
Added by the Troj/Agent-HJE Trojan.
|
|
winxtx32
|
winxtx32.dll
|
X
|
Added by the Troj/Mdrop-BUO Trojan.
|
|
Microsoft Security Monitor Process
|
windowsupdate.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Microsoft Winedows startup
|
WinKey.exe
|
X
|
Identified as a variant of the Net-Worm.Win32.Kolabc.bzi malware.
|
|
MSN
|
wmev.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messenger Live MSN
|
winlivemsnmessenger.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Messenger Live Startup
|
windowsmsnlive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows MSN Live Messenger
|
winmessengerlive.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
winsyssrv.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WinDLL (windns32.dll)
|
windns32.dll
|
X
|
Identified as a variant of the Backdoor.Win32.Akbot.e malware.
|
|
Windows UDP Control Center
|
winudpmsgr.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Network Data Management Service
|
wndms.exe
|
X
|
Identified as a variant of the Backdoor:Win32/Redvoz.A malware.
|
|
WinProtector
|
WinProtector.exe
|
X
|
Added by the WinProtector rogue anti-spyware program.
|
|
Winexec32
|
windhelp32.exe
|
X
|
Added by the Troj/Agent-HKU Trojan.
|
|
Windows Logon Applicationedc
|
winlogon.exe
|
X
|
Added by the Troj/DwnLdr-HGR Trojan.
|
|
IEWinserv
|
winserv.exe
|
X
|
Added by the Troj/Banker-EMY Trojan.
|
|
wbqxfpgl
|
wbqxfpgl.dll
|
X
|
Added by the VAC, or Trojan.Win32.Vapsup.kfp Trojan.
|
|
ISPSERVICE
|
wintmp.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
winsc.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
AndromedaAvDriver
|
winav.sys
|
X
|
Added by the Andromeda AntiVirus rogue anti-spyware program.
|
|
WinDLL (wintmp.exe)
|
wintmp.exe
|
X
|
Identified as a variant of the Backdoor:Win32/Akbot.A malware. Do not delete C:\Windows\System32\rundll32.exe as it is a legitimate application. ... Read More
|
|
Windows Services
|
windows.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows mid Control Services
|
wuactll.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Services
|
weccom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MSN
|
winmedia.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Shellwin Time Service Tools
|
winskvc32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Microsoft
|
winlogonsys.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
Windows Genuine Check
|
Windows Genuine Check.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
smile
|
wcs.exe
|
X
|
Identified as a variant of the FakeAlert/Zlob malware.
|
|
Sound Manager
|
winrun32.exe
|
X
|
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
|
|
Windows Services Managt
|
wpservice.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Uptade
|
winupd.exe
|
X
|
A variant of the Backdoor:W32/PoisonIvy backdoor Trojan. Backdoor:W32/PoisonIvy is a family of backdoors that give a remote user extensive access to a ... Read More
|
|
stoner
|
winsvcx.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows UDP Control Center
|
winmsn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Windows Plugin
|
winmsn.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
MalP
|
wkssvr.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Internet
|
wints.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
NCplDeamon
|
winservicess.exe
|
X
|
Identified as a variant of the Backdoor.Win32.SpyBoter.ci malware.
|
|
WinButler
|
WinButler.exe
|
X
|
Identified as a variant of the Trojan-Dropper.Agent.DKN malware.
|
|
Msgw32
|
WINMSG32.EXE
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}
|
winse32.exe
|
X
|
Identified as a variant of the Worm.AutoRun.DHA malware.
|
|
Windows Update
|
winserv.exe
|
X
|
A variant of the Backdoor.Sdbot family of worms and IRC backdoor Trojans.
|
|
Windows Update
|
WindowsUpdate.exe
|
X
|
Added by the Troj/Bdoor-AOH backdoor Trojan.
|
|
localhost
|
winlogom.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Win Manager
|
winmanager.sys
|
X
|
Added by the Troj/Bancos-BEQ Trojan.
|
|
winudpt32.exe
|
winudpt32.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
winlig32
|
winlig32.dll
|
X
|
Added by the Troj/Geezo-F Trojan.
|
|
Windows Gamma Display
|
wingamma.exe
|
X
|
Added by the Antivirus 2010 rogue anti-spyware program.
|
|
Microsoft Svchost local services
|
Winsec32.exe
|
X
|
A variant of the Rbot family of worms and IRC backdoor Trojans.
|
|
winis
|
winis.exe
|
X
|
Identified as a variant of the Net-Worm.Win32.Kolab malware.
|
|
Qualys
|
wmpirvse.exe
|
X
|
Identified as a variant of the Worm:Win32/Mytob.SA mass-mailing worm.
|
|
WinDefender2009
|
windef.exe
|
X
|
Added by the WinDefender 2009 rogue anti-spyware program.
|
|
shell32
|
wuauclt10.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
Winexec32
|
windhelp32.exe
|
X
|
Added by the TROJ_BANKER.FRU online banking Trojan.
|
|
WinRAR Archive
|
winrar.exe
|
X
|
A variant of the IRCBot family of worms and IRC backdoor Trojans.
|
|
WiniGuard
|
WiniGuard.exe
|
X
|
Added by the WiniGuard rogue anti-spyware program.
|
|
CTEMON.EXE
|
winlogon.exe
|
X
|
Added by the Troj/FakeAv-FU Trojan. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
TBMExe
|
wdfmgr.exe
|
X
|
Added by the W32.Notong.A virus. W32.Notong.A is a virus that spreads by infecting executable files. ... Read More
|
|
wfexqnrp
|
wfexqnrp.dll
|
X
|
Identified as a variant of the VideoAccessCodec adware.
|
|
wvbegpqs
|
wvbegpqs.dll
|
X
|
Identified as a variant of the VideoAccessCodec adware.
|
|
<random name>
|
winlogun.exe
|
X
|
Identified as a variant of the Trojan.Fakealert.ALU malware.
|
|
gadcom
|
winlogun.exe
|
X
|
Identified as a variant of the Trojan:Win32/Matcash.HZ malware. The * in the command represents a random number. ... Read More
|
|
flaxen
|
wakjs.dll
|
X
|
Zlob Trojan which installs the VirusTrigger rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
|
|
Quernt
|
wntfy.exe
|
X
|
Added by the W32/Autorun-PF removable media worm.
|
|
Generic Host
|
wauclt.exe
|
X
|
Added by the W32/Sdbot-DNL worm and IRC backdoor.
|
|
WinwebSecurity
|
WinwebSecurity.exe
|
X
|
Added by the Winweb Security rogue anti-spyware program.
|
|
wrapkm
|
wrapkm.dll
|
X
|
Added by a variant of the Goldun.Fam Trojan.
|
|
star1
|
Winrun.exe
|
X
|
Added by the Troj/DwnLdr-HLK downloading Trojan.
|
|
Windows Logon Applicatonedc
|
winlogon.exe
|
X
|
Added by the Troj/VB-EBV Trojan. This infection should not be confused with the legitmate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
SyteUpdtes
|
wopooe.exe
|
X
|
Added by the Troj/Ezio-H IRC backdoor Trojan.
|
|
Windows Service help
|
winservices.exe
|
X
|
Added by the TROJ_DROPPER.TT Trojan.
|
|
screws
|
winlogon.exe
|
X
|
Added by the W32/VB-DWN worm. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
IE-Security
|
wdscan.exe
|
X
|
Added by the IE-Security rogue anti-spyware program.
|
|
Window UDP Control Servic
|
winlogon.exe
|
X
|
Identified as a variant of the TR/Dropper.Gen malware.
|
|
Window UDP Control Servic
|
winlogon.exe
|
X
|
Added by the W32/Rbot-GXN worm and IRC backdoor.
|
|
Microsoft Internet Agent
|
winagent.exe
|
X
|
Malware bundled with rogue anti-spyware programs.
|
|
ASC-AntiSpyware
|
WinCleaner.exe
|
X
|
Added by the WinCleaner 2009 rogue anti-spyware program. WinCleaner 2009 displays false results and utilizes Trojans to promote itself. ... Read More
|
|
ASC-AntiSpyware
|
WinAntivirus.exe
|
X
|
Added by the Win Antivirus Vista/XP rogue anti-spyware program.
|
|
WmpTray
|
wmptray.exe
|
X
|
|
|
Windows Scanner Service
|
winscnr.exe
|
X
|
Added by the Troj/Agent-JBC Trojan.
|
|
wmiprevse
|
wmiprevse.exe
|
X
|
Added by the Troj/Banker-EPN online banking Trojan.
|
|
windows
|
winbows.exe
|
X
|
Added by the W32/Autorun-AAI removable media worm.
|
|
MicroMix32
|
WinCon.exe
|
X
|
Added by the Troj/VB-ECC Trojan.
|
|
Wireless.exe Nacional
|
Wireless.exe
|
X
|
Added by the Troj/VBInj-T Trojan.
|
|
sysav
|
winav.exe
|
X
|
Added by the WinPC Antivirus rogue anti-spyware program.
|
|
winupdater
|
winupdate.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Backdoor.Win32.Agent.bjev malware. ... Read More
|
|
WMI System App
|
wmisys.exe
|
X
|
Added by the W32/IRCBot-ADR worm and IRC backdoor.
|
|
Windows Newresck
|
wzolehqt.exe
|
X
|
Added by the W32/Sdbot-DOA worm and IRC backdoor.
|
|
Windows Sync-Manager
|
wmisvmgr.exe
|
X
|
Added by the W32/Rbot-GXK worm and IRC backdoor.
|
|
System
|
winnet.dll
|
X
|
Added by the BKDR_AGENT.XZMS backdoor.
|
|
WiniBlueSoft
|
WiniBlueSoft.exe
|
X
|
Added by the WiniBlueSoft rogue anti-spyware program.
|
|
drvsyskit
|
winupgro.exe
|
X
|
Added by the Troj/Agent-JQG Trojan.
|
|
Windows Manager System
|
winoper.exe
|
X
|
Added by the W32/Rbot-GXV worm and IRC backdoor.
|
|
WMI Sync-DB
|
wmisynd.exe
|
X
|
Added by the W32/IRCBot-AEH worm and IRC backdoor.
|
|
MSMSGS
|
WINLOGON.EXE
|
X
|
Added by the W32.Korron.B worm. W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible dr ... Read More
|
|
C:\Windows\winnl.exe
|
winnl.exe
|
X
|
Added by the Downloader.Kidkiti downloader Trojan. Downloader.Kidkiti is a Trojan horse that downloads files on to the compromised computer. ... Read More
|
|
C:\Windows\winnm.exe
|
winnm.exe
|
X
|
Added by the Downloader.Kidkiti downloader Trojan. Downloader.Kidkiti is a Trojan horse that downloads files on to the compromised computer. ... Read More
|
|
websrvx
|
websrvx.exe
|
X
|
Added by the WORM_KOOBFACE.EY worm.
|
|
ServiceOptionMP3
|
winamp.dll.exe
|
X
|
Added by the Troj/Samson-A Trojan.
|
|
winxyl32
|
winxyl32.dll
|
X
|
Added by the Troj/Nebule-B Trojan.
|
|
WinBlueSoft
|
WinBlueSoft.exe
|
X
|
Added by the WinBlueSoft rogue anti-spyware program.
|
|
Wind Optimizer
|
WindOptimizer.exe
|
X
|
Added by the Wind Optimizer rogue Windows optimization software.
|
|
Windows32KernelStart
|
wks.exe
|
X
|
Added by the Generic Downloader.c malware.
|
|
regdiit
|
win.exe
|
X
|
Added by the W32/VBSAuto-A worm and IRC backdoor.
|
|
COM+ Windows System
|
winsyscom.exe
|
X
|
Identified by Symantec as a variant of the Backdoor.Trojan malware.
|
|
Windows Update
|
wuauclt32.exe
|
X
|
Added by the WORM_SDBOT.DHY worm and IRC backdoor.
|
|
Windows Live
|
WindowsLive.exe
|
X
|
Added by the W32/RealBot-A worm and IRC backdoor.
|
|
Microsoft Updater
|
winupdate.exe
|
X
|
Added by the Troj/Agent-KIR Trojan.
|
|
Windows UDP
|
winudp.exe
|
X
|
Added by the WORM_IRCBOT.GAT worm and IRC backdoor.
|
|
regdiit
|
winxp.exe
|
X
|
Added by the W32/Autorun-ALB removable media worm.
|
|
CTFMON
|
winjpg.jpg
|
X
|
Added by the W32/Autorun-ALB removable media worm. Please note that the C:\Windows\System32\wscript.exe file is legitimate and should not be deleted. ... Read More
|
|
WiniFighter
|
WiniFighter.exe
|
X
|
Added by the WiniFighter rogue anti-spyware program.
|
|
WiniFighter Security Service
|
WiniFighterSvc.exe
|
X
|
Added by the WiniFighter rogue anti-spyware program.
|
|
Windows System Suite
|
WS<random characters>.exe
|
X
|
Added by the Windows System Suite rogue security program.
|
|
windll
|
windotnetsrv.exe
|
X
|
Added by the W32/Autorun-ANO removable media worm.
|
|
WiniShield
|
WiniShield.exe
|
X
|
Added by the WiniShield rogue anti-spyware program.
|
|
WiniShield Security Service
|
WiniShieldSvc.exe
|
X
|
Added by the WiniShield rogue anti-spyware program.
|
|
winakd32
|
winakd32.dll
|
X
|
Added by the Troj/Nebuler-V Trojan.
|
|
Windows Additional Guard
|
WI345d.exe
|
X
|
Added by the Windows Additional Guard rogue anti-spyware program.
|
|
Windows Guard Pro
|
WindowsGP.exe
|
X
|
Added by the Windows Guard Pro rogue anti-spyware program.
|
|
MicrosoftNAPC
|
wupdate.exe
|
X
|
Added by the Troj/Agent-LAY Trojan.
|
|
NVIDIA Media Center Library
|
winlogon.exe
|
X
|
Added by the W32/AutoRun-AZK removable media worm.
|
|
CTFMON
|
win.exe
|
X
|
Added by the VBS.Runauto.G worm. VBS.Runauto.G is a worm that spreads through removable drives and network shares. The worm also opens a back door on ... Read More
|
|
Windows PC Defender
|
WP345d.exe
|
X
|
Added by the Windows PC Defender rogue anti-spyware program. Please note that the file and folder that this infection resides in may be random. ... Read More
|
|
Microsoft Driver Setup
|
w7services.exe
|
X
|
Added by the W32/AutoRun-ARJ removable media worm.
|
|
Windows Upgrate Utility
|
winulty.exe
|
X
|
Added by the W32/Autorun-ASR removable media worm.
|
|
wscsvc32.exe
|
wscsvc32.exe
|
X
|
Added by the Antivirus rogue anti-spyware program.
|
|
Windows Enterprise Defender
|
WindowsEDefender.exe
|
X
|
Added by the Windows Enterprise Defender rogue anti-spyware program.
|
|
WMI Service Client
|
wmispv.exe
|
X
|
Added by the W32/AutoRun-ASX removable media worm.
|
|
winntR1
|
winntR1.exe
|
X
|
Added by the Troj/Banker-EUR password-stealing banking Trojan.
|
|
wow64main.exe
|
wow64main.exe
|
X
|
Identified by Kaspersky as a variant of the Packed.Win32.TDSS.aa malware.
|
|
Windows System Defender
|
WS83b.exe
|
X
|
Added by the Windows System Defender rogue anti-spyware program.
|
|
winwvv32
|
winwvv32.dll
|
X
|
Added by the Troj/Nebuler-U Trojan.
|
|
Windows Enterprise Suite
|
WE83b.exe
|
X
|
Added by the Windows Enterprise Suite rogue anti-spyware program.
|
|
System Defender
|
WS339.exe
|
X
|
Added by the System Defender rogue anti-spyware program.
|
|
Enterprise Suite
|
WE345d.exe
|
X
|
Added by the Remove Enterprise Suite (Uninstall Guide) rogue anti-spyware program. ... Read More
|
|
winupdate86.exe
|
winupdate86.exe
|
X
|
Added by the Troj/FakeAV-AHQ fake-alert Trojan.
|
|
Additional Guard
|
WI339.exe
|
X
|
Added by the Additional Guard rogue anti-spyware program.
|
|
Windows Media Player
|
wmplayerc.exe
|
X
|
Added by the W32.SillyFDC.BDG worm. W32.SillyFDC.BDG is a worm that spreads by copying itself to mapped drives. It also attempts to download files, lo ... Read More
|
|
C:\Windows\System32\Windows Update
|
wuaclt.exe
|
X
|
Added by the W32/VBWave-A worm.
|
|
wmi32
|
wmimgmt.exe
|
X
|
Added by the W32/Autorun-AVX removable media worm.
|
|
<not used>
|
winlogon86.exe
|
X
|
Identified by BitDefender as a variant of the Gen:Trojan.Heur.PT.cqW@bCL2Eje malware. ... Read More
|
|
<not used>
|
winlogon32.exe
|
X
|
Fake AV Trojan. When fixing this entry, please be careful. If you do not change the userinit key to point back to userinit.exe, then your computer wil ... Read More
|
|
ctfmon.exe
|
wmisqst.exe
|
X
|
Added by the Troj/VBInj-B Trojan.
|
|
winvtv32
|
winvtv32.dll
|
X
|
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.qt Trojan.
|
|
Win Security 360
|
WinSecurity360.exe
|
X
|
Added by the Win Security 360 rogue anti-spyware program.
|
|
wuweb
|
wuweb.exe
|
X
|
Added by the Trojan.Wuwo Trojan. Trojan.Wuwo is a Trojan horse that drops more malware on to the compromised computer. ... Read More
|
|
Windows Firewall Updater
|
windowsupdate.exe
|
X
|
Added by the W32.Spybot.AVEO worm. W32.Spybot.AVEO is a worm that attempts to exploit a number of vulnerabilities in order to spread. It may also spre ... Read More
|
|
winlog.exe
|
winlog.exe
|
X
|
Added by the Troj/Bckdr-RBJ backdoor Trojan.
|
|
syncman
|
wuaucldt.exe
|
X
|
Added by the Troj/Namsys-A Trojan.
|
|
Yahoo Messengger
|
winfiles.exe
|
X
|
Added by the W32/Autorun-BCY removable media worm.
|
|
WLiveCD.exe
|
WLiveCD.exe
|
X
|
Added by the Troj/VB-EQI Trojan.
|
|
<not used>
|
winlogons.EXE
|
X
|
Added by the W32.SillyFDC.BDN worm.
|
|
Multimedia
|
windebug.exe
|
X
|
Added by the W32/VB-ERB worm.
|
|
WinLogonnd
|
winlogonnd.exe
|
X
|
Added by the Troj/Agent-NNQ Trojan.
|
|
Microsoft Driver Setup
|
wndrive32.exe
|
X
|
Added by the Troj/Agent-NRS Trojan.
|
|
UpdateFirewall32
|
Windows32Shield.exe
|
X
|
Added by the W32/Autorun-BEG worm.
|
|
Windows Security Center
|
winlogon.exe
|
X
|
Added by the W32/Autorun-BEX removable media worm.
|
|
wmts
|
wmts.exe
|
X
|
Added by the W32/VB-EUF worm.
|
|
W7.exe Nacional
|
W7.exe
|
X
|
Added by the Troj/Agent-ODZ Trojan.
|
|
wmsdk64_32.exe
|
wmsdk64_32.exe
|
X
|
Added by the Antivirus rogue anti-spyware program.
|
|
Windows Update
|
winup.exe
|
X
|
Added by the W32/Autorun-BGA removable media worm.
|
|
WRMVan
|
Windows.exe
|
X
|
Added by the W32/AutoRun-BGD removable media worm.
|
|
wuaucldt
|
wuaucldt.exe
|
X
|
Added by the Troj/Mdrop-CUS Trojan.
|
|
UserIMEsm
|
wualt.exe
|
X
|
Added by the Troj/Agent-OIM Trojan.
|
|
winconfig
|
winconfig.js
|
X
|
Added by the Trojan.Chafpin Trojan. Trojan.Chafpin is a Trojan horse that downloads files on to the compromised computer. Please note that c:\Windows ... Read More
|
|
Win7 AV
|
Win7 AV.exe
|
X
|
Added by the Win7 AV rogue anti-spyware program.
|
|
Windows Disk Defender
|
windiskdefend.exe
|
X
|
Added by the Win7 AV rogue anti-spyware program.
|
|
winupd64x.exe
|
winupd64x.exe
|
X
|
Added by the Mal/FakeAV-FI Trojan that displays fake security alerts.
|
|
MicrosoftOfficeTools
|
Winece.exe
|
X
|
Added by the Troj/Docscar-A Trojan.
|
|
Windows Update
|
winvv.exe
|
X
|
Added by the Troj/PHPBot-B Trojan.
|
|
Microsoft Outlook
|
wincsrss.exe
|
X
|
Added by the Troj/Agent-OUY Trojan.
|
|
UDP Service Control CenteRMS
|
winudp.exe
|
X
|
Added by the Mal/VBPit-A malware.
|
|
winsp2up.exe
|
winsp2up.exe
|
X
|
Added by the Troj/Mdrop-DAF Trojan.
|
|
<not used>
|
watermark.exe
|
X
|
Added by the Troj/Zbot-ADH Trojan.
|
|
winsp1up.exe
|
winsp1up.exe
|
X
|
Added by the HDD Defragmenter rogue defragging software.
|
|
Svchost
|
winprint.exe
|
X
|
Added by the Troj/Agent-PGT Trojan.
|
|
WindowsUpdates
|
WindowsSystem.exe
|
X
|
Added by the W32/Autorun-BLA removable media worm.
|
|
WOWKtxsCPP.exe
|
WOWKtxsCPP.exe
|
X
|
Added by the Troj/FakeAV-BZF Trojan.
|
|
AdobeUpdate
|
Wininet.exe
|
X
|
Added by the TROJ_DROPPER.WTH Trojan.
|
|
WindowsDriverControl
|
winmsnliv.exe
|
X
|
Added by the Troj/Agent-PME Trojan.
|
|
winlogin save server
|
winlogin.scr
|
X
|
Added by the Mal/EncPk-VD malware.
|
|
WinDefender
|
wicfte.exe
|
X
|
Added by the Troj/Scar-AG Trojan.
|
|
winppdf
|
winppdf.exe
|
X
|
Added by the Troj/Mdrop-DBR Trojan.
|
|
winhelp
|
winhelp.dll
|
X
|
Added by the Troj/Mdrop-DCW Trojan. Please note that c:\windows\system32\rundll32.exe is a legitimate Windows file and should not be deleted. ... Read More
|
|
Crtlink
|
winpack.exe
|
X
|
Added by the Troj/Agent-PVR Trojan.
|
|
WindosSysDrivers
|
WindosSysDrivers.dll
|
X
|
Added by the Troj/PWS-BOB Trojan. Please note that C:\Windows\System32\rundll32.exe is a legitimate Windows file and should not be deleted. ... Read More
|
|
MicrosoftWindows
|
windows32.exe
|
X
|
Added by the Troj/PWS-BOQ Trojan.
|
|
WindowsNetsDll
|
WindowsNetsDll.dll
|
X
|
Added by the Troj/Mdrop-DEK Trojan.
|
|
winFile
|
winFile.exe
|
X
|
Added by the Troj/Banker-FDB Trojan.
|
|
Windows Defender
|
windefender.exe
|
X
|
Added by the Troj/FakeAV-CYT fake alert malware.
|
|
Windows Updat
|
winupdat.exe
|
X
|
Added by the Troj/Agent-QYU Trojan.
|
|
Microsoft Config Setup
|
wjdrive32.exe
|
X
|
Added by the W32/Autorun-BPF removable media worm.
|
|
NvCplDaemonTool
|
wtload08.dll
|
X
|
Added by the Troj/Sinowa-Gen Trojan. Please note C:\Windows\System32\rundll32.exe is a legitimate file and should not be deleted. ... Read More
|
|
Windows SafeAssist
|
winlogon.exe
|
X
|
Added by the Troj/VB-FGB Trojan. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe file. ... Read More
|
|
Microsoft Firewall 2.9
|
WMPRWISE.EXE
|
X
|
Added by the Troj/Agent-ROB Trojan.
|
|
WindowsUpdate
|
webdev.exe
|
X
|
Added by the Troj/Agent-RYU Trojan.
|
|
WINCHAT
|
WINCHAT.EXE
|
X
|
Added by the Backdoor.Specfix backdoor.
|
|
Service
|
winlogon.exe
|
X
|
Unknown malware. This infection should not be confused with the legitimate C:\Windows\System32\winlogon.exe program. ... Read More
|
|
wina
|
wina.exe
|
X
|
Identified as a variant of the Mal/BankSpy-C malware.
|
|
winlogon
|
win_sp.exe
|
X
|
Identified as a variant of the Trojan-PWS.Win32.VB malware.
|
|
Windows Defender
|
Windefend.exe
|
X
|
Added by the Troj/FakeAV-EIE Trojan.
|
|
DRIVESYS1
|
windo.exe
|
X
|
Added by the W32/Autorun-SR removable media worm.
|
|
wipicdec
|
wipicdec.exe
|
X
|
Identified as a variant of the Trojan-PWS.OnlineGames.ADRD malware.
|
|
wipxcdec
|
wipxcdec.exe
|
X
|
Identified as a variant of the Trojan-PWS.OnlineGames.ADRD malware.
|
|
mobiswing
|
webp.exe
|
X
|
Identified by Kaspersky as a variant of the AdWare.Win32.Agent.bzo malware.
|
|
DF
|
windf.exe
|
X
|
Added by the Win32/Windage.A password-stealing Trojan.
|
|
Virtual Java
|
wintgtsv.exe
|
X
|
Identified by Kaspersky Antivirus as a variant of the Spy-Agent.cs malware.
|
|
Windows Login access
|
windows.exe
|
X
|
Added by the Troj/DwnLdr-JDP Trojan.
|
|
WinSideMatchUpDate.exe
|
WinSideMatchUpDate.exe
|
X
|
Detected by Kaspersky Antivirus as AdWare.Win32.Agent.seb.
|
|
internet
|
wuauclt.exe
|
X
|
|
|
Windows NT Login Application
|
winlogons.exe
|
X
|
Added by the Troj/BitCDl-A Trojan.
|
|
Windows Monitor
|
Winsys32.exe
|
X
|
Unknown malware.
|
|
vbc
|
wdt.exe
|
X
|
Added by the Mal/MsilDyn-L malware.
|
|
Windows
|
winlogons.exe
|
X
|
Added by the W32/AutoIt-OQ worm.
|
|
WindowsUpdate
|
winupdate.exe.exe
|
X
|
Added by the BKDR_EXDEPH.A backdoor.
|
|
win32k.sys
|
win32k.sys:1
|
X
|
The ZeroAccess rootkit. This rootkit terminates any program that scans its processes or files and then changes the permissions on them so you can no ... Read More
|
|
win32k.sys
|
win32k.sys:2
|
X
|
The ZeroAccess rootkit. This rootkit terminates any program that scans its processes or files and then changes the permissions on them so you can no ... Read More
|
|
WinPlus
|
WinPlus.exe
|
X
|
Added by the Troj/DwnLdr-JRW Trojan.
|
|
Windows Update
|
Winupdt.exe
|
X
|
Added by the Mal/MSIL-CD malware.
|
|
WinUpdate
|
winsvchosts.exe
|
X
|
Added by the Mal/SSRAT-A malware.
|
|
wminit
|
wminit.exe
|
X
|
Added by the Troj/ZBot-BYF Trojan.
|
|
Windows-Audio Driver
|
wscntfy.exe
|
X
|
Added by the Troj/Malagent-E Trojan.
|
|
ANIWZCSService
|
WZCSLDR.exe
|
?
|
D-Link wireless PCI adapter related. In some cases reported to cause excessive CPU activity ... Read More
|
|
CEPA
|
wsot.exe
|
?
|
??
|
|
Client agent for ARCserve
|
W95AGENT.EXE
|
?
|
Part of Brightstor ARCserve Backup from Computer Associates. What does it do and is it required? ... Read More
|
|
encapsulated command tool
|
wintr.com
|
?
|
??
|
|
load=
|
WPSLOAD.EXE
|
?
|
Windows printing system that comes with the setup for Canon BJC series on the manufacturer's disk ... Read More
|
|
<not used>
|
WINOSCFG.EXE
|
?
|
Could it be something to do with configuring Windows on a new PC from an OEM supplier? ... Read More
|
|
Load=
|
wtfeat.exe
|
?
|
Associated with the Wintab Digitizer
|
|
OEPowerPlugs
|
winoeinit.exe
|
?
|
??
|
|
Restart Watch
|
Watch.exe
|
?
|
Associated with an Eicon Networks Diva ISDN or ADSL modem. What does it do and is it required? ... Read More
|
|
run=
|
wallflip.exe
|
?
|
Desktop wallpaper changer?
|
|
run=
|
win.ini
|
?
|
??
|
|
Tweak Manager
|
WinManager.Exe
|
?
|
WinGuides Tweak Manager. Is this required for the live updates feature and/or if settings are changed? ... Read More
|
|
Update TUT
|
WiseUpdt.exe
|
?
|
??
|
|
W815DM
|
W815DM.exe
|
?
|
??
|
|
WatchDog
|
watchdog.exe
|
?
|
Part of Motorola "Mobile Phone Tools" v3 - in a "Mobiile Phone Tools" sub-directory of Program Files ... Read More
|
|
Wbutton
|
Wbutton.exe
|
?
|
Related to the Wacom Penabled driver on Acer Tablet PCs. Appears to do nothing so is it required? ... Read More
|
|
WCPC
|
wintsvcc.exe
|
?
|
??
|
|
Webcam Go Sti Service Application
|
wbcgosvc.exe
|
?
|
Control software for the portable Creative Video Blaster Webcam Go digital camera/PC web cam. What does it do and is it required? ... Read More
|
|
WEPstat
|
Wepstat.exe
|
?
|
Cisco Aironet 340 Series PC Card driver. If it can be started manually it shouldn't be required if you don't use the PC card facility regularily - hen ... Read More
|
|
Windows Load
|
windows.com
|
?
|
??
|
|
Windows shell
|
win70.exe
|
?
|
??
|
|
WinDSL_MTU
|
WinDSL_MTU.exe
|
?
|
May be realted to Tiscali broadband, if so is it required?
|
|
Winnov Menu
|
WnvMenu.Exe
|
?
|
Winnov Video Capture Card related. What does it do and is it required?
|
|
Winnov Remote
|
WnvRsvr.Exe
|
?
|
Winnov Video Capture Card related. What does it do and is it required?
|
|
Winnov Status
|
WvStatus.Exe
|
?
|
Winnov Video Capture Card related. What does it do and is it required?
|
|
Winshoe
|
wuadfdqr.exe
|
?
|
Probably an unidentified VIRUS! Adds itself to 3 registry "Run" keys and prevents Task Manager being displayed. This is not the Winshoe IRC Client as ... Read More
|
|
Workflo
|
workflow.exe
|
?
|
Related to BroadJump Client Foundation - broadband troubleshooting software installed by various companies. Is it required? ... Read More
|
|
wr
|
WR.EXE
|
?
|
??
|
|
WR Command
|
wr.exe
|
?
|
??
|
|
WregBios
|
wregbios.exe
|
?
|
Desktop Management BIOS (DMI BIOS) related. Apparently invokes the DosBios.exe file. Is it required? ... Read More
|
|
wriste
|
wriste.exe
|
?
|
??
|
|
wsbklite
|
wsbklite.exe
|
?
|
Related to the Acer Soft Button on Acer Tablet PCs. Appears to do nothing so is it required? ... Read More
|
|
YOW tuner
|
WatchPNM.exe
|
?
|
??
|
|
WMPVer
|
WMPVer.EXE
|
?
|
Dritek System Inc. 3D Mouse related - is it required?
|
|
w98Eject
|
w98Eject.exe
|
?
|
Related to USB support for Sigmatel MP3 audio decoder -what does it do, and is it required? ... Read More
|
|
AS00_WPN511
|
WPN511.exe
|
?
|
NetgearRev MFC Application - software for Netgear wireless network cards - what does it do and is it required in startup? ... Read More
|
|
winagent
|
WinAgent.exe
|
?
|
Standard Life Insurance program. Note: This file is legitimate. It is not known if it needs to run at startup. ... Read More
|
|
wltray.exe
|
wltray.exe
|
?
|
Belkin wireless configuration utility and tray icon.
|
|
WAWifiMessage
|
WiFiMsg.exe
|
?
|
Wireless utility bundled with HP laptops. Anyone know if this is required?
|
|
wbsecsvc
|
wbsecsvc.exe
|
?
|
Winbond Seurity Support Service related to Winbond Wireless LAN Adapters.
|