|
Startup Name |
Process Name |
Details
|
X
| UPS
|
ups32.exe -v | Added by the W32/Mofei-H WORM!
|
L
| UPS - APC PowerChute plus (UPS)
|
ups.exe | power management application from APC PowerChute.
|
L
| UPS - UPSentry Service (UPSentry_Smart)
|
upsd.exe | Related ro Belkin_Bulldog Plus control software for the UPS (Uninterrupted Power Supply) via a seria |
L
| UPS Service (CyberPowerUPS)
|
upssrv.exe | Cyber Power PowerPanelPlus software. In the event of a power outage PowerPanelPlus Software automati |
L
| UPSMONService
|
UPSMON_Service.Exe | Related to UPSMON Power Management Software. Made by Powercom_USA This file is found in the Program |
L
| US30Service
|
US30Service.exe | Related to Everstrike Software. Folder protection tool.
|
X
| USB Device
|
win32usb.exe | http://www.sophos.com/virusinfo/analyses/w32forbotbq.html
|
X
| USB sks2drvr (sks2drvr)
|
sks2drvr.sys | Added by the Backdoor.Haxdoor.G TROJAN! Note: This trojan file should be found in the System32 folde |
X
| USB sksDRVR2 (sksdrvr2)
|
sksdrvr2.sys | Added by the Troj/Haxdoor-AL TROJAN! Note: This trojan file is found in the System32 folder.
|
L
| USBest Service Zero (UTSCSI)
|
UTSCSI.EXE | Related to USBest PQI Card Drive (USB). Note: Located in C:%WINDIR%System32 (XP/WinNT/2K)
|
L
| USBMate
|
usbmate.exe | Related to Belkin_USB products. Note: located in C:Program FilesBelkinBelkin Power Management Softwa |
X
| USBTest (USBTest)
|
USBTest.sys | Added by the Troj/RKPort-Fam TROJAN! Note: This trojan file is found in the System32drivers folder. |
X
| User Initialization (usrinit32)
|
userinit.exe | Added by the IRC/BackDoor.SdBot2.QV as detected by Avast AVG. TROJAN! Note: This worm rojan is locat |
X
| User Mode Driver-Manager
|
wdfmgrr.exe | Added by the W32/Sdbot-ZN WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
L
| User Profile Hive Cleanup (UPHClean)
|
uphclean.exe | uphclean.exe is a process belonging to Microsoft's User profile cleanup service. This program is non |
X
| Userinit Logon Verification (UsrInitVerif)
|
userinit.exe | Added by the W32/Tilebot-EV WORM! Located in the Windows or Winnt folder.
|
| Users service for disk management requests (Logical
|
|
|
L
| UStorage Server Service
|
UStorSrv.exe | Related to OTi Imation Disk Manager II
|
L
| VAIO Cooporated Initialisation (VCI)
|
VCI_SVC.exe | Sony VAIO computers
|
L
| VAIO Entertainment Aggregation and Control Service
|
VzRs.exe | Sony VAIO computers
|
L
| VAIO Entertainment Database Service (VzCdbSvc)
|
VzCdbSvc.exe | Related to Sony's VAIO Entertainment Platform.
|
L
| VAIO Entertainment File Import Service
|
VzFw.exe | Sony VAIO computers
|
L
| VAIO Entertainment Task Scheduler
|
VzTaskScheduler.exe | Sony VAIO computers
|
L
| VAIO Entertainment TV Device Arbitration Service
|
VzHardwareResourceManager.exe | Sony VAIO computers
|
L
| VAIO Entertainment UPnP Client Adapter
|
VCSW.exe | Sony VAIO computers
|
L
| VAIO Event Service
|
VESMgr.exe | Sony VAIO computers
|
L
| VAIO Media Gateway Server
|
VmGateway.exe | Sony VAIO computers
|
L
| VAIO Media Integrated Server
|
VMISrv.exe | Sony VAIO computers
|
L
| VAIO Media Integrated Server (HTTP)
|
SV_Httpd.exe | Sony VAIO computers
|
L
| VAIO Media Integrated Server (UPnP)
|
UPnPFramework.exe | Sony VAIO computers
|
L
| VAIO Media Music Server
|
SSSvr.exe | Related to Sony Corporation
|
L
| VAIO Media Music Server (HTTP)
|
sv_httpd.exe | Related to Sony Corporation
|
L
| VAIO Media Music Server (UPnP)
|
UPnPFramework.exe | Related to Sony Corporations.
|
L
| VAIO Media Photo Server
|
PhotoAppSrv.exe | Related to Sony Corporation.
|
L
| VAIO Media Photo Server (Application)
|
PicAppSrv.exe | Related to Sony Corporation
|
L
| VAIO Media Photo Server (HTTP)
|
SV_Httpd.exe | Related to Sony Corporations.
|
L
| VAIO Media Photo Server (UPnP)
|
UPnPFramework.exe | Related to Sony Corporation.
|
L
| VAIO Media Video Server
|
GPVSvr.exe | Sony VAIO computers
|
L
| VAIO Media Video Server (HTTP)
|
SV_Httpd.exe | Sony VAIO computers
|
L
| VAIO Media Video Server (UPnP)
|
UPnPFramework.exe | Sony VAIO computers
|
X
| Validation Service)
|
devldr32.exe | Added by a variant of the WIN32.RBOT WORM! - Note - do NOT confuse with the legitimate Creative Labs |
X
| Vanquish Autoloader v0.1 beta10 (Vanquish)
|
vanquish.dll | Vanquish Autoloader
|
X
| Vanquish Autoloader v0.1 beta10 (Vanquish)
|
vanquish.exe | Vanquish Autoloader
|
X
| VANTI (VANTI)
|
God.sys | Added by the Troj/Hackvan-A TROJAN! Note: The file ranx.dll may also be added with this one both fil |
L
| Ventrilo
|
ventrilo_svc.exe | Related to Venbtrilo Server/Client. Note: located in C:Program FilesVentSrv
|
L
| Veoh Client Service
|
VeohClientService.exe | Related to Veoh Network. Create your own video blogs to share with friends. Note: Located in C:Progr |
L
| VeriSign Updater (navi)
|
naviagent.exe | Related to VeriSign Update Agent. Note: Located in C:Program FilesVeriSignNAVI
|
L
| VET Message Service (VETMSGNT)
|
VetMsg.exe | Related to Computer_Associate Antivirus and offers real-time protection against Internet-bound threa |
X
| virdrv (virdrv)
|
virdrv.sys | Added by the TROJ_ROOTKIT.N TROJAN! Read the link rootkit type stealth involved.
|
L
| ViRobot Expert Monitoring (vrmonsvc)
|
vrmonsvc.exe | Security software related to HAURI Inc. - http://www.hauri.net/
|
L
| Virtual CD v4 Security service (SDK - Version)
|
vcssecs.exe | Virtual CD SDK Security Service. Essential for the proper running of Virtual CD.
|
L
| Virtual CD v4 Security service (VCDSecS)
|
vcdsecs.exe | Related to H H Software GmbH - http://www.hh-software.com/
|
L
| Virtual CD v5 Security service (VC5SecS)
|
VC5SecS.exe | Related to Virtual_CD from H H Software and provides player support for CDs and CD images. Note: Loc |
O
| Virtual Manager System (vmsprog)
|
vmsprog.exe | EmailSpy email monitoring program and surveillance tool
|
L
| Virtual NIC Service
|
PackethSvc.exe | Related to America Online Inc.
|
X
| VirtualMGR
|
mssvc128.exe | Added by the Troj/Klutz-A Trojan!
|
L
| Virtuozzo Update Service (vzupsvc)
|
vzupsvc.exe | Related to Virtuozzo from SWsoft Inc. Virtuozzo creates isolated partitions or virtual environments |
X
| VIRTwin (vdmt16)
|
vdmt16.sys | Added by the Troj/Haxdoor-AF TROJAN!
|
X
| virus shield enable (vshield.exe)
|
vshield.exe | Added by the SDBOT.CBE WORM! Read the link rootkit type stealth involved.
|
L
| Visibroker Activation Daemon
|
oad.exe | Borland Visibroker
|
L
| VisiBroker Smart Agent
|
osagent.exe | Borland Visibroker
|
X
| Vista ReadyService (VistaRS)
|
readysrv.exe | Added by the W32/Sdbot-CTZ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W |
X
| Vista32
|
Vista32.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
L
| Visual Studio Analyzer RPC bridge
|
varpc.exe | http://www.fileproperties.com/v/VARPC-EXE.htm
|
| Vital Microsoft Sub-system Resource (Vital Microsoft
|
|
|
X
| vmsdrv (vmsdrv)
|
vmsdrv.sys | Added by the TROJ_ROOTKIT.AF TROJAN! Read the link rootkit type stealth involved.
|
L
| VMware Authorization Service
|
vmware-authd.exe | Related to VMware Inc.
|
X
| VMWare Authorization Servicec (GrayPigeonServer)
|
Server.exe | Added by the Backdoor.Graybird.O TROJAN! {red] Note: this trojan file is located in the Program File |
L
| VMware DHCP Service
|
vmnetdhcp.exe | Related to VMware Inc.
|
L
| VMware NAT Service
|
vmnat.exe | Related to VMware Inc.
|
L
| VMware Registration Service
|
vmserverdWin32.exe | Related to VMware Inc.
|
L
| VMware Tools Service
|
VMwareService.exe | Related to VMware inc.
|
L
| VMware Virtual Mount Manager Extended
|
vmount2.exe | Related to VMWare Inc.
|
L
| VNC Server
|
WinVNC.exe | TightVNC Remote Control utility.
|
L
| VNC Server Version 4 (WinVNC4)
|
WinVNC4.exe | The RealVNC 4 server for VNC usage over a LAN/WAN.
|
X
| VolMapDev
|
VolMapDev.sys | Added by the TROJ_ROOTKIT.AQ TROJAN! Read the link rootkit type stealth involved.
|
L
| VPN 5000 Service 1.00.00 (VPN5000Service)
|
vpn5000service.exe | Related to Cisco Systems Inc. - http://www.cisco.com/
|
X
| VPNonDemand (VPNonDemand)
|
VPN.exe | Added by the W32/Tilebot-G WORM! Read the link rootkit type stealth involved.
|
L
| VRService
|
VrService.exe | Related to Panasonic Matsushita Electric Industrial Co.
|
L
| Vsclient Service (VnxService)
|
vnxserv.exe | Related to InfoExpress provides network access control solutions. More Note: Located in C:%WINDIR%Sy |
L
| W2K PCtel speaker phone
|
pctspk.exe | Related to PCtel services
|
X
| W32Time
|
svchost.exe -k W32Time | Added by the Fuwudoor TROJAN!
|
L
| WAN Miniport (ATW) Service (WANMiniportService)
|
wanmpsvc.exe | Related to America_Online Inc. The AOL suite's connectity relies upon this file heavily so if AOL is |
L
| WARSVR
|
war-ftpd.exe | This is an FTP server.
|
L
| Washer Security Access (wwSecSvc)
|
wwSecure.exe | Related to one of the Webroot_Internet_Security programs. The file associated with this service is l |
O
| WDelMgr20
|
WDelMgr20.exe | Seems to be related to the RecoverLost Data or BackUp MyPC program by StompSoft
|
X
| WDNDrive (chgsprt)
|
chgsprt.sys | Added by the Troj/Haxspy-A TROJAN!
|
X
| Web Live Information Messenger
|
webmsn.exe | Added by the W32/Sdbot-CWA WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
L
| Web Update Service by PowerProgrammer (WebUpdate)
|
WebUpdateSvc.exe | Related to POWERPROGRAMMER.CO.UK A user friendly way to look for and download updates via the web to |
L
| WebDrive Service (WebDriveService)
|
wdservice.exe | Related to WebDrive FTP service. Note: Located in C:Program FilesNetDrive
|
L
| Webroot Admin Console (WebrootAdminConsole)
|
WebrootAdminConsole.exe | Related to Webroot_Software
|
L
| Webroot Client Service (WebrootEnterpriseClientService)
|
WebrootClientService.exe | Related to Webroot_Software
|
L
| Webroot Client Service (WRConsumerService)
|
WRConsumerService.exe | Belongs to webroots spysweeper. If you've purchased webroot software this should be valid otherwi |
L
| Webroot CommAgent Service (WebrootCommAgentService)
|
CommAgent.exe | Related to Webroot Software Inc.http://www.webroot.com/
|
L
| Webroot Spy Sweeper Engine (svcWRSSSDK)
|
WRSSSDK.exe | Related to Webroot Spy Sweeper Engine. Located in C:Program FilesWebrootSpy Sweeper
|
L
| Webroot Spy Sweeper Engine (WebrootSpySweeperService)
|
SpySweeper.exe | Related to Webroot Software inc. Spyware protection software. Note: Located in C:Program FilesWebroo |
L
| Webroot SpySweeper Service (WebrootSpySweeperService)
|
SpySweeper.exe | Related to Webroot Software inc. Spyware protection software. Note: Located in C:Program FilesWebroo |
L
| Webroot Update Service (WebrootEnterpriseUpdateService)
|
WebrootUpdateService.exe | Related to Webroot_Software
|
X
| WebSeach Toolbar support NT service
|
TBPSSvc.exe | Related to the Neo/Huntbar Toolbar
|
L
| Websense DBManager Scheduler (DBManagerScheduler)
|
DBManagerScheduler.exe | Related to Websense_Reporter has three primary components: the Reporter user interface the Log Serve |
L
| Websense Log Server (WebsenseLogServer)
|
LogServer.exe | Related to Websense_Reporter has three primary components: the Reporter user interface the Log Serve |
L
| Websense Report Scheduler (Websense Reporter Scheduler)
|
WsScheduler.exe | Related to Websense_Reporter has three primary components: the Reporter user interface the Log Serve |
X
| wfsup(wfsup) (wfsup)
|
wfsup.exe | Added by the Bck/Sdbot.HPS as detected by Pandascan TROJAN! Note: This worm rojan is located in C:Wi |
L
| WhatsUp Gold Syslog
|
WUGSyslog.exe | Related to CiscoWorks SNMS server.
|
X
| Win Tmp Service (Wstmp)
|
wstmp.exe | Added by the W32/Sdbot-YS Worm!
|
X
| Win Update
|
SYSUPDATE.EXE | Added by the SDBOT.CLA WORM! Note: This worm file is found in the Windows or Winnt folder. Read the |
X
| Win Updator Services
|
ctfnom.exe | Related to the WootBot Trojan.
|
X
| WIN32 (image)
|
image.exe | Added by the W32/Sdbot-AAQ WORM! Read the link rootkit type stealth involved.
|
X
| Win32 Driver (shit)
|
svchosts.exe | Added by the W32/Forbot-FD WORM!
|
X
| Win32 Kernel Update (Win32Kernel)
|
win32host.exe | Added by the W32/Tilebot-FE WORM! Note: This worm file is found in the Windows or Winnt folder. Allo |
X
| Win32 Login Service (Win32 Login)
|
win32logon.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Win32 LSA Driver (Windows Lsa Service)
|
lsa.exe | Added by the W32/Forbot-FJ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W |
X
| win32 socket (win32socket)
|
win325b.exe | Added by the W32/Tilebot-GE WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
X
| Win32 SSL Driver (Win32 SSL Driver)
|
winssv.exe | Added by the W32/Forbot-BH WORM!
|
X
| Win32 Task Manager (Win32Task)
|
wintasks32.exe | Added by the W32/Rbot-FPD WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
X
| Win32 Update (shit)
|
svchosts.exe | Added by an unidentified TROJAN! of the Sdbot family. C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 |
X
| Win32 Update (Win32Update)
|
oswinupdate.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
X
| win32 update service (defiled)
|
svchostt.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Win32 USB2 Driver
|
svchosting.exe | W32/Forbot.J or SDBOT.HU
|
X
| Win32Export
|
winsysplg.exe | Added by the W32/Rbot-FMU WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
L
| Win32Sl
|
Win32sl.exe | Allows remote management application programs to access a client computer for maintainance purpose. |
X
| WIN32SOUND
|
sounddv.exe | Added by the W32/Tilebot-Z WORM! Read the link rootkit type stealth involved.
|
X
| Win32Sr
|
win32ssr.exe | Added by the W32/Sdbot-AMA WORM!
|
X
| Win32Sr (Win32Sr)
|
win32ssr.exe | Added by the W32/Sdbot-AOT WORM! Note: This worm rojan file is found in the Windows or Winnt folder. |
L
| WinACD Power Button Service (ACDPowerService)
|
acdpower.exe | Related to Compuflex's TSR-like product for the Windows environment that automatically reads the amo |
X
| winauthm (spdauth)
|
SPDAUTH.EXE | Added by the SDBOT.CFH WORM! Read the link rootkit type stealth involved.
|
X
| winconfig.exe
|
svcss.exe | Added by the Troj/Agent-MD TROJAN! Note: This worm rojan is located in C:%WINDIR%
|
X
| winconfig.exe
|
smsss.exe | Added by the W32/Spybot-MP WORM! Note: This is not the legitimate Windows Process. (Which is found i |
X
| winconfig.exe
|
SP2PATCH.EXE | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
X
| windbs
|
winxtc.exe | Added by the AGOBOT-WD WORM
|
X
| Window Boot Services
|
lsiss.exe | Added by the W32/Tilebot-HP WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:% |
X
| Window Dispaly System
|
lsays.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Window LFX Services
|
lxsys.exe | Added by an unidentified TROJAN! Note: of the Win32/Rbot Family. Note: This worm rojan is located in |
X
| Window Lssas Services
|
lssys.exe | Added by the Trojan.Downloader-Gen/Win.Process TROJAN! Note: This worm rojan is located in C:Windows |
X
| Window Plugin Service
|
lsscs.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Windows 32 Bit (Windows 32 Bit Drivers)
|
WinVid32.exe | Added by the W32/Tilebot-BH WORM! Note: This worm file is found in the Windows or Winnt folder. Read |
X
| Windows 32-bit PnP Driver
|
winpnp32.exe | W32.Wallz Worm. Owner:Unkown. Symantec Location: C:WindowsSystem for (9X) or C:WinntSystem32 for (NT |
X
| Windows Anti Virus (MSAV32)
|
MSAV32.EXE | Added by the SDBOT.CMH WORM! Read the link rootkit type stealth involved.
|
X
| Windows Archiver (winarc)
|
devldr.exe | Added by the W32/Prex-J WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
|
X
| Windows Archiver (winarc)
|
windat.exe | Added by the W32/Tilebot-BA WORM! Note: This worm rojan file is found in the Windows or Winnt folder |
L
| Windows Automatic Updates
|
windowsautomaticupdates.exe | This Service belongs to the Folding@Home Client which uses your computer's resources on behalf of St |
X
| Windows Basis Cont (Windows Basis Cont)
|
WINFTP32.EXE | Added by the SDBOT.CIU WORM! Read the link rootkit type stealth involved.
|
X
| Windows CDROM Drivers (Microsoft Windows Atapi Drivers)
|
atapid.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
X
| Windows Client/Server Runtime Server Subsystem (WCSRSS)
|
wcsrss.exe | Added by the W32/Tilebot-DA WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:% |
X
| Windows Client/Server Runtime Service (csrss)
|
csrss.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:Windowsi |
X
| Windows Configuration Backup Service (CfgBackupSvc)
|
svchost.exe | Added by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR%CONF |
| Windows Configuration Loader (Windows Configuration
|
|
|
X
| Windows Configuration Manager (ConfigMgr)
|
svchost.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Windows Debugger
|
SYSNT.EXE | Added by the RBOT.CEL WORM! Read the link rootkit type stealth involved.
|
X
| Windows Decrypt manager (wincrypt32.exe)
|
wincrypt32.exe | Added by the W32/Tilebot-GC WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
O
| Windows Desktop Security
|
svcagnt.exe | Check to see if it was installed by the by user. Keylogging and screenshot software see Here Locatio |
O
| Windows Desktop Security (dtsagntsvc)
|
svcagnt.exe | Check to see if it was installed by the by user. Keylogging and screenshot software see Here Locatio |
X
| Windows DLL Loader (RunDll32)
|
rundll32.exe | Added by the Troj/Agent-MD TROJAN! Note: This is not the legitimate Windows Process. (Which is found |
X
| Windows DLL System
|
smsc.exe | Added by the W32/Tilebot-GG WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:% |
X
| Windows DNS (Windows DNS)
|
rundl32.exe | Added by the Troj/GrayBrd-AG TROJAN! Note: This trojan file is found in the Windows or Winnt folder. |
X
| windows drivers32
|
WINDRVR32.EXE | Added by the SDBOT.CON WORM! Read the link rootkit type stealth involved.
|
X
| windows drivers32 (windows drivers32)
|
windrvrs32.exe | Added by the W32/Tilebot-AG WORM! Note: This worm rojan file is found in the Windows or Winnt folder |
X
| Windows explorer
|
explore.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
X
| windows explorer32
|
explorer32.exe | Added by the W32/Sdbot-CVQ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W |
X
| windows file explorer (explorer)
|
ssms.exe | Added by the W32/Tilebot-EN WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
X
| windows firewall (masry)
|
msgupdater.exe | Added by the W32/Sdbot-ADZ WORM! Note: This worm rojan file is found in the Windows or Winnt folder. |
X
| Windows Firewall Services
|
iexplore.exe | Added by a variant of the Sdbot-ABA worm! NOTE: this file is located in the Windows folder while the |
X
| Windows Genuine Advantage Registration Service (net32a)
|
net32a.exe | Added by the Backdoor.IRCBot.st Identified by ewido. WORM! Note: This worm rojan is located in C:Win |
X
| Windows Genuine Advantage Registration Service (wgareg)
|
wgareg.exe | Added by the Win32/Cuebot.J WORM! Exploits the MS06-040 Windows vulnerability. Note: File located in |
X
| Windows Genuine Advantage Validation (wgav)
|
wgav.exe | Added by a variant of Win32/IRCBot.OO as reported by NOD32 TROJAN! Note: located in C:WINDOWSsystem3 |
X
| Windows Genuine Advantage Validation Monitor (wgavm)
|
wgavm.exe | Added by the W32/Cuebot-M WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%WI |
| Windows Genuine Advantage Validation Notification
|
|
|
X
| Windows Help (shit)
|
mailinfo.exe | Added by the W32/Forbot-FK WORM!
|
X
| Windows Host Services (DLLHOST32)
|
dllhost.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS |
X
| Windows HWinfo Loader (Windows HWinfo Loader)
|
iexplre.exe | Added by the W32/Rbot-ALS WORM!
|
X
| Windows IMAP Shell
|
imaped.exe | Added by the Backdoor.SDBot.F7B46034 TROJAN! Reported by BitDefender
|
L
| Windows Installer
|
MsiExec.exe | executable program of the Windows Installer
|
X
| Windows Internet Control (Windows Internet)
|
internet.exe | Added by the WORM_SDBOT.ABT WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:% |
X
| Windows Internet Service
|
iexplore.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:Windows |
X
| Windows Internet/Server (Internet)
|
winlogo.exe | Added by the Troj/GrayBrd-AC TROJAN! Note: This trojan file is found in the SystemRavExt (95/98/ME) |
X
| Windows Kernel
|
svchost.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm rojan is located in C:Wi |
X
| Windows Kernel (Windows Kernel)
|
svchost.exe | Added by the W32/Rbot-ANO WORM! Note: This is not the legitimate Windows Process. (Which is found in |
X
| Windows Kernel Services
|
winlogon.exe | Added by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR% Do |
X
| Windows Kernel System Service
|
wkssvc.exe | Added by the W32.Spybot.YXX WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP |
?
| Windows LAN Service Manager
|
svchost.exe | Unknow origin
|
X
| Windows Log
|
nvsvcd.exe | Added by the BackDoor-CXT TROJAN! Note: located in C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 (XP |
X
| windows logon
|
winlogon.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR% |
X
| Windows lsass Service (lsass)
|
lsass.exe | Added by the W32/Rbot-AGD WORM! Located in C:WINDOWSlsass.exe (9XXP) or C:Winntlsass.exe (NT2000) No |
X
| Windows Management (Windows Management)
|
svchost.exe | Added by the Troj/Feutel-AN WORM! Note: This is not the legitimate Windows process(Which is always f |
X
| Windows Management Construct (winmgmc)
|
winmgc.exe | Added by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR%
|
| Windows Management Instrument Driver Includes
|
|
|
L
| Windows Management Instrumentation
|
WinMgmt.exe | used by system administrators to create Windows management scripts
|
X
| Windows Management Updater (WinManUpdater)
|
smss.exe | Added by the Troj/Kaos-E TROJAN! Note: This worm rojan is located in C:%WINDIR%
|
L
| Windows Media Connect Service (WMConnectCDS)
|
wmccds.exe | Related to Windows_Media_Connect Service v2. Windows Media Connect is a Microsoft technology which e |
X
| Windows Messenger
|
msnmsgr.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This is not the legitimate Windows Proce |
X
| Windows MS Update 32 (Win32)
|
sucker.exe | Added by the W32/Forbot-GJ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W |
X
| windows mssql
|
mssql.exe | Added by the W32/Tilebot-HZ WORM! Note: This worm rojan is located in C:%WINDIR% folder.
|
X
| Windows NetDDe (shit)
|
wrmana32.exe | Added by the W32.Mytob.IM WORM!
|
X
| Windows Netlib Service (CSRS)
|
netlib32.exe | Added by the W32/Tilebot-IG WORM! Note: Located in C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 (XP |
X
| Windows Network Controller
|
WinGmt.exe | W32/Sdbot-MG trojan
|
X
| Windows Network Latency Controller (nlc)
|
sp2vc.exe ( or 1.tmp nlc.exe) | Added by a Generic_Password_Stealers TROJAN! Note: This worm rojan is located in C:WindowsSystem (Wi |
X
| Windows Network Mapping Service (NetMap)
|
svchost.exe | Added by an unidentified TROJAN! of the Sdbot family. This worm rojan is located in C:%WINDIR%system |
X
| Windows Network Security Management Service (nsms)
|
nsms.exe | Added by the Troj/Ranck-ET TROJAN! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C: |