Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

Key:

  • L = Legit, O = Open to Debate, X = Malware/Bad
Startup Name Process Name Details
X UPS ups32.exe -vAdded by the W32/Mofei-H WORM!
L UPS - APC PowerChute plus (UPS) ups.exepower management application from APC PowerChute.
L UPS - UPSentry Service (UPSentry_Smart) upsd.exeRelated ro Belkin_Bulldog Plus control software for the UPS (Uninterrupted Power Supply) via a seria
L UPS Service (CyberPowerUPS) upssrv.exeCyber Power PowerPanelPlus software. In the event of a power outage PowerPanelPlus Software automati
L UPSMONService UPSMON_Service.ExeRelated to UPSMON Power Management Software. Made by Powercom_USA This file is found in the Program
L US30Service US30Service.exeRelated to Everstrike Software. Folder protection tool.
X USB Device win32usb.exehttp://www.sophos.com/virusinfo/analyses/w32forbotbq.html
X USB sks2drvr (sks2drvr) sks2drvr.sysAdded by the Backdoor.Haxdoor.G TROJAN! Note: This trojan file should be found in the System32 folde
X USB sksDRVR2 (sksdrvr2) sksdrvr2.sysAdded by the Troj/Haxdoor-AL TROJAN! Note: This trojan file is found in the System32 folder.
L USBest Service Zero (UTSCSI) UTSCSI.EXERelated to USBest PQI Card Drive (USB). Note: Located in C:%WINDIR%System32 (XP/WinNT/2K)
L USBMate usbmate.exeRelated to Belkin_USB products. Note: located in C:Program FilesBelkinBelkin Power Management Softwa
X USBTest (USBTest) USBTest.sysAdded by the Troj/RKPort-Fam TROJAN! Note: This trojan file is found in the System32drivers folder.
X User Initialization (usrinit32) userinit.exeAdded by the IRC/BackDoor.SdBot2.QV as detected by Avast AVG. TROJAN! Note: This worm rojan is locat
X User Mode Driver-Manager wdfmgrr.exeAdded by the W32/Sdbot-ZN WORM! Note: This worm rojan is located in C:%WINDIR% folder.
L User Profile Hive Cleanup (UPHClean) uphclean.exeuphclean.exe is a process belonging to Microsoft's User profile cleanup service. This program is non
X Userinit Logon Verification (UsrInitVerif) userinit.exeAdded by the W32/Tilebot-EV WORM! Located in the Windows or Winnt folder.
Users service for disk management requests (Logical
L UStorage Server Service UStorSrv.exeRelated to OTi Imation Disk Manager II
L VAIO Cooporated Initialisation (VCI) VCI_SVC.exeSony VAIO computers
L VAIO Entertainment Aggregation and Control Service VzRs.exeSony VAIO computers
L VAIO Entertainment Database Service (VzCdbSvc) VzCdbSvc.exeRelated to Sony's VAIO Entertainment Platform.
L VAIO Entertainment File Import Service VzFw.exeSony VAIO computers
L VAIO Entertainment Task Scheduler VzTaskScheduler.exeSony VAIO computers
L VAIO Entertainment TV Device Arbitration Service VzHardwareResourceManager.exeSony VAIO computers
L VAIO Entertainment UPnP Client Adapter VCSW.exeSony VAIO computers
L VAIO Event Service VESMgr.exeSony VAIO computers
L VAIO Media Gateway Server VmGateway.exeSony VAIO computers
L VAIO Media Integrated Server VMISrv.exeSony VAIO computers
L VAIO Media Integrated Server (HTTP) SV_Httpd.exeSony VAIO computers
L VAIO Media Integrated Server (UPnP) UPnPFramework.exeSony VAIO computers
L VAIO Media Music Server SSSvr.exeRelated to Sony Corporation
L VAIO Media Music Server (HTTP) sv_httpd.exeRelated to Sony Corporation
L VAIO Media Music Server (UPnP) UPnPFramework.exeRelated to Sony Corporations.
L VAIO Media Photo Server PhotoAppSrv.exeRelated to Sony Corporation.
L VAIO Media Photo Server (Application) PicAppSrv.exeRelated to Sony Corporation
L VAIO Media Photo Server (HTTP) SV_Httpd.exeRelated to Sony Corporations.
L VAIO Media Photo Server (UPnP) UPnPFramework.exeRelated to Sony Corporation.
L VAIO Media Video Server GPVSvr.exeSony VAIO computers
L VAIO Media Video Server (HTTP) SV_Httpd.exeSony VAIO computers
L VAIO Media Video Server (UPnP) UPnPFramework.exeSony VAIO computers
X Validation Service) devldr32.exeAdded by a variant of the WIN32.RBOT WORM! - Note - do NOT confuse with the legitimate Creative Labs
X Vanquish Autoloader v0.1 beta10 (Vanquish) vanquish.dllVanquish Autoloader
X Vanquish Autoloader v0.1 beta10 (Vanquish) vanquish.exeVanquish Autoloader
X VANTI (VANTI) God.sysAdded by the Troj/Hackvan-A TROJAN! Note: The file ranx.dll may also be added with this one both fil
L Ventrilo ventrilo_svc.exeRelated to Venbtrilo Server/Client. Note: located in C:Program FilesVentSrv
L Veoh Client Service VeohClientService.exeRelated to Veoh Network. Create your own video blogs to share with friends. Note: Located in C:Progr
L VeriSign Updater (navi) naviagent.exeRelated to VeriSign Update Agent. Note: Located in C:Program FilesVeriSignNAVI
L VET Message Service (VETMSGNT) VetMsg.exeRelated to Computer_Associate Antivirus and offers real-time protection against Internet-bound threa
X virdrv (virdrv) virdrv.sysAdded by the TROJ_ROOTKIT.N TROJAN! Read the link rootkit type stealth involved.
L ViRobot Expert Monitoring (vrmonsvc) vrmonsvc.exeSecurity software related to HAURI Inc. - http://www.hauri.net/
L Virtual CD v4 Security service (SDK - Version) vcssecs.exeVirtual CD SDK Security Service. Essential for the proper running of Virtual CD.
L Virtual CD v4 Security service (VCDSecS) vcdsecs.exeRelated to H H Software GmbH - http://www.hh-software.com/
L Virtual CD v5 Security service (VC5SecS) VC5SecS.exeRelated to Virtual_CD from H H Software and provides player support for CDs and CD images. Note: Loc
O Virtual Manager System (vmsprog) vmsprog.exeEmailSpy email monitoring program and surveillance tool
L Virtual NIC Service PackethSvc.exeRelated to America Online Inc.
X VirtualMGR mssvc128.exeAdded by the Troj/Klutz-A Trojan!
L Virtuozzo Update Service (vzupsvc) vzupsvc.exeRelated to Virtuozzo from SWsoft Inc. Virtuozzo creates isolated partitions or virtual environments
X VIRTwin (vdmt16) vdmt16.sysAdded by the Troj/Haxdoor-AF TROJAN!
X virus shield enable (vshield.exe) vshield.exeAdded by the SDBOT.CBE WORM! Read the link rootkit type stealth involved.
L Visibroker Activation Daemon oad.exeBorland Visibroker
L VisiBroker Smart Agent osagent.exeBorland Visibroker
X Vista ReadyService (VistaRS) readysrv.exeAdded by the W32/Sdbot-CTZ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W
X Vista32 Vista32.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
L Visual Studio Analyzer RPC bridge varpc.exehttp://www.fileproperties.com/v/VARPC-EXE.htm
Vital Microsoft Sub-system Resource (Vital Microsoft
X vmsdrv (vmsdrv) vmsdrv.sysAdded by the TROJ_ROOTKIT.AF TROJAN! Read the link rootkit type stealth involved.
L VMware Authorization Service vmware-authd.exeRelated to VMware Inc.
X VMWare Authorization Servicec (GrayPigeonServer) Server.exeAdded by the Backdoor.Graybird.O TROJAN! {red] Note: this trojan file is located in the Program File
L VMware DHCP Service vmnetdhcp.exeRelated to VMware Inc.
L VMware NAT Service vmnat.exeRelated to VMware Inc.
L VMware Registration Service vmserverdWin32.exeRelated to VMware Inc.
L VMware Tools Service VMwareService.exeRelated to VMware inc.
L VMware Virtual Mount Manager Extended vmount2.exeRelated to VMWare Inc.
L VNC Server WinVNC.exeTightVNC Remote Control utility.
L VNC Server Version 4 (WinVNC4) WinVNC4.exeThe RealVNC 4 server for VNC usage over a LAN/WAN.
X VolMapDev VolMapDev.sysAdded by the TROJ_ROOTKIT.AQ TROJAN! Read the link rootkit type stealth involved.
L VPN 5000 Service 1.00.00 (VPN5000Service) vpn5000service.exeRelated to Cisco Systems Inc. - http://www.cisco.com/
X VPNonDemand (VPNonDemand) VPN.exeAdded by the W32/Tilebot-G WORM! Read the link rootkit type stealth involved.
L VRService VrService.exeRelated to Panasonic Matsushita Electric Industrial Co.
L Vsclient Service (VnxService) vnxserv.exeRelated to InfoExpress provides network access control solutions. More Note: Located in C:%WINDIR%Sy
L W2K PCtel speaker phone pctspk.exeRelated to PCtel services
X W32Time svchost.exe -k W32TimeAdded by the Fuwudoor TROJAN!
L WAN Miniport (ATW) Service (WANMiniportService) wanmpsvc.exeRelated to America_Online Inc. The AOL suite's connectity relies upon this file heavily so if AOL is
L WARSVR war-ftpd.exeThis is an FTP server.
L Washer Security Access (wwSecSvc) wwSecure.exeRelated to one of the Webroot_Internet_Security programs. The file associated with this service is l
O WDelMgr20 WDelMgr20.exeSeems to be related to the RecoverLost Data or BackUp MyPC program by StompSoft
X WDNDrive (chgsprt) chgsprt.sysAdded by the Troj/Haxspy-A TROJAN!
X Web Live Information Messenger webmsn.exeAdded by the W32/Sdbot-CWA WORM! Note: This worm rojan is located in C:%WINDIR% folder.
L Web Update Service by PowerProgrammer (WebUpdate) WebUpdateSvc.exeRelated to POWERPROGRAMMER.CO.UK A user friendly way to look for and download updates via the web to
L WebDrive Service (WebDriveService) wdservice.exeRelated to WebDrive FTP service. Note: Located in C:Program FilesNetDrive
L Webroot Admin Console (WebrootAdminConsole) WebrootAdminConsole.exeRelated to Webroot_Software
L Webroot Client Service (WebrootEnterpriseClientService) WebrootClientService.exeRelated to Webroot_Software
L Webroot Client Service (WRConsumerService) WRConsumerService.exe

Belongs to webroots spysweeper. If you've purchased webroot software this should be valid otherwi

L Webroot CommAgent Service (WebrootCommAgentService) CommAgent.exeRelated to Webroot Software Inc.http://www.webroot.com/
L Webroot Spy Sweeper Engine (svcWRSSSDK) WRSSSDK.exeRelated to Webroot Spy Sweeper Engine. Located in C:Program FilesWebrootSpy Sweeper
L Webroot Spy Sweeper Engine (WebrootSpySweeperService) SpySweeper.exeRelated to Webroot Software inc. Spyware protection software. Note: Located in C:Program FilesWebroo
L Webroot SpySweeper Service (WebrootSpySweeperService) SpySweeper.exeRelated to Webroot Software inc. Spyware protection software. Note: Located in C:Program FilesWebroo
L Webroot Update Service (WebrootEnterpriseUpdateService) WebrootUpdateService.exeRelated to Webroot_Software
X WebSeach Toolbar support NT service TBPSSvc.exeRelated to the Neo/Huntbar Toolbar
L Websense DBManager Scheduler (DBManagerScheduler) DBManagerScheduler.exeRelated to Websense_Reporter has three primary components: the Reporter user interface the Log Serve
L Websense Log Server (WebsenseLogServer) LogServer.exeRelated to Websense_Reporter has three primary components: the Reporter user interface the Log Serve
L Websense Report Scheduler (Websense Reporter Scheduler) WsScheduler.exeRelated to Websense_Reporter has three primary components: the Reporter user interface the Log Serve
X wfsup(wfsup) (wfsup) wfsup.exeAdded by the Bck/Sdbot.HPS as detected by Pandascan TROJAN! Note: This worm rojan is located in C:Wi
L WhatsUp Gold Syslog WUGSyslog.exeRelated to CiscoWorks SNMS server.
X Win Tmp Service (Wstmp) wstmp.exeAdded by the W32/Sdbot-YS Worm!
X Win Update SYSUPDATE.EXEAdded by the SDBOT.CLA WORM! Note: This worm file is found in the Windows or Winnt folder. Read the
X Win Updator Services ctfnom.exeRelated to the WootBot Trojan.
X WIN32 (image) image.exeAdded by the W32/Sdbot-AAQ WORM! Read the link rootkit type stealth involved.
X Win32 Driver (shit) svchosts.exeAdded by the W32/Forbot-FD WORM!
X Win32 Kernel Update (Win32Kernel) win32host.exeAdded by the W32/Tilebot-FE WORM! Note: This worm file is found in the Windows or Winnt folder. Allo
X Win32 Login Service (Win32 Login) win32logon.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Win32 LSA Driver (Windows Lsa Service) lsa.exeAdded by the W32/Forbot-FJ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W
X win32 socket (win32socket) win325b.exeAdded by the W32/Tilebot-GE WORM! Note: This worm rojan is located in C:%WINDIR% folder.
X Win32 SSL Driver (Win32 SSL Driver) winssv.exeAdded by the W32/Forbot-BH WORM!
X Win32 Task Manager (Win32Task) wintasks32.exeAdded by the W32/Rbot-FPD WORM! Note: This worm rojan is located in C:%WINDIR% folder.
X Win32 Update (shit) svchosts.exeAdded by an unidentified TROJAN! of the Sdbot family. C:WindowsSystem (Win9x/Me) C:%WINDIR%System32
X Win32 Update (Win32Update) oswinupdate.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X win32 update service (defiled) svchostt.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Win32 USB2 Driver svchosting.exeW32/Forbot.J or SDBOT.HU
X Win32Export winsysplg.exeAdded by the W32/Rbot-FMU WORM! Note: This worm rojan is located in C:%WINDIR% folder.
L Win32Sl Win32sl.exeAllows remote management application programs to access a client computer for maintainance purpose.
X WIN32SOUND sounddv.exeAdded by the W32/Tilebot-Z WORM! Read the link rootkit type stealth involved.
X Win32Sr win32ssr.exeAdded by the W32/Sdbot-AMA WORM!
X Win32Sr (Win32Sr) win32ssr.exeAdded by the W32/Sdbot-AOT WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
L WinACD Power Button Service (ACDPowerService) acdpower.exeRelated to Compuflex's TSR-like product for the Windows environment that automatically reads the amo
X winauthm (spdauth) SPDAUTH.EXEAdded by the SDBOT.CFH WORM! Read the link rootkit type stealth involved.
X winconfig.exe svcss.exeAdded by the Troj/Agent-MD TROJAN! Note: This worm rojan is located in C:%WINDIR%
X winconfig.exe smsss.exeAdded by the W32/Spybot-MP WORM! Note: This is not the legitimate Windows Process. (Which is found i
X winconfig.exe SP2PATCH.EXEAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X windbs winxtc.exeAdded by the AGOBOT-WD WORM
X Window Boot Services lsiss.exeAdded by the W32/Tilebot-HP WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Window Dispaly System lsays.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Window LFX Services lxsys.exeAdded by an unidentified TROJAN! Note: of the Win32/Rbot Family. Note: This worm rojan is located in
X Window Lssas Services lssys.exeAdded by the Trojan.Downloader-Gen/Win.Process TROJAN! Note: This worm rojan is located in C:Windows
X Window Plugin Service lsscs.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Windows 32 Bit (Windows 32 Bit Drivers) WinVid32.exeAdded by the W32/Tilebot-BH WORM! Note: This worm file is found in the Windows or Winnt folder. Read
X Windows 32-bit PnP Driver winpnp32.exeW32.Wallz Worm. Owner:Unkown. Symantec Location: C:WindowsSystem for (9X) or C:WinntSystem32 for (NT
X Windows Anti Virus (MSAV32) MSAV32.EXEAdded by the SDBOT.CMH WORM! Read the link rootkit type stealth involved.
X Windows Archiver (winarc) devldr.exeAdded by the W32/Prex-J WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
X Windows Archiver (winarc) windat.exeAdded by the W32/Tilebot-BA WORM! Note: This worm rojan file is found in the Windows or Winnt folder
L Windows Automatic Updates windowsautomaticupdates.exeThis Service belongs to the Folding@Home Client which uses your computer's resources on behalf of St
X Windows Basis Cont (Windows Basis Cont) WINFTP32.EXEAdded by the SDBOT.CIU WORM! Read the link rootkit type stealth involved.
X Windows CDROM Drivers (Microsoft Windows Atapi Drivers) atapid.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X Windows Client/Server Runtime Server Subsystem (WCSRSS) wcsrss.exeAdded by the W32/Tilebot-DA WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Windows Client/Server Runtime Service (csrss) csrss.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:Windowsi
X Windows Configuration Backup Service (CfgBackupSvc) svchost.exeAdded by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR%CONF
Windows Configuration Loader (Windows Configuration
X Windows Configuration Manager (ConfigMgr) svchost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Windows Debugger SYSNT.EXEAdded by the RBOT.CEL WORM! Read the link rootkit type stealth involved.
X Windows Decrypt manager (wincrypt32.exe) wincrypt32.exeAdded by the W32/Tilebot-GC WORM! Note: This worm rojan is located in C:%WINDIR% folder.
O Windows Desktop Security svcagnt.exeCheck to see if it was installed by the by user. Keylogging and screenshot software see Here Locatio
O Windows Desktop Security (dtsagntsvc) svcagnt.exeCheck to see if it was installed by the by user. Keylogging and screenshot software see Here Locatio
X Windows DLL Loader (RunDll32) rundll32.exeAdded by the Troj/Agent-MD TROJAN! Note: This is not the legitimate Windows Process. (Which is found
X Windows DLL System smsc.exeAdded by the W32/Tilebot-GG WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Windows DNS (Windows DNS) rundl32.exeAdded by the Troj/GrayBrd-AG TROJAN! Note: This trojan file is found in the Windows or Winnt folder.
X windows drivers32 WINDRVR32.EXEAdded by the SDBOT.CON WORM! Read the link rootkit type stealth involved.
X windows drivers32 (windows drivers32) windrvrs32.exeAdded by the W32/Tilebot-AG WORM! Note: This worm rojan file is found in the Windows or Winnt folder
X Windows explorer explore.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X windows explorer32 explorer32.exeAdded by the W32/Sdbot-CVQ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W
X windows file explorer (explorer) ssms.exeAdded by the W32/Tilebot-EN WORM! Note: This worm rojan is located in C:%WINDIR% folder.
X windows firewall (masry) msgupdater.exeAdded by the W32/Sdbot-ADZ WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
X Windows Firewall Services iexplore.exeAdded by a variant of the Sdbot-ABA worm! NOTE: this file is located in the Windows folder while the
X Windows Genuine Advantage Registration Service (net32a) net32a.exeAdded by the Backdoor.IRCBot.st Identified by ewido. WORM! Note: This worm rojan is located in C:Win
X Windows Genuine Advantage Registration Service (wgareg) wgareg.exeAdded by the Win32/Cuebot.J WORM! Exploits the MS06-040 Windows vulnerability. Note: File located in
X Windows Genuine Advantage Validation (wgav) wgav.exeAdded by a variant of Win32/IRCBot.OO as reported by NOD32 TROJAN! Note: located in C:WINDOWSsystem3
X Windows Genuine Advantage Validation Monitor (wgavm) wgavm.exeAdded by the W32/Cuebot-M WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%WI
Windows Genuine Advantage Validation Notification
X Windows Help (shit) mailinfo.exeAdded by the W32/Forbot-FK WORM!
X Windows Host Services (DLLHOST32) dllhost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Windows HWinfo Loader (Windows HWinfo Loader) iexplre.exeAdded by the W32/Rbot-ALS WORM!
X Windows IMAP Shell imaped.exeAdded by the Backdoor.SDBot.F7B46034 TROJAN! Reported by BitDefender
L Windows Installer MsiExec.exeexecutable program of the Windows Installer
X Windows Internet Control (Windows Internet) internet.exeAdded by the WORM_SDBOT.ABT WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Windows Internet Service iexplore.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:Windows
X Windows Internet/Server (Internet) winlogo.exeAdded by the Troj/GrayBrd-AC TROJAN! Note: This trojan file is found in the SystemRavExt (95/98/ME)
X Windows Kernel svchost.exeAdded by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm rojan is located in C:Wi
X Windows Kernel (Windows Kernel) svchost.exeAdded by the W32/Rbot-ANO WORM! Note: This is not the legitimate Windows Process. (Which is found in
X Windows Kernel Services winlogon.exeAdded by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR% Do
X Windows Kernel System Service wkssvc.exeAdded by the W32.Spybot.YXX WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP
? Windows LAN Service Manager svchost.exeUnknow origin
X Windows Log nvsvcd.exeAdded by the BackDoor-CXT TROJAN! Note: located in C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 (XP
X windows logon winlogon.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X Windows lsass Service (lsass) lsass.exeAdded by the W32/Rbot-AGD WORM! Located in C:WINDOWSlsass.exe (9XXP) or C:Winntlsass.exe (NT2000) No
X Windows Management (Windows Management) svchost.exeAdded by the Troj/Feutel-AN WORM! Note: This is not the legitimate Windows process(Which is always f
X Windows Management Construct (winmgmc) winmgc.exeAdded by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:%WINDIR%
Windows Management Instrument Driver Includes
L Windows Management Instrumentation WinMgmt.exeused by system administrators to create Windows management scripts
X Windows Management Updater (WinManUpdater) smss.exeAdded by the Troj/Kaos-E TROJAN! Note: This worm rojan is located in C:%WINDIR%
L Windows Media Connect Service (WMConnectCDS) wmccds.exeRelated to Windows_Media_Connect Service v2. Windows Media Connect is a Microsoft technology which e
X Windows Messenger msnmsgr.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This is not the legitimate Windows Proce
X Windows MS Update 32 (Win32) sucker.exeAdded by the W32/Forbot-GJ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%W
X windows mssql mssql.exeAdded by the W32/Tilebot-HZ WORM! Note: This worm rojan is located in C:%WINDIR% folder.
X Windows NetDDe (shit) wrmana32.exeAdded by the W32.Mytob.IM WORM!
X Windows Netlib Service (CSRS) netlib32.exeAdded by the W32/Tilebot-IG WORM! Note: Located in C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 (XP
X Windows Network Controller WinGmt.exeW32/Sdbot-MG trojan
X Windows Network Latency Controller (nlc) sp2vc.exe ( or 1.tmp nlc.exe)Added by a Generic_Password_Stealers TROJAN! Note: This worm rojan is located in C:WindowsSystem (Wi
X Windows Network Mapping Service (NetMap) svchost.exeAdded by an unidentified TROJAN! of the Sdbot family. This worm rojan is located in C:%WINDIR%system
X Windows Network Security Management Service (nsms) nsms.exeAdded by the Troj/Ranck-ET TROJAN! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C: