Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

Key:

  • L = Legit, O = Open to Debate, X = Malware/Bad
Startup Name Process Name Details
L K9 Time Synchronization k9nt.exeRelated to HC Mingham-Smith Limited http://www.kaska.demon.co.uk/history.htm
L Kaseya Agent AgentMon.exeRelated to Kaseya Inc.
L Kaspersky Anti-Virus Service (KLBLMain) kavmm.exeRelated to Kaspersky virus removal program.
L KAV Monitor Service avpm.exeKaspersky AntiVirus
L kavsvc kavsvc.exeKaspersky AntiVirus
X kbdrv64 KBDRV64.SYSAdded by the TROJ_ROOTKIT.K TROJAN! Read the link rootkit type stealth involved.
X kdc svchost.exe -k kdcAdded by the Fuwudoor TROJAN!
L Kerberos Key Transaction Coordinator (kerbkey) kerb.exeVerify one computer's identity to another and to set up encryption keys for a secure connection betw
L Kerio MailServer (KerioMailServer) mailserver.exeRelated to Kerio_MailServer Note: Located in C:Program FilesKerioMailServer
L Kerio Personal Firewall persfw.exeKerio Firewall
L Kerio Personal Firewall 4 (KPF4) kpf4ss.exeRelated to Kerio Personal FireWall.
X Kernell32 termsv.exeAdded by an unknown variant of a backdoor TROJAN! Note: This worm rojan is located in C:WindowsSyste
X Keyboard Service System Files (Keyboard Service) navupdate64.exeAdded by a variant of the WIN32.RBOT WORM! Note: This worm file is found in the System32 folder.
L Kingsoft Antivirus KWatch Service (KWatchSvc) KWatch.EXERelated to Kingsoft_Antivirus virus protection and content filtering. Note: located in C:KAV**** [*
L Kingsoft Personal Firewall Service (KPfwSvc) KPfwSvc.EXERelated to Kingsoft_Antivirus virus protection and content filtering. Note: located in C:KAV**** [*
L Knob Service (KNOBSERV) KnobService.exeFile belongs to Acer_Inc
L Kodak Camera Connection Software KodakCCS.exeKodak Software to connect digital cameras
? KService KService.exeAdded by KService It's part of a peer to peer package people agree to when signing up with 'Sky By B
L LANDesk Remote Control Service (ISSUSER) issuser.exeRelated to LANDesk_Remote_Control Service. Note: Located in C:Program FilesLANDeskLDClient
L LANDesk® Management Agent residentagent.exePart of LANDesk Management Suite.
L LanSafe Power Monitor (LanSafe PM) PowerMonitor.exeRelated to LanSafe_Power_Monitor from Powerware. Uninterruptible Power Supply Note: Located in C:Pro
L LanSafe Process Manager xyntservice.exeRelated to LanSafe_Process_Manager from Powerware. Uninterruptible Power Supply Note: Located in C:P
L Lavasoft Personal Firewall Service (LavasoftFirewall) lpfw.exeRelated to Lavasoft_Personal_Firewall service. Note: Located in C:Program FilesLavasoftPersonal Fire
? LckFldService LckFldService.exe? Could be related Proland Software. ? - http://www.pspl.com/
L LEC TranslateDotNet Server LogoMedia TranslateDotNet Server.exeTranslates email web pages documents and instant messages. Made by the Language Engineering Company
L Leica Microsystems Data Container V1 LMSDataContainerServer.exeRelated to Leica_Microsystems Now Vistec_Semiconductor_Systems advanced technologies in optics.
L Lexar JD31 (LxrJD31s) LxrJD31s.exeLexar JumpDrive driver. From Lexar_Media_Inc
L Lexar Secure II (LxrSII1s) LxrSII1s.exeRelated to Lexar_Media Inc. removable flash memory cards USB flash drives card readers etc...
L Lexar SG20 LxrSG20s.exeRelated to Lexar_Media Inc. Lexar offers a wide range of storage products. Note: Located in C:WINDOW
L LexBce Server LEXBCES.EXELexmark Printer Service
L LibUsb-Win32 - Daemon Version 0.1.8.0 libusbd-nt.exeLibUsb open-source USB driver
L LicCtrl Service runservice.exePart of the eLicense Copy Protection scheme employed by some software and games. (Castlecops Startup
L License Agent cla.exeLicense Agent for the HiPath 1220 digital PBX system from Siemens. For more information Click_Here F
L License Management (CLMTomcatStarterSvc) tomcat.exeRelated to Apache_Tomcat Owner: Alexandria Software Consulting.
L License Management Service ESD Licence Manager ESD.exeRelated to the Licence_Manager_ESD.exe is the element5 License Management Service used by some softw
LightScribeService Direct Disc Labeling Service
L LiveShare P2P Server RoxLiveShare.exeRelated to Roxio_Inc
L LiveShare P2P Server 9 (RoxLiveShare9) RoxLiveShare9.exeRelated to Roxio_Inc
L LiveUpdate LUCOMS~1.EXERelated to Norton Internet securty suite and provides up to date antivirus data for your Norton Anti
X LmHosts svchost.exe -k LmHostsAdded by the Fuwudoor TROJAN!
X LMMng (memlow) memlow.sysAdded by the Troj/Haxdoor-AA TROJAN!
X Loader) SVCHOST.EXEAdded by the RBOT.BZF WORM! Note: This is not the legitimate Windows process SVCHOST.EXE (Which is a
X Loading Outpost Connections cmdtel.exeWin32.Bagz.i email virus
X Local Security Authority Subsystem Service (lsass) lsass.exeAdded by the W32/Tilebot-AK or W32.Spybot.ABDO WORM! Note: This is not the legitimate Windows proces
X Local Security Authority System Service (lsass) lsass.exeAdded by the W32/Rbot-AJA WORM! Note: This is not the legitimate Windows process lsass.exe (Which is
L Logical Disk Manager Administrative Service dmadmin.exeVeritas logical disk manager
L Logitech Process Monitor (LVPrcSrv) LVPrcSrv.exeRelated to Logitech QuickCam Provides additional configuration options for these devices.
L LogMeIn LogMeIn.exeRelated to LogMeIn LogMeIn Rescue is used by IT helpdesks to provide instant remote support to custo
X LOGON suport service IES4SERVICE.SYSAdded by the Goldun.G TROJAN! Note: This trojan file is found in the System32 folder.
X Logon Terminal Manager spoolsc.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
L LogonSvc (LogonSvcID) logonsvc.exeRelated to E-Pop web conferencing Note: Located in C:Program FilesE-Pop
L Lookout Citadel Server (LkCitadelServer) lkcitdl.exeRelated to Lookout_Citadel_Server From National Instruments Inc. Note: Located in C:WINDOWSsystem32
L Lotus Notes Single Logon nslsvice.exeIBM Lotus Notes Single Logon Service - http://www.anti-spy.info/process/nslsvice.exe.html
X Lpdriver (Lpdriver) lpdriver.sysAdded by the W32/Tilebot-H or W32/Sdbot-ADG WORM! Note: This worm file is found in the System32 fold
X LSA Shel (Export Version) lsass.exeAdded by the W32/Tilebot-HQ WORM! Note: This worm rojan is located in C:%WINDIR% folder.
X lsass (lsass) lsass.exeAdded by the W32/Rbot-AIC WORM! Note: This is not the legitimate Windows process. (Which is always f
X lsass (Workstations) autoexec.exeAdded by the W32/Sdbot-AFN WORM! Note: This worm file is found in the System32 folder.
X LsassFTP daemon (LsassFTPD) LsassFtpd.exeAdded by the SDBOT.CDW WORM! Read the link rootkit type stealth involved.
X LsassFTPzz daemon (LsassFTPDzz) LsassFtpdz.exeAdded by the W32/Rbot-ARL WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
L LWWLicenseService LWWLicenseService.exeRelated to Wolters_Kluwer The Professional's First Choice for information tools and solutions that h
L lxbs_device lxbscoms.exeRelated to LXB_Device LXB provides secure backup.
L lxbt_device lxbtcoms.exeLexmark International services. http://www.lexmark.com/
L lxbu_device lxbucoms.exeRelated to Lexmark Printers. Provides additional configuration options for these devices
L lxbx_device lxbxcoms.exeRelated to Lexmark International Inc Printer service. Note: located in C:WINDOWSSystem32
L lxby_device lxbycoms.exeRelated to Lexmark Printer service. Note: located in C:WindowsSystem (Win9x/Me) C:%WINDIR%System32 (
L lxcc_device lxcccoms.exeRelated to Lexmark International inc. Communication module for Lexmark products. Disabling will caus
L lxcd_device lxcdcoms.exeRelated to Lexmar Lexmark International Inc. Printers Note: Located in C:WINDOWSSystem32
L lxce_device lxcecoms.exeRelated to Lexmark Inc. printers
L lxcf_device lxcfcoms.exeLexmark printer related
L lxcg_device lxcgcoms.exeRelated to Lexmark printer
L Lync USB Auditor Service (LyncUSBServ) lyncusb.exeRelated to Lync_USB A toolkit that delivers an integrated removable media device discovery and audit
L M-Audio Ozone Installer (OzoneInstallerService) ozinst.exeRelated to M-Audio_Ozone products. Note: Located in C:Program FilesM-AudioOzoneInstall
L M-BUS/M-NET Administration (MCONTROL) mcontrol.exeRelated to Siemens Energy & Automation Platform. Note: located in C:Program FilesProcessSuiteMBUSDRV
L M1 Licensing Helper (iLicenseSvc) iLicenseSvc.exeRelated to Related to GE_Fanuc_Automation enable you to act in real-time to optimize productivity an
X mac128 mac128.sysAdded by the Troj/Klutz-A Trojan!
L MacFormatService FORMATM.EXERelated to Conversions Plus from DataViz
L Machine Debug Manager (MDM) mdm.exeVisual studio debuger if you install vs2003 mdm.exe is found in c:/program files/common files/micros
L Macromedia Licensing Service Macromedia Licensing.exeRelated to Macromedia products: Flash Dreamweaver etc.
L Mailgate Mail/Proxy Service mgatesvc.exeMailgate Internet Connectivity Server
X Manage) dfrgfat16.exeAdded by the W32/Codbot-N WORM!
X Manageer Network Connections telcmd.exeBAD - Look how manager is spelled.
X Manageer Network Connections (Kern32) telcmd.exeA new service added by the Troj/Agent-CP TROJAN with a display name of Manageer Network Connections.
L Management Repository) jrun.exeRelated to MacroMedia_ColdFusion products. Made by MacroMediaInc.
X Manager (Windows XP Manager) msnmgr.exeAdded by the W32/Kassbot-L Read the link rootkit type stealth involved.
Managing FAT and NTFS partitions (Defragmentation
L Mangomind Drive Repair (MindRepair) dirtcon.exeRelated to Mangomind access your business critical files from anywhere at any time from any computer
L mapi Helper ImapiHelper.exeISO recorder
L MarkVision Server (MvServer) lexmvservice.exeRelated to MarkVison_Server From Lexmar. Note: Located in C:WINDOWSSYSTEM32
L MarkVision Web Server (MvWebServer) lexwebservice.exeRelated to MarkVison_Server From Lexmar. Note: Located in C:WINDOWSSYSTEM32
X Mass Effect™ Xbox 360 mfxbox.exeAdded by the W32/Spybot-MS WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP/
L MATLAB Server (matlabserver) matlabserver.exeRelated to The MathWorks Inc.
L MaxBackServiceInt MaxBackServiceInt.exeRelated to Maxtor_backup service. Note: Located in C:ProgramMaxtorMaxtor Backup
L MaxSyncService (NTService1) SyncServices.exeRelated to Maxtor_OneTouch service. Note: Located in C:ProgramMaxtorOneTouchUtils
L Maya 6 PLE Documentation Server wrapper.exeRelated to Alias Systems Corp.
L MC/Empower i.collect icserv.exean internet cleaning utility issued by various ISP's for their customers use
L McAfee Agent myAgtSvc.exeRelated to Network Associates Inc.
McAfee AntiSpyware Real-Time Scanner
L McAfee AntiSpyware Service massrv.exeRelated to McAfee AntiSpyware service.
L McAfee Desktop Firewall Service (FireSvc) FireSvc.exeRelated to McAfee Desktop Firewall Service. Note: located in C:Program FilesNetwork AssociatesMcAfee
L McAfee E-mail Proxy (Emproxy) emproxy.exeRelated to McAfee_Email_Proxy c:program filescommon filesmcafeeEmProxy
L McAfee Firewall CPD.EXERelated to Network Associates
L McAfee Framework Service (McAfeeFramework) FrameworkService.exeMcAfee/CA related
L McAfee HackerWatch Service HWAPI.exeRelated to McAfee_HackerWach Service installed by the McAfee Internet Security suite and whose role
L McAfee Log Manager (McLogManagerService) mclogsrv.exeRelated to McAfee_SecurityCenter Log Manager. Note: Located in C:Program FilesMcAfeeMSC
L McAfee Network Agent (McNASvc) mcnasvc.exeRelated to McAfee_Network_Agent Note: Located in c:program filescommon filesmcafeemna
L McAfee Personal Firewall Service (MpfService) MPFSrv.exeRelated to McAfee_Personal_Firewall Service. Note: Located in C:Program FilesMcAfeeMPF
L McAfee Privacy Service (GuardDogEXE) GUARDDOG.EXEBelongs to the software McAfee Internet Security or McAfee Privacy Service. For more information Cli
L McAfee Privacy Service (MPS9) mps.exeRelated to McAfee_Privacy_Service Includes many features for families online including Internet cont
L McAfee Protection Manager (mcpromgr) mcpromgr.exeRelated to McAfee_Integrated_Security Platform. Note: Located in C:Program FilesMcAfeeMSC
L McAfee Proxy Service (McProxy) mcproxy.exeRelated to McAfee Proxy Service Note: Located in c:Program FilesCOMMON~1mcafeemcproxy
L McAfee Real-time Scanner (McShield) mcshield.exeRelated to McAfee_Virus_Shield Note: Located in C:Program FilesMcAfeeVIRUSSCAN
L McAfee Redirector Service (McRedirector) redirsvc.exeRelated to McAfee_Redirector Service Module. Note: Located in c:program filescommon filesmcafee edir
L McAfee Scanner (McODS) mcods.exeRelated to McAfee_VirusScan On Demand Scan. Note: Located in C:Program FilesMcAfeeVIRUSSCAN
L McAfee SecurityCenter Update Manager mcupdmgr.exeMcAfee Antivirus updater
L McAfee SecurityCenter Update Manager (mcupdmgr.exe) mcupdmgr.exeMcAfee Update manager - http://castlecops.com/s5681-MCUPDMGR_EXE.html
L McAfee SiteAdvisor Service McSvHost.exeMcafee Inc - commonly located at C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
L McAfee SpamKiller Server (MskService) MSKSrvr.exePart of McAfee Spamkiller. http://computercops.biz/s6154-MSKSrvr_exe.html
L McAfee SpamKiller Service (MSK80Service) MskSrver.exeRelated to McAfee SpamKiller Note: Located in C:Program FilesMcAfeeMSK
L McAfee SystemGuards (McSysmon) mcsysmon.exeRelated to McAfee_SystemGuards Service. Note: Located in C:Program FilesMcAfeeVIRUSSCAN
L McAfee Task Scheduler (McTskshd.exe) mctskshd.exeRelated to McAfee_Task_Scheduler Note: Located in C:Program FilesMcAfeeMSC
L McAfee Update Manager (mcmispupdmgr) mcupdmgr.exeRelated to McAfee_SecurityCenter Update Manager. Note: Located in C:Program FilesMcAfeeMSC
L McAfee User Manager (mcusrmgr) mcusrmgr.exeRelated to McAfee_SecurityCenter MISP User Manager. Note: Located in C:Program FilesMcAfeeMSC
L McAfee Wireless Security Service (MwlSvc) MwlSvc.exeRelated to McAfee_Wireless_Security_Service Note: located in C:PROGRA~1McAfeeMWL
L McAfee WSC Integration (McDetect.exe) mcdetect.exeRelated to McAfee WSC Integration.
L McAfee.com McShield mcshield.exeRelated to McAfee
L McAfee.com Personal Firewall Service MPFSERVICE.exeRelated to McAfee.com Personal Firewall
L McAfee.com VirusScan Online Realtime Engine mcvsrte.exeMcAfee AntiVirus
X MCFservice (mcfdrv) mcfdrv.sysAdded by the TROJ_ROOTKIT.R TROJAN! Read the link rootkit type stealth involved.
X mchInjDrv mc2A.tmpAdded by the Dialer.ICcontrol DIALER! Note: This malware can make the modem dials long-distance phon
X mcmmng32 (Microsoft Control Manager) mcmmng32.exeAdded by the W32/Tilebot-HK WORM! Note: This worm rojan is located in C:%WINDIR% folder. disabling t
L McShield Mcshield.exethis process is associated with McAfee's Internet Security suite. More specifically it is essential
L MD Simple Burner Service (NetMDSB) NetMDSB.exeSony Corp. MiniDisk Simple Burner
L MDaemon - Alt-N Technologies Ltd. MDAEMON.EXERelated to MDaemona Windows-based email server.
X MdeRy rpe.sysAdded by the Backdoor.Ryejet TROJAN! Read the link rootkit type stealth involved.
X MEAOI Service (MEAOI) _meaoi.exeAdded by the W32/Tilebot-AM WORM! Note: This worm rojan file is found in the Windows or Winnt folder
L Mediabee (Mediabee Desktop Server) MbXmlRpcServer.exeRelated to Mediabee Group Planner & Dashboard
L MediaMax XL Service (MediaMaxXLService) MediaMaxXLService.exeRelated to MediaMax_XL from Streamload Inc. An application that automatically backs up your files an
X Medie Sariel Number Services moviemk.exeAdded by the Troj/DownLd-AAP TROJAN! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me)
X MemDRV (vdnt32) vdnt32.sysAdded by the Troj/Haxdoor-AA TROJAN!
L Memeo (BMUService) MemeoService.exeRelated to Memeo backup service. Note: Located in C:Program FilesTanagraMemeo
mental ray 3.5 Satellite (32-bit)
L Merak Mail Server Control (MerakControl) control.exeRelated to Merak_Mail_Server Software. A high performance mail server software suite for Windows or
L Merak Mail Server POP3/IMAP (MerakPOP3) pop3.exeRelated to Merak_Mail_Server Software. A high performance mail server software suite for Windows or
L Merak Mail Server SMTP (MerakSMTP) smtp.exeRelated to Merak_Mail_Server Software. A high performance mail server software suite for Windows or
L MERANT XDB Server for NX 3.1 xsrvnx.exeRelated to SERENA Software Inc. - http://www.serena.com/
X Messenger svchost.exe -k MessengerAdded by the Fuwudoor TROJAN!
X Messenger kernel32.exeAdded by the Troj/Kyth-A TROJAN! Note: Replaces any existing services named Messenger.
X Messenger sys.exeAdded by the Troj/PcClient-H TROJAN! Note: This worm rojan file is found in the System32 folder.
X Messenger KB08953265.exeAdded by the Esteems.F TROJAN! Note: Drops multiple files.
X Messenger (Messenger) (TROJAN FILE NAME)Added by the Trojan.Neasemal TROJAN! Note: This trojan file will be found in the System32 folder and
X Messenger (Messenger) hacker.exeAdded by the Troj/PcClient-M TROJAN! Note: This trojan file is found in the System32 and Temp folder
L MetaFrame COM Server (MFCom) mfcom.exeRelated to Citrix MetaFrame
L MGABGEXE mgabg.exeMatrox BIOS Guard. What does it do and is it required?
L MICROS Backup Server resbsm.exe

Related to MICROS Systems 3700d is a Sybase SQL Anywhere/Adaptive Server with a relational databa

X Microsoft Agent lpohost.exeAdded by the W32/Sdbot-CWQ WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP/
X Microsoft Agent ffchost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: Located in C:WindowsSystemdllcache (Win9
X Microsoft Agent snchost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X Microsoft Agent qxchost.exeAdded by the W32/Sdbot-CWP WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP/
X Microsoft Agent rschost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
L Microsoft AntiSpyware (Beta 1) gcasDtServ.exeMicrosoft AntiSpyware Data Service
L Microsoft AntiSpyware (Beta 1) gcasServ.exeMicrosoft AntiSpyware Service
L Microsoft AntiSpyware (Beta 1) GIANTAntiSpywareMain.exeMicrosoft AntiSpyware Main
X Microsoft ASPI Manager (aspi113210) aspi113210.exeAdded by the Troj/Danmec-T TROJAN! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:
X Microsoft authenticate service (MsaSvc) msasvc.exeAdded by Worm_Ircbot_Gen Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%WINDIR%Sy
X Microsoft Bluetooth Support (BthSupp) bthsupp.exeAdded by the W32/Btbot-A WORM!
X Microsoft Client Agent Service (Microsoft Client Agent) msclient.exeAdded by the W32/Tilebot-BP WORM! Note: This worm rojan file is found in the Windows or Winnt folder
X Microsoft Config (mscfg) dczznet.exeAdded by the W32/Rbot-ARK WORM! Note: This is not the legitimate Windows process Msconfig.exe (Which
X Microsoft Corporation systemi32.exeVariant of the W32.SPYBOT WORM
X Microsoft Corporation (Windows Wordpad) wordpad.exeAdded by the W32/Tilebot-GL WORM! Note: This worm rojan is located in C:%WINDIR% This is not Microso
L Microsoft CTF Loader ctfmon.exeCTF Loader
X Microsoft DHCPA Service mshcp.exeAdded by the W32/Rbot-FNA WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP/W
L Microsoft Digital Identity Service (InfoCard Service) infocard.exeRelated to Microsoft_NET_Framework .NET Framework is a development and execution environment that al
X Microsoft Distributed Transaction (MSDT) msdt.exeAdded by the W32/Tilebot-BQ WORM! Note: This worm rojan file is found in the Windows or Winnt folder
X Microsoft DLL System smsc.exeAdded by the W32/Tilebot-FY WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Microsoft HDA Protocol (svhda) svhda.exeaDEED BY THE Backdoor.Win32.IRCBot.rr as detected by Kaspersky TROJAN! Note: This worm rojan is loca
X Microsoft IIS helper msiishlp.exeAdded by the Backdoor.Isen.Rootkit TROJAN! Read the link rootkit type stealth involved.
X Microsoft information dll service (msidll) msidll.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
Microsoft Internet Information Services kernel mode
X Microsoft Language Service (Windows Language Service) alg.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:%WINDIR%
X Microsoft Logon Service mslogon.exeAdded by the W32.Woredbot.C TROJAN! Note: This worm rojan is located in C:%WINDIR%System32dllcache (
X Microsoft Logon User Interface Skining (LogonUInterf) logonui.exeDetected by Ewido as Backdoor.SdBot.aad. This worm file is found in the Windows or Winnt folder.
X Microsoft Main Window Service mainwin32.exeAdded by the W32/Spybot-MR WORM! Note: This worm rojan is located in C:WindowsSystemdllcache (Win9x/
X MicroSoft Media Tools MSMEDIA.EXEAdded by the SDBOT.CUH WORM! Note: This worm file is found in the System32 folder. (NT/2000/XP) Read
X MicroSoft Media Tools (MicroSoft Media Tools) MSmedia.exeAdded by the W32/Tilebot-BC WORM! Note: This worm rojan file is found in the Windows or Winnt folder
X Microsoft MSI Service msi.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Microsoft Net API (NETAPI) msapi.exeAdded by the W32/Tilebot-HJ WORM! Note: This worm rojan is located in C:WindowsSystem (Win9x/Me) C:%
X Microsoft NetWork FireWall Services NetServices.exehttp://www.sophos.com/virusinfo/analyses/w32lovgateaa.html
X Microsoft NetWork FireWall Services Net_Services.exehttp://www.sophos.com/virusinfo/analyses/w32lovgateaa.html
X Microsoft Network RPC msnetrpc.exeRelated to the Troj/Isen-B
X Microsoft Networks DN (msndn) msndn.exeAdded by the Backdoor.SdBot.AQZ A.K.A. Ircbot_Gen WORM! Allows a remote intruder to gain access and
X Microsoft New Game 2 (svehost32) svehost32.exeAdded by the W32/Tilebot-I TROJAN! Read the link rootkit type stealth involved.
X Microsoft Null Development Monitor (msdevnull) msdevnull.exeAdded by the W32/Rbot-AGE Worm! Read the link rootkit type stealth involved.
X Microsoft Passport Network CyberShots cybershots.exeAdded by the W32/Spybot-ND WORM! Note: This worm rojan is located in C:%WINDIR%System32dllcache (XP/
X Microsoft Path Finder Service (MSpath) mspath.exeAdded by the W32/Sdbot-AEO WORM! Note: This worm rojan file is found in the Windows or Winnt folder.
X Microsoft Path Finder Service (mspathfinder) mspathfinderAdded by the W32/Tilebot-AH WORM! Rootkit Note: Located in C:WindowsSystem (Win9x/Me) C:%WINDIR%Syst
X Microsoft Performance WMI Adapter AddOn (WMIPervAddOn) wmiapsv.exeAdded by the Backdoor.Win32.SdBot.aad TROJAN! Reported by Kaspersky More Note: This worm rojan is lo
X Microsoft Print Spooler (WINDRIVER) scvhost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm rojan is located in C:WindowsS
X Microsoft Registry Viewer (Dumpreg) DUMPREG.EXEAdded by the SDBOT.BXI WORM! Read the link rootkit type stealth involved.