| Type |
Caption |
Section |
File name |
Description |
 |
loadMect1 |
|
explorer.exe |
Added by the Troj/Lineage-L trojan to the %Windr%/Program Files folder. Read more |
 |
loadMefs |
|
rundll32.exe |
Added by the Troj/LegMir-JA TROJAN! Read more |
 |
LoadOrderVerification |
|
[random filename] |
Added by the TRON.A TROJAN! Read more |
 |
LoadPowerProfile |
|
ASDAPI.EXE |
Added by the CABRO TROJAN! Not to be confused with the valid LoadPowerProfile entry where the command is Rundll32.exe powrprof.dll Read more |
 |
LoadPowerProfile |
|
rundl.exe |
Added by the TOFAZZOL TROJAN! Not to be confused with the valid LoadPowerProfile entry where the command is Rundll32.exe powrprof.dll Read more |
 |
LoadPowerProfile |
|
Rundll.exe powerprof.dll |
Added by the LOXOSCAM TROJAN! Note - do not confuse with the valid LoadPowerProfile entry! Notice that the infected version uses "Rundll.exe" whereas the uninfected version uses "Rundll32.exe" Read more |
 |
LoadService |
|
LoadService.exe |
Added by the Troj/Dloadr-UP Trojan. Read more |
 |
LoadService |
|
Virus.exe |
Added by the Troj/Yusufali-A Trojan. Though it appears that this creates a file called virus.exe, it actually does not create this file and it will probably not be found. Read more |
 |
loadwin |
|
winset.exe |
Added by the Troj/QQPass-I password-stealing trojan. Read more |
 |
loadwin |
|
winsys.exe |
Added by the Troj/QQPass-J password-stealing trojan. Read more |
 |
LoadWindowsFile |
|
[filename] |
Added by the DELF.B TROJAN! where [filename] is the infected file Read more |
 |
Local runole service |
|
srvc32.exe |
A TROJAN, Troj/Small-DP uses this file, after first downloading C:\t.exe, C:\n.exe or C:\m.exe. It will also try to modify the Windows Explorer files. Read more |
 |
Local Service |
|
Intenat.exe |
Added by the Troj/Nuclear-J backdoor Trojan. This infection also creates a file called Notepad.txt in your Windows %System% folder. Read more |
 |
Locator Service |
|
[filename] |
Added by the AGOBOT-KY TROJAN! Read more |
 |
Logical Disk Manager Provider |
|
spool.exe |
Added by the Troj/Agent-DA trojan. Read more |
 |
Login |
|
lala.exe |
Added by the Troj/Bugspr-A backdoor Trojan. Read more |
 |
Login Service |
|
[path to file] |
Added by the MIGMAF TROJAN! Read more |
 |
logitech camera |
|
Soundcane.exe |
Added by an unidentified WORM or TROJAN! |
 |
Logitech Desktop |
|
IPCONN.EXE |
Added by the W32/Sdbot-WE WORM/IRC backdoor Trojan! Read more |
 |
Logitechs |
|
Logitechs.exe |
Added by an unidentified WORM or TROJAN! |