| Type |
Caption |
Section |
File name |
Description |
 |
Safe |
|
<path to Trojan EXE> |
Added by the Troj/Banker-DT password stealing Trojan aimed primarily at users of Brazilian banks. Read more |
 |
Safe |
|
SafeWin.exe |
Added by the FOCOSENHA TROJAN! Read more |
 |
Samsung |
|
Samsungs.exe |
Added by an IRC_TROJAN variant! Read more |
 |
satdll |
|
satdll.dll |
Added by the Troj/Haxdoor-AS information stealing Trojan. Read more |
 |
satmmc |
|
satmmc.dll |
Added by the Troj/Haxdoor-BT Trojan. This infection utilizes the rootkit vxvgfv.sys. Read more |
 |
sbchosy.bat |
|
sbchosy.bat |
Added by the Troj/GrayBir-AA backdoor Trojan. Read more |
 |
scain |
|
s030109.Stub.exe |
Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! Read more |
 |
Scan Register |
|
SSMS.EXE |
Added by the W32/Rbot-AT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
scandisc |
|
satan.exe |
Added by the GregStar backdoor TROJAN! |
 |
scands32.exe |
|
scands32.exe |
Added by a variant of the Adclicker TROJAN! Read more |
 |
Scandsk2 |
|
scandsk2.exe |
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
Scanreg |
|
[filename] |
Added by the QQPASS.E TROJAN! Read more |
 |
scanregg |
|
scanregg.exe |
Added by the Troj/ScKeylog-A keylogger. Read more |
 |
ScanRegistry |
|
nsrvnt.exe |
Added by the NERTE TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as nsrvnt.exe not scanregw.exe Read more |
 |
ScanRegistry |
|
scanregv.exe |
Added by the MASTERLOCK TROJAN!. Not to be confused with the real ScanRegistry - which is a vital Windows file. This version has the executable as scanregv.exe not scanregw.exe Read more |
 |
SCANREGW |
|
msisexec.exe |
Added by the roj/GWGhost-BA password-stealing backdoor Trojan. Read more |
 |
Scheduler |
|
MSMSGS.EXE |
Troj/Hostbank-A modifies the HOSTS file to redirect certain banking and ebay sites. Found in %windir%\system32\config. |
 |
Scheduling Agent |
|
Scheduler.exe |
Added by the SUBWOOFER TROJAN! Note - this is not the real MS Scheduling agent as the executable is incorrect Read more |
 |
SchedulingAgant |
|
MMTASK.EXE |
Added by the YAB.A TROJAN! Not the valid MusicMatch Jukebox which has the same filename Read more |
 |
SCNDmem |
|
WINLOW.SYS |
Added by the Troj/Haxdoor-CN rootkit infection. This file is installed as system driver and is used to hide processes, files, and registry keys from being seen. Read more |