| Type |
Caption |
Section |
File name |
Description |
 |
lk3h1 |
|
[random] |
Added by the Troj/Mosuck-G TROJAN into the Windows system folder. Read more |
 |
llsass |
|
llsass.exe |
Added by the TROJ/PROXY-GG TROJAN! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to launch it at boot. Name field may be empty. Read more |
 |
LMMng |
|
mewlow.sys |
The Troj/Haxdoor-Q TROJAN/backdoor creates this file, and service with a servicename of mewlow. Read more |
 |
LMMngr |
|
memlow.sys |
Part of the Troj/Haxdoor-AE rootkit. This is installed as a system driver service so will not be seen in the services.msc control panel. Read more |
 |
lmu |
|
LMU.exe |
Downloader trojan, recognized by Kaspersky antivirus as Agent.bg Read more |
 |
load |
|
mdm.exe |
.html" target="_blank"BINGHE backdoor Trojan! It has the ability to log your keystrokes, steal data, and execute commands. |
 |
load |
|
svchost.exe |
Added by the Troj/Lineage-K Trojan. Read more |
 |
load system |
|
MSDOSDLL.EXE |
Added by the Backdoor.Badcodor backdoor trojan. Read more |
 |
load32 |
|
load32.exe |
Added by the NIBU, BAMBO TROJANS and DUMARU WORM! Read more |
 |
load32 |
|
netda.exe |
Added by the NIBU.E TROJAN! Read more |
 |
load32 |
|
winldra.exe |
Added by the Troj/Dumaru-AT TROJAN! Read more |
 |
load= |
|
msater.exe |
Added by the RETSAM TROJAN! Read more |
 |
load= |
|
Spoolsv.exe |
Added by the CIADOOR.B TROJAN! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.exe system file Read more |
 |
Loadab1 |
|
explorer.exe |
Added by the Troj/Lineage-AJ Trojan. Read more |
 |
loader32 |
|
[path to .exe] |
Added by Troj/Domcom-D downloading TROJAN. Read more |
 |
loader32 |
|
Loader32.exe |
Added by an unidentified TROJAN! |
 |
LoadingAgent |
|
msload32.exe |
Added by the OBLIVION TROJAN! This executable is one of the most common but there are more Read more |
 |
LoadingAgent |
|
ZipLoader32.exe |
Added by the OBLIVION TROJAN! This executable is one of the most common but there are more Read more |
 |
loadMecq0 |
|
explorer.exe |
tml" target=_blankMUMUBOU.C trojan. Note that legitimate explorer.exe resides in the Windows folder. |
 |
loadMecq3 |
|
rundll32.exe |
Added by the Troj/LegMir-A password-stealing Trojan. Read more |