| Type |
Caption |
Section |
File name |
Description |
 |
DcomHelper Service |
|
dcmhelp.exe |
Added by the W32/Sdbot-AJA worm and IRC backdoor. Read more |
 |
dcznetv2 |
|
dcznetv2.exe |
Added by the W32/Tilebot-O worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
DDEsvr |
|
ddesvr.exe |
Added by the W32/Agobot-QI worm. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
Debugger |
|
csrss.exe |
Added by the W32.Beagle.EA@mm mass-mailing worm. This infection should not be confused with the legitimate c:\windows\system32\csrss.exe file. Read more |
 |
debugger |
|
dbg32.exe |
Added by W32/Mytob-FW WORM! Read more |
 |
DebugMonitor |
|
debugmonitor.exe |
A MyDoom WORM variant adds this file, exploiting P2P and email clients. Read more |
 |
deejay |
|
forboo.exe |
Added by the FORBOT-AY WORM! Read more |
 |
Default |
|
explore.vbs |
ml" target=_blankALLEM mass-mailing worm. It finds addresses to send to in the Microsoft Outlook address book. It also spreads via MIRC. |
 |
Default |
|
lsassM.exe |
Added by the W32/Rbot-UW worm. When connected this infections connects to an IRC server where it waits for remote commands to execute. Read more |
 |
Default |
|
mtask.vbe |
ml" target=_blankALLEM mass-mailing worm. It finds addresses to send to in the Microsoft Outlook address book. It also spreads via MIRC. |
 |
default |
|
splvs.exe |
Added by the WORM_SDBOT.FS backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. Read more |
 |
Defragmentation Management Handler |
|
dfrgfat32.exe |
Added by the W32/Codbot-AB backdoor worm. Read more |
 |
Delete Me |
|
worm.exe |
Added by the DOOMHUNTER WORM! Read more |
 |
Depassx |
|
Xfsa.exe |
Added by the W32/Sdbot-SK worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. Read more |
 |
desktop |
|
desktop.exe |
Added by the SDBOT.MD WORM! Read more |
 |
Dev Gnu Cpp |
|
devcpp.exe |
Added by the W32/Rbot-RU worm. This infection connects to an IRC server where it waits for remote commands. Read more |
 |
dev1 |
|
tool.exe |
Added by the W32/Randon-V worm. This infection, when started, connects to an IRC server using a provided MIRC client to receive commands. Read more |
 |
Device Configuration Loader |
|
msdvc32.exe |
Added by a variant of the AGOBOT/GAOBOT WORM! Read more |
 |
DevicePath |
|
Proyecto1.exe |
Added by the GRUEL WORM! Read more |
 |
DevicePath |
|
Root.exe |
Added by the GRUEL WORM! Read more |