| Type |
Caption |
Section |
File name |
Description |
 |
IDTemplates |
|
IDTemplate.exe |
Added by the W32/Brontok-H worm. Read more |
 |
IE |
|
Ysnd.exe |
Added by the W32.Browa MIRC and Yahoo Instant Messenger worm. Read more |
 |
IE Processes |
|
nosc32.exe |
Added by the W32/SdBot-CN backdoor worm. When this infection starts it will connect to an IRC server where it will wait for remote commands to execute. Read more |
 |
IE Runtime |
|
winlogo.exe |
Added by the W32/Rbot-AMJ worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
IE Runtimes |
|
winis.exe |
Added by the W32/Rbot-ADZ worm. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
IE6 |
|
porn.pif |
Added by the W32/Rbot-ATF worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
IE6 |
|
ssmss.exe |
Added by the W32.Gaobot.DXO worm. Read more |
 |
ie6 |
|
wkstmg.exe |
Added by a variant of the W32/SDBOT WORM! Read more |
 |
IE9 |
|
snowing.exe |
Added by the W32/Rbot-DRD worm and IRC backdoor. Read more |
 |
IECheck |
|
mssvp.exe |
Added by the W32/Tirbot-G worm. Read more |
 |
IECheck |
|
xpssl.exe |
Added by the W32/Tirbot-E worm. This infection sits on an IRC channel and typically can harvest information from the system registry, perform denial of service (DDoS) attacks, serve as a proxy server, upload/download and execute files, report file system information, detect security software or list processes upon command. Read more |
 |
ieexec.exe |
|
ieexec.exe |
Added by an unidentified WORM or TROJAN! |
 |
IELoader32 |
|
iexplore32.exe |
Added by the SPEX or SPEX.B WORMS! Read more |
 |
IEXPL0RER |
|
IEXPL0RER.EXE |
Added by the W32/Agobot-QL WORM! File is found in the Windows system folder. Read more |
 |
iexpl0res |
|
iexpl0res.exe |
Added by the RBOT.AEX WORM! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to launch it at boot Read more |
 |
Iexploit |
|
Iexploit.html |
Added by the VBS.Inker.B@mm mass-mailing worm. This worm will also swap your mouse buttons, change icons, and lower security settings. Read more |
 |
Iexplore Services |
|
iexplore.exe |
Added by an unidentified VIRUS, WORM or TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) process, which should not appear in Msconfig/Startup unless you add it manually! Read more |
 |
Iexplore Services |
|
iexplore.exe |
Added by an unidentified VIRUS, WORM or TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) process, which should not appear in Msconfig/Startup unless you add it manually! Read more |
 |
IEXPLORER-Drivers |
|
windns.exe |
A service is created by the W32/Forbot-EP WORM, and run using the display name of "Windows Domain Name Drivers". Read more |
 |
iexplorer32 java scripting |
|
IExplore32b.exe |
Added by the RBOT.ABO WORM! Read more |