| Type |
Caption |
Section |
File name |
Description |
 |
NAVSCANNER32 |
|
NAVSCANNER32.EXE |
Added by the RBOT.QC WORM! Read more |
 |
NAVtask |
|
NAVtask.exe |
Added by the W32/Rembot-A backdoor/worm. This infection connects to an IRC server and waits for commands to execute. Read more |
 |
NAV_Update |
|
NAV_Update.exe |
Unidentified WORM or TROJAN! |
 |
nawadll32 |
|
nawadll32.exe |
Added by the W32/Sdbot-ZI worm. When started, this infection will connect to a remote IRC server and wait for commands to execute. Read more |
 |
nawdll32 |
|
nawdll32.exe |
Added by the W32/Sdbot-Z worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
NDAv |
|
MCSV.COM |
Added by the W32/Sumom-C instant messenger and P2P worm. Read more |
 |
NDAv |
|
SVHOST.EXE |
Added by the W32/Sumom-C instant messenger and P2P worm. Read more |
 |
NDIS Adapter |
|
ndis.exe |
Added by the SDBOT.VF WORM! Read more |
 |
NDIS Adapter |
|
servenxpp.exe |
The W32/Forbot-GP WORM/Backdoor Trojan adds this, also creating a new service. The service is named "NDIS TCP Layer Transport Device", it's displayname is "NDIS Adapter". Read more |
 |
NDIS Adapter |
|
windows.exe |
Added by the FORBOT-BR WORM! Read more |
 |
NDIS TCP Layer Transport Device |
|
servenxpp.exe |
The service is added by the W32/Forbot-GP WORM using this file, it's displayname is NDIS Adapter. Read more |
 |
NDplDeamon |
|
nstask32.exe |
Added by the RANDEX.E WORM! Read more |
 |
NDplDeamon |
|
winlogin.exe |
Added by the RANDEX.E WORM! Read more |
 |
NDplDeamon |
|
winlogin.exe |
Added by the RANDEX.E WORM! Read more |
 |
necix |
|
aceyukujy.exe |
Added by W32/Sdbot-UE, a WORM/IRC backdoor TROJAN and found in the Windows system folder. Read more |
 |
Ner0 Check |
|
ner0check.exe |
Added by a variant of the RBOT WORM! Read more |
 |
Nero Updater.6.12 |
|
wmp9.exe |
Added by the W32/Agobot-AAG worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Nero.ma |
|
***.exe [*** = 2 to 3 digits] |
Added by the JONBARR.D WORM! Read more |
 |
NeroAutoStartClient |
|
NeroASM.exe |
Added by the AGOBOT.VG WORM! Read more |
 |
NeroCheck |
|
regedit.exe |
Added by the DOOMJUICE.B WORM! Note - this is not the valid Ahead Nero CD burning program. Also it is not the valid Windows registry editor which resides in C:\Windows or C:\Winnt wheras this version resides in C:\Windows\System (Win9x/Me), C:\Winnt\System32 (WinNT/2K) or C:\Windows\System32 (WinXP) Read more |