| Type |
Caption |
Section |
File name |
Description |
 |
Scan Register |
|
SSMS.EXE |
Added by the W32/Rbot-AT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Scandsk2 |
|
scandsk2.exe |
Added by the W32/Agobot-PK trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
Security Patches |
|
wuamgrdk.exe |
Added by the W32/Rbot-IQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Security Patches |
|
wuamgrdn.exe |
Added by the W32/Rbot-JI trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Security Patches |
|
wuamgrdr.exe |
Added by the W32/Rbot-IN trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Services host |
|
svchost.com |
Added by the W32/Rbot-EU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection also attempts to terminate various processes including other infections. Read more |
 |
SP1-Update |
|
sp1update.exe |
Added by the W32/Rbot-JG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Starting up |
|
wvsvc.exe |
Added by the W32/Rbot-NF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
Sygate Personal Firewall Startup |
|
wint.exe |
Added by the W32/Rbot-OV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
sysbo |
|
bsdue32.exe |
Added by the W32/Sdbot-UR trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
System Security Updaters |
|
VSMONS.EXE |
Added by the W32/Rbot-EJ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection also attempts to terminate various processes including other infections. Read more |
 |
SysTempRegKey Update |
|
Quinst32.exe |
Added by the W32/Rbot-JD trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |