| Type |
Caption |
Section |
File name |
Description |
 |
Windows DLL Loader |
|
defragfatx.exe |
Added by the W32/Poebot-F trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
Windows DLL Loader |
|
radeonfx.exe |
Added by the W32/Poebot-E trojan. When started this infection connects to a remote IRC server where it waits for commands to execute. Read more |
 |
Windows Firewall |
|
FIREWAL1.EXE |
Added by the W32/Rbot-DB trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Firewalll |
|
scvhost.exe |
Added by the W32/Rbot-EK trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection also attempts to terminate various processes including other infections. Read more |
 |
Windows Guard |
|
WAUMGRD.EXE |
Added by the W32/Rbot-GY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Media Player |
|
tihtaf.exe |
Added by the W32/Rbot-CU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Media Player Update |
|
PACKARD.EXE |
Added by the W32/Rbot-ET trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection also creates a hosts file to block your accessing of security websites as well as the termination of antivirus programs. Read more |
 |
Windows NT Service Name |
|
svchcst.exe |
Added by the W32/Rbot-NV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
Windows Registers |
|
Svchosts.exe |
Added by the W32/Rbot-HV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection will also attempt to harvest keystrokes and cd keys from your computer. Read more |
 |
Windows Registry Scan |
|
regscan.exe |
Added by the W32/Rbot-HA trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Service |
|
slserv32.exe |
Added by the W32/Rbot-KO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection can will terminate antivirus programs to avoid detection. Read more |
 |
Windows Task Manager-Emulator |
|
ukenme.exe |
Added by the W32/Rbot-CF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Task Manager-Emulator |
|
uswtme.exe |
Added by the W32/Rbot-CG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows Update Controller |
|
mwoffice.exe |
Added by the Troj/Battry-A trojan. When started, this infection connects to a remote IRC server and waits for commands to execute. Read more |
 |
Windows Update Service |
|
wuacltl.exe |
Added by the W32/Rbot-KB trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection can log keystrokes and sniff traffic on your network. Read more |
 |
Windows USB controler |
|
winusb.exe |
Added by the W32/Rbot-HR trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
WindowsRegKey update |
|
rkbuouoxfl.exe |
Added by the W32/Rbot-OO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
WindowsRegKey update |
|
windowsup.EXE |
Added by the W32/Rbot-FV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
WindowsRegKey update |
|
winsys.exe |
Added by the W32/Rbot-JY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windowsxp Updater 16Bit |
|
winupdos.exe |
Added by the W32/Rbot-BE trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |