| Type |
Caption |
Section |
File name |
Description |
 |
Windows Task Manager-Emulator |
|
uswtme.exe |
Added by the W32/Rbot-CG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
windows update |
|
aaa.exe |
Added by the Troj/Singu-Y Trojan. This infection also creates the file c:\windows\aaa.cfg. Read more |
 |
Windows Update Controller |
|
mwoffice.exe |
Added by the Troj/Battry-A trojan. When started, this infection connects to a remote IRC server and waits for commands to execute. Read more |
 |
Windows update Service |
|
wisvcc.exe |
Added by the Troj/Orse-G Trojan. This infection also creates the file %System%zlbw.dll. Read more |
 |
Windows Update Service |
|
wuacltl.exe |
Added by the W32/Rbot-KB trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection can log keystrokes and sniff traffic on your network. Read more |
 |
Windows USB controler |
|
winusb.exe |
Added by the W32/Rbot-HR trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
windowslogo |
|
G_Server.exe |
Added by the Troj/GrayBrd-F backdoor Trojan. This infection also installs the files c:\windows\system32\Plugin\ENLOG.DLL and c:\windows\tpighz.dat. Read more |
 |
WindowsRegKey update |
|
rkbuouoxfl.exe |
Added by the W32/Rbot-OO trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
WindowsRegKey update |
|
windowsup.EXE |
Added by the W32/Rbot-FV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
WindowsRegKey update |
|
winsys.exe |
Added by the W32/Rbot-JY trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
WindowsTaskStat |
|
csrcmd.exe |
Added by the Troj/Brepbot-B backdoor Trojan. This infection also creates the files Temp466.bat and Temp755.bat. Read more |
 |
WindowsUpdatesvchostss |
|
svchostss.exe |
Added by the Troj/Agent-HZ Trojan. This infectiona also installs the file C:\Windows\System32\helper\svchostss.exe. Read more |
 |
Windowsxp Updater 16Bit |
|
winupdos.exe |
Added by the W32/Rbot-BE trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Windows_Help_Server |
|
lasas.exe |
Added by the Troj/Delf-JQ trojan downloader. This infection also logs your keystrokes. Read more |
 |
winm32 |
|
winm32.dll |
Added by the Troj/Haxdoor-BQ backdoor Trojan. This infection utilizes the winm64.sys and the winm32.sys rootkit. Read more |
 |
WinManage |
|
[random filename] |
Added by the Troj/Ranck-KH proxy trojan. This infection allows a remote intruder to use your Internet connection to hide his location. Read more |
 |
WinMedia32 |
|
winmedia32.exe |
Added by the Troj/Agent-UF Trojan. This infection also creates the file %Temp%removeMe290233.bat. Read more |
 |
Winmon32 |
|
winmon32.exe |
Added by the W32/Rbot-OQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. The logged keystrokes are saved in a file called key.txt. Read more |
 |
WINRUN |
|
taskgmr.exe |
Added by the W32/Mytob-BX mass-mailing worm and trojan backdoor. When started this infection connects to an IRC server where it waits for remote commands. Read more |
 |
winshost.exe |
|
winshost.exe |
Added by the Troj/BagleDl-K Trojan. The file for this infection is found in the Windows system folder. Read more |