| Type |
Caption |
Section |
File name |
Description |
 |
Scan Register |
|
SSMS.EXE |
Added by the W32/Rbot-AT trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Security Patches |
|
wuamgrdk.exe |
Added by the W32/Rbot-IQ trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Security Patches |
|
wuamgrdn.exe |
Added by the W32/Rbot-JI trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Security Patches |
|
wuamgrdr.exe |
Added by the W32/Rbot-IN trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
Service Drivers |
|
Compt.exe |
Added by the W32/Rbot-ZJ WORM/IRC backdoor Trojan! Read more |
 |
Services host |
|
svchost.com |
Added by the W32/Rbot-EU trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. This infection also attempts to terminate various processes including other infections. Read more |
 |
SP1-Update |
|
sp1update.exe |
Added by the W32/Rbot-JG trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. Read more |
 |
srshost.exe |
|
srshost.exe |
Added by a variant of the RBOT-ASW worm! Note: This wormtrojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. Read more |
 |
start extracting |
|
spoolvse.exe |
Added by the W32/Rbot-XF WORM/backdoor Trojan. It allows unauthorized access by malicious user(s) of the IRC network, killing processes and participating in DoS attacks among other activities. Read more |
 |
Start Upping |
|
spoolnt.exe |
Added by the W32/Rbot-TM WORM/IRC backdoor trojan! Read more |
 |
Starting up |
|
wvsvc.exe |
Added by the W32/Rbot-NF trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
strmsnnrs |
|
msnmcgrs.exe |
Added by the TROJ/RBOT-ACT TROJAN! Read more |
 |
svhost windows services |
|
Svhost8.exe |
Added by a WORM, W32/Rbot-WQ, with backdoor Trojan functionality and found in the Windows system folder. Read more |
 |
sviload32 |
|
sviload32.exe |
Added by the W32/Rbot-AAS WORM/IRC backdoor trojan! Read more |
 |
Sygate Personal 3 |
|
svrv.exe |
Added by the W32/Rbot-XD WORM/backdoor Trojan, which attempts to modify network shares and users and terminate processes. Read more |
 |
Sygate Personal Firewall |
|
sys.exe |
Added by the W32/Rbot-ZC WORM/IRC backdoor Trojan! Read more |
 |
Sygate Personal Firewall Startup |
|
wint.exe |
Added by the W32/Rbot-OV trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. These infections are usually capable of logging keystrokes, retrieve cd keys, and flood other computers. Read more |
 |
system |
|
VSSMON.exe |
Added by the W32/Rbot-AWW TROJAN! Read more |
 |
System |
|
winipck.exe |
Added by the W32/Rbot-TK WORM/backdoor trojan! Read more |
 |
System Registry Settings |
|
regedit.exe |
Added by the W32/Rbot-WL WORM/backdoor Trojan and allows unauthorised remote access to infected computers via the IRC network. Read more |