CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

spacer spacer

O23 List of Windows XP/NT services

Currently 4053 entries and growing...
Last updated on 2008-08-02 17:32:28 Eastern.


This list was originally started at SpywareAid with 730 entries and Matt gave CastleCops permission to host it. CastleCops has since (May 2005) been adding new entries to it here. The new items may not be in the original list but attempts are made to ensure the original is also updated. The full HTML list is here.

KEY:
  • "L" = Legitimate
  • "O" = Open to Debate
  • "X" = Malware/Bad
  • "?" - Unknown

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z




    Full List

    NameStatusFilenameDescription
    C-DillaCdaC11BAOCDAC11BA.EXEcopy protection software
    C-DillaSrvLCDANTSRV.EXEC-Dilla License Management software from MacroVison
    CA eTrust VM ServiceLCAeVMS.exeRelated to CA_eTrust_VM_Service from Computer Associates. Note: Located in \%Program Files%\CA\eTrust\VM Service\
    CA ISafeLisafe.exeRelated to Computer Associates virus software.
    CA License Client (CA_LIC_CLNT)Llic98rmt.exeComputer Associates
    CA License Server (CA_LIC_SRVR)Llic98rmtd.exeComputer associates
    CA Pest Patrol Realtime Protection Service (ITMRTSVC)LITMRTSVC.exeRelated to CA_Pest_Patrol Realtime Protection Service Note: Located in C:\Program Files\CA\PPRT\bin\
    CaCCProvSPLccprovsp.exeRelated to eTrust_Internet_Security_Suite from Computer Associates International Inc. Note: Located in C:\Program Files\CA\eTrust Internet Security Suite\
    CachemanXP (CachemanXPService)LCachemanXP.exeCachemanXP Memory Manager
    CADopia License ManagerLlmgrd.exeRelated to Macrovision application-generic license server. Note: Located in \%Program Files%\CADopia\INTELL~1\LicenseManager\
    CAILILcaili.exerelated to CarryIco Software, installed by a flash card reader driver setup utility.
    CAISafeLISafe.exePart of eTrust EZ Antivirus
    CamMonitor (uCamMonitor)LuCamMonitor.exeRelated to Cam_Monitor from Arcsoft Inc. Note: Located in \%Program Files%\ArcSoft\Magic-i Visual Effects\
    CanerServerXcaner.exe Troj/Hupigon-ES
    Canon BJ Memory Card Manager (Bjmcmng)LBjmcmng.exeCanon Bubblejet Memory Card Utility
    Canon Camera Access Library 8 (CCALib8)LCALMAIN.exe Canon digital camera software that provides additional configuration options for the devices.
    Canon Driver Information Assist ServiceLCnxDIAS.exe CANON Driver Information Assist Core Module. This file should be found in the Program Files\Canon\DIAS folder.
    Canon PIXMA iP6000D Memory Card Manager
    (PDUiP6000DMemCrdMgr)
    LPDUiP6000DMemCrdMgr.exeRelated to Canon PIXMA iP6000D Bubble Jet printer
    Capture Device ServiceLDevSvc.exeRelated to Capture_Device InterVideo Service. Note: Located in C:\Program Files\Common Files\InterVideo\
    Capture Service (CaptureService)LCaptureService.exeRelated to Impact_360 from Witness Systems, Inc. Workforce management. Note: Located in C:\WINDOWS\system32\DirectX\
    Carbon Copy Scheduler (CarbonCopyScheduler)Lschdsrvc.exeRelated to Alteris services. http://www.altiris.com
    CarboniteServiceLcarboniteservice.exeRelated to Carbonite_online_backup automatically backs up all the the files on your computer.
    Card Adapter (NETDown)Xsmss.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This is not the legitimate Windows Process smss.exe. (Which is found in the System32 folder.) This worm/trojan file (smss.exe) is found in the Windows or Winnt folder.
    CaReTaKeR-CT NetMgr 1.2.1 (sfmgr)Lsfmgr.exeRelated to Brazil_r/s_CaReTaKeR-CT NetMgr. Brazil r/s is the industry standard for high-end quality, flexibility, reliability, and artist-friendly workflow in 3ds Max. Note: Located in \%ROOT%\sfmgr\
    CbEvtSvcXCbEvtSvc.exeIdentified by Kaspersky as a variant of the Trojan-Downloader.Win32.Agent.jhj Trojan. Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    CBT Wlan Service (CBTWlanSrv)LCBTWlanSrv.exeRelated to CBT_Wlan service. On-line course. Note: located in \%WINDIR%\
    ccEvtMgrLccSvcHst.exeRelated to LiveUpdate_Notice_Service from Symantec
    CcEvtSvcXCcEvtSvc.exeIdentified by Kaspersky as a variant of the Trojan.Win32.Agent.elr malware. Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    ccSetMgrLccSvcHst.exeRelated to LiveUpdate_Notice_Service from Symantec
    CD-ROM driveXQtime.exeIdentified by Kaspersky as a variant of the Backdoor.Win32.SdBot.aad worm and IRC backdoor. Note: located in \%WINDIR%\ Note: Use SDFix under supervision.
    cdmonsvc32Xcmmonsvc32.exe Worm.Opanki_Variant.Process Note: Located in %windir%
    Cdsys (Cdsys)Xcdcd.sysAdded by the Troj/Agent-IA TROJAN! Note: This trojan file is found in the System32 folder.
    CE-Infosys Security System (CE-Infosys Security
    Service)
    ?ceisvc.exeSeems to be legit, belongs to this company Ce-infosys_suite It will be left as unknown until more is found out about the company.
    CeEPwrSvcLCeEPwrSvc.exeRelated to TOSHIBA and COMPAL ELECTRONIC INC.
    CelInDrvXCelInDriver.sys Win32/Agent.ABF Note:Located in %system% Read the link, collects sensitive information
    CentennialClientAgentLCAgent32.exeRelated to Centennial UK Limited - http://www.centennial.co.uk/
    CentennialIPTransferAgentLxferwan.exeRelated to Centennial UK Limited - http://www.centennial.co.uk/
    CEPS WatchLCEPSWatch.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CEPS\
    Cepstral License ServerLCepstralLicSrv.exeRelated to Cepstral_License Server from Sepstral, LLC Note: Located in \%Program Files%\Cepstral\bin\
    Certificate Propagation (CertPropSvc)Lsvchost.exe -k netsvcsPart of Windows Vista Note:Located in C:\%WINDIR%\System32
    CesarFTP FTP Server (CesarFTP)Lserver.exeRelated to CesarFTP from ACLogic. FTP server. Note: Located in \%Program Files%\CesarFTP\
    cFosSpeed System Service (cFosSpeedS)Lspd.exe cFos_Software Internet acceleration program related. Note: May be necessary for the software to work properly.
    change me please (VIRUS)Xsysdat.exeAdded by the W32/Tilebot-L WORM!
    Changed me (Patch)Xsystemz32.exe W32/Tilebot-JD Read the link, allows remote access and uses rootkit stealth
    ChanService (ChanSirv)X2pack.exeIdentified as a variant of Backdoor.Win32.SpyBoter.fb Note: located in \%WINDIR%\
    Charter High-Speed Security SuiteOSERVIC~1.EXERelated to F-Secure, Backweb application
    chckntfsXchckntfs.exeAdded by the W32/Tilebot-EF WORM! Note: This worm\trojan is located in C:\%WINDIR%\
    Check Point SecuRemote Service (SR_Service)LSR_Service.exeRelated to Check_Point_Software Technologies Note: Located in C:\Program Files\CheckPoint\
    Check Point SecuRemote WatchDog (SR_WatchDog)LSR_WatchDog.exeRelated to Check_Point Software Technologies Note: Located in C:\Program Files\CheckPoint\SecuRemote\bin\
    Check Point SSL Network Extender (cpextender)Lslimsvc.exeRelated to SSL_Network_Extender from Check Point Tech. Note: Located in \%Program Files%\CheckPoint\SSL Network Extender\
    chkext(chkext) (chkext)Xchkext.exeAdded by the W32/Sdbot-CRW WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    Chong3 Me (MlCR0SOFTS UPDATE)XN0RTAN.EXEAdded by the SDBOT.CNM WORM! Read the link, rootkit type stealth involved.
    Chong3 Me (MlCR0SOFTS UPDATEe)Xlexplarer.exeAdded by the SDBOT.CWB WORM! Read the link, rootkit type stealth involved.
    cics.REGION1Lcicssvc.exeRelated to IBM Corp.
    cics.REGION2Lcicssvc.exeRelated to IBM Corp.
    cicssfs.SCMMC223Lcicssfssvc.exeRelated to IBM Corp.
    cidaemonL.exeMicrosoft Indexing Service filter daemon
    cidaemonLcidaemon.exeMicrosoft Indexing Service filter daemon
    Cisco Configuration Service (CCS)Lccs.exeRelated to Related to Cisco_Systems Note: Located in C:\WINDOWS\system32\
    Cisco Posture Server Daemon (ctapsd)Lctapsd.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\
    Cisco Security Agent (CSAgent)LCSAControl.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CSAgent\bin\
    Cisco Systems, Inc. CTA Posture State Daemon
    (ctatransapt)
    Lctatransapt.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\
    Cisco Systems, Inc. STC Agent (STCAgent)Lagent.exeRelated to Cisco Systems inc. SSL VPN Client, Note: located in C:\Program Files\Cisco Systems\SSL VPN Client\
    Cisco Systems, Inc. VPN Service (CVPND)Lcvpnd.exepart of Cisco VPN
    Cisco Systems, Inc. VPN Service (CVPND)Lcvpnd.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\VPN Client\
    Cisco Trust Agent EOU Daemon (CtaEoU)LCtaEoU.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\
    Cisco Trust Agent Logger Daemon (ctalogd)Lctalogd.exeRelated to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\
    Citrix CPU Utilization Mgmt/CPU Rebalancer (CTXCPUBal)Lctxcpubal.exeRelated to Citrix MetaFrame
    Citrix CPU Utilization Mgmt/Resource Mgmt (ctxcpuSched)Lctxcpusched.exeRelated to Citrix MetaFrame
    Citrix CPU Utilization Mgmt/User-Session Sync
    (CTXCPUUsync)
    Lctxcpuusync.exeRelated to Citrix MetaFrame
    Citrix Print Manager Service (cpsvc)LCpSvc.exeRelated to Citrix MetaFrame, control Printer Management.
    Citrix SMA ServiceLSmaService.exeRelated to Citrix MetaFrame
    Citrix Virtual Memory OptimizationLCtxSFOSvc.exeRelated to Citrix MetaFrame, Monitors all DLLs on a server to find where collisions are occurring
    Citrix WMI Service (CitrixWMIService)Lctxwmisvc.exeRelated to Citrix MetaFrame
    Citrix XML Service (CtxHttp)Lctxxmlss.exeRelated to Citrix MetaFrame
    Citrix XTE Server (CitrixXTEServer)LXTE.exeRelated to Citrix MetaFrame
    CL500_510 Remote ServerLKaNTSRV.exeRelated to Panasocic_Color_Laser_Printer server. Note: Located in C:\PROGRAM FILES\PANASONIC\REMOTE SERVER\
    Client Access Express Remote Command (Cwbrxd)LCWBRXD.EXERelated to IBM Corporation. Note: Located in \%WINDIR%\
    Client Debug ManagerXspoolvc.exe W32/Sdbot-DCX Read the link, allows remote access
    Client Disk ManagerXsymon.exeAdded by the W32/Tilebot-IN WORM! Note: This worm\trojan is located in C:\%WINDIR%\System32\dllcache\ (XP/WinNT/2K)
    Client IP-IPXXsvchosts.exeAdded by a variant of the W32/SDBOT WORM! Note: Located in C:\%WINDIR%\System32\drivers\ (XP/WinNT/2K)
    Client Network (CdmService)Lcdmsvc.exeRelated to Citrix MetaFrame, maps client drives and peripherals for access in ICA sessions.
    Client Security Agent Service (BNPagent)Lbndaemon.exeRelated to Client_Security_Agent service from Bradford Networks. Note: Located in \%Program Files%\Bradford Networks\Client Security Agent\
    Client Server Runtime CounterXcrssc.exeAdded by a variant of the SDBOT Note: Located in \%WINDIR%\ Note: Use SDFix under supervision.
    Client Server Runtime ProcesXcsrss.exeAdded by the WORM_SDBOT.BTI WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder. Malicious activities read the topic. Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) This worm\trojan file is found in the Windows or Winnt folder.
    Client Server Runtime ProcessLcsrss.exeMicrosoft Client Server Runtime Process
    Client Server Runtime Service (csrss32)Xcsr.exeAdded by the W32/Sdbot-AFM WORM! Note: This worm file is found in the Windows or Winnt folder.
    Client Update Service for NovellLcusrvc.exeRelated to Novel server.
    Client/Server Runtime Server Subsystem (CSRSS)Xcsrss.exe W32/IRCBot-UN Note: Located in %windir%, not to be confused with the legitimate file in %windir%\system32 (%windir%\system on windows 98/ME) Read the link, allows remote access and steals information
    Client32Lclient32.exeNetSupport Manager by "NetSupport Ltd.".
    Cliente de seguimiento de vinculos distribuidosLservices.exeSpanish Windows 2000 distributed links tracking client
    Cliente DHCPLservices.exeSpanish Windows 2000 DHCP client
    Cliente DNSLservices.exeSpanish Windows 2000 DNS client
    Clients Server Runtime ProcessXcsrss.exeAdded by the W32/Sdbot-CPF WORM! Note: This worm\trojan is located in C:\%WINDIR% This is not the legitimate Windows Process. (Which is found in the System32 folder.)
    Clients Server Runtime Process (Windows Internet)Xcsrss.exeAdded by the W32/Sdbot-CPF WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder.
    Clip BookXgezi-yasuo.exe Troj/QQHelpe-CY Note: Troj/QQHelpe-CY installs a number of files besides gezi-yasuo.exe in a few locations. Read the link
    ClipBo0kXbook.exeAdded by a variant of the BKDR_HUPIGON.EVG backdoor Trojan. Identified by Trend Micro. Note: Located in \%ROOT%\
    clmss (Content List Management Sub System)Xclmss.exeAdded by the W32/Tilebot-AO WORM! Note: This worm file is found in the Windows or Winnt folder. Read the link, rootkit type stealth involved.
    Clr_uiLatinpdxx.sysRelated to ATI Specialized PCD VBI Codec. Note: Located in \%WINDIR%\System32\drivers\
    CMG Shield (auet4iogie5an)Xnvslzrygvb.exeAdded by a variant of the Backdoor.Oderoor Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. Note:Random names are used for the service and filename.
    CMG Shield (CMGShield)LCredant.exeRelated to CMG_Shield Application from Credant Technologies. CREDANT Mobile Guardian Enterprise Edition (CMG EE) is an integrated, policy-based mobile data security, Note: Located in \%WINDIR%\System32\
    CMGShieldLCmgShieldSvc.exeRelated to Credant_Technologies data encryption software for laptop and USB encryption to CD-DVD recorders, iPods and Smart Phones. Note: Located in \%WINDIR%\System32\
    CNG Key Isolation (KeyIso)Llsass.exePart of Windows Vista Note:Located in C:\%WINDIR%\System32
    Cobian Backup 8 service (CobBMService)LcbService.exeRelated to Cobian_Backup An Open Source projects. Note: Located in C:\Program Files\Cobian Backup 8\ Note Open souce project can be modified. Make sure you scan the program with a Virus protection program before using.
    CodecXWINCODEC.EXEAdded by the SDBOT.CJO WORM! Read the link, rootkit type stealth involved.
    COGECO Security Services (BackWeb Plug-in - 9867844)OSERVIC~1.EXERelated to COGECO_F-Secure Backweb application. Note: Located in \%Program Files%\COGECO~1\backweb\9867844\Program\
    Cognos ReportNetLcogbootstrapservice.exeRelated to Cognos_ReportNet Business Intelligence software. Note: located in C:\Program Files\Cognos\crn\bin\
    Cognos ReportNet (ruzxj7ol3oeak)Xbnoilfhxkgvz.exeAdded by a variant of the Backdoor.Oderoor Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. Note:Random names are used for the service and filename.
    ColdFusion Graphing ServerLJRun.exeRelated to MacroMedia_ColdFusion products. Made by MacroMedia,Inc.
    ColdFusion Management Repository Server (ColdFusion
    Management Repository)
    Ljrun.exeRelated to MacroMedia_ColdFusion products. Made by MacroMedia,Inc.
    ColdFusion Management ServiceLCANamingAdapter.exeRelated to MacroMedia_ColdFusion products. Made by MacroMedia,Inc.
    ColdFusion Monitoring Service (ClusterCATS Service)Lccmgr.exeRelated to MacroMedia_ColdFusion products. Made by MacroMedia,Inc.
    ColdFusion MX 7 Search ServerLk2admin.exeRelated to Cold_Fusion from Adobe Systems Incorporated. Note: Located in \%ROOT%\
    ColdFusion MX Application ServerLjrunsvc.exeRelated to Macromedia Cold Fusion software.
    ColdFusion MX ODBC ServerLswstrtr.exeRelated to Macromedia Cold Fusion software.
    Collaboration Runtime Service (xmppd-jse)Lxmppd-jse.exeRelated to Sun_Java_Studio_Enterprise Software. Note: Located in \%Program Files%\Sun\jstudio_ent81\collab\bin\
    COM Host (comHost)LcomHost.exeRelated to Norton/Symantec Internet Security
    COM Message Transfer (mscommt)Xsvchost.exe -k mscommtAdded by the Troj/Dbit-A TROJAN!
    COM+ Component Service (COMCSVC)Xwinmgnt.exeAdded by unknown malware, the file winmgnt.exe may be a Serv-U FTP server used to download other malicious files to your computer. File location is in the System32 folder.
    COM+ Event System (EventSystem)Lsvchost.exe -k LocalServicePart of Windows Vista Note:Located in C:\%WINDIR%\System32
    COM+ Interface (svcmngr)Xsvcgirl.exeAdded by an unknown malware. Note: This worm\trojan is located in C:\%WINDIR%\TEMP\ folder.
    COM+ MessagesXsvchosts.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    COM+ System Application (COMSysApp)Ldllhost.exePart of Windows Vista Note:Located in C:\%WINDIR%\System32
    COM+ System Applications (COMSystemApp)Xdllhost.exe W32/SillyFDC-AV Note:Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (Vista/XP/WinNT/2K) Turns off anti-virus applications and Steals information
    COM+ System Client (ComSysCnt)Xcmsvc.exeIdentified as the SdBot.bis worm Note: This worm is located in C:\WINDOWS\repair\
    COM+ System Service (COMSS)XSSMS.EXEAdded by unknown malware. File location is in the System32 folder.
    COM+ System Service (DLLHOST)Xdllhost.exeAdded by the Backdoor.Win32.SdBot.xd as identified by Kaspersky TROJAN! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    COM+ System Source (COMSysSRC)Xvmnat.exe W32/Tilebot-JE Note: Located in %windir%\system32 Read the link, allows remote access
    Com4QlbLCom4Qlb.exeRelated to HP_Compaq Buttons. Note: Located in \%Program Files%\Hewlett-Packard\HP Quick Launch Buttons\
    Command Lsass ServicesXsvshost.exeAdded by a varian of the Backdoor.Sdbot family of trojan. Note: Located in \%WINDIR%\System32\
    Command Service (cmdService)Xcommand.exeAdware
    CommServerLCommSvr.exeRelated to the HiPath 1220 digital PBX system from Siemens. For more information Click_Here File location is in the Program Files\Siemens\HiPath 1220\CommServer2.0 folder.
    CommServer (audieqaad)Xlmguc.exeAdded by a variant of the Backdoor.Oderoor Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. Note:Random names are used for the service and filename.
    Comodo Anti-Virus and Anti-Spyware ServiceLcavasm.exeRelated to Comodo Anti-Virus and Anti-Spyware Service Note: Located in \%Program Files%\Comodo\common\CAVASpy\
    Comodo Application Agent (CmdAgent)Lcmdagent.exeRelated to Comodo_Firewall from Comodo. Note: Located in C:\Program Files\Comodo\Firewall\
    COMODO Firewall Pro Helper Service (cmdAgent)Lcmdagent.exe Comodo_Firewall
    Compaq Advisor (Compaq_RBA)Lcompaq-rba.exeRelated to Compaq
    Compaq DMI Web AgentLWebDmi.exeRelated to Compaq Computer.
    Compaq Local AlerterLcpqalert.exeRelated to Compaq Computer. Allows for "fault, performance, and configuration management". Recommended for corporate users only.
    Compaq Local Alerter (CPQALERT)LCPQAlert.exeRelated to compaq products
    Compaq Presario SSHXcpsd.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This trojan is located in C:\Windows\System\dllcache (Win9x/Me), C:\%WINDIR%\System32\dllcache (XP/WinNT/2K)
    Compaq Remote Diagnostics Enabling AgentOCpqdfwag.exeRelated to Compaq diagnostics utility.
    Computer Browser (Browser)Lbrowser.dllPart of Windows Vista Note:Located in C:\%WINDIR%\System32
    Compuware Open ServerLcwjboss.exeCompuware Serversoftware
    comreplXcomrepl32.exeAdded by the W32/Rbot-DNH WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder.
    comreplXcomreplsvc.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\%WINDIR%\ folder.
    Config LoaderXscvhost.exeseveral Agobot variants
    ConfigFree Service (CFSvcs)LCFSvcs.exeToshiba related
    Configuration Loader (bF)Xwincrt32.exeVirus and Trojan tools. http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_AGOBOT.JP&VSect=Sn
    Configuration LoadingXsvchos1.exeseveral Agobot variants
    Connected Agent Service (AgentSrv)LAgentSrv.EXERelated to Connected Corporation. - http://www.connected.com/
    Connected LauncherLCBlaunch.exeConnected backup software
    Connected RegCapLCBRegCap.EXEConnected backup software
    Connection ReseXwebadmin.exeW32/Forbot-FY adds this, with a display name of Website Administrator Info.
    Content Index serviceLcisvc.exeMicrosoft Content Index service
    Content Monitoring ToolLmsCMTSrvc.exeCompaq CMTS
    ContentProtect (CwCpSvc20)Lcwsvc.exeRelated to ContentWatch Parental Control Internet Filter.
    Contivity VPN ServiceLExtranet_serv.exeRelated to Novel server.
    Contour Shuttle Device Engine (ShuttleEngine)LShuttleEngine.exeRelated to Contou_Design
    Control ServicesXexpl0rer.exe Win-Trojan/BlackHole.125440
    Control Task ManagerXcvsys.exe Added by an unidentified TROJAN! Note: of the IRC/bot Family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    COSIDS_TBLTbMux32.exeRelated to http://www.transaction.de/
    costeOmartinr.coste@neuf.frantivirus
    CounterSpyAgentLSBCSESvc.exeRelated to CounterSpyAgent From Sunbelt Software. Note: Located in \%Program Files%\System32\Sunbelt Software\CounterSpy\Agent\
    Cox High Speed Internet Security Suite System Service
    (AuthSysSvc)
    LSysSvcNt.exeRelated to Cox High Speed Internet Security Suite System Service. Note: Located in C:\Program Files\Cox\Applications\app\
    cpanelx (Microsoft Control Panel)Xcpanelx.exeAdded by a variant of the W32/SDBOT WORM! Note: This worm file is found in the Windows or Winnt folder.
    cpqdmiLcpqdmi.exeCompaq version of the Desktop Management Interface
    CPUCooLServer Service (CPUCooLServer)LCooLSrv.exePart of CPUCooL
    CQG Installation ServiceLcqginsts.exeRelated to CQG, Inc. CQG provides extensive historical data online for charting and technical analysis.
    crautoLcrauto.exeBackground task of the Paragon Encrypted Disk software which enables you to have encrypted virtual hard disks to store sensitive data. (answers that work)
    Creative ALchemy AL1 Licensing ServiceLAL1Licensing.exeRelated to Creative_ALchemy EAX® and 3D Audio restoration in Windows Vista. Note: Located in \%Program Files%\Common Files\Creative Labs Shared\Service\
    Creative Audio Pack Licensing ServiceLAPLicensing.exeRelated to Creative_Audio_Pack Licensing Service. Note: Located in \%Program Files%\Common Files\Creative Labs Shared\Service\
    Creative Audio Service (CTAudSvcService)LCTAudSvc.exeRelatedt to Creative_Audio_Service from Creative Technology. Note: Located in \%Program Files%\Creative\Shared Files
    Creative Labs Licensing (udavaaelyeev)Xwbtqacmhmbv.exeAdded by a variant of the Backdoor.Oderoor Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. Note:Random names are used for the service and filename.
    Creative Labs Licensing ServiceLCreativeLicensing.exeRelated to Creative Labs Licensing Service. Note: located in C:\Program Files\Common Files\Creative Labs Shared\Service\
    Creative Service for CDROM AccessLCTsvcCDA.exeCreative Service for CDROM Access
    Creative Solutions Accounting Print Service
    (CSAPrintService)
    Lcsasvc.exeRelated to Creative_Solutions_Accounting Print Service from Creative Solutions. Note: located in \%WINDIR%\
    CREDANT Mobile Guardian Gatekeeper (guardian)LGatekeeper.exeRelated to Credant_Technologies data encryption software for laptop and USB encryption to CD-DVD recorders, iPods and Smart Phones. Note: Located in \%WINDIR%\System32\
    crss32.exeXcrss32.exeAdded by the W32/Tilebot-GT WORM! Note: This worm\trojan is located in C:\%WINDIR%
    Crypkey LicenseLcrypserv.exeCrypKey Software Licensing System from Cobalt Systems
    Cryptainer service (ssoftservice)Lssoftsrv.exeOwner:Cypherix Cypherix Encryption Software
    Cryptic Protected Storage (CryptProtectedService)Xcpstorage.exeAdded by the W32/Tilebot-HO WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    Cryptographic Engine (EngSvc)Xcsvc.exeAdded by an unidentified TROJAN! Note: of the Win32/Rbot Family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    Cryptographic Services (CryptSvc)Lsvchost.exe -k NetworkServicePart of Windows Vista Note:Located in C:\%WINDIR%\System32
    Crystal APS (CrystalAPS)LCrystalAPS.exeRelated to Crystal_APS Now owned by Business Objects. Note: Located in C:\Program Files\Seagate Software\Enterprise\x86\
    Crystal Cache Server (CacheServer)Lcacheserver.exe Crystal_Decisions_Cache_Server Now owned by Business Objects
    Crystal Event ServerLEventServer.exeCrystal Decisions Event Server
    Crystal Input File Repository Server
    (CrystalInputFileServer)
    Linputfileserver.exe Crystal_Decisions_File_Repository_Server Now owned by Business Objects.
    Crystal Management ServerLCrystalMS.exeCrystal Decisions Management Server
    Crystal Output File Repository Server
    (CrystalOutputFileServer)
    Loutputfileserver.exe Crystal_Decisions_Output_File_Repository_Server Now owned by Business Objects
    Crystal Program Job ServerLProgramServer.exeCrystal Decisions Job Server
    Crystal Report Application ServerLcrystalras.exeCrystal Decisions Report Application Server
    Crystal Report Job Server (JobServer_Report)LJobServer.exe Crystal_Decisions_Report_Job_Server Now owned by Business Objects
    Crystal Web Component Server (WebCompServer)LWebCompServer.exeRelated to Crystal Decisions Enterprise software. Now owned by Business_Objects Note: Located in C:\Program Files\Seagate Software\WCS\
    CsdDriverXCsdDriver.sys Troj/Goldun-EE
    CSIScannerLprevxcsi.exe Prevx_CSI - "Prevx CSI includes a very fast malware scanner that will find and fix active rootkit, spyware, trojan, virus and malware infections in about 1 minute. It's free and you can use it as often as you like, you only pay if you want to use Prevx CSI to remove infections."
    CSNetManagerXpXisass.exe W32/SillyFDC-AJ Note:Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
    CT Device Query service (CTDevice_Srv)LCTDevSrv.exeRelated to CT_Device_Query Service from Creative Technology Ltd. Note: Located in \%Program Files%\Creative\Shared Files\
    CTI Central ManagementXcti.exeLowers IE security settings
    Curtains for Windows System Service (CurtainsSysSvc)LCurtainsSysSvcNt.exeRelated to Authentium, Inc. http://www.authentium.com/
    CVSNT 2.5.01.1927 Dispatch service (cvsnt)Lcvsservice.exeRelated to CVS_on_NT service Machines. From March Hare Software. Note: Located in C:\Program Files\CVSNT\
    CVSNT 2.5.01.1927 locking service (cvslock)Lcvslock.exeRelated to CVS_on_NT service Machines. From March Hare Software. Note: Located in C:\Program Files\CVSNT\
    CWAFAdminControllerLCWAFAdminController.exeCompuware Seversoftware
    CWAFAdminMonitorLCWAFAdminMonitor.exeCompuware Serversoftware
    CWAFEventRouterLcwafservice.exeCompuware Serversoftware
    CWAFNotesServiceLCWAFNotesService.exeCompuware Serversoftware
    CWAFReportSchedulerLCWAFSchedService.exeCompuware Serversoftware
    CWAFRmiRegistryLCWAFRmiRegistry.exeCompuware Serversoftware
    CWShredder ServiceLCWShredder.exeCWShredder tool from Trend Micro.
    CxEvtSvcXCxEvtSvc.exeIdentified as a variant of the TrojanSpy:Win32/Festeal malware Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    CXPT_ServiceLwcservice.exeRelated to Internet_Security Suite from COSMI Corp.
    CyberArmor Run ServiceLcasvc.exeCyberArmor an Enterprise Class Personal Firewall
    CyberhawkLCHService.exeRelated to Cyberhawk from Novatix, Protects against Viruses, Spyware, Identity Theft. Note: Located in C:\Program Files\Novatix\Cyberhawk\
    CyberLink Background Capture Service (CBCS) (CLCapSvc)LCLCapSvc.exeRelated to CyberPower Systems, Inc. - http://www.powercinema.com/english/index.jsp
    CyberLink Media Library ServiceLCLMLServer.exeRelated to CyberPower Systems, Inc. - http://www.powercinema.com/english/index.jsp
    Cyberlink RichVideo Service(CRVS) (RichVideo)LRichVideo.exeCyberLink RichVideo is an advanced technology designed to save precious video editing time.
    CyberLink Task Scheduler (CTS) (CLSched)LCLSched.exeRelated to CyberPower Systems, Inc. - http://www.powercinema.com/english/index.jsp
    CYGWIN cygserver (cygserver)Lcygrunsrv.exeRelated to Cygwin_RedHat powerful tools to assist developers in migrating applications from UNIX®/Linux to the Microsoft® Windows®; platform. Note: located in C:\Apps\cygwin\bin\
    cyg_winXcygwin.exeAdded by a variant of the SDBOT Note: Located in \%WINDIR%\ Note: Use SDFix under supervision.
    CypressLinkLCypressLinkService.exeRelated to Related to CypressViewer from Siemens. Medical software. Note: Located in C:\Program Files\Acuson\CypressViewer\Bin\Release\
    czaqi (czaq)Xczaqi.sys Troj/QQHelp-Gen Note:Located in C:\Windows\System\Drivers (Win9x/Me), C:\%WINDIR%\System32\Drivers (XP/WinNT/2K) Install numerous files and other services. Read the link

    Engine Version 2.0 by CastleCops

    spacer spacer