| Name | Status | Filename | Description |
|---|
| TabletService | L | Tablet.exe | Related to Wacom Technology, Corp. |
| TabletServicePen | L | Pen_Tablet.exe | Related to Pen_Tablet from Wacom Tech. Interactive pen displays productivity tools that make using a computer as natural as possible. By using a pen directly on screen, you work more quickly and naturally. Note: Located in \%WINDIR%\System32\ |
| TabletServiceWacom | L | Wacom_Tablet.exe | Related to Graphics_Tablet from Wacom Technology Co. Drivers. Note: Located in \%WINDIR%\System32\ |
| Talking Alarm Clock user logon monitor | L | AlarmMonitor.exe | Related to Cinnamon software inc. http://www.cinnamonsoftware.com/ |
| Tango Service (TangoService) | L | TangoService.exe | Related to Efficient Networks by Siemens |
| TAO NT Naming Service (TAO_NT_Naming_Service) | L | NT_Naming_Service.exe | Related to SAP_Business_One gives you the information you need to select and implement business management software. Note: Located in \%Program Files%\SAP\SAP Business One ServerTools\License\ |
| TapeWare | L | TWWINSDR.EXE | Related to Yosemite_Technologies TapeWare backup system. |
| Tardis time service | L | tardisnt.exe | TardisNT time sync service. |
| Tarjeta inteligente (SCardSvr) | L | SCardSvr.exe | The application belonging to the Microsoft Windows Operating System, which provides the authentication facilities for smart security cards on your local system.
|
| Task Client Manager | | spoolvc.exe | Added by an unidentified TROJAN! Note: of the Win32/Rbot Family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| Task Manager Help (TskHlp) | X | taskmgr.exe | Backdoor.ServU-based : Location: C:\wutemp\taskmgr.exe Note: The Windows file taskmgr.exe is located in C:\WINDOWS\System32\taskmgr.exe and should not be removed. |
| Task Manager Lite | L | TSKMAN.exe | Entry is related to PC Phone Home by Brigadoon Security Group. For more info Click_Here
|
| Task Manager Message Service (TSKMS) | X | taskms.exe | Added by the Worm/Aimbot.ER WORM! Note: This worm\trojan is located in C:\%WINDIR%\ Steal Information |
| Task Scheduler (Schedule) | X | spools.exe | Identified as a variant of the Trojan-Downloader.Win32.Agent.jjt malware. Note: Located in \%WINDIR%\System32\drivers\ Note: Use SDFix under supervision. |
| Task Scheduler (Schedule) | X | svchost.exe | Added by a variant of the WORM_SOCKS.D WORM! Note: Located in \%WINDIR%\System32\drivers\ Note: Use SDFix under supervision. Do not delete the the legitimate file in C:\WINDOWS\System32\svchost.exe |
| Task Scheduler (Schedule) | X | ctfmun.exe | Added by a variant of the RBOT family of IRC Backdoor trojan. Note: Located in \%WINDIR%\System32\\drivers\ Note: Use SDFix under supervision. |
| Task Scheduler (Schedule) | X | services.exe | Identified as a variant of the W32.Mandaph Worm. Note: Located in \%WINDIR%\System32\drivers\ Note: Use SDFix under supervision. |
| TASKESV (TESV) | X | taskcntr.exe | Added by the W32/Tilebot-S
WORM!
Note: This worm\trojan file is found in the Windows or Winnt folder.
Read the link, rootkit type stealth involved. |
| TaskManager | X | taskmngr.exe | Added by an unidentified TROJAN! of the IRCBot family. Note: This worm\trojan is located in C:\Windows\System |
| taskmng (svchost) | X | svchost.exe | Added by the W32/Tilebot-AW
WORM!
Read the link, rootkit type stealth involved.
|
| Tb2 Launch (Tb2Launch) | L | tb2launch.exe | Related to Timbuktu_Pro Remote Control Software |
| tbaspi | L | tbaspi.exe | Related to Voyetra_Turtle_Beach Audio and Video products. |
| TCP and UDP Supp0rt | X | tccpip.exe | Added by the Trojan.BHOPlugin/Terp.Process TROJAN! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| TCP and UDP Support | X | tcpip.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| TCP/IP NetBIOS (NetBS) | X | netbios.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| TCP/IP Network Throttle (NetThrottle) | X | netthrot.exe | W32/Tilebot-JO Read the link, allows remote access |
| TCP/IP Print Server | L | tcpsvcs.exe | tcpsvcs.exe is a part of Microsoft Windows networking components. This essential system process is initiated when the computer uses special TCP/IP networking services such as DHCP, Simple TCP and print services. |
| TCP/IP Printer Helper (tcpprint) | X | prinsvc.exe | Added by an unidentified TROJAN! Note: of the Win32/Rbot Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| TCPIP route manager (internat) | X | internat.exe | Added by the Troj/Lydra-R
TROJAN!
Note: This trojan file is found in the Windows or Winnt folder.
|
| TCPIPSTACK | X | TCPIPSTACK.EXE | Addec by the W32/Sdbot-CPO WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| TCPservice (msftcpip) | X | msftcpip.sys | Added by the Troj/Haxdoor-AI
TROJAN!
|
| TdiHook Update Driver (_tdiserv_HOOK) | X | TdiUpdate.sys | Added by the W32.Tdiserv.A
WORM!
Read the link, rootkit type stealth involved.
|
| tdongbot (tdongbot) | X | Internet.exe | Added by the Backdoor.Sdbot.AS
TROJAN! Note: This trojan file is found in the System32 folder. |
| TDS Net Setup (TDSNetSetup) | L | TDSNetSetup.exe | Related to TDS_Net_Setup from Teradyne Diagnostic Solutios. Note: Located in \%Program Files%\Common Files\Teradyne\ |
| TeamViewer 3 (TeamViewer) | L | TeamViewer_Host.exe | Related to TeamViewer simple and friendly solution for remote access over the Internet. Note: Located in \%Program Files%\TeamViewer3\ |
| Technesis Services | L | tnSvcNT.exe | Related to Technesis Services. Note: Located in C:\WINDOWS\Technesis\Enterprise\Service\ |
| Telnet | L | tlntsvr.exe | Spanish Windows 2000 telnet |
| Tenebril antispyware satellite (TNBRLDS) | L | DeleteSvc.exe | Anti-spyware satellite is part of the Tenebril SpyCatcher application. Made by Tenebril Inc. For more information Click_Here
File is located in the Program Files\SpyCatcher folder.
|
| Terminal Connections (terms) | X | terminals.exe | Added by the Backdoor.SdBot.xd as identified by ewido. TROJAN! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
|
| Terminal Device Services | X | spoolvc.exe | W32/Sdbot-DDC Read the link, allows remote access |
| Termiputer updatees (RSDTA Switch) | X | G_Server1.2.exe | Troj/Hupigon-IQ Note: Located in %windir% |
| test (netservice) | X | netservice.exe | Troj/Bckdr-QJQ
Located in \Favorites\ |
| TestUSB | X | TestUSB.sys | Troj/Lecna-K Read the link, allows remote access |
| The Opposite Of Renova (Minerva) | X | Minerva.exe | W32/Minerv-A
Note:Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (Vista/XP/WinNT/2K)
Drops numerous files. Read the link |
| The Shield Deluxe 2008 (AVP) | L | avp.exe | Related to PC_Security_Shield antivirus and spyware detection powered by Kaspersky Antivirus 6.0 relies upon integrated methods to scan for viruses. Note: Located in \%Program Files%\PCSecurityShield\The Shield Deluxe 2008\ |
| The Sims 2 | X | thesims2.exe | Added by the W32/Sdbot-CPM WORM! Note: This worm\trojan is located in C:\%WINDIR%\System32\dllCache\ (XP/WinNT/2K) |
| Themes Plug and Play (services) | X | services.exe | W32/Dzan-C Read the link, allows remote access |
| ThinkPad HDD APS Logging Service (TPHDEXLGSVC) | L | TPHDEXLG.EXE | Related to IBM's Active_Protection_System Made by the IBM Corporation. Note: Located in ]%WINDIR%\System32\ |
| ThinkPad Modem Service (ThinkPadModemService) | L | MWMDMSVC.EXE | IBM ThinkPad Modem Software - http://www.fileproperties.com/m/mwmdmsvc.exe.htm
|
| ThinkPad PM Service (IBMPMSVC) | L | ibmpmsvc.exe | Power management driver for IBM laptops. Note: Located in \%WINDIR%\System32\ |
| ThinkVantage Registry Monitor Service | L | tvt_reg_monitor_svc.exe | Relatd to Registry_Monitor_Service_Module found on ThinkVantage Notebook. Note: Located in C:\Program Files\Common Files\Lenovo\ |
| ThinkVantage System Update (UCLauncherService) | L | UCLauncherService.exe | Related to Lenovo ThinkVantage Technologies. ThinkVantage Technologies help make ThinkPad/ThinkCentre PCs less dependent on IT staff. |
| this change me (trojans) | X | realplayers.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\%WINDIR%\ folder. From what I could find, this infection comes with a ROOTKIT |
| THKEYS | L | thkeys.exe | Related to Toshiba_Applet_Hotkeys Note: Located in C:\Program Files\Toshiba\Toshiba Applet\ |
| THotkey | L | THOTKEY.EXE | Related to The Fn keys on Toshiba laptops |
| Thread Master (ThreadMaster) | L | ThreadMast.exe | Related to ThreadMaster handles high CPU utilization on a per application basis. Note: Located in \%WINDIR%\System32\ThreadMaster\ |
| ThreatFire | L | TFService.exe | Related to ThreatFire from PC Tools. Antivirus software. Note: Located in \%Program Files%\ThreatFire\ |
| TI Wlan Service (tiwlnsvc) | L | tiwlnsvc.exe | Related to Texas Instruments wireless LAN software. |
| Time Service (Time) | X | dior4f4gbwnewofas.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm\trojan is located in Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Also found in C:\WINDOWS\TEMP\ folder. The filename is random. The service name is known to be from SpoolSvc201 to SpoolSvc2xx |
| Tiny Personal Firewall (PersFw) | L | persfw.exe | Now owned by Kerio This version is no longer supported. |
| TIS 2000 Apache Web Server | L | ApchT2kW.exe | Related to Apache web server - http://www.apache.org/ |
| TiVo Beacon (TivoBeacon2) | L | TiVoBeacon.exe | Related to TiVo Inc. TV entertainment. |
| Tivoli Endpoint (lcfd) | L | lcfd.exe | Related to IBM_Tivoli_Monitoring provides an automated system for monitoring your server resources. Note: Located in \%Program Files%\Tivoli\lcf\bin\w32-ix86\mrt\ |
| TMA Distribution | L | lcfinst.exe | Related to Intel's LANDesk Management Suite 6 and the Common Base Agent (CBA) - used for communicating between the core server and managed clients |
| TME3SRV | L | tme3srv.exe | Related to Toshiba, Inc. notebooks |
| tmesbs2 (Tmesbs) | ? | Tmesbs2.exe | Found on Toshiba laptops |
| Tmesbs32 (Tmesbs) | L | Tmesbs32.exe | Related to Toshiba Corporation |
| Tmesrv | L | Tmesrv.exe | Toshiba utility relating to using docking stations |
| Tmesrv3 (Tmesrv) | L | Tmesrv31.exe | Related to Toshiba Corporation |
| TNT Freight Management VPN Service (CVPND) | L | cvpnd.exe | part of Cisco VPN. Note: Located in \%Program Files%\TNT Freight Management\VPN Client\ |
| Tomcat (cws3) (Tomcatcws3) | L | tomcat.exe | Related to Apache_tomcat Owner: Alexandria Software Consulting |
| Tornado Registry | L | wtxregds.exe | This registry allows the Tornado tools to establish a connection with the target servers. |
| TOSHIBA Application Service (TAPPSRV) | L | TAPPSRV.exe | Related to Toshiba, Inc. notebooks |
| TOSHIBA Bluetooth Service | L | TosBtSrv.exe | Related to TOSHIBA_Bluetooth service. Note: Located in \%Program Files%\Toshiba\Bluetooth Toshiba Stack\ |
| TOSHIBA HDD Protection (Thpsrv) | L | ThpSrv.exe | Related to The Toshiba_HDD_Protection "TOSHIBA HDD Protection"&hl=en&lr=lang_en|lang_fr system is an intelligent defense mechanism that helps safeguard user information storedon the hard drive in the event of unexpected impacts, falls or excessive vibrations |
| TOSHIBA Navi Support Service (TNaviSrv) | L | TNaviSrv.exe | Related to Navi_Support Service from Toshiba Corp. Note: Located in \%Program Files%\TOSHIBA\TOSHIBA DVD PLAYER\ |
| TOSHIBA Optical Disc Drive Service (TODDSrv) | L | TODDSrv.exe | Related to Toshiba_Optical_Disk_service RAID Backup utility. Note: Located in C:\WINDOWS\system32\TODDSrv.exe |
| TOSHIBA Power Saver (TosCoSrv) | L | TosCoSrv.exe | Related to TOSHIBA_Power_Saver for Laptops. Note: Located in C:\Program Files\TOSHIBA\Power Saver\ |
| TOSHIBA RAID Service (kraidsvc) | L | kraidsvc.exe | Related to Toshiba_Raid_Service Note: Located in C:\Program Files\TOSHIBA\TOSHIBA RAID\Service\ |
| tp4serv | L | TP4SERVINST.EXE | Related to TrackPoint for Lenovo ThinkPad computers. Note: Located in \%Program Files%\Lenovo\TrackPoint\ |
| Trace network connections (ACCRA) | X | mocih.exe | Added by the Chimo.B TROJAN! |
| Track Learning Management System (TTLMS) | X | ttlms.exe | Added by a variant of the Backdoor.Sdbot Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Track-It! Remote Control | L | wuser32.exe | Related to Quicken/Intuit Inc. - http://www.quicken.com/ |
| Track-It! Workstation Manager | L | TIRemoteService.exe | Related to Quicken/Intuit Inc. - http://www.quicken.com/ |
| TransBaseService | L | tbmux32.exe | Transbase®,http://www.transaction.de/ CD permits the distribution of data base contents on CD/DVD ROM and a following actualization of the data over the Web to Transbase® CD unites in ideal way variable and static data.
Note: Located in c:\opt\MBCASE\WIS\TBCD |
| Transcoding and Broadcast Service (Transcode360) | L | transcode360.exe | Transcode360 Designed for Windows XP Media Center Edition 2005 and the Xbox 360, Transcode 360 aims to broaden the support for a wide range of video media including DivX and XviD. Note: located in c:\program files\transcode360\ |
Transparent Screen Lock PRO Service (TSL PRO Lock Server) | L | TSLLkSrv.exe | Related to Transparent_Screen_Lock from Esm Software. Secure your workstation or server with Password Protection. Note: Located in C:\WINDOWS\system32\ |
| TrapRcvr | L | trthread.exe | Related to the monitoring a particular system performance. See here |
| TrayMan | L | ntstart.exe | Tray Manager lets you put systemtray icons into a submenu to save space |
| Tremapi | X | tremapi.exe | W32/Sdbot-DFL Read the link, allows remote access |
| Trend Micro AntiVirus Protection Service (tavsvc) | L | tavsvc.exe | Related to Trend_Micro_AntiVirus Protection Service. Note: Located in C:\Program Files\Trend Micro\AntiVirus 2007\ |
| Trend Micro Central Control Component (PcCtlCom) | L | PcCtlCom.exe | Related to Trend Micro Incorporated. |
| Trend Micro Central Control Component (SfCtlCom) | L | SfCtlCom.exe | Related to Trend_Micro Antivirus application. Note: Located in \%Program Files%\Trend Micro\Internet Security\ |
Trend Micro Management Infrastructure (TrendMicro Infrastructure) | L | cm.exe | Related to Trend Micro Inc. |
| Trend Micro Personal Firewall (TmPfw) | L | TmPfw.exe | Related to Trend Micro Inc. |
| Trend Micro Protection Against Spyware (PcScnSrv) | L | PcScnSrv.exe | Related to Protection_Against_Spyware from Trend Micro. Note: Located in C:\Program Files\TREND MICRO\INTERNET SECURITY (Year)\ |
| Trend Micro Proxy Service (tmproxy) | L | tmproxy.exe | Related to Trend Micro Inc. |
| Trend Micro Real-time Service (Tmntsrv) | L | Tmntsrv.exe | Related to Trend Micro Incorporated. |
| Trend Micro RUBotted Service (RUBotted) | L | TMRUBotted.exe | Related to RUBotted from Trend Micro. monitors your computer for suspicious behavior and regularly checks with an online service to identify behavior associated with Bots. Note: Located in \%Program Files%\Trend Micro\RUBotted\ |
| Trend Micro Security Server Master Service (ofcservice) | L | ofcservice.exe | Related to a Trend Micro product |
Trend Micro Unauthorized Change Prevention Service (TMBMServer) | L | TMBMSRV.exe | Related to Trend_Micro Antivirus application. Note: Located in \%Program Files%\Trend Micro\BM\ |
| Trend NT Realtime Service (Tmntsrv) | L | Tmntsrv.exe | Related to Trend Micro Incorporated. |
| TrkSvr | X | svchost.exe -k TrkSvr | Added by the Fuwudoor TROJAN! |
| TrkWks | X | svchost.exe -k TrkWks | Added by the Fuwudoor TROJAN! |
Trlokom Central Management Helper 1.3.8 0 (trlokom_rmhsvc) | L | RMHSvc.exe | Related to Trlokom_Central_Management provides security management capabilities to help meet application security needs. Note: Located in C:\WINDOWS\trlrm\ |
| TrueVector Basic Logging Client (minilog) | L | minilog.exe | Related to Zone_Alarm_Firewall from Zone Labs Inc. |
| TrueVector Internet Monitor (vsmon) | L | vsmon.exe | Zone Alarm Firewall |
| Trusted Platform Core Service (IFXTCS) | L | IFXTCS.exe | Related to Trusted Platform Core Service from Infineon Technologies. Note: Located in C:\WINDOWS\system32\ |
| tsecure | X | tsecure.exe | Added by the W32/Tilebot-B
WORM! Note: Gives the fake description "Terminal Security".
Read the link, rootkit type stealth involved.
|
| TSI Remote Control Service (TSIRCSRV) | L | TSIRCSRV.EXE | Related to Laplink_Gold Software, Inc. Connect to other Laplink-enabled computers over any connection type. |
| TskScheduler | X | taskshed.exe | Added by the W32/Tilebot-FN WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| TSMService | L | tsmsvc.exe | T-DSL SpeedManager from T-Com_T-Online
Note: File location is in the Program Files\T-DSL SpeedManager folder. |
| TSS Core Service (TSSCoreService) | L | ibmtcsd.exe | Related to IBM ThinkVantage Client |
| TuneUp Drive Defrag Service (TuneUp.Defrag) | L | TuneUpDefragService.exe | Related to TuneUp_ Drive_Defrag Service from TuneUp Distribution GmbH. Note: Located in \%WINDIR%\System32\ |
| TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) | L | WinStylerThemeSvc.exe | Part of TuneUp Utilities |
| TVersityMediaServer | L | MediaServer.exe | Related to TVersity_Media_Server Play Internet audio, image and video streams and RSS/RDF/ATOM feeds and podcasts on your TV. Note: Located in \%Program Files%\TVersity\Media Server\ |
| TVT Backup Protection Service | L | rrpservice.exe | Related to TVT_Backup_Protection Rescue and Recovery service, found on Lenovo's laptop computers. Note: Located in \%Program Files%\Lenovo\Rescue and Recovery\ |
| TVT Backup Service | L | rrservice.exe | Related to IBM ThinkVantage Rescue and Recovery |
| TVT Scheduler | L | tvtsched.exe | Related to IBM ThinkVantage Scheduler |
| tvtnetwk | L | IUService.exe | Related to Lenovo_Rescue_and_Recovery_component found on ThinkVantage Notebook. Note: Located in C:\Program Files\Lenovo\Rescue and Recovery\ADM\ |
| TVTonic RSS (WXRSS) | L | WXRSS.exe | TVTonic Internet TV download manager |
| twdns | L | named.exe | Related to TreeWalk_DNS TreeWalk DNS is a Domain Name Server program which fetches and converts Web Site human-readable names into the numbered addresses your computer needs so that your browser, email, instant messenger, and FTP programs can surf the Web.Note: Located in C:\WINDOWS\System32\dns\bin\named.exe
|
| typemgr2 | X | hddmgrs.exe | Troj/Dloadr-BBB
Also creates a service name "sessionsim" |
| TZO Client (TZONTService) | L | TZO_NT_Service.exe | Related to TZO_DNS a leading Dynamic DNS (DDNS) service provider. |