| Name | Status | Filename | Description |
|---|
| adprot | X | adprot.exe | AdBlaster adware variant |
| AUXXTRAY | N | au30setp.exe | System Tray application for Aureal Vortex based soundcards. Can be run manually via Start -> Settings -> Control Panel |
| ANONYMIZER_SPYWAREKILLER | U | SpyWareKiller.exe | Anonymizer Spyware Killer - now Anti-Spyware
|
| AntiVir | X | winlog.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) More: here |
| AnonymityGateway | U | Anonymity,Gateway.exe | Related to Anonymity_Gateway a privacy protection tool that conceals IP address preventing your surfing habits and your internet activity form being tracked by websites or Internet Service Providers. Note: Located in \%Program Files%\Anonymity Gateway\ |
| AntiVirGear 3.7 | X | AntiVirGear,3.7.exe | Added by AntiVirGear This misleading application may be downloaded by Trojan.Zlob. The program can also be manually installed. When the program is executed, it may give exaggerated reports of threats on the computer. Note: Located in \%Program Files%\AntiVirGear 3.x\ |
| AvG | X | svchost323.exe | Added by the W32/RBOT-ZA WORM Read the link, keylogger/password stealing trojan(s) involved. |
| Advertising Killer | U | Akiller.exe | AKiller - pop-up stopper |
| autorun | X | autorun.exe | VBS/Autom-B |
| AVP-SE | X | avp-32.exe | Added by the AGOBOT.FS WORM! Read the link, allows remote access
|
| Autoroute SMTP | U | AutoSmtp.exe | Related to Autoroute_SMTP automatic switching between SMTP servers depending on what network you are currently working in. You need to have two Internet service providers. Note: located in C:\Program Files\Autoroute SMTP\ |
| Apvxd | Y | APVXDWIN.EXE | Part of Panda Antivirus . Required to enable permanent virus protection
|
| A4Proxy | U | A4Proxy.exe | Anonymity 4 Proxy - local proxy server that makes you anonymous when visiting web sites |
| Adobe Acrobat Reader CFG | X | [random file,name] | Added by a variant of the WIN32.RBOT WORM!
|
| AIM reminder | X | AIM,reminder.exe | Added by the BUDDY VIRUS! |
| aircity | X | aircity.exe | Related to "Prutect" malware from e2Give |
| ASDPLUGIN | X | Xadult1.exe | AsdPlug premium rate adult content dialer variant |
| Another Internet Explorer Popup Killer | U | aiepk.exe | IE Popup Killer.htm" target="_blank">Another IE Popup Killer - pop-up stopper |
| autorepair | X | dexs.exe | Added by a variant of the W32/SDBOT WORM!
|
| ahui32.exe | X | ahui32.exe | Added by Troj/Certif-M TROJAN! Read the link, keylogger/password stealing trojan(s) involved. |
| AAK | U | aak.exe | Advanced Anti-Keylogger - "Anti-spy software to prohibit operation of any keyloggers currently in use or presently being developed anywhere" |
| avgmsvr.exe | Y | avgmsvr.exe | Required for AVG Anti-Virus 7.0 to function |
| autorun | X | sxs.exe | Added by the W32/SmallVBS-A Worm |
| autoclk | Y | autoclk.exe | Sagem Modem driver. Installed and required on systems running Windows 98 or ME |
| Anti-Trojan-Watch | U | ATWatch.exe | Anti-Trojan Watch - trojan detector |
| Agent | X | alsys.exe | Added by the W32/Dref-V VIRUS! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Note: disabling autostart for the SharedAccess service deactivates the Microsoft Internet Connection Firewall (ICF). |
| ACTX1 | X | v1201.exe | Added by Trojan-Clicker.Win32.VB.is
TROJAN! Note: This trojan has been found in System\System32 and Winnt\Windows directories.
|
| Acer ePower Management | U | Acer ePower,Management.exe | Related to Acer_ePower Management from Acer Empowering Technology Note: Located in C:\Acer\Empowering Technology\ePower\ |
| AELaunch | N | AELaunch.exe | Audio Applications Launcher for the Philips Acoustic Edge soundcard |
| Adobe Acrobat | N | READER~1.EXE | Speeds up the launch of Adobe (Acrobat) Reader 7
|
| advap32 | X | bskl***.exe | Identified as the Trojan-Downloader.Win32.Small.syj / Trojan.Pandex Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. Note: * = Random Numbers. |
| ASM | U | ASMonitor.exe | Related to Active_Security_Monitor from AOL. A program that helps you determine how vulnerable your PC is to computer viruses, spyware and other dangers and learn what steps you can take to improve your protection. Note: Located in \%Program Files%\AOL\Active Security Monitor\ |
| Adaware lptt01 | X | adaware.exe | Variant of the RapidBlaster |
| ATI GART Set-up Utility | N | Atigart.exe | Program that checks the motherboard chipset and determines which GART driver bundle to install on ATI video cards. If you have one, once installed it shouldn't be needed |
| AolFix | N | AolFix.exe | Run on Gateway Astra computers, and maybe a few others. Designed to repair a bad registry key in Gateway computers that would not allow AOL to run correctly. Not seen much any more and should only run once |
| AdKiller | U | AD Defender.exe | Related to Advanced_Spyware_Remover_Pro anti spyware tool Note: located in C:\Program Files\Evonsoft\Advanced Spyware Remover Pro\ |
| ASP.NET State Service | X | servicos..exe | Added by the Troj/Dadobra-I
TROJAN!
Note: This worm\trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| AOL Instant Messenger | X | aimsgr.exe | Backdoor.Win32.IRCBot.n |
| Action Manager 32 | N | am32.exe | Associated with a Plustech scanner. Small utility that runs in the background for doing fax/copy/etc. Available via Start -> Programs |
| Aqujyjax | X | [path to file] | Added by the TROJ/RANCK-CQ TROJAN! |
| ASUS Camera ScreenSaver | U | ASScrProlog.exe | Related to ASUS Camera ScreenSaver Note: located in \%WINDIR%\ |
| AppPlus | U | AppPlus.exe | AppPlus - "menu bar or tray launcher that docks to your desktop, floats or sits in your System Tray. Create graphic/text-based buttons that launch any number of programs, Websites, e-mail addresses or folders (which open in the AppPlus Menu System)" |
| Antivirus2008y | X | antvrs.exe | Added by the Antivirus_2008 rogue anti-spyware program. Note: Located in \%Program Files%\Antivirus2008y\Note: Use Malwarebytes RogueRemover tool. |
| aupd | X | sywsvcs.exe | Added by the Troj/Orse-M
TROJAN!
Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| AGRSMMSG | Y | AGRSMMSG.exe | IBM AMR modem driver |
| Adobe | X | sysbat32.exe | Added by the TROJ_LOWZONES.T TROJAN! |
| ATI AS Filter | X | msnse.exe | Added by the W32/Rbot-CCY WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Modifies the HOSTS file by appending the following lines, preventing access to the virus cleaning websites. |
| atipatxx | X | atipatxx.exe | Added by the TROJ/SMALL-ED TROJAN! |
| AdobeReaderPro | X | msnxpsp.exe | Added by the W32/Rbot-ASK or W32/Rbot-AUS WORM! Note: This worm\trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder |
| atisrc2 | X | winfind.exe | Adult content dialler - see here . This has to be cleared at the same time as MSStartOptimizer (WINUPD.EXE), mmxrun (msosa.exe) and RegCompres (REGCPM32.EXE), otherwise they return |
| Ahst | X | iebs.exe | PurityScan/Clickspring Adware |
| ADQuickAccess | N | Adtray.exe | After Dark for Windows. Screen saver creation program produced before screen savers became integrated into Win95 |
| ALTOOLS | U | AccessL.exe | Related to ALTools a family of PC utilities . |
| Adaware Bootup | N | ad-aware.exe | Ad-aware from Lavasoft. Checks your PC for "Spyware" which reports back your internet activities to "base". Available via Start -> Programs |
| Altnet Points Manager | N | points,manager.exe | Altnet TopSearch adware |