| Name | Status | Filename | Description |
|---|
| NetTime | U | NETTIME.EXE | From a visitor - "This is the executable for NetTime. It is started from the registry when you check the box to start at startup. NetTime allows you to synchronize your computers' clock with a server on your local net or the internet using any of several protocols, e.g. NTP." |
| NetworkKey | X | netkey.exe | Added by the Troj/IRCBot-AJ
TROJAN!
Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| Netzip Smart Downloader | X | npnzdad.exe | Advertising spyware |
| Norton Guard 32 | X | ntguard32.exe | Added by a variant of the WIN32.RBOT WORM!
|
| NTFSCLUP | Y | NTFSCLUP.EXE | Part of ConfigSafe- "checks if an ntfssos restore has been performed since it was last run. It exits immediately after running. 99 % of the time it will only execute about a dozen instructions before exiting" |
| NETServices | X | csxrs.exe | Added by a variant of the W32/SDBOT WORM!
|
| Norton Personal Firewall | X | lah.exe | Added by a variant of the WIN32.RBOT WORM!
|
| NvCpl | U | rundll32.exe,NvCpl.dll | Intializes the clock and memory settings on nVidia based graphics cards. Enable if you overclock your card |
| NNSvc | U | nnsvc.exe | Net Nanny internet filter
|
| NI.UWA6P_0001_N69M0303 | X | WinAntiVirusPro2006Installer[1].exe | WinFixer web installer. Winfixer is "Foistware", pretending to be system optimization, protection and recovery software - stealth installed, see here
|
| ntldr | X | ntldr.exe | Browser hijacker to search-control.com (TrojanDropper.Win32.Small.ig). In addition to Registry changes found by HijackThis, also creates the following system files:
* Creates file C:\WINDOWS\SYSTEM\ntldr.exe.
* Creates file C:\m.exe.
* Creates file C:\WINDOWS\Search-For-You.url.
* Creates file C:\n.bat.
* Deletes file c:\q.exe.
* Creates file C:\q.exe.
* Creates file C:\r.bat |
| Norton Ghost 9.0 | N | GhostTray.exe | Norton_Ghost tray icon - the application can be launched manually |
| NetAdm7 | X | NETADM7.EXE | Added by the BANCOS.F VIRUS! Read the link, keylogger/password stealing trojan(s) involved. |
| NVagent | X | Informe.exe | Added by the W32.Vig.C
VIRUS!
Note: Copies it's self to multiple Drives and folders.
|
| NvCplDaemon | U | rundll32.exe,NvCpl.dll | Intializes the clock and memory settings on nVidia based graphics cards. Enable if you overclock your card |
| NDIS Adapter | X | servenxpp.exe | Added by the W32/FORBOT-GP WORM!
|
| NAVMD25 | U | UpdtNv28.exe | Related to Symantec_MicroDefs for updating their AV products. Though this is a legitimate file, it is unknown whether or not it needs to be running at startup. Note: located in C:\WINDOWS\UpdtNv28.exe without the /2003 if you are running NAV 2004. |
| NVRT | N | nvrt.exe | NVRefreshTool is a utility that will automatically detect the maximum refresh rate at each resolution that your monitor supports |
| NAV Agent | X | winsnav.vbs | Added by the W32.ANPES WORM! |
| NoteBurner | U | VTBurnerGUI.exe | Related to NoteBurner A M4P converter software. Note: Located in \%Program Files%\NoteBurner\ |
| Ncao | X | urpo.exe | PurityScan/Clickspring Adware |
| Norton Disk Doctor | N | Ndd32.exe | Norton Disk Doctor from Norton Utilities. Automatically runs at start-up, checking for disk errors. Better than ScanDisk but can be started manually via Start -> Programs. Delete the shortcut in the Start -> Programs -> Startup folder as well |
| NvCplScan | X | msc32.exe | Added by the W32/FORBOT-DD WORM! |
| Nsv | X | nsvsvc.exe | Delfin_Promulgate adware |
| NEWDOT~1 | X | rundll32.exe,NewDotNetStartup,Newdot~2.exe | NewDotNet Foistware |
| Norton System Doctor | N | Sysdoc32.exe | Norton Disk Doctor from Norton Utilities. Automatically runs at start-up, major resource hog and best started manually form Start -> Programs. Delete the shortcut in the Start -> Programs -> Startup folder as well |
| NvCpl | X | windowsp.exe | Added by a variant of the W32/SDBOT WORM! |
| NAVSCAN32.EXE | X | NAVSCAN32.exe | Added by the W32/SDBOT-DO WORM! |
| Norton Updater | X | navupdtr.exe | Added by the SDBOT.AXV WORM! |
| Norton Live Updater | X | Cavapsvc.exe | Added by the GAOBOT.AO WORM! |
| NET protection system | X | netst.exe | Identified as the Backdoor.Rizo.A malware. Note: Located in \%WINDIR%\System32\Com\ |
| NotebookHardwareControl | U | nhc.exe | Related to Notebook_Hardware_Control controls the hardware components of your Notebook. Note: Located in C:\Program Files\Notebook Hardware Control\ |
| Network Security | X | NSecurity.exe | Added by the IRCBOT.AAV WORM! |
| NavPass | X | NavPass.exe | Free system for gaining access to and downloading from adult content web-sites |
| Network Service | X | svchost.exe | Hijacker, also detected as Win32.Omal.C Trojan. |
| NTSet32 | X | services.exe | Added by the Troj/WinSpy-C
TROJAN!
Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) The legitimate Windows Process should not be seen in Msconfig or as a Startup item. This trojan file is found in the Windows\dll32 or Winnt\dll32 folder.
|
| NT Service | X | NTOKSRNL.EXE | Added by the W32/RBOT-AAG WORM! |
| NvCplDaemon | N | rundll32.exe,NvQtwk.dll, NvCplDaemon | System Tray icon used to change display settings, change the clock rate and memory speed for nVidia based graphics cards. This is unnecessary since you can easily configure these settings the way you want them in the Display Properties and not have to mess with them again. Also disable the "NVIDIA Driver Helper Service" if enabled as it can cause this entry to be re-enabled on re-boot (note that this service can also cause extreme shutdown delays if enabled - see here) |
| NTSF MICROSOFT SYSTEM | X | fufffy.exe | Added by the W32/Rbot-AEL
Worm!
|
| NAMEDPIPE SYSTEM | X | namedpipe.exe | Added by the W32.Mytob.LO
WORM!
Note: This worm file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| nbustrce1D | ? | nbustrce1D.exe | Device driver, possibly CD-ROM/DVD-ROM related - what exactly is it and is it required in startup? |
| NetLink | X | netlink32.exe | Added by the GAOBOT.WO WORM! |
| NeroCheck.exe | X | NeroCheck.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This is NOT related to "Nero Burning Rom" CD writing software. Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| NetService | X | ntsvc.exe | Added by the Troj/QQPass-DU
TROJAN!
|
| netservices | X | svchostn.exe | Added by the SDBOT.GI WORM! |
| nVidia Drivers | X | nVidiaDrvers.exe | Added by the W32/Sdbot-AFX WORM! |
| NECMFK | Y | necmfk.exe | NEC wireless keyboard driver |
| NSystemMonitor | N | Symmon.exe | Norton Uninstall Deluxe - monitors programs being installed and logs them for removing later. Available via Start -> Programs for manual logging |
| NTSF MICROSOFT SYSTEM | X | ntssf.exe | Added by a variant of the WIN32.RBOT WORM!
|
| NWEReboot | ? | dummy.exe | ?? |
| nvjxue | X | nvjxue.exe | Added by the W32/EYEVEG-J WORM!
|
| Net Activity Diagram | U | nad.exe | Net Activity Diagram from MetaProducts. Monitors your computer internet activity. Available via Start -> Programs |
| NvCplD | X | ntcpl.exe | "Switch" adult content dialer |
| NDrv | X | NDrv.exe | PurityScan/Clickspring Adware |
| Nod32 Service | X | nod64.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) More here |