| Name | Status | Filename | Description |
|---|
| User Services | X | usersvc.exe | Added by the REVCUSS.A VIRUS!
|
| Upromise Update | | UpromiseUa.exe | Related to Upromise Save money for education by bying online at desinated locations. Note: Located in \%Program Files%\Upromise\ |
| Updates from HP | N | backweb*****.exe | Automatically detects an internet connection and downloads any available updates - * is random digit |
| Uniblue RegistryBooster 2 | U | RegistryBooster.exe | Related to Uniblue_Registry_Booster Keep your computer clean. Note: Located in C:\Program Files\Uniblue\Registry Booster 2\ |
| UFD Monitor9382 | ? | ufdlmon.exe | Part of USB Flashdisk software - what does it do and is it required? |
| Update | X | Update.exe | QuickButton adware - Note: file located in a C:\Program Files\Common Files\updat folder |
| UpdateXpSp | X | MS045-XP2.exe | Added by a variant of the Rbot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ |
| Update32 | X | configs.exe | Hijacker, also detected as the QURL-2 TROJAN!
|
| Uniblue Registry Booster | U | RegistryBooster.exe | Related to Uniblue_Registry_Booster Keep your computer clean. Note: Located in C:\Program Files\Uniblue\Registry Booster\ |
| userinit | X | smss.exe | Added by the Troj/Dloadr-B
TROJAN!
Note: This is not the legitimate Windows process. (Which is always found in the System32 folder.) This trojan file is found in the Windows or Winnt folder. |
| Update Install | X | Schost.exe | Added by the GAOBOT.AO WORM! |
| ugcw | X | ugcw.exe | Related to the rogue anti-spyware program called WinSecureAv This program is installed via the use of malware and display false or exaggerated infection results. Note: Located in \%Program Files%\common files\(random name)\ Note: Use SDFix under supervision. |
| USBMonit.exe | U | USBMonit.exe | Monitors USB ports for insertion of Sandisk USB flashdrives
|
| UpdateManager | U | sgtray.exe | StorageGuard from Veritas (this version by Sonic). Free utility that integrates with Backup MyPC (formerly Backup Exec Desktop), Simple Backup and MS Backup. Provides system tray access and background monitoring - warning you of files that haven't recently been backed up. Required unless you backup manually on a regular basis or have scheduled backups |
| Uniblue Quick Access | U | qaccess.exe | Qaccess.exe belongs to a new tool from Uniblue_Systems
that gives information about running process entries in Task Manager. |
| Update Checker | X | scvhost.exe | Added by the TROJ/AGENT-DSF TROJAN! |
| USDR6cw | X | USDR6cw.exe | SystemDoctor - rogue "security software" using false positives as goad to purchase. |
| UpdateMedia | X | UpdateMedia.exe | MediaUpdate foistware |
| uvnx | X | uvcx.exe | Troj/Dloadr-AWF |
| USIUDF_Eject_Monitor | U | USISrv.exe | Related to Ulead_Systems Eject Monitor Component from Ulead Systems, Inc. Note: Located in \%Program Files%\Common Files\Ulead Systems\DVD\ |
| update | X | r00t.exe | Added by the W32/RBOT-ACO WORM! |
| updater | X | wisvc.exe | Added by the TROJ/ORSE-A TROJAN! |
| Update | X | CDUpdater.exe | "Carpe Diem" adult premium rate dialler related |
| USERINTERFACE REPORT3R | X | M0USE.exe | Added by the MYTOB.HS WORM! |
| Uniblue PowerSuite | U | PowerSuite.exe | Uniblue_PowerSuite - "PowerSuite combines Uniblue’s range of award winning and market leading utility products into a single package that provides advanced functionality without compromising simplicity or ease of use. By integrating RegistryBooster 2, SpeedUpMyPC 3 and SpyEraser 2, home and business users are offered a range of professional level tools that deliver the outstanding levels of performance, stability and security that the modern computer user requires and demands." |
| uoltray | N | exec.exe | Netzero free ISP software - not required |
| Usrobotics Online Registration | N | ?? | Pop-up reminding customers to register their products online at US Robotics |
| UCam_Menu | U | MUIStartMenu.exe | Related to CyberLink_YouCam provides expressive video effects on your CAM. Note: Located in \%Program Files%\CyberLink\YouCam\MUITransfer\ |
| USB controller | X | Svcmm32.exe | SvcMM backdoor parasite downloader
|
| UsbD | X | iexplore32.exe | Unidentified worm or trojan |
| Update Windows | X | EXPLORE.EXE | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| USB Fix 1.1 | X | wuservices.exe | Added by a variant of the W32/SDBOT WORM!
|
| USB SECURITY DEVICE CoInstaller | Y | JupitCo.exe | ButterflyMedia USB Flash drive related - required for the password security feature to work. |
| userinit | X | choo_003956f4 | Win-Trojan/Peed.16896 |
| USB Storage Toolbox | U | Res.EXE | Related to USB_Storage_Toolbox from Koma-Code. A program with many functions. Just load it on your USB-stick and have many useful Tools in one program always at hand. Note: Located in \%Program Files%\USBToolbox |
| Usbd | X | usb_d.exe | Added by the TROJ/CIDRA-A TROJAN! |
| UCmd | X | fallfour.exe | Added by the W32/Sdbot-AZA WORM! |
| Userinit | X | lsass.exe | Added by a variant of the Troj/Dloader-TP TROJAN! - NOTE - this file is placed in the Program Files\Common Files folder, and should NOT be confused with the legitimate Windows lsass.exe process, always located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup!
|
| URLMAP | N | Urlmap.exe | Installed by MS Money, and runs whenever you start IE. All it does is bring up an annoying sidebar (kind of like the search window) with 'financial links' when the web page supports it |
| UpConfgVer | N | UpgConf.exe | Panda Antivirus Platinum. Purpose unclear, but according to Panda Software not required for the AV to function.
|
| UltimateZip Quick Start | N | uzqkst.exe | UltimateZip - file compression utility |
| Updmgr | X | updmgr.exe | eUniverse/KeenValue adware related |
| update | X | winis.exe | Added by the W32/RBOT-VD WORM! |
| Userinterface Reporter | X | srv32.exe | ISTbar/XXXToolbar adware downloader
|
| USB MS Update | X | USBS.exe | Added by a variant of the Rbot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ |
| Update Grokster | N | WiseUpdt.exe | Automatically updates the Grokster file sharing software. Beware of adware and spyware when using this type of program, for instance, Grokster contains CyDoor |
| USB Hardware326 Monitoring | X | USBhardware326.exe | Added by a variant of the W32.SPYBOT WORM!
|
| UMAX VistaAccess | N | vsaccess.exe | VistaAccess gives you quick and easy access to scanning functions right from your desktop |
| UpdateMgr | X | updmgr.exe | Added by the SouthBeachTel premium rate adult content dialer.
|
| USBDrives | X | msfirewalI.exe | Added by the W32/RBOT-ABP WORM! |
| Update | X | csrss.exe | Added by the Meheerwar
TROJAN!
Note: This is not the legitimate Windows process csrss.exe. (Which is always found in the System32 folder.) This trojan file is found in the System\winupdate (95/98/ME) or System32\winupdate (NT/2000/XP) folder.
|
| UpdateFW | ? | fwdload.exe | Appears to be firmware update software for a Network Associates ATMbook OC-3 SMF Interface Module? |
| USB Device | X | servicelog.exe | Added by the WOOTBOT.CB WORM!
|
| UpdReg | N | Updreg.exe | Reminder to register Creative Labs SoundBlaster Live! cards |
| update run dos | X | logon.exe | Added by a variant of the W32/SDBOT WORM! |