18th December, 2003
New items - 42
- U - AAK (aak.exe)
- U - Acronis Scheduler2 Service (schedhlp.exe)
-
N - Acronis TrueImage Monitor (TrueImageMonitor.exe)
-
U - AdDestroyer (AdDestroyer.exe)
-
U - AppPlus (AppPlus.exe)
-
? - BIOVCIP (BIOVCIP.exe)
-
X - Casdvqwa (bmqnzkg.exe)
-
N - csaRem (spqmdmui.exe)
-
? - dried.exe (dried.exe)
-
? - DVDUpgrade (DVDUpgrd.exe)
-
X - easywww (easywww2.exe)
-
N - Gadu-Gadu (gg.exe)
-
X - HotPix (hotpix.exe)
-
? - HP Visualize Init (HpVisIni.exe)
-
? - IMEKRMIG6.1 (IMEKRMIG.EXE)
-
X - InstantPleasure (instantpleasure.exe)
-
X - InstantPleasureXXX (instantpleasurexxx.exe)
-
? - Key2 (serve.exe)
-
X - lar (<filename>)
-
X - Lasb (ewat.exe)
-
U - Miramar Systems, Inc. (atmsg.exe)
-
X - Msdmxm (msdmxm.exe)
-
X - MSFind32 (msfind32.exe)
-
X - MSMcAfeeS (Avsynmgr32S.exe)
-
U - NGClient (ngctw32.exe)
-
? - Path (lide.exe)
-
U - Pent@VALUE 3.2 (Pent@VALUE.exe)
-
? - pm32info (pm32info.exe)
-
X - rbenh ml***e (rbenh.exe)
-
X - RegistryChk (winbackup.exe)
-
X - Rund1l32 (Winfi1e32.exe)
-
X - sysdir (winrun.exe)
-
X - System Diagnostics (sysdiag32.exe)
-
X - SystemNetwork (NETSERV.EXE)
-
U - tqrecv (tqrecv.exe)
-
N - Utopia Angel (Angel.exe)
-
X - Version (Version.exe)
-
X - Winbed (winbed.exe)
-
X - windir (winrun.exe)
-
X - Windows Print Spooler (NavAgent32.exe)
-
X - WindowsUpd (WindowsUpd4.exe)
-
X - winsockdriver (tskmg.exe)
Changed items
- 7
- DDialler - status (X) and description changed
-
IKE Service 95 - status (Y) and description changed
-
Microangelo Desktop - status (U) changed and description updated
-
muamgr - status (U) changed and description updated
-
Open Site - status (X) and description changed
-
Phime2002a - "PHIME2002ASync" added as an alternative name
-
TINTSETP - description updated
12th December, 2003
New items - 24
- X - \MSMcAfeee (Avsynmgr32e.exe)
- X - App.EXEName (.exe)
- X - Configuration Loading (svchos1.exe)
- ? - edexter (edexter.exe)
- Y - EngUtil (EngUtil.exe)
- X - ExeName32 (Warm.scr)
- ? - FLSVCI (FLSVCI.exe)
- Y - load= (AICLIENT.EXE)
- ? - MGA Hook (Mgahook.exe)
- X - MicrosoftMultimediaTask (Mmtask.exe)
- X - Microsoft Runtime (CfgDll32.exe)
- X - MSCVT (MSCVT.exe)
- X - MyWebSearch Email Plugin (mwsoemon.exe)
- ? - objtjprx (objtjprx.exe)
- ? - Open Site (opnste.exe)
- X - scheck (scheck**.exe)
- X - SSUpdate (SSUpdate.exe)
- X - SVC Socks (mstaskm.exe)
- X - System Executable DLL Library (EXECDLL32.exe)
- X - tlc (update911.js)
- ? - uniucu (uniucu.exe)
- X - Updates (msupdate.exe)
- X - websearch (wjview ...websearch.exe)
- X - Windows Control (Control.exe)
Changed items
- 5
- Auto T Bar or autotbar - status (N) and description changed
- Cyber - description changed
- DCfssvc - status (U) changed, "dcfssve" added to the Name and description updated
- Removecpl - status (N) changed and descrtiption updated
- RemStart - description updated
4th December, 2003
New items - 113
- X - <executed file name> (Regsrv32.com)
- U - 1Win32Cfg (Keyloggerpro.exe)
- X - AdultX (AdultX.exe)
- X - AolCon (config.com)
- X - b99 (msmm.exe)
- U - ccWasher (aolwasher.exe)
- U - cma (cma.exe)
- X - ConfiggLoader (cart322.exe)
- U - CyberLat Ram Cleaner (CLRamCleaner.exe)
- X - Diskstart (cat.exe)
- X - drocher (d.exe)
- X - editpad (editpad.exe)
- U - EDRestore
- Y - eScan Monitor (AVKWCTL9X.EXE)
- U - eScan Scheduler (avkserv.exe)
- U - eScan Updater (Trayicos.exe)
- ? - essapm (essapm.exe)
- ? - Event Log (eventlog.exe)
- X - Explorer (<path_to_worm>)
- ? - EZNORUN (EZNORUN.EXE)
- ? - Flow Go TV (flogotv.exe)
- X - flps (flps.vbs)
- X - fmnwebassist (fmnwebassist.exe)
- X - France (svchost.exe)
- ? - FridaysInHellInstaller (FridaysInHellInstaller.exe)
- N - GWInkMonitor (GWInkMonitor.exe)
- ? - hpcmpmgr (hpcmpmgr.exe)
- ? - HP Component Manager (hpcmpmgr.exe)
- U - HP Instant Support (matcli.exe)
- N - HP software update (HPWuSchd2.exe)
- X - ieupdate (MCP****.exe)
- X - Instant Access (rundll32.exe EGDHTML_1023.dll, InstantAccess)
- N - iRiS AntiVirus Active Monitor (WIMMUN32.exe)
- X - Kernel32 (krnl32.exe)
- X - kernel system daemon (ACTIVAT0R.exe)
- X - Lar (Llass.exe)
- N - lcfep (lcfep.exe)
- X - load= (Spoolsv.exe)
- ? - Load= (wtfeat.exe)
- Y - MailScan Dispatcher (Launch.exe)
- X - MemConfig (SetupIE.com)
- X - Message Queuing (msmqs.exe)
- ? - Mgabg (Mgabg.exe)
- X - Microsoft Database Handler (mssql32.exe)
- X - Microsoft IIS (syshost.exe)
- X - Microsoft Internet Firewall Manager (GMT16.exe)
- X - Microsoft UPDATER32 (lsass.exe)
- X - Msfind (Msfind.exe)
- ? - MSIN (MSin.exe)
- ? - MS management console (mms.exe)
- X - MsManager (msmgr32.exe)
- X - msmc (mscpbo.exe)
- X - MSObject32 (MSObject32.js)
- X - MSupdate.exe
- X - MyPointsPointAlert (wjview ...MyPointsPointAlertrun.exe)
- X - netconfig (netconfig.exe)
- X - NetMon (netmon.exe)
- X - Network Host Controller (<path to trojan>)
- X - Online Service (svchost.exe)
- ? - PCMService (PCMService.exe)
- U - PowerDOCSAPIHost (papihost.exe)
- ? - PowerSet (Regedit.exe /s ...PowerSet_8100_CU.REG)
- X - Print Spooler (Spoolsv.exe)
- N - QNPlus (QNPlus.exe)
- U - Qoeloader (Qoeloader.exe)
- X - quicken (quicken.exe)
- X - QuickTime Task (qttasks.exe)
- ? - RAMASST (RAMASST.exe)
- X - Reg32 (Reg32.exe)
- X - REGEDIT (Regsrv32.com)
- U - RemindMe (RemindMe.exe)
- U - RemoteCenter (RcMan.exe)
- N - RHSI SHS (SHS.exe)
- X - RPC Patcher (<path_to_worm>)
- X - run= (fntldr.exe)
- X - run= (Spoolsv.exe)
- X - run= (xmczzdst.exe)
- X - rundll32 (<path_to_worm>)
- ? - rundll32 (rundll32.exe ptipbmf.dll, SetWriteCacheMode)
- X - rundll64 (<path_to_worm>)
- U - SAMcal (SAMcal.exe)
- X - Search.vbs
- U - SetecCertUtil (Certutil.exe)
- X - Setting (sysweb.exe)
- ? - Si Meter (SIMETER.EXE)
- X - sistry (sistry.exe)
- X - Soundmx (Soundmx.exe)
- X - ssvchost (ssvchost.exe)
- Y - STCPO (STCPO.exe)
- X - Susp (Susp.exe)
- X - Svchost (winhost.exe)
- X - SvcHost32 (svchost32.exe)
- X - syscfg (syscfg32.exe)
- X - sysinfo (sysinfo.exe)
- X - Syslib (Syslib.exe)
- X - SystemDebug (Sysdeb32.exe)
- X - Systry (<path_to_worm>)
- X - Systryt (<path_to_worm>)
- X - taskmanager (taskmgr.com)
- X - tasksys (tasksys.vbs)
- N - TPTray (TPTray.exe)
- U - UniSc (Unisc.exe)
- Y - VS.VSN
- X - w32alanis (mope.scr)
- X - w32sup (w32sup.exe)
- U - Windows System Tray (msni.exe)
- X - WinEssential (Keyhost.exe)
- X - Win_Library (INISvc.exe)
- X - Winlogon.exe
- N - WinTOTAL Scheduler (guru.exe)
- X - wmsys32 (wmsys32.exe)
- U - x3watch (x3watch.exe)
- N - YBrowser (ybrwicon.exe)
Changed items
- 23
- acc - status (U) and description changed
- ActionAgent - description updated
- Apvxd and Apvxdwin - combined
- BCNT - status (N) and description changed
- CSINJECT.EXE - broken link fixed
- D066UUtility - name changed from "D066U Utility" and executable changed to D066UUTY.EXE
- Disk Master - description updated
- IAAnotif - description updated
- IELoader32 - "SPEX.B" added as an alternative VIRUS name
- iRis Active Monitor - status (N) and description changed
- MSMSGS - changed description to be Windows Messenger
- MXO Auto Loader - status (U) changed and description updated
- NvCpl or NvCplDaemon - "disable" changed to "enable"
- Restart_VS - "Viewsonic.exe" added as the command and description changed
- RoxioAudioCentral - description updated
- RoxioDragToDisc - description updated
- RoxioEngineUtility - status (Y) and description updated
- rtos - status (X) and description changed
- SMax4 - status (N) changed
- Tivoli - status (N) changed an description updated
- Usb - description updated
- Washerie.exe - link removed as no longer available
- WinFavorites - status (X) and description changed
Back to Updates - 2003