28th October, 2005
New items - 493
-
[Ephemeral 2.5] by TreeHugger, - X - [path to worm]
-
[random name] - X - CXTPLS_LOADER.EXE
-
[random name] - X - m?dtc.exe
-
[random name] - X - ping.exe
-
[random name] - X - w?nspool.exe
-
[random number] - X - explorer.exe
-
[trojan filename] - X - Install.exe
-
[various names] - X - 80d0.exe
-
[various names] - X - exe81.exe
-
[various names] - X - exe82.exe
-
[various names] - X - MSTCPDLL.exe
-
[various names] - X - seli.exe
-
_Setv - X - Setv.com
-
_WinMain - X - winexec.exe
-
{357AA41A-B7A8-4632-A27D-5B980B25CF43} - X - [path to trojan]
-
180ClientStubInstall - X - ******.tmp [* = random digit/char]
-
27 - X - msm32.exe
-
a - X - jesse.exe
-
abcdefgh - X - abcdefgh.exe
-
AccessoriesPlus - U - clockplus.exe
-
ACU_QSB - U - ACU.exe
-
Add**.exe [* = random char] - X - Add**.exe [* = random char]
-
Add**32.exe [* = random char] - X - Add**32.exe [* = random char]
-
AddClass - X - [path to trojan]
-
Administrator - X - svchost.scr
-
AeXAgentLogon - N - AeXAgentActivate.exe
-
AlcFDMonitor - ? - ALCFDRTM.EXE
-
ALCFDRTM16 - ? - ALCFDRTM16.com
-
aldefr ere service - X - tay0x.exe
-
Anonymizer Total Net Shield - U - AnonTns.exe
-
antidialer.co.uk - U - Dialer_Watcher.exe
-
Anti-Virus Update Scheduler - X - winsp3.exe
-
AOL Services Hosts - X - aolserviceshosts.exe
-
AOL TopSpeedMonitor - U - aoltsmon.exe
-
Api**.exe [* = random char] - X - Api**.exe [* = random char]
-
Api**32.exe [* = random char] - X - Api**32.exe [* = random char]
-
APIClass - X - lexplore_.exe
-
App**32.exe [* = random char] - X - App**32.exe [* = random char]
-
App**exe [* = random char] - X - App**exe [* = random char]
-
apyginapygin - X - simenu.exe
-
ASP.NET State Service - X - crsass.exe
-
AST - X - AST.exe
-
AtiSound - U - csrss.exe
-
ATITech - X - Active.exe
-
Atl**.exe [* = random char] - X - Atl**.exe [* = random char]
-
Atl**32.exe [* = random char] - X - Atl**32.exe [* = random char]
-
AudioDeck - N - ADeck.exe
-
aupd - X - sysvcs.exe
-
BeatNik Internet Clock - U - BeatNik.exe
-
Beegees Update - X - beegees.exe
-
blah service - X - evosys.exe
-
Blubster - N - Blubster.exe
-
Bron-Spizaetus - X - CVT.exe
-
Bron-Spizaetus - X - norBtok.exe
-
BTModemProtection - U - BTModemProtection.exe
-
cfy - X - cfy.exe
-
Checkdisk - X - mscas.exe
-
CitiUCS - U - CitiUCS.exe
-
Clre - X - mmdc.exe
-
CmPCIaudio - U - RunDll32 CMICNFG3.CPL, CMICtrlWnd
-
CMSystem - X - CMSystem.exe
-
COM Service - X - msflyx.com
-
Connectivity Tool - X - [path to trojan]
-
ControlPanel - X - popcorn320.exe rundll.dll, LoadMouseProfile
-
Cr**.exe [* = random char] - X - Cr**.exe [* = random char]
-
Cr**32.exe [* = random char] - X - Cr**32.exe [* = random char]
-
crs - X - crs.exe
-
cryptdlg - X - cryptdlg.exe
-
csrss.exe - X - csrss.exe
-
ctfmon.exe - X - msupdate32.exe
-
ctfnom.exe - X - OSRSS.exe
-
CYNHKey - ? - CYNHKey.exe
-
D3**.exe [* = random char] - X - D3**.exe [* = random char]
-
D3**32.exe [* = random char] - X - D3**32.exe [* = random char]
-
DamedWare Services - X - dwdrce.exe
-
dark - X - imgrt.scr
-
DeeEnEs - U - DeeEnEs.exe
-
delsaap - X - delsaap.exe
-
Devicewin - X - [path to trojan]
-
DirectX shell driver - X - [path to trojan]
-
dlbcserv - ? - dlbcserv.exe
-
DLL32 - X - dllhost.dll
-
DLL32 - X - dllhost.dll
-
dm***.exe [* = random char] - X - dm***.exe [* = random char]
-
DNS - X - mc-58-12-0000120.exe
-
DNS - X - mc-58-12-0000140.exe
-
DNS - X - services.exe
-
DrCache - X - MSTDC.EXE
-
Dsi - X - dp-him.exe
-
Duweculey - X - yujixit.exe
-
dxdiags.exe - X - dxdiags.exe
-
eanthology_install.exe - N - eanthology_install.exe
-
eMakeSV - X - EMAKE2B.EXE
-
EPoXUSDM - N - USDM.EXE
-
eRecoveryService - U - check.exe
-
erthegdr - X - windll2.exe
-
eTunnel - X - winfw.exe
-
Evil - X - Evil.exe
-
EXPL0RE.EXE - X - EXPL0RE.EXE
-
Explorer - X - drv.exe
-
Explorer Loader - X - explorerl.exe
-
Explorer soft - X - explorer.pif
-
Explorer32 - X - efsdfgxg.exe
-
Fast Search - X - svcnv.exe
-
FCEngine - X - FCEngine.exe
-
foxdh - X - foxdh.exe
-
F-Secure 2006 - Y - fspex.exe
-
g.exe - X - g.exe
-
G_Server1.2.exe - X - G_Server1.2.exe
-
Gestionnaire de disques universel - X - sysoobe.exe
-
google - X - google.exe
-
googletalk - U - googletalk.exe
-
Graphic Loader - X - ntvdm32.exe
-
GsAds - X - gms2.exe
-
HDAShCut - N - HDAShCut.exe
-
Hewlett Packard Manager - X - hpmanager.exe
-
HF Security - X - hfsecure.exe
-
hgqhp.exe - X - hgqhp.exe
-
HijSrv32 - X - hijsrv.exe
-
Hollaback - X - slvhosts.exe
-
Homeland Network - X - HomelandNetwork.exe
-
Host Process - X - mame.exe
-
HostSVC syse - X - HostSVC.exe
-
HPLaptopGamesActiveMenu - U - ActiveMenu.exe
-
HPNT - X - hpdll.exe
-
HSTrans - U - hstrans.exe
-
http://www.lienvandekelder.com - X - Lien Van de Kelder.exe
-
http://www.lienvandekelder.com/ - X - LienVandeKelder.exe
-
Hwp - X - system_wc.exe
-
ICcontrol - X - iccontrol.exe
-
icifati - X - yujixit.exe
-
IE configure - X - explorer.exe
-
IE**.exe [* = random char] - X - IE**.exe [* = random char]
-
IE**32.exe [* = random char] - X - IE**32.exe [* = random char]
-
Iexploit - X - Iexploit.html
-
igamatu - X - atecaca.exe
-
iHP-100 - ? - iHPDetect.exe
-
IMAPI - X - load.exe
-
Instant Wireless Configuration Utility - U - WPC11Cfg.exe
-
Intec Service Drivers - X - msmsgrs.exe
-
IntelAPMClient - U - amclient.exe
-
Internet Explore Microsoft - X - lEXPLORE.EXE
-
Intersoft Msngr - X - intersoftmsngr.exe
-
Inventory Scan - U - LDISCN32.EXE
-
IP**.exe [* = random char] - X - IP**.exe [* = random char]
-
IP**32.exe [* = random char] - X - IP**32.exe [* = random char]
-
Ipnuker - X - Ipnuker.vbs
-
iptray - U - iptray.exe
-
ipwf - X - ipwf.exe
-
issEnc32Svr - X - issEnc32.exe
-
iyelejiv - X - yujixit.exe
-
Java Auto Update - X - ujm.exe
-
Java**.exe [* = random char] - X - Java**.exe [* = random char]
-
Java**32.exe [* = random char] - X - Java**32.exe [* = random char]
-
jete - X - yujixit.exe
-
Jufualt - X - svhost.exe
-
kernel12.exe - X - kernel12.exe
-
kernel32 - X - kernel32.exe
-
KernelCheck - X - sys****.exe [* = digit]
-
Ksrv32 - X - Ksrv32.exe
-
KTAX Auto Loader - X - ktax.exe
-
KV_HOST - X - cxjx.exe
-
LanguageMonitor - U - Oplmsb01.exe
-
LanGuard - X - [path to trojan]
-
lify - X - yujixit.exe
-
llsass - X - llsass.exe
-
load - X - svchsot.exe
-
load= - X - inetinfo.exe
-
Loaders - X - HeIp.exe
-
LoadService - X - Maaf, tempatmu bukan di sin
-
LoadService - X - Virus
-
Local Service - X - Intenat.exe
-
Logon Loader - U - LogonLoader.exe
-
Logon Loader Random - U - LogonLoader.exe
-
lsass - X - elite***32.exe
-
lsass64BiT.exe - X - lsass64BiT.exe
-
lsmss.exe - X - lsmss.exe
-
Macromedia Critical Updater - X - rarww.exe
-
mark the service - X - xxtra32.exe
-
Martini - X - pinmart.exe
-
McAfee - X - McAffeAv.exe
-
Mcrosoftr Update - X - Mcrosoftr.exe
-
MedGS - X - MEDGS1.exe
-
mediapluscash.exe - X - mediapluscash.exe
-
Mfc**.exe [* = random char] - X - Mfc**.exe [* = random char]
-
Mfc**32.exe [* = random char] - X - Mfc**32.exe [* = random char]
-
Micr0s0ft Ms D0s - X - msdx.exe
-
Micrcoft Updat - X - Internet.exe
-
Microfot Update - X - winldx32.exe
-
MICROSFT ANTIVIRUS UPDATE SUPPORT - X - [random 10-letter filename].EXE
-
MICROSFT ANTIVIRUS UPDATE SUPPORT - X - MSGUPDATED.EXE
-
Microsof Value - X - nmatt.exe
-
Microsoft 64 Bit Runtime Updater - X - wupdt64.exe
-
Microsoft Automatic Update Serivce - X - msautou.exe
-
Microsoft Client - X - mshost.exe
-
Microsoft Core Support - X - MSxUP32.exe
-
Microsoft Corporation - X - jview.exe
-
Microsoft DLL Verifier - X - chkfile.exe
-
Microsoft DLLSet32 - X - dllset32.exe
-
Microsoft Explorer - X - explorer.pif
-
Microsoft IDCN - X - mshe1p.exe
-
Microsoft Incroporate - X - mfs.exe
-
Microsoft Internet Explorer - X - mccagent.exe
-
Microsoft Intrenet Explorer - X - goaw.pif
-
Microsoft Intrenet Explorer - X - Soundsyst.exe
-
Microsoft Machine - X - winjava.exe
-
Microsoft Manager - X - msmanager.exe
-
Microsoft Mapped PC - X - mappedpc.exe
-
Microsoft Messenger Management Controls - X - msmgmctl.exe
-
Microsoft msnseru - X - msnseru.exe
-
Microsoft Office - X - msoffice32.exe
-
Microsoft Security Center - X - savservices.exe
-
Microsoft Security Panager - X - [filename]
-
Microsoft Security Panagers - X - zzoboony.exe
-
Microsoft Service Drivers - X - System.exe
-
Microsoft Service Drivers - X - VSADNIM.exe
-
Microsoft standard protector - X - [path to trojan]
-
Microsoft Synchronization Manager - X - devldr32.exe
-
Microsoft System DLL Services Configuration - X - windir32.exe
-
Microsoft Telecoma Center - X - tellcoma.exe
-
Microsoft Update - X - ms.exe
-
Microsoft Update - X - wuagmsd.exe
-
Microsoft Update 32 - X - mssetup32.exe
-
Microsoft Update 32 - X - wiit.exe
-
Microsoft Update 64 BIT - X - schvost.exe
-
Microsoft Update Loaders 2006 - X - winusersystem32.exe
-
Microsoft Update Manager - X - svshost.exe
-
Microsoft Update Service - X - msupdate.pif
-
Microsoft Windows 128bit Subsystem - X - system12.exe
-
Microsoft Windows Game Updater - X - msgame32.exe
-
Microsoft Windows Update - X - sccvhost.exe
-
Microsoft Windows Update - X - scrhost.exe
-
Microsoft Windows Updater - X - suvhost.exe
-
Microsoft Windows WinSaSS Management - X - winsass.exe
-
Microsoft WINGS32 Protocol - X - WinSGR32.exe
-
Microsoft Winsock - X - mswinsck.exe
-
Microsoft Winsock Service - X - msusvc.exe
-
Microsoft X Update - X - wuamkoppnp.exe
-
Microsoftf DDEs Control - X - why-.exe
-
Microsoft-software - X - ****.exe [* = random char]
-
MiniServer.exe - X - MiniServer.exe
-
ML1HelperStartUp - U - ML1Helper.exe
-
mmxp2passion.exe - X - mmxp2passion.exe
-
MonitorSD - X - SDMonitor.exe
-
Motive SmartBridge - N - BTHelpNotifier.exe
-
MouseDrv - X - [path to worm]
-
MouseDrv - X - update.exe
-
MS Sys Security - X - mswin.pif
-
MS System Security - X - mswin32.pif
-
MS Taskbars - X - taskbars.exe
-
Ms**.exe [* = random char] - X - Ms**.exe [* = random char]
-
Ms**32.exe [* = random char] - X - Ms**32.exe [* = random char]
-
MSAgent - X - hhnt.exe
-
MSControl28 - X - crsss.exe
-
MSControl31 - X - winnsyst.exe
-
MSControl3d1 - X - isasse.exe
-
MSGTAG - U - MSGTAG.exe
-
Msinet - X - Msinet.exe
-
MSMNTJBE - X - MSMNTJBE.EXE
-
MSMNTJNG - X - MSMNTJNG.EXE
-
Msn Messenge - X - IExplorer.exe
-
MSN Messenger 6.2 - X - tyd.exe
-
MSN Messenger Service Starter - X - msnmgsr.exe
-
MSPRO32 - X - [path to worm]
-
MSPRO32 - X - pnp.exe
-
msresearch - X - tool3.exe
-
MSShow - X - MSShow.exe
-
nbustrce1D - ? - nbustrce1D.exe
-
NeroUpdater6.8 - X - winjava.exe
-
Net**.exe [* = random char] - X - Net**.exe [* = random char]
-
Net**32.exe [* = random char] - X - Net**32.exe [* = random char]
-
Newman - X - playavi.exe
-
NI.UWFX5 - X - UWFX5NetInstaller.exe
-
NI.UWFX5LP_0001_0802 - X - UWFX5LP_0001_0802NetInstaller.exe
-
NI.UWFX5LP_0001_0803 - X - UWFX5LP_0001_0803NetInstaller.exe
-
NI.UWFX5T - X - UWFX5TNetInstaller.exe
-
NI.UWFX5V_0001_0802 - X - UWFX5V_0001_0802NetInstaller.exe
-
Norton updated - X - NVSV32.EXE
-
NortonAntivirus - X - LSASS.exe
-
nortonav - X - CCUPD32.EXE
-
NortonVPlus - X - svchost.exe
-
Nt**.exe [* = random char] - X - Nt**.exe [* = random char]
-
Nt**32.exe [* = random char] - X - Nt**32.exe [* = random char]
-
NTCommLib3 - X - NTCommLib3.exe
-
NTdhcp - X - CiKewl.exe
-
NTupdater - X - [path to trojan]
-
NvCpl - X - rundl32.exe
-
nvmsgdwn - X - NVMSGDWN.EXE
-
oeplugin - U - bxOEPlugin.exe
-
OfficeQuickAccess - X - OfficeHost.vbs
-
OpenGL Drivers - X - 0penGLD.exe
-
opr - X - opr.exe
-
Panda Preventium+ Service - Y - PREVSRV.EXE
-
Pantera - X - pantera.exe
-
Pavkre9x - Y - pavkre9x.exe
-
Pavprot9 - Y - Pavprot9.exe
-
PC Dynamics SdwMon32 - U - sdwmon32.exe
-
Persistence - N - igfxpers.exe
-
Playboy - X - playavi.exe
-
PluckSvr - N - PluckUpdater.exe
-
pmcqt - X - pmcqt.exe
-
PMT - U - personalmoneytree.exe
-
PnP Driver - X - playboy.exe
-
Proteção de tela - X - ssmaze.scr
-
protect - X - protect.scr
-
QuickTimeUpdate - X - QuickUpdate.exe
-
RAMDrive - U - RDTask.exe
-
Raptelnet - X - ravspeger.exe
-
Raptelt - X - ravspegtl.exe
-
RavTimeXP - X - Virus
-
RAX SYSTEM - X - scrigz.exe
-
RealPlayerUpdater - X - realupd32.exe
-
RegMutex - X - lexplore_.exe
-
Regro - X - rundll132.exe
-
Regrx - X - rundll32.exe
-
RegScan - X - Regscan.exe
-
RegServer - ? - regserve.exe
-
Rnaomflt - U - naomf.exe
-
Roam04 - X - ActiveX.exe
-
RTHDCPL - N - RTHDCPL.EXE
-
run windows - X - servic.bat
-
run= - X - mdm.exe
-
Runner - X - lsass.exe /i [trojan filename]
-
SafeHouseSystemTray - U - SDWTRAY.EXE
-
Sakemsneql - X - simenu.exe
-
ScamDisk - X - SVOHOST.exe
-
schost - X - [path to trojan]
-
SchSvr - N - SchSvr.exe
-
scrbmk - X - [path to trojan]
-
Sdk**.exe [* = random char] - X - Sdk**.exe [* = random char]
-
Sdk**32.exe [* = random char] - X - Sdk**32.exe [* = random char]
-
Service - X - service.exe
-
Service System - X - windowsXP.exe
-
Services - X - services.exe
-
Services Host - X - svchost32.exe
-
services32 - X - mc-58-12-0000120.exe
-
services32 - X - mc-58-12-0000140.exe
-
ServicesLog - X - ccapp32.exe
-
SFIGUI - N - SFIGUI.EXE
-
Shell - X - ibm00001.exe
-
Shell - X - taskmrg.exe
-
shell update - X - shellexec.exe
-
ShellRun - X - lexplore_.exe
-
SIAPRO6 - U - sia.exe
-
SiS Dns - X - dnssvc.exe
-
slipcore - Y - slipcore.exe
-
slipgui - Y - slipgui.exe
-
SM1NINT - N - SM1NINT.exe
-
smss.exe - X - csrss.exe
-
SNInstall - X - [various file names]
-
softIce Update 32 - X - wininits.exe
-
SonudMan - X - SonudMan.exe
-
Spool Manager - X - spoolsrv.exe
-
spoolax - X - [path to trojan]
-
SpyTrooper - X - SpyTrooper.exe
-
sqservices - X - wins32.exe
-
Start aThx Roll - X - f0mered.exe
-
StartMenu - X - browse.exe
-
stdlib - X - [filename]
-
SteFanie - X - SteFanie.vbs
-
stratas - X - lockx.exe
-
StrokeIt - U - strokeit.exe
-
strtas - X - lock1.exe
-
strtas - X - lockx.exe
-
strto - X - [path to trojan]
-
svchast - X - svchast.exe
-
SvcHost - X - svchost32.exe
-
svchostdll.scr - X - svchostdll.scr
-
SvcHosto - X - v1rg1n.exe
-
syelimS-esreveR-troppuS - X - [filename]
-
Sygate Peral Firewall - X - Syga.exe
-
Sygate Personal Firewall - X - Syga.exe
-
SymRun - X - ccApps.exe
-
Sys**.exe [* = random char] - X - Sys**.exe [* = random char]
-
Sys**32.exe [* = random char] - X - Sys**32.exe [* = random char]
-
sysdll - X - [trojan filename]
-
SysMemory manager - X - mdms.exe
-
sysmngr32 - X - sys64mnger.exe
-
sysnet - X - sysnet.exe
-
syspare - X - syspare.exe
-
syspol - X - syspol.exe
-
SysStart - X - 1.exe
-
system configure - X - svchost.exe
-
System Management Service - X - smsc.exe
-
System Service - X - msnwindows.exe
-
System Service - X - servicez.exe
-
system updata - X - updata.exe
-
System Update Service - X - update.pif
-
system32.exe - X - system32.exe
-
System4224411 - X - Virus
-
SystemTraySD - X - SDSystemTray.exe
-
SystemTraySR - X - SRSystemTray.exe
-
Systray - X - SteFanie.vbs
-
tbon - X - tbon.exe
-
tcpippui - X - tcpippui.exe
-
testit.exe - X - testit.exe
-
ThE - X - wind0s.exe
-
Tok-Cirrhatus - X - IDTemplate.exe
-
Tok-Cirrhatus - X - smss.exe
-
tor anonymous proxy - X - tor32.exe
-
tyack drive - X - tyack.pif
-
UFD Monitor9382 - ? - ufdlmon.exe
-
UFD Utility9382 - ? - UFDTool.exe
-
ujm - X - nm32.exe
-
UNERI - X - yujixit.exe
-
UnSpyPC - X - UnSpyPC.exe
-
UpDate - X - RAuth.exe
-
Upgrade Sarvice - X - sxchost.exe
-
Upgrade Service - X - sxchost.exe
-
Upgrade Service - X - winupd.exe
-
upyxo - X - yujixit.exe
-
Userinit - X - lsass.exe
-
userinit - X - winlogon.exe
-
uwyw.exe - X - yujixit.exe
-
vidmon - X - VIDMON.EXE
-
Vsample - X - winxpsock.exe
-
WebLink - N - WebLink.exe
-
WheelsMouse - X - [path to trojan]
-
Whitechix - X - brightx.exe
-
WildFlics - X - WildFlics.exe
-
Win Update - X - SysUpdate.exe
-
WIN USB SUPPORT - X - grxsrv.exe
-
win_supp00.exe - X - Win Const.exe
-
Win32 Debug Manager - X - microsoftupd.exe
-
Win32 Firewall Driver - X - winfw.exe
-
Win32 Svchosts Driver - X - svchosts.exe
-
WIN32DS - X - clienttimer.exe
-
WIN32io - X - clienttimer.exe
-
WIN32WN - X - system_wc.exe
-
Winamp to Google Talk - U - winamptogoogletalk.exe
-
WinAntiSpyware 2005 - X - was5.exe
-
wincmap - X - wincmapp.exe
-
Wind Logd File - X - servicelogd.exe
-
Wind0ws - X - wordpad.exe
-
Windeows NetStart Service2 - X - tesakrmger.exe
-
Windows ASN Service - X - rge.exe
-
Windows connection manager - X - Internet.exe
-
Windows DLL Verifier - X - xptl.exe
-
Windows Frame Works - X - frmwrks32.exe
-
Windows GMT32 - X - wingmt32.exe
-
Windows Incontext - X - InSearch.exe
-
Windows Java Update - X - weatherBug32.exe
-
Windows Logger - X - winlog.exe
-
Windows Logon Service - X - winlogon.pif
-
Windows Registry Scan - X - regscan23.exe
-
Windows Repair - X - toxikx.exe
-
Windows Run-Time 64bit - X - win64rt.exe
-
Windows Security - X - win.pif
-
WINDOWS SYSTEM - X - servce.exe
-
WINDOWS SYSTEM - X - servises.exe
-
WINDOWS SYSTEM - X - xpupdate.exe
-
Windows System Configuration - X - nether.exe
-
Windows System Security - X - sys32.pif
-
WINDOWS SYSTEMn - X - servicces.exe
-
Windows Task Manager - X - taskmngr.exe
-
Windows Task Service (32-bits) - X - tasksys.exe
-
Windows update - X - wudupdate.exe
-
Windows Update - X - wupdmgr.exe
-
Windows Update 32 - X - rempss.exe
-
Windows Update 32 - X - slsys.exe
-
Windows Update 64 - X - nbupd64.exe
-
Windows Update 64 - X - WinV.exe
-
Windows Update Center - X - W32RSA.exe
-
Windows Updated - X - spoolsae.exe
-
Windows Virus Control - X - plou.exe
-
Windows XP SP2 KeyGen - X - Windows XP SP2 KeyGen.exe
-
WindowsUpdate - X - winnnint.exe
-
WinEx - X - lexplore_.exe
-
WinINet - X - services.exe
-
winint - X - winint.exe
-
WINREMOTE - U - WinRemote.exe
-
Wins Service Driver - X - winet.exe
-
Wins Update 32 - X - services32.exe
-
Winsock2 driver - X - ntsys32.exe
-
WinsSystem - X - syssmss.exe
-
winwsl.exe - X - winwsl.exe
-
winxpusbd - X - winxp64.exe
-
WinZip Update - X - WinZip.exe
-
WM VCR - N - WMVCR.exe
-
WN Services - X - wnsvc.exe
-
WSAConfiguration - X - csrsvcs.exe
-
wscsvc.exe - X - wscsvc.exe
-
wsrv32 - X - wsrv32.exe
-
wupdmgr32.exe - X - wupdmgr32.exe
-
XGIWatchDog - ? - XWatDog.exe
-
yaemu.exe - X - yaemu.exe
-
ywwvc.exe - X - ywwvc.exe
-
Zango SiteFinder - X - ZangoSiteFinder.exe
-
Zcfgsvc - U - ZCfgSvc.exe
-
ZDConfig - ? - ZDConfig.exe
-
Zeno - X - *sys****.exe [* = random char/digit]
-
Zi5 - X - AntiVirus Update.exe
-
Zstart - X - cxdxregt.exe
Changed items - 47
- ActiveMenu (ActiveMenu.exe) - Description changed/updated
-
AdRotator.Application ([path to csrss.exe]) - Description changed/updated
-
AS00_Gear511 (Gear511.exe) - Name changed
-
Bakra (IEHost.exe) - Description changed/updated
-
BI1HelperStartUp (BI1HEL~1.EXE) - Description changed/updated
-
CMAPP (cmappclient.exe) - Description changed/updated
-
Compaq32 Service Drivers (msconfig32.exe) - Description changed/updated
-
ctfmon (ctfmon.exe) - Description changed/updated
-
DDCActiveMenu (DDCActiveMenu.exe) - Description changed/updated
-
DDCM (DDCMan.exe) - Description changed/updated
-
DDCMan (DDCMan.exe) - Description changed/updated
-
Debug (DebugW32.exe) - Description changed/updated
-
Dinst (dinst.exe) - Description changed/updated
-
Disk Keeper (SECURITY.EXE) - Description changed/updated
-
DNS (mc-110-12-0000079.exe) - Description changed/updated
-
DNS (mc-58-12-0000080.exe) - Description changed/updated
-
DNS (mc-58-12-0000093.exe) - Description changed/updated
-
FD_SAP (FD.exe) - Status (U) and description changed
-
hkcmd (hkcmd.exe) - Description changed/updated
-
HP Display Settings (hpdisply.exe) - Status (U) changed
-
hpcmpmgr (hpcmpmgr.exe) - Status (N) and description changed
-
HPGamesActiveMenu (ActiveMenu.exe) - Description changed/updated
-
ICQ Messenger 2002 (ICQ2002.exe) - Description changed/updated
-
loadMefs (rundll32.exe) - Description changed/updated
-
LSA Shell (Export Version) (LSASS.exe) - Description changed/updated
-
Media-XP-Service-Pack3 (msnzx.exe) - Description changed/updated
-
Microsoft DDEs Control (Erun.pif) - Description changed/updated
-
Microsoft sdk temp (sdktemp.exe) - Description changed/updated
-
Microsoft Update 32 (wininit.exe) - Description changed/updated
-
msmsngr (msmsngr.exe) - Description changed/updated
-
Osus (rrup.exe) - Description changed/updated
-
Pcsv (pcsvc.exe) - Status (X) changed
-
Pmedia (winsrvc.exe) - Hyperlink and description changed
-
SM1BG (SM1BG.EXE) - Status (N) and description changed
-
spc_w (blspc.exe) - Status (N) and description changed
-
spc_w (hcm.exe) - Description changed/updated
-
SuperBar.Component ([path to services.exe]) - Description changed/updated
-
svshost (svshost.exe) - Description changed/updated
-
Symantec Security Addon (nvsvc.exe) - Description changed/updated
-
SysStart (***sysi6.exe [* = random char]) - Description changed/updated
-
System service** (pokapoka**.exe) - Command and description changed
-
Systrsy (Systrsy.exe) - Name and description changed
-
TizzleTalk (TizzleTalk.exe) - Status (N) and description changed
-
win32 internet server (winserver.exe) - Description changed/updated
-
Windows installer (winstall.exe) - Description changed/updated
-
Windows Messenger (msnsmgs.exe) - Description changed/updated
-
Windows Spool Server (spoolsrv.exe) - Description changed/updated
New random items - 2
Added to http://www.sysinfo.org/startupinfo.html
- [trojan filename] ([SYSTEM]\[trojan filename]) - MADTOL-A TROJAN!
- [trojan filename] ([trojan filename]) - HESIVE TROJAN!
Removed items - 5
- Microsoft Associates, Inc. (iexplorer.exe) - LOVEGATE duplicate
- System service61 (pokapoka61.exe) - Replaced by generic "System service**"
- System service62 (pokapoka63.exe) - Replaced by generic "System service**"
- System service63 (pokapoka63.exe) - Replaced by generic "System service**"
- tjstartup (svchost.exe) - CURDEAL - covered by TJSERV.C which has a random filename