Windows Vista Tips


Processes beginning with m

The table below includes any process titles beginning with m, from which further information can be found by clicking on the process title. The icon beside the information can be used to quickly determine if this is a safe file in combination with the key below:



This file is normally safe to leave running. In most cases, this file is not required to run on startup and can be run manually. Warning, this file may be a virus, spyware, resource hog and running it is not recommended. This file may or may not be necessary to load on startup, depending on your circumstances. No information is available for this item.

[#] [A] [B] [C] [D] [E] [F] [G] [H] [I] [J] [K] [L] [M] [N] [O] [P] [Q] [R] [S] [T] [U] [V] [W] [X] [Y] [Z]

Processes beginning with m:

File Type Process Name and Information
M Player Post Installer
??
M S DVD DirectX Dll Drivers
Added by the SDBOT-BJN WORM!
M-Audio Delta Taskbar Icon
M-Audio Delta Control Panel for M-Audio brand Delta series audio cards. System Tray access to audio settings - available through Control Panel
M-Audio MobilePre Control Panel Launcher
Control Panel Launcher for MobilePre USB bus-powered preamp and audio interface from M-Audio
M-Audio Taskbar Icon
System Tray access to the Delta Control Panel for the M-Audio Delta series of PCI audio cards
M-soft Office
HTA file which creates an executable on the hard drive which subsequently proceeds to download files from a malware site!
M1cr0s0ft S3rcurity
Added by the RBOT.BKB WORM!
M1cr0s0ft Upd4t4zS
Added by the RBOT-MI WORM!
m32info
Added by the CRYPTER.A TROJAN!
M3Development_WhenUSave_Installer
WhenU.Save adware
M3Tray
Movielink - internet movie rental System Tray access
MAAgent
Related to MarkAny - a solution to prevent is unauthorized distribution of information through Floppy, CD, email, etc
MacDrive
MacDrive 7 & MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Version 6 is not Vista compatible but doesn "include support for striped Mac arrays created with ATTO ExpressStripe software."
MacDrive application
MacDrive 7 from Mediafour Corporation - "enables anyone using Windows Vista, XP, and 2003 Server to seamlessly access Mac disks (HFS/HFS+) of all types, including CDs, DVDs, hard drives, floppy, Zip, Jaz, and more!"
MacDrive7.0.4TimeOutPatch
Part of MacDrive 7 from Mediafour Corporation - "enables anyone using Windows Vista, XP, and 2003 Server to seamlessly access Mac disks (HFS/HFS+) of all types, including CDs, DVDs, hard drives, floppy, Zip, Jaz, and more!" Interim patch for an older version? Is it no longer required?
Macfee Security Patch
Added by the RBOT-NP WORM!
Machine Debug Manager
Used by developers for debugging. Those who have encountered it have unchecked it with no degradation in performance. May cause your computer to "hang" if you have MS Visual Studio installed and this disabled because it appears to take over error handling - hence the U recommendatioon. Can also be listed as MDM7. See here to disable
Machine Debug Manager
Added by a variant of the RBOT WORM!
Machine Update Soft
Added by an unidfentified WORM!
machine-debugger
Added by the AGOBOT.U WORM!
MachineTest
Added by the SDBOT TROJAN!
mackfy.exe
Added by the SDBOT-DID WORM!
MacLic
Part of Conversions Plus from DataViz - allowing PC and MAC owners to share disks
MacLicense
Part of Conversions Plus from DataViz - allowing PC and MAC owners to share disks
MacName
Part of Conversions Plus from DataViz - allowing PC and MAC owners to share disks
Macromedia 8
Added by the JAMBU-A WORM!
Macromedia Critical Updater
Added by a variant of the RBOT WORM!
Macromedia Dreamweaver XM
Added by the AGOBOT-RI WORM!
Macromedia Drive
Added by a variant of the RBOT WORM!
Macromedia Flash Update
Added by a variant of the RBOT WORM!
MACVNTFY
Part of MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
MAD.EXE
MAD.exe is the MS Exchange 5.5 System Attendant and can also consume a large amount of resources - resolved by the latest Exchange 5.5 Service Pack. Also part of Exchange 2000 Server but does it have the same problems?. Apparently you need to leave this running but is it needed at start-up?
MadExe
Part of Dell Resolution Assistant - "a diagnostic program that allows you to contact Dell. When factory-installed by Dell, it allowed you to perform hardware and software diagnostics that provided alerts to potential problems and enabled real-time communication with Dell RA techs. You can now use RA only to contact Dell by e-mail"
MAFWTaskbarApp
Drivers for the M-Audio Firewire Audiophile - Interface
Magentic
Magentic by Incredimail - wallpaper/screensaver manager
MagicDisc
MagicISO - "very helpful utility designed for creating and managing virtual CD drives and CD/DVD discs"
MagicDsk
Magic DeskTop is a small and novel utility which will allow you the option of hiding or showing your desktop icons
MagicKeyboard
Related to Samsung laptops. Provides ability to program keys to perform specific functions
MagicLinker3
ThaiSoftware Thai Dictionary
Magitime
Magitime - connection tracking utility which monitors online time, expense, data transfer
mahmud
Added by a variant of the Storm/Nuwar/Zhelatin WORM! See here for an example
Mail.com
Mail.com - free web-mail service. Does mcalert.exe notify you when new mail has arrived?
MailBell
MailBell e-mail notification tool that will notify you about new messages arrived to your mailbox. Works with both POP3 mailboxes and web-mail based systems. You should be able to set your mail system to check all accounts at regular intervals anyway if you prefer (in Outlook for instance)
Mailbox Verifier
Mailbox Verifier (MV) is free software that will notify you about new messages arrived to your mailbox. Only works with POP3 mailboxes (not web-mail based systems). You should be able to set your mail system to check all accounts at regular intervals anyway if you prefer (in Outlook for instance)
MailCleaner
MailCleaner "protect your computer from viruses sent to your machine via the popular e-Mail reader Incredimail. In addition the program will check all incoming files downloaded by Internet Explorer, Netscape Navigator, ICQ and iMesh". Not recommended as it bundles GAIN adware. Please note that Claria Corporation no longer support GAIN-Supported software - see here
mailman.exe
Added by the CERTIF-E TROJAN!
MailScan Dispatcher
MicroWorld MailScan Dispatcher splits each e-mail message into various components such as the header, body and attachment. Compressed formats (ZIP, ARJ, etc.) are scanned for viruses and cleaned
Mail_Check
Added by the PANOIL.C WORM!
MAIN
SpyCop surveillance software detection - checks to see when your machine was last scanned and if it was more than a week asks if you want to scan
Main Executable (HP)
HP (Hewlett-Packard) related. Maybe related to printers. Now - what does it do?
main16
Added by the CRYPTER.A TROJAN!
main32
Added by the CRYPTER.A TROJAN!
MainStart
Added by the STINX-A TROJAN!
mainviewex
Added by the GEMA.D TROJAN!
main_module
Added by the DILA TROJAN!
Major Microsoft Windows Driver Boot loader
Added by the MYTOB.AJ WORM!
Malware Sweeper
Malware Sweeper - "Protects the user from malicious malware and monitors the sanity of the running programs"
Malware-Wipe
Malware remover - not recommended, see here
Malware-Wiped
Malware remover - not recommended, see here
MalwareAlarm
MalwareAlarm malware remover - not recommended, see here
MalwareBot
MalwareBot spyware remover - not recommended, see here
MalwareCrush
MalwareCrush spyware remover - not recommended, see here
MalwareStopper
MalwareStopper malware remover - not recommended, see here
MalwareWipe
MalwareWipe malware remover - not recommended, see here
MalwareWiped
MalwareWiped malware remover - not recommended, see here
MalwareWiper
MalwareWiper malware remover - not recommended, see here
Mamutu Guard
Manatu from Emsi Software - behaviour based protection that "recognizes new and unknown Trojans, Worms and Viruses (Zero-Day attacks), without daily updates"
ManageDesk Lite
ManageDesk Lite from Managebytes Desktop management software. Each desktop is a separate working space for you to use
ManageProtocolCtrl
Added by the LOOKSKY.B TROJAN!
manager
Detected by Kaspersky as the SMALL.CVT TROJAN!
Manager Monitor
MindStorm AnalyzerPro from Secure Associates. "A security management tool for customers easy to manage report and analyze security events across heterogeneous security devices"
Managment Service
Added by the RBOT.BIS TROJAN!
Mania Win Restore
Pinball Mania for Windows from 21st Century Entertainment LTD (1995). Runs briefly at start-up then terminates. Available via Start -> Programs
manrotce
Added by unidentified malware
Mantis
Added by the MANTIBE VIRUS!
MapEDC
Added by the WaveRevenue-McBoo TROJAN!
MapiDrv
Added by the MIPSIV TROJAN!
mapisvc32
Added by the KX VIRUS and also recognised by Symantec as FPAI adware
mark the service
Added by the SDBOT.APP WORM!
Martini
Added by a variant of the SDBOT WORM!
Mascro soft SDK updates2
Added by the SDBOT.BXM WORM!
maskrider
Added by the SOLOW-G WORM!
masqform.exe
PureEdge Viewer - provides automation framework to manage and deploy XML forms-based processes for e-business and e-government systems. PureEdge was taken over by IBM (see here) and the product became Workplace Forms
Mass storage check registry
Used with a USB based smartmedia card reader
Master
Added by the IRCBOT.RB TROJAN!
Master Card Updaate 32
Added by a variant of the RBOT WORM!
Master Volume Spy
Volume control for the Gateway Destination "DestiVu" media interface
MasterBoot Switch
Added by a variant of the RBOT WORM!
Matador
MailFrontier - anti-spam application
Matador
MailFrontier Desktop (Matador) email spam blocker software
Matrix Screen Locker
Matrix Screen Locker is a system tray application that allows for quick and secure PC lock when you wish. The screen does a "matrix style" scrolling characters effect when the lock is running
MatrixScreen
Added by the MATRIXSCREEN TROJAN!
MatrixScreenSaver
Unidentified malware
Matrox Color Control
For Matrox video cards. Quick access to changing colors
Matrox Control Center
For Matrox video cards. Quick access to settings
Matrox Diagnostic
For Matrox video cards. Quick access to diagnostics
Matrox Powerdesk
For Matrox video cards. Quick access to tweak your card to your liking
Matrox PowerDesk 8
"Matrox PowerDesk software provides extra multi-display desktop management controls"
Matrox QuickDesk
For Matrox video cards. Quick access to tweak your card to your liking
MAV_check
WinAntiVirus Pro 2007 misleading virus software - not recommended, see here
MaxAlerts
Bonzi MaxALERT - spyware
MaxBackSchedule
Backup scheduler for the Maxtor (now Seagate) range of external hard drives - part of Maxtor Quick Start
MaxBlastMonitor
Maxblast hard drive utility for Maxtor (Seagate) drives
MaxtorCombo
Required to be able to use the Maxtor OneTouch button on your external Maxtor harddrive. It is used to start up backup software (Retrospect)
MaxtorOneTouch
Maxtor OneTouch Hard Drives/OneTouch Family hard disk backup software
MaxtorReg
Part of SYSagent - small utility for retrieving all the hardware and software information required by anyone administering a machine and/or the network it's a part of
MayaPan
Audiotrak Maya soundcard driver
mb2np
Added by the IRCBOT.TJ WORM!
MbarInstall
Detected by PCTools as Mirar adware. See here
MBkLogOnHook
Related to McAfee Backup from Network Associates
MBM 4
Motherboard Monitor 4 - only needed if you overclock your system and want to keep a check on system temperatures/voltages/etc. Available via Start -> Programs
MBM 5
Motherboard Monitor 5 - only needed if you overclock your system and want to keep a check on system temperatures/voltages/etc. Available via Start -> Programs
MBMon
Creative Filter AudioControlMB Module - related to the Creative Audigy line of sound cards. What does it do and is it required?
MBNet
MBNet (Portugal) Credit Card Processing software
MBProbe
MBProbe - only needed if you overclock your system and want to keep a check on system temperatures/voltages/etc. Available via Start -> Programs
mbssm32
Reported as Micro Bill Systems foistware - but not according to the company themselves, see here
mbssm32
Detected by AVG Antispyware as the AGENT.CNM TROJAN!
MC
Added by the WINTRIM TROJAN!
MC
Added by the MAGICON.A TROJAN!
MC
Added by the SIMCSS TROJAN!
MC
Added by the WINTRIM_A TROJAN!
McAfee
Added by the NETSKY.AL WORM!
mcafee
Added by the CATCHER-B WORM!
Mcafee Anti Scan
Added by a variant of the RBOT WORM!
McAfee Antivirus
Added by a variant of the RBOT WORM!
Mcafee Antivirus Monitoring System326
Added by a variant of the SDBOT WORM!
Mcafee Antivirus Monitoring System32mn
Added by a variant of the RBOT WORM!
McAfee Antivirus Protection
Added by a variant of the RBOT WORM!
Mcafee Auto Protect
Added by the RBOT-UH WORM!
McAfee Backup
McAfee Backup from Networks Associates
McAfee Desktop Firewall Tray
McAfee Desktop Firewall
McAfee Firewall
Firewall bundled with McAfee VirusScan 6.*. Can also be listed as CPD_EXE
McAfee Guardian
McAfee's QuickClean, an offline version of the one in their online Clinic. Normally run offline and not needed. Incidentally, incorporates more cleanup programs than the likes of WinOptimizer and System Mechanic
McAfee Online virus Scanner
Added by the RBOT-GCV WORM! Not to be confused with AOL's Active Virus Shield (by Kaspersky)
McAfee Online Virus Scanner
Detected by Trend Micro as the IRCBOT.XV TROJAN! See here
McAfee QuickClean Imonitor
McAfee QuickClean 3.0 - removes internet clutter and unwanted programs
mcafee Software Intrenet
Added by the RBOT-ATR WORM! Note - this is not a valid McAfee program
McAfee Windows Protection
Added by a variant of the SPYBOT WORM!
McAfee Winguage
Part of McAfee Nuts & Bolts. "WinGuage is a dynamic reporting tool that constantly monitors your use of Windows and your applications, to alert you to potential problems before they become serious". Resource hog. Available via Start -> Programs
McAfee.InstantUpdate.Monitor
Instant Updater for McAfee's VirusScan, Internet Security, Quick Clean, Uninstaller and Firewall products. In the case of VirusScan leave it enabled unless you update manually on a regular basis
McAfeeFireTray
McAfee Desktop Firewall
McAfeeScanPlus
Added by the MEPCOD TROJAN! This trojan file does not belong to any McAfee Antivirus Software and is found in the Windows or Winnt folder
McAfeeUpdaterUI
Associated with McAfee Enterprise 7.0.0. - background process
McAfeeUpdaterUI
McAfee common updater user interface
McAfeeVirusScanService
From McAfee VirusScan version 5.x. Runs VirusScan System Tray (Vsstat.exe), WebScanX (Webscanx.exe), VirusScan System Scan (Vshwin32.exe) and VirusScan Console (Avconsol.exe) under one application
McAfeeWebscanX
From McAfee VirusScan up to version 4.x. Provides functionality for VShield Download Scan and Internet Filter modules. Enables internet scanning. Guards against malicious ActiveX programs, etc
Mcaffe Antivirus
Added by a variant of the SPYBOT WORM!
Mcaffee
Added by the RBOT-FDP WORM!
McAgentExe
From McAfee VirusScan On-line. The Agent is a red M icon that appears in the Windows system tray or Notification Area (if you're running Windows XP). If you don't see the agent icon, VirusScan Online may not be installed
Mcappins.exe
Used by McAfee Virusscan to perform product updates. When updates are available the program will download and install them automatically. Recommended to leave enabled
mceipww
Detected by Kaspersky as the ZHELATIN.EQ WORM! See here
MChanger
Media Changer - utility that allows you to change wallpapers, sounds, themes, etc
MCI USB Icon
MCI USB software used for managing a USB card reader
McLogLch_exe
Related to McAfee security suite. This is a non-essential program, but should not be disabled unless suspected to be causing problems
MCM3
ShopAtHome/SAHagent adware variant
McRegWiz
McAfee antivirus related. What does it do and is it required?
Mcrosoftr Update
Added by a variant of the RBOT WORM!
McShld9x
Part of McAfee's Virusscan Online. Must be enabled for scanning to work
MCTskShd
Part of McAfee SecurityCenter. Runs in the background controlling critcal updates and control antivirus related actions. This program is important for the stable and secure running of your computer
McUpdateExe
From McAfee VirusScan On-line. Automatically updates your virus definitions. Leave enabled unless you regularly update these definitions
McVsRte
Part of McAfee's SecurityCenter. Must remain checked but one user reports Windows glitches with no response from McAfee as to why
mcvsshld
McAfee VirusScan On-line. See also the McAgentExe entry
MCX Update
Added by the RBOT-AQH WORM!
MCX Updte
Added by the RBOT-ARP WORM!
MD IE Plugin
Marketdart spyware
MD IE Plugin
Adware
mdac_runonce
Associated with MS Data Access Components (MDAC). Sometimes left over after installation - not required. NOTE :- don't delete "runonce.exe".
MDDiskProtect
Part of MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
MDDiskProtect.exe
Part of MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
mdetect
Added by the SPABOT TROJAN!
MDGetStarted
MacDrive 7 from Mediafour Corporation - "enables anyone using Windows Vista, XP, and 2003 Server to seamlessly access Mac disks (HFS/HFS+) of all types, including CDs, DVDs, hard drives, floppy, Zip, Jaz, and more!"
MDGetStarted.exe
MacDrive 7 from Mediafour Corporation - "enables anyone using Windows Vista, XP, and 2003 Server to seamlessly access Mac disks (HFS/HFS+) of all types, including CDs, DVDs, hard drives, floppy, Zip, Jaz, and more!"
Mdm
Added by the WHITEHO VIRUS or TRAPPY WORM!
mdm
Added by the LYDRA-F TROJAN! Note - this is not the valid Machine Debug Manager which shares the same filename
MDM7
Used by developers for debugging. Those who have encountered it have unchecked it with no degradation in performance. May cause your computer to "hang" if you have MS Visual Studio installed and this disabled because it appears to take over error handling - hence the U recommendatioon. Can also be listed as Machine Debug Manager. See here to disable
Mdmdll
Added by the CRYPTER TROJAN!
Mdmdll32
Added by a variant of the CRYPTER.C TROJAN!
MDN
Added by the SPYBOT.JPB WORM!
MDN
Added by the RBOT.AQD WORM!
MDN
Added by the RBOT.AOA WORM!
MDNS
Detected by Symantec as a variant of the Mirar adware
mds.exe
Added by the MADS-A TROJAN!
MDSA Sentinel X
SentinelX spyware. Note - SentinelX is spyware that logs keystrokes. It also monitors and records Web sites visited and applications used. The risk can capture periodic screen shots and may be configured so as to block access to specific Web sites and chat rooms, must be manually installed. Note - this is not the legitimate smss.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "MDSA Software" subfolder of the Program Files folder
mdwmdmsp
Adware - detected by Kaspersky as the AGENT.AM TROJAN!
MECA
Meca cross-platform communications technology, branded messengers will connect with AOL, MSN, Yahoo!, and ICQ users
MedGS
PacerD_Media/Pacimedia.com adware
Media Access
WindUpdates MediaPass adware
Media Adapter
Added by the HANSAH-A WORM!
Media Card Companion Monitor
Monitor for Media Card Companion from ArcSoft. "Automates the tedious processes associated with downloading and sharing files from digital cameras, card readers, and other removable media"
Media Codec Update Service
Windows Essentials Codec Pack 1.0 is a collection of the most commonly needed video and audio codecs. This program allows keeps these codecs updated
Media Gateway
WindUpdates MediaPass adware
Media Load
Added by a unidentified WORM or TROJAN!
Media Manager Indexer
Part of MS Visual InterDev, Media Manager is an easy media file management system that works in conjunction with Windows Explorer. The Media Manager Indexer is a program that indexes all the information about your media files and puts it into a database
Media Pass
WindUpdates MediaPass adware
Media Pass
WindUpdates MediaPass adware
Media Player
Added by the FLDMEDIA-A TROJAN!
Media Player
Added by the AGOBOT-BM WORM!
Media Player
Added by the BANKER-BR TROJAN!
Media Player
Added by the BANKER.MW WORM!
Media Player Update
Added by a variant of the RBOT WORM!
Media Plug x.1.2
Added by the MULDROP.352 VIRUS!
Media Server
Added by a variant of the IRCBOT TROJAN!
Media Service
Added by the SPYBOT.EV WORM!
Media service
Added by the SDBOT.TF WORM!
Media service
Added by the RBOT.QV WORM!
Media service
Added by a variant of the AGOBOT/GAOBOT WORM!
Media Software UPdater
Added by the RBOT-ABE WORM!
Media Transfer Protocals
Added by a variant of the IRCBOT TROJAN!
Media X Services
Added by the RBOT.AUL WORM!
Media-XP-Service-Pack3
Added by the SDBOT-ACW WORM!
MEDIA32
Added by the PURSCAN-Z TROJAN!
MediaButtons
Supports the eject button on the front on the Dell Studio Hybrid desktop. If disabled, the user will have to eject the CD/DVD by opening My Computer, right-clicking on the drive and selecting "Eject" from the available options
MediaFace Integration
Fellowes Neato? cd label design software. "Launch NEATO's MediaFACE II label making software directly from the productname toolbar"
Mediafour Mac Volume Notifications
Part of MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
Mediafour MacDrive
MacDrive 7 & MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Version 6 is not Vista compatible but doesn "include support for striped Mac arrays created with ATTO ExpressStripe software."
Mediafour MacDrive
Part of MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
Mediafour MacDrive
MacDrive 7 from Mediafour Corporation - "enables anyone using Windows Vista, XP, and 2003 Server to seamlessly access Mac disks (HFS/HFS+) of all types, including CDs, DVDs, hard drives, floppy, Zip, Jaz, and more!"
Mediafour XPlay Tray Notification Icon
Mediafour Xplay - allows you to use an Apple iPod digital music player with a PC running Windows. If not used regularily start manually before connecting the iPod
Mediafour XPlay Tray Notification Icon
Xplay 2 from Mediafour Corporation - "expands what you can do with any iPod, including the iPhone and touch, and a Windows computer." No longer supported
MediafourGettingStartedWithMacDrive6
MacDrive 6 CrossStripe Edition from Mediafour Corporation - "a perfect way to share files between Mac OS and Windows." Unlike the standard version of MacDrive 7, this version is not Vista compatible but does "include support for striped Mac arrays created with ATTO ExpressStripe software."
MediaKey
Multimedia keyboard manager. Required if you use the multimedia keys
MediaLifeService
Related to MediaPlay Cordless Mouse from Logitech
MediaLoads
Medialoads adware
MediaLoads Installer
Medialoads adware
MediaMonitor
Installed by Smartdisk MVP CD burning software. Software will work fine without it
mediamotor.exe
Added by the AGENT-BY TROJAN!
MediaPath
Added by the GRUEL WORM!
MediaPath
Added by the GRUEL WORM!
MediaPipe P2P Loader
MediaPipe peer-to-peer file swapping program also reported as a hijacker
mediapluscash.exe
MediaGateway adware
MediaRing Talk
Media Ring Talk, voice recognition software, Resource hog. Available via Start -> Programs
MediaXPServicePack
Added by the SDBOT.CDT WORM!
media_manager
Mini-Player, IMESH related foistware
media_stub
Mini-Player, IMESH related foistware
MEDIC
Self-help support tool for an unidentified high-speed internet provider (provided by SupportSoft, Inc). Identifies and automatically fixes typical problems that may occur with your high-speed internet service
Medichi
Added by the VIRANTIX.B TROJAN!
Medichi2
Added by the VIRANTIX.B TROJAN!
MedionVFD
Related to Medion Display Information. What does it do and is it required?
Meeting Connection
Added by the PPDOOR-E TROJAN!
Meeting Connection
Added by the PPDOOR-D TROJAN!
Meeting Connection
Looks like a variant of the PPDOOR-E TROJAN!
MegaPanel
Homescan Internet Transporter - part of ACNielson Homescan. Recognizes when the ACNielsen Homescan Scanner is attached to the computer and allows it to transmit scanner information to ACNielsen
meidntpa
??
melg34
Added by an unidentified WORM or TROJAN - see here
melg3445
Added by a variant of the RBOT WORM!
mem32
Added by the AGENT-FWF WORM!
Members area
Premium rate adult content dialer
MemConfig
Added by the TAPLAK WORM!
Memento
Memento - simple app to keep text notes on your desktop
MemMonster
MemMonster - memory optimizer. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind
MemoKit
Memory optimizer. It loads from startup group and it goes off as soon as the program (memokit.exe) is loaded in the System Tray. Mk.exe does not run while the memokit.exe is running. Probably loads a flash screen at startup and shutdown that stays on screen less than 5 seconds and gives you a button to push to purchase the full version. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind
memory
Added by the NOPIR.C WORM!
Memory Allocation Host
Detected by Avast as a variant of the IRCBOT-CHZ WORM!
Memory Allocation Server
Added by an unidentified malware
Memory Allocation Services
Detected by Trend Micro as the IRCBOT.FC TROJAN! See here
Memory Check
Added by the KILLAV.C TROJAN!
Memory manager
Added by the MANCSYN TROJAN!
Memory Manager
Added by the DELF-JJ TROJAN!
Memory relocation service
Added by the RELFEERWORM!
Memory Service
Added by the RBOT.GEN WORM!
Memory Stick Monitor
Used with the Sony floppy disk adapter for memory sticks, showing if there is a stick in the computer
Memory Stick Monitor
Sony/SmartDisk memorystick-floppydisk-adapter software - allows you to read memorysticks in a normal floppydrive
Memory Watcher
MemoryWatcher spyware
Memory+
Memory optimizer. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind
MemoryBoost
MemoryBoost - memory optimizing program made by Tenebril Inc. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/ME. See this article and make up your own mind
MemoryCardManager
Memory Card Manager - for removable memory cards found on Dell or Lexmark photo printers
MemoryManager
Virtumondo adware related
MemoryMeter
Autoinstalling spyware by Total Velocity
MemoryZipperPlus
Memory Zipper Plus - "optimizes the memory management of your system and boost-up its performance amazingly!"
memreader.exe
Added by the AGOBOT-TY WORM!
MEMreaload
Added by the LAZAR TROJAN!
MemScanner
Part of Enigma SpyHunter - not recommended, see note
MemTurbo
MemTurbo memory optimizer. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind
MenuSnap
MenuSnap from Rietta Solutions. Utility that re-orders your Start Menu items alphabetically. You may not want this utility if you're able to do this manually by selecting Start -> Programs and right-clicking and choosing "Sort by Name" if availabe
Mercora
Mercora MusicSearch "Search, find and listen to music on the world's largest jukebox, built by people just like you". Note - if you subscribe make sure you read the Privacy Policy
Message Queuing
Added by the FREEFORS TROJAN!
MessagerStarter Freeserve
Freeserve Messenger
Message_Blocker
Message Blocker - "prevents Outlook Express from loading images or other content from the internet without confirmation, as well as executing scripts when displaying a formatted email message"
Messanger
Added by the RBOT.CKI WORM!
Messanger
Added by the TACTSLAY.C TROJAN!
Messanger
Added by the TACTSLAY.C TROJAN!
Messanger
Added by the TACTSLAY.C TROJAN!
Messanger
Added by the TACTSLAY.C TROJAN!
Messenger
Added by the KUTEX TROJAN!
Messenger
Added by the SDBOT.BGE WORM!
Messenger
Added by a variant of the RBOT WORM!
Messenger
AntiVirus Quick Heal - virus protection
Messenger Block
Added by the PATOO WORM!
Messenger Journel
Detected by Trend Micro as the RBOT.FKT WORM! See here
Messenger Protocol
Added by the SDBOT-ACC WORM!
Messenger Service
Added by the SDBOT-ZB WORM!
Messenger Service
Added by the JLOK-A WORM!
Messenger Service Updater
Added by the MYTOB.GC WORM!
Messenger Sharing Control
Added by a variant of the IRCBOT TROJAN! See here
Messenger start-up
Added by the GRAMOS WORM!
Messenger6
Added by the INZAE.B WORM!
MessengerDiscovery
MessengerDiscovery is a MSN Messenger add-on - adding over 70 new features. Now superseeded by MessengerDiscovery Live - with support added for Windows Live
MessengerPlus
MessengerPlus - third party MSN Messenger extension that adds a number of useful features. Bundles the hard to remove C2Media LOP adware. The software does offer you a choice during setup - make sure to install MessengerPlus WITHOUT that "sponsor program"!
MessengerPlus2
MessengerPlus - third party MSN Messenger extension that adds a number of useful features. Bundles the hard to remove C2Media LOP adware. The software does offer you a choice during setup - make sure to install MessengerPlus WITHOUT that "sponsor program"!
MessengerPlus3
MessengerPlus - third party MSN Messenger extension that adds a number of useful features. Bundles the hard to remove C2Media LOP adware. The software does offer you a choice during setup - make sure to install MessengerPlus WITHOUT that "sponsor program"!
messengerskinner
Messenger Skinner malware - uses a rootkit to hide executable files
messnger
Added by the DELODER WORM!
messnger
Added by the DELODER.A WORM!
Metacafe
Metacafe - video sharing on the web. Note - if you subscribe make sure you read the Privacy Policy
MeTaLRoCk (irc.musirc.com) has sex with printers
Added by the RANDEX.Q WORM!
MeuPrograma
Added by the RULAND.A WORM!
Mfc**.exe [* = random char]
CoolWebSearch/HomeSearch adware - for examples, see this log
Mfc**32.exe [* = random char]
CoolWebSearch/HomeSearch adware - for examples, see this log
mfgboot
??
mFilter
Added by the CLICKER-AG TROJAN!
mfin32
MyFreeInternetUpdate - adware downloader
MFP Server Agent
Multi Function Printer (MFP) Server Agent for Belkin's Wirless G All-in-One Print Server and ZyXEL's NPS-520
MGA Hook
MATROX Graphics card related. What does it do and is it required?
MGA Quickdesk
For Matrox video cards. Quick access to tweak your card to your liking
Mgabg
Matrox BIOS Guard - monitors a Matrox card's BIOS, and will reflash it when needed. Cards like the G400 have a nasty habit of losing their BIOS, especially on poor power supplies. If you make an emergency BIOS disk with the utility in their BIOS package, you can disable Mgabg.exe and just use the crash disk if/when needed
mgavctrl
McAfee's Virus Scan Online
mgavctrl
McAfee's Virus Scan Online
mgavrtclexe
McAfee's Virus Scan Online
mgavrtclexe
McAfee's Virus Scan Online
MGA_CD_Install
Matrox Millennium video driver. Not required once drivers installed
mgmtapi
Unidentified malware
MHDOGStart
Added by an unidentified VIRUS, WORM or TROJAN! A possibility is a trojan known as PENIS
MHINIT
Part of the Cybermedia Clean Sweep package
mhs3
Added by the PWS-ALZ TROJAN!
Mi7sft sdce
Added by the RBOT.CWG WORM!
Mi7sft sdce
Added by the RBOT.DMU WORM!
Mi7sft sdce
Added by the RBOT.ELC WORM!
Mickey Mouse Cereal
Added by the RANKY.Q TROJAN!
Micosoft Data Core
Added by the IRCBOT.BK WORM!
Micosoft Data Core stuff
Added by the RBOT.FZA WORM!
Micr Update
Added by the SDBOT.NP WORM!
Micr Update System
Added by the SDBOT.YS WORM!
Micr0s0ft Ms D0s
Added by the RBOT-AON WORM!
Micr0s0ft Upd4t4z
Added by the RBOT.ALF WORM!
Micrcoft Exploerer
Added by the RBOT-AKK WORM!
Micrcoft Exploerer
Added by the RBOT-ASL WORM!
Micrcoft Updat
Added by the RBOT-AIB WORM!
Micrcoft Updat
Added by the RBOT-AJM WORM!
Micrcoft Updat
Added by the RBOT-ANA WORM!
Micrcsoft Certificate Services
Added by the RBOT-FWV WORM!
Micro CRC Protocol
Added by a variant of the SDBOT WORM!
Micro Office
Added by the BANCBAN-QC TROJAN!
Micro Process
Added by an unidentified WORM or TROJAN!
Micro Update
Added by the RBOT-ER WORM!
Microangelo Desktop
Using MicroAngelo On Display, you can easily select the icon images that you prefer rather than the default icons displayed by Windows. On Display provides a consistent and elegant method to customize the icon display for almost every icon on your system
microAttuneDownload
Application Launcher, MS Office application. USR (US Robotics) modem auto updater. May be a sub-set of Attune
MicroBrew
Related to Bluebeam PDF printer support. Prints AutoCAD .dwgs to PDF's
MicroCQ0
Added by the LINEAGE-AK TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %ProgramFiles%
MicroDialler
Part of the Freeserve Connection Kit - changes the dial-up for Freeserve AnyTime if access problems are encountered
MicroedSoft Toolbar
Added by the RBOT-ALN WORM!
Microfinder lptt01
RapidBlaster variant (in a "mcf" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
Microfinder ml097e
RapidBlaster variant (in a "mcf" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
Microfot Update
Added by a variant of the RBOT WORM!
Microft Exploerer
Added by the RBOT-AMD WORM!
Microft Update 32
Added by the RBOT-AQS WORM!
MicroLoad
Added by the DARBY WORM!
Micromedia Flash Update
Added by a variant of the SDBOT WORM!
Micromedia Flash Update
Added by the RBOT-GAB WORM!
Microoft Timing
Added by a variant of the RBOT WORM!
MICROSFT ANTIVIRUS UPDATE SUPPORT
Added by the RBOT-AQA WORM!
MICROSFT ANTIVIRUS UPDATE SUPPORT
Added by the RBOT-APZ WORM!
Microsft Conf 32
Added by the RBOT.EYA WORM!
Microsft Confige 32
Added by the RBOT.CLC WORM!
Microsft Corporation Version 2001.12.4414
Added by a variant of the SDBOT TROJAN!
Microsft Corporation Version 2002.12.2414
Added by a variant of the SLAPER TROJAN!
MICROSFT MX UPDATE SUPPORT
Added by the RBOT-AUZ WORM!
MICROSFT MX UPDATE SUPPORT
Added by the IRCBOT-FD WORM!
MICROSFT RAMA UPDATE SUPPORT
Added by the RBOT-ASM or RBOT-AUW WORMS!
MICROSFT RAMA UPDATE SUPPORT
Added by the RBOT-AWJ WORM!
MICROSFT RAMA UPDATE SUPPORT
Added by the RBOT-AUJ WORM!
Microsft Remote Procedure Daemon
Added by a variant of the IRCBOT BACKDOOR!
Microsft Security Monitor Process
Added by a variant of the SDBOT WORM!
Microsft Security Monitor Process
Added by a variant of the SDBOT WORM!
Microsft Security Monitor Process
Added by a variant of the RBOT-FUB WORM!
Microsft Updtes
Added by a variant of the SDBOT WORM!
Microsft Upgraed
Added by a variant of the SDBOT WORM!
Microsft Windows Adapter 5.1.3013
Detected by Kaspersky as the SMALL.HIT TROJAN! See here
microsft windows updates
Added by a variant of the TOXBOT/CODBOT WORM!
Microsof Value
Added by a variant of the RBOT WORM!
Microsof Windows Host
Added by the RBOT.ADY WORM!
Microsof Winlog Host
Added by the RBOT.XC WORM!
Microsofot x386 System Monitor
Added by the WOOTBOT.M WORM!
Microsoft
Detected by Kaspersky as the RBOT.FEH BACKDOOR! See here
Microsoft
Detected by Kaspersky as the RBOT.CIJ BACKDOOR! See here
Microsoft
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft
Added by a variant of the IRCBOT BACKDOOR!
Microsoft
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft
Detected by Kaspersky as the AGENT.KT TROJAN! See here
Microsoft
Detected by Kaspersky as the RBOT.GHZ BACKDOOR! See here
microsoft
Added by the ASTEF or RESPAN WORMS! Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup!
microsoft
HTA file which creates an executable on the hard drive which subsequently proceeds to download files from a malware site!
Microsoft
Added by the DARKMOON TROJAN!
Microsoft
Added by the QQROB-R TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
Microsoft
Added by the ADUYO-A TROJAN! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder
Microsoft
Added by the QQROB-AQ TROJAN! Note - this is not the legitimate wuauclt.exe process, which should not appear in Msconfig/Startup!
Microsoft
Added by a variant of the SDBOT WORM!
Microsoft
Added by the AGOBOT-AHT WORM!
Microsoft
Added by the RBOT-FZF WORM!
Microsoft
Added by the RBOT-GAA WORM!
Microsoft
Added by the RBOT-GAW WORM!
Microsoft
Added by the AGOBOT-AHU WORM!
Microsoft
Added by a variant of the SDBOT WORM!
Microsoft
Added by an unidentified WORM or TROJAN!
Microsoft
Added by the RBOT-GHO WORM!
Microsoft
Added by the RBOT-GGU WORM!
Microsoft
Added by a variant of the RBOT WORM!
Microsoft
Added by the RBOT-GHP WORM!
Microsoft
Added by the SDBOT-DCZ WORM!
Microsoft
Added by the RBOT-GRY WORM! Note - this is not the popular AOL Instant Messenger utility
Microsoft
Added by the IRCBOT-WG TROJAN!
Microsoft
Added by the RBOT-GRT WORM!
Microsoft
Added by the RBOT-GLW WORM!
Microsoft
Added by the RBOT-GOS WORM!
Microsoft
Added by the RBOT-GSJ WORM!
Microsoft
Added by the RBOT-GPL WORM!
Microsoft
Added by the RBOT-GTL WORM!
Microsoft
Detected by Kaspersky as the RBOT.DYU TROJAN! See here
Microsoft
Added by a variant of the RBOT WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft
Added by a variant of the IRCBOT BACKDOOR!
Microsoft
Detected by Kaspersky as the RBOT.ETY BACKDOOR! See here
Microsoft
Added by a variant of the RBOT WORM!
Microsoft Associates, Inc.
Added by the LOVGATE.Z WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
Microsoft (C) HTML Application host
Added by the RBOT-YB WORM!
Microsoft (R) Windows Configuration Backup Service
Added by the RANKY.X TROJAN! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in either a "config", "mapping" or "security" subfolder of the Winnt or Windows folder
Microsoft (R) Windows DLL Loader
Added by the RANKY.W TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in the Windows folder (98ME) or the System32 folder(NT2000XP). This file is located in a "dll" subfolder of the Winnt or Windows folder
Microsoft (R) Windows Network Latency Controller
Added by a generic password stealer TROJAN - see here
Microsoft (R) Windows Network Latency Controller
Added by a generic password stealer TROJAN - see here
Microsoft (R) Windows Network Latency Controller
Added by a generic password stealer TROJAN - see here
Microsoft (R) Windows Network Security Management Service
Added by the RANKY.LC TROJAN!
Microsoft (R) Windows Protected Content Restoration Service
Added by the AGENT.AGV TROJAN!
Microsoft (R) Windows Protocol Deployment Manager
Added by an unidentified WORM or TROJAN!
Microsoft (R) Windows TCP/IP Socket Driver
Added by the PROXY-DD TROJAN!
Microsoft (R) Windows TCP/IP Socket Layer
Added by the RBOT.ARM WORM! Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\winsock
Microsoft (R) Windows Update Service
Added by a variant of the SDBOT WORM! Note - this is not the legitimate wuauclt.exe process, which should not appear in Msconfig/Startup!
Microsoft (R) Windows Vista/NT Runtime Compatibility Service
Added by the RANKY.X TROJAN!
Microsoft .NET Confingurator
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft 16Bit Update
Added by the RBOT.CZ WORM!
Microsoft 64 Bit Runtime Updater
Added by a variant of the RBOT WORM!
Microsoft ActiveX Debugger NT
Added by the BANCOS-DO TROJAN!
Microsoft Admin Protocal
Added by a variant of the RBOT WORM!
Microsoft ADservice
Added by a variant of the RBOT WORM!
Microsoft Agent
Added by the KEYLOG-AG TROJAN!
Microsoft Agent
Added by the VB-DRO WORM!
Microsoft ALG32 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft ALGXP Protocol
Added by a variant of the SDBOT WORM!
Microsoft all
Wopla.ac malware variant
Microsoft Announcement Listener
MS WebTV for Windows. Used to display TV on your PC via a compatible video card with in-built tuner (such as ATI All-In-Wonder). If you don't use it - uninstall it
Microsoft Ansti Update
Added by the RBOT-LE WORM!
Microsoft Anti Virus Controller
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Anti Virus Controller
Detected by Kaspersky as the SDBOT.EPW BACKDOOR! See here
Microsoft Anti-Spy
Added by a variant of the SDBOT WORM!
Microsoft AntiSpyware
Added by the AHKER.J WORM!
Microsoft AntiSpyware
Added by the IRCBOT.GEN WORM!
Microsoft AOL Instant Messenger
Added by the RBOT-AAI WORM!
Microsoft AOL32 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft Application Center
Added by a variant of the RBOT WORM!
Microsoft Application Manager
Added by the BROPIA-AE TROJAN!
Microsoft AUT Update
Added by the RBOT-X WORM!
Microsoft AUT Update
Added by the RBOT.EB WORM!
Microsoft Authority Service
Added by the KALEL-D WORM! Note - this is not the legitimate lsass.exe process, which should not appear in Msconfig/Startup!
Microsoft auto update
Added by the BMBOT TROJAN!
Microsoft Auto Update
Added by the RBOT.GY WORM!
Microsoft auto update
Added by the CULT-B TROJAN! Note - this is not the legitimate wuauclt.exe process, which should not appear in Msconfig/Startup!
Microsoft Automatic Update Serivce
Added by the RBOT-AOB WORM!
Microsoft Automatic Updater
Added by the RBOT-SG WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft AutoUpdater
Added by the RBOT.QG WORM!
Microsoft Bool Value
Added by a variant of the RBOT WORM!
Microsoft boot system cfg32
Added by the BROPIA.R WORM!
Microsoft Broadband Networking
Microsoft Broadband Networking Tray Application
Microsoft Browser Services
Added by a variant of the IRCBOT TROJAN!
Microsoft Browser Services
Added by a variant of the IRCBOT TROJAN!
Microsoft Cab Manager
Affilred adware
Microsoft Cab Manager
Added by the DELF-JJ TROJAN!
Microsoft Calculator
Added by a variant of the IRCBOT TROJAN!
Microsoft checker
Added by a variant of the SDBOT WORM!
Microsoft Client
Added by the RBOT-AND WORM!
Microsoft Client
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Client Pc
Added by the RBOT-AQM WORM!
Microsoft Client/Server Runtime Server Subsystem
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Client/Server Runtime Server Subsystem
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Command Line
Added by a variant of the RBOT WORM!
Microsoft Conf Ldr
Added by a variant of the SDBOT TROJAN!
Microsoft ConfgKeys
Added by the RBOT-ARX WORM!
Microsoft Config
Added by the RBOT.PV WORM!
Microsoft Config
Added by the RBOT-LG WORM!
Microsoft Config 32
Reported as the MSCONFIGX32 TROJAN! Possible Rbot variant
Microsoft Config 32bit
Added by the RBOT-Z WORM!
Microsoft Config File
Added by the KILLFILES.GR TROJAN! This is malware that will attempt to delete all system dlls!
Microsoft Config Loader
Added by the AGOBOT.XX WORM!
Microsoft Config Loader
Added by a variant of the RBOT WORM!
Microsoft Configoration Service
Added by the RBOT-ETT WORM!
Microsoft Configs 32
Added by a variant of the SDBOT WORM!
Microsoft Configuration 35
Added by an unidentified TROJAN!
Microsoft Configure 32
Added by a variant of the GAOBOT/AGOBOT WORM!
Microsoft Connection Manager Monitor
Added by the RBOT-AKV WORM!
Microsoft Control Center
Added by the RBOT-VX WORM!
Microsoft Core Support
Added by the RBOT-ANR WORM!
Microsoft Core Support
Added by a variant of the RBOT TROJAN!
Microsoft Corp SQL Certificates
Added by the ZYBOT-C WORM!
Microsoft Corp SSL Certificates
Added by the RBOT-GCZ WORM!
Microsoft Corp TLS Certificates
Added by the RBOT-GAC WORM!
Microsoft Corp Updates
Added by the RBOT-AUU WORM!
Microsoft Corporaticn SQL Handler
Added by a variant of the RBOT WORM!
Microsoft Corporation
Added by various VIRUSES, WORMS & TROJANS!
Microsoft Corporation
Added by the RBOT-AOD WORM!
Microsoft Corporation Svchost Service
Added by a variant of the SDBOT WORM! See here
Microsoft Corporation Svchost Service
Added by the AGENT.MAB TROJAN!
Microsoft Corporation SYM monitor
Added by the RBOT-GDB WORM!
Microsoft CP Web Manager
Added by the IRCBOT.HP TROJAN!
Microsoft CPU Over Heat Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft CPXP Protocol
Added by the RBOT.ATP WORM!
Microsoft Critical Services
Added by the AGOBOT-AJA WORM!
Microsoft Crs Fix Serv
Added by the SDBOT.BWF WORM!
Microsoft CRT Monitor Manager
Detected by Trend Micro as the ROBOTON.A WORM! See here
Microsoft CSRSS Service
Added by the RBOT-BPT WORM!
Microsoft CSRSS32 Protocol
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft CSRSS386 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft Cvrt
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft Data Helper
Malware, possibly a variant of the LINST TROJAN
Microsoft Data Machine
Added by a variant of the RBOT WORM!
Microsoft Database Handler
Added by the RANDEX.AX WORM!
Microsoft Datalog Application
Added by a variant of the SDBOT WORM!
Microsoft DDE Control
Added by a variant of the SDBOT WORM!
Microsoft DDEs Control
Added by the RBOT-AMU WORM!
Microsoft Debug Service
Added by a variant of the RBOT WORM!
Microsoft Decryption Technology
Added by the SPYBOT-DG WORM!
Microsoft Desktop Manager
Added by a variant of the RBOT WORM!
Microsoft Dev
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Development Debugger
Added by a variant of the RBOT WORM!
Microsoft Development Services
Added by the RBOT-FWS WORM!
Microsoft Device Manager
Added by the LATEDA.B TROJAN!
Microsoft Device Manager
Detected by Kaspersky as the AGENT.BMQ TROJAN! See here
Microsoft Device Manager
Added by the IRCBOT-YH TROJAN!
Microsoft Diagnostic
Added by the ACEBOT TROJAN!
Microsoft Diagnostic
Added by the RBOT-UC WORM!
Microsoft Digital Clock
Added by the NACKBOT-D WORM!
Microsoft Digital Cryptors
Added by the SDBOT.LM WORM!
Microsoft DirectX
Added by the DINFOR WORM!
Microsoft DirectX
Added by a variant of the RBOT WORM!
Microsoft DirectX
Added by the SDBOT.CN WORM!
Microsoft DirectX
Added by the SDBOT.MY WORM!
Microsoft DirectX
Added by the SDBOT.MD WORM!
Microsoft Directx
Added by the SDBOT-BXF WORM! Note - disables autostart for the SharedAccess service and deactivates the Microsoft Internet Connection Firewall (ICF)
Microsoft Directx click
Added by a variant of the RBOT-GHT WORM!
Microsoft Directx clicks
Added by the RBOT-GHT WORM!
Microsoft Directx push
Added by a variant of the RBOT-GHT WORM!
Microsoft Directxsp
Added by a variant of the RBOT-GHT WORM!
Microsoft Directxspnew
Added by a variant of the RBOT-GHT WORM!
Microsoft DirktorWin
Added by the SPYBOT.GEN3 TROJAN!
Microsoft Disk Scanner
Added by the WOOTBOT.DT WORM!
Microsoft DLL
Added by the RBOT-AUG WORM!
Microsoft Dll
Added by the RBOT-GRG WORM!
Microsoft DLL Authentification
Added by a variant of the IRCBOT TROJAN!
Microsoft DLL Extensions
Added by the RBOT-ADV WORM!
Microsoft dll Host Service
Added by a variant of the SDBOT WORM!
Microsoft DLL Host Service
Added by a variant of the IRCBOT TROJAN!
Microsoft DLL Host Service
Added by the AGENT.EAK TROJAN!
Microsoft dll Host Service
Detected by Kaspersky as the RBOT.BMS WORM! See here. Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup!
Microsoft DLL Library
Added by the ATNAS.A WORM!
Microsoft Dll Management
Added by the RBOT-MT WORM!
Microsoft Dll Manager
Detected by Trend Micro as the SHEUR.LH TROJAN! See here
Microsoft DLL Monitor
Detected by Trend Micro as the AGENT.WP WORM! See here
Microsoft DLL Monitor
Added by a variant of the IRCBOT TROJAN!
Microsoft DLL Monitor
Added by a variant of the IRCBOT TROJAN!
Microsoft Dll Printer Manager
Added by the SDBOT.BIH WORM!
Microsoft DLL Service
Detected by Trend Micro as the RCBOT.OX TROJAN! See here
Microsoft DLL Service
Added by a variant of the SPYBOT WORM!
Microsoft DLL Source
Added by a variant of the IRCBOT TROJAN!
Microsoft DLL Verifier
Added by the RBOT-AED WORM!
Microsoft DLL Verifier
Added by the RBOT-AOC WORM!
Microsoft DLL Verifier
Added by the RBOT-ATK WORM!
Microsoft DLL Verifier
Added by the SDBOT.EAH WORM!
Microsoft DLL Verifier
Added by the SDBOT.AAD WORM!
Microsoft DLLSet32
Added by the RBOT.OZ WORM!
Microsoft DNS Query
Added by a variant of the WOOTBOT WORM!
Microsoft DNSx
Added by the DELBOT-AI WORM!
Microsoft Document
Added by the SDBOT-RQ WORM!
Microsoft Domain Controller
Added by the NUGACHE.A WORM!
Microsoft Driver
Added by a variant of the RBOT WORM!
Microsoft Driver Control
Added by the SDBOT.FW WORM!
Microsoft Driver Manager
Added by the FORBOT-EZ WORM!
Microsoft driver update
Added by the SDBOT.BL WORM!
Microsoft Drivers
Added by a variant of the SDBOT WORM!
Microsoft ErgoPack
Added by the RBOT-RI WORM!
Microsoft EV32 Service
Added by a variant of the RBOT WORM!
Microsoft Event Engine
Added by the RBOT-XV WORM!
Microsoft Excel
Added by the RBOT-TQ WORM!
Microsoft Excele
Detected by Kaspersky as the AGENT.XFO TROJAN! See here
Microsoft Excell
Added by the RBOT-QH WORM!
Microsoft Executing
Added by the AGOBOT.UV WORM!
Microsoft Explorer
Added by the RBOT-VR WORM!
Microsoft Explorer
Added by the RBOT-ADH WORM!
Microsoft Explorer
Added by the SDBOT-ACX WORM!
Microsoft Explorer
Added by the POEBOT-LY WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft Explorer Service
Detected by Kaspersky as the IRCBOT.AYB TROJAN! See here
Microsoft explorer Update
Added by an unidentified WORM or TROJAN!
Microsoft Explorer2
Added by the IRCBOT.BS TROJAN!
Microsoft Explorer2
Added by the RANDEX.AA WORM!
Microsoft Explorer2
Added by the SDBOT.EV WORM!
Microsoft EXPLOREXP Protocol
Added by a variant of the SPYBOT WORM!
Microsoft Features
Added by the RBOT.HO WORM!
Microsoft Features
Added by a variant of the RBOT WORM!
Microsoft File Demand Manager
Added by a variant of the RBOT WORM!
Microsoft Find Fast
Complete utter waste of space! Part of MS Office - searches disk drives for Office file types and creates an index to make opening them easier
Microsoft Firewall
Added by the RBOT-MC WORM!
MICROSOFT FIREWALL CLIENT
MS Internet Security and Acceleration Server - see here
Microsoft FixUp
Added by the RBOT.DWK WORM!
Microsoft FixUp
Added by a variant of the SDBOT WORM!
Microsoft Games
Added by the SPYBOT.AHQ WORM!
Microsoft Generic Update Manager
Added by the RBOT-AWC TROJAN!
Microsoft Genetic Procress
Added by a variant of the SDBOT WORM!
Microsoft Genuine Logon
Added by the IRCBOT-XH WORM!
Microsoft Genuine Logon
Added by the SDBOT.EXT WORM! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder
MicroSoft Getway Dire
Detected by Trend Micro as the IRCBRUTE.AM WORM! See here
MicroSoft Getway mqbol
Detected by Trend Micro as the RBOT.GBA WORM! See here
Microsoft Gina V Encryption
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft Greetings Reminder
You really want to be reminded about somebody's birthday at the expense of resources?
Microsoft Greetings Reminders
Microsoft Home Publishing greetings reminder
Microsoft Greetings Workshop Reminder
You really want to be reminded about somebody's birthday at the expense of resources?
Microsoft HDCP for NT
Added by a variant of the RBOT WORM!
Microsoft HDCP for NT and Win9x
Added by a variant of the PEERBOT WORM!
Microsoft Help
Added by a variant of the SPYBOT WORM!
Microsoft Help Support
Addded by the KELVIR-BF WORM!
Microsoft Help SVC
Added by the SDBOT-PQ WORM!
Microsoft Help System
CoolWebSearch parasite variant
Microsoft Host Protocol
Added by a variant of the RBOT WORM!
Microsoft Hosting Service
Added by the RBOT.AEV WORM!
Microsoft Hosts Service
Added by a variant of the RBOT WORM!
microsoft hotmail monitor
Added by the MYTOB-FL WORM!
Microsoft hren1
Added by a variant of the AGENT.IWW TROJAN!
Microsoft Hyptertext Helper
Added by a variant of the SPYBOT WORM!
Microsoft IDCN
Added by an unidentified TROJAN!
Microsoft IE
Added by the FORBOT-AG WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
Microsoft IE Execute shell
Added by the ALADINZ.N TROJAN!
MicroSoft IE Sasser
Added by the SDBOT.MX WORM!
Microsoft IIS
Added by the FRANCETTE WORM!
Microsoft IIS
Added by the FRANCETTE-S WORM!
Microsoft Inc.
Added by the LOVGATE.E WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
Microsoft Inc.
Added by the LOVGATE.AO WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
Microsoft Incroporate
Added by the RBOT-ANF WORM!
Microsoft Inet Xp..
Added by the BLASTER.C WORM!
Microsoft Information Check
Added by the IRCBOT.AUH TROJAN!
Microsoft Initialization Service
Detected by Trend Micro as the IRCBOT.AXK BACKDOOR! See here
Microsoft Initialization Services
Added by the IRCBOT-ABO TROJAN!
Microsoft Install Shield Services
Added by the RBOT-FSH WORM!
Microsoft Installshield
Added by the AGOBOT-AHZ WORM!
Microsoft Instant Messenger
Added by the SPYBOTER.GEN TROJAN!
Microsoft Int Service
Added by a variant of the RBOT WORM!
Microsoft Intellitype Pro
Additional keyboard shortcuts on MS programmable keyboard
Microsoft Internal AntiVirus Systems
Added by the RBOT-AEV WORM!
Microsoft Internel Corporat
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Internel Corporat
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Internet
Added by a variant of the SPYBOT WORM!
Microsoft Internet
Added by the SDBOT-F WORM!
Microsoft Internet
Added by a variant of the SDBOT WORM!
Microsoft Internet Acceleration Utility
EasySearch adware
Microsoft Internet Acceleration Utility
Added by the AGENT-CX TROJAN!
Microsoft Internet Acceleration Utility
Added by the SMUTSRCH-A TROJAN!
Microsoft Internet Antivirus Protection
Detected by Kaspersky as the IRCBOT.BSK TROJAN!
Microsoft Internet Dumping Protocol
Detected by Kaspersky as the IRCBOT.BLL TROJAN! See here
Microsoft Internet Exp
Added by the RBOT-KX WORM!
Microsoft Internet Explorer
Added by the POEBOT-J WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
Microsoft Internet Explorer
Added by the SDBOT-XNRBOT.UZ WORM!
Microsoft Internet Explorer
Added by the BANCOS-DZ TROJAN!
Microsoft Internet Explorer
Added by a variant of the RBOT WORM!
Microsoft Internet Explorer
Added by the DLOADER-UD TROJAN!
Microsoft Internet Explorer
Added by the DELF-LN TROJAN!
Microsoft Internet Explorer
Added by the IRCBOT-AK TROJAN! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "drivers" subfolder
Microsoft Internet Explorer
Added by the RBOT-AMM WORM! Note - the executable is spelt with a lower case "L" rather than an lower or upper case "i" which is the case with Internet Explorer
Microsoft Internet Explorer Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft Internet Explorer Update
Detected by Trend Micro as the SHEUR.MH WORM! See here
Microsoft Internet Firewall
Detected by PCTools as the IRCBOT.BMD TROJAN! See here
Microsoft Internet Firewall Manager
Added by the RANDEX.AT WORM!
Microsoft Internet Firewall Update
Added by a variant of the IRCBOT TROJAN!
Microsoft Internet Services
Added by the RBOT.MS WORM!
Microsoft Internet Syncing
Detected by Kaspersky as the IRCBOT.BLL TROJAN! See here
Microsoft Intrenet Explorer
Added by the RBOT-API WORM!
Microsoft Intrenet Explorer
Added by the RBOT-AQU WORM!
Microsoft Intrenet Explorer
Added by the RBOT-ARO WORM!
Microsoft Intrenet Explorer
Added by the SDBOT-AFD WORM!
Microsoft IPC
Added by the NULLBOT TROJAN!
Microsoft IPC
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft IT Update
Added by the RBOT.GA WORM!
Microsoft IT Update
Added by a variant of the RBOT WORM!
Microsoft IT Update
Added by a variant of the RBOT WORM!
Microsoft IT Update
Added by a variant of the RBOT WORM!
Microsoft IT Update
Added by a variant of the RBOT WORM!
Microsoft IT Update
Added by the RBOT-DH WORM!
Microsoft IT Update
Added by the RBOT-SA WORM!
Microsoft IT Update
Added by the RBOT-GL WORM!
Microsoft IT Update
Added by the RBOT-FC WORM!
Microsoft IT Update
Added by a variant of the IRCBOT TROJAN!
Microsoft Java Virtual Machine
Added by a variant of the WOOTBOT WORM!
Microsoft Java Virtual Machine
Added by the FORBOT-DV WORM!
Microsoft Java Virtual Machine
Added by a variant of the SDBOT WORM!
Microsoft Java Virtual Machine
Added by a variant of the RBOT WORM!
Microsoft Java Windows Update
Added by the RBOT-DZ WORM!
Microsoft JavaVM
Added by the RBOT-JW WORM!
Microsoft Kernel
Added by the NETSKY.AE WORM!
Microsoft Keyboard Enhance 2.0.
Added by the BCKDR-QIL TROJAN!
Microsoft Keyboard Enhance V2.0
Detected by F-Prot as the DOWNLOADER2.AILI TROJAN!
Microsoft Kinetik Svc
Detected by Trend Micro as the AGENT.AGDO TROJAN! See here
Microsoft LAN32 Protocol
Added by the RBOT-SS WORM!
MicroSoft Legal Syst3m32
Detected by PCTools as the RBOT.UYL WORM! See here
Microsoft Lmhosting Service
Added by the RBOT-RC WORM!
Microsoft Locals 332
Added by the RBOT-KU WORM!
Microsoft Location Finder
Microsoft Location Finder "is a client-side application that turns a regular WiFi enabled laptop, Tablet or PC into a location determining device without the addition of any separate hardware"
Microsoft Login
Added by the RBOT-AJP WORM!
Microsoft LSA layer
Added by the RBOT-AKZ WORM!
Microsoft Lsass Center
Added by a variant of the SDBOT WORM!
Microsoft Lsass Center
Added by a variant of the RBOT WORM!
Microsoft Lsass Manager
Added by a variant of the SDBOT WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup!
Microsoft Lsass Service
Added by a variant of the IRCBOT TROJAN!
Microsoft LSASS386 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft LV
Added by the BDL TROJAN!
Microsoft Machine
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft machine
Added by a variant of the RBOT WORM!
Microsoft machine
Detected by Kaspersky as the RBOT.AEU TROJAN! See here. Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup!
Microsoft Machine Script
Added by the RBOT-CMH WORM!
Microsoft Macro Protection SubSsy
Added by the RBOT-KE WORM!
Microsoft Macro Protection Subsystems
Added by a variant of the SPYBOT WORM!
Microsoft Macro Protection Subsystems
Added by the RBOT.KN WORM!
Microsoft Manage Services
Detected by Trend Micro as the SLENFBOT.AD WORM! See here
Microsoft Manage Services
Detected by PCTools as the SLENFBOT.B WORM! See here
Microsoft Management
Added by the FORBOT-CZ WORM!
Microsoft Management Console
EasySearch adware
Microsoft Management Console
Added by the SMUTSRCH-A TROJAN!
Microsoft Management Console
Added by the DLOADR-AWD TROJAN!
Microsoft Manager
Added by the MYTOB.LF WORM!
Microsoft Map PC
Added by a variant of the RBOT WORM!
Microsoft Mapped PC
Added by a variant of the RBOT WORM!
Microsoft media
Added by a variant of the SPYBOT WORM!
Microsoft Media Manager
Added by the RBOT.EUZ WORM!
Microsoft Media player 9
Added by the RBOT-ADO WORM!
Microsoft media services
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft media services
Added by the RBOT.ZO WORM!
Microsoft MediaScope
Added by the RBOT-XU WORM!
Microsoft Memory Dumping Protocol
Detected by Kaspersky as the IRCBOT.BJK TROJAN! See here
Microsoft Memory Flow Cycle
Detected by PCTools as the IRCBOT.WAD TROJAN! See here
Microsoft Memory Flow Cycle
Detected by Kaspersky as the WAREZOV.AAK WORM! See here
Microsoft Message Machine
Added by the SPYBOT.BI WORM!
Microsoft Messenger Management Controls
Added by the RBOT-APA WORM!
Microsoft messenger sd
Added by an unidentified TROJAN!
Microsoft Messenger Service
Added by the RBOT.BOK WORM!
Microsoft Messenger XP
Added by the RBOT-ZP WORM!
Microsoft MicroP Protocol
Added by a variant of the RBOT WORM!
Microsoft Movie Maker
Added by the IRCBOT.C TROJAN! Note that this is not a valid Microsoft program
Microsoft MSGPLUS32 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft MSN 7 Services
Added by a variant of the IRCBOT BACKDOOR!
Microsoft MSN 7 Services
Added by a variant of the IRCBOT BACKDOOR!
Microsoft MSN Messenger
Added by a variant of the IRCBOT TROJAN!
Microsoft MSNGR32 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft msnseru
Added by the RBOT-APB WORM!
Microsoft MsnST
Added by a variant of the RBOT WORM!
Microsoft MSUPDATE
Added by the SXTB-A TROJAN!
Microsoft Neser Experience
Added by the RBOT-YH WORM!
Microsoft NetMeeting Associates, Inc.
Added by the LOVGATE.AB WORM!
Microsoft Netview
Added by the RANDEX.C WORM!
Microsoft Netview
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft Netview Component v5.1
Added by the RANDEX.F WORM!
Microsoft Network
Added by the MOCKBOT.A WORM!
Microsoft Network
Added by the SDBOT-AAI WORM!
Microsoft Network Daemon for Win32
Added by the SDBOT.R TROJAN!
Microsoft Network Host
Added by the SDBOT-AEN WORM!
Microsoft Network Neighbourhood
Added by the RBOT.DMN WORM!
Microsoft Network Services Controller
Added by the NANPY-A WORM!
Microsoft Networking Agent For SP2
Added by the SPYBOT.PEN WORM!
Microsoft Nod32 Service
Added by the RBOT.EJP WORM!
Microsoft Norotn Anti Virus
Added by the RBOT-GRO WORM!
Microsoft Norton Antivirus
Added by a variant of the IRCBOT TROJAN!
Microsoft NotePad
Added by a variant of the RBOT WORM!
Microsoft NT Drivers
Added by the SDBOT.AJN TROJAN!
Microsoft NT Update
Added by a variant of the RBOT WORM!
Microsoft Nvidia Video
Added by a variant of the SDBOT WORM!
Microsoft Office
Application which launches common MS Office components to help speed up the launch of Office programs. It's somewhat of a resource hog, and some users claim there's no difference with or without it but it usually isn't required. Note - if you make use of the Microsoft Office Shortcut Bar outside an office program this application will need to be enabled for it to show
Microsoft Office
Alternative shortcuts to the Start -> Programs way of running applications installed as part of MS Office. Some people prefer it but a better way is to create Desktop Shortcuts if you want access these programs quickly
Microsoft Office
Added by the GAOBOT.BB WORM!
Microsoft Office
Application which launches common MS Office components to help speed up the launch of Office programs. It's somewhat of a resource hog, and some users claim there's no difference with or without it but it usually isn't required. Note - if you make use of the Microsoft Office Shortcut Bar outside an office program this application will need to be enabled for it to show
Microsoft Office
Added by the SDBOT.MH WORM!
Microsoft Office
HTA file which creates an executable on the hard drive which subsequently proceeds to download files from a malware site!
Microsoft Office
Added by the RBOT-ZI WORM! - NOTE - do no confuse with the legitimate Msoicons.exe file described here. The latter wil not be listed among your startups!
Microsoft Office
Added by the RBOT-ZE WORM!
Microsoft Office
Added by the RBOT-YG WORM!
Microsoft Office
Added by a variant of the RBOT WORM!
Microsoft Office
Added by a variant of the RBOT WORM!
Microsoft Office
Added by the RAKER-C TROJAN!
Microsoft Office
Added by the BANKER-VF TROJAN!
Microsoft Office
Added by the AGENT-XK TROJAN!
Microsoft Office
Added by the GAOBOT.BB WORM!
Microsoft Office
Added by the IBOT-A TROJAN! Note - this is not the Machine Debug Manager (also known as MDM7) which shares the same filename
Microsoft Office Fast Cache
Part of MS Office 95 (v7.0). According to this it improves the performance. Most likely a predecessor of MS Find Fast and can be disabled
Microsoft Office Monitor
Added by the SDBOT-CZO WORM!
Microsoft Office Monitor
Added by the RBOT-GCY TROJAN!
Microsoft Office OneNote 2003 Quick Launch
ONENOTEM.EXE is a part of the note taking program that ships with Microsoft Office 2003. It's required for the side note windows to work
Microsoft Office Quick Launcher
Added by the DLOADR-AWD TROJAN!
Microsoft Office Shortcut Bar
Alternative shortcuts to the Start -> Programs way of running applications installed as part of MS Office. Some people prefer it but a better way is to create Desktop Shortcuts if you want access these programs quickly
Microsoft Office Start
Added by the GAOBOT.BC WORM!
Microsoft Office Startup
Application which launches common MS Office components to help speed up the launch of Office programs. It's somewhat of a resource hog, and some users claim there's no difference with or without it but it usually isn't required. Note - if you make use of the Microsoft Office Shortcut Bar outside an office program this application will need to be enabled for it to show
Microsoft Office Startup
Application which launches common MS Office components to help speed up the launch of Office programs. It's somewhat of a resource hog, and some users claim there's no difference with or without it but it usually isn't required. Note - if you make use of the Microsoft Office Shortcut Bar outside an office program this application will need to be enabled for it to show
Microsoft Office Studio
Added by the RANDEX.CST WORM!
Microsoft OfficeXP
Added by the KILLAV.MA WORM!
Microsoft Oftice
Added by the IRCBOT.ALT WORM! Note - not to be confused with msmsgs.exe, the well known MSN Instant Messaging application!
Microsoft Opeions
Added by a variant of the RBOT WORM!
Microsoft Outlook Express Protocol
Added by a variant of the RBOT WORM!
Microsoft Patch Update
Added by the RBOT-FMN WORM!
Microsoft PC Health Remote Assistance File Open & Save controls
Added by the RBOT-AVY WORM!
Microsoft PCHealth32
Added by the NICE-A TROJAN!
Microsoft PCHealth32
Added by the PWSYAHOO-A TROJAN!
Microsoft PCI Manager
Added by a variant of the SDBOT WORM!
Microsoft Personal Firewalls
Added by the RBOT-KS WORM!
Microsoft Problem Doctor
Added by the SMALLTRO.EF TROJAN!
Microsoft Problem Doctor
Added by a variant of the SMALLTRO.EF TROJAN!
Microsoft Problem Doctor
Added by a variant of the SMALLTRO.EF TROJAN!
Microsoft Proc Driver32
Added by a variant of the WOOTBOT WORM!
Microsoft Procedure Call
Added by a variant of the RBOT WORM!
Microsoft Process Manager
Added by the CHECKOUT WORM! See here
Microsoft Profile Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft PSTCP32 Data
Added by a variant of the RBOT WORM!
Microsoft QMGR
Added by the IRCBOT-S TROJAN!
Microsoft RDLL
Added by a variant of the SDBOT TROJAN!
Microsoft Redirect
Added by the BANKER-FW TROJAN!
Microsoft Redirect
Added by the BANCOS-FO TROJAN!
Microsoft Regestry Edit Manager
Detected by Trend Micro as the SHEUR.HC WORM! See here
Microsoft Regestry Manager
Added by a variant of the IRCBOT.ARD WORM!
Microsoft Regestry Manager
Added by the IRCBOT.ARD WORM!
Microsoft Registro
Added by the BANCOS-DH TROJAN!
Microsoft Registry
Added by the RBOT-PC WORM!
MicroSoft Remote Secure Service
Added by a variant of the RBOT WORM!
Microsoft Restore
Added by the SPYBOT.BR WORM!
Microsoft Router Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft Router Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft Rundll
Added by the SDBOT-WF WORM!
Microsoft Runtime
Added by the RANDEX.BD WORM!
Microsoft Safe Mode Manager
Detected by Trend Micro as the IRCBOT.HM TROJAN! See here
Microsoft Scanreg
Added by the FRANRIV.A WORM!
Microsoft SCVHOST32 Protocol
Added by a variant of the RBOT WORM!
Microsoft sddcE Contol
Added by the RBOT-AUM WORM!
Microsoft sdk temp
Added by the RBOT-ANP WORM!
Microsoft SDKP3
Added by the RBOT-ARY WORM!
Microsoft Secure Messenger.NET Service
Added by the SDBOT.VT WORM!
Microsoft Security
Added by a variant of the RBOT WORM!
Microsoft security adviser
Added by a variant of the IRCBOT TROJAN!
Microsoft Security Center
Added by the RBOT-ANU WORM!
Microsoft Security Center
Added by the SDBOT.BYD WORM!
Microsoft Security Controlers
Added by a variant of the SDBOT WORM!
Microsoft Security GManagers
Added by a variant of the SDBOT WORM!
Microsoft Security Hot Fix Update
Affilred adware
Microsoft Security Management
Added by the RBOT-MQ WORM!
Microsoft Security Management
Added by the RBOT-MJ WORM!
Microsoft Security Management
Added by a variant of the RBOT WORM! Note - this is NOT the popular Winamp media player which resides in a "Winamp" subdirectory of the Program Files directory
Microsoft Security Management
Added by a variant of the RBOT WORM!
Microsoft Security Management
Added by the RBOT.XL WORM!
Microsoft Security Management
Added by the RBOT.UB WORM!
Microsoft Security Manager
Added by the RBOT WORM! Note - this is NOT the popular Winamp media player which resides in a "Winamp" subdirectory of the Program Files directory. This file is located in the System (9x/Me) or System32 (NT/2K/XP) folder
Microsoft Security Monitor Process
Added by the RBOT-FUB WORM!
Microsoft Security Monitor Process
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Security Monitor Process
Detected by Trend Micro as the RBOT.GKQ WORM! See here
Microsoft Security Monitor Process
Added by a variant of the IRCBOT TROJAN!
Microsoft Security Monitor Process
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Security Monitor Process
Detected by Kaspersky as the VIRUT.P VIRUS! See here
Microsoft Security Monitor Process
Detected by PCTools as the DELF.BERW BACKDOOR! See here
Microsoft Security Monitor Process
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Security Monitor Process
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Security Monitor Process
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Security Panager
Added by the RBOT-ANL WORM!
Microsoft Security Panagers
Added by the RBOT-AIG WORM!
Microsoft Security Panagers
Added by the RBOT-AOI WORM!
Microsoft Security Process
Added by the RBOT-FKM WORM!
Microsoft Security System
Added by the IRCBOT-WJ TROJAN!
Microsoft Security Update
Added by the DELF-JJ TROJAN!
Microsoft Server
Added by the AGOBOT.AVS WORM!
Microsoft Server Applacations
Added by the AGOBOT.BBM WORM!
Microsoft Server Applacations
Added by a variant of the RBOT WORM!
Microsoft Server Applacations
Added by the RBOT-AQQ WORM!
Microsoft Server Applacations
Added by the SPYBOT.GEN3 TROJAN!
Microsoft Server Applacations
Added by the RBOT-GAQ WORM!
Microsoft Server Application
Added by the RBOT-NE WORM!
microsoft server base
Added by a variant of the RBOT WORM!
Microsoft Server Process
Added by the BCKDR-QHR TROJAN!
Microsoft Service
Added by the RBOT-LC WORM!
Microsoft Service
Added by the SPYBOT-DB WORM!
Microsoft Service
Added by the POPO-A WORM! Note - this is NOT the Windows system file of the same name as described here
Microsoft Service 32
Added by a variant of the IRCBOT TROJAN!
Microsoft Service 32
Detected by Kaspersky as the SDBOT.AKC TROJAN! See here
Microsoft Service Access Manager
Added by a variant of the IRCBOT TROJAN! See here
Microsoft Service Boot
Added by a variant of the IRCBOT TROJAN!
Microsoft Service Controller
Added by the KALEL-D WORM! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup!
Microsoft Service Disk Cycle
Added by a variant of the IRCBOT TROJAN!
Microsoft Service Drivers
Added by a variant of the RBOT WORM!
Microsoft Service Drivers
Added by a variant of the RBOT WORM!
Microsoft Service Execution Manager
Added by a variant of the IRCBOT TROJAN! See here
Microsoft Service firewall Manager
Added by a variant of the SDBOT WORM!
Microsoft Service Host Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft Service Host Process
Added by the KRYNOS.B WORM! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "Help" subfolder of the Winnt or Windows folder
Microsoft Service Information
Added by the RBOT.ID WORM!
Microsoft Service Login Manager
Added by a variant of the IRCBOT TROJAN!
Microsoft Service Manager
Added by a variant of the RBOT WORM! See here
Microsoft Service Manager
Added by a variant of the RBOT WORM! See here
Microsoft Service Pack
Added by the RBOT-RF WORM!
Microsoft Service Pack2.1
Added by a variant of the RBOT WORM!
Microsoft Services
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft Services
Added by the RBOT.CW WORM!
Microsoft Services
Added by the ALETS TROJAN! Note - this is not the legitimate services.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Windows or Winnt folder
Microsoft Services
Added by the RBOT-BK WORM!
Microsoft Services
Added by the ALETS.B TROJAN!
Microsoft Services
Added by the BDOOR-AW TROJAN!
Microsoft Services
Added by the RBOT-AD WORM!
Microsoft Services
Added by a variant of the RBOT WORM!
Microsoft Services
Added by the LAVITS WORM!
Microsoft Services
Detected by Trend Micro as the IRCBOT.BKA TROJAN! See here
Microsoft Services Unitd
Added by a variant of the RBOT WORM!
Microsoft Servicez Manager
Added by the RBOT-ASN WORM!
Microsoft Session Manager Subsystem
Added by the KALEL-D WORM! Note - this is not the legitimate smss.exe process which should NOT appear in Msconfig/Startup!
Microsoft Setup Initializazion
Added by a variant of the IRCBOT TROJAN!
Microsoft Sidewinder Game Controller Software
MS SideWinder game controller system tray icon. Available via Start -> Programs
Microsoft Sinsup
Added by the RBOT-DN WORM!
Microsoft Software
Added by the RBOT.LS WORM!
microsoft software
Added by an unidentified WORM or TROJAN!
Microsoft software
Added by the RBOT.ABK WORM!
Microsoft Software Update
Added by the RBOT.HZ WORM!
Microsoft Sound Driver
Added by a variant of the SPYBOT WORM!
Microsoft Sound Technology
Added by the RBOT-AGG WORM!
Microsoft Sound Volume Tool
This is a Blue version of the yellow speaker icon on the system tray and is used to edit advanced Sound Features that the MS DSS80 Speakers add. Should be accessible via Start -> Settings -> Control Panel
Microsoft Sounds
Added by the RBOT-GCI WORM!
Microsoft SourceSafe
Added by the WEBUS TROJAN! Note - this worm replaces the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!
Microsoft SpA Service
Added by the RBOT.ATS WORM!
Microsoft SpA Service
Added by the RBOT.LT WORM!
Microsoft SpA Service
Added by the RBOT-VI WORM!
Microsoft Special offer
Added by a variant of the RBOT WORM!
Microsoft Spool ** Service
Added by a variant of the IRCBOT TROJAN - where ** represents a 2 digit number
Microsoft Spool Server for Win32
Added by the RANDEX.H WORM!
Microsoft Spool Svc
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Spooler Services
Added by a variant of the SPYBOT WORM! See here
MicroSoft ssas3s1
Detected by PCTools as the RBOT.URF WORM! See here
Microsoft SSISVRI32 Protocol
Added by a variant of the SPYBOT WORM!
Microsoft Standard Executions Library
Added by the RBOT-AUK WORM!
Microsoft standard protector
Added by the SMALL.CF TROJAN!
Microsoft standard protector
Added by the STOX-C TROJAN!
Microsoft startup
Added by the IRCBOT.ACI TROJAN!
Microsoft Stuff you know
Added by a variant of the SDBOT WORM!
Microsoft Sum32
Added by the RBOT-YW WORM!
Microsoft Support
Added by the RBOT-AHI WORM!
microsoft support
Added by the AGOBOT.AWN WORM!
Microsoft SVC
Added by the BIFROSE-UQ TROJAN!
Microsoft Svchost local services
Added by the RBOT-FPE WORM!
Microsoft Svchost local services
Added by the RBOT-GMC WORM!
Microsoft Svchost local services
Added by the RBOT-GPM WORM!
Microsoft Syn Manager
Added by the SDBOT.BEF WORM!
Microsoft Synchronization Manager
Added by the SDBOT-AEA WORM!
Microsoft Synchronization Manager
Added by the SDBOT.IH WORM!
Microsoft Synchronization Manager
Added by the RANDEX.AE WORM!
Microsoft Synchronization Manager
Added by the SDBOT.YH WORM!
Microsoft Synchronization Manager
Added by the SDBOT-PY WORM!
Microsoft Synchronization Manager
Added by the SPYBOT.FO WORM!
Microsoft Synchronization Manager
Added by the SDBOT.ER WORM!
Microsoft Synchronization Manager
Added by the SDBOT-KZ WORM!
Microsoft Synchronization Manager
Added by the MASLAN.A or MASLAN.C WORMS!
Microsoft Synchronization Manager
Added by the OPTXPRO.132 TROJAN!
Microsoft Synchronization Manager
Added by the SDBOT.AK WORM!
Microsoft Synchronization Manager
Added by a variant of the SDBOT WORM!
Microsoft Synchronization Manager
Added by the SDBOT-LM WORM!
Microsoft Synchronization Manager
Added by the SDBOT.AEU WORM!
Microsoft Synchronization Manager
Added by the SDBOT-ZU WORM!
Microsoft Synchronization Manager
Added by the SDBOT.DO WORM!
Microsoft Synchronization Manager
Added by the SDBOT-ACO WORM!
Microsoft Synchronization Manager
Added by a variant of the RBOT WORM! Note - do not confuse with the legitimate Creative Labs devldr32.exe file
Microsoft Synchronization Manager
Added by the SDBOT-AEA WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft Synchronization Manager
Added by the SDBOT-AFC WORM!
Microsoft Synchronization Manager
Added by the SDBOT.BFC WORM!
Microsoft Synchronization Manager
Added by the SDBOT.AH WORM!
MicroSoft sys32
Added by a variant of the SPYBOT WORM! See here
MicroSoft sys3s1
Detected by PCTools as the RBOT.QTY WORM! See here
Microsoft System
Added by the SPYBOT.PKC WORM!
Microsoft System
Added by the PETTICK.A WORM!
Microsoft System
Added by the RBOT.AKI WORM!
Microsoft System Administration
Added by a variant of the IRCBOT BACKDOOR!
Microsoft System Backup
Added by the RBOT-AGM WORM!
Microsoft System Checkup
Added by the DONK.B WORM!
Microsoft System Checkup
Added by the DONK.C WORM!
Microsoft System Checkup
Added by the DONK.L WORM!
Microsoft System Checkup
Added by the DONK.M WORM!
Microsoft System Checkup
Added by the DONK.O WORM!
Microsoft System Checkup
Added by the DONK.S WORM!
Microsoft System Checkup
Added by the SDBOT-QW WORM!
Microsoft System Checkup
Added by the SDBOT-CAF WORM!
Microsoft System Checkup
Added by the SDBOT-OO TROJAN!
Microsoft System Checkup
Added by the DONK-E WORM!
Microsoft System Checkup
Added by the DONK.Q WORM!
Microsoft System Checkup
Added by the SDBOT-ACK WORM!
Microsoft System Debug
Added by the RBOT.AKH WORM!
Microsoft System DLL Services Configuration
Added by the SDBOT-ACY TROJAN!
Microsoft System File
Added by the RBOT.BYU WORM!
Microsoft System Firewall 2006.2
Added by a variant of the SDBOT WORM!
Microsoft System Firewall 2006.2
Added by a variant of the SDBOT WORM! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility
Microsoft System Firewall 2006.2
Added by a variant of the SDBOT WORM!
Microsoft System Init
Added by the SDBOT.BR TROJAN!
Microsoft System Monitor
Added by the IRCBOT-YV TROJAN!
Microsoft System Monitor
Detected by PCTools as the IRCBOT.AUT TROJAN! See here
Microsoft System NT
Added by the SDBOT.COU WORM!
Microsoft System Restore Configuration
Added by a variant of the SPYBOT WORM!
Microsoft System Saver
Added by the RBOT.BSK WORM!
Microsoft System Security Agent
Added by the RBOT.CCM WORM!
Microsoft System Service
Added by a variant of the IRCBOT TROJAN!
Microsoft System Service
Detected by Kaspersky as the SDBOT.CSX TROJAN! See here
Microsoft System Service
Added by a variant of the IRCBOT TROJAN!
Microsoft System Service Device
Added by a variant of the IRCBOT TROJAN!
Microsoft System Services
Added by the KELVIR.K WORM!
Microsoft System Services
Added by the RBOT-ZH WORM!
Microsoft System Update
Added by the SDBOT.DG WORM!
Microsoft system Value
Added by a variant of the RBOT WORM!
Microsoft System32 Update
Added by the RBOT-GN WORM!
Microsoft task tray monitor
Added by a variant of the RBOT WORM!
Microsoft Task32 Protocol
Added by a variant of the SDBOT WORM!
Microsoft Taskmanager Updater
Added by the RBOT-ALU WORM!
Microsoft TCP Protocol
Added by a variant of the IRCBOT TROJAN!
Microsoft TCP/IP Connection Monitor
Added by the RBOT.KS WORM!
Microsoft Telecom Center
Added by a variant of the RBOT WORM!
Microsoft Telecoma Center
Added by the RBOT-AWX WORM!
Microsoft Telecoms Center
Added by the IRCBOT.GEN WORM!
Microsoft Telecoms Center
Added by the RBOT.BCJ TROJAN!
Microsoft Telecoms Center
Added by a variant of the SDBOT WORM!
Microsoft Telecoms Center
Added by a variant of the RBOT WORM!
Microsoft Time Manager
Added by the RBOT-HQ WORM!
MicroSoft Toolbar
Added by the RBOT-AEW WORM!
Microsoft Transfer File Server
Added by the RBOT.AFE WORM!
Microsoft Tray
Added by the DELF.BZ TROJAN!
Microsoft TTL Verifier
Added by the RBOT-GAP WORM!
Microsoft U
Added by the RBOT-AHC WORM!
Microsoft UMA Update
Added by the RBOT.FS WORM!
MICROSOFT UNPACCKER SYSTEM
Added by a variant of the RBOT WORM!
MICROSOFT UNPACK SYSTEM
Added by a variant of the RBOT WORM!
Microsoft Updat3
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the GAOBOT.AFJ WORM!
Microsoft Update
Added by the SDBOT.JT WORM!
Microsoft Update
Added by the SPYBOT.DAZ WORM!
Microsoft Update
Added by the GAOBOT.SY WORM!
Microsoft Update
Added by the RBOT-AU WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT.H WORM!
Microsoft Update
Added by the RBOT-LX WORM!
Microsoft Update
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Update
Added by the SDBOT.DP TROJAN!
Microsoft Update
Added by the RBOT.CB WORM!
Microsoft Update
Added by the RBOT.DR WORM!
Microsoft Update
Added by the AGOBOT.XM WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT-LK WORM!
Microsoft Update
Added by the RBOT-AW WORM!
Microsoft Update
Added by the RBOT.AP WORM!
Microsoft Update
Added by the GAOBOT.AFJ WORM!
Microsoft Update
Added by the GAOBOT.AFJ WORM!
Microsoft Update
Added by the RBOT.ZB WORM!
Microsoft Update
Added by the RBOT-IV WORM!
Microsoft Update
Added by a variant of the SPYBOT WORM!
Microsoft Update
Added by the RBOT-QE WORM!
Microsoft Update
Added by the SDBOT.WK WORM!
Microsoft Update
Added by the RBOT-FK WORM!
Microsoft Update
Added by the RBOT-RQ WORM!
Microsoft Update
Added by the GAOBOT.XW WORM!
Microsoft Update
Added by the RBOT-AG WORM!
Microsoft Update
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT-PI WORM!
Microsoft Update
Added by the RBOT.AEE WORM!
Microsoft Update
Added by the RBOT-BH WORM!
Microsoft Update
Added by the RBOT-GV WORM!
Microsoft Update
Added by the RBOT.AF WORM!
Microsoft Update
Added by the RBOT-AQ WORM!
Microsoft Update
Added by the SDBOT-KY WORM!
Microsoft Update
Added by the RBOT-UT WORM!
Microsoft Update
Added by a variant of the SPYBOT WORM!
Microsoft Update
Added by the RBOT.AFL WORM!
Microsoft Update
Added by the SDBOT.AKV WORM!
Microsoft Update
Added by the RBOT-EW WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT-DW WORM!
Microsoft Update
Added by the RBOT-OD WORM!
Microsoft Update
Added by the SPYBOT.CG WORM!
Microsoft Update
Added by the RBOT-TI WORM!
Microsoft Update
Added by the RBOT-ABZ WORM!
Microsoft Update
Added by the RBOT-AHL WORM!
Microsoft Update
Added by the RBOT.XT WORM! Note - this file is located in the WindowsSystem32 or WinntSystem32 folder, and should not be confused with the McAfee antivirus executable as described here
Microsoft Update
Added by the AGOBOT.AAR WORM!
Microsoft Update
Added by the RBOT.BQS WORM!
Microsoft Update
Added by the SPYBOT.LZ WORM!
Microsoft Update
Added by the RBOT-AEM WORM!
Microsoft Update
Added by the RBOT.BUJ WORM!
Microsoft Update
Added by the RBOT-AJ WORM!
Microsoft Update
Added by a variant of the SDBOT WORM!
Microsoft Update
Added by a variant of the RBOT WORM! Note - this is NOT the popular Winamp media player
Microsoft Update
Added by the RBOT-AFK WORM!
Microsoft Update
Added by the RBOT.BIN WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT-AHD WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the RBOT-AFI WORM!
Microsoft Update
Added by the RBOT.BGU WORM!
Microsoft Update
Added by the SDBOT.BBX WORM!
Microsoft Update
Added by the RBOT.OX WORM!
Microsoft Update
Added by a variant of the SDBOT WORM!
Microsoft Update
Added by the RBOT-AKR WORM!
Microsoft Update
Added by the RBOT-AMC WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the SDBOT.CC WORM!
Microsoft Update
Added by the RBOT-AX WORM!
Microsoft Update
Added by the RBOT-ATQ WORM!
Microsoft Update
Added by the RBOT-AZE WORM!
Microsoft Update
Added by the SDBOT.PF WORM!
Microsoft Update
Added by the SDBOT.AFO WORM!
Microsoft Update
Added by the RBOT.IS WORM!
Microsoft Update
Added by the RBOT-AVK WORM!
Microsoft Update
Added by a variant of the SDBOT WORM!
Microsoft Update
Added by a variant of the SDBOT WORM!
Microsoft Update
Added by the RBOT.EGW WORM!
Microsoft Update
Added by a variant of the RBOT WORM!
Microsoft update
Added by a variant of the RBOT WORM!
Microsoft Update
Added by the BOROBOT-I TROJAN!
Microsoft Update
Added by the RBOT-AIR WORM!
Microsoft Update
Added by the RBOT-CV WORM!
Microsoft Update
Added by the BIFROSE-PN WORM!
Microsoft Update
Added by the RBOT-LH WORM!
Microsoft Update
Added by the AGENT-GJC TROJAN!
Microsoft Update
Detected by Kaspersky as the BANLOAD.KWQ TROJAN! See here
Microsoft Update
Added by a variant of the SDBOT WORM! See here
Microsoft Update
Detected by Kaspersky as the IRCBOT.DU BACKDOOR! See here
Microsoft Update
Detected by Kaspersky as the RBOT.AEU BACKDOOR! See here. Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft Update
Detected by Kaspersky as the BANLOAD.KWQ TROJAN! See here
Microsoft Update
Added by the ADLOAD-LN TROJAN!
Microsoft Update
Added by a variant of the SPYBOT WORM! See here
Microsoft Update
Detected by Kaspersky as the RBOT.RHK BACKDOOR! See here
Microsoft Update
Added by the AGENT-DIS TROJAN!
Microsoft Update
Detected by Kaspersky as the CIADOOR.GN BACKDOOR! See here
Microsoft Update
Added by a variant of the SPYBOT WORM! See here
Microsoft Update
Added by the SPYBOT.AAR WORM!
Microsoft Update
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Update
Detected by Kaspersky as a variant of the RBOT BACKDOOR! See here
Microsoft Update
Added by a variant of the RBOT WORM! See here
Microsoft Update 23
Added by a variant of the RBOT WORM!
Microsoft Update 23
Added by a variant of the RBOT WORM!
Microsoft Update 32
Added by the SPYBOT.CYM WORM!
Microsoft Update 32
Added by a variant of the SPYBOT WORM!
Microsoft Update 32
Added by the RBOT-ANY WORM!
Microsoft Update 32
Added by a variant of the RBOT WORM!
Microsoft Update 32
Added by the RBOT-AJJ WORM!
Microsoft Update 32
Added by the RBOT-ALM WORM!
Microsoft Update 32
Added by the RBOT-AXN WORM!
Microsoft Update 32
Added by a variant of the RBOT WORM!
Microsoft Update 32
Added by a variant of the RBOT WORM!
Microsoft Update 32
Added by the RBOT-AMS WORM!
Microsoft Update 32
Added by the RBOT-ARF WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Microsoft Update 32
Added by the RBOT-ARZ WORM!
Microsoft Update 32
Added by the RBOT-AQP WORM!
Microsoft Update 32
Added by the RBOT-ARR WORM!
Microsoft Update 32
Added by the AGOBOT-UE WORM!
Microsoft Update 32
Added by the RBOT-AMI WORM!
Microsoft Update 32
Detected by Kaspersky as the RBOT.AIE BACKDOOR! See here. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted
Microsoft Update 32
Detected by Kaspersky as the RBOT.AIE BACKDOOR! See here
Microsoft Update 33
Added by the RBOT-ATT WORM!
Microsoft Update 64 BIT
Added by the RBOT-AHE WORM!
Microsoft Update 64 BIT
Added by the RBOT-AKI WORM!
Microsoft Update 64 BIT
Added by the RBOT.CAU WORM!
Microsoft Update 64 BIT
Added by the RBOT-AQO WORM!
MICROSOFT UPDATE CONFIGURATION
Added by the RBOT-AI WORM!
Microsoft Update Control
Added by a variant of the RBOT WORM!
Microsoft Update Debugger
Added by the SPYBOT.ZC WORM!
Microsoft Update Device
Added by a variant of the SPYBOT WORM! See here
Microsoft Update Device Drivers
Added by a variant of the SDBOT WORM! Note - this is not the legitimate wuauclt.exe process, which should not appear in Msconfig/Startup!
Microsoft Update DLL
Added by a variant of the RBOT WORM!
Microsoft Update Drivers
Added by a variant of the SDBOT WORM!
Microsoft Update Emulator
Added by a variant of the RBOT WORM!
Microsoft Update Loader
Added by a variant of the RBOT WORM!
Microsoft Update Loaders 2005
Added by the RBOT-AIQ WORM!
Microsoft Update Loaders 2006
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Update Machine
Added by the RBOT-FA WORM!
Microsoft Update Machine
Added by the RBOT-NM WORM!
Microsoft Update Machine
Added by the RBOT-CE WORM!
Microsoft Update Machine
Added by the RBOT-BZ WORM! Note - this is not the valid Zone Labs firewall program!
Microsoft Update Machine
Added by the RBOT-JT WORM!
Microsoft Update Machine
Added by the RBOT-FP WORM!
Microsoft Update Machine
Added by the RBOT.AK WORM!
Microsoft Update Machine
Added by the SDBOT.HQ WORM!
Microsoft Update Machine
Added by a variant of the SDBOT WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT-IM WORM!
Microsoft Update Machine
Added by the RBOT-DY WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT.DN WORM!
Microsoft Update Machine
Added by the RBOT.DN WORM!
Microsoft Update Machine
Added by the RBOT-OB WORM!
Microsoft Update Machine
Added by the RBOT-HE WORM!
Microsoft Update Machine
Added by the RBOT-GF WORM!
Microsoft Update Machine
Added by the RBOT-QZ WORM!
Microsoft Update Machine
Added by the RBOT-GS WORM!
Microsoft Update Machine
Added by the RBOT-GK WORM!
Microsoft Update Machine
Added by the RBOT.JU WORM!
Microsoft Update Machine
Added by the RBOT-GL WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT-DI WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT.EP WORM!
Microsoft Update Machine
Added by the SPYBOT.BI WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT.DA WORM!
Microsoft Update Machine
Added by the RBOT-BD WORM!
Microsoft Update Machine
Added by the RBOT-CR WORM!
Microsoft Update Machine
Added by the RBOT-FV WORM!
Microsoft Update Machine
Added by the SPYBOT.CS WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT-NQ WORM!
Microsoft Update Machine
Added by the RBOT-ACD WORM!
Microsoft Update Machine
Added by the RBOT-NW WORM!
Microsoft Update Machine
Added by the RBOT.EZ WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by a variant of the RBOT WORM!
Microsoft Update Machine
Added by the RBOT-AFZ WORM!
Microsoft Update Machine
Added by the SDBOT.UV WORM!
Microsoft Update Machine
Added by the RBOT.EF WORM!
Microsoft Update Machine
Added by the RBOT.AWS WORM! Note - do no confuse with the legitimate Msoicons.exe file described here. The latter should not normally figure in Msconfig/Startup!
Microsoft Update Machine
Added by the RBOT.CU WORM!
Microsoft Update Machine
Added by the RBOT.GF WORM!
Microsoft Update Machine
Added by the RBOT-GKL WORM!
Microsoft Update Machine
Added by the RBOT-GOZ WORM!
Microsoft Update Machine
Added by the RBOT-GQN WORM!
Microsoft Update Machine
Detected by Kaspersky as the RBOT.AEA BACKDOOR! See here
Microsoft Update Machine
Detected by Kaspersky as the KOLABC.DES WORM! See here
Microsoft Update Machine
Detected by McAfee as the PUSHBOT.A WORM! See here
Microsoft Update Machine
Detected by Trend Micro as the KOLABC.CC WORM! See here
Microsoft Update Machine
Detected by Kaspersky as the CIADOOR.GN BACKDOOR! See here
Microsoft Update Machine
Detected by McAfee as the PUSHBOT.A WORM! See here
Microsoft Update Machine
Detected by Kaspersky as the RBOT.AEA BACKDOOR! See here
Microsoft Update Machine
Detected by Kaspersky as the AGENT.AWZ TROJAN! See here
Microsoft Update Machine
Added by the SDBOT.OK WORM!
Microsoft Update Machine
Added by the RBOT.FC WORM!
Microsoft Update Machine
Added by the RBOT-HU WORM!
Microsoft Update Machine
Added by the SPYBOT.FP WORM!
Microsoft Update Machine
Added by the RBOT-KV WORM!
Microsoft Update Machine
Added by the RBOT.QP WORM!
Microsoft Update Machine
Added by the RBOT-OM WORM!
Microsoft Update Manager
Added by the RBOT-AF WORM!
Microsoft Update Manager
Added by a variant of the RBOT WORM!
Microsoft Update Manager
Added by the AGOBOT.AXJ WORM!
Microsoft Update Manager
Added by the SDBOT-CVP TROJAN!
Microsoft Update Mechene
Added by the RBOT-GI WORM!
Microsoft Update Module
Added by the RBOT-PS WORM!
Microsoft Update Process
Added by the AGOBOT-JF TROJAN!
Microsoft Update Security Patch
Added by the AGENT.EF TROJAN!
Microsoft Update Server
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft Update Service
Added by the AGOBOT-HC WORM!
Microsoft Update Service
Added by a variant of the SPYBOT WORM!
Microsoft update service
Added by a variant of the SDBOT WORM!
Microsoft Update SERVICE
Added by a variant of the RBOT WORM!
Microsoft Update Service
Added by the RBOT-AQB WORM!
Microsoft Update Services
Added by the RBOT-AGK WORM!
Microsoft Update Services
Added by the RBOT-AFU WORM!
Microsoft Update Time
Added by the RBOT-M WORM!
Microsoft Update USB2
Added by the RBOT-ADT WORM!
Microsoft Update v2.6
Added by a variant of the RBOT WORM!
Microsoft Update Win32a
Added by the RBOT-LO WORM!
Microsoft Update Win32x
Added by the RBOT-AJN WORM!
Microsoft Updater
Added by a variant of the RBOT WORM!
Microsoft Updater
Added by a variant of the IRCBOT TROJAN!
Microsoft Updater
Detected by Kaspersky as the AGENT.CDF TROJAN! See here
Microsoft Updater
Added by a variant of the SPYBOT WORM! See here
Microsoft Updater
Added by the RBOT.A WORM!
Microsoft Updater Resources
Added by the SPYBOT.CA WORM!
Microsoft UPDATER32
Added by the RANDEX.AR WORM! Note - this is not the legitimate Lsass.exe system file should normally NOT figure in Msconfig/Startup!
Microsoft Updaters
Added by a variant of the RBOT WORM!
Microsoft Updaters
Added by the RBOT-DF TROJAN!
Microsoft Updaters Pros
Added by the SPYBOTTER.GEN VIRUS!
Microsoft Updates
Added by the RBOT-GR WORM!
Microsoft Updates
Added by the RBOT.R WORM!
Microsoft Updates
Added by the RBOT-EB WORM!
Microsoft Updates
Added by the RBOT-CO WORM!
Microsoft Updates
Added by the RBOT-AHQ WORM!
Microsoft Updates
Added by the RBOT-GRW WORM!
Microsoft Updates
Added by the AGOBOT-AIW WORM!
Microsoft Updates
Added by the RBOT-GVH WORM!
Microsoft Updates
Detected by Kaspersky as the POISON.HPT BACKDOOR! See here
Microsoft Updates 2 USB
Added by a variant of the RBOT WORM!
Microsoft Updates 5 USB
Added by the RBOT-ADS WORM!
Microsoft Updates Resources
Added by a variant of the RBOT WORM!
Microsoft Updating
Added by the RBOT.HW WORM!
Microsoft Updating
Added by a variant of the RBOT WORM!
Microsoft Updating
Added by the RBOT-BY WORM!
Microsoft Updating Client
Added by the RBOT.AQ WORM!
Microsoft Updating Machine
Added by the RBOT.RB WORM!
Microsoft Updatting
Added by a variant of the RBOT WORM!
Microsoft Updote
Added by the RBOT-ARC WORM!
Microsoft UpMachine
Added by the RBOT.BCT WORM!
Microsoft upnp Update
Added by the RBOT-LQ WORM!
Microsoft uptime Service
Added by the RBOT-ACG WORM!
Microsoft uptime Service
Added by the RBOT-AHY WORM!
Microsoft UpToDate Driver (32-bits)
Added by the SPYBOT.LXJ WORM!
Microsoft Urlmon
Added by the AGENT-GOO TROJAN!
Microsoft USB2 Driver
Added by the RBOT-VK WORM!
Microsoft usnsvc Service
Added by a variant of the KOBOT-C WORM!
Microsoft Utility Startup
Application which launches common MS Office components to help speed up the launch of Office programs. It's somewhat of a resource hog, and some users claim there's no difference with or without it but it usually isn't required. Note - if you make use of the Microsoft Office Shortcut Bar outside an office program this application will need to be enabled for it to show
Microsoft Values
Added by the RBOT-GLO WORM!
Microsoft Vertupdate
Added by the MYTOB-CY WORM!
Microsoft Video Capture Controls
Added by the SDBOT-AAK WORM!
Microsoft Video Controls
Added by a variant of the SPYBOT WORM!
Microsoft Viewer Monitor Manager
Detected by Trend Micro as the XPAK.A TROJAN! See here
Microsoft Virtual Service Manager
Detected by Trend Micro as the MSNWORM.T WORM! See here
Microsoft Virual Machine
Added by the RBOT-SP WORM!
Microsoft Vista Upgrade Validation Service
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Visual Application
Added by the IRCBOT-XJ TROJAN!
Microsoft Visual SourceSafe
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup!
Microsoft Visual SourceSafe
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup!
MicroSoft Visual SP2
Detected by Trend Micro as the SDBOT.GAV WORM! See here
Microsoft Visual Studio
Added by the RBOT-AWV WORM!
Microsoft Visual Studio VSA
Added by a variant of the SPYBOT WORM!
Microsoft Web CP Manager
Added by a variant of the SDBOT WORM! See here
Microsoft Web Device
Added by a variant of the SDBOT WORM!
Microsoft web update
Added by the RBOT-EMQ WORM!
Microsoft Webserver
Personal web server program which enables you to create and host a web server from your computer. Not required for most people
Microsoft Win Corp TLS Verification
Added by the RBOT-GCT WORM!
Microsoft WIN32 DOS
Added by a variant of the SDBOT WORM!
Microsoft WIN32 Security
Added by the RBOT-DOQ TROJAN!
MicroSoft Wind0ws Updater
Added by a variant of the RBOT WORM!
Microsoft Windows
Added by the SDBOT.FQ WORM!
Microsoft Windows
Added by a variant of the RBOT WORM!
Microsoft Windows
HTA file which creates an executable on the hard drive which subsequently proceeds to download files from a malware site!
Microsoft Windows
Added by a variant of the RBOT WORM!
Microsoft Windows
Added by the LI TROJAN!
Microsoft Windows
Added by the VANEBOT-K WORM!
Microsoft Windows
Added by the EDIBARA-A VIRUS!
Microsoft Windows
Added by the EDIBARA-A VIRUS!
Microsoft Windows
Added by the RBOT-GQK WORM!
Microsoft Windows (D)
Identified as a variant of the TrojanSpy.Agent malware
Microsoft Windows 128bit Subsystem
Added by the RANCK-CZ TROJAN!
Microsoft Windows 16Bit
Added by a variant of the SPYBOT WORM!
Microsoft Windows 2000
Added by the GAOBOT.AO WORM!
Microsoft Windows 32 Update
Added by a variant of the IRCBOT TROJAN!
Microsoft Windows 32Bit
Added by a variant of the RBOT WORM!
Microsoft Windows 64 Bit
Added by a variant of the RBOT WORM!
Microsoft Windows Adapter 5.1.3214
Detected by Trend Micro as the STRAT.GEN-3 WORM! See here
Microsoft Windows Client Firewall
Added by the VANEBOT-F WORM!
Microsoft Windows Communicator for NT/XP
Added by the RBOT.ATH WORM!
Microsoft Windows Config 32
Added by a variant of the RBOT WORM!
Microsoft Windows Control
Added by the RBOT.JP WORM!
Microsoft Windows CSRSS
Added by the KALEL-A WORM! Note - this worm replaces the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!
Microsoft Windows DHCP
Added by the MASLAN.A or MASLAN.C WORMS!
Microsoft Windows DLL 32-BIT
Added by the SDBOT-XX WORM!
Microsoft Windows DLL Services
Added by the SDBOT-VX WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-ZR WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-ABD WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-ZY WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-AAH WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-ZL WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT.BHF WORM!
Microsoft Windows DLL Services Configuration
Added by a variant of the SDBOT.BHF WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT.BHD WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-ZG WORM!
Microsoft Windows DLL Services Configuration
Added by the SDBOT-BTU WORM!
Microsoft Windows DLLHandler
Added by the SDBOT.AHG WORM!
Microsoft Windows Drivers
Added by a variant of the SDBOT WORM!
Microsoft Windows DVR
Added by the RBOT-AXD WORM!
Microsoft Windows Expl0rer
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Windows Explorer
Added by a variant of the RBOT WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
Microsoft Windows Explorer
Added by the IRCBOT.WORM.212480.H WORM!
Microsoft Windows Express
Added by a variant of the IRCBOT BACKDOOR! See here
Microsoft Windows Express
Added by a variant of the SPYBOT WORM! See here
Microsoft Windows Express
Detected by PCTools as the SDBOT.ABOO WORM! See here
Microsoft Windows Files Loader
Added by the RBOT-AXR WORM!
Microsoft Windows Game Updater
Added by a variant of the RBOT WORM!
Microsoft Windows GUI
Added by the RANDEX.AEV WORM!
Microsoft Windows GUI
Added by the SDBOT-PE WORM!
Microsoft Windows Kernel Services
Added by the ZEBROXY TROJAN!
Microsoft Windows Loader
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Windows Logon Process
Added by the PROXYSER-R TROJAN! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup and is always located in the System32 folder. This worm file is placed in the Winnt or Windows folder
Microsoft Windows Media Player
Added by a variant of the RBOT WORM!
Microsoft Windows Media Player
Added by the RBOT-FN WORM!
Microsoft Windows Registry Service
Added by the AGOBOT.AKG WORM!
Microsoft Windows Secure
Added by a variant of the SDBOT WORM!
Microsoft Windows Secure
Added by a variant of the SDBOT WORM!
Microsoft Windows Secure Server
Added by the RBOT-LL WORM!
Microsoft Windows Secure Update
Added by an unidentified WORM or TROJAN!
Microsoft Windows Securety
Added by the RBOT-KY WORM!
Microsoft Windows Security
Added by a variant of the SDBOT WORM!
Microsoft Windows Security
Added by the RBOT-AJK WORM!
Microsoft Windows Service
Added by the RBOT-ADP WORM!
Microsoft Windows Service Pack
Added by the RBOT-AYD WORM!
Microsoft Windows Services
Added by the RBOT-FWQ WORM!
Microsoft Windows Services Edt
Added by the RBOT-FYF TROJAN!
Microsoft Windows Services Edt
Added by the RBOT-GAF WORM!
Microsoft Windows Session Manager Subsystem
Added by the PROXYSER-R TROJAN! Note - this is not the legitimate smss.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder
Microsoft Windows Socketx32 Services
Added by the RBOT-FWT WORM!
Microsoft Windows Sound
Added by a variant of the SPYBOT WORM! See here
Microsoft Windows Sound
Detected by Kaspersky as the RBOT.ME BACKDOOR! See here
Microsoft Windows Sound
Detected by PCTools as the KOLAB.XC WORM! See here
Microsoft Windows Storage Machine Service
Added by the RBOT-AHK WORM!
Microsoft Windows System
Added by a variant of the RBOT-ASW WORM!
Microsoft Windows System
Added by the RBOT-ASW WORM!
Microsoft Windows System Kernel
Added by a variant of the IRCBOT TROJAN!
Microsoft Windows System Service Manager
Added by the SPYBOT.LR WORM!
Microsoft Windows Task Management
Added by a variant of the SDBOT WORM!
Microsoft Windows Task Manger
Added by the SDBOT-WW WORM!
Microsoft Windows Tasks Management
Added by the RBOT-FXK WORM!
Microsoft Windows Updata
Added by a variant of the RBOT WORM!
Microsoft Windows Updata
Added by a variant of the RBOT WORM!
Microsoft Windows Update
Added by the HABRACK WORM!
Microsoft Windows Update
Added by the RBOT-GB WORM!
Microsoft Windows Update
Added by the SDBOT.TD WORM!
Microsoft Windows Update
Added by the SDBOT.AC WORM!
Microsoft Windows Update
Added by the FORBOT-CF WORM!
Microsoft Windows Update
Added by the FORBOT-CH WORM!
Microsoft Windows Update
Added by the WOOTBOT.CJ WORM!
Microsoft Windows Update
Added by the SDBOT.AJ WORM!
Microsoft Windows Update
Added by the SDBOT-RM WORM!
Microsoft Windows Update
Added by the FORBOT-DH WORM!
Microsoft Windows Update
Added by a variant of the RBOT WORM!
Microsoft Windows Update
Added by the SDBOT-WM WORM!
Microsoft Windows Update
Added by the FORBOT-EV WORM!
Microsoft Windows Update
Added by a variant of the SDBOT WORM!
Microsoft Windows Update
Added by the RBOT-AOW WORM!
Microsoft Windows Update
Added by the RBOT-AWH WORM!
MICROSOFT Windows update
Added by the RBOT.BZT WORM!
Microsoft Windows Update
Added by a variant of the SDBOT WORM!
Microsoft Windows Update
Added by a variant of the IRCBOT TROJAN!
Microsoft Windows Update
Added by the AGOBOT.ON WORM!
Microsoft Windows Update Application
Added by a variant of the RBOT WORM!
Microsoft Windows Update Client
Added by the KEBEDE-G WORM! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\Systems32
Microsoft Windows Update Logon
Added by a variant of the RBOT WORM!
Microsoft Windows Update Service
Added by the DOS.AUTOCAT TROJAN!
Microsoft Windows Update Service
Added by a variant of the IRCBOT BACKDOOR!
Microsoft Windows Update x86
Added by a variant of the RBOT WORM! Filenames seen include (but are not limited to firefox.exe, opera.exe, taskmrg.exe, aim.exe, Winxdiag.exe and usnesvc.exe
Microsoft Windows Update XP64
Added by a variant of the RBOT WORM!
Microsoft Windows Updater
Added by the SDBOT.TE WORM!
Microsoft Windows Updater
Added by the RBOT.ACQ WORM!
Microsoft Windows Updater
Added by a variant of the SDBOT WORM!
Microsoft Windows Updater
Added by the GAOBOT.BI WORM!
Microsoft Windows Updater
Added by the RBOT-KK WORM!
Microsoft Windows Updater
Added by the SDBOT-PU WORM!
Microsoft Windows Updater
Added by a variant of the RBOT WORM!
Microsoft Windows Updater
Added by the RBOT-EC WORM!
Microsoft Windows Updater
Added by the AGOBOT-RL WORM!
Microsoft Windows updaterD
Added by the MYDOOM.W WORM!
Microsoft Windows Updates
Added by the SDBOT.VQ WORM!
Microsoft Windows Updates
Added by a variant of the SDBOT WORM!
Microsoft Windows Updating System
Added by the RBOT-EAM WORM!
Microsoft Windows Visual V2.0
Added by the DELF.JPH TROJAN!
Microsoft Windows W32 Services
Added by a variant of the SPYBOT WORM!
Microsoft Windows WinSaSS Management
Added by the RBOT-APW WORM!
Microsoft Windows WKS Service
Added by the SDBOT.IR WORM!
Microsoft Windows WKS Service
Added by the SDBOT.FV WORM!
Microsoft Windows Workstation
Added by the RBOT-AWL WORM!
Microsoft Windows XP Configuration Loader
Added by the SDBOT.WORM!.48548 WORM!
Microsoft Windows XP/2K Explorer
Added by a variant of the IRCBOT TROJAN! See here
Microsoft Winedows startup
Added by a variant of the SDBOT WORM! See here
Microsoft Winedows WinServ
Added by a variant of the RBOT WORM!
Microsoft WINGS32 Protocol
Added by the RBOT-APU WORM!
Microsoft WinRaR
Added by the RBOT-AEC WORM!
Microsoft Winsock
Added by the RBOT-ANK WORM!
Microsoft Winsock Service
Added by the RBOT-ANS WORM!
Microsoft Winsock Wrapper
Added by a variant of the SPYBOT WORM!
Microsoft WinSound
Added by a variant of the RBOT WORM!
Microsoft WinUpdate
Added by the RBOT-PF WORM!
Microsoft WinUpdate
Added by the SPYBOT.DL WORM!
Microsoft WinUpdate
Added by an unidentified VIRUS, WORM or TROJAN!
Microsoft WinUpdate
Added by the RBOT-HO WORM!
Microsoft WinUpdate
Added by a variant of the RBOT WORM!
Microsoft WinUpdate
Added by a variant of the RBOT WORM!
Microsoft WinUpdate
Added by the RBOT.MQ WORM!
Microsoft WinUpdate
Added by the RBOT.VS WORM!
Microsoft WinUpdate
Added by an unidentified TROJAN! See examples here & here
Microsoft WinUpdates
Added by the RBOT.GE WORM!
Microsoft WM
Added by the BCKDR-AM TROJAN!
Microsoft Word
Added by a variant of the AGOBOT/GAOBOT WORM!
Microsoft Word Profissional
Added by the BANCBAN-DB TROJAN! Note - this is not the legitimate csrss.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "s1613" subfolder
Microsoft Word Profissional
Added by the BANKER-EL TROJAN!
Microsoft Word Profissional
Added by the BANKER-DJ TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "protect" subfolder
Microsoft Word Profissional
Added by the BANKER-DP TROJAN! ! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "JavaVM" subfolder
Microsoft Works Calendar Reminders
Produces a pop-up reminder of events scheduled using the MS Works Calendar
Microsoft Works Portfolio
The Works Portfolio tool lets you collect and organize text and pictures from the Web or your favorite program.Can be prevented from starting from a setting within Portfolio
Microsoft Works Update Detection
Checks for updates to MS Works
Microsoft World Service
Added by an unidentified IRC worm with backdoor capability!
Microsoft WPCEmail
Added by the SNIFFER-N TROJAN!
Microsoft WWW
Added by a variant of the CWS.AK TROJAN!
Microsoft Wxdate
Added by the SPYBOT.HZ WORM!
Microsoft X Update
Added by the RBOT-ANI WORM!
microsoft xdaemon 2.0
Added by the DELF.D TROJAN!
Microsoft XML Service
Added by the RBOT.KS WORM!
Microsoft Xp Systems loader
Added by the KELVIR.W WORM!
Microsoft Xp Systems loaders
Added by the SPYBOT.NYT WORM!
Microsoft XPSP Protocol
Added by a variant of the RBOT WORM!
Microsoft xpsp2
Added by a variant of the SDBOT WORM!
Microsoft xpsp2
Added by the SDBOT-YQ WORM!
Microsoft® Windows® Operating System
Microsoft Media Center Tray Icon gives easy access to the digital media manager for Windows Vista Home Premium and Media Center Edition
Microsoft® Windows® Operating System
Starts Windows Media Center every time Windows Vista (Home Premium or Ultimate) boots. Disable by unchecking the "Start Windows Media Center when Windows Starts" option via Windows Media Center -> Tasks -> Settings -> General -> Startup and Window Behaviour
Microsoft® Windows® Operating System
Shows the Welcome Center every time you boot into Windows Vista
Microsoft's System Module
Added by the FJ TROJAN!
Microsoft(R) System Manager
Added by the AGENT.QTR TROJAN!
Microsoft--Updates
Added by the RBOT-FH WORM!
Microsoft-software
Added by a variant of the RBOT WORM!
Microsoft-Update
Added by the RBOT-JV WORM!
Microsoft-Updates
Added by the RBOT-CT WORM!
Microsoft.exe
Added by a variant of the IRCBOT TROJAN!
Microsoft32
Added by an unidentified WORM or TROJAN!
microsoft420
Added by the MENACE.B WORM!
Microsoft64
Added by the SOBER WORM!
Microsoft? ActiveX Debugger NT
Added by the BANCOS-CZ TROJAN!
Microsoft? PID Lex
Added by the NIOVADOOR TROJAN!
Microsoft? System Mapper
Added by the MAPSY TROJAN!
MicrosoftDriverService32
Detected by Trend Micro as the IRCBOT.AKX TROJAN! See here
Microsoftf DDEs ContDLL
Added by the RBOT-AGF WORM!
Microsoftf DDEs ContrDL
Added by the RBOT-AFQ WORM!
Microsoftf DDEs Control
Added by the RBOT.BOF WORM!
Microsoftf DDEs Control
Added by a variant of the RBOT WORM!
Microsoftf DDEs Control
Added by the RBOT-AKH WORM!
Microsoftf DDEs Control
Added by the RBOT-AMV WORM!
Microsoftf DDEs Control
Added by the RBOT-AXT WORM!
Microsoftf DDEs Control
Added by the RBOT-AIM WORM!
Microsoftf DDEs Control
Added by a variant of the RBOT WORM!
Microsoftf DDEs Control
Added by a variant of the RBOT WORM!
Microsoftkeysd
Added by the FORBOT-BI WORM!
Microsoftkeysd
Added by the WOOTBOT.CO WORM!
Microsoftkeysds
Added by a variant of the RBOT WORM!
MicrosoftKs
Added by the SHUTDOWN-F TROJAN!
microsoftm eegs cuntrol
Added by a variant of the RBOT WORM!
MicrosoftMessenger
Added by the DARKER.M WORM!
Microsoftmsn32.exe
Added by the CERTIF-C TROJAN!
MicrosoftMultimediaTask
Adware downloader - not the valid MusicMatch Jukebox which shares the same filename
MicrosoftNetwork Daemon for Win32
Added by the RANDEX.F WORM!
MicrosoftOEM
Added by the DEDLER-G TROJAN!
MicrosoftROMDriverService
Detected by Kaspersky as the IRCBOT.BLF TROJAN! See here
Microsofts media
Added by an undidentified WORM or TROJAN!
Microsofts media
Added by the RBOT-VO WORM!
Microsofts MediaScope
Added by the RBOT-WB WORM!
Microsofts MediaScope
Added by a variant of the RBOT WORM!
Microsofts Security Manager
Added by the RBOT-WH TROJAN!
Microsofts Service
Added by a variant of the RBOT WORM!
Microsofts Updates
Added by the RBOT-AEX WORM!
Microsofts Updatez
Added by an unidentified VIRUS, WORM or TROJAN!
Microsofts Updatez
Added by a variant of the RBOT WORM!
MicrosoftServiceManager
Added by the YAHA.P WORM!
MicrosoftServiceManager
Added by the YAHA.U WORM!
MicrosoftServiceManager
Added by the YAHA.AB WORM!
MicrosoftServiceManager
Added by the YAHA.AA WORM!
MicrosoftShell
Added by the BANCBAN-QG TROJAN!
MicrosoftSourceSafe
Added by the WEBUS.B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the System folder
MicrosoftSys
Added by the TARNO.N TROJAN!
MicrosoftUpdate
Added by the WOOTBOT.AC WORM!
MicrosoftUpdate
Added by an unidentified VIRUS, WORM or TROJAN!
MicrosoftUpdate
Added by the BANKER-EHC TROJAN!
MicrosoftUpdate
Added by the RBOT-IH WORM!
MicrosoftUpdate
Added by the DLOADR-BMV TROJAN!
MicrosoftUpdates
Added by the DELF-LO TROJAN!
MicrosoftValue
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:windowsfonts (or C:winntfonts) directory where no *.exe files should reside
Microsoftvirus
Added by the FORBOT-AL WORM!
MicrosoftWindows
MagicSearch - a CoolWebSearch parasite variant
MicrosoftWindows
Added by the KILLPAR-B TROJAN!
MicrosoftXP Service Pack 2
Added by the RBOT.EMC WORM!
Microsoftz turn Control
Added by the SDBOT.BCO WORM!
Microsoftz turn Control
Added by the RBOT-AFS WORM!
Microsong
Added by the SDBOT-EV WORM!
Microsot NT Support
Added by the RBOT-CTI WORM!
microsystem
Detected by Kaspersky as the VB.AXG TROJAN!
Microszoft Update Mach1nezs
Added by the RBOT-ED WORM!
Microtek Scanner Finder
Monitors whether a scanner is present. Provided with Microtek scanners
Microzoft_Ofiz
Added by the AMUS.A WORM!
Micrsft Updese
Added by a variant of the IRCBOT BACKDOOR!
Micrsoft CFG 32
Added by a variant of the AGOBOT/GAOBOT WORM!
Micrsoft DerSystem
Added by the RBOT-GRI WORM!
Micrsoft Driver
Added by the SDBOT.AF TROJAN!
Micrsoft Driver
Added by the SDBOT-XD WORM!
Micrsoft Internet Explorer
Added by the RBOT-AQV WORM! Note the number "0" in the filename
Micsoft-Published-Software
Added by the RBOT-GFL WORM!
Micsorosft Security Center
Added by the RBOT-AHU WORM!
MightyFAX Controller
Mighty FAX from RKS Software - "installs a printer driver so that you can fax directly from Windows software"
MigrationVendorSetupCaller
??
Military Net Killer
Added by the MILLNET-A WORM!
MilShieldSlave
Mil Shield from Mil Incorporated. It protects your privacy by removing all tracks from your online or offline computer activities
MimBoot
Starts Musicmatch Jukebox at bootup - can be started manually
Mincer
Added by the MINCEME-A WORM!
Mindful
Mindful from Felitec inc. "Event reminder software with date and time tools in a simple to use system tray application"
MINIBUG
Displays ads inside Weatherbug - see here
MiniEYE-MiniREAD Launch
eyeQ - improve your reading speed
MINIFERT.EXE
Part of Backweb
minilog
If you don't have ZoneAlarm or ZoneAlarm Pro running you don't need this. This must be enabled if programs such as VisualZone Report utility or ZoneLog Analyzer are in use
MiniMavis
Mavis Beacon typing tutor
minimo
Added by the MOSUCK-X TROJAN!
MiniNote
Mini NoteTab was the first in the family of "NoteTab" text and HTML editors from Fookes Software
Miniphone
VoiceGlo Glophone Voice over Internet Protocol (VOIP) communications software - "an affordable and convenient way to call friends and family throughout the world using a dial-up or broadband Internet connection on your computer" - is it required in startup?
miniport
Added by the LAZAR-A TROJAN!
MiniPortRt
Malware - see here
MiniReminder
"MiniReminder is a small, fast, and simple program for Microsoft Windows to remind yourself of important yearly events, like birthdays, anniversaries, renewals, etc"
MiniServer.exe
Added by the LITTLEW-E TROJAN!
MinMaxExtender
MinMaxExtender - window handling tool
Mioft Wiws Seice ent
Added by the RBOT-GIJ WORM!
Miosf Update
Added by the SDBOT.AG TROJAN!
MioSync
Related to Mio GPS navigation devices
Mirabilis ICQ
If connected to the internet, automatically runs up ICQ. Convenience more than anything. ICQ can be started from Start -> Programs
Mirabilis ICQ
If connected to the internet, automatically runs up ICQ. Convenience more than anything. ICQ can be started from Start -> Programs
Mirabilis ICQ
If connected to the internet, automatically runs up ICQ. Convenience more than anything. ICQ can be started from Start -> Programs
Miramar Systems, Inc.
Miramar PC/Mac networking software
Miranda IM
Miranda instant messaging client
Mirate Sp 2 Information
Added by the RBOT.QH WORM!
Mircosoft DNS Service
Added by the IRCBOT-AK TROJAN! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "drivers" subfolder
Mircosoft Sockets SP2
Added by the MYTOB.ET WORM!
Mircosoft Update
Added by a variant of the SDBOT WORM!
Mircrosoft Svchost32
Added by the RBOT-AZW WORM!
Mircrosoft Windows Config DLL
Added by the RBOT-ZY WORM!
miroVIDEO Tray Tool
Tool for quickly changing options for miro/Pinnacle capture cards during capture/playback/output. When this program is closed, another program (mv-ctrl) is also closed, but mv-ctrl does not have its own EXE file. Only needed when using the capture card, e.g. for the above actions
Mirra
Mirra Personal Server from Seagate Tech - "a powerful hardware/software solution that integrates high-capacity storage with content protection, remote access, sharing and multi-computer synchronization"
MirrorFolderShell
MirrorFolder backup software
Mirsoft sdcE
Added by the RBOT-AWY WORM!
Mirsoft sdcE
Added by the RBOT.DFQ WORM!
Miscrosoft Windows Explorer
Reported as the SDBOT.YX WORM!
misiCTRL
Miro video driver related. Is it required?
misiTRAY
Miro video driver related. Is it required?
Mismo
Added by the RBOT-JP WORM!
Mixer
C-Media Mixer - C-Media produce audio chipsets that are often found on popular motherboards with on-board audio. Provides System Tray access to change audio settings. Available via Start -> Settings -> Control Panel or Start -> Programs
Mixersel
Configuration for Realtek audio devices
Mixghost
Management software for Altec Lansing speakers. If a change is needed, the user can launch it from the Start menu
MJ
Added by the AGENT.HAA TROJAN
mjc
Detected by Trend Micro as the AGENT.AKCI TROJAN! See here
ml00!.exe
Malware, detected by Panda Antivirus as Trj/Downloader.BWD
ML1HelperStartUp
ScreenScenes "Midnight Lake" screensaver. The freeware version comes with GAIN branded ads (pop-ups and others). ScreenScenes do however offer you the option of doing away with the ads by purchasing the screensaver for a whopping $30. Please note that Claria Corporation no longer support GAIN-Supported software - see here
ML1HelperStartUp
ScreenScenes "Midnight Lake" screensaver. The freeware version comes with GAIN branded ads (pop-ups and others). ScreenScenes do however offer you the option of doing away with the ads by purchasing the screensaver for a whopping $30. Please note that Claria Corporation no longer support GAIN-Supported software - see here
ml34
Added by the MAILBOT-BH TROJAN!
Mlcr0s0ftf DDEs C0ntr0i
Added by the RBOT-BJW WORM!
mlibsysmc
Added by the SDBOT-CXS WORM!
mload
Added by an unidentified VIRUS, WORM or TROJAN!
MM Install
Possibly Money Manager from Moneysoft?
MMB2
Added by an unidentified WORM or TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
MMC
Added by the OSCABOT-I WORM!
mmcndmgr
Added by an unidentified VIRUS, WORM or TROJAN!
MMCWINMGMT
Used for Enterprise Management. If you are not an IT Administrator you don't need it to be running. Also runs from the PCHealth "scheduler" - refer here
mmemdrv
SecondSight spyware. Note - SecondSight is spyware that captures keystrokes and screen shots, and logs user activity on the compromised computer. The risk can then send the logged information to a remote attacker via email, must be manually installed
MMERefresh
Part of Digidesgin Protools. Refreshes your midi ports on the 002(R) (the 002R is a hardware audio/midi converter connected to your computer via firewire). Must be running in order to use the MIDI functionality of the Digi002R
Mmessenger
Added by the AGOBOT.GM WORM!
Mmgsvc
Mmgsvc spyware
MMhid
This is the Human Interface Device Server for Win98, it is required only if you are using USB Audio Devices you can disable via Msconfig. See here. Typical examples are USB multimedia keyboards with volume control and web-ready keyboards. For example - loaded by default with MS DSS80 Speakers because they have Volume, Mute and Bass controls on the speaker. Some users may experience problems disabling this - if this is the case then re-enable it. Equivalent to Hidserv in Win98SE/2000/Me/XP
MMHK
A driver found on a Compaq Presario 800T notebook. Possibly something to do with multimedia hot keys?
MMHotKey
Multimedia key handling for the relevant type of Turbo-Media keyboard. Shortcut available. Note that with this running it can crash DirectX8/9 under WinXP when a game switches to full-screen
MMicrosoft Security Management
Added by the RBOT.AFZ WORM!
MMKeybd
Multimedia keyboard manager. Required if you use the additional keys
Mmm
Hace Mmm - free utility to configure your Windows menus and move and remove menu-items you never use
mmod
eZula TopText adware
mmpti
Mpact Mediaware Properties Taskbar Icon - multimedia software icon for Chromatic Research Mpact video cards
MMReminderService
Mind Manager from Mindjet - "easy way to organize ideas and information". Registration reminder
MMRun
??
mmsass
Added by a variant of the SDBOT WORM! See here
mmsddlx
Added by a variant of the SLAPER TROJAN!
mmsys
??
MMSystem
Added by the FUNNER-A WORM!
MMTASK
A check on the file's properties reveals "Multimedia background task support module". MMTASK is a very simple 16-bit program used by certain multimedia drivers (which are still 16-bit on Win9x) to perform background processing. Some soundcards need this to support MIDI, etc
mmtask
Part of MusicMatch Jukebox - digital music player / CD burner and ripper / music organizer / playlist creator
MMtask Service
Added by the BACKGAT.A TROJAN! Not the valid MusicMatch Jukebox which has the same filename
MMTray
MusicMatch Jukebox icon in the task tray - digital music player / CD burner and ripper / music organizer / playlist creator
MMTray
Part of Morgan Multimedia Codecs. Only required when the codecs are used
MMTray2K
Part of Morgan Multimedia Codecs. Only required when the codecs are used
MMTrayLSI
Part of Morgan Multimedia Codecs. Only required when the codecs are used
mmusrstp
??
mmxp2passion.exe
MediaMotor adware
mmxrun
Added by an unidentified TROJAN or WORM!
mmxrun
TwoSeven spyware
mm_server
Part of MusicMatch Jukebox - digital music player / CD burner and ripper / music organizer / playlist creator
mnklins
VX2.Transponder parasite updater/installer related
MNPol
Added by the DLUCA.B TROJAN!
MNS
Mobile Net Switch enables you to use your computer on more then one network with the click of a button. It allows you to automatically select the correct drive mappings, printer settings, IP settings and much more
mnsa
Added by the LINEAG-AI TROJAN!
mnsvc
Added by the AUTOUPDER TROJAN!
mnsvcsp
Added by an unidentified VIRUS, WORM or TROJAN!
mnu
Wanadoo broadband ISP (now rebranded as Orange) related. What does it do and is it required?
Mobile Phone Suite
Logitech Mobile Phone Suite
mobile PhoneTools
Motorola Phone Tools
Mobipocket Reader Notifications
Part of Mobipocket Reader - "Store all your eBooks, eNews & self-published eDocs on your PC. Download eBooks in Mobi format from your favorite ebookstores to read on your smartphone, PDA, laptop or on your desktop PC"
Mobipocket Web Companion
Related to Mobipocket eBook Reader
mobsync
MS Syncrhonization Manager - updates the network copy of materials that were edited offline, such as documents, calendars, and e-mail messages
MOBSYNC32.EXE
Added by the FINERO TROJAN!
MOD
Using MicroAngelo On Display, you can easily select the icon images that you prefer rather than the default icons displayed by Windows. On Display provides a consistent and elegant method to customize the icon display for almost every icon on your system
Modem
Added by a variant of the SPYBOT WORM!
Modem Driverz Updates
Added by a variant of the SDBOT WORM!
MODEMBTR
Modem Booster from inKline Global to improve ISP connections
Modeminf
Added by a variant of the CRYPTER.C TROJAN!
ModemOnHold
NetWaiting/Modem-on-Hold - allows you to place your Internet connection on hold while you take a voice call (if Call Waiting is supported by your phone company). See here for more information
ModemOnHold
NetWaiting/Modem-on-Hold - allows you to place your Internet connection on hold while you take a voice call (if Call Waiting is supported by your phone company). See here for more information
ModemUtility
System Tray configuration icon for Aztech modems
Modifiet Amateur HTPB
Detected by Trend Micro as the IRCBOT.AYS WORM! See here
ModPS2
Hotkey drivers for Chicony keyboard. Required if you use the hotkeys
ModularConfig
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:windowsfonts (or C:winntfonts) directory where no *.exe files should reside
Module Call initialize
Added by the LOVGATE.C WORM!
Modulo 00FE0F01 Host Internet
Added by the DELF-KW TROJAN!
MonAppli
Detected by Kaspersky as the DELF.IF TROJAN! See here
Money Express
Part of MS Money. Available via Start -> Programs
MoneyAgent
Part of MS Money. Available via Start -> Programs
MoneyAgent
Microsoft Money
MoneyStartUp
Microsoft Money
MoneyStartUp10.0
Part of MS Money 2002. Available via Start -> Programs
monitor
Browser hijacker, redirecting to NCM Search
Monitor
"Transfer data quickly between your memory card and your computer with SanDisk's Readers, Writers and Adapters"
Monitor Apache Servers
Part of the Apache Web Server package. Useful only if you're running such a server on your PC. Available via Start -> Programs
Monitor Helper
MyLittleSpy keystroke logger/monitoring program - remove unless you installed it yourself!
Monitoring Service
Added by the CONE.C WORM! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "tasks" subfolder of the Winnt or Windows folder
Monitormgt
Added by the GEMA TROJAN!
MonitorSD
Spyware Detector - spyware remover. Initially not recommended due to false positives but the later versions have since improved - see here
MONPluginSrIvcs
Added by a variant of the RBOT WORM!
Monstersoundtray
Diamond Multimedia sound card control panel
MonTest
Added by the SDBOT-EA WORM!
MoodBook
MoodBook is a free Windows utility that brings art to your desktop
moon phase
Moon Phase - tray icon that indicates the phases of the moon
MoreContent
MatrixDialer related. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in the Winnt or Windows folder
MoreResults
MoreResults adware
Morpheus
MusicCity Networks' Morpheus - another peer-to-peer client based on Kazaa. Notable in that this one doesn't seem to install the adware that clog the Kazaa download. They claim they are adware free, and a visitor quotes "I have seen no instance of any since using it"
morphstb
Adware - detected by Kaspersky as the STUBBY.C TROJAN!
mosearch
Fast Search in Office XP - similar to the new revision of the Find Fast feature in Office 2000. Fast Search uses the Indexing Services in Office XP to create a catalog of Office files on your computer's hard disk. As with Find Fast - a waste of resources. If it can't be disabled via MSCONFIG try here
Motherboard Config
Added by the RBOT-AIK WORM!
MotherBoard Sounds
Added by the RBOT-AAP WORM!
Motive SmartBridge
System tray icon for the Virtual Assistant from AT&T Broadband, used to communicate internet problems via the network rather than telephone. Available via desktop shortcut or Start -> Programs - not required
Motive SmartBridge
System tray icon for the Virtual Assistant from AT&T Broadband, used to communicate internet problems via the network rather than telephone. Available via desktop shortcut or Start -> Programs - not required
Motive SmartBridge
System tray icon for help from BT Broadband, used to communicate internet problems via the network rather than telephone. Available via desktop shortcut or Start -> Programs - not required
MotiveMonitor
Found on HP/Dell and Compaq systems (and maybe others). MotiveMonitor is used?the suppliers on-line support and allows the agent at the far end to do harddrive/ram/video/etc tests on the computer. Can cause some users problems with IE and Netscape by disabling this - in this case leave it to run. You may also wish to leave it alone if the PC is still within the support period from the manufcaturer. For most users it's not required
MotiveSB
System tray icon for the Virtual Assistant from AT&T Broadband, used to communicate internet problems via the network rather than telephone. Available via desktop shortcut or Start -> Programs - not required
MotMon
Found on HP/Dell and Compaq systems (and maybe others). MotiveMonitor is used?the suppliers on-line support and allows the agent at the far end to do harddrive/ram/video/etc tests on the computer. Can cause some users problems with IE and Netscape by disabling this - in this case leave it to run. You may also wish to leave it alone if the PC is still within the support period from the manufcaturer. For most users it's not required
motoin
Delfin Promulgate adware variant
Motorola Desktop Suite
Related to Motorola Desktop Suite - PC software managing Motorola mobiles such as the A1000
Motorola Desktop Suite mRouter Config
Configuration for Intuwave's mRouter - "that enables easy connectivity between mobile devices and PCs across Bluetooth, Infrared, USB and serial cable connections". An integral component of Symbian OS that is provided to all Symbian licensees
Motor_Tracking_Tool
Sweex Motion Tracking Webcam utility. "The motion tracking function ensures that the camera can follow all your movements. So you can move and chat, without disappearing from view"
Mount Safe & Sound
From McAfee VirusScan version 5.x. Creates back-up sets of critical files in a separate area of a hard drive. If you make regular back-ups it's not needed and can be painful during system start
mount.exe
Part of "GiPo@FileUtilities - GiPo@Mount "Provides advanced substitutional and mounting services. It allows to attach a local drive to an empty folder on an NTFS volume (only for Windows 2000/XP) and to substitute a local folder for a drive letter"
mouse
Added by the RBOT-AHJ WORM!
Mouse 32A
Mouse utility. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
Mouse Suite 98 Daemon
Mouse driver. Appears to cause a behaviour where the desktop suddenly flips back up when playing DirectX associated games
Mouse Suite 98 Daemon
Found on some Sony Vaio, IBM Thinkpad and Dell (and possibly other) laptops and seems to be related to Mouse Suite 98 Daemon according to the properties. Required on the Dell Inspirion 530 as without it the Dell mouse suite does not load and mouse settings are not retained on a reboot. Appears to cause a behaviour where the desktop suddenly flips back up when playing DirectX associated games
mousebut
Added by the CRYPTER.A TROJAN!
Mousecntl
Added by a variant of the CRYPTER.C TROJAN!
MouseCount
MouseCount by Kittyfeet Software. "Utility for counting how many times us computer junkies click our mouse in a given session/day/week/month/year." Not required
MouseDrv
Added by the ZOLOAD-B WORM!
MouseDrv
Added by the ZOTOB.N WORM!
mouseElf
Genius NetScroll mouse driver - required if you use non-standard Windows driver features
mouseElf
System Tray access to the mouse control panel for Genius Netscroll mice. Required if you use non-standard Windows driver features
MouseImp
MouseImp Pro - "A reliable assistant that turns your mouse into a simple, native but powerful controlling device"
mousepad
Added by the CLICKER TROJAN!
Mousinfo
MS mouse information tool - for troubleshooting mouse problems
MoussaEvil
Added by the MUSANUB-A WORM!
MoveSearch
PigSearch adware
Movielink Manager Uninstall
Auto-update for Movielink - internet movie rental System Tray access
MovieM
Added by the BEAGLE.DS WORM!
moviemk
Added by the DWNLDR-GTB TROJAN!
MovieNetworks
MovieNetworks will connect you by DOMESTIC PREMIUM RATE TELEPHONE NUMBER 900-xxx-xxxx. So you get xxx rated pictures and junk. And it will allow you to stay on the internet on their line and $$$ and remove the C:Program FilesMovieNetworks directory
Movieplace
MoviePlace malware
Mozila
Added by the DELBOT-AJ WORM!
Mozila Firefox
Added by the RBOT-AIP WORM!
Mozilla Firebird v0.8 Internet Browser
Added by the IRCBOT.MC TROJAN!
Mozilla Firefox
Added by a variant of the SDBOT WORM!
Mozilla Quick Launch
Netscape 6 and Mozilla browsers
Mozilla Quick Launch
Netscape 6 and Mozilla browsers
mozilla_cleanup
Firefox Mozilla cleans up after installation. It is invoked on a restart after installation, to remove the bits and pieces resulting from the installation
Mozy Status
Mozy - free backup at a secure, remote location
MP Tcloakss
Added by the NACKBOT-B WORM!
MP Tcloaxs
Added by the RANDEX.CT WORM!
MP Tclockvv
Added by the NACKBOT-A WORM!
MP Tclockvv
Added by the NACKBOT-A WORM!
MP3 CD Extractor
"MP3 CD Extractor is an audio CD to MP3 ripper which can extract Digital Audio tracks from Audio CDs into files on the hard disk"
Mp3 Loader
Added by the AVETTE-A VIRUS!
MP3Collection
MatrixDialer related. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in the Winnt or Windows folder
MP3download
MatrixDialer related. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in the Winnt or Windows folder
MP3freeDownload
MatrixDialer related. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in the Winnt or Windows folder
MP4 Player
MP4 Player allows you to view MP4 videos. Marked as undesirable due to the fact that it changes your homepage to a custom Google search engine, changes your browser's default search provider, and runs hidden in the background. Terms of use also state that it collects and tracks urls you visit in order to display relevant ads
MPatrolPRO
Malware Patrol Pro rogue spyware remover - not recommended, see here
MPEO
Automatic logging of installs from Norton CleanSweep - available via Start -> Programs
MPFExe
McAfee Personal Firewall
MPFExe
McAfee Personal Firewall
MPFTray
McAfee Personal Firewall
MPL32 driver
Added by the LOONY-M TROJAN!
MPlay64
Added by the MPLAY64 TROJAN!
MplSetup
Used by Ricoh network printers to enable network printing from the client
MPM Manager
Added by the DONBOMB.A TROJAN!
MPNet
Added by the DELBOT-W WORM!
MPower
MPower from MindBeat. "Defragments and frees your RAM giving more stability to your system and avoiding needless use of swap file. Willl also benchmark (speed test) your hard disk drives and your CPU load". MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind
mppdds
Added by the PWS-AKZ TROJAN!
mppds
Added by the LEGMIR.AQZ TROJAN!
MPR MSG
Added by the MYTOB.CF WORM!
MPREXE
Added by the OPASERV.T WORM! Note - this is not the legitimate Mprexe.exe system file
MPREXE.exe
WIN32 Network Service Interface Process. MPREXE.exe enables the computer to have multiple clients/protocols for networks. There are some problems with it sometimes though - see here. Note - why some people have it listed in start-up programs I don't know but I was asked to include it here. It automatically runs in the background. NOTE : sometimes it will appear in start-ups if you have a virus
MprHTML
Added by a variant of the VAGRNOCKER TROJAN!
mprocessor
InstallDollars.com foistware
MPSExe
McAfee.com Privacy Service - "combines personal identifiable information (PII) protection with online advertisement blocking and content filtering"
MpsOnn
Canon printer driver
MPT
??
MPtask Services
Added by the LALA or AOT TROJANS!
MPTBox
Cannon Multi-Pass toolbox - a button bar
mptsgsvc.exe
Hacker Tool - detected by DiamondCS TDS-3 anti-trojan as "HackTool.Win32.Hidd.j"
MPXTray
Windows Media Player PowerToy which is run from the taskbar. It can be used to hide Windows Media Player (when in use) and choose various standard buttons (play/pause, next,previous) etc
MP_STATUS_MONITOR
Cannon Multi-Pass status monitor - your choice
mqbkup
Added by the OPASERV.K WORM!
MQT Svc
Added by a variant of the IRCBOT BACKDOOR! See here
mrsvctr
Added by a variant of the SDBOT WORM!
MRT
Microsoft's Malicious Software Removal Tool
mrtMngr
Maintenance Release Task Manager for Intuit's QuickBooks or Quicken
MRU-Blaster Scheduler
Scheduler for MRU-Blaster - "a program made to do one large task - detect and clean MRU (most recently used) lists on your computer"
MRU-Blaster Silent Clean
MRU-Blaster - performs silent cleaning of MRU lists at boot
MRUBlaster
MRU-Blaster related - runs once in order to delete the index.dat file in the Temporary Internet Files and/or Cookies folder
Mr_CoolFace_Game
Added by the ROMARIO-A WORM!
ms
Added by the LEGMIR-AQO TROJAN!
MS Agent Protection
Detected by Kaspersky as the IRCBOT.AZ BACKDOOR! See here
MS Auto-IPSec Protection
Added by the RBOT-AER WORM!
MS Autoloader 32
Added by the SPYBOT.BD WORM!
Ms Builders
Added by the AGOBOT-SS WORM!
MS Config
Added by the RBOT-CZH WORM!
MS Config Loader
Added by the AGOBOT.R WORM!
MS Config Loader
Added by the GAOBOT.AA WORM!
MS Config Loader
Added by a variant of the RBOT WORM!
MS Config Service
Added by the RBOT-KJ WORM!
MS Config v12
Added by the AGOBOT.YP WORM!
MS Config v13
Added by the GAOBOT.AOL WORM!
MS Config v13
Added by the AGOBOT.YQ WORM!
Ms configsu
Added by a variant of the SDBOT WORM!
MS Configuration
Added by the RANDEX.OL WORM!
Ms Configuration
Added by the KELVIR.X WORM!
MS DATABASE
Added by a variant of the SDBOT WORM!
MS Decryption Software
MediaTickets adware variant
MS DirectX Sound Drivers
Added by the RBOT.BCX WORM!
MS DLL Library Manager
Added by the RANKY TROJAN!
MS Domain Name Server Deamon
Added by the RBOT-CMZ WORM!
MS Domain Name System
Added by the RBOT-GKY WORM!
MS DVD DirectX Dll Drivers
Added by the SDBOT-XI WORM!
MS DVD DirectX Sound Drivers
Added by the SDBOT-XJ WORM!
MS Explorer
Added by the YAHA.AE WORM!
MS FIREWALL
Added by the SDBOT-PU WORM!
MS FIREWALL
Added by the SDBOT-QH WORM!
MS Host
Added by the CHECKOUT WORM! See here
MS Host Manager
Added by the RBOT-BJN WORM!
MS Hosts
Added by a variant of the IRCBOT TROJAN! See here
MS HTML
Added by the PESTDOOR.31 TROJAN!
MS HTML
Added by the LATINUS.SVR TROJAN!
MS HTML Location Class
Added by the RBOT-YD WORM!
MS Initial
Detected by Trend Micro as the IRCBOT.ASP WORM! See here
MS Internet Executor 32
Added by the RBOT-AEQ WORM!
MS Internet Explore
Added by a variant of the RBOT WORM!
MS Java Applets for Windows NT & XP
Added by the RBOT.BHG WORM!
MS Java Applets for Windows NT, ME & XP
Added by the VANEBOT-B WORM!
Ms Java for Windows 98, NT, ME & XP
Added by the RBOT.BHJ WORM!
Ms Java for Windows 98, NT, XP & ME
Added by the BACKDOOR.GEN TROJAN!
Ms Java for Windows NT
Added by the VANEBOT-H WORM!
Ms Java for Windows NT
Added by the VANEBOT-I WORM!
Ms Java for Windows NT
Added by the VANEBOT-E WORM!
Ms Java for Windows NT
Added by the RBOT.AFX WORM!
MS Java for Windows NT, XP & ME
Added by the KASSBOT-V WORM!
MS Java for Windows XP & NT
Added by the VANEBOT-A WORM!
MS Java Service Wrapper for Windows NT & XP
Added by the VANEBOT-D WORM!
Ms Java Update For Windows NT/XP
Added by the RANDEX.AF WORM!
MS Java virtual machine
Added by the RBOT.ABG WORM!
MS LARISSA
Added by the ASSIRAL.B WORM!
MS lsass Startup
Added by the RBOT.WM WORM!
MS management console
Suspicious as the legitimate "Microsoft Management Console" is "mmc.exe" and not "mms.exe" and doesn't normally run at startup
MS Microsoft Socket Deamon
Added by a variant of the RBOT WORM!
MS MSN Menssenger 7.0
Added by the RBOT-ACA WORM!
MS MSN Menssenger 7.0
Added by a variant of the SDBOT WORM!
MS Network Control
Added by the DUMBA TROJAN!
ms ownage
Added by the RBOT-AJL WORM!
MS Paint
Added by a variant of the IRCBOT BACKDOOR! See here
MS PLUS INC
Added by the MYTOB-AN WORM!
Ms Processe Manager
Added by the RBOT.ATO WORM!
MS Real Player
Added by the RBOT.MR WORM!
MS Registry Service
Added by the RBOT-AKP WORM!
MS Remote Procedure Call
Added by the RBOT-QL WORM!
MS Screen Saver
Added by the RBOT-AGT WORM!
MS Security
Added by the RBOT-AQN WORM!
MS Security Authority Service
Added by the KALEL-B WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the System folder
MS Security Hotfix
Added by the GAOBOT.AG WORM!
MS Security Update 993
Added by a variant of the SDBOT WORM!
MS service
Added by the RBOT-ZG WORM!
MS Service Drivers
Added by the SDBOT-COG WORM!
Ms sock for Windows NT
Added by a variant of the SDBOT WORM!
MS Sound Config 16bit
Added by the SDBOT.MB TROJAN!
Ms Sound Drivers
Added by the SDBOT-WR WORM!
ms spool service
Added by a variant of the RBOT WORM!
Ms Spool32
Added by the ASASSIN TROJAN!
MS SyS Restore
Added by the RBOT.XM WORM!
MS Sys Security
Added by the RBOT-APJ WORM!
MS System Call Function
Added by the RBOT-GBZ WORM!
Ms System Config
Added by the SDBOT-CCR WORM!
Ms System Config
Added by a variant of the SDBOT WORM!
MS System Security
Added by the RBOT-AOX WORM!
Ms task manager
Added by the SDBOT.CCD WORM!
MS Task Manager 32
Added by the RANKY.DE TROJAN!
MS taskbar
Added by the RBOT-AGO WORM!
MS taskbar
Added by the RBOT-AGB WORM!
MS taskbar
Added by the RBOT.BRW WORM!
MS Taskbars
Added by the SDBOT-ACV WORM!
MS taskmanager
Added by the RBOT-AKA WORM!
MS Time
Added by the AGOBOT.ADY WORM!
MS UniX
Added by a variant of the RBOT WORM!
MS Unix Binary
Added by the SPYBOT.OQ WORM!
MS Unix Binary
Added by the RBOT-YF WORM!
MS Unix Binary
Added by the RBOT-AAM WORM!
MS Unix Binary
Added by the RBOT-YU WORM!
MS Unix Binary
Added by the RBOT-BAS WORM!
MS Unix Binary
Added by a variant of the RBOT WORM!
MS Unix Binary
Added by the RBOT-ACC WORM!
MS Unix Binary
Added by the RBOT-ACL WORM!
MS Unix Binary
Added by a variant of the RBOT WORM!
MS Update
Added by the EVAMAN-F WORM!
Ms Update WinServices NT/XP
Added by the VANEBOT-G WORM!
MS Updates
Spyware web downloader
MS Updates
Added by the MYDOOM.Y WORM!
MS Updates
Spyware web downloader
MS Updating Utility
Added by the RBOT-XR WORM!
MS USB 2.0 Windows Support
Added by a variant of the RBOT WORM!
Ms Valud Loader
Added by the AGOBOT-SP WORM!
MS Win32 Network Services
Added by the AGOBOT.ADH WORM!
ms window update
Added by a variant of the RBOT WORM!
MS Windows AOL Driver
Added by the RBOT-ASP WORM!
MS windows Data list process
Added by an unidentified WORM or TROJAN!
MS Windows Executor Process
Added by a variant of the RBOT WORM!
MS Windows Local Directory
Added by a variant of the RBOT WORM!
MS Windows procces 32
Added by the RBOT-AEZ WORM!
MS Windows Process Class
Added by the RBOT-YQ WORM!
MS Windows Process Init
Added by the RBOT-ASQ WORM!
MS Windows Security Updater
Added by the RBOT-AKY WORM!
MS Windows System Alert
Added by the RBOT-BFN WORM!
MS Windows TASK Service
Added by a variant of the RBOT WORM!
MS Windows Update
Added by the RBOT-YZ WORM!
MS WINS Binary
Added by the RBOT-ASB WORM!
MS Winsock
Added by the AKBOT-A TROJAN!
ms************* [* = random digit]
WINBO adware
Ms**.exe [* = random char]
CoolWebSearch/HomeSearch adware - for examples, see this log
Ms**32.exe [* = random char]
CoolWebSearch/HomeSearch adware - for examples, see this log
MS-Connect
Adult content dialler - see here
MS-Connect
Adult content dialler - see here
MS-Connect
Adult content dialler - see here
MS-Connect
Adult content dialler - see here
MS-Connect
Adult content dialler - see here
MS-DOS Boot Service
Added by the RBOT-AMF WORM!
MS-DOS Security Service
Added by the RBOT-AMR WORM!
MS-DOS Service
Added by the RBOT-AII WORM!
MS-DOS Windows Service
Added by the RBOT-AJW WORM!
MS-HTML
Added by the LATINUS.15 TROJAN!
MS-patch
Added by the RBOT-AUF WORM!
MS-patch
Added by the RBOT-AWF TROJAN!
MS-RunKey
MS-Connect dialler/hijacker
ms2src
Added by a TROJAN - see here
MS32DLL
Added by the ACHI-A TROJAN!
MS32DLL
Added by the BUTSUR-A WORM!
MS32DLL
Added by the ZODGILA WORM!
MS7531
Homepage hijacker
MSACM
Added by the OPASERV-O WORM!
msadcheck
Browser hijacker, redirecting to search-system.com
MSAdmin
Added by the DASMIN.A TROJAN! Note - this is not the valid JDBGMGR.EXE file - see here
MSAgent
Browser hijacker - redirecting to buldog-search.com
MSAgent
Added by the AGENT.JI spyware
MSAgentXP
Reported by Ewido Security Suite as TrojanDownloader.Reqlook.c
msaim
MessageSpy keystroke logger/monitoring program - remove unless you installed it yourself!
msappts32
Added by the ELBURRO-A TROJAN!
MsAudio
Added by the LEGMIR-BY TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
MsAudio
Added by the LEGMIR-BY TROJAN! Note - this is not associated with C-Media based audio which uses a similar command entry (see here)
msavsc.exe
Detected by Kaspersky as the AGENT.ANQ TROJAN! See here
MSbackups
Added by the BANLOAD-TL TROJAN!
MSBB
Advertising spyware
msbcs
Added by the DADOBRA-G TROJAN!
MsBootMgr.exe
Added by the VERIFY TROJAN!
msbsc
Added by the BANKER-DF TROJAN!
msccrt
Added by the PWS-ALA TROJAN!
mscheck
Detected by Trend Micro as the AGENT.ADXH TROJAN! See here. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "wincheck071008.dll" file is found in the System (9x/Me) or System32 (NT/2K/XP) folder
mschkdf.exe
Added by a variant of the SDBOT WORM!
MSChoExE
Added by a variant of the RBOT WORM!
msci
McAfee Internet Security related. What does it do and is it required?
mscman
ClientMan parasite variant
mscn
Part of the SafeChildNet internet filtering program - required if you use it
Mscnt
Added by the DLUCA-C TROJAN!
Mscolour
Added by the GEMA TROJAN!
MSCommX
Added by a variant of the RBOT WORM!
Msconf32
Added by the AGOBOT-NR WORM!
MSCONFG32.EXE
Added by the OPTIX.04.C TROJAN!
MSConfig
Entry that appears when you uncheck an item in the MSConfig Startup group, and will disappear if on the next reboot you select the option to not be reminded that you are running in Selective Startup mode
MSConfig
Added by the SPYBOT.B WORM!
msconfig
CoolWebSearch parasite related. Note - this is not the legitimate msconfig.exe which should only appear in Msconfig/Startup if you leave the warning box unchecked after changing an Msconfig entry and rebooting
Msconfig
Added by the WINUR WORM! Note - this is not the real msconfig.exe as it's located in C:winrun" X,msconfig,wins.exe,"Added by the RBOT.PF WORM!
MSConfig
Added by a variant of the SPYBOT WORM!
msconfig
Added by the AGENT-DSF TROJAN!
msconfig
Added by the IRCBOT-TJ TROJAN!
Msconfig
Added by the BANLOAD.BFT TROJAN!
msconfig
Added by the IRCBOT-SM WORM!
msconfig
Added by the PAHATIA.B WORM!
Msconfig lptt01
RapidBlaster variant (in a "msconfig" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here. Note - this is not the valid Windows Msconfig which has the same executable name
MSConfig Manager
CoolWebSearch parasite variant
Msconfig ml097e
RapidBlaster variant (in a "msconfig" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here. Note - this is not the valid Windows Msconfig which has the same executable name
msconfig service
Added by a variant of the SPYBOT WORM!
msconfig.exe
Added by a variant of the AGENT.AH downloader TROJAN!
msconfig.exe
Added by a variant of the AGENT.AH downloader TROJAN!
msconfig38
Added by the RBOT-BJV WORM!
MSConfig45
Added by the SDBOT.OJ TROJAN!
MSConfigr
Added by the DASMIN.C TROJAN! Note - this is not the valid JDBGMGR.EXE file - see here
MSConfigReminder
Entry that appears when you uncheck an item in the MSConfig Startup group, and will disappear if on the next reboot you select the option to not be reminded that you are running in Selective Startup mode
MsConfigs
Added by the ALCAN.A WORM!
MSConfigs
Added by the WEKODE-B WORM!
MSControl28
Added by the SPYBOT.AJX WORM!
MSControl31
Added by the RBOT.CFY WORM!
MSControl3d1
Added by the RBOT.CGU WORM!
MSCORE
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:windowsfonts (or C:winntfonts) directory where no *.exe files should reside
Mscsgs
Added by the ZEZER WORM!
Mscsgs32
Added by the ZEZER WORM!
mscsvc.exe
Added by the BANCOS.T TROJAN!
msctrl.exe
Detected by Kaspersky as the AGENT.ANQ TROJAN! See here
Msctrl32
Added by the REDIST WORM!
MSCVT
Added by the SLIDESHOW WORM!
msdbgm.exe
Added by the CIMUZ-CQ TROJAN!
MSDcom
Added by a variant of the SDBOT WORM!
msdefender
Identified as a variant of the PAKES.CMD TROJAN! See here for an example
msdefender.exe
Detected by Trend Micro as the PAKES.ZL TROJAN! See here
msdev
Added by the FORBOT-CR WORM!
msdev
Added by the AGOBOT.AAU WORM! Note - this is not the legitimate msconfig.exe which should only appear in Msconfig/Startup if you leave the warning box unchecked after changing an Msconfig entry and rebooting
msdir32
Added by the ROOKIE-A TROJAN!
msdirect.exe
Added by the CERTIF-L TROJAN!
MSDLL
Added by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in C:windowsfonts (or C:winntfonts) directory where no *.exe files should reside
Msdmxm
Added by the DLUCA-DC TROJAN!
MSDN
Added by the SDBOT.AHY WORM!
MSDN for Windows NT
Added by a variant of the RBOT WORM!
MSDN for Windows NT & WinXP
Added by the IRCBOT-PE WORM!
MSDN for Windows with NT's
Added by the RBOT-EWD WORM!
MSDN HELP
Added by the AGOBOT.AIB WORM!
MSDNN
Added by the AGENT-GBK TROJAN!
MSDOS Security Service
Added by the RBOT-AMP WORM!
MSDOS Service
Added by the RBOT-AIY WORM!
MSDOS Windows Service
Added by the RBOT-AKF WORM!
Msdos32
Added by the RECORY WORM!
msdos423
Added by the MENACE.A WORM!
MSDosdrv
Added by the BACROS WORM!
MSDrive
Added by a variant of the OP DIALER! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "drvkoc.dll" file is found in the System (9x/Me) or System32 (NT/2K/XP) folder
MSDrive
Added by a variant of the OP DIALER! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "drvmod.dll" file is found in the System (9x/Me) or System32 (NT/2K/XP) folder
MSDrive
Added by a variant of the OP DIALER! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "drvsoh.dll" file is found in the System (9x/Me) or System32 (NT/2K/XP) folder
msdrvctrl
Detected by Kaspersky as the AGENT.BN TROJAN! See here
MSDTC
MS Distributed Transaction Coordinator - handles transactions across multiple servers and is installed by MS Personal Web Server and MS SQL Server
Msemu32
Unidentified spyware/adware/hijacker
msennger
Added by the PROGENT-AF TROJAN!
mservices.exe
Added by the SDBOT.WJ WORM!
Msfind
CoolWebSearch parasite variant
MSFind32
Added by the CAYAM WORM!
msfindosa.exe
Added by the DOWNLOADER-BS TROJAN!
MSFTP Service Config
Added by a variant of the SDBOT WORM!
msfw.exe
Detected by Kaspersky as the AGENT.ANQ TROJAN! See here
MSFWAVTSM
Added by the RBOT-ACF WORM!
Msg Fixage
Added by the SDBOT.ZD WORM!
MsgApi
Added by the DEDLER-D TROJAN!
msgb1
Added by the DLUCA.GEN TROJAN!
MsgCenterExe
RealNetworks RealPlayer related - disabling this application will not affect Real Player in any way
msgex32
Added by the APPFLET-A WORM!
Msgmgr
Added by the BABYBEAR WORM!
msgserv_
Added by the FANTA TROJAN!
msgsm32
Added by the RBOT-ASG WORM!
Msgsrv16
Added by the DELF family of TROJANS!
MSGSRV32.exe
Windows 32-bit VxD Message Server. For more information on its function and why it's needed, see here. Note - why some people have it listed in start-up programs I don't know but I was asked to include it here. It automatically runs in the background
Msgsvc32
Added by the NAUTICAL-A WORM!
MsgSvcMgr32
Added by the RBOT-AEK WORM!
msgsvr32
Added by the DEADHAT.B WORM! Note - not to be confused with the valid "msgsrv32.exe" file which resides in the same directory (C:WindowsSystem) on a Win9x/Me machine
MSGTAG
MSGTAG is an application that tells you when your emails have been received and opened
Msgtray
Added by an unknown VIRUS!
Mshelp32
CoolWebSearch parasite variant
Mshosts
Added by the STARTPAG.CF TROJAN!
MSHT@
Added by the MAGISTR.A VIRUS!
mshtmll
Added by the DELF.BAS TROJAN!
MSI Configuration
Added by the AGENT.AKSZ TROJAN!
msiconf.exe
Added by a variant of the FAKEALERT TROJAN!
msident
Unidentified adware or trojan
msidle
Added by the OPASERV-O WORM!
MsIdle32.exe
Added by the VERIFY TROJAN!
MSIdll
Added by a variant of the RBOT WORM!
MSIE Parsers
Added by the SDBOT.MV WORM!
msiemon.exe
Detected by Kaspersky as the AGENT.ANQ TROJAN! See here
msiew
Added by the LITTLOG TROJAN!
MSIEXEC
Added by the AINESEY.A WORM!
MSIEXEC
Added by the YOSENIO-A VIRUS!
msiexecs.exe
Added by a variant of the SDBOT WORM!
msig
Added by the BANBRA-KF TROJAN!
MsIMMs32
ONLINEG.GDJ spyware
msimn
Added by the AGOBOT.JL WORM!
MSIMN32
Added by the CWS-M TROJAN!
MSIN
??
Msinet
Added by the RBOT-AOA WORM!
MSInfo
Added by the ALADINZ.M TROJAN!
MSInfo
Added by the NETSKY.O WORM!
MSInstall
Added by the DEDLER-G TROJAN!
msjava service
Added by the SDBOT.VM WORM!
MSKAGENTEXE
McAfee Spamkiller
MSKCES32
Added by the CLONER TROJAN!
MSKDetectorExe
Part of McAfee Spamkiller
MSKernel32
Added by the LOVELETTER (I LOVE YOU) VIRUS!
MSkernel32
Added by the TUXDER TROJAN!
MSKExe
McAfee Spamkiller
mskj
Added by the KAEMON TROJAN!
mskrider
Added by the SOLOW-F WORM!
MSKServerExe
Part of McAfee Spamkiller
mslagent
Added by the WINTRIM-F TROJAN!
MSLARISSA
Added by the ASSIRAL.B WORM!
MSLIB32
??
msliveupdate
Added by the AGOBOT.ALT WORM!
MSLog
Added by a variant of the SDBOT WORM!
Mslogon lptt01
RapidBlaster variant (in a "Mslogon" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
Mslogon ml097e
RapidBlaster variant (in a "Mslogon" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
msm
Added by the BANKER-EHJ TROJAN!
msmacro32
Identified as a variant of the AGENT.QB TROJAN!
MsManager
Added by the YAHA.AF WORM!
msmanager32
Added by the RANDON-R (or WOMANIZ.A) WORM!
msmautoprotect
Added by the BIFROSE-AJ TROJAN!
msmc
ClientMan parasite variant
msmc
ClientMan parasite variant
msmc
ClientMan parasite variant
msmc
ClientMan parasite variant
msmc
ClientMan parasite variant
MSMcAfeee
Added by the FRAMAR TROJAN!
MSMcAfeeh
Added by the FRANGO TROJAN!
MSMcAfeeS
Added by the VOLAC or VOLAC.DR TROJANS!
MSMessnger
Added by the RBOT-ADY WORM!
msmgr
??
msMGR
Added by the SDBOT-BPY WORM!
Msmgt
Total Velocity adware/hijacker
msmmi
Added by the AGENT.RFR TROJAN!
MSMNTGNT
Added by the BANKER-IE TROJAN!
MSMNTJBE
Added by the BANCOS-EF TROJAN!
MSMNTJNG
Added by the GRABER-G TROJAN!
MSMNTMTS
Added by the BANKER-GZ TROJAN!
msmon
Added by a variant of the GEMA.D TROJAN!
MsMovies
Malware - detected by Kaspersky as the WINAD.H TROJAN!
MsmqIntCert
Microsoft Message Queue Server - Internal Certificate - see here for more info and here for a potential problem. Is it required?
MSMSGNER
Added by the FOWLDO-GEN TROJAN!
MSMSGNER
Added by the PWS-CCB TROJAN!
msmsgr
Detected by Kaspersky as the RBOT.AJJ WORM!
MSMSGS
Windows Messenger utility. If you don't use Windows Messenger, this can be annoying. Available via Start -> Programs. Go to Windows Messenger > Tools > Options > Preferences and uncheck "Run this program when Windows starts"
MSMsgs
Added by the SMALL-EW TROJAN!
msmsgs
Added by the SCLOG-AL TROJAN!
MSMSGS
Added by the RAHIWI.A WORM!
MsMsgSrv
Added by the CQO TROJAN!
MSMsgSvc
Browser hijacker, identified by some antiviruses as a variant of the StartPage.QC TROJAN!
msmsngr
Added by the DOPBOT-B WORM!
msn
Added by the KITRO.A WORM!
msn
Added by the RBOT-GO WORM!
MSN
Added by the RBOT-KL WORM! Note - not to be confused with msmsgs.exe, the well known MSN Instant Messaging application!
MSN
Added by the SPYBOT.HI WORM!
MSN
Added by the RBOT-ME WORM!
MSN
Added by the MINIT WORM!
MSN
Added by the MYTOB or MYTOB.B WORMS! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility
msn
Added by a variant of the SDBOT WORM!
MSN
Added by the SDBOT-VN WORM!
MSN
Added by an unidentified WORM or TROJAN!
MSN
Added by the AGENT-GDO TROJAN!
MSN
Detected by PCTools as the IRCBOT.UXP WORM! See here
MSN
Added by the IRCBOT-ZW WORM!
MSN
Added by a variant of the SDBOT TROJAN!
MSN
Added by the PUSHBOT.S WORM!
MSN
Added by a variant of the IRCBOT BACKDOOR! See here
MSN
Added by a variant of the IRCBOT BACKDOOR! See here
MSN
Added by a variant of the SPYBOT WORM! See here
MSN
Identified as a variant of the Backdoor.PosionIvy keylogging malware
MSN
Added by a variant of the IRCBOT BACKDOOR! See here
MSN
Added by a variant of the IRCBOT BACKDOOR! See here
MSN
Added by the IRCBOT-XU WORM!
MSN
Added by a variant of the SPYBOT WORM! See here
MSN 9.0 Plus
Added by the RBOT-ALY WORM!
MSN Administration For Windows
Added by the BROPIA.W WORM!
MSN ang
Added by the FORBOT-CE WORM!
MSN Auto-Updater
Added by a variant of the IRCBOT BACKDOOR!
MSN Auto-Updater
Added by the AUTORUN.WORM.GEN WORM!
MSN BETA
Added by the RBOT.AUU WORM!
MSN Booster
Added by a variant of the SDBOT WORM! See here
Msn Boot
Detected by Trend Micro as the IRCBOT.BFU TROJAN! See here
MSN Checker
Added by the SDBOT-AGB WORM!
MSN Client Manager
Added by the AUTORUN-FV WORM!
MSN CNF Manager
Added by the VUNDO TROJAN!
MSN Communication Manager
Added by an unidentified WORM or TROJAN! See here
Msn Config
Added by the RBOT-QG WORM!
MSN Configuration
Added by a variant of the IRCBOT TROJAN!
Msn Configuration Loader
Added by the KELVIR.T WORM!
MSN CST Manager
Added by an unidentified WORM or TROJAN! See here
MSN Database Client
Added by an unidentified WORM or TROJAN! See here
MSN Debug Mgr
Added by a variant of the IRCBOT TROJAN!
MSN Explorer
Added by the AGENT-CAX TROJAN!
MSN Explorer
Dropper for the Ciadoor.cb TROJAN!
MSN File & Folder Sharing App
Added by an unidentified WORM or TROJAN! See here
MSN File Configuration
Added by a variant of the IRCBOT BACKDOOR!
MSN File Sharing
Detected by Trend Micro as the SLENFBOT.AM WORM! See here
MSN File Sharing Wizard
Added by a variant of the IRCBOT BACKDOOR!
MSN File Sharing!
Added by a variant of the IRCBOT TROJAN! See here
MSN Funny Images
Added by the AGOBOT-TT WORM!
MSN Gaming Zone
Detected by Kaspersky as the AGENT.BEA TROJAN! See here
MSN Hostn
Added by a variant of the IRCBOT BACKDOOR!
MSN Internet Access
Quick way to connect to MSN internet service - replaces "MSN Quick View" from V5.6 onwards
MSN Live Client
Added by a variant of the IRCBOT TROJAN! See here
MSN Live Messanger
Added by the RBOT-FSG WORM!
MSN Manager
Added by a variant of the SPYBOT WORM!
MSN Manager
Unidentified malware - causes multiple browser windows to open
MSN Manager
Detected by Trend Micro as the IRCBOT.BAZ WORM! See here
MSN Manager
Added by a variant of the IRCBOT TROJAN!
Msn Message Acount Helper 7.7
Added by a variant of the IRCBOT BACKDOOR! See here
MSN Message Background loader
Added by a variant of the RBOT WORM!
MSN Message Service
Added by a variant of the IRCBOT BACKDOOR! See here
Msn Messager
Added by the DOWNLOADER.19456.C TROJAN! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility
MSN Messager
Added by the IRCBOT-ACD WORM!
MSN Messages
Added by the RBOT-ACN WORM!
MSN Messages
Detected by Trend Micro as the AGENT.ITG TROJAN! See here
MSN Messanger
Added by the SDBOT.XN WORM!
MSN messanger
Added by the RBOT-FMP WORM!
MSN Messanger
Added by the RBOT-FOQ WORM!
Msn Messanger
Added by a variant of the IRCBOT BACKDOOR!
Msn Messanger
Detected by Kaspersky as the RBOT.BLL BACKDOOR! See here
MSN Messanger Live
Added by the RBOT-FSO WORM!
Msn Messeng
Added by a variant of the RBOT WORM!
Msn Messenge
Added by the DELF-LL TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe)
MSN Messenger
Added by a variant of the SPYBOT WORM!
MSN MESSENGER
Added by the KELVIR.Q WORM!
MSN Messenger
Added by the DLOADER-LN or ZLOB-C or ZLOBDROP-C TROJANS! Note - this particular msmsgs.exe file is located in %System% and should not be mistaken for the MSN Messenger file of the same name!
MSN Messenger
Added by the AGOBOT.AOQ WORM! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility
MSN Messenger
Added by the ZHOPA TROJAN! Note - this particular msmsgs.exe file is located in the WindowsSystem32 or WinntSystem32 folder, and should not be mistaken for the MSN Messenger file of the same name!
MSN Messenger
Added by a variant of the RBOT WORM!
MSN Messenger
Added by the BANKER-EU TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe)
Msn Messenger
Added by the BANKER-GG TROJAN!
MSN Messenger
Added by the CHOKE.C WORM!
MSN Messenger
Dropper for the Ciadoor.cb TROJAN!
Msn Messenger
Added by the RBOT-GMQ WORM!
MSN Messenger
Detected by Trend Micro as the DELF.AOI TROJAN! See here
Msn Messenger
Added by the AGOBOT.HA WORM!
MSN messenger
Added by an unidentified TROJAN! Note - this is not the real MSN Messenger
Msn Messenger
Added by the LOONY-P TROJAN! Note - not to be confused with msmsgs.exe, the well known MSN Instant Messaging application!
MSN Messenger 32
Added by the RBOT-AWB WORM!
MSN Messenger 323
Added by the RBOT-AXB WORM!
MSN Messenger 6.2
Added by a variant of the RBOT WORM!
MSN MESSENGER 9.0
Added by a variant of the RBOT WORM!
MSN Messenger Inbox Loader
Detected by Trend Micro as the SHEUR.BTY TROJAN! See here
MSN Messenger Live Login
Added by an unidentified WORM or TROJAN! See here
MSN Messenger Live Windows
Added by an unidentified WORM or TROJAN! See here
MSN messenger service
Added by an unidentified TROJAN!
Msn Messenger Service
Added by the SDBOT.BMU WORM!
MSN Messenger Service Starter
Added by the RBOT-AOS WORM!
MSN Messenger Service Startup
Added by a variant of the RBOT WORM! See here
MSN Messenger Services
Added by the RBOT.ADF TROJAN!
MSN Messenger Services
Added by a variant of the IRCBOT BACKDOOR! See here
Msn Messenger Update
Added by a variant of the RBOT WORM!
Msn Messenger update
Detected by Kaspersky as the AGENT.AOX TROJAN! See here
MSN Messenger User Controls
Added by the KELVIR.HI WORM!
Msn Messengers
Added by the RBOT.KX WORM!
MSN MMISSENGER
Added by the KELVIR.AJ WORM!
MSN P2P Manager
Detected by Kaspersky as the AUTORUN.EHF WORM! See here
Msn Patch
Added by the RBOT.AAI WORM!
Msn Patches
Added by a variant of the SDBOT WORM!
Msn Plus Updater
Added by the RBOT-MU WORM!
MSN Popup Blocker
Added by a variant of the IRCBOT BACKDOOR! See here
Msn Processe Manager
Added by the RBOT-ADX WORM!
MSN Quick View
Quick way to connect to MSN internet service
MSN Registry loader
Added by the KELVIR.FK WORM!
MSN Router
Added by a variant of the IRCBOT BACKDOOR! See here
MSN RPC Manager
Added by an unidentified WORM or TROJAN! See here
MSN Rx Manager
Added by an unidentified WORM or TROJAN! See here
MSN Security Agent
Added by a variant of the IRCBOT BACKDOOR!
MSN Serv
Detected by Trend Micro as the IRCBOT.AVF TROJAN! See here
Msn Serv
Added by a variant of the IRCBOT TROJAN! See here
MSN Server
Detected by Trend Micro as the IRCBOT.AUS TROJAN! See here
MSN service
Added by a variant of the RBOT WORM!
MSN Service
Added by a variant of the SDBOT WORM!
Msn Service
Added by the MYTOB.JH WORM!
Msn Service
Added by the MYTOB-DY WORM!
MSN service
Added by the RBOT-RZ WORM!
MSN service
Added by the RBOT.UJ WORM!
MSN Service
Detected by Trend Micro as the IRCBOT.PU TROJAN! See here
MSN Service Updates
Added by the KELVIR-BB WORM!
MSN Service Utilities
Added by the KELVIR-BC WORM!
MSN Service!
Added by a variant of the RBOT WORM! See here
MSN Servicer
Added by a variant of the IRCBOT TROJAN!
MSN Servicer
Detected by Trend Micro as the IRCBOT.ARO BACKDOOR! See here
MSN Services
Added by a variant of the IRCBOT TROJAN! See here
MSN Services
Added by the IMPARD-A TROJAN!
MSN Settings
Detected by Trend Micro as the IRCBOT.AWH TROJAN! See here
MSN Settings Manager
Added by an unidentified WORM or TROJAN! See here
MSN Software
Added by a variant of the IRCBOT TROJAN! See here
MSN Start
Added by the RBOT-PH WORM!
Msn Startup
Detected by Trend Micro as the ARBOT.AA WORM! See here
MSN Update
Added by the RBOT-QA WORM!
MSN Update
Added by the RBOT.AHN WORM!
MSN Update
Added by the RBOT-EA WORM!
MSN Update Cfg
Added by an unidentified WORM or TROJAN! See here
MSN Update Client
Added by a variant of the IRCBOT BACKDOOR!
MSN Update Client
Added by a variant of the IRCBOT BACKDOOR!
Msn Update Manager (Sp2)
Added by the AGOBOT-NL WORM!
Msn Update Service
Added by the MYTOB.JF WORM!
MSN Update Service
Added by a variant of the IRCBOT TROJAN! See here
MSN Updater
Added by the FORBOT-CG WORM!
Msn Updater
Added by the RBOT-HS WORM!
Msn Updater
Added by the SDBOT.TS WORM!
MSN UPDATERS
Added by the RBOT-JK WORM!
MSN Updating
Detected by Kaspersky as the QHOST.AEI TROJAN! See here
MSN User
Detected by Trend Micro as the IRCBOT.AVD TROJAN! See here
MSN User Server
Added by a variant of the IRCBOT TROJAN! See here
MSN User Server!
Added by a variant of the IRCBOT BACKDOOR! See here
MSN User Service!
Added by a variant of the IRCBOT TROJAN! See here
MSN User Services
Added by a variant of the IRCBOT TROJAN! See here
msn.exe
Added by the STARTPA-GS TROJAN!
MSN32 X Service
Added by an unidentified WORM!
MSN6.1 Auto-Updater
Added by the AUTORUN-MM WORM!
MSN8m Startup
Added by a variant of the RBOT WORM!
msnager32
Added by the WOMANIZ.E TROJAN!
msnappau
Updater for the MSN toolbar that can be downloaded onto IE. Calls home every day or so to "update" the toolbar
Msnarrator
Added by the NARAT.A TROJAN! - also identified as MPGCOM Toolbar adware
MSNavWH
Added by the ANAV-A WORM!
msndrvsys
Added by the BROGGER-D TROJAN!
MSNET
Added by the BOA WORM!
MsnExplorer
Added by the EQ TROJAN!
MsnExplorer
Added by the EB TROJAN!
MsnExplorer
Added by the EB TROJAN!
MsnExplorer
Added by the EB TROJAN!
MsnExplorer
Added by the TACTSLAY.B TROJAN!
MsnExplorer
Added by the TACTSLAY.B TROJAN!
MsnFixer
Located in the HPbinmsnfix directory of a HP PC
MSNGrabber
Added by the ENVID.A WORM!
msngta32
Added by a variant of the RBOT WORM!
MSNIA
Added with MSN version 9. Resets certain internet settings upon bootup and can't be disabled via MSCONFIG
msnload32.exe
Added by the BANCOS.M TROJAN!
MSNMESENGER
Added by the PRORAT TROJAN!
msnmessenger
Added by the BANCBAN-KJ TROJAN!
msnmgr
Added by the BIFROSE-K WORM!
msnmsg
CoolWebSearch parasite variant
msnmsg
Added by an unidentified TROJAN!
msnmsg
Added by the BANKER-CLX TROJAN!
msnmsg.exe
Added by a variant of the AGENT.AH TROJAN!
msnmsg.exe
Added by the BANCBAN-KN TROJAN!
msnmsgq32
Added by the TACTSLAY.H TROJAN!
msnmsgq32
Added by the TACTSLAY.F TROJAN!
msnmsgq32
Added by the TACTSLAY.F TROJAN!
msnmsgr
MSN Messenger (now superseeded by Windows Live Messenger) utility. If you don't use MSN Messenger, this can be annoying. Available via Start -> Programs. Go to MS Messenger -> Tools -> Options -> Preferences and uncheck "Run this program when Windows starts"
MsnMsgr
Added by the NETSKY-AD WORM!
MsnMsgr
Added by the ANNEW-FAM WORM! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility
msnmsgr32-.exe
Added by a variant of the SPYBOT WORM!
MSNMSGR5
Added by the RBOT.PQ WORM!
MSNMSGRE
IRC backdoor TROJAN or WORM!
MSNMSGRR
IRC backdoor TROJAN or WORM!
MSNMSGRS
IRC worm or backdoor trojan!
MSNMSGRS
IRC worm or backdoor trojan!
MSNMSGRS1
IRC backdoor TROJAN or WORM!
msnmsgs.exe
Added by the BANKER-HK TROJAN! Note - not to be confused with msmsgs.exe, the well known MSN Instant Messaging application!
msnmsgsgs
Added by the "Catal" alias Spy.Delitall.B backdoor TROJAN!
msnmsgy
Added by the BANKER-EQ TROJAN!
msnnt
Chinese originated adware - detected by Kaspersky as the AGENT.TL TROJAN!
msnnt
Added by the SMALL.DTS TROJAN!
MSNPluginSrIvcs
Added by a variant of the RBOT WORM!
MSNPluginSrvcs
Added by the SDBOT.AKJ or RBOT-VJ WORMS!
MSNPluginSrvcs
Added by the SDBOT.AKJ WORM!
MSNPlus
Added by the BANKER-DAN TROJAN!
MSNS PLUS XP2
Added by the RBOT-BCE WORM!
msnsched2
Added by the SPYBOT.NNT WORM!
MSNService
Added by the CARPET.C WORM!
msnsgs
Added by the CHEUKO-B TROJAN!
msnshed
Added by the RBOT-YN WORM!
msnsmgr
Added by the LOONY-N TROJAN!
msnsyslog
Related to Messenger Applications. When you uninstall the trial version the msnappm keeps saying (You have xx days left) this is adware and it very annoying
MSNSysRestore
Added by a variant of the MASTAK VIRUS!
msnToolbaar
Added by the RBOT.BMF WORM!
msnupdt
Added by a variant of the RBOT WORM!
MSObject32
Added by the PUN TROJAN!
Msoffice
Hijacker - redirecting to Searchdot.net
MSOffice
Added by the DLOADER-EU TROJAN! Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in an "MSOffice" subfolder
MSOffice32
Added by the RAKER-A TROJAN!
MSOfficeCfg
Premium rate adult content dialer
MSOfficeCfg
Premium rate adult content dialer
MSOfficeCfg
Premium rate adult content dialer
MSOfficeCfg
Premium rate adult content dialer
MSOfficeCfg
Premium rate adult content dialer
msoffwz
Added by the BANCBAN-HQ TROJAN!
msoft-updater23
Added by the RBOT-ATU WORM!
msoft-updater23
Added by the RBOT-ASR WORM!
MSOleath32
Added by the KATHER TROJAN!
MSOOBD
Added by the MAGISTR.A VIRUS!
mspaint.exe
Added by the AGENT.AH TROJAN!
Mspatch69
Added by the MPROX TROJAN!
Mspatch89
Added by the RANDEX.P WORM!
MSPetServ
Added by the IRCBOT-VE WORM!
msping
Added by the FLOODBLACK TROJAN!
msping.exe
Added by the MZ TROJAN!
MSPluginSrvc
Added by the RBOT-WV WORM!
MSPLUS
Added by the MYTOB-AM or MYTOB-CL WORMS!
MSPP System Update 64
Detected by Kaspersky as the RANKY.GEN TROJAN!
MSPQFile
Homepage hijacker
MsPrint32D
Added by the WINKO.AO WORM!
MSPRO32
Added by the IBERIO WORM!
MSPRO32
Added by the ZOTOB.O WORM!
MSprotect.exe
Added by the DABYREV.A VIRUS!
mspwr
"Transparent icon background" feature of Ashampoo'sPowerUp XP (WinNT/2K/XP) and PowerUp Deluxe (Win98/Me)
mspwr
Related to Ashampoo's PowerUp XP
mspwr
Ashampoo's PowerUp XP is a "tool for fine-tuning your Windows NT4, 2000, 2003 Server and XP configuration"
mspwr
Related to Ashampoo's Magic Defrag Utility
MSPY2002
Part of Microsoft's Input Message Editor (IME) for translating Japanese/Chinese text in IE, Outlook and Word
msqssr
Detected by Kaspersky as the DLUCA.GEN TROJAN!
MSR
Added by the AGOBOT.RT WORM!
Msrc
Added by the KRYPTONIC GHOST TROJAN!
msrdc
Added by the SDBOT-CXO WORM!
msreg.exe
Added by the ZINX TROJAN!
msReg32 Loader
Added by the AGOBOT.IU WORM!
MSREGIT
Added by the KRYPGHOS.13 TROJAN!
MSRegScan
SpyGator surveillance software. Uninstall this software unless you put it there yourself
MSRegScan
Supremespy spyware
MSRegScan
ComKeylogger surveillance software. Uninstall this software unless you put it there yourself
MSRegSvc
Homepage hijacker that changes your homepage to an adult content site
msresear
Added by the WEASYW-B TROJAN!
msresearch
TROJAN! - 180SearchAssistant adware related
msresearch
Spy Sheriff/SpywareNO malware, also detected as the SPYHOAX-A TROJAN, pretends to be a spyware remover! - file names spotted sofar include VXH8JKDQ2.EXE, NS6281400.so, CVXH8JKDQ2.EXE, down3.exe, sefe.exe, winstall.exe, and tool2.exe
msrundll
Added by the BINGHE TROJAN!
msrunocx32
Added by the SKUS WORM!
Mss Serv
Detected by Trend Micro as the SLENFBOT.AA WORM! See here
Mss VC
Added by the CHECKOUT WORM! See here
mssaru
Added by the AGENT.AM TROJAN! Note - example names include "XviD", "Winamp Remote", "Windows Media Player" and "Futuremark"
msscan.exe
Detected by Kaspersky as the AGENT.ANQ TROJAN! See here
MSSCDL
SpyCapture keystroke logger/monitoring program - remove unless you installed it yourself!
mssdbsrv
Added by a variant of a password stealing TROJAN!
msserv
Added by the BLACKLOG-A TROJAN!
msserv
Added by the BROWMON-B TROJAN!
msserv32
Added by the RBOT-ACK WORM!
MsServer
Added by the VB-CYG WORM!
msservice
Added by the HYD WORM!
MSService_v1.0
EHU adware. Note - this is not the legitimate RealOne Player (realsched.exe) application of the same name
MSService_v1.0
NewWeb adware
mssfos
Added by the RANDEX.EUS WORM!
MSSGisg
Added by the RANKY.N TROJAN!
Msshield.exe
Added by a variant of the IRCBOT TROJAN!
MSShow
Added by the QQROB-M TROJAN!
MSSHVC
Added by the NUFFY.A WORM!
mssonfig
Added by a variant of the SDBOT WORM!
mssoul
Added by the DAPIZL.A banker WORM! (A "banker worm" is designed to pillage banking information and send it back to the perpetrators!)
mssoul
Added by the BANCOS.HKT TROJAN!
mssp3
Added by the IBANK-D TROJAN!
MSSQL
Added by the SDBOT TROJAN!
MSSQL for Windows NT & XP
Added by a variant of the SDBOT WORM!
mssSort
Maxtor (now Seagate) "Drag and Sort" for their external storeage - "Just drag documents onto the Shared Storage II icon and Maxtor?s Drag and Sort organizes your files, placing them in appropriate shared folders"
Msstart
Added by the LIVUP.C TROJAN!
MSStartOptimizer
Added by the DASMIN-E TROJAN!
MSStartOptimizer
Added by the DASMIN-E TROJAN!
MSStartOptimizer
Added by the DASMIN-E TROJAN!
msstask
Added by the MYPARTY WORM!
mssurfer lptt01
RapidBlaster variant (in a "surfer" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
mssurfer ml097e
RapidBlaster variant (in a "surfer" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
mssvc
Added by the PSK TROJAN!
MSSVC
Added by the FATOOS-C TROJAN!
MSSVC.EXE
Stealthdisk - hides folders, files and applications. Will also encrypt them for better protection
mssvc32
Added by the AGOBOT-ME WORM!
mssync20
Added by the LDPINC-QC TROJAN!
mssys
Added by the MYSS.B TROJAN!
mssysint
Added by the PWSTEAL.ABCHLP and PSPIDER.310.B TROJANS! Note - this is not the legitimate Internet Explorer (iexplore.exe) process as there is a space before the ".exe"
mssysint
Added by the NETSNAKE-I TROJAN!
mssyslanhelper
Added by the RANDEX.D WORM!
MsSystem
Adult content downloader - see here
MsSystem
Added by the VANTA.A TROJAN!
MSSYSTEM
Added by the FATOOS-C TROJAN!
Mstapi
Keystroke logger/monitoring program - remove unless you installed it yourself!
Mstask
Added by the OPASERV.N WORM! Note - this is not the legitimate mstask.exe system file and the executable resides in C:Windows or C:WINNT
mstask
Browser hijacker - redirecting to find-more.net. Note - this is not the legitimate mstask.exe system file
MSTask
Yuupsearch adware
MStask
Added by the LDPINCH-BV TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
MsTask
Added by the MYTOB-FE WORM!
Mstask
Added by the STAP-C WORM!
Mstask
Added by the STAP-D WORM!
Mstask32driver
Added by the LOONY-D TROJAN!
MSTaskbar 32
Added by the RBOT.BQZ WORM!
mstasks
Added by the MULTIDR-AY TROJAN!
Mstcgww
??
mstds.exe
Added by the IPTABLES TROJAN!
mstg32.exe
Added by the AGENT.BI TROJAN!
MSTMON_N
Generates an error message on startup if a Konica Minolta printer is not turned on and ready
MSTMON_Q
Generates an error message on startup if the Konica Minolta PagePro 1350W printer is not turned on and ready
Mstng32
Added by the TANG WORM!
mstsdsc.exe
Added by the CIMUZ-CD TROJAN!
msupd
Added by the IEACCESS DIALER!
MSUpdate
Added by the ALADINZ.M TROJAN!
MSUpdate
Added by the BLASTER.T WORM!
msupdate
Added by the RBOT-MZ WORM!
MSUpdate
Affilred adware
msupdate
Added by a variant of the SDBOT WORM!
Msupdate
Added by the TACTSLAY.A TROJAN!
Msupdate
Added by the TACTSLAY.A TROJAN!
Msupdate
Added by a variant of the TACTSLAY TROJAN!
Msupdate
Added by the TACTSLAY.A TROJAN!
Msupdate
Added by the TACTSLAY.A TROJAN!
MSupdate.exe
CoolWebSearch parasite variant - resets home page to an adult content site
MSUpdateDevKit
Added by the SDBOT-ZD WORM!
msupdater
Added by a variant of the Storm/Nuwar/Zhelatin WORM! See here for an example
MsUpdater System
Added by the RBOT.AAA WORM!
MSupdater.exe
CoolWebSearch parasite variant. Installs the Winshow.dll browser plugin
msupdater25
Added by the RBOT-ATS WORM!
msupdates
Added by the RBOT-JO WORM!
MSUpdSrv
Browser hijacker, redirecting to a adult content site
msurl
Added by the CRYPTER.A TROJAN!
msuser32.exe
Added by the ANDROV TROJAN!
MsVBdll
Added by the AIMDES.B or AIMDES.C WORMS!
MsVBdll
Added by the AIMDES.A WORM!
MSVBVM60
Added by the SCOLD-B WORM!
msvc32
ClientMan parasite variant
msvc32
Added by the AGOBOT-NT WORM!
msvcc
Added by the XOMBE TROJAN!
msvcc25
Added by a variant of the SDBOT WORM!
msvcc25
Added by a variant of the SDBOT WORM!
msvcc25
Added by the SDBOT-CSE WORM!
msvccc66
Added by the RBOT-GLS WORM!
msvccc66
Added by a variant of the RBOT WORM!
msvecurity
Added by the DORF-BO WORM!
MSVersion
Added by the POPMON.A TROJAN! - also known as PopMonster adware
MSVersion
Added by the POPMON.A TROJAN! - also known as PopMonster adware
msvhost
Added by the AIMBOT-BC TROJAN!
msvload32
Added by the RBOT-ACI WORM!
msvps
Added by the AGOBOT.ALI WORM!
msvsc32
Added by the RBOT-GJ WORM!
MSVsmt
Added by an unidentified WORM or TROJAN!
msvss
Added by a variant of the RBOT WORM!
MSVSync
Added by a variant of the SPYBOT WORM!
msvupdater
Added by a variant of the Storm/Nuwar/Zhelatin WORM! See here for an example
MSVXD
Added by the DATOM.A WORM!
mswave
Added by the CRYPTER.A TROJAN!
Mswavedll
Added by the CRYPTER-C TROJAN!
MSwheel
Microsoft Intellipoint software for their Intellimouse series of mice - required if you use non-standard Windows driver features
MSWin
Added by the BANKER-CU TROJAN!
Mswincfg
Added by the CYBRSPY.D TROJAN!
MsWindows DRT Drivers
Added by the RBOT.ALT WORM!
MsWindows SSL Drivers
Added by the SPYBOT.API WORM!
MsWindows SysDate
Added by the SPYBOT.FCD WORM!
MSWindows Syspg
Added by the RBOT-TB WORM!
MSWindowsUpdate
Added by the RBOT-AFD WORM!
MSWindowsUpdate
Added by a variant of the SDBOT WORM!
MSWinlogon
Added by the AGENT-FZL TROJAN!
MSWinlogon
Added by the AGENT-FZM TROJAN! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!
Mswinpid32
Added by the LAPOS.A TROJAN! This is a keylogger which emails back to China PayPal passwords and account information - thus allowing the perpetrators to steal PayPal funds in the name of the victim!
MSWinSrv
Added by the MTRON TROJAN!
MSWinSrv32
Added by the MTRON-B TROJAN!
MSWinupd
Added by the DLOADER-YE or DLOADR-AAA or DLOADER-ZF TROJANS - and others
MSWinupdate
Added by the DLOADR-AAW TROJAN!
MsWinVgr
Added by the MYTOB.LE WORM!
mswiz32
Added by the STRATIO-BG WORM!
mswkork Service
Added by a variant of the RBOT WORM!
msword
Added by the RBOT-ADR WORM!
mswspl
Added by the SMALL.IQ TROJAN!
mswspl
SearchBarCash adware
mswspl
SearchBarCash adware variant
mswspl
Added by the SMALL.IQ TROJAN!
MSWTL32
Added by an unidentified WORM or TROJAN! See here
msxct
eXact Advertising (NaviSearch, BargainBuddy, CashBack) adware
Msy Startups
Added by the AGOBOT-QC WORM!
Msy1 Startups
Added by the AGOBOT-QQ WORM!
msys lptt01
RapidBlaster variant (in a "Msyss" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here
Msys32
Morfit ADjectPager - "uses home page rental technology for generating revenues". Homepage hi-jacker that re-defines your IE or Netscape start page as http://www.web-entrance.com/. Any installed application including this must be un-installed before you can reset your homepage
MSysDrv
Added by the VB.WF TROJAN!
ms_anti_spyware
Added by the GAMQOWI TROJAN!
ms_anti_spywarebxp
Added by the SURILA-D TROJAN!
ms_anti_spywarebxp
Added by the SURILA-J TROJAN!
MS_LARISSA
Added by the ASSIRAL WORM!
MS_NETD_WIN32
Added by the RANDEX.F WORM!
MS_SETUP.EXE
Added by the CHARGE TROJAN!
MS_Update Check
Added by the AGOBOT-TB WORM!
MS_update_0704_KB74073.exe
Added by a variant of the UPDATEKB TROJAN!
MtdAcq
Creative MediaSource "Media Sniffer" - monitors the drive for new media files then automatically adds them to the media library
Mtr2
Added by the KRYPTONIC GHOST TROJAN!
MUAL
Millesky video mail updater and launcher
muamgr
Using MicroAngelo On Display, you can easily select the icon images that you prefer rather than the default icons displayed by Windows. On Display provides a consistent and elegant method to customize the icon display for almost every icon on your system
muBlinder
Program that bypasses Microsoft Update?s Genuine Windows Validation
Mufix
Part of INFOConnect, web-based, enterprise client configuration, management, and deployment software, as used by ABSS (a financial management system used by the US military which will allow purchase request packages to be electronically submitted to contracting, and which also facilitates electronic receipt of items and EFT) - what does it do and is it required
mule_st_key
Added by the BAGLE.AV TROJAN!
Multi-function keyboard
Software that sets up the Gateway AnyKey keyboard shortcuts (a series of buttons that allow one-click access to e-mail, browser, volume and CD/DVD controls, etc)
MultiCAM Initializer
The MultiCAM Initializer is part of the MultiCAM software package provided by Vista Imaging in order to run up to 10 USB ViCAM or 3Com Home Connect PC Digital cameras on a single computer. Clears itself from memory once initialized but can also be safely disabled
Multimedia Codecs
Added by the DLOADER-MB TROJAN!
Multimedia extensions
EasySearch adware
Multimedia extensions
Added by the SMUTSRCH-A TROJAN!
Multimedia extensions
Added by the DLOADR-AWD TROJAN!
Multimedia KBD
Multimedia keyboard manager. Required if you use the additional keys
MULTIMEDIA KEYBOARD
Multimedia keyboard manager. Required if you use the additional keys
multiran
Added by the COSIAM-E TROJAN!
MultiRes
MultiRes - system tray utility allowing quick access to changing desktop resolutions and has the ability to lock the screen refresh rate in WinNT/2K/XP
MUPS
Launches the Belkin Bulldog Plus Service - required if you want to access the UPS advanced functions
murphy shield
Firewall part of BitDefender virus scanner/firewall
Music01 Server
J River Media Jukebox
MusIRC (irc.music.com) client
Added by the RANDEX.Q WORM!
Mustafx
Added by a variant of the VIRANTIX.B TROJAN!
Mustek MDC 3000
Related to software for the Mustek MDC 3000 digital camera - what does it do and is it required?
MutexServiceEx
Webroot Sofware's discontinued "Privacy Master"
mv2
Added by the DROPPS-A TROJAN!
MVRescue
Related to Multivision Computers back up/restore program. Multivision Computers ceased operating in 2004
mvsyswina
Added by a variant of the SDBOT WORM!
MW1HelperStartUp
ScreenScenes "Magic Waterfall" screensaver. The freeware version comes with GAIN branded ads (pop-ups and others). ScreenScenes do however offer you the option of doing away with the ads by purchasing the screensaver for a whopping $30. Please note that Claria Corporation no longer support GAIN-Supported software - see here
MW1HelperStartUp
ScreenScenes "Magic Waterfall" screensaver. The freeware version comes with GAIN branded ads (pop-ups and others). ScreenScenes do however offer you the option of doing away with the ads by purchasing the screensaver for a whopping $30. Please note that Claria Corporation no longer support GAIN-Supported software - see here
mwavscan
MicroWorld Anti Virus Toolkit is a free anti-virus scanner that runs on-demand. You can choose to scan your entire system, including memory, services, starup items and registry, or only scan files in a specified folder or drive
MWLExe
Part of McAfee Wireless Protection for Wi-Fi users
MWProEng
Logitech Mouseware Pro software - only required when using special functions
MWSnap
MWSnap - screen capture utility. Start manually when required
mwsoemon
MyWebSearch parasite
Mwsvm
SeekSeek search hijacker related - see here
mxb2
Added by the IXBOT-G WORM!
MxHLp32
Added by a variant of the VAGRNOCKER TROJAN!
mxjxde.exe
Added by the ORCU.B TROJAN!
MXO Auto Loader
Maxtor includes a driver to bypass the Windows certified drivers check just when it detects an external drive. MXOaldr.exe is installed with the new driver and if disabled the button on a Maxtor OneTouch External Store no longer functions
MXOBG
Maxtor includes a driver to bypass the Windows certified drivers check just when it detects an external drive. MXOaldr.exe is installed with the new driver and if disabled the button on a Maxtor OneTouch External Store no longer functions
mxomssmenu
Related to Maxtor's One Touch series of external hard drives. What does it do and is it required?
MxRunner
EasyUninstall from Aladdin Systems (formerly by Ontrack)
Mxvgautil
Utility for a USB to VGA converter from MCT Corp
My Agent
Added by the NEGASMS.A TROJAN!
My App
Added by the NEGASMS.A TROJAN!
My Essentials Wireless USB Utility
Belkin My Essentials Wireless USB Utility
My Search Bar Eq
MySearch parasite
My Web Search Bar
MyWay - an IE Browser Helper Object used by adware WebSearch to add an IE toolbar to provide search features, and hijack browser search requests to its controlling servers run by MyWay
My Web Search Bar Search Scope Monitor
MyWebSearch parasite
My Web Search Community Tools
MyWebSearch parasite
My-disgo
Related to disgo pro. Program will synchronize data
MyAccessMedia
My AccessMedia toolbar related, stealth installed!
MyAgtTry
System tray notification for McAfee VirusScan ASaP on-line scanner. Not required to be protected but you lose notifications
Myapp
Added by the FATEE.B WORM!
Myapp
Homepage hijacker
MyAV
Added by the NETSKY.J WORM!
MyCIO Agent Service
McAfee VirusScan ASaP Agent service
myCIO.com ASaP
System tray notification for McAfee VirusScan ASaP on-line scanner. Not required to be protected but you lose notifications
myCIO.com Splash
Splash screen for McAfee VirusScan ASaP on-line scanner
myCleanerPC
MyCleanerPC spyware remover - not recommended, see here
MyCometCursor
Comet Cursor adware
MyDailyHoroscope
MyDailyHoroscope foistware
MyDailyHoroscope
MyDailyHoroscope foistware
MyEmoticons
MyEmoticons from Persona Ltd - add icons (emoticons) to your E-mail
MyFastAccess
My-Fast-Access toolbar updater
myhuy
Added by the BLASTER-C WORM!
myhuy
Added by the BLASTER-L WORM!
MyIE.exe
MyIE2/Maxthon browser related
MyLife
Added by the HOLAR.A WORM!
myMh2
Added by the DELF.FAI TROJAN!
myNetWatchman
Sends your firewall alerts to a website, which then filters them and forwards details of suspicious activities to the host ISP they originated from. Only needs to be running when your firewall is running
MyPointsPointAlert
"With MyPoints you can earn rewards from name-brand merchants. You can even earn vacations and frequent flyer miles". Dubious privacy policy
MyPopupKiller
MyPopupKiller - popup killer
myprint mileage
Reports battery status on a portable printer
Mysee Alert
MySee Alert adware
MyShares
EHU adware
MySLScan
Added by the FORBOT-EH WORM!
mysoft
Browser hijacker, also detected as the STARTPA-JR TROJAN!
MySoftware NewsFlash
Runs in your task bar and receives alerts and release information on MySoftware products from Avenquest
MySpaceIM
MySpaceIM internet messenger
mysvcig38
Added by the RBOT-FOU WORM!
mysvcig38
Added by a variant of the RBOT-FOU WORM!
MyTam
Covert Sys Exec malware variant
MytekSystrayExePath
MyTek system tray - web site providing computer tech support in Australia
MyTotalSearch Email Plugin
MyTotalSearchBar adware
MyVBApp
ReferAd adware
MyVBApp
Detected as Generic Downloader.s by McAfee, probable variant of ReferAd adware!
MyVBApp
Detected by Kaspersky as the VB.KB TROJAN! File location is in the Root folder (C:), (D:), etc
MyVirt.exe
Added by the REMADM-C TROJAN!
MyVitalAgent
MyVitalAgent from Lucent Technologies. Replacement for Net.Medic, monitoring all popular internet transactions and alerting the user of the location of connection problems. Available via Start -> Programs
MyWebSearch Email Plugin
MyWebSearch parasite
MyWebSearch Plugin
MyWebSearch parasite. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted
My_Heart
Added by the SILLYFDC-AD WORM!
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59