View all database entries

ALL  PP  F0  F1  F2  F3  R0  R1  N1  N2  N3  N4  O1  O2  O3  O4  O5  O6  O7  O8  
O9  O10  O11  O12  O13  O14  O15  O16  O17  O18  O19  O20  O21  O22  O23  CHR  FF  

View MDO database (PP)

Showing entries 2876 to 2900 of 3051.

Go directly to page: 1  109  110  111  112  113  114  115  116  117  118  119  120  121  122  123  

(L) C:\WINDOWS\system32\wc_storage.dll
Part of the Windows Operating System
http://www.herdprotect.com/wc_storage.dll-b4300d906c12a55c694fee0fa868b3ba8fe3fb13.aspx
Windows ALL; discovered by Nasdaq
(L) C:\Windows\system32\wdfsconnectMntNtf2017.dll
Virtual Storage Mount Notification
https://www.westerndigital.com/
Windows ALL; discovered by Nasdaq
(L) C:\WINDOWS\system32\wdShellExt.dll
Context menu handler
http://www.shouldiblockit.com/wdshellext.dll-25588.aspx
Windows ALL; discovered by Nasdaq
(L) c:\windows\system32\WerEtw.dll
Microsoft Corporation
https://www.reasoncoresecurity.com/weretw.dll-c7f9f900d77db33fc9ab84101939e644b3980237.aspx
Windows ALL; discovered by Nasdaq
(X) C:\Windows\system32\WeWatcherLSP64.dll
PUP.Optional.WeWatcherProxy.A
https://forums.malwarebytes.org/index.php?/topic/170602-removal-instructions-for-wewatcher/
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\system32\wfxqhv.exe
Known Dialer
Fix / Info: Use Brute Force Uninstaller (BFU) with Metallica's alcanshorty.bfu fix.
http://metallica.geekstogo.com/dialers.html
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\System32\wgse.exe
Identified as Trojan.Runner.h by ewido.
Fix / Info: Delete file.
Windows ALL; discovered by nasdaq
(X) C:\Windows\system32\Wimboldon.exe
PUP.Optional.TaskRNDM
https://www.herdprotect.com/wimboldon.exe-9cebf4f7ace81dde3ebe9719ba8787763dd8d552.aspx
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\system32\win32GI\svchost.exe
Added by a variant of the Rbot familly of trojan.
Fix / Info: Use Andy manchesta's SDFix tool
http://spywareinfoforum.com/index.php?act=ST&f=37&t=81454
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\System32\wincrt32.exe
Identified as WORM_AGOBOT.JP at TrendMicro.
Fix / Info: Virus and Trojan tools.
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_AGOBOT.JP&VSect=Sn
Windows ALL; discovered by nasdaq
(L) C:\Windows\System32\Windows.UI.Immersive.dll
UpdateUserPictureTask - Microsoft.
http://systemexplorer.net/file-database/file/windows.ui.immersive-dll
Windows ALL; discovered by Nasdaq
(Q) C:\WINDOWS\System32\WINLOG.exe
Winlog.exe a process belonging to the Salfeld Personal Security tool, but also used for the W32.Agobot.LF virus.
Fix / Info: Virus scan if winlog.exe identifies as a virus.
http://www.liutilities.com/products/wintaskspro/processlibrary/winlog/
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\system32\winlogui.exe
Coinminer_CryptoNight.SM-WIN64
https://www.file.net/process/winlogui.exe.html
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\System32\winnook.exe
Added by the WIN32.TOPANTISPYWARE.L TROJAN!
Fix / Info: HJT and Virus/trojan removal programs.
.
Windows ALL; discovered by Nasdaq
(L) C:\WINDOWS\system32\winrmsrv.exe
Microsoft
https://www.microsoft.com/
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\system32\winscenter.exe
Related to Spyware Guard 2008 a rogue anti-spyware program.
http://www.systemlookup.com/Startup/18726.html
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\system32\winsys16_061230.dll start
Added by the WORM_AGENT.AFFZ worm. Please note that rundll32.exe is a legitimate program.
Fix / Info: Hijackthis
http://www.bleepingcomputer.com/startups/winsys16_061230.dll-20735.html
Windows ALL; discovered by nasdaq
(X) C:\Windows\system32\winupd.exe
backdoor Trojan
http://www.enigmasoftware.com/tempwinupdexe-removal/
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\system32\winupdater.exe
CWS Spyware!!
Fix / Info: Task Manager, HijackThis, CWShredder, etc. may also require special tools yet to be developed
http://www.spywareinfoforum.info/newsletter/archives/2005/aug7.php
Windows ALL; discovered by Basementgeek
(X) C:\WINDOWS\System32\winupdt.exe
Added by the W32/RBOT-FP WORM
Fix / Info: Virus and Trojan tools.
.
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\system32\wmhost.exe
Added ty the Troj/Bckdr-QHS trojan.
Fix / Info: Use Andy manchesta's SDFix tool
http://spywareinfoforum.com/index.php?act=ST&f=37&t=81454
Windows ALL; discovered by nasdaq
(X) C:\WINDOWS\System32\wmscupd.exe
Part of Malware group - Worm Ircbot Gen
Fix / Info: Delete the file - Virus/trojan scan.
http://fileinfo.prevx.com/QQe41b17727304-WMSC13097780/WMSCUPD.EXE.html
Windows ALL; discovered by nasdaq
(X) C:\Windows\System32\wsaupdater.exe,
Wsaupdater.exe is spyware that changes Userinit.exe, to Wsaupdater.exe in the registry.
Fix / Info: HijackThis
http://support.microsoft.com/kb/892893
Windows ALL; discovered by nasdaq
(L) C:\WINDOWS\system32\WSDMon.dll
Printer port monitor that supports printing to network printers
https://docs.microsoft.com/en-us/windows-hardware/drivers/print/wsdmon-port-monitor
Windows ALL; discovered by Nasdaq
(X) C:\WINDOWS\System32\wserv32.exe
WORM_RBOT.AF
Fix / Info: HijackThis - Trojan/Virus removal tools
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FRBOT%2EAF&VSect=P
Windows ALL; discovered by nasdaq

This is a list of items that is designed to help with the analysis of HijackThis, DDS, OTL and FRST logs.
It is by no means exhaustive (in fact it is being added to all the time), and is intended to complement other legitimate online lists.