View MDO database (PP)
Showing entries 2876 to 2900 of 3051.
Go directly to page: 1 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123
(L) C:\WINDOWS\system32\wc_storage.dll Part of the Windows Operating System http://www.herdprotect.com/wc_storage.dll-b4300d906c12a55c694fee0fa868b3ba8fe3fb13.aspx Windows ALL; discovered by Nasdaq |
(L) C:\Windows\system32\wdfsconnectMntNtf2017.dll Virtual Storage Mount Notification https://www.westerndigital.com/ Windows ALL; discovered by Nasdaq |
(L) C:\WINDOWS\system32\wdShellExt.dll Context menu handler http://www.shouldiblockit.com/wdshellext.dll-25588.aspx Windows ALL; discovered by Nasdaq |
(L) c:\windows\system32\WerEtw.dll Microsoft Corporation https://www.reasoncoresecurity.com/weretw.dll-c7f9f900d77db33fc9ab84101939e644b3980237.aspx Windows ALL; discovered by Nasdaq |
(X) C:\Windows\system32\WeWatcherLSP64.dll PUP.Optional.WeWatcherProxy.A https://forums.malwarebytes.org/index.php?/topic/170602-removal-instructions-for-wewatcher/ Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\system32\wfxqhv.exe Known Dialer Fix / Info: Use Brute Force Uninstaller (BFU) with Metallica's alcanshorty.bfu fix. http://metallica.geekstogo.com/dialers.html Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\System32\wgse.exe Identified as Trojan.Runner.h by ewido. Fix / Info: Delete file. Windows ALL; discovered by nasdaq |
(X) C:\Windows\system32\Wimboldon.exe PUP.Optional.TaskRNDM https://www.herdprotect.com/wimboldon.exe-9cebf4f7ace81dde3ebe9719ba8787763dd8d552.aspx Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\system32\win32GI\svchost.exe Added by a variant of the Rbot familly of trojan. Fix / Info: Use Andy manchesta's SDFix tool http://spywareinfoforum.com/index.php?act=ST&f=37&t=81454 Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\System32\wincrt32.exe Identified as WORM_AGOBOT.JP at TrendMicro. Fix / Info: Virus and Trojan tools. http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_AGOBOT.JP&VSect=Sn Windows ALL; discovered by nasdaq |
(L) C:\Windows\System32\Windows.UI.Immersive.dll UpdateUserPictureTask - Microsoft. http://systemexplorer.net/file-database/file/windows.ui.immersive-dll Windows ALL; discovered by Nasdaq |
(Q) C:\WINDOWS\System32\WINLOG.exe Winlog.exe a process belonging to the Salfeld Personal Security tool, but also used for the W32.Agobot.LF virus. Fix / Info: Virus scan if winlog.exe identifies as a virus. http://www.liutilities.com/products/wintaskspro/processlibrary/winlog/ Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\system32\winlogui.exe Coinminer_CryptoNight.SM-WIN64 https://www.file.net/process/winlogui.exe.html Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\System32\winnook.exe Added by the WIN32.TOPANTISPYWARE.L TROJAN! Fix / Info: HJT and Virus/trojan removal programs. . Windows ALL; discovered by Nasdaq |
(L) C:\WINDOWS\system32\winrmsrv.exe Microsoft https://www.microsoft.com/ Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\system32\winscenter.exe Related to Spyware Guard 2008 a rogue anti-spyware program. http://www.systemlookup.com/Startup/18726.html Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\system32\winsys16_061230.dll start Added by the WORM_AGENT.AFFZ worm. Please note that rundll32.exe is a legitimate program. Fix / Info: Hijackthis http://www.bleepingcomputer.com/startups/winsys16_061230.dll-20735.html Windows ALL; discovered by nasdaq |
(X) C:\Windows\system32\winupd.exe backdoor Trojan http://www.enigmasoftware.com/tempwinupdexe-removal/ Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\system32\winupdater.exe CWS Spyware!! Fix / Info: Task Manager, HijackThis, CWShredder, etc. may also require special tools yet to be developed http://www.spywareinfoforum.info/newsletter/archives/2005/aug7.php Windows ALL; discovered by Basementgeek |
(X) C:\WINDOWS\System32\winupdt.exe Added by the W32/RBOT-FP WORM Fix / Info: Virus and Trojan tools. . Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\system32\wmhost.exe Added ty the Troj/Bckdr-QHS trojan. Fix / Info: Use Andy manchesta's SDFix tool http://spywareinfoforum.com/index.php?act=ST&f=37&t=81454 Windows ALL; discovered by nasdaq |
(X) C:\WINDOWS\System32\wmscupd.exe Part of Malware group - Worm Ircbot Gen Fix / Info: Delete the file - Virus/trojan scan. http://fileinfo.prevx.com/QQe41b17727304-WMSC13097780/WMSCUPD.EXE.html Windows ALL; discovered by nasdaq |
(X) C:\Windows\System32\wsaupdater.exe, Wsaupdater.exe is spyware that changes Userinit.exe, to Wsaupdater.exe in the registry. Fix / Info: HijackThis http://support.microsoft.com/kb/892893 Windows ALL; discovered by nasdaq |
(L) C:\WINDOWS\system32\WSDMon.dll Printer port monitor that supports printing to network printers https://docs.microsoft.com/en-us/windows-hardware/drivers/print/wsdmon-port-monitor Windows ALL; discovered by Nasdaq |
(X) C:\WINDOWS\System32\wserv32.exe WORM_RBOT.AF Fix / Info: HijackThis - Trojan/Virus removal tools http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FRBOT%2EAF&VSect=P Windows ALL; discovered by nasdaq |
This is a list of items that is designed to help with the analysis of HijackThis, DDS, OTL and FRST logs.
It is by no means exhaustive (in fact it is being added to all the time), and is intended
to complement other legitimate online lists.