| Name | Status | Filename | Description |
|---|
| PLFlash DeviceIoControl Service | L | IoctlSvc.exe | Related to PLFlash_DeviceIoControl Service from Prolific Technology Inc. Note: located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| PLSRemote Service (PLSRemoteSvc) | O | PLSRemote.exe | RISKWARE! or potentially unwanted application. This application may have been installed by your system administrator for providing support for your machine. However this application has been used by several trojan authors and included in other trojans for malicious purposes. For more information CLICK_HERE |
| Plug and Play (PlugPlay) | L | services.exe | Spanish Windows 2000 Plug and Play |
| Plug and Play Device Host (Universal Plug and Play) | X | WeRecl.exe | Added by Worm_Ircbot_Gen WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| Plug and Play Device Manager ($sys$DRMServer) | X | $sys$DRMServer.exe | This is the Sony-BMG ROOTKIT! Do not try to manually remove this! For more information check Mark Russinovich's Blog_Here
or Google Sony Rootkit. |
| plugin | X | PLUGIN.EXE | Added by the SDBOT.BUH
WORM!
Read the link, rootkit type stealth involved.
|
| PMJ151 AutoLaunch Service (PMJ151LA) | L | PMJ151LA.BIN | Related to Panasonic_DVC_Web_Camera Note: Located in C:\%WINDIR%\ |
| pml | L | | |
| pml | L | | |
| Pml Driver | L | HPHipm09.exe | Related to HP printers |
| Pml Driver HPH11 | L | HPHipm11.exe | HP PML Driver for HP.s Photosmart printers. |
| Pml Driver HPZ12 | L | HPZipm12.exe | Related to HP printers. |
| pmldriver hpz12 | L | | |
| PMounter | L | PMounter.exe | Partition Mounter task installed with the Paragon Hard Disk Manager software.
(answers that work) |
| PMSveH | L | PMSveH.exe | Related to Lenovo part or IBM ThinkVantage, Note: Located in C:\WINDOWS\system32\ |
| PnkBstrA | L | PnkBstrA.exe | Related to PunkBuster from Even Balance, Inc. Service that look for cheats while users are playing on PunkBuster enabled servers. Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| PnkBstrB | L | PnkBstrB.exe | Related to PunkBuster from Even Balance, Inc. Service that look for cheats while users are playing on PunkBuster enabled servers. Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| pnpext | X | wmc.exe | Added by the Troj/LeechPie-D
TROJAN!
Note: The file wmc.exe is a legitimate remote administration tool, but in this case is being used by the trojan. |
| Policy Agent | X | svchost.exe -k Policy Agent | Added by the Fuwudoor TROJAN! |
| Pop-Up Stopper Anti-Spyware Service (PWISVC) | L | PWISVC.EXE | Related to Pop-Up_Stopper_Anti-Spyware from Panicware. Note: Located in C:\Program Files\Panicware\Pop-Up Stopper Anti-Spyware\ |
| Portrait Displays Display Tune Service (DTSRVC) | L | dtsrvc.exe | Related to MagicTune by SAMSUNG. |
| Posadis 0.60.6 | L | posadissrv.exe | Related to Posadis A DNS server for Unix and Windows platforms, supporting authoritative service (master/slave) as well as caching. Note: Located in \%Program Files%\Posadis 0.60.6\ |
| PostgreSQL Database Server 8.0 (pgsql-8.0) | L | pg_ctl.exe | Related to PostgreSQL open source database. |
| PostgreSQL Database Server 8.2 (pgsql-8.2) | L | pg_ctl.exe | Related to PostgreSQL open source database. |
| Power Adapter (ADIDown) | X | svchost.exe | Troj/Maran-AB Read the link, steals information |
| Power Adapter (ADIDown) | X | svchost.exe | Troj/Maran-AW
Note:Located in C:\Windows (Win9x/Me), C:\%WINDIR% (XP/WinNT/2K) |
| Power Manager (PowerManager) | X | svchost.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| PowerAlert UPS Engine | L | paserver.exe | Related to IBM Power Management utililty. |
| PowerPanel Personal Edition Service (ppped) | L | ppped.exe | Related to CyberPower dependable line of uninterruptible power supplies. Note: Located in C:\Program Files\CyberPower PowerPanel Personal Edition\ |
| PowerUtility Remote Power Management Service (putlrsrv) | L | PUTLRSRV.exe | Related to Power_Utility Remote Power Management Service. From FUJITSU LIMITED. Note: Located in \%Program Files%\Fujitsu\PowerUtility\remote\ |
| PowerUtility Schedule (PUSCSRVC) | L | PUSCSRVC.exe | Related to Power_Utility service. Schedule from FUJITSU LIMITED. Note: Located in \%Program Files%\Fujitsu\PowerUtility\schedule\ |
| PowerUtility TV Recording Reservation (PUSCSRVC) | L | PUSCSRVCBas.exe | Related to FUJITSU LIMITED |
| PPCtlPriv | L | PPCtlPriv.exe | Related to CA_Anti-Spyware Note: Located in \%Program Files%\CA\CA Internet Security Suite\CA Anti-Spyware\ |
| PPPoE Service | L | pppoeservice.exe | Related to the Internet Provider High Speed Services (ISP) |
| prairieFyre Application Updater Service | L | UpdaterService.exe | Related to Application_ Updater Service from prairieFyre Software Inc, Note: Located in C:\Program Files\prairieFyre Software Inc\6100CCS\6110\Application Updater Service\ |
| PreEmpt (qfcoresvc) | L | loadsvc.exe | Related to preEmpt
Active System Hardening. Made by PivX Solutions, Inc. This file should be found in the Program Files\PivX\PreEmpt folder. |
| Prevx Agent (PREVXAgent) | L | PXAgent.exe | Related to Prevx Ltd. Antivirus and software protection. |
| Prime95 Service | L | PRIME95.EXE | Help Universities to find Prime_Numbers The user should decide it's participation. |
| Print Client Share (PrntCSh) | X | psmcsh.exe | Listed as w32 IRC-Bot gen by PrevX here |
| Print Job Accounting (OkiJaSvc) | L | oklogsvc.exe | Related to Print_Job_Accounting software from Oki Data Americas, Inc. Printer service. Note: Located in \%Program Files%\Okidata\Print Job Accounting\ |
| Print Job Accounting Watch Service (OkiWchSvc) | L | okwchsvc.exe | Related to Print_Job_Accounting software from Oki Data Americas, Inc. Printer Watch service. Note: Located in \%Program Files%\Okidata\Print Job Accounting\ |
| Print Scheduler (prtsch) | X | usnsvc.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This rojan is located in \%WINDIR%\System\ |
| Print Spool Handler (Print Spooler) | X | spooler.exe | Added by the W32/Codbot-X
WORM!
Note: This worm file is found in the System32 folder.
|
| Print Spooler (Spooler) | L | spoolsv.exe | Used for Fax and Printing.
Unknown owner :Location: C:\WINDOWS\system32\spoolsv.exe |
| Print Spooler Manager (prntspman) | X | spoolsvr.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| Print Spooler Service | X | (random file).exe | Troj/Agent-FXX
Note:Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K)
Allows others to access the computer. Steals information |
| Print Spooler Service (SpoolSvc201) | X | sklrr7yvxzac.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm\trojan is located in Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Also found in C:\WINDOWS\TEMP\ folder. The filename is random. The service name is known to be from SpoolSvc201 to SpoolSvc2xx |
| Print Spooler Service (SpoolSvc203) | X | cjnr4r4ngyrk.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm\trojan is located in Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Also found in C:\WINDOWS\TEMP\ folder. The filename is random. The service name is known to be from SpoolSvc201 to SpoolSvc2xx |
| Print Spooler Service (SpoolSvc204) | X | nlkfev7exne.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm\trojan is located in Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Also found in C:\WINDOWS\TEMP\ folder. The filename is random. The service name is known to be from SpoolSvc201 to SpoolSvc2xx |
| Print Spooler Service (SpoolSvc205) | X | mlsdf8h8183934.exe | Added by the HackerDefender SDBot TROJAN! ROOTKIT INFECTION Note: This worm\trojan is located in Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Also found in C:\WINDOWS\TEMP\ folder. The filename is random. The service name is known to be from SpoolSvc201 to SpoolSvc2xx |