| Name | Status | Filename | Description |
|---|
| system | X | Hacker.com.cn.exe | Troj/GrayBrd-CJ Note: Located in %windir% Read the link, allows remote access |
| System Account Center (SysAccCtr) | X | svcpost.exe | W32/Oscabot-Q Read the link, allows remote access |
| System Commander MBR check | ? | WINMBR.EXE | |
| System Connect Util Service (FLUtilsSvc) | L | FLUtilsSvc.exe | Related to Fiberlink's Extend360 TM mobile Note: Located c:\Program Files\Fiberlink\Extend360\ |
| System Distribution Controller (distribcontrol) | X | disctrl.exe | Added by the W32/Rbot-GAM WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| System Driver Service (systemdriver) | X | sysdriver.exe | Added by the W32/Tilebot-GA WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| System Event | X | SVCH0ST.exe | svch0st.exe is a process which is registered as Trojan.Gamqowi This Trojan can allow attackers to access your computer by lowering Internet security settings, thus stealing passwords, Internet banking and personal data. |
| System Event Dispatcher | X | sgvrfy32.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Uses a random filename. |
| System Event Messaging | X | svchost.exe | Seems to be viral |
| System Event Notification Service | X | lsass.exe | Added by the Troj/Agent-AD
TROJAN!
|
| System Event Service (SystemSet) | X | service.exe | Detected by Antivir as TR/Delphi.Downloader.Gen |
System Guard(AdwareKiller) (AdwareKillerSysGuardService) | X | SysGuard.exe | EAdwareKiller is a rogue antispyware utility that uses false positives to lure the user into buying the product. Note: Located in \%Program Files%\EAdwareKiller\ |
| System Internal AntiVirus (SVSAV) | X | svsnt.exe | Added by the Worm/Sdbot.40448.22 WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Read the link. |
| System Manager Service (SMSC) | X | smsc.exe | Added by the W32/Sdbot-ADY
WORM!
Note: This worm\trojan file is found in the Windows or Winnt folder.
|
| System Managment Controler (SMSCGISVC) | X | smscg.exe | Added by a variant of the Backdoor.Sdbot Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| System Messenger Service (WINSMSC) | X | smsc.exe | Added by the W32/Tilebot-F
WORM!
Read the link, rootkit type stealth involved.
|
| System Mld (MldServ) | L | sysmlds.exe | See Here
|
| System Mng Srvc (SMSG) | X | smsg.exe | Added by the W32/Tilebot-AB
TROJAN!
Note: This trojan file is found in the Windows or Winnt folder.
|
| System Out | X | systemout.exe | Trojan-Spy.Win32.Delf.du |
| System Process Monitor (sysprcm) | X | msnprcss.exe | Added by ServiceThreadHandler.Process TROJAN! Note: located in C:\WINDOWS\System32\ |
| System Profile Monitor (spm) | L | spm.exe | Related to Northern_Michigan_University On-line services. Note: Located in \%ROOT%\ |
| System Restore Manager | X | symon.exe | Added by the W32/Tilebot-IP WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| System Restore Scheduling Service (srsvc) | X | srsvc.exe | W32/Rbot-GHR |
| System Restore Services | X | lsiss.exe | Added by the W32/Tilebot-HN WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) disabling the automatic startup of other software. |
| System Scheduler (SysSch) | X | svchost.exe | W32/DelCyc-A
Note:Located in C:\Windows\Offline Web Pages (Win9x/Me), C:\%WINDIR%\Offline Web Pages (Vista/XP/WinNT/2K)
Allows remote access
|
| System Server (System Server) | X | smss.exe | Added by the Troj/Feutel-T
TROJAN! Note: This is not the legitimate Windows Process smss.exe. (Which is found in the System32 folder.) This worm/trojan file (smss.exe) is found in the Windows or Winnt folder. |
| system server (system server) | X | MSpass.exe | Added by the Troj/Lineage-BG
TROJAN!
Note: This trojan file is found in the Windows\help or Winnt\help folder.
|
| System Service Monitor (servicemon) | X | servicemon.exe | Added by the W32/Tilebot-GH WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| System Spooler Host | X | syspool.exe | Added by the W32/Sdbot-COV WORM! Note: This worm\trojan is located in C:\Windows\System\dllcache\ (Win9x/Me), C:\%WINDIR%\System32\dllcache\ (XP/WinNT/2K) |
| System Spooler Host | X | services.exe | Added by the W32/Sdbot-COV WORM! Note: This worm\trojan is located in C:\Windows\cursors\mstask\ (Win9x/Me), C:\%WINDIR%\cursors\mstask\ (XP/WinNT/2K) Found also in C:\%WINDIR%\\Media\ringtones\ disabling the automatic startup of other software |
| System Startup Service (SvcProc) | X | svcproc.exe | Identified as Trojan.Win32.Stervis.b and usually bundled with nail.exe, a Abetterinternet adware variant.
Note: This trojan file is found in the Windows or Winnt folder.
|
| System Update (SUService) | L | suservice.exe | Related to Levolo System_update Thinkpad from IBM. More Note: Located in c:\program files\lenovo\system update\ |
| system32 (system32) | X | system32.exe | Added by the Troj/GrayBird-U
TROJAN!
Note: This trojan file is found in the Windows or Winnt folder.
Note: Also see Troj/Graybird-G
|
| system32 master (windowsys) | X | windowsys.com | Added by the W32/Sdbot-DIE WORM! Note: located in \%WINDIR%\ Read the link, allows remote access |
| systemax32win32 (systemax32) | X | systemax32.exe | Added by a variant of the SDBot.aad family of worms and IRC backdoor Trojans. |
| systemboot (systemboot) | X | System.exe | Added by the SDBOT.CDM
WORM!
Read the link, rootkit type stealth involved.
|
| SystemManager | X | SYSMANAGER.EXE | Added by the SDBOT.CGG
WORM!
Read the link, rootkit type stealth involved.
|
| SystemRoot%system32SLsvc.exe,-101 (slsvc) | L | SLsvc.exe | Part of Windows Vista. Note:Located in C:\%WINDIR%\System32 |
| Systems Management Data Manager (dcstor32) | L | dcstor32.exe | Related to Dell Open Management system.
http://www.what-process.com/process-info.aspx?p=dcstor32.exe |
| Systems Management Event Manager (dcevt32) | L | dcevt32.exe | Related to Dell Open Management system.
http://www.what-process.com/process-info.aspx?p=dcevt32.exe |
| SystemSuite Task Manager | L | MXTask.exe | Related to Ontrack Inc. |
| sytem32 (sytem32) | X | svost.exe | Added by the Troj/Feutel-Z
TROJAN!
Note: This trojan file is found in the Windows or Winnt folder.
|
| Szservice | X | czsrv.exe | W32/Sdbot-DHW
Note:Located in C:\Windows\ (Win9x/Me), C:\%WINDIR%\ (Vista/XP/WinNT/2K) |
| TabletService | L | Tablet.exe | Related to Wacom Technology, Corp. |
| TabletServicePen | L | Pen_Tablet.exe | Related to Pen_Tablet from Wacom Tech. Interactive pen displays productivity tools that make using a computer as natural as possible. By using a pen directly on screen, you work more quickly and naturally. Note: Located in \%WINDIR%\System32\ |
| TabletServiceWacom | L | Wacom_Tablet.exe | Related to Graphics_Tablet from Wacom Technology Co. Drivers. Note: Located in \%WINDIR%\System32\ |
| Talking Alarm Clock user logon monitor | L | AlarmMonitor.exe | Related to Cinnamon software inc. http://www.cinnamonsoftware.com/ |
| Tango Service (TangoService) | L | TangoService.exe | Related to Efficient Networks by Siemens |
| TAO NT Naming Service (TAO_NT_Naming_Service) | L | NT_Naming_Service.exe | Related to SAP_Business_One gives you the information you need to select and implement business management software. Note: Located in \%Program Files%\SAP\SAP Business One ServerTools\License\ |
| TapeWare | L | TWWINSDR.EXE | Related to Yosemite_Technologies TapeWare backup system. |