| Name | Status | Filename | Description |
|---|
| GP Updater | X | gpupdater.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| GDrive | N | GDriver.exe | Found on IBM systems. All it does is set the CDROM drive letter to G:. Set your drive letter manually via Start -> Settings -> Control Panel -> System -> Device Manager |
| gwum | U | gwum.exe | Gigabyte utility manager. Loads if you have a Gigabyte motherboard and got a full bundle of utilities installed. Monitors CPU, fans, BIOS etc. Only used by system "tweakers" |
| GoogleDCClient | N | GoogleDCC.exe | Google Compute Client - only present if you installed the Google Toolbar with "Google Compute" client active. Does complex calculations in the background when idle. If you want to turn it off go to your browser, click on the little double-helix on the Google Toolbar, and click "Stop Computing". No longer supported
|
| Generic Host Service | X | lshost.exe | Added by a RBOT.LU worm infection |
| gremier | X | wscript.exe,gpremier.vbs | Added by the GPREMIER VIRUS! |
| Gravis Xperience Driver Support | U | Grxp4exe.exe | Driver for Gravis game controllers such as the Eliminator Aftershock. Must be loaded if you run the supplied application software for the controller to be recognized. Start it manually via a shortcut if not used |
| Generic Service Process | X | nvsvc.exe | Added by the AGOBOT.BY WORM! - NOTE - do NOT confuse with the legitimate NVIDIA Driver Helper Service file of the same name as described here |
| GLSetIT32 | X | isass.exe | Added by a variant of the OPTIX PRO series of VIRUSES! |
| GCS | N | GrabClipSave.exe | GrabClipSave screen capture tool |
| Gadwin PrintScreen | N | PrintScreen.exe | Gadwin PrintScreen - utility to capture, print or save the current window |
| gtydf | X | iisca.exe | Troj/Clagger-BB |
| Gay_Sexy_** | X | Gay_Sexy_**.exe | Premium rate adult content dialer (where * is a random char) |
| gouday.exe | X | readme.exe | Added by the BEAGLE.C WORM! |
| GMedia2 | X | GSM2.exe | Malware downloader - detected by Kaspersky antivirus as Trojan.Win32.VB.ux |
| Gainward | U | TBPanel.exe | Configuration utility for Gainward graphics cards. Not required unless you use non-default settings. Available via Start -> Settings -> Control Panel |
| GBSpaceMan | Y | SpaceMan.exe | Related to GreenBorder Secure your browsing activities on the internet. Note: Located in C:\Program Files\GreenBorder\SpaceMan.exe |
| Gestionnaire des tâches de Windows | X | taskmgr.exe | Detected as Backdoor.Win32.Poison.fat by Kaspersky anti-virus. Note: Do not remove the legitimate file in \%WINDIR%\System32\taskmgr.exe Note: Use SDFix under supervision. |
| Golum | X | services.exe | Added by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should NOT be confused with the legitimate Windows services.exe process, located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup!
|
| GuruNet | U | GuruNet.exe | GuruNet lets you click on any word on your screen to get the relevant information you want.
|
| g.exe | X | g.exe | Added by the Backdoor.Graybird.Q
TROJAN!
Read the link, rootkit type stealth involved.
|
| gdcw | X | GDCW.exe | Identified as a variant of the Trojan.Fakealert.origin Trojan. Note: Located in \%Program Files%\SecurePCCleaner\data\ Note: Use SDFix under supervision. |
| GotSmiley | X | GotSmiley.exe | GotSmiley - ad supported program that provides the user with smileys for use in emails. Not recommended. Please note that Claria Corporation no longer support GAIN-Supported software - see here
|
| googletalk | U | googletalk.exe | Google_Talk "enables you to call or send instant messages to your friends for free–anytime, anywhere in the world". Can be launched manually. |
| Graphic Update | X | openglx.exe | Identified as Backdoor.Win32.IRCBot.ako MSN Worm! Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Generic Host Process for Win32 Services | X | svchost.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) This worm\trojan file is found in the Windows or Winnt folder. |
| german.exe | X | wintems.exe | Added by the W32.Beagle.DP
WORM!
Note: This worm file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. Drops multiple files in multiple folders. |
| GustavVED | X | (random,filename) | Added by the OPASERV.H VIRUS! |
| GRA | N | gra.exe | Looks at system resources at startup and warns you if they have dropped. Contains links to the Disk Clean Up, Defrag and Start Up Menu. It does have a link to a startup configuration utility. Similar to msconfig but can keep a list of disabled apps. Not really necessary. Only appears if you load the Gateway Startup Utility |
| gramdate | ? | 2Stop.exe | ?? |
| gencroot | X | gencroot.exe | Added by the Troj/HacDef-X
TROJAN!
Note: This trojan file is found in the Windows or Winnt folder.
|
| Gravis Appawareloader | U | dbserver.exe | Looks like it's associated with Gravis game controllers and the Keyset Manager, allowing the user to program the buttons for games that don't support them |
| Gtwatch | N | gtwatch.exe | Associated with a Mustec scanner and not required |
| GsAds | X | gms2.exe | PacerD_Media/Pacimedia.com adware component
|
| GLSetIT32 | X | msiexec16.exe | Added by the OPTIX PRO series of VIRUSES! |
| GWMDMpi | U | GWMDMpi.exe | Used with internal modems on Gateway PCs such as the 450SX Notebook. Required for audio settings to be maintained and does not remain in memory once run. See here for more information |
| gluon | ? | gluon.exe | In a gluon/bin sub-directory |
| Goldensoft_MndlSvr | U | MndlSvr.exe | Goldensoft CD Ghost related - turns a computer into a 200X-speed CD-ROM tower. Working from the hard drive, users can simultaneously access as many as 23 virtual CD-ROM drives at a speed of 200X for true multitasking |
| Game Device | N | JOYUPDRV.EXE | Genius game controller profile activator |
| Generic Host Process for Win Services | X | mscvs.exe | Added by a variant of the SDBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| general lptt01 | X | general.exe | RapidBlaster Variant |
| GrooveMonitor | Y | GrooveMonitor.exe | Related to Microsoft_Office_Groove_2007 Groove Folder Sharing synchronization (GFS). If you kill it, your GFS workspaces may not synchronize properly (particularly around unread-marks), and you might experience some nagging discomfort. Note: Located in C:\Program Files\Microsoft Office\Office12\ |
| grinders | X | grinders.exe | Added by the Nuwar/Storm worm Note: located in \%WINDIR%\ Note: Use SDFix under supervision. |
| GLF Network Lan Monitor | X | NPFMNTOR.exe | Added by the W32/RBOT-AGY WORM! |
| GameSpot | N | kontiki.exe | Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops |
| Generic host proccess for windows | X | SVCHOSTS.EXE | Added by the W32/SPYBOT-GQ WORM!
|
| GT15J4R49V | X | cpuserv.exe | Identified as a variant of the Trojan.Win32.Radi.gu family of TROJAN. Note: Located in \%WINDIR%\ Note: Use SDFix under supervision. |
| GomAudio | U | Goma.exe | Related to Gom_Audio, O4 - HKCU\..\Run: [GomAudio] C:\Program Files\GRETECH\GomAudio\Goma.exe from GRETECH Note: Located in \%Program Files%\GRETECH\GomAudio\ |
| Graphic Loader | X | ntvdm32.exe | Added by a variant of the WIN32.RBOT WORM!
|
| GetTheMusic | X | rundll32.exe,MSA64CHK.dll, DllMostrar | MatrixDialer related |
| Generic Host Process for Win32 Services | X | ntspcv.exe | Added by the SDBOT.S WORM! |
| Generic Host Process | X | camacttiv.exe | Added by a variant of the Backdoor.Ciadoor TROJAN! |
| Glide | Y | Glidew32.exe | Cirque touchpad driver |
| gimmysmileys | X | gimmysmileys.exe | Added by the Downloader.VB.xu identified by ewido. Note: More_info |
| german.exe | X | wintems.exe | Added by the Mitglieder.S
TROJAN!
Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|