| Name | Status | Filename | Description |
|---|
| Microsoft Help SVC | X | msnmngr.exe | Added by a W32/Sdbot-PQ worm infection |
| MedionVFD | U | MdionLCM.exe | Related to Medion_Display display Information. Note: Located in C:\Program Files\Medion Info Display\ |
| Microsoft Telecoms Center | X | winupn.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) More here |
| msnmsg | X | asgag.exe | Adware trojan - probably CoolWebSearch parasite related.
|
| mspwr | U | pupxpman.exe | Related to Ashampoo's PowerUp XP
|
| MSPQFile | X | MSA****.TMP | Homepage hijacker. See here for more information. **** can be anything |
| Microsoft--Updates | X | sxvhost.exe | Added by a W32/Rbot-FH worm infection |
| Microsoft Updates 2 USB | X | wgafixer.exe | Added by a variant of the WIN32.RBOT WORM!
|
| MONPluginSrIvcs | X | n3monap23.exe | Added by a variant of the WIN32.RBOT WORM!
|
| MSN Messenger Service Starter | X | msnmgsr.exe | Added by the W32/Rbot-AOS
WORM!
Note: This worm file is found in the System (95/98/Me) or System32 (Nt/2000/XP) folder.
|
| MS MSN Menssenger 7.0 | X | MSMSN7.exe | Added by the W32/RBOT-ACA WORM! |
| Malware-Wipe | X | Malware-Wipe.exe | Added by Malware-Wipe ROGUE PROGRAM.
Issue fake taskbar alerts as a scare tactics in order to have you purchase the commercial version of the software. Note: Located in C:\Program Files\Malware-Wipe\ |
| MSWinlogon | X | SynCor.exe | Added by the Troj/Agent-FZL Trojan |
| mackfy.exe | X | msms.exe | Added by the W32/Sdbot-DID WORM! Note: Located in \%WINDIR%\System32\ Read the link, allows remote access |
| MicroSoft IE Sasser | X | ISASS.EXE | Added by the SDBOT.MX WORM! |
| MSDNN | X | help.exe | Added by the Troj/Agent-GBK TROJAN! Note: located in \%WINDIR%\ |
| Microsoft Hosting Service | X | WINHOSTING.EXE | Added by the RBOT.AEV WORM! |
| MicroSoft Getway mqbol | X | (Random 12,Letter).exe | Added by a variant of the Backdoor.Win32.Rbot.etg family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ |
| Microsoft Conf Ldr | X | sysconf.exe | Added by a variant of the SDBOT WORM! |
| Mioft Wiws Seice ent | X | euxabnuqfn.exe | Added by the WORM! Note: Located in \%WINDIR%\System32\
Note: Uses a Random filename. |
| media_driver | X | media_driver.exe | Added by the TUPEG VIRUS! - NOTE: this malware actually changes the default value data of the Registry "Run" key in order to force Windows to launch it at boot. Name field may be empty.
|
| Microsoft Windows Update | X | MSNMSGR.EXE | Added by the W32/SDBOT-WM WORM! |
| Microsoft Visual SourceSafe | X | winlogon.exe | Added by the W32.Neveg.B worm |
| Microsoft Software Update | X | nmon.exe | Added by a RBOT.HZ worm infection
|
| Microsoft Update | X | mvsc.exe | Added by a variant of the W32.Spybot.DAZ WORM! |
| Msupdate | X | svcrhost.exe | Added by the WIN32.TACTSLAY.A TROJAN! |
| Microsoft CronD Service | X | MSCRON.EXE | Unidentified AIM-based worm/trojan |
| Microsoft JavaVM | X | msjarun.exe | W32/Rbot-JW worm |
| Microsoft Web CP Manager | X | webcp32.exe | Added by a variant of the IRCBot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Microsoft MSN 7 Services | X | msnmsger.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| MyWebSearch Email Plugin | X | mwsoemon.exe | Added by MyWay An IE Browser Helper Object used by adware WeSearch to add an IE toolbar to provide search features, and hijack browser search requests to its controlling servers run by MyWay. Note: Located in \%Program Files%\MYWEBSEARCH\BAR\5.BIN\ |
| Mscnt | X | mscnt.exe | Added by the Troj/Dluca-C TROJAN! |
| Machine Debug Manager | U | mdm.exe | Used by developers for debugging. Those who have encountered it have unchecked it with no degradation in performance. May cause your computer to "hang" if you have MS Visual Studio installed and this disabled because it appears to take over error handling - hence the U recommendatioon. Can also be listed as MDM7. See here to disable |
| MalwareAlarm | X | MalwareAlarm.exe | Added by Malware_Alarm ROGUE PROGRAM. False positives work as goad to purchase; inadequate scan reporting. Note: Located in \%Program Files%\MalwareAlarm\ |
| MessengerPlus, MessengerPlus2, MessengerPlus3 | N | MsgPlus.exe | MessengerPlus - third party MSN Messenger extension that adds a number of useful features. Bundles the hard to remove C2Media LOP adware; the software does offer you a choice during setup: make sure to install MessengerPlus WITHOUT that "sponsor program"! |
| Microsoft Windows Updater | X | windates.exe | Added by the SDBOT.TE WORM! |
| Microsoft DirectX | X | wuamgrd.exe | Added by the SDBOT.MY WORM! |
| MCX Update | X | wisp.exe | Added by the W32/Rbot-AQH
WORM!
Note: This worm\trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| Microsoft Windows DLL 32-BIT | X | msncheck32.exe | Added by the W32/SDBOT-XX WORM! |
| morphstb | X | morphstb.exe | Adware downloader - detected by Kaspersky antivirus as Trojan-Downloader.Win32.Stubby.c |
| Microsoft Update | X | Isac.exe | Added by the W32/Rbot-AU WORM! |
| Microsoft Registro | X | svchostt.exe | Added by the TROJ/BANCOS-DH TROJAN! Read the link, keylogger/password stealing trojan(s) involved. |
| Microsoft Diagnostic | X | msdiag32.exe | Added by the W32/RBOT-UC WORM! |
| MicrosoftUpdate | X | syshelper.exe | Added by the WOOTBOT.AC WORM! |
| MonTest | X | vccxzq.exe | Added by the W32/SDBOT-EA WORM! |
| Microsoft Spool 21 Service | X | spool21.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Microsft Upgraed | X | (Random,Name).exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| MsgApi | X | (path to file) | Added by a Dedler-D trojan infection |
| Microsoft Windows DLL Services Configuration | X | newdll.exe | Added by the W32/Sdbot-ZR
WORM!
|
| MS Hosts | X | msthosts.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| MSControl28 | X | crsss.exe | Added by the SPYBOT.AJX WORM! |
| Microsoft IPC | X | svshost.exe | Added by an unidentified VIRUS! |
| MediaPath | X | Proyecto1.exe, Root.exe | Added by the GRUEL VIRUS! |
| Microsoft Update 32 | X | servic.exe | Added by the W32/Rbot-AXN
WORM!
Note: This worm\trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| MPtask Services | X | mptask.exe | Added by the LALA or DOWNLOADER-BN.B or AOT VIRUSES! |