| Name | Status | Filename | Description |
|---|
| ntddetect | X | ntddetect.exe | Added by the TROJ/AGENT-CU or BDOOR-ZAU TROJANS! |
| Nfo | X | nfomon.exe | Added by the Adware.W32.DelFin Note: Located in C:\Windows\System\nfomon\ (Win9x/Me), C:\%WINDIR%\System32\nfomon\ (XP/WinNT/2K) More: here |
| Norman ZANDA | U | ZLH.EXE | System Tray icon for Norman Antivirus |
| nsvcin | X | n20050308.exe | Adware downloader/installer, Delphin_Media_Viewer related - also detected as the DELMED.A TROJAN! |
| netsv32 | X | netsv32.exe | Added by a W32/Sdbot-PX
worm infection |
| NSRKey | U | NSRTray.exe | Related to Save_and_Restore Symantec Corporation products. Note: Located in C:\Program Files\NORTON~1\NSR\Agent\ |
| NOMAD Detector | U | ctmnrun.exe | Detects the Creative NOMAD jukebox/MP3 player at the time it is attached to USB and starts the needed application (Creative PlayCentre 2) that you use to copy MP3 files to and from it. This is required if you want PlayCentre 2 to take control of the NOMAD once connected |
| norten Software Intrenet | X | norten.pif | Added by W32/Rbot-AWA WORM! |
| nsys32 | X | nsys32.exe | Added by the W32/Agobot-SU
Worm!
|
| NoWayVirus | X | pgs.exe | Added by AVSystemCare ROGUE! An application reports false detections for a number of Trojan horses. Note: Located in \%Program Files%\NoWayVirus\ |
| NovaBackup * Tray Control | U | NbkCtrl.exe | Scheduling engine of NovaSTOR Backup Service. Only required if scheduling is enabled and wanted - see http://www.no-panic.com/backup/tech_supt/nbackup7_commandline.html * represents the version number
|
| Norton Updater | X | NortonUpdate.exe | Added by an unidentified WORM or TROJAN! |
| Nitro PDF Printer Monitor | U | NitroPDFPrinterMonitor.exe | Related to Nitro_PDF Printer Monitor from Nitro PDF, Inc., PDF program. Note: Located in \%Program Files%\Nitro PDF\Professional\ |
| NeroCheck | X | regedit.exe | Added by the DOOMJUICE.B VIRUS! Note - this is not the valid Ahead Nero CD burning program. Also it is not the valid Windows registry editor which resides in C:\Windows or C:\Winnt wheras this version resides in C:\Windows\System (Win9x/Me), C:\Winnt\System32 (WinNT/2K) or C:\Windows\System32 (WinXP) |
| nvcoi | X | nvcoi.exe | Detected as Downloader-BCF by McAfee. Note: Located in %programfiles%\nvcoi |
| Nod29 Service | X | nodwr.exe | Added by a variant of the Rbot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ |
| netservices | X | svchostn.exe | Added by the SDBOT.GI WORM! |
| NBInstall | X | MBDownloader_*****.exe | Added by the Mirar_D a variant of the ADSPY/NetNucleus adware! The *s stand for random characters. Note: Located in \%Temp%\ |
| NCS_SS | N | Csinsm32.exe | Same as CleanSweep Smart Sweep-Internet Sweep |
| Norton Updater | X | ccUpdate.exe | Added by a variant of the AGOBOT/GAOBOT WORM!
|
| Net | X | WINREG.EXE | Added by the ASSASIN.D VIRUS! |
| Narrator | X | ******.exe (* =,random char) | Added by the QOOLOGIC TROJAN! |
| Netlimiter | U | Netlimiter.exe | Netlimiter - "An internet traffic control tool to monitor applications which access the internet and actively control their internet traffic. Use it o set (download/upload) speed limits for applications or even single connection. NetLimiter also allows you to share your internet connection bandwidth among all applications running on your PC." |
| NvInitialize | N | rundll32.exe,NvQtwk.dll, NvXTInit | Thought to enable the clock frequency option on nVidia control panels. You can overclock without leaving this enabled |
| Norton Antivirus | X | nortonav.exe | Added by the W32/Rbot-AYE TROJAN! Note: This trojan file is found in the System (95/98/Me) or System32 (NT/2000/XP) folder. |
| NInit | N | NInit.exe | Norton Uninstall Deluxe. Monitors programs being installed and logs them for removing later. Available via Start -> Programs for manual logging - not required |
| Notepad ml097e | X | notepad.exe | RapidBlaster Variant |
| Norton Swap Cleaner | X | nortonswap.exe | Added by a W32/Rbot-MH worm infection |
| NeroFilterCheck | U | NeroCheck.exe | Associated with "Nero Burning Rom" CD writing software. Checks for driver issues |
| NGServer | N | ngserver.exe | Symantec/Norton Ghost Console service |
| NI.UWFX5_0001_N57M2112 | X | WinFixerScannerInstall[1].exe | This is WinFixer Malware.
Note: This Malware file is located in a Documents and Settings\User name\Local Settings\Temporary Internet Files\Content.IE5 subfolder. |
| NCD | N | ncd.exe | Norton Change Directory - from the DOS days that allows the user to change directories on their machine without typing the complete path |
| nero | X | nrchk.exe | Premium rate adult content dialer |
| Ntech.patchs | X | (trojan,filename) | Added by the LEMIR.G VIRUS! |
| NeroCheck.exe | X | NeroCheck.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This is NOT related to "Nero Burning Rom" CD writing software. Note: This worm\trojan is located in C:\%WINDIR%\ folder. |
| NVRTClk | ? | NVRTClk.exe | Related to a Gigabyte video card; unsure whether required |
| NVIDIA Video drivers | X | video_32sD.exe | Added by the W32/Rbot-BB WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| NTSF MICROSOFT SYSTEM | X | marya.exe | Added by the W32/Rbot-AXY
WORM!
Note: This worm\trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
|
| NI.UWFX5LP_0001_0803 | X | UWFX5LP_0001_0803NetInstaller.exe | WinFixer web installer - Winfixer is "Foistware", pretending to be system optimization, protection and recovery software - stealth installed, see here |
| nTune | U | nTune.exe | nVidia nTune - motherboard monitoring and overclocking utility for nVidia
nForce chipset based motherboards |
| NewsUpd | N | newsupd.exe | For Creative Soundblaster Live! series soundcards. System tray application for News updates. Available via Start -> Programs. Also spyware - see here. |
| NVRT | N | nvrt.exe | NVRefreshTool is a utility that will automatically detect the maximum refresh rate at each resolution that your monitor supports |
| Nod32 Free antivirus | X | nod32krn.exe | Added by the RBOT-AAO WORM! Note - not the popular free NOD32 antivirus software, which shares the same filename
|
| NvCplDaemon32 | X | anvshell32.exe | Added by the Troj/VB-XU
TROJAN!
|
| NT security | X | rundll32.com | Added by the W32/Rbot-AJC
WORM! |
| Notebook Maximizer | U | maximizer_startup.exe | Toshiba Notebook Maximizer software; adjust settings to save battery power and increase efficiency |
| Notepad++ | U | notepad++.exe | Related to Notepad , Notepad Plus-Plus is an Opensource program. It has many functions not found in Microsoft's program. Note: Located in \%Program Files%\Notepad \ |
| NortonAntivirus | X | LSASS.exe | Added by the W32.Pexmor
WORM!
Note: This (LSASS.exe) is not the legitimate Windows Process and has nothing to do with NortonAntivirus. The legitimate Windows Process (Lsass.exe) is found in the System32 folder and should not be seen in Msconfig or as a Startup item.
This worm file is found in the Windows\Temp or Winnt\Temp folder.
|
| NvCplScan | X | winasp.exe | Added by the FORBOT.BZ WORM! |
| NoAdware3 | U | NoAdware3 | NoAdware Adware/Spyware remover - initially considerered a "rogue" program - see here . Has since apparently mended its ways: see note |
| NaviSearch | X | nls.exe | eXact Advertising BargainBuddy/NaviSearch adware
|
| Norton Updater | X | winset.exe | Added by a variant of the W32.SPYBOT WORM!
|
| ntupd32 | X | ntupd32.exe | See_Here
|
| nvscv32 | X | nvscv32.exe | Added by a variant of the W32/SDBOT WORM! Note: Located in C:\%WINDIR%\System32\drivers\ (XP/WinNT/2K) |
| Netscape | U | InstallService.exe | Related to Netscape not a critical component. Note: Located in \%Program Files%\Common Files\ISPCOMP\ |