| Name | Status | Filename | Description |
|---|
| Cepstral License Server | L | CepstralLicSrv.exe | Related to Cepstral_License Server from Sepstral, LLC Note: Located in \%Program Files%\Cepstral\bin\ |
| Certificate Propagation (CertPropSvc) | L | svchost.exe -k netsvcs | Part of Windows Vista
Note:Located in C:\%WINDIR%\System32 |
| CesarFTP FTP Server (CesarFTP) | L | server.exe | Related to CesarFTP from ACLogic. FTP server. Note: Located in \%Program Files%\CesarFTP\ |
| cFosSpeed System Service (cFosSpeedS) | L | spd.exe | cFos_Software
Internet acceleration program related. Note: May be necessary for the software to work properly.
|
| change me please (VIRUS) | X | sysdat.exe | Added by the W32/Tilebot-L
WORM!
|
| Changed me (Patch) | X | systemz32.exe | W32/Tilebot-JD Read the link, allows remote access and uses rootkit stealth |
| ChanService (ChanSirv) | X | 2pack.exe | Identified as a variant of Backdoor.Win32.SpyBoter.fb Note: located in \%WINDIR%\ |
| Charter High-Speed Security Suite | O | SERVIC~1.EXE | Related to F-Secure, Backweb application |
| chckntfs | X | chckntfs.exe | Added by the W32/Tilebot-EF WORM! Note: This worm\trojan is located in C:\%WINDIR%\ |
| Check Point SecuRemote Service (SR_Service) | L | SR_Service.exe | Related to Check_Point_Software Technologies Note: Located in C:\Program Files\CheckPoint\ |
| Check Point SecuRemote WatchDog (SR_WatchDog) | L | SR_WatchDog.exe | Related to Check_Point Software Technologies Note: Located in C:\Program Files\CheckPoint\SecuRemote\bin\
|
| Check Point SSL Network Extender (cpextender) | L | slimsvc.exe | Related to SSL_Network_Extender from Check Point Tech. Note: Located in \%Program Files%\CheckPoint\SSL Network Extender\ |
| chkext(chkext) (chkext) | X | chkext.exe | Added by the W32/Sdbot-CRW WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| Chong3 Me (MlCR0SOFTS UPDATE) | X | N0RTAN.EXE | Added by the SDBOT.CNM
WORM!
Read the link, rootkit type stealth involved.
|
| Chong3 Me (MlCR0SOFTS UPDATEe) | X | lexplarer.exe | Added by the SDBOT.CWB
WORM!
Read the link, rootkit type stealth involved.
|
| cics.REGION1 | L | cicssvc.exe | Related to IBM Corp. |
| cics.REGION2 | L | cicssvc.exe | Related to IBM Corp. |
| cicssfs.SCMMC223 | L | cicssfssvc.exe | Related to IBM Corp. |
| cidaemon | L | .exe | Microsoft Indexing Service filter daemon |
| cidaemon | L | cidaemon.exe | Microsoft Indexing Service filter daemon |
| Cisco Configuration Service (CCS) | L | ccs.exe | Related to Related to Cisco_Systems Note: Located in C:\WINDOWS\system32\ |
| Cisco Posture Server Daemon (ctapsd) | L | ctapsd.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\ |
| Cisco Security Agent (CSAgent) | L | CSAControl.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CSAgent\bin\ |
Cisco Systems, Inc. CTA Posture State Daemon (ctatransapt) | L | ctatransapt.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\ |
| Cisco Systems, Inc. STC Agent (STCAgent) | L | agent.exe | Related to Cisco Systems inc. SSL VPN Client, Note: located in C:\Program Files\Cisco Systems\SSL VPN Client\ |
| Cisco Systems, Inc. VPN Service (CVPND) | L | cvpnd.exe | part of Cisco VPN |
| Cisco Systems, Inc. VPN Service (CVPND) | L | cvpnd.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\VPN Client\ |
| Cisco Trust Agent EOU Daemon (CtaEoU) | L | CtaEoU.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\ |
| Cisco Trust Agent Logger Daemon (ctalogd) | L | ctalogd.exe | Related to Related to Cisco_Systems Note: Located in \%Program Files%\Cisco Systems\CiscoTrustAgent\ |
| Citrix CPU Utilization Mgmt/CPU Rebalancer (CTXCPUBal) | L | ctxcpubal.exe | Related to Citrix MetaFrame |
| Citrix CPU Utilization Mgmt/Resource Mgmt (ctxcpuSched) | L | ctxcpusched.exe | Related to Citrix MetaFrame |
Citrix CPU Utilization Mgmt/User-Session Sync (CTXCPUUsync) | L | ctxcpuusync.exe | Related to Citrix MetaFrame |
| Citrix Print Manager Service (cpsvc) | L | CpSvc.exe | Related to Citrix MetaFrame, control Printer Management. |
| Citrix SMA Service | L | SmaService.exe | Related to Citrix MetaFrame |
| Citrix Virtual Memory Optimization | L | CtxSFOSvc.exe | Related to Citrix MetaFrame, Monitors all DLLs on a server to find where collisions are occurring |
| Citrix WMI Service (CitrixWMIService) | L | ctxwmisvc.exe | Related to Citrix MetaFrame |
| Citrix XML Service (CtxHttp) | L | ctxxmlss.exe | Related to Citrix MetaFrame |
| Citrix XTE Server (CitrixXTEServer) | L | XTE.exe | Related to Citrix MetaFrame |
| CL500_510 Remote Server | L | KaNTSRV.exe | Related to Panasocic_Color_Laser_Printer server. Note: Located in C:\PROGRAM FILES\PANASONIC\REMOTE SERVER\ |
| Client Access Express Remote Command (Cwbrxd) | L | CWBRXD.EXE | Related to IBM Corporation. Note: Located in \%WINDIR%\ |
| Client Debug Manager | X | spoolvc.exe | W32/Sdbot-DCX Read the link, allows remote access |
| Client Disk Manager | X | symon.exe | Added by the W32/Tilebot-IN WORM! Note: This worm\trojan is located in C:\%WINDIR%\System32\dllcache\ (XP/WinNT/2K) |
| Client IP-IPX | X | svchosts.exe | Added by a variant of the W32/SDBOT WORM! Note: Located in C:\%WINDIR%\System32\drivers\ (XP/WinNT/2K) |
| Client Network (CdmService) | L | cdmsvc.exe | Related to Citrix MetaFrame, maps client drives and peripherals for access in ICA sessions. |
| Client Security Agent Service (BNPagent) | L | bndaemon.exe | Related to Client_Security_Agent service from Bradford Networks. Note: Located in \%Program Files%\Bradford Networks\Client Security Agent\ |
| Client Server Runtime Counter | X | crssc.exe | Added by a variant of the SDBOT Note: Located in \%WINDIR%\ Note: Use SDFix under supervision. |
| Client Server Runtime Proces | X | csrss.exe | Added by the WORM_SDBOT.BTI WORM! Note: This worm\trojan is located in C:\%WINDIR%\ folder. Malicious activities read the topic. Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) This worm\trojan file is found in the Windows or Winnt folder. |
| Client Server Runtime Process | L | csrss.exe | Microsoft Client Server Runtime Process
|
| Client Server Runtime Service (csrss32) | X | csr.exe | Added by the W32/Sdbot-AFM
WORM!
Note: This worm file is found in the Windows or Winnt folder. |
| Client Update Service for Novell | L | cusrvc.exe | Related to Novel server. |