| Name | Status | Filename | Description |
|---|
| scands32.exe | X | scands32.exe | Added by a variant of the Adclicker TROJAN! |
| sd32info | X | sd32info.exe | Added by a CRYPTER.A trojan infection
|
| Sharing and Mapping Software | Y | DShmap.exe | Intel AnyPoint internet sharing software |
| System Update | X | wauluclt.exe | Added by the SDBOT.EF WORM! |
| Safeworld | U | Freedom.exe | SafeWorld Internet Security |
| SystemX | X | nzm.exe | Added by a variant of the BACKDOOR.IRC.BOT Note: This trojan is located in \%WINDIR%\System32\ Read the link, allows remote access |
| Svchost | X | svchosl.pif | Added by the W32.INZAE.A WORM! |
| SAVAgent | Y | SAVAgent.exe | Part of Sophos anti-virus software. Required for centrally administered Sophos updates to work correctly, e.g. automatically updating PCs used by dial-in home or out-of-office users |
| SurfChoice | U | SCMan.exe | SCMan is a utility that can control services on WinNT from the command line. This utility can create, start, pause, stop, delete services. Furthermore it can retrieve a service's current state, get the displayname for a service and vice versa |
| startkey | X | svcmgr.exe | Added by the Troj/Hipper-B TROJAN! Note: This trojan file is found in the System (95/98/Me) or System32 (NT/2000/XP) folder. |
| Security Service Process | X | svhost.exe | Added by the AGOBOT-LC WORM!
|
| SWCaller | X | SWcaller.exeSwcaller2.exe | Homepage hijacker - see here |
| Spooler SubSystem Application | X | svcrun.exe | Added by the Troj/Dloader-NY
Trojan! |
| System Service | X | coderxt.exe | Added by the W32/Rbot-ALD
WORM!
|
| SharkEject | N | AEJCT32.exe | Allows you to eject a disk from the Avatar Shark drive from the system tray. When loaded, there is a desktop icon so this isn't required |
| SVCHOST | X | mrowyekdc.exe | Added by the GOTORM VIRUS!. This is not the valid svchost.exe as described here |
| System CGI Manager | X | syscgmgr.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| spc_w | N | hcm.exe | NetZero Search Enhancement related |
| sysmon | X | sysmon44.exe | Added by a variant of the BackDoor-CBA TROJAN!
|
| System Information Manager | X | Navcpe.exe | Added by a W32/Sdbot-QB
worm infection |
| SMax4PNP | U | SMax4PNP.exe | SoundMax integrated sound. Required if you have custom settings for your sound, such as effects and environments |
| septpop06apsept | X | septpop06apsept.exe | Added by the MediaMotor.Popupwithcast Located in C:\program files\popupwithcast\ |
| smss | X | (path to,smss.exe) | Added by the ALADINZ.F VIRUS! Note - this is not the legitimate Smss.exe system file should normally NOT figure in Msconfig/Startup! |
| SDTray | U | sdtray.exe | RSA Keon Web_PassPort - software that allows organizations to use digital certificates in a Web-based environment to help ensure that their transactions are authentic, confidential and digitally signed. |
| System Device Version | X | systemdv.exe | Added by a variant of the IRCBot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\ |
| Symantec | X | ccapp.exe | Added by the W32.Reatle
WORM! Note: This is not a Symantec file. |
| Shell | X | wmedia16.exe | Added by the GOLDUN TROJAN! |
| stup1db0t | X | _win.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| System Update2 | X | taskmon.exe | Added by the Autotroj-C TROJAN! |
| System Update2 | X | webcheck.exe | Added by the Autotroj-C TROJAN! |
| Spooler SubSystem Application | X | netsvc.exe | Added by the Troj/Dloader-NY
Trojan! |
| Service Cleaner | X | filen.exe | Added by the RBOT.BRH WORM! |
| SysRes | X | WWE DIVAS.exe | Added by the W32.Elitper.D WORM! |
| strmsnnms | X | msnmegrs.exe | Added by the Troj/Sdbot-YU
TROJAN! |
| services | X | Svchosts.exe | Added by the SDBOT.N WORM! |
| sdrss | X | sdrss.exe | Added by the W32/SDBOT-SQ WORM! |
| Save | X | Save.exe | SaveNow adware |
| SharpTray | U | SharpTray.exe | Related to Sharpdesk from Sharp Electronics. A desktop-based, personal document management application that lets users browse, edit, search, compose, process, and forward both scanned and native electronic documents. Note: Located in C:\Program Files\Sharp\Sharpdesk\ |
| Scan Wizard | ? | button.exe | Associated with ScanWizard as supplied with Microtek scanners - see also Scanner Detector or SDetect. What does it do and is it required? |
| ssgrate.exe | X | system.exe | Added by the MITGLIEDER.C VIRUS! |
| Service Registry NT Save | X | taskmgrnt.exe | Added by the TROJ/BANCOS-BY TROJAN! Read the link, keylogger/password stealing trojan(s) involved. |
| serpe | X | msmbw.exe | Added by the W32.Serflog.A WORM! |
| System32Dll | X | DLL32SYS.EXE | Added by a W32/Spybot-CZ worm infection |
| Syscheck | X | win.hta | Browser hijacker |
| slvchost32 | X | slvchost32.exe | Unidentified worm or trojan |
| SystemCONF98i | X | SystemCONF98i.exe | Added by the FROZEN BOT VIRUS! |
| SKDAEMON | U | SKDAEMON.EXE | Multi-function keyboard driver. Allows the use of programmable keys on mulimedia keyboards. Required if you use the additional keys |
| Samsung | X | Samsungs.exe | Added by an IRC_TROJAN variant! |
| SunJavaUpdateReg | U | jureg.exe | Related to Sun_Java Update. Mostly found on Vista operating systems. Note: Located in \%WINDIR%\System32\ |
| Startup Manager Scanner | U | StartupMonitor.exe | Startup-Mechanic Startup monitor - offers boot protection of your PC from harmful trojans, adult-dialers, and other scumware. |
| System32 TCP Manager | X | systerm.exe | Added by the RBOT.AFD WORM! |
| System DataBase Root | X | sysdbroot.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| S24EvMon | ? | S24EvMon.exe | Event Monitor - supports driver extensions to NIC Driver for wireless adapters. Is it required? |
| System Update Service | X | system.pif | Added by the W32/Rbot-ALL
WORM!
|
| SmoothView | N | SmoothView.exe | TOSHIBA Zooming Utility - allows "automatic" zoom feature in some appications, like IE, MS-Office, WMPlayer, Adobe-Reader and also desktop icons. |