| N | PLNRNote | PLNRNote.exe | Part of Sierra/Hallmark Card Studio - System Tray notification of events such as birthdays and anniversaries that you've scheduled with the customizable Event Planner
|
| N | Post-itR Software Notes Lite | Psn2Lite.exe | "Post-it® Software Notes - Lite from 3M - now replaced by the more advanced Post-it® Digital Notes"
|
| Y | PowerChute | Pwrchute.exe | ""During a power outage |
| X | PowerChute | Pwrchute.exe | "Added by the LAZAR-A TROJAN! Note - this is located in %ProgramFiles%\APC_Power"
|
| N | ppmate | ppmate.exe | "PPMate - free tool for streaming online TV via P2P (peer-to-peer)"
|
| X | PPPOEOE | winlite.exe | "Added by the RBOT-AAN WORM!"
|
| N | PsnLite | PsnLite.exe | "Post-it® Software Notes - Lite. ""You can use this digital version of the famous canary yellow note to remind you to do something |
| X | Quick Office | activate.exe | "Added by the RANSOMLOCK.D TROJAN! Note - this infection hooks the keyboard to prevent anything except numbers from being typed and displays a Russian message requesting a valid license key"
|
| N | Quickbooks Update Agent | qbupdate.exe | Associated with Intuit's Quickbooks but not required. Possibly to do with the payroll update service but you're prompted to check for updates when appropriate whether this is running or not
|
| N | Quicknote | quicknote.exe | "JC&MB Quicknote Virtual Scrapbook"
|
| X | QuickTimeUpdate | QuickUpdate.exe | "Added by the BIFROSE-CW TROJAN!"
|
| X | rate.exe | i11r54n4.exe | "Added by the BEAGLE-I WORM!"
|
| X | rate.exe | i1ru74n4.exe | "Added by the BEAGLE.E WORM and variants!"
|
| ? | RealTimeUpdate | RealTimeUpdate.exe | "Product description in properties is ""InternetExplorerCommunicationAgent Module"" ?"
|
| U | Remote | Remote.exe | "Remote Control driver for LifeView internal and external TV products"
|
| ? | RMremote | RmRemote.exe | "Remote control driver for REALmagic Xcard. Is it required?"
|
| X | rn4d | dirote.exe | "Added by the MAROON.A TROJAN!"
|
| X | RunDLL32 | winupdate.exe | "Added by an unidentified TROJAN! - possibly a BMBOT variant"
|
| X | RunWindowsUpdate | uptodate.exe | "BrowserAid/BrowserPal foistware"
|
| X | SafeSurfingUpdate | SSUpdate.exe | "MoneyTree parasite - ActiveX control used to download premium-rate dialers"
|
| X | Sagate Security Firewall | sagate.exe | "Added by the GAOBOT.BOW WORM!"
|
| U | SAUpdate | SAUpdate.exe | "Big Brother from Quest Software. System and network monitor"
|
| X | SaveDate | SaveStartDate.Exe | Unidentified adware
|
| U | SBAutoUpdate | sbautoupdate.exe | "SpywareBlaster auto-updater"
|
| X | ScanRegistry | update.exe | "Added by the DWNLDR-FZY TROJAN!"
|
| X | sdfsdfsdf | sp2update.exe | "Added by a variant of the SPYBOT WORM!"
|
| X | Security | WindowsSecurityUpdate.exe | "Added by a variant of the SDBOT WORM!"
|
| X | Sepate Security Firewall | sepate.exe | "Added by the RBOT.BLC BACKDOOR!"
|
| N | SEPCSuite | SEPCSuite.exe | "System Tray access to Sony Ericsson PC Suite which ""connects your phone to your computer and expands the capabilities of your phone"". Run manually via the Start Menu (or optional desktop shortcut) before connecting the phone"
|
| X | Shell | Explorer.exe winupdate.exe | "Added by the AGENT-FD TROJAN! Note - do not delete the legitimate Windows Explorer (explorer.exe) which is located in %Windir% and can be used to launch other files. The ""winupdate.exe"" file is located in %System%"
|
| X | Shellapi32 | mcvsrte.exe | Added by an unidentified WORM! Note - do not confuse with the McAfee SecurityCenter file of the same name
|
| X | Shmgrate.exe | ibot4.exe | "Added by the GASTER TROJAN!"
|
| U | ShortKeys Lite | shklite.exe | "ShortKeys Lite from Insight Software Solutions |
| N | SkypeMate | SkypeMate.exe | "SkypeMate acts as a bridge between networks of VoIP and PSTN"
|
| U | SoftickPPP | PPPGate.exe | "Softick PPP is a Microsoft Windows driver that allows to establish PPP session between Palm powered devices and Microsoft Windows desktop computer"
|
| N | Sony Ericsson PC Suite | SEPCSuite.exe | "System Tray access to Sony Ericsson PC Suite which ""connects your phone to your computer and expands the capabilities of your phone"". Run manually via the Start Menu (or optional desktop shortcut) before connecting the phone"
|
| X | sp2update | sp2update.exe | "SP2Update adware! Tracks URLs visited and search terms entered into Internet Explorer"
|
| X | SpyFighterUpdate | AutoUpdate.exe | "SpyFighter spyware remover - not recommended |
| Y | SpywareTerminatorUpdate | SpywareTerminatorUpdate.exe | "Automatic updates for Spyware Terminator. Initially not recommended due to false positives but the later versions have since improved - see here"
|
| X | ssate.exe | irun4.exe | "Added by the BEAGLE.J WORM!"
|
| X | ssate.exe | winsys.exe | "Added by the BEAGLE.K WORM!"
|
| N | SSBkgdUpdate | SSBkgdupdate.exe | "Automatic updates for ScanSoft (now Nuance) products such as OmniPage and PaperPort. Can be disabled using the main program's options. Note - if you have a Soundblaster Audigy2 ZS soundcard installed on your computer and the volume of your sound system is turned on extremely high disabling this will solve the problem"
|
| X | ssgrate.exe | system.exe | "Added by the MITGLIEDER.C TROJAN!"
|
| X | ssgrate.exe | irun.exe | "Added by the MITGLIEDER.D TROJAN!"
|
| X | ssgrate.exe | irun4.exe | "Added by the MITGLIEDER.F TROJAN!"
|
| X | ssgrate.exe | sysdoor.exe | "Added by the MITGLIEDER.N TROJAN!"
|
| X | ssgrate.exe | winerdir.exe | "Added by the MITGLIEDER.O TROJAN!"
|
| X | ssgrate.exe | winsystems.exe | "Added by the BAGLEDL-J TROJAN!"
|
| X | ssgrate.exe | wintems.exe | "Added by the MITGLIEDER.Q TROJAN!"
|
| X | SSUpdate | SSUpdate.exe | "MoneyTree parasite - ActiveX control used to download premium-rate dialers"
|
| X | Start Uppings | mssupdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | startkey | update.exe | "Added by the BIFROSE-DG TROJAN!"
|
| N | StickyNote | StickyNote.exe | Utility that allows you to put yellow "Post-It" type messages on your desktop. Available via Start -> Programs
|
| U | StreamZap Remote | zremote.exe | "StreamZap PC Remote - control Windows Media Player |
| X | supdate | supdate.exe | "Added by the MALWARE.D TROJAN!"
|
| X | svshostdriver | msnmessengerupdate.exe | "Added by the SDBOT-BI BACKDOOR!"
|
| X | Swf32 | AVupdate.exe | "Added by the MERKUR.E WORM!"
|
| X | Sygaete Personal Firewall | SyGate.exe | "Added by the RBOT-GLX WORM!"
|
| X | Sygate Personal Firewall | Sygate.exe | "Added by the RBOT-PN WORM!"
|
| X | Sygate Personal Firewall | Mcafeeupdate.exe | "Added by the RBOT.YN WORM!"
|
| X | Sygate Personal Port Blocker | winupdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | Sysctrls | winupdate.exe | Added by an unidentified WORM or TROJAN!
|
| X | sysmem | mmsete.exe | "Added by the NOPIR.C WORM!"
|
| X | sysnate | sysnate.exe | "Added by the MEDIAS TROJAN!"
|
| X | Syss | ehuupdate.exe | "EHU adware"
|
| X | System Monitoring | cute.exe | "Added by the RAHIWI.A WORM!"
|
| X | System Update2 | update.exe | "Added by the AUTOTROJ-C TROJAN!"
|
| X | Taba | stte.exe | "PurityScan adware"
|
| X | Taskman | sysdate.exe | "Added by the SILLYFDC.BCQ WORM!"
|
| U | Titlebar Date | Titlebar Date.exe | "Titlebar Date by Titlebar Software - displays the day of the week and date and time in the active window's tile bar. For example |
| N | TK8 EasyNote | EasyNote.exe | "TK8 EasyNote - desktop post-it notes"
|
| X | tmax | pupdate.exe | Adware pop-up generator
|
| X | Tok-Cirrhatus | IDTemplate.exe | "Added by the RONTOKBRO.A WORM!"
|
| U | Toshiba Key State | KEYSTATE.EXE | "Displays an icon in the System Tray indicating the state of the CAPS LOCK key. Can be handy on (e.g. |
| U | Tracks Eraser | te.exe | "Tracks Eraser from Acesoft - "Erases all tracks of your internet activity""
|
| U | Tracks Eraser Pro | te.exe | "Tracks Eraser Pro from Acesoft - "Erases all tracks of your internet activity""
|
| N | Tray Date | Tray Date.exe | "Tray Date by Titlebar Software - displays a simple icon in the System Tray (that can't be configured) which shows the current date. The originator's website is no longer available but you can still download it here. Whilst it only uses around 10MB of memory |
| U | traydate.exe | TRAYDATE.EXE | TrayDate - displays the date as well as the time in the System Tray
|
| N | tunebite | tunebite.exe | """Tunebite lets you make unprotected copies of copy-protected music files by recording them while they are being played"". Can be launched from it's Start Menu shortcut"
|
| U | TurboExplorer | TE.exe | "Web accelerator - ""TurboExplorer 2.x is a real-time web surfing accelerator specifically designed for Internet Explorer 4/5 to achieve a faster and more effective approach to the internet"". Only needed if you find it improves web browsing"
|
| N | TurboNote | tbnote.exe | Post-It's on your desktop. Available via Start -> Programs
|
| U | TvrRemote | Remote.exe | "Remote Control driver for LifeView internal and external TV products"
|
| X | Update | Zupdate.exe | "Associated with B3d Projector foistware - see here"
|
| X | Update | Update.exe | "QuickButton adware"
|
| X | Update | WinUpdate.exe | "Added by the SDBOT-CV BACKDOOR!"
|
| Y | Update Service | Update.exe | "Loaded by Handybits programs such as EasyCrypto. Re-instates itself every time the program is run so best to leave it enabled. Prevent it dialling out via a firewall"
|
| X | Update.exe | ravseuper.exe | "Added by the QQPASS-P TROJAN!"
|
| X | updatereal | realupdate.exe | Chinese originated adware
|
| X | Updates | msupdate.exe | "CoolWebSearch parasite variant"
|
| X | updatewin | update.exe | "Added by a variant of the SDBOT WORM!"
|
| X | UpToDate | uptodate.exe | "BrowserAid/BrowserPal foistware"
|
| X | USB Drivers1 | msupdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | win update | wapdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | Win Update | SysUpdate.exe | "Added by the AGOBOT-TN WORM!"
|
| X | Win Update | oleupdate.exe | "Added by the AGENT-UY TROJAN!"
|
| X | win update | wupdate.exe | "Added by the RBOT-P BACKDOOR!"
|
| X | Win32 Kernel Update | win32update.exe | "Added by the PROXY-BS TROJAN!"
|
| X | Win32 USB2 Driver | winupdate.exe | "Added by the AGOBOT.YE WORM!"
|
| X | win32update | win32update.exe | "Added by the GENOME.AQUV TROJAN!"
|
| U | WINCINEMAMGR | WinRemote.exe | "InterVideo WinCinema Manager - needed for the use of WinDVD Remote Control"
|
| X | window2 | ieupdate.exe | "Added by the FORBOT-BM WORM!"
|
| X | Windows 32 Update | Windows-Update.exe | "Added by a variant of the RBOT WORM!"
|
| X | Windows Auto Updater | WINDOWSUPDATE.EXE | "Added by the SDBOT.PB WORM! Note the space at the beginning of the filename"
|
| X | Windows Configuration Utility | winxupdate.exe | "Added by the AGOBOT.LW WORM!"
|
| X | Windows drivers update | windowsupdate.exe | "Added by the RBOT-ACE WORM!"
|
| X | Windows Firewall Updater | windowsupdate.exe | "Added by the SPYBOT.AVEO WORM!"
|
| X | Windows Fixes Systems | elite.exe | "Added by the MYTOB.EG WORM!"
|
| X | Windows Host Service | svchoste.exe | "Added by the KELVIR.BF WORM!"
|
| X | Windows Loader | SysUpdate.exe | "Added by a variant of the SDBOT WORM!"
|
| X | Windows Logon Procedure | Svchoste.exe | "Added by a variant of the SPYBOT WORM!"
|
| X | Windows MS Update 32 | jebote.exe | "Added by the FORBOT-GK WORM!"
|
| X | Windows Process | win_update.exe | "Added by the LASTWORD WORM!"
|
| X | Windows Registry Scan | timeupdate.exe | "Added by the SPYBOT.JE WORM!"
|
| X | Windows Services | scvhoste.exe | "Added by the SPYBOT.OBZ WORM!"
|
| X | Windows Services | wupdate.exe | "Added by the GAOBOT.ZT WORM!"
|
| X | Windows SP2 Update | Sp2update.exe | "Added by the WOOTBOT.BS WORM!"
|
| X | WINDOWS SYSTEM | xpupdate.exe | "Added by the ZOTOB-G WORM!"
|
| X | WINDOWS SYSTEM | wupdate.exe | "Added by the MYTOB-HT WORM!"
|
| X | WINDOWS SYSTEM By FEnR | windasz-updote.exe | "Added by the MYTOB.LR WORM!"
|
| X | Windows Update | wudate.exe | "Added by the AGOBOT.ML WORM!"
|
| X | Windows Update | wupdate.exe | "Wengs adware"
|
| X | Windows Update | WindowsUpdate.exe | "Added by the BAYROB-A TROJAN!"
|
| X | Windows Update | Update.exe | "Added by the DELF-FN TROJAN!"
|
| X | Windows Update | winupdate.exe | "Added by the SDBOT-WS WORM!"
|
| X | Windows Update | mplupdate.exe | "Added by the MOEGA WORM!"
|
| X | Windows update | wudupdate.exe | "ISTBar adware related"
|
| X | Windows Update | msnsupdate.exe | "Added by the RBOT-AXS WORM!"
|
| X | Windows Update | win32update.exe | "Added by the SDBOT.FTK WORM!"
|
| X | Windows Update Automation | winuptdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | Windows update loader | xpupdate.exe | "Malware installed by different rogue security software including SpyKillerPro. Also detected as the BRAVE-A TROJAN!"
|
| X | Windows Update Manager | wupdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | Windows Update Service 2004/2005 | systemupdate.exe | "Added by the RBOT-JE WORM!"
|
| X | Windows Update.exe | N/A | Homepage hijacker
|
| X | Windows Updater | wupdate.exe | "Added by the WOOTBOT.AJ WORM!"
|
| X | Windows Updater Servc | xpuupdate.exe | "ContraVirus rogue security software - not recommended |
| X | Windows Updater Services | msnupdate.exe | "Added by a variant of the RBOT WORM!"
|
| X | Windows Updates Agent | winupdate.exe | "Added by the SPYBOT.HW WORM!"
|
| X | Windows USB Monitor | servupdate.exe | "Added by the IRCBRUTE.AQ TROJAN!"
|
| X | Windows XP Automatic Update | wXPupdate.exe | "Added by the RBOT-AFC WORM!"
|
| X | WindowsACEbar | acebarupdate.exe | "BarACE adware"
|
| X | WindowsCriticalUpdate | windows_critical_update.exe | "Added by the ASTEF or RESPAN WORMS!"
|
| X | Windows�Updates | Update.exe | "Added by the RBOT.TRA BACKDOOR!"
|
| X | WindowsRegKey update | winupdate.exe | "Added by the RBOT-QJ WORM!"
|
| X | WindowsRegKey update | wdnupdate.exe | "Added by the SDBOT.QX WORM!"
|
| X | WindowsUpdate | windows_update.exe | "Added by the LOFNI WORM!"
|
| X | windowsupdate | winupdate.exe | "Added by the WARPI WORM!"
|
| X | Windowsupdate | Windowsupdate.exe | "Added by the BANKER.ARK TROJAN!"
|
| X | windowsupdate | autoupdate.exe | "Added by the IRCBOT-P BACKDOOR!"
|
| X | WindowsXP Update | windowsxpupdate.exe | "Added by the RBOT-PB WORM!"
|
| X | WinGate initialize | WinGate.exe | "Added by the LOVGATE.F WORM!"
|
| X | WinLibUpdate | libupdate.exe | "Added by the BIONET series of TROJANS such as BIONET.31 or BIONET.310"
|
| X | WinLibUpdte | libupdte.exe | "Added by the BIONET.318 TROJAN!"
|
| U | WINREMOTE | WinRemote.exe | "InterVideo WinCinema Manager - needed for the use of WinDVD Remote Control"
|
| N | winroute | winroute.exe | "Win-Route 4.27. WinRoute Tray Icon for starting and stopping the WrCtrl.exe process |
| X | Winshell | remote.exe | "Added by the MYTOB.LJ WORM!"
|
| X | Winsock driver | winnt update.exe | "Added by the SPYBOT-DM TROJAN!"
|
| X | Winsock2 driver | winupdate.exe | "Added by the SPYBOT-BX WORM!"
|
| X | Winsock32driver | sp2XPupdate.exe | "Added by the HACKARMY.S TROJAN!"
|
| X | Winsock32driver | winXPupdate.exe | "Added by the HACKARMY.9728 TROJAN!"
|
| X | winupdate | winupdate.exe | "Added by the ALCAN.B WORM!"
|
| X | winupdate.exe | winupdate.exe | "Added by the RADO TROJAN!"
|
| X | winupdate.reg | winupdate.exe | "Added by the SPYBOT.EAS WORM!"
|
| X | WinUpdater | update.exe | "Added by the STARTPAGE.C TROJAN!"
|
| X | wmupdate | wmupdate.exe | "Added by the AGENT-GGJ TROJAN!"
|
| X | won update | WAPDATE.EXE | "Added by the RBOT.N WORM!"
|
| ? | wriste | wriste.exe | "??"
|
| ? | wsbklite | wsbklite.exe | "Related to the Acer Soft Button on Acer Tablet PCs. Appears to do nothing so is it required?"
|
| X | Wupdate driver | wupdadte.exe | "Added by the SPYBOT-CQ WORM!"
|
| X | Wxp4 | Norton Update.exe | "Added by the ERKEZ.D WORM!"
|
| X | xpiupdate | xpiupdate.exe | "Added by the RBOT-AAB WORM!"
|
| X | xpsp2install | xpsp2Update.exe | "Added by the AGENT-DPK BACKDOOR!"
|
| X | xpsp2Update | xpsp2Update.exe | "Added by the AGENT-DPK BACKDOOR!"
|
| U | XSC SIP Client | X-Lite.exe | """CounterPath's X-Lite 3.0 is the market's leading free SIP based softphone available for download"". For VOIP and broadband users"
|
| X | XTServiceUpdate | XTServiceUpdate.exe | hahame.net adware downloader
|
| X | Zi5 | AntiVirus Update.exe | "Added by the ERKEZ.G WORM!"
|
| X | Zupdate | Zupdate.exe | "Associated with B3d Projector foistware - see here"
|
| X | [various names] | forces_elite.exe | "Wareout - malware masquerading as a spyware and dialer remover"
|
| X | {C0FB7D08-056E-1033-0501-03020730002c} | Update.exe | "Added by the AGENT-EOG TROJAN!"
|