Latest updates for the Windows start-up programs database
30th November, 2011
New items - 152
- IO System Debug - X - [path to backdoor]
- System - X - [path to backdoor]
- System-Tray - X - [path to backdoor]
- 2600 - X - 1f04fffc.com
- 2600 - X - 285bfffc.com
- 2301 - X - 38f5fffc0003c70a.exe
- ACER.exe - X - ACER.exe
- TBTray - U - acoustic.exe
- aftrnc - X - aftnc32.exe
- AGSeyApp - U - AGSeyApp.exe
- AntiAvoidMain - X - AntiAvoid.exe
- t2fview - X - aon32.exe
- ASUSPRP - N - APRP.EXE
- Apple Push - ? - APSDaemon.exe
- APSDaemon - ? - APSDaemon.exe
- EeeSplendidAgent - N - AsAgent.exe
- Advanced SystemCare 4 - U - ASCTray.exe
- Advanced SystemCare 5 - U - ASCTray.exe
- ASUS VIBE - N - ASUS VIBE.exe
- Asus MotherBoard Utility - X - asus.exe
- ASUS.exe - X - ASUS.exe
- [random name] - X - AV Protection 2011v121.exe
- [random name] - X - AV Security 2012v121.exe
- AVG_TRAY - U - avgtray.exe
- BCWipeTM Startup - N - BCWipeTM.exe
- bjmbmgr - X - bjmbmgr.exe
- Microsoft Updates - X - Botnet.exe
- c9mgr - X - c9mgr.exe
- cacaoweb - N - cacaoweb.exe
- CapsHook - U - CapsHook.exe
- LocalSystem - X - clipsvr16.exe
- LocalSystem - X - clipsvr32.exe
- clsav - X - clsav.exe
- CoreScanMain - X - CoreScan.exe
- Microsoft Driver Setup - X - crssc.exe
- Intel - X - csrss.exe
- D3DOverrider - U - D3DOverrider.exe
- D3DOverrider - U - D3DOverriderWrapper.exe
- Dbxaxd - X - Dbxaxd.exe
- doopp - X - doop32.exe
- EPSON Artisan 830 Series - U - E_FATIGXA.EXE
- Explorer Service - X - Explorer32.exe
- fastcs - X - fastns32.exe
- ISW - Y - ForceField.exe
- sysfbtray - X - freddy70.exe
- Gateway Ink Monitor - N - GWInkMonitor.exe
- HotkeyMon - U - HotKeyMon.exe
- HotkeyService - U - HotkeyService.exe
- sys_Runtt1 - X - htroot.exe
- IObit Malware Fighter - U - IMF.exe
- Gateway Ink Monitor - N - InkMonitor.exe
- ipsnow - X - ipsnow.exe
- iSeriesCharge - U - iSeriesCharge.exe
- Windows - X - Isz5suz5.exe
- jiupi - X - jiupi.exe
- Windows - X - kohaLqha.exe
- windows - X - local.exe
- MCUpdateExe - X - mcagent.exe
- MPFExe - X - mcagent.exe
- VirusScan Online - X - mcagent.exe
- VSOCheckTask - X - mcagent.exe
- microWebAD.exe - X - microWebAD.exe
- MS IIS 5.01 - X - MS_IIS.exe
- MS IIS 5.01 - X - MS_System.exe
- TaskMonitor - X - Msinter.exe
- control - X - msn.exe
- MSNDreyePlugin - Y - msnplugin.exe
- MyPCCheck - X - MyPCCheck.exe
- Nortan Anti Virus - X - nava32.exe
- nbsession - X - nbsystem.exe
- System Server Manager - X - Ntsrvc.exe
- Обнови Софт - N - ObnoviSoft.exe
- OSLoader - X - OSLoader.exe
- Panda Security URL Filtering - Y - Panda_URL_Filtering.exe
- PatchUp_Plus - X - PatchUpInit.exe
- PCVaccine - X - PCVaccineLaunch.exe
- Privacy Protection - X - privacy.exe
- PrivacyHidden - X - PrivacyHidden.exe
- PrivacyRight - X - PrivacyRight.exe
- ProPrivacy - X - ProPrivacy.exe
- ProtectCode - X - ProtectCode.exe
- ProtectKeep - X - ProtectKeep.exe
- pSGEState - Y - pSGEState.exe
- PSUNMain - Y - PSUNMain.exe
- PTIM.exe - U - PTIM.exe
- ptmsgfrm.exe - U - ptmsgfrm.exe
- PTOneClick - U - ptoneclk.exe
- RtHDVBg - ? - RAVBg64.exe
- User32 - X - Read101.exe
- Reg32 - X - Registry32.exe
- Microsoft DLL Registration - X - regsrv64.exe
- *resbootdev.exe - X - resbootdev.exe
- *rescatacct.exe - X - rescatacct.exe
- RtHDVBg - ? - RtHDVBg.exe
- Realtek HD Audio Manager - U - RtkNGUI.exe
- RTHDVCPL - U - RtkNGUI.exe
- Realtek HD Audio Manager - U - RtkNGUI64.exe
- RTHDVCPL - U - RtkNGUI64.exe
- RtkOSD - ? - RtVOsd.exe
- RtkOSD - ? - RtVOsd64.exe
- Update - X - rundll32 [path] Sophosup.dll
- MicrosoftOnlineOnline - X - rundll32.exe [path] MicrosoftOnlineOnline.dll
- SafeCare - X - SafeCare.exe
- Windows Service - X - Scanvegw.exe
- sservices - X - services.exe
- Windows - X - smss.exe
- specialguardstart.exe - X - specialguardstart.exe
- srwatch.exe - Y - srwatch.exe
- Sabre Site Services - U - SSSClnt.EXE
- SpeedTouch 120g Wireless USB Monitor - U - st120g.exe
- SuperHybridEngine - Y - SuperHybridEngine.exe
- SVGA Adapter - X - svgainit.exe
- Snow - X - swon4.exe
- Syfile32 - X - syhost32.exe
- Syhost64 - X - syhost64.exe
- tunelling - X - sys64.exe
- SysArchive - X - SysArchive.exe
- sysyemdl - X - sysedit.exe
- System-Time Update - X - systimeupdate.exe
- taiak - X - taiak.exe
- Windows - X - tPDAZRDA.exe
- dsaltr - X - ultra32.exe
- unit - X - unit.exe
- McUpdate - X - Update.exe
- PatchUp_Plus - X - UpdatePlus.exe
- engel - X - updates.exe
- VaccineCleanMain - X - VaccineClean.exe
- VaccineScanMain - X - VaccineScan.exe
- CPA - N - VALA.exe
- NVirusKorea - X - VirusKoreaLaunch.exe
- vProt - U - vprot.exe
- Wcxaxw - X - Wcxaxw.exe
- vbc - X - wdt.exe
- Webshots Daily Features - U - Webshots Daily Features.exe
- BIOSAdapter - X - WinBIOS.exe
- Wincfg.exe - X - Wincfg.exe
- FTH2004 - X - WindowsDAT.exe
- Windll - X - wingmnt
- Wingmnt - X - wingmnt
- Windows Logon Application - X - WinIogon.exe
- Windows Live Guards - X - winlogon.exe
- Windows Login Assistant - X - winlogon.exe
- Windows - X - winlogons.exe
- Hello World - X - WinPad.exe
- Video Process - X - WINSSL.EXE
- MAT - X - WliveUPdate.exe
- NortonAVProtect - X - WliveUPdate.exe
- Player00997 - X - WliveUPdate.exe
- QuickTask - X - WliveUPdate.exe
- Shell2938 - X - WliveUPdate.exe
- NETGEAR WNA1100 Smart Wizard - U - WNA1100.exe
- ZeroVaccineMain - X - ZeroVaccine.exe
Changed items - 46
- acoustic (acoustic.exe) - Description changed
- Advanced SystemCare 3 (AWC.exe) - Description changed
- AWC (AWC.exe) - Description changed
- Sametime Connect (Connect.exe) - Hyperlink changed
- DrvListnr (DrvListnr.exe) - Description changed
- SgeEcView (Ecview.exe) - Status (Y), hyperlink and description changed
- EdWizard (Edwizard.exe) - Status (Y), hyperlink and description changed
- toolbar_eula_launcher (EULALauncher.exe) - Description changed
- Google Updater (GOOGLE~1.EXE) - Description changed
- Google Desktop (GoogleDesktop.exe) - Description changed
- Google Desktop Search (GoogleDesktop.exe) - Description changed
- GoogleDesktop (GoogleDesktop.exe) - Description changed
- Google Updater (GoogleUpdater.exe) - Description changed
- GuruNet (GuruNet.exe) - Description changed
- Gateway Ink Monitor (GWInkMonitor.exe) - Description changed
- KiweeHook (kwtbaim.exe) - Status (N) and description changed
- Webshots (Launcher.exe) - Description changed
- LiveUpdate (LiveUpdate.exe) - Status (N) and description changed
- Openwares LiveUpdate (LiveUpdate.exe) - Status (X) and description changed
- MprHTML (MprHTML.exe) - Hyperlink and description changed
- MxHLp32 (MxHLp32.exe) - Hyperlink and description changed
- HD Audio Control Panel (RAVCpl64.exe) - Status (U) and description changed
- Realtek HD Audio Manager (RAVCpl64.exe) - Status (U) and description changed
- RtHDVCpl (RAVCpl64.exe) - Status (U) and description changed
- RivaTuner (RivaTunerWrapper.exe) - Description changed
- RivaTunerStartupDaemon (RivaTunerWrapper.exe) - Description changed
- RivaTunerWrapper Application (RivaTunerWrapper.exe) - Description changed
- Realtek HD Audio Sound Effect Manager (RTHDCPL.EXE) - Status (U) and description changed
- RTHDCPL (RTHDCPL.EXE) - Status (U) and description changed
- HD Audio Control Panel (RtHDVCpl.exe) - Status (U) and description changed
- Realtek HD Audio Manager (RtHDVCpl.exe) - Status (U) and description changed
- RtHDVCpl (RtHDVCpl.exe) - Status (U) and description changed
- ZIBMACC (rundll.exe setupx.dll,InstallHinfSection ZIBMACC.INF) - Command changed
- babeie (rundll32 CNBabe.dll,DllStartup) - Hyperlink and description changed
- Zenet (rundll32 CNBabe.dll,DllStartup) - Hyperlink and description changed
- MMhid (rundll32 mmhid.dll,StartMmHid) - Command and description changed
- Sgecrypt (SGECRYPT.exe) - Status (Y), hyperlink and description changed
- Hitman Pro SurfRight Helper (srhelper.exe) - Status (Y) and description changed
- TimeLeft (TimeLeft.exe) - Description changed
- Webshots (websho~1.exe) - Description changed
- Webshots (WebshotsTray.exe) - Description changed
- Microsoft Problem Doctor (windr64.exe) - Hyperlink and description changed
- WinDSL_MTU (WinDSL_MTU.exe) - Status (U) and description changed
- winhlpexec.exe (winhlpexec.exe) - Name, command and description changed
- Windows Logon Application (WinIogon.exe) - Description changed
- winnet (winnet.exe) - Hyperlink and description changed
Corrections - 5
- agpart (agpart11.exe) - Command changed
- FastScanMain (FastScan.exe) - Description changed
- AliUSBfix (GREENMK.exe) - Description changed
- AAACLEAN (rundll.exe setupx.dll,InstallHinfSection AAACLEAN.INF) - Command changed
- True Internet Color Icon (TICIcon.exe) - Command changed
Hyperlinks changed - 38
- AntiGuard (AntiGuard.exe) - Hyperlink changed
- AntiVirus AntiSpyware 2011 (AntiVirus AntiSpyware.exe) - Hyperlink changed
- Bouncer RunStartup (bouncer.exe) - Hyperlink changed
- certtool (certtool.exe) - Hyperlink changed
- IBM Client Security (certtool.exe) - Hyperlink changed
- ISS_Certtool (certtool.exe) - Hyperlink changed
- csecwiz (csecwiz.exe) - Hyperlink changed
- IBM Client Security Software (csecwiz.exe) - Hyperlink changed
- Z_acamucli wizard (csecwiz.exe) - Hyperlink changed
- ControlCenter (ctlcntr.exe) - Hyperlink changed
- Bouncer RunStartup (LiveUpdate.exe) - Hyperlink changed
- LPManager (LPMGR.exe) - Hyperlink changed
- M3Development_WhenUSave_Installer (M3Development_WhenUSave_Installer.exe) - Hyperlink and description changed
- MCPLaunch (MCPLaunch.exe) - Hyperlink changed
- Message Center Plus (MCPLaunch.exe) - Hyperlink changed
- Protect (PCoptimizer2010.exe) - Hyperlink changed
- pdibm (pdibm.exe) - Hyperlink and description changed
- PDIBM Application (pdibm.exe) - Hyperlink and description changed
- PDIBM.exe (pdibm.exe) - Hyperlink and description changed
- pdservice (pdservice.exe) - Hyperlink and description changed
- PDService.exe (pdservice.exe) - Hyperlink and description changed
- PrivateDisk (pdservice.exe) - Hyperlink and description changed
- IBM Password Manager (pwmgr.exe) - Hyperlink changed
- IBM_PWMGR (pwmgr.exe) - Hyperlink changed
- pwmgr (pwmgr.exe) - Hyperlink changed
- Realpopup (Realpopup.exe) - Hyperlink changed
- ftutil2 (rundll32.exe ftutil2.dll,SetWriteCacheMode) - Hyperlink changed
- Save (Save.exe) - Hyperlink and description changed
- WhenUSave (Save.exe) - Hyperlink and description changed
- Savenow (SaveNow.exe) - Hyperlink and description changed
- scheduler_proxy Application (scheduler_proxy.exe) - Hyperlink changed
- TVT Scheduler Proxy (scheduler_proxy.exe) - Hyperlink changed
- WhenUSearch (Search.exe) - Hyperlink and description changed
- AntiVirus AntiSpyware 2011 Security (securitymanager.exe) - Hyperlink changed
- suScheduler (UCLauncher.exe) - Hyperlink changed
- VBouncer (VirtualBouncer.exe) - Hyperlink changed
- Virtual Bouncer (VirtualBouncer.exe) - Hyperlink changed
- WhenUSearchWHSE (whse.exe) - Hyperlink and description changed
CA hyperlinks changed - 29
- AntiMalwareGuard (amg.exe)
- AntiSpyCheck (AntiSpyCheck.exe)
- AntispySpider (antispyspider.exe)
- AntivirusGold 5.1 (AntivirusGold 5.1.exe)
- AntivirusProtection (antivirusprotection.exe)
- Awola6 (Awola6.exe)
- Cassandra (cassandra.exe)
- DataHealer (DataHealer.exe)
- MalwareCrush (MalwareCrush.exe)
- ProAntispy (ProAntispy.exe)
- QdrModule10 (QdrModule10.exe)
- QdrModule11 (QdrModule11.exe)
- QdrModule12 (QdrModule12.exe)
- QdrModule13 (QdrModule13.exe)
- QdrModule15 (QdrModule15.exe)
- QdrModule16 (QdrModule16.exe)
- QdrModule17 (QdrModule17.exe)
- RegClean (RegClean.exe)
- SecureCleaner (SecureCleaner.exe)
- SpyAway (spyaway.exe)
- SpyMaxx (SpyMaxx.exe)
- StopingSpy (StopingSpy.exe)
- Ultimate Cleaner (UltimateCleaner.exe)
- VirusRanger (VirusRanger.exe)
- WinZix Service (wakeservice.exe)
- Winupdate Engine (wupeng.exe)
- [32 random numbers] (xpa.exe)
- OneMoreKey (xpa.exe)
- XP Antivirus (xpa.exe)
Sophos hyperlinks changed - 40
- romahere2 (************.exe [* = random char])
- romahere3 (************.exe [* = random char])
- taskmgr ([path to trojan])
- WinUpgrader ([path to trojan])
- Alexa bridge ([random].exe)
- grgtgvgb.exe ([random].exe)
- SearchClick ([trojan filename])
- WindowsSystem32 (asper.exe)
- bootpd.exe (bootpd.exe)
- SysMain (buff.exe)
- WindowsUpdatecrss (crss.exe)
- CSRSSU (CSRSSU.exe)
- CTFMON32 (CTFMON32.EXE)
- MSMSGNER (fgozmox.exe)
- ivy.exe (ivy.exe)
- jushed32.exe (jushed32.exe)
- WindowsUpdatelsasss (lsasss.exe)
- mscheck (mscheck.exe)
- Nvidia32 (nvidia32.exe)
- Pag Windows Monitor (pag.exe)
- QuickTime (qttask.exe)
- Reg32 (reg33.exe)
- sys (regedit sysdllwm.reg)
- SvcManager (restore3.exe)
- scrsvc (scrsvc.exe)
- AntiVir (scvhost.exe)
- icq lite (scvhost.exe)
- msconfig (scvhost.exe)
- Update Checker (scvhost.exe)
- Nero (shch.exe)
- WINDOWSflashbrg (sqldata1.exe)
- WindowsSystem32 (svchosts.exe)
- SysTime (systime.exe)
- timestamp (timeapr32.exe)
- {C0FB7D08-056E-1033-0501-03020730002c} (Update.exe)
- uvnx (uvnx.exe)
- iiuyvyu (uzcx.exe)
- syswin (v6.exe)
- Firewall auto setup (winlogon.exe)
- WindowsUpdatewinsec (winsec.exe)
Trend Micro hyperlinks changed - 40
- Zonavirus (0) - Hyperlink changed
- KAZAACuf (9) - Hyperlink changed
- PAV.EXE (%Number%) - Hyperlink changed
- NBT System alias ([path] repcale.exe [path] beird.exe) - Hyperlink changed
- Bnexe ([random filename]) - Hyperlink changed
- hpsysconf1 ([random filename]) - Hyperlink changed
- nssysconf ([random filename]) - Hyperlink changed
- Microsoft Update (Botnet.exe) - Hyperlink changed
- SymantecFilterCheck (bsyys.scr) - Hyperlink changed
- WinProfile (Command.exe) - Hyperlink changed
- msn (ctfmoons.exe) - Hyperlink changed
- CyberWolf (CyberWolf.exe) - Hyperlink changed
- Hot 8.0 Live (hot.exe) - Hyperlink changed
- Msconfig (icpldrvx.exe) - Hyperlink changed
- ICQ Hacking Pro (ICQpro.exe) - Hyperlink changed
- Intranet (intranet.exe) - Hyperlink changed
- MSAdmin (jdbgmrg.exe) - Hyperlink changed
- MSConfigr (jdbgmrg.exe) - Hyperlink changed
- Windoes Kernel (kernel32.exe) - Hyperlink changed
- Configuration Loader (msgfix.exe) - Hyperlink changed
- Video Process (MSlti64.exe) - Hyperlink changed
- Roxio Engine (MSMNGR32.EXE) - Hyperlink changed
- Msn 8.0 Live (msn.exe) - Hyperlink changed
- windows auto update (penis32.exe) - Hyperlink changed
- Protector GB (protectgb.exe) - Hyperlink changed
- Microsoft Regestry Manager (regedit32.exe) - Hyperlink changed
- Microsoft Regestry Manager (registry32.exe) - Hyperlink changed
- Systems (scchost.exe) - Hyperlink changed
- Shellapi32 (Shellapi32.exe) - Hyperlink and description changed
- Start Uppings (svcchosts.exe) - Hyperlink changed
- LoadService (Virus) - Hyperlink changed
- RavTimeXP (Virus) - Hyperlink changed
- System4224411 (Virus) - Hyperlink changed
- Microsof Winlog Host (wilogon32.exe) - Hyperlink changed
- Microsoft Windows DLL Services Configuration (windir32.exe) - Hyperlink changed
- Microsoft Windows DLL Services Configuration (windir32a.exe) - Hyperlink changed
- Microsoft Problem Doctor (windr128.exe) - Hyperlink changed
- Microsoft Problem Doctor (windr32.exe) - Hyperlink changed
- WinKernel (WinKer.exe) - Hyperlink changed
- ws2help (ws2help.exe) - Hyperlink changed
Removed - 6
- AcBtnMgr_X63 - U - AcBtnMgr_X63.exe - Invalid entry
- Lexmark X63 Button Manager - U - AcBtnMgr_X63.exe - Invalid entry - no example found
- AIM reminder - X - AIM reminder.exe - Invalid entry
- Windows Service - X - r.exe - Invalid entry - no example found
- Ethernet - N - tcaudiag.exe - Invalid entry - no example found
- Webshots - U - Webshots Tray.exe - Invalid entry - no example found
Back to Updates - 2011
Copyright © Pacman's Portal, 2001 - 2013
Powered by Malwarebytes
All rights reserved
