| Name | Status | Filename | Description |
|---|
| Zapro | Y | Zapro.exe | Firewall program from Zonelabs - paid for version |
| ZoneAlarm | Y | zonealarm.exe | Firewall program from Zonelabs - free version |
| ZNN | X | znnsvc.exe | Added by the W32/Sdbot-DAA Spyware WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) steal local personal information including passwords |
| zupacha.exe | X | zupacha.exe | Added by the Troj/Dropper-QL Trojan Read the link, steals information |
| Zacker | X | Zacker.exe | Added by the GEMEL VIRUS! |
| ZPLED | Y | ZPKBDLED.exe | Driver for the Advent ADE-AD2 Wireless Keyboard |
| ZtgServerSwitch | X | server.vbs | ZTGServerswitch is part of Sony's Vaio support agent - designed by Support.com. Not required if the user does not wish to use the Vaio support agent and regarded as spyware |
| ZMatrix | U | matrix.exe | Related to ZMatrix an animated desktop background which displays streaming characters in a style similar to what was used in the movie 'The Matrix' Note: Located in \%Program Files%\ZMatrix\ |
| zsms | X | smss.exe | Added by the BANCOS-CK TROJAN! - Note - this file is placed in the Winnt or Windows folder, and should NOT be confused with the legitimate Windows smss.exe process, located in the Winnt/System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup! Read the link, keylogger/password stealing trojan(s) involved. |
| zcproo | X | qssstiej.exe | Possible homepage hijacker installing a toolbar: http://tdko.com/ ,Lop.com in disguise. see this thread |
| ZeroAds | U | LAS0Ads.exe | ZeroAds - culls ads, cookies and pop-ups. Required for the cookie interception to work |
| ZLH | U | ZLH.EXE | System Tray icon for Norman Antivirus |
| Zone system | X | szchost.exe | Added by the TROJ/MULTIDR-AC TROJAN! |
| zlclient or Zone Labs Client | Y | zlclient.exe | Firewall program from Zonelabs. Pro version inlcudes other online security options |
| Zinio DLM | N | ZinioDeliveryManager.exe | Related to Zinio used to read magazines in digital rather than paper format |
| Zi5 | X | AntiVirus,Update.exe | Added by the W32.Erkez.G
WORM!
Note: This worm file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. |
| zzz-hpi-boot | ? | hpi-boot.exe | Associated with HP Photosmart printers |
| zcseacrt | X | relccxs.exe | Added by a variant of the Troj/Mailbot-BW Note: This trojan is located in C:\WINDOWS\system32\ Read the link, allows remote access |
| ZipMagic | N | zm32.exe | Zip utility by Ontrack. Preloading ZipMagic allows you to access files within a zip archive without unzipping them first |
| Zen.A | X | (path to,trojan) | Added by a Perl/Zoomen-A trojan infection |
| zSearch | X | Zstb.exe | TotalVelocity zSearch parasite |
| Zeno | X | *sys****.exe (*,= random,char/digit) | Added by ZenoSearch adware - filenames spotted include rsyssx2d.exe, rsyssx2d.exe, rsystu2d.exe, ysysyz2d.exe and so on.
|
| Zonesoft Cleaner | X | rnsys.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) Filename is random. |
| Zonavirus | X | 0 | Added by the KITRO.D (or ARGEN.A) VIRUS! |
| ZboardTray | U | ZboardTray.exe | Zboard Keyboard driver, allows you to customise keyboard functions. Not needed if you don't want to customise these keyboard functions. |
| Z | X | zmon.exe | Added by the W32/Delbot-AE WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| ZoomingHook | ? | ZoomingHook.exe | Related to the Toshiba Zooming Utility for Tablet PC - what does it do and is it required? |
| Zango TvTimes | X | ZANGOT~1.EXE | ZangoSearch adware
|
| ZENworks Imaging Service | Y | ZISWin.exe | Imaging Agent. Part of Novell's ZenWorks - "Complete End-to-End Directory-enabled Network Management" |
| ZSScheduler | Y | zsscheduler.dll | Related to ZeroSpyware from FBM Software. Note: located in C:\Program Files\FBM Software\ZeroSpyware\ |
| z-WrDialer | U | WrDialer.exe | WinPoet DSL dialer |
| zzzCamlnSuitelll | ? | setup.exe 46*** | ?? |
| zsmss | X | smss.exe | Added by the Troj/Bancos-DD or Troj/Bandler-E TROJAN! Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) The legitimate Windows Process should not be seen in Msconfig or as a Startup item. This trojan file is found in the Windows or Winnt folder. Read the link, keylogger/password stealing trojan(s) involved. |
| zervpack2 | X | update2.exe | Added by the SDBOT.WD WORM! |
| ZGNUBI | ? | ZGNUBI.exe | ?? |
| ZPoint | X | winmuse.exe | Added by Troj/Dloadr-VJ TROJAN! Note: located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| ZuneStart | U | zune.exe | Related to Zune Portable media player from Microsoft. Note: Located in \%Program Files%\ |
| Zooming | ? | ZoomingHook.exe, | Toshiba Zooming Utility - found on Toshiba laptops and Tablet PCs. It allows users to zoom in (or magnify) text
|
| Zekio Startups | X | znksvc32.exe | Added by the W32/AGOBOT-AGI WORM! |
| Zero PoPup Killer XP.lnk | U | zpk_xp.exe | Intelligent anti-pop-up software product by Ax-Soft
File is located in the Program Files\Zero PopUp Killer XP folder |
| ZeroAds | U | 0 | ZeroAds - culls ads, cookies and pop-ups. Tells ZeroAds not to run at startup - needed to start it manually |
| Zcfgsvc | U | ZCfgSvc.exe | Zero Config MFC Application, part of Intel’s ProSET utilities and installed by the drivers for many of Intel wireless network cards - essential to the proper functioning of many of the Intel ProSET utilities (but not all) and these System Tray ProSET utilities are a must if you are using your wireless connection, if only so you know when the signal is fading or dropping.
The problem is that, in some PCs, ZCFGSVC can be incredibly badly behaved : taking up to 100% of CPU time and therefore resulting in an extremely slow PC, preventing the installation of software or Windows updates, or causing “Not Responding” or “End this Program” shutdown problems. If you experience this, try first the very latest drivers from Intel or your laptop manufacturer. If that still does not solve the problem and you have Windows XP/2003, try setting the “Wireless Zero Configuration” service to Disabled.
|
| zSecurity Service | X | szsvc.exe | Added by the W32/Sdbot-DAB WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| ZangoOE | X | OEAddOn.exe | Added by Adware.180solutions/Seekmo.Process ADAWARE! Note: Located in \%Program Files%\Zango\bin\10.0.275.0\ |
| Zip Driver Loader | X | msload32.exe | Added by the OBLIVION TROJAN! |
| zsmscc | X | zsmscc071001.dll | Added by a variant of the Trojan-Spy.Win32.Agent.adq malware! Note: Located in \%WINDIR%\System32\ |
| ZipGenius Clean | N | zg.exe | ZipGenius file compression utility |
| zonealarm | X | mcmm.exe, random file,names | Added by an unknown worm or trojan infection |
| zztp | X | svchost.exe | Added by the TANNICK.B TROJAN! - Note - this is NOT the legitimate Windows svchost.exe process, which should NOT figure in Msconfig/Startup!
|
| zsmsgs | X | ieservice.exe | Added by the TROJ/BANCOS-BU TROJAN! . Read the link, keylogger/password stealing trojan(s) involved. |
| Zinio DLM | N | ZDLM.EXE | Zinio - used to read magazines in digital rather than paper format |
| ZipDisk Icons | U | IMGICON.EXE | Displays Iomega icons in Explorer/My Computer, ejects Zip disks on shutdown and displays a special delete confirmation box when deleting files on an Iomega drive. Available via Start -> Programs. If you disable it remember to eject disks first before powering the drive down - hence the "U" recommendation. Note - FreeCell may not run with ImgIcon running |
| ZENRC Tray Icon | Y | zentray.exe | Part of Novell's ZenWorks - "Complete End-to-End Directory-enabled Network Management".Best left alone |
| Zoom | U | zoom.exe | Zoom - speeds up Windows startup and manages startup applications |
| zdnet | N | kontiki.exe | Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops |