services.exe – trojan Neop
The file services.exe is malware related. You must delete the file services.exe immediately! Delete the file services.exe without delay! Kill the process services.exe and remove services.exe from the Windows startup. Malware Analysis of services.exe Executed: kp.exe Removed: services.exe. Full path: C:\WINDOWS\Fonts\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: apps Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Explorer Run [...]
services.exe – worm Vobfus
We checked some samples of services.exe and detected the file services.exe as threat. Remove the services.exe from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of services.exe Executed: Venom.exe Removed: services.exe. Full path: C:\Documents and Settings\Administrator\Application Data\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: shell Author: Unknown Related File: Explorer.exe “C:\Documents and Settings\Administrator\Application Data\services.exe” Type: [...]
Removed: services.exe (backdoor IRCBot)
Malware: image3213.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: MS Service Manager Author: Trend Micro Inc. Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SERVICES.EXE Type: Registry Run Item Name: services.exe Author: Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SERVICES.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MS Service Manager HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MS [...]
Removed: C:\WINDOWS\java.exe, C:\WINDOWS\services.exe (worm Mydoom)
Malware: 15173.exe Removed: C:\WINDOWS\java.exe C:\WINDOWS\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Services Author: Unknown Related File: C:\WINDOWS\SERVICES.EXE Type: Registry Run Item Name: services.exe Author: Unknown Related File: C:\WINDOWS\SERVICES.EXE Type: Running Processes Item Name: services.exe Author: Unknown Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SERVICES.EXE Type: Running Processes Item Name: JavaVM Author: Unknown Related File: C:\WINDOWS\JAVA.EXE Type: Registry Run Item Name: [...]
Removed: avp32.exe, mdm.exe, gdi32.exe, install.exe, services.exe (trojan Genetik)
Malware: 420494256.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\avp32.exe C:\Documents and Settings\Administrator\Local Settings\Temp\mdm.exe C:\WINDOWS\gdi32.exe C:\WINDOWS\install.exe C:\WINDOWS\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: MKbMc Author: Unknown Related File: C:\WINDOWS\GDI32.EXE Type: Registry Run Item Name: MKeta Author: Unknown Related File: C:\WINDOWS\SERVICES.EXE Type: Registry Run Item Name: gdi32.exe Author: Unknown Related File: C:\WINDOWS\GDI32.EXE Type: Running Processes Item Name: services.exe Author: [...]
Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\mb9a.exe, C:\WINDOWS\Fonts\services.exe (trojan VB)
Malware: kp.jpg.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\mb9a.exe C:\WINDOWS\Fonts\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: apps Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Explorer Run Item Name: services.exe Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Running Processes Item Name: q9jp Author: Unknown Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\MB9A.EXE Type: Explorer Run Item Name: mb9a.exe Author: Unknown Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\MB9A.EXE Type: Running Processes Removal [...]
Removed: services.exe, WINWORD.EXE, Adobe Gamma Loader.com (worm Lamin)
Malware: jose.exe Removed: C:\Program Files\Microsoft Office\OFFICE11\services.exe C:\Program Files\Microsoft Office\OFFICE11\ WINWORD.EXE C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Adobe Gamma Loader.com —————————————————————————————————————————- Detected by UnHackMe: Item Name: shell Author: Unknown Related File: Explorer.exe, C:\Program Files\Microsoft Office\OFFICE11\services.exe Type: User Shell Item Name: Adobe Gamma Loader.com Author: Unknown Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\START MENU\PROGRAMS\STARTUP\ADOBE GAMMA LOADER.COM Type: Startup Folder Item Name: services.exe Author: [...]
Removed: C:\WINDOWS\services.exe (trojan Vbinject)
Malware: media.exe Removed: C:\WINDOWS\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: services.exe Author: E32MQMdIjL Related File: C:\WINDOWS\SERVICES.EXE Type: Detected using Heuristic Algorithm Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Windows Data Serivce Value: “services.exe” Files: C:\WINDOWS\services.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.16160.0 2010.10.15 – Kaspersky [...]
Removed: services.exe (trojan Poison)
Malware: C:\sand-box\video.exe Removed: C:\Documents and Settings\Administrator\Application Data\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: SunJavaUpdateSched Author: Unknown Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\SERVICES.EXE Type: Registry Run Item Name: services.exe Author: Unknown Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\SERVICES.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SunJavaUpdateSched [...]
Removed: C:\WINDOWS\services.exe (trojan-downloader Agent)
Malware: svchost.exe Removed: C:\WINDOWS\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: services.exe Author: Related File: C:\WINDOWS\SERVICES.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NAVIGATION_SOUNDS\services.exe Value: 0×00000001 Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\services.exe Value: “C:\WINDOWS\services.exe” Folders: Files: C:\WINDOWS\services.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.07.09 Trojan.Generic.KD.18953 [...]
Removed: C:\WINDOWS\Fonts\services.exe, msmbhdru.dll, office woid.exe (trojan Genome)
Malware: C:\sand-box\WINC.exe Removed: C:\WINDOWS\Fonts\services.exe C:\WINDOWS\system32\msmbhdru.dll C:\WINDOWS\system32\office woid.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: exec Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Explorer Run Item Name: load Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: run Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: services.exe Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Running Processes Item Name: pgoxhe Author: [...]
Removed: %USERPROFILE%\Application Data\Services.exe (trojan AutoRun)
Malware: wkqv.exe Removed: C:\Documents and Settings\Administrator\Application Data\Services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Windows Services Author: Company A Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\SERVICES.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Windows Services Value: “C:\Documents and Settings\Administrator\Application Data\Services.exe” Files: C:\Documents and Settings\Administrator\Application Data\Services.exe —————————————————————————————————————————- [...]
Removed: C:\Windows\System\services.exe (trojan Comame)
Malware: wm.exe Removed: C:\Windows\System\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Services Manager Author: Related File: C:\Windows\System\services.exe Type: Auto Services Item Name: services.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM\SERVICES.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\System\CurrentControlSet\Services\Services Manager Value: ImagePath: “C:\Windows\System\services.exe” Value: DisplayName: “Microsoft Services Manager” [...]
Removed: C:\Program Files\Wintows Publtnx\services.exe (trojan Sisron)
Malware: steup.exe Removed: C:\Program Files\Wintows Publtnx\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: windt32_ttnx Author: FREE Related File: C:\PROGRAM FILES\WINTOWS PUBLTNX\SERVICES.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.05.12 Trojan.Generic.3772243 Kaspersky 7.0.0.125 2010.05.12 Backdoor.Win32.Agent.arso Microsoft 1.5703 2010.05.12 Trojan:Win32/Sisron NOD32 5110 2010.05.12 a variant of [...]
Removed: C:\WINDOWS\Fonts\services.exe (trojan Swisyn)
Malware: C:\sand-box\banner.exe Removed: C:\WINDOWS\Fonts\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: exec Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Explorer Run Item Name: load Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: run Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: services.exe Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 [...]
Removed: services.exe, mswacsbm.dll, bqqk.exe (trojan Neop)
Malware: C:\sand-box\fbb665bb424dac1ca00d1015f7a7e759.exe Removed: C:\WINDOWS\Fonts\services.exe C:\WINDOWS\system32\mswacsbm.dll C:\Documents and Settings\Administrator\Local Settings\Temp\bqqk.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: exec Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Explorer Run Item Name: load Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: run Author: Unknown Related File: C:\WINDOWS\fonts\services.exe Type: Win.ini Item Name: services.exe Author: Related File: C:\WINDOWS\FONTS\SERVICES.EXE Type: Running Processes Item Name: [...]
Removed: …\Application Data\Defender\services.exe, …\Local Settings\Temp\services.exe
Malware: Job_Questionaire.exe Removed: C:\Documents and Settings\Administrator\Application Data\Defender\services.exe C:\Documents and Settings\Administrator\Local Settings\Temp\services.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.06 Trojan.Generic.3185198 Kaspersky 7.0.0.125 2010.04.06 Trojan.Win32.Swisyn.wia Microsoft 1.5605 2010.04.06 Trojan:Win32/Provis!rts NOD32 5003 2010.04.06 probably a variant of Win32/Agent —————————————————————————————————————————- Additional information File size: 409600 bytes MD5 : a531e9485f5a1765d155cf52ea157b6c SHA1 : 9248d85cb44d1e11b280ed844aa247ee786644ed SHA256: 00edbe97c48a1302874c293576d997b876b6ed466400cc627769e7cf540d6ee9 —————————————————————————————————————————- Installation [...]
Removed: services.exe, msbyylfy.dll (random filname)
Malware: C:\sand-box\erdown.exe Removed: C:\WINDOWS\fonts\services.exe C:\WINDOWS\system32\msbyylfy.dll (random filname) —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.03.27 Suspicious:W32/Malware!Gemini Kaspersky 7.0.0.125 2010.03.27 Trojan-Downloader.Win32.Genome.apng McAfee 5932 2010.03.26 – Microsoft 1.5605 2010.03.27 – NOD32 4978 2010.03.26 a variant of Win32/PSW.WOW.NOP —————————————————————————————————————————- Additional information File size: 18432 bytes MD5 : 4a7bbd7e0de0c56704d034722182aec4 SHA1 : 920bfe65bcf08399ec4a6b851b91760e26669bfd SHA256: 72c7dc5d668c254451c619aa925cea61a48deae46c59d33e5f82135dab884245 —————————————————————————————————————————- Installation When the program is [...]
Malware: install11.exe
Malware: install11.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.02.03 Suspicious:W32/Riskware!Online Kaspersky 7.0.0.125 2010.02.03 not-a-virus:FraudTool.Win32.InternetAntivirusPro.as McAfee 5881 2010.02.03 FakeAlert-FQ Microsoft 1.5406 2010.02.03 Trojan:Win32/InternetAntivirus NOD32 4832 2010.02.03 a variant of Win32/Kryptik.CBJ —————————————————————————————————————————- Additional information File size: 33280 bytes MD5 : 0f159f049c04cf2cbd58b7c5c8d6f22f SHA1 : 7a3c5a492cdbf345241b3f9d4c53d6d4d6b4a8c5 SHA256: 928e3abdb4814267d773aae1648bd0fd43763ee395bcb149b3cf858891f8a2ba —————————————————————————————————————————- Installation When the program is executed, it [...]
Removed: C:\WINDOWS\system32:services.exe
Malware: html.exe Removed: C:\WINDOWS\system32:services.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.12.29 Backdoor.Generic.214994 Kaspersky 7.0.0.125 2009.12.29 Trojan.Win32.Buzus.cerz McAfee 5845 2009.12.28 Generic BackDoor!bdv Microsoft 1.5302 2009.12.29 Backdoor:Win32/Poison.M NOD32 4723 2009.12.28 probably a variant of Win32/Injector.ACF Symantec 1.4.4.12 2009.12.29 Backdoor.Trojan —————————————————————————————————————————- Additional information File size: 42496 bytes MD5 : 09b5eb057775660b7ee9ccb5c8242f1d SHA1 : c85c81c2465943cd9646b8ab7f4f263402a0c021 SHA256: f8b89c4025577760b313555149b59ef781e94ade1ca17efd0b71ef4298c650ed [...]



