Search Results
(displaying 91 results)
(displaying 91 results)
Name | Filename | Description | Status |
WinXP-98 | CSRSS.exe | Added by the Troj/Banker-DS TROJAN! Note: Located in \%Program Files%\WinXP-98\Tools\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
auto_update | csrss.exe | Added by the W32.SillyFDC WORM! Note: Located in \%Program Files%\microsoft frontpage\ | X |
2 | csrss.exe | Added by the Mal/Behav-043 MALWARE! Note: Located in \%Documents and Settings%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ Note: This entry is loaded through one of the "Policies" startup keys. | X |
1 | csrss.exe | Added by the Mal/Behav-043 MALWARE! Note: Located in \%Program Files%\microsoft frontpage\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ Note: This entry is loaded through one of the "Policies" startup keys. | X |
winlogon | csrss.exe | Identified as Trojan-Proxy.Win32.Agent.kj. Note: Located in \%WINDIR%\ | X |
csrss.exe | csrss.exe | Added by the W32.Dalbug.Worm WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
SernellApp.pcx | csrss.exe | Added by the Troj/Bancban-BJ TROJAN! Note: Located in \%WINDIR%\System\D5133\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Runtime Process | Csrss.exe | Added by the Troj/Ciadoor-J TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Runner | csrss.exe | Added by the Troj/AdClick-AG TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
FirewallActivies | csrss.exe | Added by the Troj/Banker-AQ TROJAN! Note: Located in \%WINDIR%\System32\3041\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
csrss.exe | csrss.exe | Added by the W32.Dalbug.Worm WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
_SystemDriver | csrss.exe | Added by the Trojan.Ascetic.B TROJAN! Note: Located in \%WINDIR%\addins\explorer\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
LogonAdministrator | CSRSS.EXE | Added by the W32.Korron.B is a worm that replaces some file types with a copy of itself. It also copies itself to all accessible drives on the compromised computer. Note: Located in \%Documents and Settings%\Administrator\Local Settings\Application Data\WINDOWS\ Note: Do not remove the legitimate csrss.exe file which is always found in \%WINDIR%\%System%\ | X |
WinUpdateProtection | csrss.exe | EmployeeWatch is a commercial spyware program designed to monitor user activity on a computer. | U |
WinUpdateProtection | csrss.exe | ICE_Remote_Spy monitoring software, "secretly monitors everything your spouse, kids or employees do on the Internet and emails the data to you." - Note - this file is installed in a C:\Windowsupdate\Ufp\Irs7 folder, and it is NOT the valid Client Server Runtime Subsystem csrss.exe process, which provides text window support, shutdown, and hard-error handling, and which is located in the System32 directory. | U |
WinUpdateAdministrator | CSRSS.EXE | Added by the W32/Punya-A WORM! Note: Located in \%AppData%\WINDOWS\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Windowsupdate Service | csrss.exe | Added by the WORM_BUCHON.E WORM! Note: Located in \%ROOT%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Windows Update | csrss.exe | Added by the Troj/Banker-HM TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Windows Explorer SP2 | csrss.exe | Added by the Troj/Banker-DM TROJAN! Note: Located in \%WINDIR%\System32\JavaBeans\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Windows Client Service 32 | csrss.exe | Added by the W32/Rbot-ALB WORM! Note: Located in \%WINDIR%\System32\drivers\winsdriver\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Windows 2004 | CSRSS.exe | Added by the Troj/Banker-DY TROJAN! Note: Located in \%Program Files%\Windows 2004\Tools\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Update | csrss.exe | Added by the Trojan.Meheerwar TROJAN! Note: Located in \%WINDIR%\System%\winupdate\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
.svchost | CSRSS.EXE | Added by the Trojan.Webus.F TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
PKWARE | csrss.exe | Added by an Unidentified malware. Note: Located in \%AppData%\roaming\ Note: Do not remove the legitimate (csrss.exe) file which is always found in \%Windir%\%System%\ | X |
Client_Runtime_Service | csrss.exe | Related to Trojan.fakems is a malicious trojan that opens up a backdoor to enable a computer attacker. Note: Located in \%AppData%\Roaming\Microsoft\Windows\Runtime\ | X |
IcyWildflower | csrss.exe | Added by an Unidentified malware. Note: Located in \%Windir%\rss\ Note: Do not remove the legitimate (csrss.exe) file which is always found in \%Windir%\%System%\ | X |
WINLOG0N | csrss.exe | Added by the csrss.exe Unknown malware. Note: Located in \%Windir%\ Note: Do not delete the csrss.exe located in \%Windir%\%System%\ | X |
nvdisplay | csrss.exe | Identified as an Infostealer trojan, detected by Kaspersky antivirus as Trojan.Win32.VBKrypt.blpf Note: Located in %AppData% | X |
Microsoft Windows Firewall | csrss.exe | Identified as Infostealer trojan, detected by Malwarebytes Anti-Malware as "Trojan.Agent.MSGen" Note: Located in %ProgramFiles%\LogitechDriver Note: Triggered by the HKLM\..\Policies\Explorer\Run key | X |
Microsoft Windows Defender | csrss.exe | Identified as Infostealer trojan, detected by Malwarebytes Anti-Malware as "Trojan.Agent.MSGen" Note: Located in %ProgramFiles%\LogitechDriver | X |
bootstat | csrss.exe | Added by the Troj/Swysin-Gen Trojan. Note: Located in \%Windir%\Media\ | X |
Intel | csrss.exe | Unknown malware. Note: Located in \%AppData%\ | X |
Safer Networking Limited | csrss.exe | Added by an Identified by ESET Nod32 as a variant of the Trojan.Generic.KD.373098 malware. Note: Located in \%AppData%\ Note: Do not remove the legitimate (csrss.exe) file which is always found in \%Windir%\%System%\ | X |
LeechFTP | csrss.exe | Added by an Unidentified malware. Note: Located in \%AppData%\roaming\ Note: Do not remove the legitimate (csrss.exe) file which is always found in \%Windir%\%System%\ | X |
SYSTEMSars32 | csrss.exe | Added by the W32.Ahlem.A@mm WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
VMware, Inc. | csrss.exe | Added by the Unidentified malware. Note: Located in \%AppData%\ Note: Do not remove the legitimate csrss.exe file which is always found in \%Windir%\%System%\ | X |
Windows System Devices Manager | csrss.exe | Added by the Troj/Inject-PX Trojan. Note: Located in \%Windir%\ | X |
MSWUpdate | csrss.exe | Added by the Mal/DrkBot-A malware. Note: Located in \%AppData%\ | X |
Policies | csrss.exe | Added by the Unidentified trojan Note: Located in \%Program Files%\shopNon\Bit Defender\ Note: Do not remove the legitimate csrss.exe file which is always found in \%WINDIR%\%System%\ Note: This entry is loaded through one of the "Policies" startup keys. | X |
Defender32bit | csrss.exe | Added by the Unidentified trojan Note: Located in \%Program Files%\shopNon\Bit Defender\ Note: Do not remove the legitimate csrss.exe file which is always found in \%WINDIR%\%System%\ | X |
Microsoft Windows Defender | csrss.exe | Added by the Unidentified trojan Note: Located in \%Program Files%\shopNon\Bit Defender\ Note: Do not remove the legitimate csrss.exe file which is always found in \%WINDIR%\%System%\ | X |
ZakariaG | csrss.exe | Identified by Microsoft as Worm:Win32/Orbina!rts. Information at Threat Expert Note: Located in %windir% | X |
Runonce | CSRSS.exe | Added by the Worm.Win32.AutoRun.dkk Note: Located in \%WINDIR%\ | X |
csrss | csrss.exe | Added by the Armadillo IRCbot. Note: Located in \%TEMP%\tmp-3\ | X |
srss.exe | csrss.exe | Added by the Backdoor:Win32/Poisonivy.E Note: Located in \%WINDIR%\ | X |
Csrss | csrss.exe | Added by the W32.Chod@mm WORM! Note: Located in \%WINDIR%\System32\(random folder name)\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
SystemDriver | csrss.exe | Added by the Trojan.Ascetic.B TROJAN! Note: Located in \%WINDIR%\addins\explorer\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
KernellApps | csrss.exe | Added by the Troj/Bancban-AC TROJAN! Note: Located in \%WINDIR%\System\System Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
FiendlyType | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
DIECOX | csrss.exe | Added by the BackDoor-ATM.gen TROJAN! Note: Located in \%ROOT%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
csrssLevel4 | csrss.exe | Added by an Unidentified malware Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Csrss | CSRSS.EXE | Added by the W32/Punya-B WORM! Note: Located in \%AppData%\WINDOWS\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
csrss | csrss.exe | Added by the Troj/Keylog-AQ TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
csrss | csrss.exe | Added by the W32/Chode-J WORM! Note: Located in \%WINDIR%\System32\(random name)\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
csrss | csrss.exe | Added by the Spyware.BeyondKeylog surveillance software. Uninstall this software unless you put it there yourself. - NOTE - this file is placed in the Program Files\Supremtec folder, and should NOT be confused with the legitimate Windows Client Server Runtime Subsystem csrss.exe process, which provides text window support, shutdown, and hard-error handling, always located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup! | ? |
Csrss | csrss.exe | Added by the W32.Chod.B@mm WORM! Note: Located in \%WINDIR%\System32\(random folder name)\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Key Logger | csrss.exe | Added by the W32.Buchon.A@mm WORM! Note: Located in \%ROOT%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
CSRSS | CSRSS.EXE | Added by an unidentified malware. Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Console de Gerenciamento Microsoft | csrss.exe | Added by the Troj/Bancban-ET TROJAN! Note: Located in \%WINDIR%\System32\Central de Segurança\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
ccpApps | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
BuildLabs | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
BagleAV | csrss.exe | Added by the W32.Netsky.AB@mm WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
AtiSound | csrss.exe | Added by the Added by the WinSpy surveillance software. Note: Uninstall this software unless you put it there yourself Note: Located in \%Program Files%\Winspy\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | ? |
ASP.NET State Service | csrss.exe | Added by the Troj/Dloader-QI TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
AdRotator.Application | csrss.exe | AdRotator adware variant - Note - do NOT be confuse with the legitimate Windows Client Server Runtime Subsystem csrss.exe process, which provides text window support, shutdown, and hard-error handling, located in the Winnt\System32 or Windows\System32 folder, and which should NOT figure in Msconfig/Startup! | X |
.WMAudio | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
.TEXTCONV | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
RegDone Ex | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
System Process | csrss.exe | Added by the Troj/AdClick-AG TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
System | csrss.exe | Added by the Troj/LdPinch-PT TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
State Service | csrss.exe | Added by the Troj/Dadobra-CP TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Shockwave | csrss.exe | Added by the W32.Sndog@mm WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Services | csrss.exe | Added by the Backdoor.Ranky.U TROJAN! Note: Located in %PATH TO TROJAN% Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Svchost | csrss.exe | Identified by Avira as a variant of the BDS/Bandok.HR backdoor Trojan. Note: Located in \%allusersprofile%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
rundll32 | csrss.exe | Added by the Trojan.Gutta TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Run TaskMrg | csrss.exe | Added by the Troj/LdPinch-W TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
RPCserv32g | CSRSS.EXE | Added by the WORM_BOBAX.AD WORM! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
RegWrite | csrss.exe | Added by the Backdoor.Sokacaps TROJAN! Note: Located in \%WINDIR%\media\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Krnlcheck | csrss.exe | Added by the Backdoor.Botnachala TROJAN! Note: Located in \%WINDIR%\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Prog | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
NTDLM | csrss.exe | Added by the Backdoor.Hale TROJAN! Note: Located in \%WINDIR%\System32\qossrv\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Norton Protect Activies | csrss.exe | Added by the Troj/Banker-CZ TROJAN! Note: Located in \%WINDIR%\System32\D5133\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft ® Windows TCP/IP Socket Driver | csrss.exe | Added by the TROJ_RANKY.HW TROJAN! Note: Located in \%WINDIR%\winsock\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft ® Windows Client/Server Runtime Service | csrss.exe | Added by an unidentified TROJAN! Note: of the Win32/Rbot Family. Note: This worm\trojan is located in C:\WINDOWS\i386\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft Word Profissional | csrss.exe | Added by the Troj/Bancban-DB or Troj/Bancos-DP TROJANS! Note: Located in \%WINDIR%\System32\JavaVM\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft Windows Update Client | csrss.exe | Added by the W32/Kebede-G WORM! Note: Located in \%WINDIR%\Systems32\ Note: Your csrss.exe file my be compromised. ckeck it out. Note: Submit the file for investigation: Virus scan | X |
Microsoft Windows CSRSS | csrss.exe | Added by the W32/Kalel-A WORM! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft SourceSafe | csrss.exe | Added by the Trojan.Webus TROJAN! Note: Located in \%WINDIR%\System\ Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Microsoft (R) Windows TCP/IP Socket Driver | csrss.exe | Added by the Troj/Proxy-DD TROJAN! Note: Located in (Path to Trojan EXE) Note: Do not remove the legitimate program file in \%WINDIR%\System32\ | X |
Audio Driver | csrss.exe , config.exe | Added by the Unidentified malware. Note: Located in \%AppData%\ Note: Do not remove the legitimate csrss.exe or config.exe files are is always found in \%Windir%\%System%\ | X |
hsf87efjhdsf87f3jfsdi7fhsuj fd | avp32.exe, csrss.exe, debug.exe, drweb.exe, hexdump.exe, login.exe, lsass.exe, smss.exe, taskmgr.exe, win32.exe, ozrfi .exe, win.exe, system.exe | Added by the TrojanClicker:Win32/Hatigh.C TROJAN! Note: Located in \%TEMP%\ Note: Do not delete similar filenames in other folders. | X |