Startup List Results
Startup Entry
Startup Entry
Name | Filename | Description | Status |
VMware User Process | vmtoolsd.exe | Related to VMware, Inc. VMware Tools Core Service. Note: Located in \%Program Files%\VMware\VMware Tools\ | U |
Drivers List Results
Driver Entry
Driver Entry
Name | Filename | Description | Status |
VMTools | vmtoolsd.exe | Related to vmtoolsd.exe VMware Tools Core Service from VMware, Inc. | L |
Active Setup List Results
Active Setup - Installed Component
Active Setup - Installed Component
CLSID | Name | Filename | Description | Status |
{AF1A726C-9716-BB88-B21A-13F3C675B99D} | (no name) | vmtoolsd.exe | Infostealer trojan, detected by Microsoft as TrojanDownloader:Win32/Kanav.C | X |
{F3CCE815-BFF2-ED6C-B6EA-CDADEFA7EAF3} | (no name) | vmtoolsd.exe | Infostealer trojan, dropper detected by ESET's Nod32 antivirus as Win32/TrojanDownloader.Agent.RAK ... Note: Do not confuse with the legitimate VMware file of the same name, typically located in %ProgramFiles%\VMware\VMware Tools! | X |
{3AFF55DB-B911-7090-73C9-0AEA17643DA5} | (no name) | vmtoolsd.exe | Infostealer trojan, dropper detected by ESET's Nod32 antivirus as Win32/TrojanDownloader.Agent.RAK ... Note: Do not confuse with the legitimate VMware file of the same name, typically located in %ProgramFiles%\VMware\VMware Tools! | X |