Startup List Results
Startup Entry
Startup Entry
Name | Filename | Description | Status |
Kernel_check | wmiprvse.exe | Added by the W32/SONEBOT-B WORM! | X |
winmgmt | wmiprvse.exe | Added by the BackDoor-DNV TROJAN! Note: Located in \%WINDIR%\System32\ | X |
O23 List Results
Windows Services
Windows Services
Name | Filename | Description | Status |
Windows Management Instrument Driver Includes (WMIDriverInc) | wmiprvse.exe | Added by an unidentified TROJAN! of the Sdbot family. Note: This worm\trojan is located in C:\%WINDIR%\ folder. Note: This is not the legitimate Windows Process. (Which is found in the System32\wbem\ folder.) | X |