Startup List Results
Startup Entry
Startup Entry
Name | Filename | Description | Status |
driver.exe | driver.exe | Identified by Kaspersky as Trojan.Win32.FraudPack.tix Note: Located in %windows%\system32 | X |
NVIDIA GeForce 610M | NVIDIA-AMD-DRIVER.exe | Related to NVIDIA Corp NVIDIA GeForce 610M dedicated graphics for up to 2x faster multimedia. Note: Located in \%AppData%\Local\nvbios\ | U |
DME-N Network Driver | DME-N Network Driver.exe | Related to Yamaha Corporation DME-N Network Driver Note: Located in \%Windir%\%SysWOW64%\ | U |
Windows Driver Adapter | svchost.exe /driver-auto | Added by the W32/Antinny-K WWORM! Note: Located in \%WINDIR%\System32\Drivers\ Note: Do not remove the legitimate svchost.exe file which is always found in \%WINDIR%\System32\ - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! | X |
O23 List Results
Windows Services
Windows Services
Name | Filename | Description | Status |
Driver Cache (Driver Cache) | Driver Cache.exe | Added by the Troj/Feutel-S TROJAN! | X |
Drivers List Results
Driver Entry
Driver Entry
Name | Filename | Description | Status |
Driver | driver-x64.sys | Related to EVGA Precision X1 from EVGA® Corp | L |
eLock2FSCTLDriver | eLock2FSCTL Driver.sys | Related to eLock2FSCTL Driver.sys ELock File System Filter Driver from Acer. | L |
LAN7500 | Kernel device driver | Related to Kernel device driver from SMSC | L |
Active Setup List Results
Active Setup - Installed Component
Active Setup - Installed Component
CLSID | Name | Filename | Description | Status |
{67EFG7H6-8IJL-56YT-KLH4-76WE8D3RAM87} | (no name) | Driver.exe | Infostealer, detected as W32/AutoRun-YU Win32 worm | X |
{67KLN5J0-4OPM-00WE-AAX5-74CC3A182132} | (no name) | driver.exe | Infostealer, detected as W32/Autorun.worm.gj | X |
{C5A01226-4509-177D-039A-797E63F224CD} | (no name) | driver.exe | Infostealer trojan, see here | X |
{HF14OTDK-84QM-78F8-HG12-K1832KHW6K8Y} | (no name) | driver.exe | Infostealer trojan, see here | X |
{IQ774J2C-KIR6-Q2M4-664F-5565YT5C4V40} | (no name) | driver.exe | Infostealer trojan, detected by Microsoft as Backdoor:Win32/Xtrat.A , seethis ThreatExpert Report | X |