| Status | Autorun name | Command | Description |
| X | Svchost Service | svchost.exe | Added by the VB-DVQ WORM! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\help |
| X | Svchost Windows Remote Services | svhost.exe | Added by the IRCBOT-IV WORM! |
| X | svchost.exe | svchost32.exe | CoolWebSearch Svchost32 parasite variant |
| X | SVCHOST.EXE | SVCHOST.EXE | Added by the WRMSCAN-A TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir% |
| X | svchost.exe | [path to executeable] | Added by the BANKER-MO TROJAN! |
| X | svchost.exe | svchost.exe | Added by the ZAPCHAS-V TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "drivers" subfolder |
| X | svchost.exe | swchost.exe | Added by the SADELPHI-A TROJAN! |
| X | svchost.exe | svchost.exe | Added by the VIRUT.CF WORM! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "3361" subfolder |
| X | SVCHOST.EXE | svchost.exe | Added by the SILLYFDC.BBI WORM! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "Conf" sub-directory |
| X | svchost.exe | svcnost.exe | Added by the MISLEAD-A TROJAN! |
| X | svchost.exe | csrsc.exe | Added by the BUZUS.AAUP TROJAN! |
| X | svchost1 | svchost1.exe | Added by the AGOBOT.ZZ WORM! |
| X | SVCHost2 | svchost2.exe | Added by the RBOT.BLC WORM! |
| X | SvcHost32 | svchost32.exe | Added by the MIMAIL.I or MIMAIL.J WORMS! |
| X | svchost32.exe | svchost32.exe | Added by the ASSASIN.20B BACKDOOR! |
| X | svchost64 | svchost64.exe | Added by the SDBOTER.G VIRUS! |
| X | svchosta | svchosta.exe | Added by the SNIFFER-I TROJAN! |
| X | svchostb | svchostb.exe | Added by the SNIFFER-J TROJAN! |
| X | SvcHostDHCP | svchost32.exe | Added by the ASSASIN.20B BACKDOOR! |
| X | svchostdll.scr | svchostdll.scr | Added by the BANCBAN-FM TROJAN! |
| X | svchostn.exe | svchosta.exe start4dalife | Added by the ZOMBIE.SM BACKDOOR! |
| X | svchostn.exe | svchosth.exe start4dalife | Added by the ZOMBIE.SM BACKDOOR! |
| X | SvcHosto | v1rg1n.exe | Added by the AGOBOT-TK WORM! |
| X | svchostr | svchostr.exe | Added by an unidentified WORM or TROJAN! |
| X | svchosts | svchosts.exe | Added by the BANCBAN-DC or BANKER-ED TROJANS! |
| X | Svchosts | SCVHOST.EXE | Added by the AGOBOT-RQ BACKDOOR! |
| X | svchosts.exe | svchosts.exe | Added by the AGOBOT-JN WORM! |
| X | svchosts.scr | svchosts.scr | Added by the BANCBAN-DQ TROJAN and variants! |
| X | SVCHOT | SVCHOT.exe | Added by the QQROB-U TROJAN! |
| X | svchst | svchst.exe | Added by the KBROY-C TROJAN! |
| X | svcinfo | svcinfo.exe | Added by the CRYPTER.A TROJAN! |
| X | Svclhost | svcchost.exe | Added by an unidentified WORM or TROJAN! |
| X | SvcManager | restore3.exe | Added by the AGENT-DSS TROJAN! |
| X | SvcManager | [path to trojan] | Added by the ZALON-A BACKDOOR! |
| X | SvcManager | mdmex2.exe | Added by the ZALON-B BACKDOOR! |
| U | svcmon | svcmon.exe | PersonInspect surveillance software. Uninstall this software unless you put it there yourself |
| X | Svcnost.exe | svcnost.exe | Added by the SELEX.B WORM! |
| X | Svconr | Svconr.exe | WaveRevenue-lBann adware |
| X | Svcphpwin | sslphp32.exe | Added by the AGOBOT-ABR WORM! |
| X | svcroot | svcroot.exe | Added by the KEYLOG-AC TROJAN! |
| X | svcroot | xffanl.exe | Added by the AGENT-BMF TROJAN! |
| X | svcs32 | svcs32.exe | Added by the AGENT-VE MALWARE! |
| X | svcshare | winampXP.exe | Added by the FUJACKS-J VIRUS! |
| X | svcshare | spoclsv.exe | Added by the FUJACKS-A VIRUS! |
| X | svcshare | CTMONTv.exe | Added by the FUJACKS-AJ WORM! |
| X | svcshare | nvscv32.exe | Added by the FUJACKS-Z WORM! |
| X | svcshost | svcshost.exe | Added by the AGENT-GLN TROJAN! |
| X | SvcSys | [path to file] | Added by the BANCOS.Z TROJAN! |
| X | Svcsys Registry Manager | svcsysreg.exe | Detected by Kaspersky as the AGENT.CV TROJAN! |
| X | svcsys32 | svcsys32.exe | Added by the AGOBOT-LL WORM! |
| X | svctask | svctask.exe | Added by the CHUCKYB-A TROJAN! |
| X | svcwinprocess32 | [path to worm] | Added by the UPERING WORM! |
| X | SVGA Adapter | svghost.exe | Added by a variant of the SPYBOT WORM! See here |
| X | svhcost | svhcost.exe | OpenSearch adware |
| X | svhoost | checksys.exe | Added by a downloader TROJAN of Chinese origin! |
| X | SVHOST | svhost.exe | Added by the MYDOOM.I WORM! The file is located in %System% |
| X | SVHOST | SVHOST.EXE | Added by the ZORI.A VIRUS! The file is located in %System%\SVCHOSTV |
| X | Svhost | Svhost.exe | Added by the VB-ASG WORM! This file is located in a "Hwnd" sub-directory of the Root folder (C:\), (D:\), etc |
| X | Svhost Loader | svshost.exe | Added by the AGOBOT.G WORM! |
| X | Svhost Service Server | svhostser.exe | Added by a variant of the RBOT WORM! See here |
| X | svhost updates | Svhost.exe | Added by a variant of the RBOT WORM! |
| X | svhost windows services | svhost8.exe | Added by the RBOT-WQ WORM! |
| X | svhost.exe | svhost.exe | Added by the SILLYFDC-AY WORM! |
| X | svhost1 | mdsn.exe | Added by the VB-EPK TROJAN! |
| X | svhost32 | svhost32.exe | Added by the AUTORUN-AWY WORM! |
| ? | SVIDC32M | SVIDC32M.exe | ?? |
| X | sVideo2 | vxdrun6.exe | Switch-D premium rate adult content dialler. The filename and path can be random but the most frequent example is "vxdrun6.exe" which is located in %System% |
| X | sviload32 | sviload32.exe | Added by the RBOT-AAS WORM! |
| ? | SVM Pop | svmpop.exe | ?? |
| X | svnlitup32 | svnlitup32.exe | Added by the RBOT.CBJ WORM! |
| X | svnloader | svnload32.exe | Added by the RBOT-ACU WORM! |
| X | SVOHST | svohst.exe | Added by the IRCBOT-AEI WORM! |
| X | Svost Loader | svost.exe | Added by the SDBOT.G BACKDOOR! |
| X | svphost.exe | svphost.exe | Added by the AGENT.CS TROJAN! |
| U | SVPWUTIL | SVPWUTIL.exe SVPwUTIL | Part of Toshiba Hardware Setup |
| X | Svr32 spool service | spoolsrv32.exe | Topantispyware adware |
| X | svrhost | Svrhost.exe | Satbo adware |
| X | svrrun | svrrun.exe | Adware hailing from Deskwizz.com |
| X | svsekin | svsekt.exe | Added by the QQPASS.G TROJAN! |
| X | svshost | svshost.exe | Added by the CHODE-H WORM! |
| X | svshost | messenger.exe | Added by the LOONY-G TROJAN! |
| X | Svshost Update Service | svcbind.exe | Added by the MYTOB.LH WORM! |
| X | svshost32 | msgrsv32.exe | Added by the RANKY.AJ TROJAN! |
| X | svshost32 | svshost32.exe | Added by a variant of the SDBOT WORM! |
| X | svshostdriver | svshost.exe | Added by the SDBOT-HN TROJAN! |
| X | svshostdriver | msnmessengerupdate.exe | Added by the SDBOT-BI BACKDOOR! |
| X | svtcin | n20050308.a.Stub.EXE | Added by the N20050308 TROJAN! |
| X | svwin32 | unninst32.exe | Added by the AGOBOT-NF WORM! |
| X | SVX Control Service | svxhost.exe | Added by the FORBOT-K WORM! |
| X | svxhost | svxhost.exe | Added by the MEXBANK.A spyware |
| X | SW | SpyOnThis.exe | SpyOnThis rogue spyware remover - not recommended |
| U | SW CfgWiz | cfgwiz.exe | Configuration wizard for Symantec's now discontinued Norton SystemWorks security product. On the first run after installation or a significant software update via LiveUpdate this entry looks after registration, subscription and post-installation tasks (such as LiveUpdate, full scan and scheduling) and confirms the default configuration settings |
| U | SW20 | sw20.exe | Related to MSI's Dynamic Overclocking Technology |
| U | SW24 | sw24.exe | Related to MSI's Dynamic Overclocking Technology |
| Y | swAgentexe | SWAGENT.EXE | Part of the now obsolete McAfee Managed VirusScan anti-virus and anti-spyware security tool for small businesses |
| N | Swap Nut | javaw.exe | javaw.exe can be loaded by other programs at startup but in this instance it's SwapNut, a peer-to-peer file sharing and searching utility developed and marketed by File Metrics, Inc. Users can search for and find almost any type of digital file (audio, video, photos etc.) through a secure peer-to-peer network |
| X | SWCaller | SWcaller.exe | Swporta homepage hijacker |
| X | SWCaller | Swcaller2.exe | Swporta homepage hijacker |
| X | Swchost | Swhost.exe | Added by the BDOOR-MP BACKDOOR! |
| U | SWClient | swsys.exe | ActivMonAgent keyboard logger/monitoring program - remove unless you installed it yourself |