| Name | Status | Filename | Description |
|---|
| go | X | cvir.exe | W32/Silov-A Read the link, very destructive, replaces EXE files with copies of itself |
| Gadu-Gadu | N | gg.exe | Polish language Instant Messaging client |
| Goldensoft_MndlSvr | U | MndlSvr.exe | Goldensoft CD Ghost related - turns a computer into a 200X-speed CD-ROM tower. Working from the hard drive, users can simultaneously access as many as 23 virtual CD-ROM drives at a speed of 200X for true multitasking |
| Glide | Y | Glidew32.exe | Cirque touchpad driver |
| Get Smile | N | getsmile.exe | Puts smilie faces in your E-mail. Run manually when required |
| gcasDtServ | X | gcasDtServ.exe | Added by an unidentified WORM or TROJAN. - Note - there IS in fact also a Microsoft Antispyware process bearing the same name, but it will not figure among the startup items! |
| Greetings Workshop | N | GWREMIND.EXE | You really want to be reminded about somebody's birthday at the expense of resources? |
| GSOrganizer | N | GSOrganizer.exe | GoldenSection Organizer (now WinOrganizer - personal information manager
|
| Glock Suite 1.1 | X | glock32.exe | Added by a variant of the Spy-Agent.bv.dldr Note: Located in \%WINDIR%\System32\ |
| gah95on6 | X | gah95on6.exe | ShopAtHome/SAHagent adware |
| Gscbc | ? | Gscbc.exe | ?? |
| Generic Host Process for WinXP Services | X | mshelp.exe | Added by the Troj/Agent-GQP Trojan. Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| GP Updater | X | gpupdater.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Google Earth | X | (random,name).exe | Added by the W32/Rbot-AXK TROJAN! |
| Google Service FR | X | GO0GLEFREE.EXE | A variant of the W32/Spybot.BURS family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\Com\ |
| Games Acceleration | X | svshost.exe | EasySearch adware |
| gaSrve | X | gaSrve.exe | Adware downloader, identified by Panda antivirus as Trojan.Downloader.ALQ
|
| Generic Host Process for Win32 Services | X | winsvc.exe | Added by a W32/Sdbot-O worm infection |
| Giganews Accelerator | U | GiganewsAccelerator.exe | Related to Giganews_Accelerator A Usenet service. Note: Located in \%Program Files%\Giganews Accelerator\ |
| GoBack | U | GBMenu.exe | Roxio's (nee Adaptec) GoBack software which allows you to revert back to a previously working state on you hard drive if you install a new program and your system goes faulty - performing the same functions with extra features as System Restore on WinMe/XP systems. Disable before running Scandisk or Defrag. Not required for WinMe/XP users, recommended for Win9x/NT/2K users
|
| Ghost Relay | X | W,),),W,))),)W)W,,,WWWW))WWW),WW.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| Google service | X | Googlesetup.exe | Added by the W32/IRCBot-RJ WORM! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) |
| GameDrive | N | GDTask.exe | Related to GameDrive Virtual Driver from FarStone Technology, Inc. Run PC games without the disc.
Note: Located in C:\Program Files\FarStone\GameDrive\ |
| GinaDll | X | ntgina.dll | Added by a ANIG.A worm infection |
| G_Server.exe | X | G_Server.exe | Added by the TROJ/FEUTEL-C
and Troj/Feutel-J
TROJANS!
|
| game | X | shit.exe | Added by the Netclap Gold backdoor TROJAN! |
| GEDZAC | X | GEDZAC.exe | Added by the GEMEL VIRUS! |
| Generic Service Process | X | nvsvc.exe | Added by the AGOBOT.BY WORM! - NOTE - do NOT confuse with the legitimate NVIDIA Driver Helper Service file of the same name as described here |
| Generic Host Process for Win Services | X | mscvs.exe | Added by a variant of the SDBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| GNP Generic Host Process | X | svchost.exe | Added by the Troj/Zapchas-AA
TROJAN!
Note: This one replaces svchost.exe in the System32 folder with a copy of Mirc on (NT/2000/XP) systems and just adds svchost.exe to the System folder on (95/98/ME) systems. |
| GhostSecuritySuite | U | gss.exe | Related to Ghost_Security_Suite Protect the registry from unauthorized reading and modification and other tools. |
| GustavVED | X | (random,filename) | Added by the OPASERV.H VIRUS! |
| gwiz | X | arpl.exe | Detected as Spyware/Virtumonde by panda |
| GhostSurfDelSatellite | Y | DeleteSatellite.exe | Related to SpyCatcher spyware remover from Tenebril.
This file prevents rogue programs from sending personal information to a remote user via the Internet. If you use Spy Catcher with real time scanning, you'll want to leave this file in place. Note: See here |
| Game House | X | GameHouse.exe | W32/Delf-DRA |
| Games Acceleration | X | (Path to EXE) | Added by the Troj/SmutSrch-A
Trojan!
|
| google toolbar | X | ggtb32.exe | Added by the W32/AGOBOT-RR WORM! |
| GSISETUP | ? | [path],GsiInst.exe,INSTALL [path],V205Res 13 | BT Voyager ADSL modem related - what does it do and is it required? |
| gdcw | X | GDCW.exe | Identified as a variant of the Trojan.Fakealert.origin Trojan. Note: Located in \%Program Files%\SecurePCCleaner\data\ Note: Use SDFix under supervision. |
| Games toolbar | X | rundll32.exe,[path],tbGame.dll",DllShowTB | Topconverting.com/180Search "Games Toolbar" adware |
| Greetings Workshop Reminders | N | GWREMIND.EXE | You really want to be reminded about somebody's birthday at the expense of resources? |
| Gateway Extended Warranty | N | GWCares.exe | Related to Gateway_Extended_Warranty_Reminder Note: located in C:\Program Files\Gateway\GWCares\ |
| Graphic Update | X | openglx.exe | Identified as Backdoor.Win32.IRCBot.ako MSN Worm! Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision. |
| GlobalSCAPE | X | (filename.exe) | Added by the W32/Rbot-AYM WORM! |
| Gmouse | Y | Gmouse.exe | Amouse mouse driver - required if you use non-standard Windows driver features |
| G4G | X | ghg8aw3lo.exe | Detected as Trojan-Downloader.Win32.VB.fki Note: located in \%WINDIR%\ Note: The filename is random. |
| Guardian PC Security Tools | U | Pfft.exe | Related to PeerGuardian PC Security Tools. An Open Source Program. Note: located in C:\Program Files\Boomerang Software\Guardian PC Security Tools\ |
| Google Updater | N | GoogleUpdater.exe | Downloads and installs updates for Google applications (Google Earth, Google Desktop, etc.) Note: Located in \%Program Files%\Google\Google Updater\ |
| Gestionnaire de disques universel | X | sysoobe.exe | Added by the Troj/Toader-A
TROJAN!
Note: This trojan file is found in the System\oobe (95/98/Me) or System32\oobe (Nt/2000/XP) folder.
|
| Google Desktop | U | GoogleDesktop.exe | Google Desktop Search - "a desktop search application that provides full text search over your email, computer files, chats, and the web pages you've viewed. By making your computer searchable, Google Desktop Search puts your information easily within your reach and frees you from having to manually organize your files, emails, and bookmarks"
|
| GoBack Polling Service | U | GBPoll.exe | Roxio's (nee Adaptec) GoBack software which allows you to revert back to a previously working state on you hard drive if you install a new program and your system goes faulty - performing the same functions with extra features as System Restore on WinMe/XP systems. Disable before running Scandisk or Defrag. Not required for WinMe/XP users, recommended for Win9x/NT/2K users
|
| Generic Host Process for Win32 Services | X | winlogon.exe | Added by a variant of the IRCBOT Note: Located in \%WINDIR%\System\ Note: Use SDFix under supervision. Not to be confused by the original file in \%WINDIR%\System32\ folder. |
| GARO Status Monitor | Y | cnwism.exe | Related to Canon Large Format Printer. Software utility that monitors the status of the printer and manages print jobs. Note: Located in C:\Program Files\Canon\GAROStatusMonitor\ |
| GisdnLog | ? | gisdnlog.exe | BT Digital Access USB |
| Gnetmous | U | gnetmous.exe | .htm" target="_blank">Genius NetScroll mouse driver - required if you use non-standard Windows driver features |