services.exe
Trojan.W32.Sober
Warning! Potential Security Hazard!
System process services.exe is reported as a virus and a trojan!
There are 4 processes with name “services.exe”
• services.exe – Trojan.W32.Rontokbr
• services.exe – Trojan.W32.Secefa
• services.exe – Trojan.W32.Sober
• services.exe – Windows Services and Controller app
Brief description of process services.exe
services.exe
Additional information about services.exe
Reported as a virus
Yes, it is a virus!
Reported as a trojan horse
Yes, it is a trojan!
Reported as a spyware
No
Safe to end the process
Information isn't available
Safe to disable the process
Information isn't available
Safe to remove the process
Information isn't available
Developer
Part of
Trojan.W32.Sober
Related news
Showing news related to process “services.exe”
April 15, 2009 11:17:00 AM CEST
Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to ensure that the Trojan is launched automatically when the system is rebooted, the Trojan adds a link...
April 15, 2009 10:17:00 AM CEST
Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to...
September 28, 2009 1:21:14 PM CEST
Trojan Downloader.Agent.UZM – A new Trojan Downloader was spammed today. Trojan is attached in zip archive to emails in HTML format with subject "Hot game" and body text that claims some Angelina Jolie or Lara Croft undressing game. xgame.zip attachment contains xgame.exe (20992B) which drops executes and deletes kernel driver C:\WINDOWS\System32\drivers\runtime.sys and downloads another downloader smartdrv.exe. runtime.sys runs injects and hides Iexplore.exe process and downloads another components. xgame.exe is detected as Trojan Downloader.Agent.UZM, smartdrv.exe is detected as Trojan Downloader.Agent.UZN, runtime.sys is detected as Trojan Downloader.Agent.THW and other downloaded components are detected as several variants of Trojan Backdoor.Ntrootkit.
September 25, 2009 1:51:00 PM CEST
Backdoor.Win32.Clampi.a – This Trojan spy program is designed to steal confidential user data and remotely manage the victim machine. It is a Windows PE EXE file. It is 470 bytes in size. Installation When launched, the Trojan creates the following file: %AppData%\.exe
May 21, 2010 3:07:59 AM CEST
Email-Worm:W32/Sober – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.
July 27, 2010 3:08:01 AM CEST
Email-Worm:W32/Sober.D – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.
July 27, 2010 3:08:01 AM CEST
Email-Worm:W32/Sober.Q – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.
July 27, 2010 3:08:01 AM CEST
Email-Worm:W32/Sober.F – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.
July 27, 2010 3:08:01 AM CEST
Email-Worm:W32/Sober.P – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.
August 21, 2010 3:08:41 AM CEST
Email-Worm:W32/Sober.T – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

