services exe process is abused by Trojan W32 Sober for hiding in operating system Win32 Sober is a worm that spreads via e-mail The e-mail messages can be either in English or German It has been distributed as Win32 executable file in ZIP archive Do not open any attachments…

services.exe

Trojan.W32.Sober

Warning! Potential Security Hazard!

System process services.exe is reported as a virus and a trojan!

There are 4 processes with name “services.exe”

services.exe – Trojan.W32.Rontokbr

services.exe – Trojan.W32.Secefa

services.exe – Trojan.W32.Sober

services.exe – Windows Services and Controller app

process status • safe • malicious • unknown

Brief description of process services.exe

Process services.exe named “Trojan.W32.Sober” is malicious executable file of Trojan.W32.Sober software. Process services.exe is reported as a virus and trojan horse. This version of services.exe is very dangerous and should be removed from computer immediately.

services.exe

Additional information about services.exe

services.exe process is abused by Trojan.W32.Sober for hiding in operating system. Win32.Sober is a worm that spreads via e-mail. The e-mail messages can be either in English or German. It has been distributed as Win32 executable file in ZIP archive. Do not open any attachments in unknown e-mail messages and check them by antivirus software.

Reported as a virus

Yes, it is a virus!

Reported as a trojan horse

Yes, it is a trojan!

Reported as a spyware

No

Safe to end the process

Information isn't available

Safe to disable the process

Information isn't available

Safe to remove the process

Information isn't available

Developer

Information isn't available

Part of

Trojan.W32.Sober

Share |
 

Previous process
services.exe

Next process
services.exe

 
 
 

Related news

Showing news related to process “services.exe”

April 15, 2009 11:17:00 AM CEST

Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to ensure that the Trojan is launched automatically when the system is rebooted, the Trojan adds a link...

 

April 15, 2009 10:17:00 AM CEST

Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to...

 

September 28, 2009 1:21:14 PM CEST

Trojan Downloader.Agent.UZM – A new Trojan Downloader was spammed today. Trojan is attached in zip archive to emails in HTML format with subject "Hot game" and body text that claims some Angelina Jolie or Lara Croft undressing game. xgame.zip attachment contains xgame.exe (20992B) which drops executes and deletes kernel driver C:\WINDOWS\System32\drivers\runtime.sys and downloads another downloader smartdrv.exe. runtime.sys runs injects and hides Iexplore.exe process and downloads another components. xgame.exe is detected as Trojan Downloader.Agent.UZM, smartdrv.exe is detected as Trojan Downloader.Agent.UZN, runtime.sys is detected as Trojan Downloader.Agent.THW and other downloaded components are detected as several variants of Trojan Backdoor.Ntrootkit.

 

September 25, 2009 1:51:00 PM CEST

Backdoor.Win32.Clampi.a – This Trojan spy program is designed to steal confidential user data and remotely manage the victim machine. It is a Windows PE EXE file. It is 470 bytes in size. Installation When launched, the Trojan creates the following file: %AppData%\.exe

 

May 21, 2010 3:07:59 AM CEST

Email-Worm:W32/Sober – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 

July 27, 2010 3:08:01 AM CEST

Email-Worm:W32/Sober.D – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 

July 27, 2010 3:08:01 AM CEST

Email-Worm:W32/Sober.Q – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 

July 27, 2010 3:08:01 AM CEST

Email-Worm:W32/Sober.F – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 

July 27, 2010 3:08:01 AM CEST

Email-Worm:W32/Sober.P – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 

August 21, 2010 3:08:41 AM CEST

Email-Worm:W32/Sober.T – A worm that spreads via e-mail, usually in infected executable e-mail file attachments.

 
 
 

Navigate through library of processes alphabeticaly by first letter: