[filename.info logo]
[cn services.exe][de services.exe][es services.exe][fr services.exe][gb services.exe][it services.exe][jp services.exe][kr services.exe][nl services.exe][pt services.exe][ru services.exe][us services.exe]
 

services.exe (5.1.2600.0)

Содержали в средстве программирования

Имя:Windows XP Home Edition, Deutsch
Лицензия:коммерчески
Соединение информации:http://www.microsoft.com/windowsxp/

Детали архива

Курс архива:C:\WINDOWS\system32 \ services.exe
Дата архива:2002-08-29 14:00:00
Вариант:5.1.2600.0
Размер архива:101.888 байты

Hashes checksum и архива

CRC32:59F4EF56
MD5:A87C 3A6B 407F B3B2 2C56 6315 607C E229
SHA1:9ECF 5BAC 16A2 F63E 0141 7565 E5CC D065 2845 4A2F

Данные по ресурса варианта

Имя компании:Microsoft Corporation
Описание архива:Anwendung fr Dienste und Controller
Оперативная система архива:Windows NT, Windows 2000, Windows XP, Windows 2003
Тип архива:Application
Вариант архива:5.1.2600.0
Внутренне имя:services.exe
Законное авторское право: Microsoft Corporation. Alle Rechte vorbehalten.
Первоначально filename:services.exe
Имя продукта:Betriebssystem Microsoft Windows
Вариант продукта:5.1.2600.0

services.exe было найдено в following рапортах:

Adware.Replace

Технически детали
...1.01.00.dll Services.exe When Adware.Replace is executed,...
...Creates the following files: %System%ServicesServices.exe 1.01.00.dll...
..."xpsystem"="%system%ServicesServices.exe" in the registry key:...
...in the [windows] section: run=%system%ServicesServices.exe load=%system%ServicesServices.exe...
...[windows] run=%system%ServicesServices.exe load=%system%ServicesServices.exe...
Инструкции удаления
..."xpsystem"="%system%ServicesServices.exe" Exit the Registry Editor....
...look for a line similar to: run=%system%ServicesServices.exe load=%system%ServicesServices.exe...
...[windows] run=%system%ServicesServices.exe load=%system%ServicesServices.exe...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/adware.replace.html

Adware.Clickbank

Технически детали
...File names: Services.exe When Adware.Clickbank is run,...
...Copies itself as %Windir%system32inetsrvServices.exe. Note: %Windir% is a variable....
..."SuperBar.Component" = %windir%system32inetsrvservices.exe "AdRotator.Application"...
..."{357AA41A-B7A8-4632-A27D-5B980B25CF43}" = %windir%system32inetsrvservices.exe to the registry key:...
Инструкции удаления
..."SuperBar.Component" = %windir%system32inetsrvservices.exe "AdRotator.Application"...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/adware.clickbank.html

W32.HLLW.Kazping

Технически детали
...Copies itself as %Windir%Services.exe NOTE: %Windir% is a variable....
...Adds the value: "Services.EXE"="%windir%services.exe"...
...HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersion RunServices Copies itself to the following...
Рекомендации
...Turn off and remove unneeded services. By default, many operating...
...telnet, and a Web server. These services are avenues of attack. If they are removed, blended...
...If a blended threat exploits one or more network services, disable, or block access to, those services until a patch is applied....
...Always keep your patch levels up-to-date, especially on computers that host public services and are accessible through the firewall, such as HTTP, FTP, mail, and DNS services....
Инструкции удаления
...the worm runs as>" "Services.EXE"="%windir%services.exe"...
...HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersion RunServices In the right pane, delete...
...the value: "Services.EXE"="%windir%services.exe"...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.kazping.html

W32.Neveg.B@mm

Технически детали
...Copies itself as %Windir%systemservices.exe. Note: %Windir% is a variable...
...".Prog" = "%Windir%systemservices.exe" "BuildLab" = "%Windir%systemservices.exe"...
..."ccApps" = "%Windir%systemservices.exe" "FriendlyTypeName"...
..."Microsoft Visual SourceSafe" = "%Windir%systemservices.exe" "RegDone" = "%Windir%systemservices.exe"...
..."TEXTCONV" = "%Windir%systemservices.exe" "WMAudio" = "%Windir%systemservices.exe"...
Рекомендации
...Turn off and remove unneeded services. By default, many operating...
...telnet, and a Web server. These services are avenues of attack. If they are removed, blended...
...If a blended threat exploits one or more network services, disable, or block access to, those services until a patch is applied....
...Always keep your patch levels up-to-date, especially on computers that host public services and are accessible through the firewall, such as HTTP, FTP, mail, and DNS services....
Инструкции удаления
...".Prog" = "%Windir%systemservices.exe" "BuildLab" = "%Windir%systemservices.exe"...
..."ccApps" = "%Windir%systemservices.exe" "FriendlyTypeName"...
..."Microsoft Visual SourceSafe" = "%Windir%systemservices.exe" "RegDone" = "%Windir%systemservices.exe"...
..."TEXTCONV" = "%Windir%systemservices.exe" "WMAudio" = "%Windir%systemservices.exe"...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/w32.neveg.b@mm.html

W32.Neveg.C@mm

Технически детали
...Copies itself as %WinDir%systemservices.exe. Note: %Windir% is a variable...
...".Prog"="%Windir%systemservices.exe" "BuildLab"= "%Windir%systemservices.exe"...
..."ccApps"="%Windir%systemservices.exe" "FriendlyTypeName"="%Windir%systemservices.exe"...
..."Microsoft Visual SourceSafe"="%Windir%systemservices.exe" "RegDone"="%Windir%systemservices.exe"...
..."TEXTCONV"="%Windir%systemservices.exe" "WMAudio"="%Windir%systemservices.exe"...
Рекомендации
...Turn off and remove unneeded services. By default, many operating...
...telnet, and a Web server. These services are avenues of attack. If they are removed, blended...
...If a blended threat exploits one or more network services, disable, or block access to, those services until a patch is applied....
...Always keep your patch levels up-to-date, especially on computers that host public services and are accessible through the firewall, such as HTTP, FTP, mail, and DNS services....
Инструкции удаления
...".Prog"="%Windir%systemservices.exe" "BuildLab"= "%Windir%systemservices.exe"...
..."ccApps"="%Windir%systemservices.exe" "FriendlyTypeName"="%Windir%systemservices.exe"...
..."Microsoft Visual SourceSafe"="%Windir%systemservices.exe" "RegDone"="%Windir%systemservices.exe"...
..."TEXTCONV"="%Windir%systemservices.exe" "WMAudio"="%Windir%systemservices.exe"...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/w32.neveg.c@mm.html

W32.XTC.Worm

Оценка угрозой
...Name of attachment: Services.exe Size of attachment:...
Рекомендации
...Turn off and remove unneeded services. By default, many operating...
...telnet, and a Web server. These services are avenues of attack. If they are removed, blended...
...If a blended threat exploits one or more network services, disable, or block access to, those services until a patch is applied....
...Always keep your patch levels up-to-date, especially on computers that host public services and are accessible through the firewall, such as HTTP, FTP, mail, and DNS services....
Инструкции удаления
... The Services.exe worm program runs as a service....
...before you can delete it. To remove Services.exe from memory In the registry, search for...
...In the Windows (Windows 9x) or WINNT (Windows NT2000) directory, delete Services.exe. Note:...
...Be careful not to remove the file c:winntsystem32services.exe (a Windows NT system file.)...
Источник: http://securityresponse.symantec.com/avcenter/venc/data/w32.xtc.worm.html

W32.Servese

Технически детали
...makes a copy of itself as: WindowsServices.exe It then adds the value...
...HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunServicesOnce It then exits....
Инструкции удаления
...If the detected file is about 23 KB in size and the name is Services.exe, just you can delete this file....
......
Источник: http://securityresponse.symantec.com/avcenter/venc/data/w32.servese.html



Valid HTML 4.01!