Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

HijackThis automated log analyzer! Get your logs analyzed INSTANTLY!

Key:

  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown
Startup Name Process Name Details
X ff svhost32.exe"Added by the LINEAG-AFF TROJAN!"
X ffeqfqs dqddss.exe"Added by the SDBOT-SG WORM!"
X ffeqOME vcvsav.exe"Added by the RANKY.AB TROJAN!"
X ffis ffisearch.exe"iSearch adware"
Y ffprsrv ffprsrv.exe"File and Folder Privacy - is a ""system security utility you can use to password-protect or hide your files and folders with a click of mouse. The program will always prompt to enter your access password when protection is enabled and a user is trying to access a protected file or folder"". If this entry is disabled
Y ffprsrv.exe ffprsrv.exe"File and Folder Privacy - is a ""system security utility you can use to password-protect or hide your files and folders with a click of mouse. The program will always prompt to enter your access password when protection is enabled and a user is trying to access a protected file or folder"". If this entry is disabled
Y ffpsrv ffpsrv.exe"File & Folder Protector - ""great easy-to-use password-protected security utility lets you password-protect certain files and folders
Y ffpsrv.exe ffpsrv.exe"File & Folder Protector - ""great easy-to-use password-protected security utility lets you password-protect certain files and folders
U FG1_00 frntgate.exe"FrontGate MX - e-mail spam blocker"
? fgl23DoubleScreenHooks f23happ.exe"Related to the now discontinued ATI Fire GL3 graphics card. What does it do and is it required?"
X fGQEGqHOME gwwgtp.exe"Added by the RANKY.J TROJAN!"
X FHPage shdochp.exe"Added by the WINHOUND TROJAN!"
X FHStart shdocsvc.exe"Added by the WINHOUND TROJAN!"
U Fhtisxk fhtisxk.exeXtraKeys keystroke logger/monitoring program - remove unless you installed it yourself!
X Fhzepgyi HELLRAIDER.EXE"Added by the MINDCTRL.A BACKDOOR!"
U FieldForms Sync SyncService.exe"Resco FieldForms. A solution for building of mobile forms that can be viewed or filled in on the run
X FiendlyType csrss.exe"Added by the WEBUS TROJAN! Note - this is not the legitimate csrss.exe process which should not normally figure in Msconfig/Startup!"
X FILE abcdefg.exe"Added by the KELVIR.DD WORM!"
? file indexing service msfindfile.exe"New version of MS FindFast and still a resource hog?"
X file laoder configuration rnd32.exe"Added by the RBOT.BQJ WORM!"
X File Mapping Services hp-1003.exe"Added by the RBOT.FAN WORM!"
X File Protection Monitor filemon.exe"Added by a variant of the RBOT WORM!"
X File System taskmqrs.exe"Added by a variant of the TOXBOT/CODBOT WORM!"
X File System taskmqr.exe"Added by the RBOT.BWQ WORM!"
X File System Service wmiprvsc.exe"Added by the AGOBOT-HZ TROJAN!"
X File-Sharing Wizard shwizard.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X File0_0 MD1.exe"Added by the DLOADER-OR TROJAN!"
X File1 Dia Claro.htm"Added by the DLOADER-OR TROJAN!"
X FileFreedom_Plugin wtm.exe"FileFreedom peer-to-peer sharing program"
N filehippo.com UpdateChecker.exe"Checks for new releases available in the popular FileHippo.com repository for any software you may already have installed on your computer. Run manually when required"
N FileHippo.com Update Checker UpdateChecker.exe"Checks for new releases available in the popular FileHippo.com repository for any software you may already have installed on your computer. Run manually when required"
X FileManager32 Wscript.exe ChkMgr32.vbs"Added by the NOTUP.A WORM! Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted. The ""ChkMgr32.vbs"" file is located in %System%"
X filen filen.exe"Added by the VBNAM-A WORM!"
X filename filename.exe"Added by the VB.FSY TROJAN!"
X filename process kerneldll.exe"Added by the AGOBOT-PO WORM!"
X filename process explore.exe"Added by the AGOBOT-QN WORM!"
X filename process Rundil16.exe"Added by the GAOBOT.ZX WORM!"
X Files Driver sdphost.exe"Added by the SDBOT-DKZ WORM!"
X Files Driver sfdhost.exe"Added by the AGOBOT-AJC BACKDOOR!"
X FileSoft Wscript.exe UpdataFiles.vbs"Added by the SST.B WORM! Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted. The ""UpdataFiles.vbs"" file is located in %Windir%"
U FilmLoop FilmLoopService.exe"Related to FilmLoop - a photocasting network. Share your pictures with your family and friends"
U FilterGate filtergate.exe"Filtergate internet filtering software - filters sounds
U Filterguard Filtrgrd.exe"An icon located in the lower left of the screen and looks like a lifesaver. This icon is a ""short-cut"" to access the basic features of SOS-Guardian
X FilterProgram GDC.exe"FilterProgram rogue privacy tool - not recommended
X Find find.exe"Added by the OPANKI WORM!"
N Find Fast Findfast.exeFrom older versions of MS Office - searches disk drives for Office file types and creates an index to make opening them easier. When indexing is in progress it can use lots of CPU time and memory - especially on slower/older machines
Y Find Virus Launch Program fvlaunch.exe"Part of Dr. Solomon's Antivirus"
X findfast findfast.exe"Added by the DLOADER.PFR TROJAN! Note - the is not the legitimate file of the same name installed with older versions of MS Office"
X findfast.exe findfast.exeIdentified as the RUNDIS.A TROJAN! Note - the is not the legitimate file of the same name installed with older versions of MS Office
X FindHack [path to worm]"Added by the KELVIR-BA WORM!"
U FinePrint Dispatcher v4 fpdisp4a.exe"FinePrint Dispatcher - handles the spooling of print jobs to the FinePrint printer. Version 4.x of the software. ""FinePrint saves ink
U FinePrint Dispatcher v4 fpdisp4.exe"FinePrint Dispatcher - handles the spooling of print jobs to the FinePrint printer. Version 4.x of the software. ""FinePrint saves ink
U FinePrint Dispatcher v5 fpdisp5a.exe"FinePrint Dispatcher - handles the spooling of print jobs to the FinePrint printer. Version 5.x of the software. ""FinePrint saves ink
N FineReader7NewsReaderPro AbbyyNewsReader.exe"ABBYY FineReader OCR software - version 7"
U FingerPrintSoftware fpapp.exeSupports the fingerprint reader on selected IBM/Lenovo Thinkpad notebooks
X Fire Wall services [random filename]"Added by the IRCBOT-QY WORM!"
X Fire Wall services wnlmzsfhobi.exe"Added by the IRCBOT-QY WORM!"
X Fire Well service [random].exe"Added by the RBOT-FJU WORM!"
? FireBox Control Panel FireBox.exe"Control panel for the Presonus FireBox firewire based music recording system. Is it required?"
X FireExplore Update FireExplore.exe"Added by a variant of the RBOT WORM!"
X FireFox firefox.exe"Added by the RBOT-ATP WORM! Note - this is not the popular FireFox web browser and is located in %System%"
X Firefox Plugin Manager firefoxpgm.exeAdded by the MSNPHOTO.E WORM!
U Firefox Preloader FirefoxPreloader.exe"Firefox Preloader - ""a utility that is designed to load parts of Mozilla Firefox into memory before it is used to improve the its startup time"". Even on fast machines Firefox can take a while to load"
X FireFox Service Drivers ssmss.exe"Added by a variant of the SDBOT WORM!"
X FireFox Startup Drivers wuaclt.exe"Added by the RBOT.BYX WORM!"
X firefox.exe firefox.exe"Added by the BANKER-EBO TROJAN! Note - this is not the popular FireFox web browser and is located in %System%"
Y FirePod FIREPOD.EXE"Driver for the PreSonus FP10 (formerly FirePod) Firewire recording system"
X FiresWallservices [random].exe"Added by the RBOT-FJT WORM!"
X Firevall Administrating rndll.exe"Added by the PUSHBOT-B WORM!"
X firewal firewal.exe"Added by the BANCBAN-QY TROJAN!"
X Firewall wmlaunch .exe"Added by the ELIPTER.A or ELIPTER.B WORMS! Note the space at the beginning of the filename"
X Firewall wmlaunch .exe"Added by the ELIPTER.D WORM!"
X Firewall SP2 UPDATE.exe"Added by the ELITPER.E WORM!"
X Firewall Firewall.bat"Added by the YPSAN.G WORM!"
X firewall fw_304.exe"Added by the BDOOR-JQ BACKDOOR!"
X Firewall ctfmon.exe"Added by a variant of the IRCBOT BACKDOOR! Note - this is not the legitimate ctfmon.exe process associated with alternate text inputs which is always located in %System%. This one is located in %Windir%"
X firewall spoolsv.exe"Added by the DIZAN.F VIRUS!"
X firewall firewall.exe"Added by the SURO-A TROJAN!"
X firewall 2008 logoneui.exe"Added by the SILLYFDC WORM!"
X Firewall Administrating infocard.exe"Added by the AUTORUN-AYV WORM! Note - this is not the valid InfoCard Service which is part of the .NET Framework from Microsoft and uses the same filename"
X Firewall auto setup winlogon.exe"Added by the AGENT-EDB TROJAN! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Temp%"
X Firewall auto setup [path to trojan]"Added by the AGENT-GLY TROJAN!"
X Firewall config ReadMe.exe"Added by the SILLYFDC.BBT WORM!"
X Firewall Controls sys32.exe"Added by the SDBOT-DGI WORM!"
X Firewall Policy MidiDef32.exe"Added by the PIEBOT-A TROJAN!"
X Firewall Sp2 system sys32Conf.exe"Added by the RBOT-ABT WORM!"
X Firewall Update System1 WinedowsUpdater1.exe"Added by the RBOT-ARU WORM!"
X Firewall Updater msnupdateit.exe"Added by the RBOT-AAQ WORM!"
X Firewall.exe Firewall.exe"Added by the AGENT.AGL BACKDOOR! Located in %System%"
Y FireWall.exe FireWall.exe"Ashampoo® Firewall PRO and Ashampoo® Firewall FREE from Ashampoo GmbH & Co. KG. Located in an Ashampoo related sub-directory of %ProgramFiles%"
X FirewallActivies csrss.exe"Added by the BANKER-AQ TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a ""3041"" subfolder"
Y FirewallGUI FirewallGUI.exe"System Tray access to PC Tools Firewall Plus from PC Tools - which ""is a powerful personal firewall for Windows that protects your computer from intruders and controls the network traffic in and out of your PC"""
U FirewallStartup Firewallstartup.exe"Innovative Startup Firewall - ""designed to protect your computer from programs that install themselves in the StartUp area of your Windows without asking for your approval. Innovative StartUp Firewall will help you keep your computer clean
X FirewallSvr FirewallSvr.exe"Added by the NETSKY.X or NETSKY.Y WORMS!"
X firewall_anti firewall_anti.exe"Added by the NETDENY-B TROJAN!"
X FireWire Driver samx.exe"Added by the SDBOT.AE WORM!"
X FireWire Service nvscv32.exe"Added by a variant of the SDBOT WORM!"
X FireWire Services nvcsv32.exe"Added by a variant of the SPYBOT WORM!"
X First Home Page http://find.naupoint.com"Naupoint browser hijacker"
? First Principle Group fpg.exe"Related to the E-Players Card from First Principle Group"
X FIX WinFIX1.0.vbs"Added by the GORMLEZ-A WORM!"
X Fix Tool Fix-Tool.exe"Fix Tool rogue system error and cleaning utility - not recommended"
Y Fix-it mxtask.exe"Part of Ontrack's Fix-it Utilities Suite. Loads a System Tray icon that lets you access the full program. Needed if you run the crash guard
Y Fix-it AV memcheck.exePart of Ontrack's Fix-it Utilities Suite anti-virus. Performs a quick check of memory for signs of any virus. Exits afterward and returns all resources used in one user's experience. Not required but could be left without a drain on resources
X Fixnice vcvw.exe"Added by the SDBOT TROJAN!"
X fjdslssdfd mat2.exe"Added by the SLAPEW.C TROJAN!"
U FjMenu FjMenu.exe"From the ""Fujitsu Menu"" tray icon you have instant access to the Control Panel
U FJTWAIN Setup FjtwSetup.exeFujitsu scanner utility
N FJUPDNV_Chitose fjdvrupd.exeDriver update for a Fujitsu Siemens Lifebook laptop
X FKS v2.0 msngr.exeAdded by an unidentified WORM or TROJAN!
N fkSysMon fksysmon.exe"fkWrae SysMon - system monitor - ""displays the current memory consumption
X FlaCPY flacpy.exe"FlashEnhancer adware"
X Flash Driver [path to trojan]"Added by the AGENT.CWVT TROJAN!"
X Flash Media %%%%%.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X Flash Media %%%.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X Flash Media [path to trojan]"Added by the IRCBOT.AUR TROJAN!"
X Flash Media ^ ^^^ %% % ^% ^%%^ %^ .exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media ^^% ^ %%% %^%%%^%%^%^% % ^^%% % %^^^^ ^%%^%% .exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media ^^^^^.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X Flash Media ^^^^^^.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X Flash Media services.exe"Added by a variant of the IRCBOT BACKDOOR! See here. Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Temp%"
X Flash Media zrpk��'�'%''msn'�%'fix''.exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media % ^% ^^^ %^% %% ^ ^ %%% ^% %^ % %^^.exe"Added by a variant of the IRCBOT BACKDOOR! Note the space at the beginning of the filename"
X Flash Media ^%%^%%%^% %^ ^ .exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media %^^%^^% %^^^^ .exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media ^%^^^%% ^ ^ %^^^^^ %^ ^%^^ ^%^^^^^ %^ ^^^%^%%.exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media %^% ^ %^%% ^ % ^%%^^ %^^%^%^ ^%% %^.exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media %%%%%%^^ ^ .exe"Added by a variant of the IRCBOT BACKDOOR!"
X Flash Media skxs��'�'%''msn'�%'fix''.exe"Added by the AGENT.ZOY TROJAN!"
X Flash Media ^ %%^%^%.exe"Added by the FLUSH.A TROJAN! Note the space at the beginning of the filename"
X Flash Media %% % ^^ % %% ^%^^ ^^^ % ^%% ^ ^.exe"Added by a variant of the IRCBOT BACKDOOR! See here. Note the space at the beginning of the filename"
X Flash Media ^ ^ % ^ % % ^ ^ ^%% ^% %%^^.exe"Added by the IRCBOT.BAW BACKDOOR!"
X Flash Player2 [path to worm]"Added by the IRCBOT.PD WORM!"
? FLASH32 #NAME?"??"
X Flash32 FLASH32.COM"Added by the STARTER-F TROJAN!"
U FlashEnc FlashEnc.exe"Supplied with EasyDisk USB pen devices. The utility manages the encryption and compressed folders options. It will create these folders if running on the USB key without permission
N Flashget FlashGet.exe"FlashGet download manager"
X Flashget Download Manager Flashget.exe"Added by the RBOT-AGZ WORM!"
X FlashGuard FlashGuard.exe"Added by the AUTOIT.AL WORM!"
U FlashMute FlashMute.exe"""FlashMute is a tool which allows you to mute/unmute Flash Movies loaded in a browser exclusively
N FlashPath Monitor SDSTAT.EXESystem Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia cards. Available via Start -> Programs
N FlashPath Monitor FLSHSTAT.EXESystem Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia cards. Available via Start -> Programs
N FlashPath Status SDSTAT.EXESystem Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia cards. Available via Start -> Programs
N FlashPath Status FLSHSTAT.EXESystem Tray icon that you can't get rid of - and does not need to run!. Tells you the battery status in the floppy disk adapter for the smartmedia cards. Available via Start -> Programs
X Flashy Bot Flashy.exe"Added by the GLUPZY.A WORM!"
X Flash_Player_Install ying.exe"Constructor VC2000 malware"
X FlenCPY flencpy.exe"FlashEnhancer adware"
U Flexicd Flexicd.exe"CD player - part of the Win95 Power Toys"
U FlingRun fling.exe"Fling - free FTP software from NCH Software"
U FLMBROWSERMOUSE mouse32A.exeMouse utility for a Trust brand (and possibly others) mouse. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
U FLMK08KB MMKEYBD.EXEMultimedia keyboard manager. Required if you use the additional keys
U FLMK08KB KbdAp32A.exeKeyboard utility for a Medion brand (and possibly others) keyboard. If you disable this entry you will not be able to use any of the keyboard hotkeys or other non-standard functions on the keyboard
U FLMLABTECMOUSE mouse32A.exeMouse utility for a Labtec brand (and possibly others) mouse. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
U FLMMEDIONMOUSE mouse32a.exeMouse utility for a Medion branded Fellowes mouse
U FLMOFFICE4DMOUSE moffice.exeMouse utility for a Labtec brand (and possibly others) mouse. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
U FLMOFFICE4DMOUSE mouse32a.exeMouse utility for a Micro Innovations brand (and possibly others) mouse. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
U FLMTRUSTKB KbdAp32A.exeKeyboard utility for a Trust brand keyboard. If you disable this entry you will not be able to use any of the keyboard hotkeys or other non-standard functions on the keyboard
U FLMTRUSTMOUSE mouse32a.exeMouse utility for a Trust brand (and possibly others) mouse. If you disable this entry you will not be able to use any of the non-standard functions of the mouse
X FlnCPY flncpy.exe"FlashEnhancer adware"
X FLooDNeT FLooDeR.exe"Added by the ENDOOL TROJAN!"
X Floppy Master [path to trojan]"Added by the ZONIT-F TROJAN!"
? Flow Go TV flogotv.exe"??"
X flps flps.vbs"Added by the BYRON WORM!"
X flpycntl flpycntl.exe"Added by the CRYPTER.C TROJAN!"
? FLSVCI FLSVCI.exe"??"
Y FltProcess msinet.exe"Part of Cyber Patrol internet filtering software to restrict access to certain types of material on the internet. It can be disabled but do not ask how it's done"
X FlyswatDesktop flydesk.exeAdvertising spyware
U FmctrlTray Fmctrl.EXEGenius SM-Live Control Panel. Enhances audio output through Genius sound cards (makes a big difference and worth the 3MB Ram used)
X fmnwebassist fmnwebassist.exeAdware popup generator
U FMStart Fmstart.exe"GFI FAXmaker - native fax connector for Microsoft Exchange Server or for networks
X FMSZ fmsz.exe"Added by the FMSZ TROJAN!"
X fnmwebassist fnmwebassist.exe"WinPL adware"
? Focus Focus.exe"ISDN configuration wizard?"
X foffice nm.exe"Added by the DELF-CB TROJAN!"
X Folder Service wssdtu.exe"Added by the MANIFEST TROJAN!"
U Folder View folderview.exe"Folder View enhances the Windows file Explorer by making all folders you need available in a single click"
U FolderClone v*.*.* folderclone.exe"Folderclone backup and synchronization software"
X FolderRaper [path to worm]"Added by the VB.GOZ WORM!"
U FolderShare FolderShare.exe"""FolderShare allows you to create a private peer-to-peer network that will help you to synchronize files across multiple devices and access or share files with colleagues and friends"""
N Folding@home WINFAH.EXE"Folding@Home is a distributed computing project which studies protein folding
N FoneSyncSystemTray FoneSyncSystemTray.exeSystem Tray icon for Nokia FoneSync utility for the 7160/7190 mobiles. Useful to send data from/to the cell phone and the computer. You can use it to backup data or even to input data through the computer keyboard (which naturally is much more comfortable). Run manually when required
X Font boot.exe"Added by the AGENT-LZW TROJAN!"
X Font Viewer fontviewer.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X FontFix fontfix.exe"Added by an unidentified VIRUS
N fontnav FontNav.exe"Font Navigator from Bitstream Inc. - a font management utility"
X FontsLoader ldfnt32.htaUnidentified malware
X FONTVIEW FONTVIEW.EXE"Added by the OPASERV.T WORM!"
U FooBar 1.0 FooBar.exe"FooBar - ""combines fifteen high-quality productivity tools in a single toolbar that floats on your desktop or runs in the Windows task bar"""
X foobin lptt01 adaware.exe"RapidBlaster variant (in a ""foo1"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
X foobin ml097e adaware.exe"RapidBlaster variant (in a ""foo1"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
X fool fool.exe"Added by the SILLYFDC.BCV WORM!"
Y FoolProof fpwinldr.exe"FoolProof Security PC security software from SmartStuff"
Y FoolProofSweep ??"Part of FoolProof Security PC security software from SmartStuff"
N Forbes ForbesAlerts.exeForbes Business News Alerts - displays business news headlines in a little window on the screen
X ForceShow "rundll32.exe QaBar.dllForceShowBar"
N Forget Me Not AGRemind.exe"Calendar reminder part of Broderbund's American Greetings® CreataCard®"
U forteManager dthtml.exe"forteManager from LG. Rebranded version of Display Tune from Portrait Displays
Y FortiClient FortiClient.exe"Fortinet security systems are the new generation of real time network protection systems"
U Fortis Secure Layer Config cseinst.exeFortis Bank Home Banking part. Installed during the installation of the software necessary to run the Home Banking. According to Fortis Bank this will not in any way be harmful to the system or relay system information
X fotos fotos.exe"Added by the BANKER-FP TROJAN!"
N FotoStation Easy AutoLaunch FotoStation Easy AutoLaunch.exeInstalled with a Nikon digital camera. Used to collect photos uploaded from camera program NkVwMon.exe. If your camera is not connected (via USB port) you do not need this program loaded either
U Foul PX FoulPX.exe"Foul PX
U FourthDay FourthDay.exe"The Fourth Day - ""astronomical clock and almanac for your system tray"""
X FoWilCo fowilco.exe"Added by the WOOTBOT.CR WORM!"
X foxdh foxdhend.exe"Added by the MENGHUAN TROJAN!"
X foxdh foxdh.exe"Added by the GWGHOST-Q TROJAN!"
X foxrxjh foxrxjh.exe"Added by the GWGHOST-T TROJAN!"
X foxwudy9912 service.exe"Added by the BANCOS-BT TROJAN!"
Y FP Loader loadfp.exe"FoolProof Security - PC security software from SmartStuff"
N fpassist fpassist.exe"Part of FreePDF (was FreePDF XP) - a utility used to create Adobe compatible PDF files from virtually any Windows application. This executable needs to be running when you want to send a printer output to a PDF file via the FreePDF virtual printer"
? FPWGMWZD FPWGMWZD.exe"??"
N Fpx mnmsrvc.exeRemote Desktop Sharing service part of Microsoft's Netmeeting allowing users to share items on their screens across remote locations
X fqor stub_113_4_0_4_0.exe"TargetSaver adware"
X FrameWork 2.5 FrameWork.exe"Added by the RBOT-FMW WORM! Note - can terminate AV related processes"
X Framework module library infocard.exe"Added by the BUZUS.AYX TROJAN!"
X Framework Windows frmwrk32.exe"Added by the FAKEAV-KS TROJAN!"

DISCLAIMER: It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. I will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try WinTasks 5 Standard/Professional from LIUtilities or the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.

Powered By Pac's Startup list