Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

HijackThis automated log analyzer! Get your logs analyzed INSTANTLY!

Key:

  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown
Startup Name Process Name Details
X icdd7ee6 "rundll32.exe icdd7ee6.dllEnableRunDLL32"
X icddefff "rundll32.exe icddefff.dllEnableRunDLL32"
Y ICF mfp.exe"McAfee Family Protection - which 'is easy-to-use and built to empower parents to say ""yes"" to their children's online interests while protecting them as they learn and explore' and ""protects children of all ages from exposure to inappropriate content
N ICH Synth eusexe.exe"Sound related and can be disabled without affecting performance although advanced sound features may be sacrificed. May be related to Compaq PC's with "SoundMAX integrated Digital Audio" (Analog Devices Inc.) devices"
X icifati yujixit.exe"Added by the SDBOT.ZZH WORM!"
U iClean iClean.exe"IEClean - ""advanced
U ICM ICM.EXE"Starts Internet Call Manager dialog box and/or taskbar icons at bootup. This is a subscription program from internetcallmanager.com that monitors a dialup phone line for incoming calls and handles voicemail"
X ICManagement msic32.exe"Added by the MSIC BACKDOOR!"
N iCn NAG.EXE"iChoose - shopping browser enhancement that alerts you to cheaper deals for goods you want to buy
U ICO ICO.EXE"Found on some Sony Vaio
N Icon Animation HDE.EXEPart of McAfee Nuts & Bolts. Provides entertaining animation of your desktop icons
N Icon Hearit 95 hearit95.exeAudio desktop customization utility from Moon Valley Software. Resource hog
N Icon Hearit 98 hearit98.exeAudio desktop customization utility from Moon Valley Software. Resource hog
X Icon lptt01 icon.exe"RapidBlaster variant (in a ""Icon"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
X Icon ml097e icon.exe"RapidBlaster variant (in a ""Icon"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
Y iconcache icon.bat"Related to the Vista Customization Pack"
Y ICONCLNT iconclnt.exe"APC PowerChute® Personal Edition tray icon"
U ICONDESK ICONDESK.EXESmall utility which will allow you the option of hiding or showing your desktop icons
N Iconfig.exe Iconfig.exeIcon for LS-120 "Superdisk"
X iConfigLoader DIIhost.exe"Added by the GAOBOT.AO WORM!"
N Iconoid Iconoid.exe"Iconoid is a desktop icon manager"
N Iconsaver Iconsaver.exe"IconSaver is a desktop icon manager"
X ICQ ICQNET.vbs"Added by the GORMLEZ-A WORM!"
X ICQ Agent icq6.exe"Added by the AGENT-FZJ TROJAN!"
X ICQ Center [path to worm]"Added by the RANDIN WORM!"
X ICQ Chat Service icqjdhs.exe"Added by a variant of the RBOT WORM!"
X ICQ Hacking Pro ICQpro.exe"Added by a variant of the NETSPY TROJAN!"
N ICQ Lite ICQLite.exe"ICQ Lite - compact version of the popular messaging program"
X icq lite scvhost.exe"Added by the AGENT-DSF TROJAN!"
X icq lite winlog.exe"Added by the IRCBOT-TJ TROJAN!"
X ICQ Lite Messenger ICQLITE.EXE"Added by an unidentified VIRUS
X ICQ Messenger 2002 ICQ2002.exe"Added by the SDBOT-ABL WORM!"
X ICQ Net winlogon.exe"Added by variants of the NETSKY WORMS! Note - this is not the legitimate winlogon.exe process which should not appear in Msconfig/Startup!"
N ICQ Plus vplus.exe"ICQ Plus is a freeware utility makes your ICQ skinnable (change the look). Available via Start -> Programs"
X IcqBeta webcamupdate.exeAdded by an unidentified TROJAN!
U ICQMonitor ICQMonitor.exe"ICQ Monitor Sniffer surveillance software for the ICQ instant messenger. Uninstall this software unless you put it there yourself"
X ICQMsn [path to trojan]"Added by the RANCK-AH TROJAN! The most common example is ""cbfks.exe"" located in %System%"
X ICQNet winlogon.exe"Added by the NETSKY-C WORM! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%"
X icrosof Avps32 Control av32.pif"Added by the RBOT-AVC WORM!"
X icrosoft Visual plscx.exe"Added by the RBOT-AYO WORM!"
X icrosoft Visual InterDevc zvslmqb.exe"Added by the RBOT-AYP WORM!"
X icrosoft Windows DLL Services Configuration poker3.exe"Added by the SDBOT-AER WORM!"
X icrosoftf Avpx Control avpx.exe"Added by the RBOT-AYN WORM!"
U ICSDCLT "rundll32.exe Icsdclt.dll ICSClient"
N ICServer Icserver.exeIntel Intercast viewer software. Gives access to selected internet pages which are broadcasted by several TV stations
Y ICSMGR ICSMGR.EXEMonitors DNS and DHCP requests for ICS (Internet Connection Sharing). Needed if you're sharing the internet on various computers
X ICU-Sucker Service32.exe"Added by the ILLNOTIFIER.D TROJAN!"
N IC_KEY_3 spvic.exe"Instant Chess related"
N ID Commander IDCom.exeCaller ID utility for identifying incoming telephone numbers
X ID8525 ID8525.exe"Added by the ID8525.A TROJAN!"
X ID8525 id85255.exe"Added by the ID8525.A TROJAN!"
? IDA IDA.EXE"Part of HP's PC Common Operating Environment (PC COE) project. Located in %ProgramFiles%\Hewlett-Packard\PC COE. What does it do and is it required?"
X IDE ide.exe"Added by the ASSASIN.F TROJAN!"
X IDE Loader IDElibr32.exe"Added by the XILON TROJAN! Related to the game ""Diablo II"""
X idecntl idecntl.exe"Added by a variant of the CRYPTER.C TROJAN!"
U iDesktop idesktop.exe"Immersion TouchWare Desktop software for devices such as the Logitech iFeel Mouse"
X idlesam [8 random letters].exe"Added by the ZHELATIN.EQ WORM!"
N IDMan IDMan.exe"Internet Download Manager - download files faster
X idmlssp [random filename]"Added by a variant of the SLAPER TROJAN!"
U IDriveE Startup IDrvieEStartup.exe"IDrive from Pro Softnet Corporation - free full featured online backup up to 2GB with the option of paying for more storage space and managing multiple accounts"
X IDTemplates IDTemplate.exe"Added by the BRONTOK-H WORM!"
N IDW Logging Tool idwlog.exeAdded with WinXP SP1. Usually only found in internal builds only to indicate the current build being used. Can cause slow network logon problems
X IE configure explorer.exe"Added by the LINEAGE-C TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually!"
U IE Doctor IEDoctor.exe"IE Doctor Toolbar - ""IE Doctor can help you to Repair IE easily
X IE Java Update iejava.exe"Added by the AGENT-HD TROJAN!"
X IE Menu Extension toolbar rundll32.exe [path] tbextn.dll DllShowTB"Topconverting.com/180Search ""IEMenuExtension"" toolbar. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted"
U IE New Window Maximizer iemaximizer.exe"IE New Window Maximizer - automatically maximize new Internet Explorer and Outlook Express windows"
X IE Runtime wini.exe"Added by the PICRATE.B WORM!"
X IE Runtimes winis.exe"Added by the RBOT-ADZ TROJAN!"
X IE**.exe [* = random char] IE**.exe [* = random char]"CoolWebSearch/HomeSearch adware - for examples
X IE**32.exe [* = random char] IE**32.exe [* = random char]"CoolWebSearch/HomeSearch adware - for examples
X IE-Bar iebar.exe"DesktopMedia adware"
X IE-Security iescan.exe"IE-Security rogue spyware remover - not recommended
X IE-Security wdscan.exe"IE-Security rogue spyware remover - not recommended
X IE6 wkstmg.exe"Added by a variant of the SDBOT WORM!"
X IE6 ssmss.exe"Added by the GAOBOT.DXO WORM!"
X IE6 porn.pif"Added by the RBOT-ATF WORM!"
X IE6 winsnt.exe"Added by the RBOT-GOV WORM!"
X IEACCESS temp532.exe"AsdPlug premium rate adult content dialer variant"
X IEACCESS surfya.exe"
X IEAgent update check iewatch.exe"Added by the BOMKA TROJAN!"
X IECache IECache.exe"Detected by Bitdefender as the DELF.OFC TROJAN! See here"
N iecheck iecheck.exe"Integrity checker for IconEdit2 icon editor. It serves for IconEdit2 internal tasks only and can be safely deleted from the system if you are running the latest version of IconEdit2"
X IECheck MSDTCs.exe"Added by the TIRBOT-D WORM!"
X IECheck xpssl.exe"Added by the TIRBOT-E WORM!"
X IECheck mssvp.exe"Added by the TIRBOT-G WORM!"
U IECleanAux Ieboot6.exe"IEClean by Kevin McAleavy - cookie manager
X iedll iedll.exe"Homepage hijacker
X IEDriver IEDriver.exe"IEDriver adware. Can be installed as part of peer-to-peer file sharing software called URLBlaze"
X IEDriver xplore.exe"IeDriver adware variant"
X IEDriver TD.exe"IeDriver adware variant"
X iedwa104 iedwa104.exe"Added by the DLOADR-BBW TROJAN!"
X IEengine IEeng.exe"STARTPAG.AI hijacker"
X IEexplorer AUpdate IEexplore32.exe"Added by the RBOT-GRE WORM!"
X IEFeatures IEFeatures.exe"Added by the POPMON.A TROJAN! - also known as PopMonster adware"
X IEFeatures Internetfeatures.exe"Added by the POPMON.A TROJAN! - also known as PopMonster adware"
X IefxTray IefxTray.exe"Added by the RILER-H TROJAN!"
X ieharv.exe ieharv.exe"Added by the BANKER-HH TROJAN!"
X Iehelper syslaunch.exeOutwar adware downloader
X iel2cde8 "rundll32.exe iel2cde8.dllEnableRunDLL32"
X ielcaabe "rundll32.exe ielcaabe.dllEnableRunDLL32"
X IELoader32 iexplore32.exe"Added by the SPEX or SPEX.B WORMS!"
X Iesar Iesar.exeBrowser hijacker - redirecting to an adult web page
X Iesearch.exe Iesearch.exe"LookNSearch adware"
U IEServer IEServer.exe"HB Screen Spy surveillance software. Uninstall this software unless you put it there yourself"
X IEService.exe IEService.exe"FastFind adware variant"
X IESet IExplorer.dll"Added by the PWS-BLUEDIT TROJAN!"
X iesetupi.exe iesetupi.exe"Added by a variant of the RBOT WORM!"
Y IEShow IEShow.exe"Anti-phishing component of BitDefender internet security products. Anti-phishing prevents sensitive data such as usernames
X iestart iexp1orer.exe"Added by the NEMOG.C TROJAN!"
N ietsr ietsr.exe"IEClean by Kevin McAleavy - cookie manager
X ieupdate MCP****.exe [**** = random char]"Added by the ASOXY TROJAN!"
X ieupdate mcpdll32.exeAdware downloader trojan
X ieupdate [random filename]"Added by the AGENT-C BACKDOOR!"
X ieupdates ieupdates.exe"Added by a number of TROJANS such as DWNLDR-HGI and AGENT-HGA and the Antivirus 2009 rogue security software - see here"
X IEWinserv winserv.exe"Added by the BANKER-MY TROJAN!"
X IEXPL0RER IEXPL0RER.EXE"Added by the AGOBOT-QL WORM!
X iexplo iexplor.exe"Added by the SIDEA TROJAN!"
X IExploer svshosts.exe"Added by the IRCBOT.BT TROJAN!"
X Iexploit Iexploit.html"Added by the INKER.B WORM!"
X iexplor.exe iexplor.exe"Added by an unidentified WORM or TROJAN! See here"
X Iexplore iexplore.exe"Added by the BOXER TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%"
X IEXPLORE iexplore.exe"Added by the APHEXDOOR TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %Windir%"
X IExplore IEXPLORE.EXE"Added by the DLOADER-YZ TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in a ""Custom"" subfolder"
X IEXPLORE IEXPLORE.EXE"Added by the BANKER-BWE TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%"
X iExplore Ini ie4uini.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
X Iexplore Services iexplore.exe"Added by the LITHIUM BACKDOOR! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup!"
X IEXPLORE.EXE [path to trojan]"Added by the BANCOS-CJ TROJAN!"
X IEXPLORE.EXE goot.exe"Added by the BIFROSE-C TROJAN!"
X IExplorer Iexplor32.exe"Added by the BDOOR-BY BACKDOOR!"
X IExplorer IExplorer.EXE"Added by the BANCOS-CH TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe)"
X IEXPLORER msiecfg.exe"Added by the BDOOR-JU BACKDOOR or BANCBAN-IP TROJAN!"
X Iexplorer explorer.exe"Added by the ZAPCHAS-AC TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%"
X iexplorer lptt01 iexplorer.exe"RapidBlaster variant (in a ""iexplorer"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
X iexplorer ml097e iexplorer.exe"RapidBlaster variant (in a ""iexplorer"" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here"
X Iexplorer.exe Iexplorer.exe"Added by the BANCBAN-EN TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe)"
X IExplorer32 Java Scripting IExplore32b.exe"Added by the RBOT.ABO WORM!"
X IExplorer32c Java Scripting IExplore32cb.exe"Added by the RBOT.ABN WORM!"
X IExplorer6 Java Scripting IExplore326.exe"Added by a variant of the SDBOT WORM!"
X IExplorer7 Java Scripting IExplore327.exe"Added by a variant of the SDBOT WORM!"
X Iexplorerr.exe Iexplorerr.exe"Added by the BANKER-EUT TROJAN! The file is located in %Windir%\Sun\Java\Deployment\logs"
X Iexplorerr.exe Iexplorerr.exe"Added by the BANKER.AOVZ TROJAN! The file is located in %Windir%\msagent\gf"
X IExplorerService WinSock.exe"Added by the AGENT.KIU TROJAN!"
X iExpresser iexpresser.exe"Added by the SLENFBOT.AP WORM!"
X ifp ipf.exe"Added by the CLAGGER-AG TROJAN!"
X ifperx [random filename]"Added by a variant of the SLAPER TROJAN!"
X ifperx xmliwvug.exe"Added by the SLAPER.U TROJAN!"
U IFSplash.exe IFSplash.exeI-FORCE driver for force feedback steering wheel
U IFXSPMGT ifxspmgt.exe"Part of the Infineon Security Platform Software - which supports the on-board TPM security device included with some laptops from suppliers such as Acer
X igamatu ekor.exe"Added by the SDBOT.AQ TROJAN!"
X igamatu atecaca.exe"Added by the IRCBOT.R WORM!"
U igfxhkcmd hkcmd.exe"Hot Key handler for Intel desktop and mobile motherboard chipsets with integrated graphics. With this enabled
U igfxpers igfxpers.exe"Installed with the graphics drivers for Intel desktop and mobile motherboard chipsets with integrated graphics. It's purpose or function isn't known at present but testing with it disabled would appear to indicate it isn't required - hence the recommended ""U"" status"
X igfxtras svchots.exe"Added by the AUTORUN-AIW WORM!"
U IgfxTray igfxtray.exe"System Tray access to display settings for Intel desktop and mobile motherboard chipsets with integrated graphics. With this enabled
? Iglpbv Iglpbv.exe"??"
N igndlm.exe DLM.exe"IGN Download Manager has become a requirement for downloading files through FilePlanet.com. It is based on Internet Explorer and it installs through an ActiveX-plugin
X igsex2x igsex2x.exe"NewDial premium rate adult content dialler"
X IGuardPc.exe IGuardPc.exe"IGuardPc rogue security software - not recommended
? iHP-100 iHPDetect.exe"Drive Letter Searcher
X iilc IILC.EXEHomepage hijacker
X Iinl iptl.exe"PurityScan adware"
X IISADMINS systems.exe"Added by the AGOBOT.U WORM!"
X iisvers iisvers.exeAdded by an unidentified TROJAN or adware
X iiuyvyu uzcx.exe"Added by the AGENT-EOF TROJAN!"
N iIWiper Systemwiper.exe"System Wiper from iI Software - allows you to clear the history of your activites from you computer. Run manually on a regular basis"
Y IJ75P2PSERVER IJ75P2PS.EXEPrinter utility which is required in order to make the printer work correctly
U IJNetworkScanUtility CNMNSUT.EXENetwork utility available for some Canon scanners and multifunction devices. Allows the device to see computers on a network and those computers running the utility to control scanning via the Control Panel on the scanner - which saves you having to run back and forth between the scanner and your computer
Y IKE Service 95 IKEService.exe"Associated with PGP. The PGP Tray can be disabled
U iKeyWorks IKEYMAIN.EXE"A4Tech wireless keyboard driver and utility"
U IKL rundll32.exe [path] IKL.dll"IKL surveillance software. Uninstall this software unless you put it there yourself"
X ilasss lsass.exe"Added by the INJECT-GZ TROJAN! Note - the legitimate lsass.exe process should not normally figure in Msconfig/Startup!"
N iLike ilikesidebar.exe"iLike Sidebar for iTunes and Windows Media Player"
X iLLeGaL Mplayer.exe"Added by the HOLAR.C (or GALIL) WORM! Note - this should not be comfused with Windows Media Player which has the same filename"
X iLLeGaL.exe Mplayer.exe"Added by the HOLAR.C (or GALIL) WORM! Note - this should not be comfused with Windows Media Player which has the same filename"
X ilortgdg keepSafe.exe"Added by the KILLAV.KAX TROJAN!"
? ILO_Office_Manager IntEdReg.exe /OFFMAN"Intense Educational Ltd - Language Office Software. Is it required?"
U iLyric iLyric.exe"iLyric plugin for Winamp media player. Allows you to retrieve the lyrics for your songs with the press of a button"
N iM Start Center iM_Tray.exeInstalled with the Sound Blaster Audigy range of soundcards. A radio tuner installed if the user chooses during installation. Available via Start -> Programs -> iM Networks -> iM Radio Tuner
X Image "rundll32 [path] [trojan filename]Install"
Y Image & Restore IMAGE32.exe"Part of McAfee Nuts & Bolts. Image/Restore can recover from drives that have been accidentally formatted or completely erased
X Image Remote Players sysvn.exe"Added by a variant of the IRCBOT BACKDOOR!"
N Image Transfer SonyTray.exeSony Image Transfer software provides direct image transfer from your digital camera to a PC - can be started manually
U ImageDrive-{hex numbers} ImageDrive.exe"Nero ImageDrive from Ahead - virtual CD/DVD drive software"
U Imagefox imagefox.exe"ImageFox 2.0 (formerly available from ACDSee) is an ""add-on"" graphics previewer for most Windows Open/Save As dialog boxes"
X Imagemgt32 Imagemgt32.exe"Added by the GEMA TROJAN!"
X ImagePath taskbarmngr.exe"Added by the SDBOT-XB WORM!"
U ImageTune dthtml.exe"ImageTune from Hyundai ImageQuest. Rebranded version of Display Tune from Portrait Displays
X IMAPI load.exe"Added by the DOWNDEL-A TROJAN!"
N iMarkup Client iUtil.exe"Enables the iMarkup Client web page annotation utility to run in the background and be available in systray. Shortcut available via Start -> Programs"
U Imatio imation.exe"Imation Disk Manager - enables you to create a password protected area on your Imation USB flash drive"
X imchat imchat.exe"Added by a variant of the IRCBOT TROJAN!"
X IMClass Svhosl.exeAdded by an unidentified WORM or TROJAN!
X imcssl xmliwvug.exe"Added by the SLAPER.U TROJAN!"
X IME conime.exe"Added by the DLDR-G TROJAN! Note - this is not the legitimate Console IME process of the same filename which is located in %System%. This one is located in %Windir%"
N imekrmig imekrmig.exe"Part of MS Input Method Editor which is used to ease the input of Asian characters in MS Office (Chinese
N IMEKRMIG6.1 IMEKRMIG.EXE"Part of MS Input Method Editor which is used to ease the input of Asian characters in MS Office (Chinese
N Imesh ??"Imesh is a file sharing system"
N Imesh Auto Update ??"Update check for the Imesh file sharing system. Turn the update off under ""options"""
X IMEvtMgr.exe IMEvtMgr.exe"Added by the KEYLOG-AR TROJAN!"
U ImgIcon ImgIcon.exe"Displays Iomega icons in Explorer/My Computer
X imgit [path to file]"Added by the BANKER-EM TROJAN!"
N ImgStart ImgStart.exe"Used by Iomega drives. Details of its purpose can be found here. Available via Start -> Programs"
N ImgTask Imgtask.exe"Related to the WalletPix digital photo album. ""On some computers
U IMJPMIG IMJPMIG.EXE"Microsoft's Input Method Editor for the Japanese language which is used to both display and enable the input of characters in e-mails
X IMJPMIG6.1 HelpCat.exe"Added by the BESVERIT WORM!"
U IMJPMIG8.1 IMJPMIG.EXE"Microsoft's Input Method Editor for the Japanese language which is used to both display and enable the input of characters in e-mails
X IMJPMIG8.2 msime82.exe"Added by the VB-CYG WORM!"
X IMJPMIG8.2 msime80.exe"Added by the VB-CYJ TROJAN!"
? immcheck.exe immcheck.exe"Related to I-FORCE driver for force feedback steering wheel?"
X ImMsn timed.exe"Added by the WEBDOR.AK TROJAN!"
U IMOL IMOLApp.exe"IncrediMail for Office Outlook Add-On"
U Imonitor Plguni.exe"Part of McAfee's QuickClean - which removes internet clutter and unwanted programs. This entry monitor changes made to the registry so that they can be undone later using QuickClean - such as removing programs. QuickClean is now integrated into their Total Protection
X imonitor [path to trojan]"Added by the IMONI-A TROJAN!"
U IMONTRAY imontray.exe"System tray monitoring of fans
X imPlayok imPlayok.exe"Added by the CUTWAIL TROJAN!"

DISCLAIMER: It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. I will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try WinTasks 5 Standard/Professional from LIUtilities or the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.

Powered By Pac's Startup list