Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

NEW HijackThis automated log analyzer! Get your logs analyzed INSTANTLY!

If you're not finding what you're looking for please go to this forum and submit a new startup entry.

Key:

  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown



Startup Name Process Name Details
Note the filename has a ""0"" rather than an upper case ""o"""
X"Vaganza-XPloit-[User Name]"""[user name].exe"Added by the GAVGENT.A WORM!"
Y#NAME?ZkRunOnceR.exeInternet Security Suite used by ISPs to protect customers against many attacks
X(Default)[random filename].exe"Added by the BLACKMAL WORM! Note - this malware actually changes the value data of the ""(Default)"" key in HKLM\Run and HKLM\RunServices in order to force Windows to launch it at boot. The name field in MSConfig may be blank"
X*MS Setup[random filename]"Virtumondo adware
X*Windows [filename] Checker[filename]"Added by the KEDEBE-B WORM!"
X;Rundll[filename]"Added by the PWSLEGMIR.E TROJAN!"
XAceu[random filename]"PurityScan adware"
XAdobe Acrobat Reader CFG[random filename]"Added by a variant of the RBOT WORM!"
XAgent Browser[random filename]Added by the PPdoor.M-bdr backdoor TROJAN!
XAgent Explorer[random filename]Unidentified adware
XAIM Instant Message Cookies[random filename]"Added by the RBOT-AFV WORM!"
XAKEYNAMEWinServ.exe"Added by the EVILBOT.C TROJAN!"
XAlevirOld[worm filename]"Added by the OPASERV WORM!"
XAnti-Virus[random filename].exe"Added by the CAPROBAD-A TROJAN!"
XAOL Messenger[random filename]"Added by an unidentified VIRUS
XApp.EXEName[path to worm]"Added by the BODIRU WORM!"
Xara-key[random filename]"Added by the ANTINNY WORM!"
Uarmy logoreadmename.exe"Torrent101 potentially unwanted torrent client application that installs a Browser Helper Object and displays advertisements"
XAvril Lavigne - Muse[random filename]"Added by the AVRIL-A WORM!"
XBIOS XP Loader[random filename]"Added by the RBOT-IC WORM!"
XBnexe[random filename]"Added by the KITRO.D (or ARGEN.A) WORM!"
XBrasilOld[worm filename]"Added by the OPASERV.P WORM!"
XBrowserUpdateSched[random filename]"ZenoSearch adware"
XcAgOu[filename].hta"Added by the KAKWORM WORM!"
XccApp[random filename]"Added by the OBSORB TROJAN! Note the random filename compared to the valid Norton AntiVirus"
Xcenter[random name]32.exe"Added by the BOFRA.A WORM!"
Xclock[various filenames]"LiveChat Adware - known file names include: mssetup.exe
NCmFlywaveNameCmFlywav.exe"Driver for Linksys Wireless-G Music Bridge"
UCodename Dashboarddashboard.exe"Codename: Dashboard - "an application that resides at the side of your screen. Built on the Microsoft .NET Framework
Xcof.updit[random filename]"Added by a variant of the SDBOT WORM!"
XCompliant[worm filename]"Added by the RBOT-LB WORM!"
XConfig Loader[worm filename]"Added by the AGOBOT-AE WORM!"
XConfiguration LoaderFILENAME.EXE"Added by the AGOBOT-DQ WORM!"
XContent connector[random filename].exe"Added by the DIALER-Y TROJAN! Note - uses a random filename and random folders. Usually the folder containing the file is a Temp folder"
Xcrmssrlt[random filename]"Added by a variant of the SLAPER TROJAN!"
XCSRSWIN[trojan filename]"Added by the WINSHELL.50 TROJAN!"
XCSRSX[trojan filename]"Added by the WINSHELL.50.B TROJAN!"
Xctfmon32[random filename].exe"Added by the RBOT-GSN WORM!"
XDanton*[random filename]"Added by the DANTON TROJAN! where * = random number"
Xddivmwa[random filename]"Added by a variant of the SLAPER TROJAN!"
XDigitalNamesDigitalNamesStart.exe"DigitalNames spyware variant"
XDisk Master[trojan name]"Added by the DISTER TROJAN! - a spam relayer"
XDll Boot Loader on Startup (do not remove this)[various filenames]Added by an unidentified TROJAN!
Xdll services[random filename].exe"Added by a variant of the SDBOT WORM!"
Xdllcvss[random filename]"Added by a variant of the SLAPER TROJAN!"
XDNS[worm filename]"Added by the BCKDR-CQG BACKDOOR!"
XDomain Name Resolve Servicednsresolver.exe"Added by the KIMAN.A WORM!"
Xdown[trojan filename]"Added by the SMALL-QJ TROJAN!"
XDRam prmaessor[random filename]"Added by the RBOT.CSG WORM!"
XDRam prosesor[random filename]"Added by the SPYBOT.EE WORM!"
XDRam prosessor[random filename]"Added by the RBOT.CSG WORM!"
Xeducational writer[random filename]"Added by the RBOT-LZ WORM!"
XenBrowser[name of file]"WINBO adware"
UES Current Services[FILE NAME].exe"123Keylogger surveillance software. Uninstall this software unless you put it there yourself"
Xexample[random filename].exe"Added by the NUCLEAR BACKDOOR! Note - this trojan file is located in %Windir%\NR"
XExeName32Warm.scr"Added by the SCOLD WORM!"
XExpatch[random filename]"Added by the PWSLMIR-G TROJAN!"
Xexpcrt[random filename]"Added by a variant of the SLAPER TROJAN!"
Xexplorerwscript.exe [filename]"Sneaky way to start any VBS script. Many viruses use VBS files. Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted"
XExploreUpdSched[random filename]"ZenoSearch adware"
XF-Secure Gatekeeper[malware name].exe"Added by the NUWAR.AXQ WORM!"
Xfilenamefilename.exe"Added by the VB.FSY TROJAN!"
Xfilename processkerneldll.exe"Added by the AGOBOT-PO WORM!"
Xfilename processexplore.exe"Added by the AGOBOT-QN WORM!"
Xfilename processRundil16.exe"Added by the GAOBOT.ZX WORM!"
XFire Wall services[random filename]"Added by the IRCBOT-QY WORM!"
?FLASH32#NAME?"??"
XFriendlyTypeNameservices.exe"Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process
XFriendlyTypeNamewinlogon.exe"Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process
XG00123[worm filename]"Added by the BUGBROS WORM!"
XG4G[random filename]Detected as Trojan-Downloader.Win32.VB.fki
XGhost Relay[random filename]"Added by the DNSCHANG.EK TROJAN!"
XGlobalSCAPE[random filename]"Added by the RBOT-AYM WORM!"
XGoogle Earth[random filename]"Added by the RBOT-AXK TROJAN!"
XGPLv3[random name].dll"Vundo adware"
XGustavVED[filename].exe"Added by the OPASERV.H WORM!"
XHDAudio Driver 1.0[random filename].exe"Added by the TEADOOR-D TROJAN!"
XHDAudio Driver 2.0[random filename].exe"Added by the TEADOOR-E TROJAN!"
Xhen[filename].exe"Added by the TARNO.G TROJAN!"
XHostname Manager Serverhost32srv.exe"Added by a variant of the RBOT WORM!"
XHOT FIXfilename.exe"Added by the SDBOT-DKM WORM!"
Xhpsysconf1[random filename]"Added by a variant of the VIVIA.A TROJAN!"
Xidmlssp[random filename]"Added by a variant of the SLAPER TROJAN!"
Xieupdate[random filename]"Added by the AGENT-C BACKDOOR!"
Xifperx[random filename]"Added by a variant of the SLAPER TROJAN!"
XImage"rundll32 [path] [trojan filename]Install"
XInternal[trojan filename]"Added by the SMOTHER and TRANSLAT TROJANS!"
XInternat[trojan filename]"Added by the CMJSPY-Y TROJAN!"
Xinternet[trojan filename].exe"Added by the MIFENG-D TROJAN!"
XIntranet Explorer[random filename]"Added by the POEBOT.DK BACKDOOR!"
Xist service uninstall[random filename]"ISTBar adware related"
XJavaUpdate0.07[filename]"Added by the JUPDATE TROJAN!"
Xjcidls[random filename]"Added by a variant of the SLAPER TROJAN!"
XJVM0.12[random filename]"Added by the TEADOOR-A TROJAN!"
XJVM0.14[random filename]"Added by the TEADOOR-B TROJAN!"
Xjysyqm[random filename]"ZenoSearch adware"
XKadoc[random filename].exe"Added by the STAPREW TROJAN!"
Xkavsvc[random 6 char filename]"Added by the QOOLOGIC TROJAN! Uses random file names (examples: nzkklz.exe
XKAVutil[worm filename]"Added by the WINTOO.B WORM!"
Xkern64dll[random filename]"Added by the TARNO.J TROJAN!"
Xlar[trojan filename]"Added by the ROXY.C TROJAN!"
XLiveUpdate[Windows username]05.exe"Added by the LINEAGE TROJAN!"
XLoadOrderVerification[random filename]"Added by the TRON.A TROJAN!"
XLocal-Settings-of-[User Name][User Name].exe"Added by the GAVGENT.A WORM!"
XLocator Service[filename]"Added by the AGOBOT-KY TROJAN!"
XLowVersionSupport[filename]"Added by the LASTRAS TROJAN!"
NMacNameMacName.exe"Part of Conversions Plus from DataViz - allowing PC and MAC owners to share disks"
XManagment Service[random filename]Added by the RBOT.BIS TROJAN!
XMantis[filename]"Added by the MANTIBE VIRUS!"
XMatrixScreen[filename]"Added by the MATRIXSCREEN TROJAN!"
Xmb2np[random filename]Added by the IRCBOT.TJ WORM!
XMbarInstall[random filename]"Mirar adware"
XMedia Services[filename].exe"Added by the AGENT-BA BACKDOOR!"
XMemoryManager[random name].dllVirtumondo adware related
Xmessnger[worm filename]"Added by the DELODER WORM!"
XMickey Mouse Cereal[random filename].exe"Added by the RANKY.Q TROJAN!"
XMicroLoad[random filename]"Added by the DARBY WORM!"
XMICROSFT ANTIVIRUS UPDATE SUPPORT[random 10-letter filename].EXE"Added by the RBOT-AQA WORM!"
XMICROSFT RAMA UPDATE SUPPORT[random filename]"Added by the RBOT-ASM or RBOT-AUW WORMS!"
XMicrosft Upgraed[random filename].exe"Added by a variant of the SDBOT WORM!"
XMicrosft Windows Adapter 5.1.3013[random filename]"Added by the SMALL.HIT TROJAN!"
XMicrosoft (C) HTML Application host[random filename]"Added by the RBOT-YB WORM!"
XMicrosoft ADservice[random filename]"Added by a variant of the RBOT WORM!"
XMicrosoft Anti-Spy[random filename]"Added by a variant of the SDBOT WORM!"
XMicrosoft Core Support[random filename]"Added by a variant of the RBOT TROJAN!"
XMicrosoft Corporation[random filename]"Added by various VIRUSES
XMicrosoft Diagnostic[random filename]"Added by the ACEBOT TROJAN!"
XMicrosoft DirktorWin[random filename]"Added by the SPYBOT.GEN3 TROJAN!"
XMicroSoft Getway Dire[random filename]"Added by the IRCBRUTE.AM WORM!"
XMicrosoft IIS[filename]"Added by the FRANCETTE-S WORM!"
XMicrosoft IT Update[random filename]"Added by a variant of the RBOT WORM!"
XMicrosoft Java Windows Update[filename]"Added by the RBOT-DZ WORM!"
XMicrosoft Locals 332[random filename]"Added by the RBOT-KU WORM!"
XMicrosoft Security GManagers[random filename]"Added by a variant of the SDBOT WORM!"
XMicrosoft Security Monitor Process[random filename]"Added by variants of the RBOT WORM! See here"
XMicrosoft Security Panager[filename]"Added by the RBOT-ANL WORM!"
XMicrosoft Security Panagers[random filename]"Added by the RBOT-AIG WORM!"
XMicrosoft System Backup[random filename]"Added by the RBOT-AGM WORM!"
XMicrosoft Tray[random filename]"Added by the DELF.BZ TROJAN!"
XMicrosoft Update Loader[random filename]"Added by a variant of the RBOT WORM!"
XMicrosoft Update Machine[random filename]"Added by a variant of the RBOT WORM!"
XMicrosoft Updates[worm filename]"Added by the AGOBOT-AIZ WORM!"
XMicrosoft Updote[random filename]"Added by the RBOT-ARC WORM!"
XMicrosoft UpToDate Driver (32-bits)[random filename].exe"Added by the SPYBOT.LXJ WORM!"
XMicrosoft Windows Adapter 5.1.3214[worm filename].exe"Added by the STRAT.GEN-3 WORM!"
XMicrosoft Windows Update x86[various filenames]"Added by a variant of the RBOT WORM! Filenames seen include (but are not limited to firefox.exe
XMicrosoft WinSound[random filename]"Added by a variant of the RBOT WORM!"
XMicrosoftWindows[various filenames]"MagicSearch - a CoolWebSearch parasite variant"
XMicrosot NT Support[random filename].exe"Added by the RBOT-CTI WORM!"
XMioft Wiws Seice ent[worm filename].exe"Added by the RBOT-GIJ WORM!"
Xmmsddlx[random filename]"Added by a variant of the SLAPER TROJAN!"
XMonAppli[random filename]"Added by the DELF.IF TROJAN! The most common filenames are isys32.exe & msnmsg.exe"
XMonitor Test[random filename]"Added by the SDBOT-NC WORM!"
XMS Domain Name Server DeamonMSDNSD32.exe"Added by the RBOT-CMZ WORM!"
XMS Domain Name SystemMSWDNS32.exe"Added by the RBOT-GKY WORM!"
XMS Task Manager 32[trojan filename] .exe"Added by the RANKY.NF TROJAN!"
XMS-HTML[random filename]"Added by the LATINUS.15 TROJAN!"
XMsgsvc32[worm filename]"Added by the NAUTICAL-A WORM!"
XMSKCES32[random filename]"Added by the CLONER TROJAN!"
XMsn Update SUPPORT[random filename]"Added by the RBOT-BPS WORM!"
Xmswspl[random filename]"Added by the SMALL.IQ TROJAN!"
XMyapp[filename]"Added by the FATEE.B WORM!"
XNameIexplorer0.exe"Added by the THREADSYS TROJAN!"
XName Servermswins.exe"Added by a variant of the SDBOT WORM!"
XNAMEDPIPE SYSTEMnamedpipe.exe"Added by the MYTOB-FH TROJAN!"
XNAV Auto Update[random filename]"Added by the SPYBOT-E WORM!"
XNavScan[filename]"Added by the OBSORB TROJAN!"
XNETVISIONAdulti[random filename]"Trafficadvance dialer"
Xnewname[path to trojan]"Added by the DRSMARTL-S TROJAN!"
XNotePad[worm filename]"Added by the SILLYFDC-G WORM!"
Xnssysconf[random filename]"Added by the VIVIA.A TROJAN!"
XNtech.patchs[trojan filename]"Added by the LEMIR.G TROJAN!"
XNvCpl[random filename]"Added by the AGOBOT-APJ WORM!"
Xnvviddrv32[random filename]"Added by the RBOT-HT BACKDOOR!"
XOffice Monitor Word Exel R[trojan filename]"Added by the IRCBOT-VX TROJAN!"
XOLE[filename]"Added by the STAWIN or TARNO.D TROJANS!"
Xpasscxd[random filename]"Added by a variant of the SLAPER TROJAN!"
Xpathnamepathname.exe"Added by the IRCCONTACT TROJAN!"
XPGStub.exe[various filenames]Unidentified adware
XPlasdll service[random filename]"Added by a variant of the SDBOT WORM!"
XPNP FIX[worm filename]"Added by the RBOT-AKQ WORM!"
XPostBootReminder[random filename]Added by and unidentified WORM or TROJAN!
XPrivateNet[various filenames]Premium rate adult content dialler
Xprompt drive[random filename]"Added by the SDBOT.AMF WORM!"
Xputil[filename]"Added by the LDPINCH TROJAN!"
Xqbotd[random filename]"Added by the BOTTEN TROJAN!"
XQuicktime Task[random filename]"Trafficadvance dialer"
XRandom Unique ID[worm filename]"Added by the XROVE-A WORM!"
XRavTimeXP[worm filename]"Added by the WULLIK.B WORM!"
XRavTimXP[worm filename]"Added by the WULLIK.B WORM!"
Xrdvs[worm filename]"Added by the ULTIMAX.B WORM!"
XReactor3[random name]32.exe"Added by the BOFRA.A WORM!"
XReactor5[random name]32.exe"Added by the BOFRA.D WORM!"
XReactor6[random name]32.exe"Added by the BOFRA.C WORM!"
XReactor7[random name]32.exe"Added by the BOFRA.B WORM!"
XReactor8[random name]32.exe"Added by the BOFRA.E WORM!"
XReactor9[random name]32.exe"Added by the BOFRA.E WORM!"
XRegistry Value Nameroses.exe"Added by the RBOT-AFT WORM!"
XRegistry Value Nameservice.exe"Added by the RBOT-AHT WORM!"
XRegistry Value Namewinapi32.exe"Added by a variant of the RBOT WORM!"
XRegistry Value Namesyswinxp.exe"Added by the RBOT.BTZWORM!"
XRegistry Value Nameenzxp.exe"Added by the RBOT-BAJ WORM!"
XRegistry Value Name StartMsPMSPSa.exe"Added by a variant of the SDBOT WORM!"
Xreg_keyloader_name.exe"Added by the BEAGLE.Y or BEAGLE.Z or BEAGLE.AA WORMS!"
XRhino[random name]32.exe"Added by the BOFRA.A WORM!"
Xrmalt[random filename]"Added by the CLICKER-CS TROJAN! Filenames spotted inlcude Setup.exe
XRPC Service[random filename]"Added by the BDOOR-AAD BACKDOOR!"
XRPCall_[ComputerName]smhost.exe"Added by the REDPLUT-B TROJAN!"
XRSPC Driver[random filename].exe"Added by the RBOT-SN WORM!"
XRSPC Driver D[random filename]"Added by a variant of the RBOT WORM!"
Xrtkernsw[random filename]"Added by a variant of the SLAPER TROJAN!"
XRundllrundll32.exe [random filename].dll"Added by the MYTOB.IG WORM! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The random DLL file is found in %System%"
XRunnerlsass.exe [trojan filename]"Added by the DROWSY-B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%"
XSaMail[WORM FILE NAME].vbs"Added by the VBS.LIDO WORM!"
XScanreg[filename]"Added by the QQPASS.E TROJAN!"
XScrSvrOld[worm filename]"Added by the OPASERV WORM!"
XSearchClick[trojan filename]"Added by the AGENT-DWR TROJAN!"
XService[trojan filename]"Added by the KAITEX.E TROJAN!"
XService Defender[random filename]"Added by a variant of the ZLOB TROJAN! See here"
XService Host[filename].exe"Added by the TORVEL.B WORM!"
XService Pack[various filenames]"Added by the LERPA-A WORM! Note - the file name will be one of the following common.exe
XService Pack 1[random filename]"Added by the VXGAME.Z TROJAN! Note - the filename is random - see the link. Typical examples are vexg6ame4.exe
XService PAck SFVP[worm filename].exe"Added by a variant of the RBOT WORM! The filename is 4 random characters"
XServices004[worm filename]"Added by the BUGBROS WORM!"
XSfKg6wIP[random filename]Identified as a variant of the TrojanDownloader.Matcash malware
XSfKg6wIPu[random filename]Identified as a variant of the TrojanDownloader.Matcash malware
NShare-to-Web Namespace Daemonhpgs2wnd.exe"Share-to-Web - HP-created software and Internet-based application that enables easy uploading and sharing of photos via affiliated photo-sharing Web sites. Available via Start → Programs"
XSilentSoftech[worm filename]"Added by the SILLYFDC-BL WORM!"
XSNInstall[various filenames]"Spy Sheriff/SpywareNO malware
XSpeedBoss[worm filename]"Added by the OPASERV.AD WORM!"
Xspoolsv.exe[random filename]"Added by the RBOT-JB WORM!"
YSpybotDeleting*****[cmd or command] /c del [path] [filename]"Generated by Spybot Search & Destroy if it encounters files that cannot be deleted during runtime because they are locked by other processes. For example
XSrv32Old[worm filename].PIF"Added by the OPASERV.J WORM!"
XStartup Configuration[six character filename]"Added by the RBOT-ARV WORM!"
Xstdlib[filename]"Added by the PERDA-E TROJAN!"
XStreams Drivers[trojan filename]"Added by the RESTARTER.E TROJAN!"
XSupernova[worm filename]"Added by the SURNOVA.A (or SUPOVA) WORM!"
Xsupport-reverse-smileys[trojan filename]"Added by the LITEBOT TROJAN!"
Xsws.exe[random filename]"Haldex type adult content dialler"
XsyelimS-esreveR-troppuS[filename]"Added by the LITBOT.C TROJAN!"
XSymantec Autoscan[random filename]"Added by the RBOT-AJO WORM!"
Xsysdll[trojan filename]"Added by the HUGESOT TROJAN!"
Xsysmon12[various filenames]"Wareout - malware masquerading as a spyware and dialer remover"
XSysStart[random filename]"ZenoSearch adware"
XSystem backup[random filename]"Added by the ADMINCASH.B TROJAN! Note - multiple different file names have been spotted
XSystem CPL manager[random filename]"Added by the RBOT-SR WORM!"
XSystem Presets[temp name].exe"Added by the HOSTINF-A WORM!"
XSystem Services[random file name]"Added by a variant of the RBOT WORM!"
XSystem Update[filename].exe"CoolWebSearch parasite variant"
XSystem Update[random filename]"Added by the KORGO.W or KORGO.X WORMS!"
XSystem Update[random filename]"Added by the SOROMO-A TROJAN!"
XSystem32[worm filename]"Added by the NAUTICAL-A WORM!"
XSystemBootMshta.exe ...filename.htaAdult content dialler
XSystemEmergency[various filenames]"CoolWebSearch Smartsearch parasite variant"
XSystemManager[random filename]"Added by the SETTEC ROOTKIT!"
XSystemProcEvent[trojan filename]"Added by the IRCBOT.I TROJAN! Filenames used are csrwnd.exe
XSystray[filename.exe]"Winfavorites adware"
XTaskReg[random filename]"Added by the CBLAD WORM!"
XTA_Start[random filename]"Zeno Think-Adz adware"
XTelnet24[random filename]"Added by the RBOT-ARD WORM!"
XTempCom[randomname].com"Added by the TRAXG WORM!"
XThink-Adz[random filename]"Zeno Think-Adz adware"
XTSystem[trojan filename]"Added by the NSYS-A TROJAN!"
XUpdate for Windows[various filenames]"Added by the LERPA-A WORM! Note - the file name will be one of the following common.exe
Xupdatesched[random filename]"ZenoSearch adware"
XUpdateWin[random filename]"Added by the IRCBOT.AZW BACKDOOR!"
XUpdSys[random filename]Added by the BJ TROJAN!
Xupme[filename]"Added by the MUGLY.F WORM!"
XUser32[filename]"Added by the NETTRASH TROJAN!"
XUserSystem[filename]"CoolWebSearch Smartsearch parasite variant. Also detected as the SEARCH-A TROJAN!"
Xvaluenamesvchosts.exe"Added by a variant of the SDBOT WORM!"
XValueS0ft[random filename]"Added by a variant of the SPYBOT WORM! See here"
XValueX[random filename]"Added by the IRCBOT.EE TROJAN!"
Xvbcdtm[random filename]"Added by a variant of the SLAPER TROJAN!"
Xvbe[random name].vbe"Added by the UISGON-A WORM!"
XVBS.Ipnuker@mm[worm filename].vbs"Added by the NUKIP WORM!"
XVideo Process[random filename]"Added by the RBOT-LM WORM!"
XVideoDriver[filename]"Added by the GSPOT20.A TROJAN!"
XVisual Element FX5[various filenames]"ClearStream Accelerator adware"
XVoltage Manager[random filename]"Added by the DREFFORT WORM!"
Xvxcxcvfck[random filename]"Added by the RANCK-AZ TROJAN! The most common example is ""sbsvsd.exe"" located in %System%"
Xw02db700.dll[random filename]"ZenoSearch adware"
XW32Load[random filename].scr"Added by the CASPID WORM!"
XWeb Service[random filename].exe"Added by the ADMINCASH TROJAN!"
XWebRun[random filename]"Added by the ADWARELOADER TROJAN!"
Xwescmv[random filename]"Added by a variant of the SLAPER TROJAN!"
XWiFix service[random filename]"Added by a variant of the SDBOT WORM!"
XWin I5oahder[worm filename]"Added by the AGOBOT-DS WORM!"
?win namestat.exe"??"
XWin Prosess0r[random filename]"Added by the RBOT-BIT WORM!"
XWIN prosessor16[random filename].exe"Added by a variant of the SDBOT WORM!"
XWin Secure Update[random filename]"Added by the RBOT-AGI WORM!"
XWin2Drv[worm filename]"Added by the WINTOO WORM!"
XWin32 Service[trojan filename]"Added by the AGENT-GBO TROJAN!"
XWin32system[random filename]"Added by the DDV.B WORM!"
Xwinabc"rundll32.exe [Temp][ORIGFILENAME].DLLInstallLaunchEv"
XWindos Seres Agnts[worm filename].exe"Added by the RBOT-GUN WORM!"
XWindow service[random filename]"Added by the RBOT-ACH WORM!"
XWindows ASN Service[random filename]"Added by the AGOBOT-TC WORM!"
XWindows Compliant[random filename]"Added by the RBOT-IR WORM!"
XWindows Data Server[random name].exe"Added by the SPYBOT-DS WORM!"
XWindows Domain Name Driverswindns.exe"Added by the FORBOT-EP WORM!"
XWindows ExpIorer[random filename]"Added by the RBOT-AKO WORM!"
XWindows Explorer[filename].exe"Added by the SDBOT TROJAN!"
XWindows Host Namelmass.exe"Added by the GAOBOT.O WORM!"
XWindows LoL Layer[random filename].exe"Added by the RBOT-GMD WORM!"
XWindows Media Player[random filename]"Added by a variant of the RBOT WORM!"
XWindows Media Player Update[random filename]"Added by the RBOT-ET WORM!"
XWindows Media SP.2.37[random filename]"Added by the LEMIR.C TROJAN!"
XWindows Microsoft Service[random filename]"Added by the AGENT-HCD TROJAN!"
XWindows NT Service Namewinshock.exe"Added by the RBOT-PK WORM!"
XWindows NT Service Namesvchcst.exe"Added by the RBOT-NV WORM!"
XWindows Print Monitor Daemon[random filename].exe"Added by a variant of the SDBOT WORM!"
XWindows Registry Name[random filename]"Added by the RBOT-AEB WORM!"
XWindows Registry Namewinses.exe"Added by the RBOT-ADB WORM!"
XWindows Secure Layer[random filename]"Added by the RBOT.DRF WORM!"
XWindows Security Service[random file name]"Added by the RBOT-ALV WORM!"
XWindows Servce Agent[random filename]"Added by a variant of the IRCBOT TROJAN!"
XWindows Service Agent[random filename].exe"Added by the IRCBOT-XE TROJAN!"
XWindows Service alge[random filename]"Added by the RBOT.GJO TROJAN!"
XWindows Servicesfilename.exe"Added by the SDBOT.FSK BACKDOOR!"
XWindows Standard Securty[random 3-letter filename]"Added by the RBOT-ALF WORM!"
XWindows System Service[worm filename]"Added by the RBOT.XG WORM!"
XWindows Update[filename]"Added by the NORIO TROJAN! Acts as a hi-jacker redirecting to adult content sites"
XWindows update 2005[random filename]"Added by the RBOT.ARP WORM!"
XWindows Update Checker[random filename]Adware downloader trojan
XWindows Update V6[random filename]"Added by the RBOT-KT WORM!"
XWindowsReg% update[random filename].exe"Added by the RBOT-HH WORM!"
XWindowsRegistration[random filename]"Added by the RBOT-NO WORM!"
XWindowsRegKey Autoupdate[random filename]"Added by a variant of the RBOT WORM!"
XWindowsRegKey update[random filename]"Added by the RBOT.QT WORM!"
XWindowsService[random name].dll"Added by the VUNDO-X TROJAN!"
XWindowz[original worm filename].vbs"Added by the NUKIP WORM!"
XWinFixer service[random filename].exe"Added by a variant of the SDBOT WORM!"
Xwingo[various filenames]"Added by the BAGLE-AU WORM!"
XWinLoader[random filename]"Added by variants of the SUBSEVEN TROJAN!"
XWinsock2 driver[random filename]"Added by members of the SPYBOT family of WORMS! Note - the random filename is located in %System%"
XWinsvr[random filename].exe"Added by the ADCLICK-DK TROJAN!"
XWinUPPD.exe[random filename]Added by an unidentified WORM/TROJAN!
XWinz Firewall[random filename].exe"Added by a variant of the SDBOT WORM!"
XWinzip[various filenames]"Added by the LERPA-A WORM! Note - the file name will be one of the following common.exe
Xworknote1[filename].exe"Added by the MEETOT WORM!"
Xwpxmls[random filename]"Added by a variant of the SLAPER TROJAN!"
XWupdate driver[various filenames]"Added by a variant of the SPYBOT WORM!"
Xxp_system[filename]"Added by the BOOKMARKER.J TROJAN! The file is located in %Windir%\inet20004"
XZaCker[filename].PIF"Added by the HOLAR.A WORM!"
XZagrebLand[trojan filename]"Added by the RENOS-EH TROJAN!"
Xzcseacrt[random filename]"Added by a variant of the SLAPER TROJAN!"
XZeno[random filename]"ZenoSearch adware"
Xzonealarm[random filename]"Added by an unidentified VIRUS
XZStart[various filenames]"VX2.Transponder parasite updater/installer related"
XZ_Start[random filename]"ZenoSearch adware"
X[Entry name]System.exe"Added by the NETHIEF-N TROJAN!"
X[executed file name]App.exe"Added by the WAXPOW WORM!"
X[executed file name]Regsrv32.com"Added by the SOUTHGHOST WORM!"
X[filename]svchost.scr"Added by the BANKER-CC TROJAN!"
X[original filename]svchost.scr"Added by the BANCBAN-CX TROJAN!"
X[original filename]xphost.scr"Added by the BANCBAN-HM TROJAN!"
X[random filename]slk8x2peu.exe"QuickLinks adware"
X[random names]eee2.exe"MediaMotor adware"
X[random name]wincpu.exe"Added by an unidentified VIRUS
X[random name]m?dtc.exe"PurityScan adware"
X[random name]ping.exe"PurityScan adware. Note - do not confuse with the Microsoft utility of the same name as described here"
X[random name]CXTPLS_LOADER.EXE"AproposMedia adware"
X[random name]??plorer.exe"PurityScan adware"
X[random name]?hkdsk.exe"PurityScan adware"
X[random name]?hkntfs.exe"PurityScan adware"
X[random name]l?gonui.exe"PurityScan adware"
X[random name]m?iexec.exe"PurityScan adware"
X[random name]r?gsvr32.exe"PurityScan adware"
X[random name]t?skmgr.exe"PurityScan adware"
X[random name]w?auboot.exe"PurityScan adware"
X[random name]w?auclt.exe"PurityScan adware"
X[random name]w?crtupd.exe"PurityScan adware"
X[random name]w?wexec.exe"PurityScan adware"
X[random name]??erinit.exe"PurityScan adware"
X[random name]d?dplay.exe"PurityScan adware"
X[random name]n?tepad.exe"PurityScan adware"
X[random name]??chost.exe"PurityScan adware"
X[random name]??oolsv.exe"PurityScan adware"
X[random name]??xplore.exe"PurityScan adware"
X[random name]r?ndll32.exe"PurityScan adware"
X[random name]se?vices.exe"PurityScan adware"
X[random name]w?nlogon.exe"PurityScan adware"
X[random name]w?nword.exe"PurityScan adware"
X[random name]??anregw.exe"PurityScan adware"
X[random name]?ttrib.exe"PurityScan adware"
X[random name]j?vaw.exe"PurityScan adware"
X[random name]l?ass.exe"PurityScan adware"
X[random name]m?config.exe"PurityScan adware"
X[random name]n?lookup.exe"PurityScan adware"
X[random name]n?pdb.exe"PurityScan adware"
X[random name]??ool32.exe"PurityScan adware"
X[random name]??rss.exe"PurityScan adware"
X[random name]??rvices.exe"PurityScan adware"
X[random name]?ti2evxx.exe"PurityScan adware"
X[random name]d?xplore.exe"PurityScan adware"
X[random name]chkdsk.exe"PurityScan adware. Note - the legitimate Windows chkdsk.exe will always be located in %System% and will NOT figure among the startups!"
X[random name]dvdplay.exe"PurityScan adware"
X[random name]spoolsv.exe"PurityScan adware. Note - this is not the legitimate spoolsv.exe which is always located in %System%"
X[random name]w?aclt.exe"PurityScan adware"
X[random name]wucrtupd.exe"PurityScan adware. Do not confuse with the legitimate Windows Critical Update Notification (wucrtupd.exe) process"
X[random name]charmapnt.exe"Added by the BANCOS-DR TROJAN!"
X[random name]n?tdde.exe"PurityScan adware"
X[random name]r?gedit.exe"PurityScan adware"
X[random name]r?ndll.exe"PurityScan adware"
X[random name]scanregw.exe"PurityScan adware. Note - do not confuse this with the legitimate Windows process scanregw.exe which is always found in the Windows folder on Win9x/ME machines"
X[random name]wuauboot.exe"PurityScan adware. Note - do not confuse with the legitimate wuauboot.exe process which should not figure in Msconfig/Startup!"
X[random name]w?nspool.exe"PurityScan adware"
X[random name]svchost.exe"Added by the BANCBAN-JC TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\config"
X[random name][random name].dll"SearchNet adware"
X[random name]iexpl0ra.exe"Added by the ULPM.BD TROJAN!"
X[random name]rundl13a.exe"Added by the GAMPASS-L TROJAN!"
X[random name]Servere.exe"Added by the LEGMIR-AQM TROJAN!"
X[random name]twain_32.exe"Added by the AGENT.AM TROJAN! Note - example names include ""XviD""
X[random name]explore3.exe"Added by the DELF.FAN TROJAN!"
X[random name]taskmngr.exe"Added by the AGOBOT-CB WORM!"
X[random name]netdde.exe"PurityScan adware. Do not confuse with the legitimate Network DDE - DDE Communication (netdde.exe) process which is always located in %System% and should not figure in Msconfig/Startup!"
X[random name]chkntfs.exe"PurityScan adware. Do not confuse with the legitimate NTFS Volume Maitenance Utility (chkntfs.exe) process which is always located in %System% and should not figure in Msconfig/Startup!"
X[random name]notepad.exe"PurityScan adware. Note - this is not Windows Notepad which has the same executable name"
X[random name]services.exe"PurityScan adware. Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!"
X[random name]ntvdm.exe"PurityScan adware. Do not confuse with the legitimate ntvdm.exe process which is always located in %System% and should not figure in Msconfig/Startup!"
X[random name]msiexec.exe"PurityScan adware. Do not confuse with the legitimate Windows® Installer (msiexec.exe) process which is always located in %System% and should not figure in Msconfig/Startup!"
X[random name]userinit.exe"PurityScan adware. Do not confuse with the legitimate Userinit Logon Application (userinit.exe) process which is always located in %System% and should not figure in Msconfig/Startup!"
X[random name]regedit.exe"PurityScan adware. Note - this is not the valid Windows registry editor which resides in %Windir% and will not figure in Msconfig/Startup!"
X[random name]wuauclt.exe"PurityScan adware. Note - this is not the legitimate wuauclt.exe process
X[random name]?ervices.exe"PurityScan adware"
X[random name]s?chost.exe"PurityScan adware"
X[random name]c?rss.exe"PurityScan adware"
X[random name]mrgdll.exe"Nortel Antivirus rogue security software - not recommended"
X[random name]wox.exe"Nortel Antivirus rogue security software - not recommended"
X[Randomly chosen existing folder name]_autorun.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_cfg.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_config.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_env.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_loader.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_login.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_setup.exe"Added by the ANTINNY-L WORM!"
X[Randomly chosen existing folder name]_start.exe"Added by the ANTINNY-L WORM!"
X[trojan filename]Install.exe"Added by the BANCBAN-FS TROJAN!"
X[trojan name]svchost.exe"Added by the BANCBAN-CI TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!"
X[unknown name]WINBASICS32.EXE"Added by the SDBOT-JH WORM!"
X[username] config[path to trojan]"Added by the MOSUCK-H TROJAN!"
X[various filenames]qtsks.exeAdded by the WEBDOR.Y TROJAN
X[various names]elf.exe"Elf is a hacker program
X[various names]crsrs.exe"Added by the FORBOT-AK WORM!"
X[various names]Windows32.exeAdded by any of a number of WORM or TROJAN variants
X[various names]bling.exe"Added by the RBOT-NI WORM!"
X[various names]mediaplayer32.exe"Added by a variant of the RBOT WORM!"
X[various names]winlogon32.exeAdded by an unidentified WORM or TROJAN!
X[various names]svchostss.exe"Added by a variant of the RBOT WORM!"
X[various names]win32snd.exe"Added by the RBOT-DQ WORM!"
X[various names]shch.exePremium rate adult content dialler
X[various names]PasswdMon.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]runload32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]dstart2.exe"Adware - detected by Kaspersky as the SMALL.ALW TROJAN!"
X[various names]msdos32.exeAdded by a variant of the AGENT.AH TROJAN!
X[various names]sitebar.exeAdded by an unidentified TROJAN!
X[various names]backorif.exe"Added by a NTROOTKIT TROJAN variant!"
X[various names]bhoserv.exe"Added by a NTROOTKIT TROJAN variant!"
X[various names]driver32.exe"Added by a variant of the SDBOT WORM!"
X[various names]hyandex.exe"Added by a NTROOTKIT TROJAN variant!"
X[various names]Uint32.exe"Added by a NTROOTKIT TROJAN variant!"
X[various names]Uint32.exe"Added by a NTROOTKIT TROJAN variant!"
X[various names]_ctcp.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]10010.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]321102.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]34763.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]abrek.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ActionScr.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]AliceSD.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]AppMasterCenter.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]atl_helper.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ATLIEHELPER.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]avpmondll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]awinrar.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]backd.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]backorif.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]barint.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]bhoserv.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]bingo9.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]bnui.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Bogobot.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]borlandg.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]BoundRec.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]br0ken.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Brong32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]clamav.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]cmon14.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]cnftips.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]control64.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]corrida.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]CToolBar.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]DCC_send.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]defect08.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Dest068.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]dialer423.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]diskserv.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]driver64.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]DTOURS.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ERTYDF.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ExchangeMaster.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]EXE32EXE.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]expoler.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]FLKPT.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]forces_elite.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ftbar.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]gabber.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]hyandex.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]iehelper.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]iesetupdll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]init32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]InpriseMon.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]install2.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]jopplerg.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Kargo.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]keybdll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]KeywordFinder.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]killall.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]LOPTCON.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]media64.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]MNTP.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]MON76234.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]moniter.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]mozilla-text.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]msag.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ms-its.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]MsNetHelper.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]new32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]newbreed.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]nmdllw.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]NopeZ.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]NsCplTray.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]NSYSCPLSTR.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]NukeSpan.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]openstre.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]panel_its.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ParisM.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]pizda.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]powerdll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]PrcIdle.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]prcmon.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Preliminary.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]prgsys0984.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]progmen.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]qwe.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]RtlFindVal.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SAPSTR.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]sbin.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]scanSYS.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Serviceprocess.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SetupExeDll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Shaitan1678.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]slamm.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]sound64.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SpyElim.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]srbho.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ssweeper.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]StartCpl.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]startman.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]StatusCheck.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]stuffmon.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]sysconf16.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SysEntry.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]sysmon12.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]syspanel.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SysSupport.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]SYSTRAV.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]TemplateDongle.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]teqq32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Testimonials.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]TForm1.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]TorontoMail.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Trayz.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]TRPT.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]trycrt.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]typeconf.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]Uint32.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]uio.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]UserSp1.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]utsgmon.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]vxdman.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]WhatsNewBot.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]WinInitDll.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]wormexe.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]WTFCTF.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]XTermInit.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]xwiz.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]xxtoolbar.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]zantu.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]zxc.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]ABCXYZ.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]dePloy.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]JAguAr.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]80d0.exe"MediaMotor adware"
X[various names]exe81.exe"MediaMotor adware"
X[various names]exe82.exe"MediaMotor adware"
X[various names]MSTCPDLL.exe"Wareout - malware masquerading as a spyware and dialer remover"
X[various names]seli.exe"MediaMotor adware"


DISCLAIMER: It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. I will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try WinTasks 5 Standard/Professional from LIUtilities or the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.