Support Forum Articles File Help Startup DB Tips Service DB Hijack This! Analyzer

 

NEW HijackThis automated log analyzer! Get your logs analyzed INSTANTLY!

If you're not finding what you're looking for please go to this forum and submit a new startup entry.

Key:

  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown



Startup Name Process Name Details
XACTIVEDSACTIVEDS.EXE"Added by the OPASERV.T WORM!"
XAdsBlockerstopAds.exe"AdsBlocker - detected by NOD32 as DIALER.DW!"
XASDPLUGINnetherlands.exe"AsdPlug premium rate adult content dialer"
Ubladsblads.exe"A Tweak-XP component
UBlockAdsblads.exe"A Tweak-XP component
UCADScads.exe"Cyber Sentinel - internet filtering software"
UCCD ManagerDDS.EXE"Project Labs Century CD manager for their CD/DVD storage device"
Xcdscds.exe"Added by the SPYMON TROJAN!"
XConfiguration Servicesmswords.exe"Added by the SDBOT-YM WORM!"
XDrmupgdsDrmupgds.exe"Maxfiles adware"
Xdsds.exe"Added by the SPYMON TROJAN!"
XHELPERNetherlands.exe"AsdPlug premium rate adult content dialer variant"
UIntel PDSpds.exeIntel Ping Discovery Service (PDS). Part of Intel's LANDesk Management Suite 6 and the Common Base Agent (CBA) - used for communicating between the core server and managed clients. Will start the dial-up if installed and enabled
XItalUitalfds.exe"Added by a TROJAN - see here"
Xloads.exeloads.exe"MediaMotor adware"
Xloads.exemedload.exe"Medload adware"
Xloads.exesuploads.exe"Added by the AGENT-BZ TROJAN!"
XMalwaresWipedsMalwareWipeds.exe"MalwareWipe rogue security software variant - not recommended
XMalwareWipedsMalwareWipeds.exe"MalwareWipe rogue security software variant - not recommended
Xmds.exemds.exe"Added by the MADS-A TROJAN!"
XMicrosoft Inet Xp..teekids.exe"Added by the BLASTER.C WORM!"
XMicrosoft Updaterwuamgrds.exe"Added by the RBOT.A WORM!"
XMicrosoft Updates ResourcesWinFixIDs.exe"Added by a variant of the RBOT WORM!"
XMicrosoft Updatingwuamguards.exe"Added by the RBOT-BY WORM!"
XMotherBoard SoundsSounds.exe"Added by the RBOT-AAP WORM!"
Xmppddsmppdds.exe"Added by the PWS-AKZ TROJAN!"
Xmppdsmppds.exe"LEGMIR.AQZ spyware"
Xmstds.exemstds.exe"Added by the IPTABLES TROJAN!"
UNoAdsNoAds.exeBlocks advertisement banners in Internet Explorer
XStart Uppingwindupds.exe"Added by the SDBOT.AFH WORM!"
Xwersds.exedoriot.exe"Added by the BAGLEDI-A TROJAN!"
XWindows Service Threadssvcthreads.exe"Added by a variant of the IRCBOT BACKDOOR! See here"
XWindows System Update Toolsupds.exe"Added by the VANBOT.CX BACKDOOR!"
XWordsWords.exe"Added by the AGENT.GIT TROJAN!"
Xwpds.exedoriot.exe"Added by the SMALL-KY TROJAN!"
Xwpds.exewwnrot.exe"Added by the BAGLEDI-B TROJAN!"
UZeroAdsLAS0Ads.exe"ZeroAds - culls ads
UZeroAdsZeroads.exe"ZeroAds - a popular Internet accelerator and anti-adware application"


DISCLAIMER: It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. I will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try WinTasks 5 Standard/Professional from LIUtilities or the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.