Startup Entries

Powered by: sysinfo.org

! | ' | $ | % | ( | * | , | - | . | / | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | \ | space | ? | @ | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | ^ | _ | {
ctfmon
(0) | (0) | (5)
File Name: msnmsgr.exe
Description:
Added by the BDOOR-JV BACKDOOR! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility which is located in either %ProgramFiles%\MSN Messenger or %ProgramFiles%\Windows Live\Messenger. This one is located in %System%
CTFMON
(0) | (0) | (5)
File Name: wscript.exe /E:vbs winjpg.jpg
Description:
Added by the RUNAUTO.F WORM! Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted. The "winjpg.jpg" file is located in %System%
CTFMON
(0) | (0) | (5)
File Name: wscript.exe /E:vbs regedit.sys
Description:
Added by the VBSAUTO-A WORM! Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted. The "regedit.sys" file is located in %System%
CTFMON
(0) | (0) | (0)
File Name: win.exe
Description:
Added by the VBS.RUNAUTO.G WORM!
Ctfmon
(0) | (0) | (0)
File Name: wmisys.exe
Description:
Added by the IRCBOT-ADS WORM!
ctfmon
(0) | (0) | (0)
File Name: WinUP.exe
Description:
Added by the BANKER-VV TROJAN!
ctfmon
(1) | (0) | (7)
File Name: ctfmon.exe
Description:
Added by the AUTORUN-G WORM! Note - this is not the legitimate ctfmon.exe process associated with alternate language and method inputs which is always located in %System%. This one is located in a "1046" sub-folder
ctfmon
(0) | (0) | (0)
File Name: svhost.exe
Description:
Added by the BACKDR-EL BACKDOOR!
CTFMON.CPL
(0) | (0) | (0)
File Name: CTFM0N.CMD
Description:
Detected by Symantec as the SILLYFDC WORM! See here
Ctfmon.exe
(0) | (0) | (7)
File Name: ctfmon32.exe
Description:
CoolWebSearch Ctfmon32 parasite variant
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130