Startup Entries

! | ' | $ | % | ( | * | , | - | . | / | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | \ | space | ? | @ | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | ^ | _ | {
Kernell32
File Name: Kernell.dll
Description:
Added by the External: DESTINY.A TROJAN!
(0) | (0) | (0)
KernellApps
File Name: csrss.exe
Description:
Added by the External: BANCBAN-AC TROJAN! Note - this is not the legitimate External: csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "System" subfolder
(0) | (0) | (0)
KernellApps
File Name: lexplore.exe
Description:
Added by the External: BANCBAN-BS TROJAN! Note - the executable is spelt with a lower case "L" rather than an lower or upper case "i" which is the case with Internet Explorer
(0) | (0) | (0)
KernellApps
File Name: svshosti.exe
Description:
Added by the External: BANCBAN-V TROJAN!
(0) | (0) | (0)
KernellApps32
File Name: smss.exe
Description:
Added by the External: BANCBAN-AN TROJAN! Note - this is not the legitimate External: smss.exe process which should not normally figure in Msconfig/Startup!
(0) | (0) | (0)
KernelRuntime
File Name: [path to worm]
Description:
Added by the External: MYTOB-JO WORM!
(0) | (0) | (0)
Kernelw
File Name: Kernelw32.exe
Description:
Added by the External: INDOR.E WORM!
(0) | (0) | (0)
Kernel_check
File Name: wmiprvse.exe
Description:
Added by the External: SONEBOT-B WORM! Note - this is not the legitimate External: wmiprvse.exe process which is always located in the %System%\wbem folder and should not normally figure in Msconfig/Startup!
(0) | (0) | (0)
key
File Name: sysxp.exe
Description:
Added by the External: BEAGLE.AB WORM!
(0) | (0) | (0)
key
File Name: sys_xp.exe
Description:
Added by the External: BEAGLE.AC WORM!
(0) | (0) | (0)
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29