Startup Entries

Powered by: sysinfo.org

! | ' | $ | % | ( | * | , | - | . | / | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | \ | space | ? | @ | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | ^ | _ | {
LogonAdministrator
(0) | (0) | (0)
File Name: CSRSS.EXE
Description:
Added by the KORRON.B WORM! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in Documents and Settings\<User>\Local Settings\Application Data\WINDOWS
LogOnHook
(0) | (0) | (0)
File Name: LogOnHook.exe
Description:
Part of McAfee Data Backup (now Online Backup) - which "takes the hassle out of manually backing up all of your valuable digital files - from Microsoft Outlook email and contacts to treasured family photos". Available as a stand-alone product or included in Internet Security and Total Protection. The exact purpose of this entry is unknown at present but it unloads after startup
Logonrepclient1
(0) | (0) | (0)
File Name: CSRSS.EXE
Description:
Added by the BRONTOK-BT WORM and variants! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in Documents and Settings\<User>\Local Settings\Application Data\WINDOWS
Logonsara
(0) | (0) | (0)
File Name: csrss.exe
Description:
Added by the BRONTOK-BS WORM! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in Documents and Settings\<User>\Local Settings\Application Data\WINDOWS
LogonStudio
(0) | (0) | (0)
File Name: logonstudio.exe
Description:
Part of an older version of LogonStudio from Stardock Corporation - a free program that allows users to change their XP logon screens. Changes the logon/logoff screens to random one each time a user logs on or off and then exits. Still currently available to download from the downloads page under the "LogonStudio For XP Download" heading
logonUiInit
(0) | (0) | (0)
File Name: Rundll32.exe rgtndz.dll
Description:
Identified as a variant of the Trojan-Clicker.Win32.Agent.bqy malware. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "rgtndz.dll" file is found in %System%
LogoVista
(0) | (0) | (0)
File Name: Vistalogo[7.0.jpg].exe
Description:
Added by the AUTORUN-IG WORM!
LogService
(0) | (0) | (0)
File Name: wincalc.exe
Description:
Added by the PAPROXY TROJAN!
LogService
(0) | (0) | (0)
File Name: lsass.exe
Description:
Added by the BDOOR-IU BACKDOOR! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
LogService
(0) | (0) | (0)
File Name: lsrss.exe
Description:
Added by the PAPROXY-D TROJAN!
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68