Startup Entries

Powered by: sysinfo.org

! | ' | $ | % | ( | * | , | - | . | / | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | \ | space | ? | @ | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | ^ | _ | {
Userinit
(0) | (0) | (0)
File Name: rundll32.exe winsys16_070813.dll
Description:
Added by the AUTORUN-C WORM! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "winsys16_070813.dll" file is found in %System%
UserInit StartUp
(0) | (0) | (0)
File Name: rpcxuisu.exe
Description:
Added by a variant of the SDBOT WORM!
userinit.exe
(0) | (0) | (0)
File Name: userinit.exe
Description:
Added by the HAXDOOR-DP TROJAN!
userint32
(0) | (0) | (0)
File Name: userint32.exe
Description:
Added by an unidentified TROJAN via an Instant Message that says, "This was cool, check it out here." Also contains Aurora popups
USERINTERFACE REPORT3R
(0) | (0) | (0)
File Name: M0USE.exe
Description:
Added by the MYTOB.HS WORM!
Userinterface Reporter
(0) | (0) | (0)
File Name: fuuuucktttttt.exe
Description:
Added by the MYTOB-DK WORM!
Userinterface Reporter
(0) | (0) | (0)
File Name: srv32.exe
Description:
ISTBar adware
UserSwitch
(0) | (0) | (0)
File Name: FastUserSwitching.exe
Description:
Allows for fast user switching between user accounts without logging off via a hotkey on some Dell machines (and maybe others?)
UserSystem
(0) | (0) | (0)
File Name: [filename]
Description:
CoolWebSearch Smartsearch parasite variant. Also detected as the SEARCH-A TROJAN!
userun32
(0) | (0) | (0)
File Name: userun32.exe
Description:
Added by the LYDRA-B TROJAN!
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44