CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

spacer spacer

StartupList Index

Currently 17175 startuplist entries and growing...
Last updated on 2008-08-21 15:41:23 Eastern.
!! THESE ARE STARTUP PROGRAMS AND NOT TASK MANAGER PROCESS ITEMS !!


For more information on startup programs, including how to identify them and the information required for submitting additions to this list please refer to Content & Info. Reprinted with permission from Paul Collins who owns the copyright to the list. CastleCops also adds additional items that may not be in the original list but attempts are made to ensure the original is also updated. The full HTML list is here.

CastleCops is now hosting the official Pacs-portal forums. CastleCops has also cross-referenced startup entries with our File Hash database where appropriate. Comments or questions can be fielded here.

KEY:
  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z




    Full List

    NameStatusFilenameDescription
    1WinCfg32X"\WebMailSpy.exeAdded by WebMailSpy SPYWARE!
    2020DownloaderXmssvr.exe 2020Search Toolbar
    2177F056-0AA6-4D6C-A944-13F71F341C29Xsysokuaw.exeAdded by the SmitFraud Trojan
    24Online ClientUCyberoamClient.exeRelated to Cyberroam from Elitecore Technologies Ltd. Note: Located in \%Program Files%\eLitecore\Cyberoam Client for 24Online\
    250Xwinmgr.exeAdded by the Troj/LegMir-AT TROJAN! Read the link, keylogger/password stealing trojan(s) involved.
    27Xslsorve.exeAdded by the SLSORVE-A TROJAN!
    27Xcsrss32.exeAdded by the TROJ/SLSORVE-D TROJAN!
    27Xmsm32.exeAdded by the TROJ/SLSORVE-E TROJAN!
    2CF0B992-5EEB-4143-99C0-5297EF71F444Xrundll32.exe stlbdist.dll, DllRunMain BrowserAid/BrowserPal Foistware
    2CF0B992-5EEB-4143-99C2-5297EF71F44BXrundll32.exe stlbupdt.DLL, DllRunMain BrowserAid/BrowserPal Foistware
    2chkdskX******.dll VirtuMonde/Vundo adware variant
    2kadirasY2kadiras.exe Allied_Telesyn AT series router/modem related - apparently required
    2SearchXmain.exeAdded by Adware.2Search ADAWARE! Note: located in C:\Program Files\2search\
    2thousandbuckX(path to file)Added by the RANKY.L TROJAN!
    2wSysTrayU2portalmon.exe2Wire Homeportal user interface
    32-bit Thunking serviceXthunk32.exeAdded by the W32.Derdero.A WORM!
    333Xsvchost.exe Troj/JD-A Read the link, steals information
    357AA41A-B7A8-4632-A27D-5B980B25CF43X[path to svchost.exe]Added by the SMALL-AQ TROJAN!
    357AA41A-B7A8-4632-A27D-5B980B25CF43Xservices.exeAdded by FakeMessage/AdRotator adware - NOTE - this file is placed in a Winnt\System32\Inetserv or Windows\System32\Inetsrv folder, and should NOT be confused with the legitimate Windows services.exe process, always located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup!
    36X Raid ConfigurerYJMRaidSetup.exeRelated to Raid_Configurer Disk Partitioning Setup. Note: Located in \%WINDIR%\System32\
    388529725448XAutomaticUpdates.exe W32/Sdbot-DEN Read the link, allows remote access
    38921398152773197389309440455459Xav2009.exeAdded by the Antivirus_2009 rogue anti-spyware program. Note: Located in \%Program Files%\Antivirus 2009\ Note: Use SDFix under supervision. Note: Random numbers in the Start up name.
    3c1807pdY3cmlink.exe 3cpipe-3c1807pd3Com WinModem driver. See here for more WinModem information
    3capplnkY3capplnk.exeUS Robotics Modem driver
    3cdminicN3CDMINIC.EXE3Com DMI (DynamicAccess Desktop Management Interface) Agent associated with 3Com network cards

    This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.
    If you find the information on these pages useful, why not make a donation to help towards its maintenance :- or E-mail me.


    Engine Version 2.0 by CastleCops

    spacer spacer