CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

StartupList Index

Currently 17175 startuplist entries and growing...
Last updated on 2008-08-21 15:41:23 Eastern.
!! THESE ARE STARTUP PROGRAMS AND NOT TASK MANAGER PROCESS ITEMS !!


For more information on startup programs, including how to identify them and the information required for submitting additions to this list please refer to Content & Info. Reprinted with permission from Paul Collins who owns the copyright to the list. CastleCops also adds additional items that may not be in the original list but attempts are made to ensure the original is also updated. The full HTML list is here.

CastleCops is now hosting the official Pacs-portal forums. CastleCops has also cross-referenced startup entries with our File Hash database where appropriate. Comments or questions can be fielded here.

KEY:
  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z



    Random sampling...
    NameStatusFilenameDescription
    Generic Host Process for Win32 ServicesXwinlogon.exeAdded by a variant of the IRCBOT Note: Located in \%WINDIR%\System\ Note: Use SDFix under supervision. Not to be confused by the original file in \%WINDIR%\System32\ folder.
    Gestionnaire des tāches de WindowsXtaskmgr.exeDetected as Backdoor.Win32.Poison.fat by Kaspersky anti-virus. Note: Do not remove the legitimate file in \%WINDIR%\System32\taskmgr.exe Note: Use SDFix under supervision.
    GDMgr.exeUgdmgr.exe GuardMon is a commercial spyware program designed to monitor all forms of user activity on a computer
    GoBack Tray IconUGBTray.exeSystem Tray icon access to Roxio's (nee Adaptec) GoBack software which allows you to revert back to a previously working state on you hard drive if you install a new program and your system goes faulty - performing the same functions with extra features as System Restore on WinMe/XP systems. Disable before running Scandisk or Defrag. Not required for WinMe/XP users, recommended for Win9x/NT/2K users
    g.exeXg.exeAdded by the Backdoor.Graybird.Q TROJAN! Read the link, rootkit type stealth involved.
    GinaDllXntgina.dllAdded by a ANIG.A worm infection
    Graphic UpdateXopenglx.exeIdentified as Backdoor.Win32.IRCBot.ako MSN Worm! Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    GameSpotNkontiki.exeKontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops
    GainwardUTBPanel.exeConfiguration utility for Gainward graphics cards. Not required unless you use non-default settings. Available via Start -> Settings -> Control Panel
    general ml097eXgeneral.exe RapidBlaster Variant
    GSISETUP?[path],GsiInst.exe,INSTALL [path],V205Res 13BT Voyager ADSL modem related - what does it do and is it required?
    gigabit.exeXgigabit.exeAdded by the BEAGLE.U WORM!
    GremlinXintrenat.exeAdded by the DOOMJUICE VIRUS!
    GatorXgator.exe Gator eWallet adware. Please note that Claria Corporation no longer support GAIN-Supported software - see here
    Gravis Xperience Driver SupportUGrxp4exe.exeDriver for Gravis game controllers such as the Eliminator Aftershock. Must be loaded if you run the supplied application software for the controller to be recognized. Start it manually via a shortcut if not used
    GroksterNGrokster.exe Groster Peer-To-Peer File Sharing program
    Generic Host Process326a System BackupXscvhost326a.exeAdded by a variant of the W32/SDBOT WORM!
    gaimUgaim.exe Gaim is an instant messenger client with capability to connect to AIM, ICQ, MSN Messenger, Yahoo, IRC, Jabber, Gadu-Gadu and Zephyr networks.
    GenericHostXPXWinLoaderXP.exeAdded by the Troj/Bdoor-ACX TROJAN! Note: This trojan is located in C:\%WINDIR%\
    gcasDtServXgcasDtServ.exeAdded by an unidentified WORM or TROJAN. - Note - there IS in fact also a Microsoft Antispyware process bearing the same name, but it will not figure among the startup items!
    gimmysmileysXgimmysmileys.exeAdded by the Downloader.VB.xu identified by ewido. Note: More_info
    GStartupXGMT.exeGator spyware component - see here. Please note that Claria Corporation no longer support GAIN-Supported software - see here
    Generic Service ProcessXserv1ces.exeAdded by the W32/Agobot-JK WORM!
    Giganews AcceleratorUGiganewsAccelerator.exeRelated to Giganews_Accelerator A Usenet service. Note: Located in \%Program Files%\Giganews Accelerator\
    gcasServUgcasServ.exeMicrosoft, formerly Giant AntiSpyware
    GhostStartServiceNGhostStartService.exeRequired to run the Windows based wizard in Norton Ghost - added from the 2003 version. Will start automatically when you run the wizard
    Gadwin PrintScreenNPrintScreen.exeGadwin PrintScreen - utility to capture, print or save the current window
    Gene USB MonitorUUSBMonit.exeMonitors USB ports for insertion of Sandisk USB flashdrives.
    gsvXgsv.exeAdded by the ROBAL 1.0 backdoor TROJAN!
    GoogleDCClientNGoogleDCC.exe Google Compute Client - only present if you installed the Google Toolbar with "Google Compute" client active. Does complex calculations in the background when idle. If you want to turn it off go to your browser, click on the little double-helix on the Google Toolbar, and click "Stop Computing". No longer supported
    Games AccelerationXsvshost.exe EasySearch adware
    Google Desktop SearchUGoogleDesktop.exe Google_Desktop_Search - "a desktop search application that provides full text search over your email, computer files, chats, and the web pages you've viewed. By making your computer searchable, Google Desktop Search puts your information easily within your reach and frees you from having to manually organize your files, emails, and bookmarks."
    G_Server.exeXG_Server.exeAdded by the TROJ/FEUTEL-C and Troj/Feutel-J TROJANS!
    GhostSurfDelSatelliteYDeleteSatellite.exeRelated to SpyCatcher spyware remover from Tenebril. This file prevents rogue programs from sending personal information to a remote user via the Internet. If you use Spy Catcher with real time scanning, you'll want to leave this file in place. Note: See here
    GuardianNCMGrdian.exeMcAfee's QuickClean, an offline version of the one in their online Clinic. Normally run offline and not needed. Incidentally, incorporates more cleanup programs than the likes of WinOptimizer and System Mechanic
    G00123X(worm filename)Added by the BUGBROS VIRUS!
    Greetings WorkshopNGWREMIND.EXEYou really want to be reminded about somebody's birthday at the expense of resources?
    Guardian PC Security ToolsUPfft.exeRelated to PeerGuardian PC Security Tools. An Open Source Program. Note: located in C:\Program Files\Boomerang Software\Guardian PC Security Tools\
    GreasyPalmUpdate?GreasyPalmUpdate.exeAdded by SearchFast adware redirects mistyped urls in the browser to a custom search engine. Note: located in \%WINDIR%\
    goodXbadvir.exe W32/Silov-B Read the link, overwrites exe files with copies of itself
    GrpConvYgrpconv.exeMicrosoft Windows Program Group Converter - used by installers (ONLY in the RunOnce keys) - provides the translation of groups and group items to folders and links. Also see this MS Knowledge Base article,
    gwizXarpl.exeDetected as Spyware/Virtumonde by panda
    GuruNetUGuruNet.exe GuruNet lets you click on any word on your screen to get the relevant information you want.
    Google Earth ViewerNGOOGLEMAPS.EXE Google_Earth "combines satellite imagery, maps and the power of Google Search to put the world's geographic information at your fingertips."
    GhostSecuritySuiteUgss.exeRelated to Ghost_Security_Suite Protect the registry from unauthorized reading and modification and other tools.
    GRANgra.exeLooks at system resources at startup and warns you if they have dropped. Contains links to the Disk Clean Up, Defrag and Start Up Menu. It does have a link to a startup configuration utility. Similar to msconfig but can keep a list of disabled apps. Not really necessary. Only appears if you load the Gateway Startup Utility
    Generic Host Process for Win ServicesXmscvs.exeAdded by a variant of the SDBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    GBMLite7AgentYGBMAgent.exe Genie_Backup_Manager_Professional - "total system and data protection solution that combines ease-of-use and robust performance. It allows users to perform fast backup and recovery jobs reliably, and protects all MS Windows based desktops, laptops, and networked systems against various types of threats such as system failure, human error, and disaster."
    getwinXIE\winB_.exeAdded by the Troj/Banker-HS TROJAN!
    gremierXwscript.exe,gpremier.vbsAdded by the GPREMIER VIRUS!
    gtydfXiisca.exe Troj/Clagger-BB
    gwizXntsystem.exeAdded by the Win32/Nitwiz.A TROJAN! Note: This worm\trojan is located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K) It has a component that hijacks the securityproviders key Fix here
    Gestionnaire de disques universelXsysoobe.exeAdded by the Troj/Toader-A TROJAN! Note: This trojan file is found in the System\oobe (95/98/Me) or System32\oobe (Nt/2000/XP) folder.
    Go!Zilla Monster DownloadsXGo.exeDownload manager for resuming downloads and choosing multiple download locations. Advertising spyware
    gcasServXrealsched.exeAdded by a variant of the WIN32.TACTSLAY.A TROJAN! - NOTE - do NOT confuse with the Real Player executable as described here

    This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.
    If you find the information on these pages useful, why not make a donation to help towards its maintenance :- or E-mail me.


    Engine Version 2.0 by CastleCops

    spacer spacer