CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

StartupList Index

Currently 17175 startuplist entries and growing...
Last updated on 2008-08-21 15:41:23 Eastern.
!! THESE ARE STARTUP PROGRAMS AND NOT TASK MANAGER PROCESS ITEMS !!


For more information on startup programs, including how to identify them and the information required for submitting additions to this list please refer to Content & Info. Reprinted with permission from Paul Collins who owns the copyright to the list. CastleCops also adds additional items that may not be in the original list but attempts are made to ensure the original is also updated. The full HTML list is here.

CastleCops is now hosting the official Pacs-portal forums. CastleCops has also cross-referenced startup entries with our File Hash database where appropriate. Comments or questions can be fielded here.

KEY:
  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z




    Full List

    NameStatusFilenameDescription
    Auto UpdateXsvchost.exeAdded by the TROJ/DUMARDL-A TROJAN! - NOTE - this file is placed in the Winnt or Windows folder, and should NOT be confused with the legitimate Windows svchost.exe process, always located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup!
    Auto UpdateXdma.exeAdded by the W32/Rbot-AVO WORM! Note: This worm file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.
    Auto UpdatesXsvchost.exeAdded by the Troj/Cheuko-A TROJAN!
    Auto WinUpdateXtaskmrg.exeAdded by the W32/Rbot-AFA Worm! Read the link, keylogger/password stealing trojan(s) involved.
    AutoAdministratorXSERVICES.EXEAdded by the W32/Punya-A Worm Read the link, alters file associations
    AutobarUautobar.exeConnect buttons on the keyboard for internet direct access, etc. on HP computers
    AutoCAD Startup AcceleratorUacstart16.exePreloads some libraries that are used by AutoCAD in order to make the software load faster
    autoclkYautoclk.exeSagem Modem driver. Installed and required on systems running Windows 98 or ME
    AutoEANAhqrun.exeFor Creative Soundblaster Live! series soundcards. Specify for any audio application what audio preset to automatically associate with currently active speaker output. Available via AudioHQ
    AUTOEXEXAUTOEXE.exeAdded by the W32/SEMAPI-A WORM
    AutoInsQyuleXQyuleInstall.exeAdded by the Troj/Dloader-ZM TROJAN!
    autoloadXcftmon.exeIdentified as a variant of the Trojan.Spy.XUL Trojan. Note: located in %appdata%\ folder. Note: Use SDFix under supervision.
    autoloadXwindowsupdate.exeAdded by a variant of the WORM_SOCKS.D WORM! Note: Located in %appdata%\ Note: Use SDFix under supervision.
    autoloadXspooll.exeAdded by the Trojan-Dropper.Agent.snu TROJAN! Note: Located in %AppData%\
    AutoloaderaproposclientXApropos_Client_Loader.exe AproposMedia Adware
    AutoloaderaproposclientXcxtpls_loader.exe AproposMedia Adware
    AutoLoaderEnvoloAutoUpdaterXauto_update_loader.exe Envolo/AproposMedia adware updater
    AutoMate Task ServiceNautomate.exeTask scheduler for Unisyn Automate 4 task automation/macro running software. Available via a desktop shortcut or Start -> Programs
    AutoMate5UAm5HkWnd.exeRelated to Automate from Network Automation, Inc. A Task Service. Note: Located in C:\Program Files\automate\
    AutoMate6UAMEM.exeRelated to AutoMate Automate Repetitive Tasks. Note: Located in \%Program Files%\AutoMate 6\
    Automatic Defrag ManagerXdefrag.exeAdded by the W32/Rbot-AKE WORM!
    Automatic Media UpdateXCACHE.RVDAdded by the Troj/Bckdr-QHR TROJAN! Note: This trojan is located in C:\%WINDIR%\System32\ (XP/WinNT/2K) Read the link, allows remote access
    Automatic Media UpdateXHPLNT32.RVDAdded by the Troj/Bckdr-QHR TROJAN! Note: This trojan is located in C:\%WINDIR%\System32\ (XP/WinNT/2K) Read the link, allows remote access
    Automatic Microsoft Windows UpdaterXsuchost.exeAdded by the W32/RBOT-EQ WORM!
    Automatic UpdatesXalgs.exeAdded by a variant of the IRCBot family of worms and IRC backdoor Trojans. Note: Located in \%WINDIR%\System32\

    This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.
    If you find the information on these pages useful, why not make a donation to help towards its maintenance :- or E-mail me.


    Engine Version 2.0 by CastleCops

    spacer spacer