Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Alert!  Have a problem and would like to ask us for help? To learn how to ask your question Click Here!
Stop!  Do you have popups or other malware infecting your computer? If so, Start Here!
Question?  Are you having trouble using this site? Then you should visit the New User Orientation Center!



A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List  · Submit a Startup  · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · Computer Help Forums · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
K2ps_full.task K2ps_full.exe
X
Added by the JUNTADOR.K TROJAN!
VMemory protect k53lock.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
K6CPU.EXE K6CPU.EXE
N
Authenticates CPU as K6 in system properties
anhtaaa kacsde.exe
X
Added by the W32/Frethog-B Trojan.
KADxMain KADxMain.exe
U
Added by the KADxMain IntelliSonic Speech Enhancement systray icon by Knowles.
Kagwang kagwang.exe
X
Added by the W32/AutoRun-XU removable media worm.
kak kak.hta
X
Added by the KAKWORM WORM!
autoupdate service kaka.exe
X
Added by the TROJ/SYMPE-B TROJAN! ... Read More
Kalibump Kalibump.exe
U
Used with the now unsupported Kali software for on-line gaming. This is used to automatically bump up the priority of WinProxy to GREATLY improve game ... Read More
kalvsys kalv***32.exe [* = random char]
X
EliteBar/SearchMiracle adware installer
[not used] kane.exe
X
Added by the Backdoor.Dckane backdoor. This infection also installs the file c:\windows\system32\kane.dll. ... Read More
[Various Names] Kargo.exe
X
Part of the Wareout infection as described here.
<not used> karina.dat
X
A variant of the Trojan.Agent malware.
<not used> karna.dat
X
Added by the Troj/FakeVir-GL Trojan.
[not used] karnal32.dll
X
Added by the W32.Monikey@mm mass-mailing worm. This worm attempts to gather information found on your computer. ... Read More
Kasper Antivirus KASPERANTIVIRUS.EXE
X
Added by the SPYBOTER.GEN TROJAN!
KasperskyAv kaspersky.exe
X
Added by the MIMAIL.T WORM! Note - this has nothing to do with the real Kaspersky AntiVirus ... Read More
Windows Messenger Service kaspersky.exe
X
Added by the W32/Mytob-DP worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
kaspersky 7.0 Kaspersky.exe
X
Added by the W32/Autorun-AH removable media worm.
Kaspersky Antivirus KasperskyAV.exe
X
Added by a variant of the RBOT WORM!
KasperskyAVEng Kasperskyaveng.exe
X
Added by the NETSKY.V WORM!
kaspersky32 kasperskyLabs32.exe
X
Added by the W32/Rbot-GOT worm and IRC backdoor.
Microsoft kasperskyLive32.exe
X
Added by the W32/Rbot-GRT worm and IRC backdoor.
antivirus kaspery.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
kasutio kasutio
X
Added by the Backdoor.Rustock backdoor rootkit.
Windows Kernel Service kasvc.exe
X
A variant of the Backdoor.Win32.SdBot.bhk family of worms and IRC backdoor Trojans. ... Read More
KAT KAT.vbs
X
Added by the VBS/Soad-D mass-mailing worm.
Systray KAT.vbs
X
Added by the VBS/Soad-D mass-mailing worm.
KatchEm.exe KatchEm.exe
X
An overwriting virus. This virus will overwrite all .exe files with itself.
KAVPersonal50 Kav.exe
Y
Kaspersky Anti-Virus Personal 5.0
Protocol Settings kav.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
kviurs kav.exe
X
Added by the W32.SillyFDC.BBJ removable media worm.
NvCplScan kav32.exe
X
Added by the W32/Forbot-EW network worm, also adding NvCplScan as the display & service names of a new service it creates. ... Read More
kavir kavir.exe
X
Identified as a variant of the Email-Worm.Win32.Zhelatin.xe worm.
<unknown CLSID> kavlg.exe
X
Added by the Troj/Poison-D backdoor Trojan.
lsass kavmm.exe
X
Added by an unidentified WORM or TROJAN! - NOTE - do NOT confuse with the legitimate Kaspersky antivirus module as described here . Contrary to this ... Read More
vedara kavms.exe
X
Added by the Troj/Bckdr-PNL backdoor Trojan.
kava kavo.exe
X
Added by the Troj/Lineag-GLG password-stealing Trojan for the online game Lineage. ... Read More
kaspersky anti-hacker KAVPF.exe
Y
Kaspersky Anti-Hacker firewall ... Read More
kavpfw KavPFW.exe
Y
KingSoft Personal Firewall ... Read More
kavstart KAVStart.exe
Y
KingSoft Personal Firewall ... Read More
kavsvc kavsvc.exe
Y
Kaspersky antivirus
kavsvc kavsvc.sys
X
Added by the Hacktool.Rootkit rootkit.
WIn32S Java DLL kavsvx.exe
X
Added by the W32/Agobot-RZ worm/IRC backdoor trojan.
KAZAA kazaa.exe
N
KAZAA is a file-sharing program which unfortunately being ad-based includes "Cy-door" adware. Check here for information about "Cy-door" and here for ... Read More
Kazaa lptt01 kazaa.exe
X
Variant of the RapidBlaster parasite (in a "kazaa" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
Kazaa ml097e kazaa.exe
X
Variant of the RapidBlaster parasite (in a "kazaa" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
kazaalite kazaalite.exe
N
Kazaalite is a file sharing client - not to be confused with the original Kazaa program. Unlike the original, this one does not contain any advertisin ... Read More
KaZooM KaZooM.Exe
N
KaZoom from Blue Haven Media - "add-on application that automatically speeds up the download process and finds the files you want with far more power ... Read More
InternalSystray Kazza.exe
X
Added by a variant of the OPTIX TROJAN! Note - unlike the valid KaZaA executable, this is located in C:\Windows\System (Win9x/Me), C:\Winnt\System32 ( ... Read More
Messenger KB08953265.exe
X
Added by the Trojan.Esteems.F Trojan.
<not used> kb1111p.dll
X
Added by the Troj/Cabat-B Trojan.
XP HOT Ops KB15oooo.exe
X
Identified as a variant of the Worm:Win32/Wootbot.gen worm.
{ED0ACB58-556F-21DA-DDFE-6D20F3F611BB} kb1ss1p.dll
X
Added by the Troj/Agent-GDA Trojan.
{686BC654-BC45-D597-22DC-CA34BD693002} kb32.com
X
Added by the Troj/Tometa-E Trojan.
explorer.exe kb32.exe
X
This infection hijacks Internet Explorer to redirect to search-area.com. More information can be found here - Troj/Malche-A. ... Read More
[not used] KB350217M.LOG
X
Added by the Troj/LegMir-BBB password-stealing Trojan for the online game The Legend of Mir. ... Read More
<not used> KB371662M.LOG
X
Added by the Troj/Lineag-ABH password-stealing Trojan for the online game Lineage. ... Read More
{729CC054-9FC8-238E-0A98-75B7A1C73972} kb478342122.exe
X
Identified as a variant of the Infostealer malware.
KB891711 KB891711.EXE
Y
This security update is to address the following vulnerability Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution. As ... Read More
Network Logon KB8964225.log
X
Added by the Troj/Lmir-EX password-stealing Trojan.
<not used> KB915865.exe
X
Added by the W32.Dawin removable media worm.
kb918547 KB918547.EXE
Y
Related to the Microsoft Added by the MS06-026 security update. This patch is only for the Windows 98 and Millenium operating systems. ... Read More
KB923810 KB923810.exe
X
Added by the Backdoor.Bandock.A backdoor Trojan. Backdoor.Bandock.A is a Trojan horse that opens a back door on the compromised computer. ... Read More
KBD KBD.EXE
U
Multimedia keyboard manager. Required if you use the multimedia keys
kbd kbd.sys
X
Added by a variant of the W32/Inject worm.
FLMTRUSTKB KbdAp32A.exe
U
Keyboard utility for a Trust brand wireless keyboard. If you disable this entry you will not be able to use any of the keyboard hotkeys or other non- ... Read More
kbdctrl kbdctrl.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
kbddrv32 kbddrv32.exe
X
Added by the CRYPTER.A TROJAN!
kbddrvinf kbddrvinf.exe
X
Added by the CRYPTER.A TROJAN!
KBDIC kbdic.exe
X
Part of a trojan package. Make sure you delete the right file! KBDIC.DLL and KBDIC.KBD seem to be valid Windows files. ... Read More
KbdRunOnce KbdRunOnce.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
<not used> kbdsys.exe
X
Added by the W32/AutoRun-AMW removable media worm.
TypingSatellite KBOOST.exe
N
Typing Master 2002 background utility that collects typing errors and builds up customised typing lessons for your needs. Available via Start -> Progr ... Read More
XP HOT FIS KBX.exe
X
Added by the W32/Forbot-GS worm and IRC backdoor.
Winmplayer KB_(RandomNumber).exe
X
Identified as the Trojan-Downloader.Win32.Murlo.fi Trojan downloader.
KCeasy KCeasy.exe
N
KCeasy - a Windows peer-to-peer filesharing application which uses giFT as its 'back end' foundation. The networks currently supported are OpenFT and ... Read More
Update kchts.EXE
X
Added by the W32/Clantard-A worm.
kcp kcp.sys
X
Added by the ROJ_ROOTKIT.EW rootkit.
cpqek kcpqek.exe
U
For Compaq PC's. Easy Access button support for the keyboard
Kcrner Kcrner.exe
X
Added by the Troj/Lineag-AIL password-stealing Trojan for the online game Lineage. ... Read More
Windows Update kdb34894234.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
KdbMgr.exe KdbMgr.exe
U
When running Windows under Apple Boot Camp, this makes the F(1-7) buttons work like in Mac Os X and you will be able to lighten or darken the display, ... Read More
kdc kdc.dll
X
Added by the Backdoor.Fuwudoor backdoor.
<not used> kdhut.exe
X
Added by the Troj/Zlob-ACL Trojan.
<not used> kdjjz.exe
X
Added by the Troj/DNSChan-LZ Trojan that changes the DNS settings on your computer. ... Read More
<not used> kdkat.exe
X
Added by the Troj/Zlob-ABP Trojan.
<not used> kdlfk.exe
X
Added by the Troj/Zlob-ABQ Trojan.
Mabochine Deybug Malnager kdm.exe
X
An Sdbot WORM variant adds the file, and the IRC backdoor TROJAN component allows for unauthorized remote access to the computer. ... Read More
kdnvg.exe
X
Added by the Zlob infection.
KDWin KDWin.exe
X
Added by the W32/Autome-A removable media worm.
Microzoft_Ofiz KdzEregli.exe
X
Added by the AMUS.A WORM!
ke32paag ke32paag.dll
X
A variant of the Haxdoor Trojan. This infection is hidden by the ke32psag.sys rootkit. ... Read More
ke32psag ke32psag.sys
X
A variant of the Haxdoor rootkit.
AVXSearch service ke7dnl.sys
X
Added by the Troj/Haxdoor-BH rootkit Trojan.
AVSearch service kednl6.sys
X
Added by the Troj/Haxdoor-AT backdoor Trojan.
KeenfinderSrch Service keenfinder136.exe
X
Identified by Microsoft as the BrowserModifier:Win32/OneStepSearch.B adware.
Keenvalue Keenvalue.exe
X
Keenvalue spyware - see here
Disk Keeper keep.exe
X
Mslware - recognized by Kaspersky antivirus as Trojan-Dropper.Win32.Small.ve
Java Update keeper.exe
X
Added by the Troj/Agent-DIS Trojan.
<random name> keepSafe.exe
X
Added by the TROJ_KILLAV.KAX Trojan.
kek kek.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.aajt malware.
Logitech SetPoint KEM.exe
U
Keyboard and mouse drivers and utilities for Logitech's latest products - supersedes iTouch and MouseWare on their older products. Required if you use ... Read More
KEMailKb KEMailKb.EXE
U
Controls the buttons at the top of the Micro Innovations 650i Internet Access Keyboard. If you disable it you cannot use the buttons - like volume co ... Read More
Kemet kemet.exe
?
??
windows task manager emulator kennewr.exe
X
Added by the W32/SPYBOT-FA WORM! ... Read More
KeNotify KeNotify.exe
U
Toshiba utility found on their laptops. This program is responsible for the Toshiba LapTop Help 'FlashCards' utility that sits at the top of the scre ... Read More
kERe kERe.exe
X
Added by the W32/Brontok-BT worm.
Microsoft Update Emulator kern-mxe.exe
X
Added by a variant of the RBOT WORM!
kernel32 kern32.exe
X
Added by the BADTRANS.A WORM!
Win32Updater KERNAL32.EXE
X
Added by the W32/Spybot-OK worm and IRC backdoor.
Windows Kernel 64 kernal64.exe
X
Added by the W32/Yimp-B Instant Messaging worm.
[not used] Kerne0110.exe
X
Added by the Troj/Lineage-FU password-stealing Trojan for the online game Lineage. ... Read More
Kerne0223 Kerne0223.exe
X
Added by the Troj/LegMir-ZA information stealing Trojan.
Kerne0813 Kerne0813.exe
X
Added by the Troj/Lineag-ADO password-stealing Trojan for the online game Lineage. ... Read More
[not used] Kerne12.exe
X
Added by the Troj/Lineage-AS Trojan.
[not used] Kerne121.exe
X
Added by the Troj/Lineage-BW password-stealing Trojan for the online game Lineage. ... Read More
[not used] Kerne1211.exe
X
Added by the Troj/Lineage-CA password-stealing Trojan for the online game Lineage. ... Read More
[not used] Kerne14.exe
X
Added by the Troj/Lineage-BA password-stealing Trojan for the online game Lineage. ... Read More
[not used] Kerne1412.exe
X
Added by the Troj/Lineage-OJ password-stealing Trojan.
paint KerneI.exe
X
Added by the Troj/Bancos-AWK Trojan. The Trojan targets users of certain Brazilian banks. ... Read More
paint KerneI.exe
X
Added by the Troj/Bancos-AWK banking Trojan.
C:\WINDOWS\kernel%32.exe kernel%32.exe
X
A Haxdoor installer.
Plob kernel.com
X
Added by the OPTIXPRO.12 TROJAN!
kernel32 kernel.dli
X
Added by the NETDEVIL.B TROJAN!
Kernel32 Kernel.dll
X
Added by the REDLOF.M VIRUS!
Microsoft Windows Kernel.exe
X
Added by the VBS/Edibara-A visual basic script virus. VBS/Edibara-A will attempt to modify files with htm and html extensions and include a segment of ... Read More
Svchost Connection Monitor kernel.exe
X
Unknown malware.
kernel kernel.exe
X
A variant of the Trojan.Matcash malware.
Microsoft Windows Kernel.vbs
X
Added by the VBS/Edibara-A visual basic script virus. VBS/Edibara-A will attempt to modify files with htm and html extensions and include a segment of ... Read More
kernel12.exe kernel12.exe
X
Added by an unidentified WORM or TROJAN!
Win32G Kernel32.com
X
Added by the ESTRELLA TROJAN!
kernel32 kernel32.dlI
X
Added by the NETDEVIL.15 TROJAN!
kernel32 kernel32.dll.vbs
X
Added by the W32/Wekode-A worm.
Kernel32 Kernel32.exe
X
Added by a number of VIRUSES, WORMS and TROJANS!
Windoes Kernel kernel32.exe
X
Added by the KICKIN.A (or CYDOG.C) WORM!
Windows Kernel32.exe
X
Added by the TENDOOLF WORM!
Services kernel32.exe
X
Added by the Troj/EliteKey-B keylogger.
Microsoft Windows System Kernel kernel32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Win32 Kernel core component Kernel32.pif
X
Added by the MOKS VIRUS!
<not used> kernel32.sys
X
Added by the W32/SillyFDC-N worm. W32/SillyFDC-N spreads through removeable storage devices, including floppy drives and USB keys. The worm attempts t ... Read More
Kernel32 Kernel32.win
X
Added by the GAGGLE.D or GAGGLE.E WORMS!
Distributed File System kernel32dll.exe
X
Added by the MYFIP-C or MYFIP.K WORMS!
Distributed Link Tracking Extensions kernel32dll.exe
X
Added by the W32/Myfip-I WORM with a service display name of "Distributed Link Tracking Extensions", also. ... Read More
Kernel32 kernel32s.exe
X
Added by the SDBOT-PU TROJAN!
Microsoft Kernel Patch kernel3ox.exe
X
Added by the W32/Rbot-UJ network worm. When this infection starts it connects to an IRC server where it waits for remote commands to execute. ... Read More
KernelBoot KernelBoot.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
Kernell32 Kernell.dll
X
Added by the DESTINY.A TROJAN!
System kernels32.exe
X
Added by the DLOADER-FC or Troj/Vixup-B trojans.
SystemTools kernels32.exe
X
Added by the DLOADER-FC TROJAN!
Service System kernels32.exe
X
Added by the Troj/Bancos-DA password-stealing trojan for Brazilian banks.
System kernels64.exe
X
Added by the Troj/Vixup-V Trojan.
System kernels8.exe
X
Added by the Troj/Vixup-BN Trojan.
System kernels88.exe
X
Added by the Troj/Tibs-PM Trojan.
Microsoft Update Emulator kernelvmon.exe
X
Added by the W32/Rbot-CH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
KernelVolume KernelVolume.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
<unknown> kernelw.sys
X
Identified as the Trojan.Peed.IIG/Packed.Win32.Tibs.ap malware.
Kernelw Kernelw32.exe
X
Added by the INDOR.E WORM!
System kernelwind32.exe
X
Identified as the Packed.Win32.Tibs.at malware.
System kernelwind64.exe
X
Added by the Nuwar/Storm worm.
KernelRuntime kernel_runtime.exe
X
Added by the W32/Mytob-JN mass-mailing worm.
Kerner0826 Kerner0826.exe
X
Added by the Troj/Lineag-DIG Trojan. Troj/Lineag-DIG is a password stealing Trojan for the online game Lineage. ... Read More
Laz Kernn.exe
X
Added by the Troj/Bancos-LN password stealing TROJAN!
[not used] KesenjanganSosial.exe
X
Added by the W32/Brontok-K mass-mailing worm.
myMoney Keuangan.exe
X
Added by the Trojan.Hidexls Trojan. Trojan.Hidexls is a Trojan horse that hides Microsoft Excel files. ... Read More
MicroSoft Toolbar key.exe
X
Added by the W32/Rbot-AEW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
KeyAccess keyacc32.exe
Y
KeyServer KeyAccess client software - "when the KeyServer program is launched, the KeyServer process becomes active so license requests from client co ... Read More
Keybdcntl keybdcntl.exe
X
Added by a variant of the CRYPTER.C TROJAN!
[Various Names] keybdll.exe
X
Part of the Wareout infection as described here.
NLS Keyboard keyboard.exe
X
Added by a variant of the SPYBOT WORM!
Microsoft TaskManager Updater keyboard.exe
X
Added by the W32/Rbot-ALU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Windows Keyboard service keyboard.exe
X
Added by the W32/Rbot-CRF worm and IRC backdoor.
Microsoft Display Driver keyboard.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
keyboard_enum keyboard_enum.exe
X
Added by the Troj/Bdoor-GP backdoor trojan.
Srv32Win KeyCaptor.exe
U
Added by the Spyware.KeyCaptor surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
{18B0E5C2-99CB-11CF-AXX5-00401C648513} keygen.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
SiS Windows KeyHook keyhook.exe
U
SIS graphics cards related: "Super VGA Keyboard Daemon" - hooks into the keyboard processing chain in order to enable hotkey settings ... Read More
WinEssential Keyhost.exe
X
Hijacker - hailing from jraun.com
VC_Log keylog.exe
X
Added by the Adware.Starware spyware.
ABC keylogger.exe
X
Monitors keystrokes so you can check if someone has typed anything while your away from your PC. Reported as spyware by SpyCop in their FAQ ... Read More
1Win32Cfg Keyloggerpro.exe
U
KeyloggerPro - monitoring software
CherryKeyMan KeyMan.exe
U
Multimedia keyboard manager for the Cherry keyboard series. Only required if you use any of the special keys ... Read More
keymap keymap.exe
U
System Tray utility and background task used by games produced by Kesmai (published by Interactive Magic) and which enables you to program keys to do ... Read More
Microsoft System Checkup Keymgr.exe
X
Added by the DONK.M WORM!
KeyPatrol KeyPatrol.exe
U
KeyPatrol - detects Key Loggers ("keyboard loggers" or "keyloggers") using both behavioral and pattern-matching algorithms ... Read More
keyserv keyserv.exe
X
Added by the Spyware.KeyThief SPYWARE!, Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. ... Read More
ChromeMark keysh.exe
?
Related to this. Don't know what keysh.exe does though and if it's required
klog Keyspy.exe
U
Added by the Hacktool.KeyLoggPro.B keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
pskl keyspy.exe
U
Added by the Spyware.KeyboardLogger surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
Toshiba Key State KEYSTATE.EXE
U
Displays an icon in the System Tray indicating the state of the CAPS LOCK key. Can be handy on (e.g., Toshiba) laptops which do not have a Caps Lock i ... Read More
keystroke keystroke
U
QuickLaunch is a spyware program that logs keystrokes and captures screenshots. If you didn't install this yourself remove it. ... Read More
keystroke keystroke.exe
U
Added by the Spyware.QuickLaunch surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
Key Text KeyText.exe
N
Key Text 2000 from MJMSoft Design - utility to automate repetitive keyboard tasks. Available via Start -> Programs ... Read More
keytext KeyText.exe
N
Key Text 2000 from MJMSoft Design - utility to automate repetitive keyboard tasks. Available via Start -> Programs ... Read More
WinEssential keyword.exe
X
Jraun.com hijacker
[Various Names] KeywordFinder.exe
X
Part of the Wareout infection as described here.
campaniform kfcpnd.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
ecgfb kfhrvq.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
Service System kgbfsm344.exe
X
Added by the Troj/Bancos-FS password-stealing Trojan for Brazilian banks.
kgjdi27 kgjdie27.exe
X
Added by the Sdbot.AP WORM! ... Read More
{735e980d-45d2-4777-af82-9923d3c8d3ae} kgkdbsk.dll
X
Part of the Zlob trojan that displays fake security alerts for the rogue anti-spyware program called SpyLocked 3.7. ... Read More
Winsock2 driver kgzgjkpcw.exe
X
Added by the SDBOT.T TROJAN!
SETPOINT Logitech Inc KHALMNP.exe
X
Added by the W32/Rbot-AAX WORM/IRC backdoor trojan!
Logitech Hardware Abstraction Layer Khalmnpr.exe
U
Logitech Bluetooth mouse Hardware Abstraction layer. A "hardware abstraction layer" is an interface that enables adding support for new devices and ne ... Read More
KHATARNAK Loader khatarnak.exe
X
Added by the W32/SillyFDC-C removable media worm.
<not used> KHATRA.exe
X
Added by the W32/Autoit-C removable media worm.
Xplorer KHATRA.exe
X
Added by the W32/AutoRun-AKR removable media worm.
Taskman KHATRA.exe
X
Added by the W32/AutoRun-AKR removable media worm.
nwiz KHATRA.exe
X
Added by the W32/Orbina-A worm.
khooker khooker.exe
N
SiS Keyboard Daemon. System Tray utility which gets installed by the drivers of the latter day SiS VGA cards. Can cause errors at startup and isn't re ... Read More
SiS KHooker khooker.exe
N
SiS Keyboard Daemon. System Tray utility which gets installed by the drivers of the latter day SiS VGA cards. Can cause errors at startup and isn't re ... Read More
kdx KHost.exe
N
KonTiki Secure Delivery Plug In related. "The Kontiki Delivery Management System (DMS) is a secure delivery network for distribution of video, softwar ... Read More
4oD KHost.exe
U
Software, purchased by Verisign, that provides a secure distrubution network for video, software, images, and other media. ... Read More
{c82e1789-207a-4b8a-806f-76b62dfac2a2} khtbpdl.dll
X
Zlob Trojan that installs VirusProtectPro 3.5 and shows fake security alerts from your Windows taskbar. ... Read More
khtml khtml.sys
X
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
[not used] kiamarsi.exe
X
Added by the Troj/Detest-A Trojan.
Yahoo kib.htm
X
Added by the W32/Autorun-L removable media worm.
KICKMON.EXE KICKMON.EXE
U
KeepItClean - utility that deletes safe to remove files, cookies, browsing history, etc. This is the scheduler - if you don't schedule clean-ups it is ... Read More
[Various Names] killall.exe
X
Part of the Wareout infection as described here.
KillAndClean KillAndClean.exe
X
Kill & Clean is a rogue anti-spyware that is known to be installed with other malware. This program should not be trusted and if you have this progra ... Read More
Dlload killer.exe
X
Added by the Troj/KillAV-FK Trojan.
<not used> killer.exe
X
Identified by Kaspersky Antivirus as a variant of the Virus.Win32.AutoRun.abt removable device worm. ... Read More
Windows32 killILLUMINATI.exe
X
Added by the P2P-Worm.Win32.VB.dg P2P worm.
cartao killing.exe
X
Added by the Troj/Dloader-QN downloader trojan.
Kill Popup KillPopup.exe
U
KillPopup - pop-up stopper
<not used> killVBS.vbs
X
Added by the VBS.Autill worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate file. ... Read More
SCRNSAVE.EXE kimmo.scr
X
Added by the Troj/Antinny-N Trojan.
System Startup kimochi.exe
X
Added by a variant of the WIN32.RBOT WORM!
kimochiz.exe kimochiz.exe
X
Added by the TROJ/MDROP-BB TROJAN! ... Read More
Kinberlink Kinberlink.exe
N
Kinberlink network messaging. Available via Start -> Programs
{A797F5CE-088E-F569-4314-616820293A49} kiral.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
faslkakj11 kjgagklj11.exe
X
Added by the Troj/LegMir-ARE password-stealing Trojan for the online game, the Legend of Mir. ... Read More
Microsoft Manager 2 KKI2.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft Manager 3 KKI3.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft Manager 4 KKI4.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft Update Kkk.exe
X
Added by the W32/Rbot-AHL worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
KKM Service kkm.exe
X
Added by the W32/Nanpy-I worm.
bimaculate kknwg.dll
X
Zlob Trojan that infects you with the VirusHeat rogue anti-spyware program. Please use the guide below to remove this infection. ... Read More
{ccf982af-f3aa-48c4-97c4-ecdea4bd3fc3 kkqfb.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
kl1 kl1.sys
Y
Driver used by the Kaspersky Anti-Virus.
Kaspersky Lab Boot Guard Driver klbg.sys
Y
Driver used by Kaspersky Antivirus.
{mqqntcra-fbra-gyng-uimk-rsvbrwisftou} kldtm.exe
X
Added by the TSPY_DELF.CFC Trojan.
RKLG Startup klg.exe
U
Added by the Spyware.LocalKeylog keylogger. You should uninstall this software if it was not installed by yourself. ... Read More
klif klif.sys
Y
Driver used by the Kaspersky Anti-Virus.
Kaspersky Anti-Virus NDIS Filter klim5.sys
Y
Driver used by Kaspersky Antivirus.
klite klite.sys
X
A variant of the Haxdoor rootkit.
msconfig klog.exe
X
Added by the Troj/BDoor-AHK spyware Trojan.
{7B566F8A-624C-2570-0B75-A27CDC7119CF} klsdw.exe
X
A variant of the Troj/Bifrose-VF malware.
WinAC v4 klsuicbn.exe
X
Added by the FORBOT-CS WORM!
KeyMaestro kmaestro.exe
U
Multimedia keyboard manager. Required if you use the multimedia keys
System kmc.dll
X
Added by the Troj/Dropper-BT dropper Trojan. This infection also makes the file C:\Windows\csrss.exe. ... Read More
Panasonic PCFAX for Multi-Function Station software KmPcFax.exe
?
Related to the fax function for certain Panasonic multi-function printers.
KeimoServices kmsvc32.exe
X
Added by the W32/Sdbot-AHE WORM/IRC backdoor trojan!
kmw_run.exe kmw_run.exe
U
Kensington MouseWorks - mouse/trackball software. Not required unles you use any special features ... Read More
kmw_show.exe kmw_show.exe
U
Kensington MouseWorks - mouse/trackball software. Not required unles you use any special features ... Read More
WinSrv kn0x.exe
X
Added by the HOBBIT.F WORM!
Microsoft Agent knchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Disk Knight Knight.exe
X
Added by the W32/Autorun-H removable drive worm.
KodakCCS KodakCCS.exe
Y
Kodak DC File System Driver
KOfcpfwSvcs.exe KOfcpfwSvcs.exe
X
Identified as a variant of the Troj/PcClien-WI backdoor.
msnupdt kolie.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Bron-Spizaetus-5118REPM komodo-6321422.exe
X
Added by the W32/Brontok-R mass-mailing worm.
Warga KompTi KOMPTI.exe
X
Added by the Troj/Pitkom-A Trojan.
Pujangga KOMPTI.exe
X
Added by the Troj/Pitkom-A Trojan.
Konni Symbol Autostart KonniSymbol.exe
N
Gives configuration access to RagTime Solo professional business publishing software. RagTime Solo is the private user version of RagTime 5 ... Read More
cnet kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
GameSpot kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
kontiki kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
zdnet kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
Websense CPM Report Scheduler koovyjyna.exe
X
Added by the Troj/Bdoor-AMP backdoor.
kopmet kopmet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
Kota P4hlawan Kota P4hlawan.exe
X
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
KPDrv4XP KPDrv4XP.exe
Y
MediaKey USB Keypad Driver
kpem kpem.sys
X
Added by the Trojan.Duganss Trojan downloader.
Sunbelt Kerio Personal Firewall 4 kpf4ss.exe
Y
This is the main executable for the Sunbelt Kerio Personal Firewall.
kprof kprof
X
Added by the Trojan-Proxy.Win32.Wopla.ag rootkit.
Kr0n1C Kr0n1C.exe
X
Added by the W32/Brontok-BO mass-mailing worm.
krag krag.exe
X
Added by the W32/Agent-FOW worm.
kraidman Kraidman.exe
U
Related to TOSHIBA_RAID_CONSOLE Note: Located in C:\Program Files\TOSHIBA\TOSHIBA RAID\Console\ ... Read More
KREC32 krec32.exe
U
StarrCommander Pro Keystroke logging software
Microsoft Document krisp.exe
X
Added by the SDBOT-RQ WORM!
krisvc.exe krisvc.exe
X
Added by the Infostealer.Kurofoo.B information stealing Trojan.
System krln32.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
startkey krnl.exe
X
Added by the Troj/Bifrose-S Trojan.
[not used] krnl32.dll
X
Added by the Troj/Vipgsm-J keylogger and password-stealing Trojan.
Kernel32 krnl32.exe
X
Added by the EPON WORM!
Kernel CryptoModule krnllds.sys
X
Added by a variant of the TR/Rootkit.Gen rootkit Trojan.
kernel manager krnlmgr.exe
X
Added by the TROJ_JUNY.A TROJAN! ... Read More
Krnlmod Krnlmod.exe
U
Keylogger - see here. Given a "U" recommendation because it depends if you intentionally installed it. If you didn't, treat it as "X" and uninstall o ... Read More
x86 Kernel krnlx86.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
CPU FUN Controller kryo2.sys
X
Added by a variant of the Goldun.Fam Trojan.
kryostm kryostm.dll
X
Added by a variant of the Goldun.Fam Trojan.
cwingllib ksdlmvbs.exe
X
Added by the Trojan.Slapew.D Trojan. Trojan.Slapew.D is a Trojan horse that can be used to send unsolicited email through the compromised computer. It ... Read More
KSDT1983 KSDT1983.sys
X
Added by the Troj/Agent-CIQ Trojan.
ksnhtr ksnhtr.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
MSRegScan KSPDemo.exe
U
Added by the Spyware.KeyStalker surveillance software. Spyware.KeyStalker is a spyware program that records screen shots and logs keystrokes on the co ... Read More
Kernel spooler kspool.exe
X
Added by the W32.Tupse worm. W32.Tupse is a worm that spreads through mapped drives. ... Read More
K Print Spooler kspoold.exe
X
Added by the W32.Tupofse.B virus.
Ksrv32 Ksrv32.exe
X
Added by the W32/Agobot-PI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
KClient kstatus.exe
U
KClient Kerberos client software for Win32 systems. It provides the libraries and utilities needed to use Kerberos-based PC applications developed by ... Read More
Nvidia Startup Manager ksvc32.exe
X
Added by the Troj/Agent-IWD Trojan.
Microsoft AntiSpyware KT06.pif
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
KTAX Auto Loader ktax.exe
X
Added by the W32/Sdbot-MZ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
ktchnsnk ktchnsnk.exe
U
HP program found with the Office Jet 500/600/700 series which initializes the Office Jet manager each time the computer is booted up or rebooted ... Read More
WindowsUpdate kter.exe
X
Unknown malware.
Start RF Wireless Keyboard ktrexe.exe
Y
Yuanxun Electronics RF wireless keyboard driver
{af8bca8b-a9f1-471d-bdcd-caa14be2bdd9} ktrxe.dll
X
Zlob Trojan that installs VirusProtectPro 3.6 and shows fake security alerts from your Windows taskbar. ... Read More
{4fbbdfd6-2ca9-4bba-93e4-aadf75321bca} kuhmk.dll
X
A Trojan used by the rogue anti-spyware program AntiVermins. This Trojan, when installed, will display fake security alerts on your taskbar and instal ... Read More
<not used> kurva.dat
X
Identified as a variant of the Trojan.Virantix.B malware.
<not used> kus109.dat
X
Identified as a variant of the AdWare.Win32.Agent.zo malware.
kvasoft kva8wr.exe
X
Added by the W32/AutoRun-AFQ removable media worm.
<not used> kvdxscma.dll
X
Added by the TSPY_ONLINEG.IRZ malware.
{4D561258-45F3-A451-F908-A258458226D4} kvdxsdma.dll
X
Added by the PWS-OnlineGames.i password-stealing Trojan.
{FD561258-45F3-A451-F908-A258458226DF} kvdxsoma.dll
X
Added by the PWS-OnlineGames.q password-stealing Trojan for online games.
{cc824bb2-d4b3-41f1-bba0-f8240e4cc495} kvfvw.dll
X
Zlob Trojan that installs VirusProtectPro 3.7 and shows fake security alerts from your Windows taskbar. ... Read More
KvmSecure.exe KvmSecure.exe
X
Added by the KvmSecure rogue anti-spyware program.
<not used> kvmxfma.dll
X
Identified by Kaspersky Antivirus as a variant of the Trojan-Dropper.Win32.Mudrop.fg malware. ... Read More
kerio vpn client kvpnclient.exe
U
Kerio VPN Client ... Read More
Kvsc3 Kvsc3.exe
X
Added by the Troj/PWS-ANM password-stealing Trojan.
kvxqmtre kvxqmtre.dll
X
Identified as a variant of the Adware.Agent malware.
KeyWallet KWallet.exe
U
"KeyWallet is a useful and convenient desktop utility that spares you the trouble of filling in your logins, passwords and other personal data manuall ... Read More
KWatch1 KWatch1.sys
X
Rootkit added by the Troj/Agent-DZY Trojan.
TA_Start kwinrodv.exe
X
Added by a variant of the Zenosearch adware. Adware.ZenoSearch is an adware that displays pop-up ads based on searches the user performs on popular we ... Read More
kx509 kx509_kfwk5.exe
U
Kerberos Secure Authentication for Windows ... Read More
kX Mixer kxmixer.exe
N
Provides Mixer and Control functionality to KxProject Audio driver for EMU10k based soundcards ... Read More
[not used] kxrnxl32.dll
X
Added by the Troj/Gina-K Trojan.
kxva kxvo.exe
X
Added by the Trojan.Lineage.Gen!Pac.3 password-stealing Trojan.
kyk control settings KYSVCXD.EXE
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
{f39d0dee-b2f0-4591-9187-1cc39c1df98a} kzpkwj.dll
X
Zlob Trojan that installs VirusProtectPro 3.7 and shows fake security alerts from your Windows taskbar. ... Read More
kzq5re kzq5re.sys
X
Added by the Backdoor.Rustock backdoor rootkit.


> Status Key
Each entry in the database will have a Status assigned to it. The key to this status is the following:
  • Y - This status flag means that this entry should be left alone and be allowed to run as if it is unchecked it may break the functionality or use of a particular program.
  • N - This status flag means it is unnecessary to run this program automatically when Windows starts as you can run it manually when necessary.
  • U - This status flag means it is up to you whether or not you feel this program needs to run automatically.
  • X - This status flags means the item should definitely not start up automatically. Items that have this flag are generally malware such as viruses, trojans, hijackers, spyware but could also be programs that are not desirable to run on your computer.
  • ? - This status flag means the status of this entry is unknown at this time and more research is necessary.
If you require assistance in removing one of these files you can ask us in the Startup Database Forum.

> Disclaimer
It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. BleepingComputer.com will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides


Portions of this database © Paul Collins
© 2003-2009 All Rights Reserved Bleeping Computer LLC.
PGT: 0.16084 Queries: 5