Welcome Guest (Log In | Create Account)
New Member? Join for free.




A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List  · Submit a Startup  · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
kdnvg.exe
X
Added by the Zlob infection.
1Win32Cfg Keyloggerpro.exe
U
KeyloggerPro - monitoring software
4oD KHost.exe
U
Software, purchased by Verisign, that provides a secure distrubution network for video, software, images, and other media. ... Read More
<not used> KB371662M.LOG
X
Added by the Troj/Lineag-ABH password-stealing Trojan for the online game Lineage. ... Read More
<not used> kernel32.sys
X
Added by the W32/SillyFDC-N worm. W32/SillyFDC-N spreads through removeable storage devices, including floppy drives and USB keys. The worm attempts t ... Read More
<not used> kdlfk.exe
X
Added by the Troj/Zlob-ABQ Trojan.
<not used> kdkat.exe
X
Added by the Troj/Zlob-ABP Trojan.
<not used> kdhut.exe
X
Added by the Troj/Zlob-ACL Trojan.
<not used> kdjjz.exe
X
Added by the Troj/DNSChan-LZ Trojan that changes the DNS settings on your computer. ... Read More
<not used> kvmxfma.dll
X
Identified by Kaspersky Antivirus as a variant of the Trojan-Dropper.Win32.Mudrop.fg malware. ... Read More
<not used> kb1111p.dll
X
Added by the Troj/Cabat-B Trojan.
<not used> KB915865.exe
X
Added by the W32.Dawin removable media worm.
<not used> kurva.dat
X
Identified as a variant of the Trojan.Virantix.B malware.
<not used> kus109.dat
X
Identified as a variant of the AdWare.Win32.Agent.zo malware.
<not used> killer.exe
X
Identified by Kaspersky Antivirus as a variant of the Virus.Win32.AutoRun.abt removable device worm. ... Read More
<not used> kvdxscma.dll
X
Added by the TSPY_ONLINEG.IRZ malware.
<not used> killVBS.vbs
X
Added by the VBS.Autill worm. Do not delete C:\Windows\System32\wscript.exe as it is a legitimate file. ... Read More
<not used> karina.dat
X
A variant of the Trojan.Agent malware.
<not used> karna.dat
X
Added by the Troj/FakeVir-GL Trojan.
<not used> KHATRA.exe
X
Added by the W32/Autoit-C removable media worm.
<not used> kbdsys.exe
X
Added by the W32/AutoRun-AMW removable media worm.
<random name> keepSafe.exe
X
Added by the TROJ_KILLAV.KAX Trojan.
<unknown CLSID> kavlg.exe
X
Added by the Troj/Poison-D backdoor Trojan.
<unknown> kernelw.sys
X
Identified as the Trojan.Peed.IIG/Packed.Win32.Tibs.ap malware.
ABC keylogger.exe
X
Monitors keystrokes so you can check if someone has typed anything while your away from your PC. Reported as spyware by SpyCop in their FAQ ... Read More
anhtaaa kacsde.exe
X
Added by the W32/Frethog-B Trojan.
antivirus kaspery.exe
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
autoupdate service kaka.exe
X
Added by the TROJ/SYMPE-B TROJAN! ... Read More
AVSearch service kednl6.sys
X
Added by the Troj/Haxdoor-AT backdoor Trojan.
AVXSearch service ke7dnl.sys
X
Added by the Troj/Haxdoor-BH rootkit Trojan.
bimaculate kknwg.dll
X
Zlob Trojan that infects you with the VirusHeat rogue anti-spyware program. Please use the guide below to remove this infection. ... Read More
Bron-Spizaetus-5118REPM komodo-6321422.exe
X
Added by the W32/Brontok-R mass-mailing worm.
C:\WINDOWS\kernel%32.exe kernel%32.exe
X
A Haxdoor installer.
campaniform kfcpnd.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
cartao killing.exe
X
Added by the Troj/Dloader-QN downloader trojan.
cdmmslpo klpllsm.exe
X
Added by the Troj/Tedijini-A Trojan.
CherryKeyMan KeyMan.exe
U
Multimedia keyboard manager for the Cherry keyboard series. Only required if you use any of the special keys ... Read More
ChromeMark keysh.exe
?
Related to this. Don't know what keysh.exe does though and if it's required
cnet kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
cpqek kcpqek.exe
U
For Compaq PC's. Easy Access button support for the keyboard
CPU FUN Controller kryo2.sys
X
Added by a variant of the Goldun.Fam Trojan.
cwingllib ksdlmvbs.exe
X
Added by the Trojan.Slapew.D Trojan. Trojan.Slapew.D is a Trojan horse that can be used to send unsolicited email through the compromised computer. It ... Read More
Disk Keeper keep.exe
X
Mslware - recognized by Kaspersky antivirus as Trojan-Dropper.Win32.Small.ve
Disk Knight Knight.exe
X
Added by the W32/Autorun-H removable drive worm.
Distributed File System kernel32dll.exe
X
Added by the MYFIP-C or MYFIP.K WORMS!
Distributed Link Tracking Extensions kernel32dll.exe
X
Added by the W32/Myfip-I WORM with a service display name of "Distributed Link Tracking Extensions", also. ... Read More
Dlload killer.exe
X
Added by the Troj/KillAV-FK Trojan.
ecgfb kfhrvq.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
explorer.exe kb32.exe
X
This infection hijacks Internet Explorer to redirect to search-area.com. More information can be found here - Troj/Malche-A. ... Read More
faslkakj11 kjgagklj11.exe
X
Added by the Troj/LegMir-ARE password-stealing Trojan for the online game, the Legend of Mir. ... Read More
FLMTRUSTKB KbdAp32A.exe
U
Keyboard utility for a Trust brand wireless keyboard. If you disable this entry you will not be able to use any of the keyboard hotkeys or other non- ... Read More
GameSpot kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
Health Key and Certificate Management kmsvc.dll
Y
Microsoft service that provides X.509 certificate and key management services for the Network Access Protection Agent (NAPAgent). Enforcement technolo ... Read More
InternalSystray Kazza.exe
X
Added by a variant of the OPTIX TROJAN! Note - unlike the valid KaZaA executable, this is located in C:\Windows\System (Win9x/Me), C:\Winnt\System32 ( ... Read More
Java Update keeper.exe
X
Added by the Troj/Agent-DIS Trojan.
K Print Spooler kspoold.exe
X
Added by the W32.Tupofse.B virus.
K2ps_full.task K2ps_full.exe
X
Added by the JUNTADOR.K TROJAN!
K6CPU.EXE K6CPU.EXE
N
Authenticates CPU as K6 in system properties
KADxMain KADxMain.exe
U
Added by the KADxMain IntelliSonic Speech Enhancement systray icon by Knowles.
Kagwang kagwang.exe
X
Added by the W32/AutoRun-XU removable media worm.
kak kak.hta
X
Added by the KAKWORM WORM!
Kalibump Kalibump.exe
U
Used with the now unsupported Kali software for on-line gaming. This is used to automatically bump up the priority of WinProxy to GREATLY improve game ... Read More
kalvsys kalv***32.exe [* = random char]
X
EliteBar/SearchMiracle adware installer
Kasper Antivirus KASPERANTIVIRUS.EXE
X
Added by the SPYBOTER.GEN TROJAN!
kaspersky 7.0 Kaspersky.exe
X
Added by the W32/Autorun-AH removable media worm.
kaspersky anti-hacker KAVPF.exe
Y
Kaspersky Anti-Hacker firewall ... Read More
Kaspersky Anti-Virus NDIS Filter klim5.sys
Y
Driver used by Kaspersky Antivirus.
Kaspersky Antivirus KasperskyAV.exe
X
Added by a variant of the RBOT WORM!
Kaspersky Lab Boot Guard Driver klbg.sys
Y
Driver used by Kaspersky Antivirus.
kaspersky32 kasperskyLabs32.exe
X
Added by the W32/Rbot-GOT worm and IRC backdoor.
KasperskyAv kaspersky.exe
X
Added by the MIMAIL.T WORM! Note - this has nothing to do with the real Kaspersky AntiVirus ... Read More
KasperskyAVEng Kasperskyaveng.exe
X
Added by the NETSKY.V WORM!
kasutio kasutio
X
Added by the Backdoor.Rustock backdoor rootkit.
KAT KAT.vbs
X
Added by the VBS/Soad-D mass-mailing worm.
KatchEm.exe KatchEm.exe
X
An overwriting virus. This virus will overwrite all .exe files with itself.
kava kavo.exe
X
Added by the Troj/Lineag-GLG password-stealing Trojan for the online game Lineage. ... Read More
kavir kavir.exe
X
Identified as a variant of the Email-Worm.Win32.Zhelatin.xe worm.
Kavirs Kavirs.exe
X
Added by the Troj/Agent-OJC Trojan.
Kavirs1 Kavirs1.exe
X
Added by the Troj/Agent-OPY Trojan.
KAVPersonal50 Kav.exe
Y
Kaspersky Anti-Virus Personal 5.0
kavpfw KavPFW.exe
Y
KingSoft Personal Firewall ... Read More
kavstart KAVStart.exe
Y
KingSoft Personal Firewall ... Read More
kavsvc kavsvc.exe
Y
Kaspersky antivirus
kavsvc kavsvc.sys
X
Added by the Hacktool.Rootkit rootkit.
KAZAA kazaa.exe
N
KAZAA is a file-sharing program which unfortunately being ad-based includes "Cy-door" adware. Check here for information about "Cy-door" and here for ... Read More
Kazaa lptt01 kazaa.exe
X
Variant of the RapidBlaster parasite (in a "kazaa" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
Kazaa ml097e kazaa.exe
X
Variant of the RapidBlaster parasite (in a "kazaa" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but use RapidB ... Read More
kazaalite kazaalite.exe
N
Kazaalite is a file sharing client - not to be confused with the original Kazaa program. Unlike the original, this one does not contain any advertisin ... Read More
KaZooM KaZooM.Exe
N
KaZoom from Blue Haven Media - "add-on application that automatically speeds up the download process and finds the files you want with far more power ... Read More
KB00674719.exe KB00674719.exe
X
Added by the Troj/Agent-UUS Trojan.
KB1883574.exe KB1883574.exe
X
Added by the Malware Destructor 2011 rogue anti-spyware program.
KB891711 KB891711.EXE
Y
This security update is to address the following vulnerability Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution. As ... Read More
kb918547 KB918547.EXE
Y
Related to the Microsoft Added by the MS06-026 security update. This patch is only for the Windows 98 and Millenium operating systems. ... Read More
KB923810 KB923810.exe
X
Added by the Backdoor.Bandock.A backdoor Trojan. Backdoor.Bandock.A is a Trojan horse that opens a back door on the compromised computer. ... Read More
KB991869.exe KB991869.exe
X
Added by the Troj/DwnLdr-JGZ Trojan.
KBD KBD.EXE
U
Multimedia keyboard manager. Required if you use the multimedia keys
kbd kbd.sys
X
Added by a variant of the W32/Inject worm.
kbdctrl kbdctrl.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
kbddrv32 kbddrv32.exe
X
Added by the CRYPTER.A TROJAN!
kbddrvinf kbddrvinf.exe
X
Added by the CRYPTER.A TROJAN!
KBDIC kbdic.exe
X
Part of a trojan package. Make sure you delete the right file! KBDIC.DLL and KBDIC.KBD seem to be valid Windows files. ... Read More
KbdRunOnce KbdRunOnce.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
KBR95674904.exe KBR95674904.exe
X
Added by the Troj/Bckdr-RHB Trojan.
KCeasy KCeasy.exe
N
KCeasy - a Windows peer-to-peer filesharing application which uses giFT as its 'back end' foundation. The networks currently supported are OpenFT and ... Read More
KClient kstatus.exe
U
KClient Kerberos client software for Win32 systems. It provides the libraries and utilities needed to use Kerberos-based PC applications developed by ... Read More
kcp kcp.sys
X
Added by the ROJ_ROOTKIT.EW rootkit.
Kcrner Kcrner.exe
X
Added by the Troj/Lineag-AIL password-stealing Trojan for the online game Lineage. ... Read More
KdbMgr.exe KdbMgr.exe
U
When running Windows under Apple Boot Camp, this makes the F(1-7) buttons work like in Mac Os X and you will be able to lighten or darken the display, ... Read More
kdc kdc.dll
X
Added by the Backdoor.Fuwudoor backdoor.
KDWin KDWin.exe
X
Added by the W32/Autome-A removable media worm.
kdx KHost.exe
N
KonTiki Secure Delivery Plug In related. "The Kontiki Delivery Management System (DMS) is a secure delivery network for distribution of video, softwar ... Read More
ke32paag ke32paag.dll
X
A variant of the Haxdoor Trojan. This infection is hidden by the ke32psag.sys rootkit. ... Read More
ke32psag ke32psag.sys
X
A variant of the Haxdoor rootkit.
KeenfinderSrch Service keenfinder136.exe
X
Identified by Microsoft as the BrowserModifier:Win32/OneStepSearch.B adware.
Keenvalue Keenvalue.exe
X
Keenvalue spyware - see here
KeePass 2 PreLoad KeePass.exe
N
Added by the KeePass 2 password management program. Have this start automatically will allow KeePass to start faster, but is not necessary for the pro ... Read More
KeepCop KeepCop.exe
X
Added by the KeepCop rogue anti-spyware program.
KeimoServices kmsvc32.exe
X
Added by the W32/Sdbot-AHE WORM/IRC backdoor trojan!
kek kek.exe
X
Identified as a variant of the Trojan-Downloader.Win32.Agent.aajt malware.
KEMailKb KEMailKb.EXE
U
Controls the buttons at the top of the Micro Innovations 650i Internet Access Keyboard. If you disable it you cannot use the buttons - like volume co ... Read More
Kemet kemet.exe
?
??
KeNotify KeNotify.exe
U
Toshiba utility found on their laptops. This program is responsible for the Toshiba LapTop Help 'FlashCards' utility that sits at the top of the scre ... Read More
kERe kERe.exe
X
Added by the W32/Brontok-BT worm.
kerio vpn client kvpnclient.exe
U
Kerio VPN Client ... Read More
Kerne0223 Kerne0223.exe
X
Added by the Troj/LegMir-ZA information stealing Trojan.
Kerne0813 Kerne0813.exe
X
Added by the Troj/Lineag-ADO password-stealing Trojan for the online game Lineage. ... Read More
kernel kernel.exe
X
A variant of the Trojan.Matcash malware.
Kernel CryptoModule krnllds.sys
X
Added by a variant of the TR/Rootkit.Gen rootkit Trojan.
Kernel Debug Service kernelx86.sys
X
Added by the W32.Rixobot worm. W32.Rixobot is a worm that spreads through removable drives and instant messaging programs. It also opens a back door o ... Read More
kernel manager krnlmgr.exe
X
Added by the TROJ_JUNY.A TROJAN! ... Read More
Kernel spooler kspool.exe
X
Added by the W32.Tupse worm. W32.Tupse is a worm that spreads through mapped drives. ... Read More
Kernel Video Driver kdvhost.exe
X
A variant of the Win32/Rbot worm.
kernel12.exe kernel12.exe
X
Added by an unidentified WORM or TROJAN!
kernel32 kern32.exe
X
Added by the BADTRANS.A WORM!
Kernel32 Kernel32.exe
X
Added by a number of VIRUSES, WORMS and TROJANS!
kernel32 kernel.dli
X
Added by the NETDEVIL.B TROJAN!
Kernel32 Kernel.dll
X
Added by the REDLOF.M VIRUS!
kernel32 kernel32.dlI
X
Added by the NETDEVIL.15 TROJAN!
Kernel32 krnl32.exe
X
Added by the EPON WORM!
Kernel32 Kernel32.win
X
Added by the GAGGLE.D or GAGGLE.E WORMS!
Kernel32 kernel32s.exe
X
Added by the SDBOT-PU TROJAN!
kernel32 kernel32.dll.vbs
X
Added by the W32/Wekode-A worm.
KernelBoot KernelBoot.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
Kernell32 Kernell.dll
X
Added by the DESTINY.A TROJAN!
KernelRuntime kernel_runtime.exe
X
Added by the W32/Mytob-JN mass-mailing worm.
KernelVolume KernelVolume.dll
X
Identified by Kaspersky as a variant of the Trojan.Win32.Agent.evy Trojan.
Kernelw Kernelw32.exe
X
Added by the INDOR.E WORM!
Kerner0826 Kerner0826.exe
X
Added by the Troj/Lineag-DIG Trojan. Troj/Lineag-DIG is a password stealing Trojan for the online game Lineage. ... Read More
Key Text KeyText.exe
N
Key Text 2000 from MJMSoft Design - utility to automate repetitive keyboard tasks. Available via Start -> Programs ... Read More
KeyAccess keyacc32.exe
Y
KeyServer KeyAccess client software - "when the KeyServer program is launched, the KeyServer process becomes active so license requests from client co ... Read More
Keybdcntl keybdcntl.exe
X
Added by a variant of the CRYPTER.C TROJAN!
keyboard_enum keyboard_enum.exe
X
Added by the Troj/Bdoor-GP backdoor trojan.
KeyMaestro kmaestro.exe
U
Multimedia keyboard manager. Required if you use the multimedia keys
keymap keymap.exe
U
System Tray utility and background task used by games produced by Kesmai (published by Interactive Magic) and which enables you to program keys to do ... Read More
KeyPatrol KeyPatrol.exe
U
KeyPatrol - detects Key Loggers ("keyboard loggers" or "keyloggers") using both behavioral and pattern-matching algorithms ... Read More
keyserv keyserv.exe
X
Added by the Spyware.KeyThief SPYWARE!, Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. ... Read More
keystroke keystroke.exe
U
Added by the Spyware.QuickLaunch surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
keystroke keystroke
U
QuickLaunch is a spyware program that logs keystrokes and captures screenshots. If you didn't install this yourself remove it. ... Read More
keytext KeyText.exe
N
Key Text 2000 from MJMSoft Design - utility to automate repetitive keyboard tasks. Available via Start -> Programs ... Read More
KeyWallet KWallet.exe
U
"KeyWallet is a useful and convenient desktop utility that spares you the trouble of filling in your logins, passwords and other personal data manuall ... Read More
kgjdi27 kgjdie27.exe
X
Added by the Sdbot.AP WORM! ... Read More
KHATARNAK Loader khatarnak.exe
X
Added by the W32/SillyFDC-C removable media worm.
khooker khooker.exe
N
SiS Keyboard Daemon. System Tray utility which gets installed by the drivers of the latter day SiS VGA cards. Can cause errors at startup and isn't re ... Read More
khtml khtml.sys
X
Identified as a variant of the Backdoor:Win32/Rustock.gen rootkit.
KICKMON.EXE KICKMON.EXE
U
KeepItClean - utility that deletes safe to remove files, cookies, browsing history, etc. This is the scheduler - if you don't schedule clean-ups it is ... Read More
Kill Popup KillPopup.exe
U
KillPopup - pop-up stopper
KillAndClean KillAndClean.exe
X
Kill & Clean is a rogue anti-spyware that is known to be installed with other malware. This program should not be trusted and if you have this progra ... Read More
kimochiz.exe kimochiz.exe
X
Added by the TROJ/MDROP-BB TROJAN! ... Read More
Kinberlink Kinberlink.exe
N
Kinberlink network messaging. Available via Start -> Programs
KKM Service kkm.exe
X
Added by the W32/Nanpy-I worm.
kl1 kl1.sys
Y
Driver used by the Kaspersky Anti-Virus.
klif klif.sys
Y
Driver used by the Kaspersky Anti-Virus.
klite klite.sys
X
A variant of the Haxdoor rootkit.
klog Keyspy.exe
U
Added by the Hacktool.KeyLoggPro.B keystroke logger/monitoring program - remove unless you installed it yourself! ... Read More
kmhfoot kmhfoot.exe
X
Added by the Trojan.Dishigy Trojan.
kmw_run.exe kmw_run.exe
U
Kensington MouseWorks - mouse/trackball software. Not required unles you use any special features ... Read More
kmw_show.exe kmw_show.exe
U
Kensington MouseWorks - mouse/trackball software. Not required unles you use any special features ... Read More
kocinc700kk.exe kocinc700kk.exe
X
Added by the Zentom System Guard rogue anti-spyware program.
KodakCCS KodakCCS.exe
Y
Kodak DC File System Driver
KOfcpfwSvcs.exe KOfcpfwSvcs.exe
X
Identified as a variant of the Troj/PcClien-WI backdoor.
Konni Symbol Autostart KonniSymbol.exe
N
Gives configuration access to RagTime Solo professional business publishing software. RagTime Solo is the private user version of RagTime 5 ... Read More
kontiki kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
kopmet kopmet.dll
X
Added by a variant of the MyGeek/CPVFeed adware.
Kota P4hlawan Kota P4hlawan.exe
X
Added by the W32.Yadurna.A worm. The user is presented with a password recovery dialogue once the malicious program is downloaded. ... Read More
KPDrv4XP KPDrv4XP.exe
Y
MediaKey USB Keypad Driver
kpem kpem.sys
X
Added by the Trojan.Duganss Trojan downloader.
kprof kprof
X
Added by the Trojan-Proxy.Win32.Wopla.ag rootkit.
Kr0n1C Kr0n1C.exe
X
Added by the W32/Brontok-BO mass-mailing worm.
krag krag.exe
X
Added by the W32/Agent-FOW worm.
kraidman Kraidman.exe
U
Related to TOSHIBA_RAID_CONSOLE Note: Located in C:\Program Files\TOSHIBA\TOSHIBA RAID\Console\ ... Read More
KREC32 krec32.exe
U
StarrCommander Pro Keystroke logging software
krisvc.exe krisvc.exe
X
Added by the Infostealer.Kurofoo.B information stealing Trojan.
Krnlmod Krnlmod.exe
U
Keylogger - see here. Given a "U" recommendation because it depends if you intentionally installed it. If you didn't, treat it as "X" and uninstall o ... Read More
kryostm kryostm.dll
X
Added by a variant of the Goldun.Fam Trojan.
KSDT1983 KSDT1983.sys
X
Added by the Troj/Agent-CIQ Trojan.
ksnhtr ksnhtr.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
Ksrv32 Ksrv32.exe
X
Added by the W32/Agobot-PI worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
KTAX Auto Loader ktax.exe
X
Added by the W32/Sdbot-MZ worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
ktchnsnk ktchnsnk.exe
U
HP program found with the Office Jet 500/600/700 series which initializes the Office Jet manager each time the computer is booted up or rebooted ... Read More
kvasoft kva8wr.exe
X
Added by the W32/AutoRun-AFQ removable media worm.
kviurs kav.exe
X
Added by the W32.SillyFDC.BBJ removable media worm.
KvmSecure.exe KvmSecure.exe
X
Added by the KvmSecure rogue anti-spyware program.
Kvsc3 Kvsc3.exe
X
Added by the Troj/PWS-ANM password-stealing Trojan.
kvxqmtre kvxqmtre.dll
X
Identified as a variant of the Adware.Agent malware.
KWatch1 KWatch1.sys
X
Rootkit added by the Troj/Agent-DZY Trojan.
kX Mixer kxmixer.exe
N
Provides Mixer and Control functionality to KxProject Audio driver for EMU10k based soundcards ... Read More
kx509 kx509_kfwk5.exe
U
Kerberos Secure Authentication for Windows ... Read More
kxva kxvo.exe
X
Added by the Trojan.Lineage.Gen!Pac.3 password-stealing Trojan.
kyk control settings KYSVCXD.EXE
X
Added by a variant of the WIN32.RBOT WORM! ... Read More
kzq5re kzq5re.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
Laz Kernn.exe
X
Added by the Troj/Bancos-LN password stealing TROJAN!
Logitech Hardware Abstraction Layer Khalmnpr.exe
U
Logitech Bluetooth mouse Hardware Abstraction layer. A "hardware abstraction layer" is an interface that enables adding support for new devices and ne ... Read More
Logitech SetPoint KEM.exe
U
Keyboard and mouse drivers and utilities for Logitech's latest products - supersedes iTouch and MouseWare on their older products. Required if you use ... Read More
lsass kavmm.exe
X
Added by an unidentified WORM or TROJAN! - NOTE - do NOT confuse with the legitimate Kaspersky antivirus module as described here . Contrary to this ... Read More
Mabochine Deybug Malnager kdm.exe
X
An Sdbot WORM variant adds the file, and the IRC backdoor TROJAN component allows for unauthorized remote access to the computer. ... Read More
Malware Destructor KB1883574.exe
X
Added by the Malware Destructor 2011 rogue anti-spyware program.
Messenger KB08953265.exe
X
Added by the Trojan.Esteems.F Trojan.
Microsoft kasperskyLive32.exe
X
Added by the W32/Rbot-GRT worm and IRC backdoor.
Microsoft Agent knchost.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft AntiSpyware KT06.pif
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microsoft Display Driver keyboard.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
Microsoft Document krisp.exe
X
Added by the SDBOT-RQ WORM!
Microsoft Kernel Patch kernel3ox.exe
X
Added by the W32/Rbot-UJ network worm. When this infection starts it connects to an IRC server where it waits for remote commands to execute. ... Read More
Microsoft Manager 2 KKI2.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft Manager 3 KKI3.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft Manager 4 KKI4.exe
X
Added by the Troj/Banker-EMT information-stealing Trojan for online banks.
Microsoft System Checkup Keymgr.exe
X
Added by the DONK.M WORM!
Microsoft TaskManager Updater keyboard.exe
X
Added by the W32/Rbot-ALU worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. ... Read More
MicroSoft Toolbar key.exe
X
Added by the W32/Rbot-AEW worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Update Kkk.exe
X
Added by the W32/Rbot-AHL worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
Microsoft Update Emulator kern-mxe.exe
X
Added by a variant of the RBOT WORM!
Microsoft Update Emulator kernelvmon.exe
X
Added by the W32/Rbot-CH trojan backdoor. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
Microsoft Windows Kernel.vbs
X
Added by the VBS/Edibara-A visual basic script virus. VBS/Edibara-A will attempt to modify files with htm and html extensions and include a segment of ... Read More
Microsoft Windows Kernel.exe
X
Added by the VBS/Edibara-A visual basic script virus. VBS/Edibara-A will attempt to modify files with htm and html extensions and include a segment of ... Read More
Microsoft Windows Keyboard service keyboard.exe
X
Added by the W32/Rbot-CRF worm and IRC backdoor.
Microsoft Windows System Kernel kernel32.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
Microzoft_Ofiz KdzEregli.exe
X
Added by the AMUS.A WORM!
msconfig klog.exe
X
Added by the Troj/BDoor-AHK spyware Trojan.
msnupdt kolie.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
MSRegScan KSPDemo.exe
U
Added by the Spyware.KeyStalker surveillance software. Spyware.KeyStalker is a spyware program that records screen shots and logs keystrokes on the co ... Read More
myMoney Keuangan.exe
X
Added by the Trojan.Hidexls Trojan. Trojan.Hidexls is a Trojan horse that hides Microsoft Excel files. ... Read More
Network Logon KB8964225.log
X
Added by the Troj/Lmir-EX password-stealing Trojan.
NLS Keyboard keyboard.exe
X
Added by a variant of the SPYBOT WORM!
NvCplScan kav32.exe
X
Added by the W32/Forbot-EW network worm, also adding NvCplScan as the display & service names of a new service it creates. ... Read More
Nvidia Startup Manager ksvc32.exe
X
Added by the Troj/Agent-IWD Trojan.
nwiz KHATRA.exe
X
Added by the W32/Orbina-A worm.
paint KerneI.exe
X
Added by the Troj/Bancos-AWK Trojan. The Trojan targets users of certain Brazilian banks. ... Read More
paint KerneI.exe
X
Added by the Troj/Bancos-AWK banking Trojan.
Panasonic PCFAX for Multi-Function Station software KmPcFax.exe
?
Related to the fax function for certain Panasonic multi-function printers.
Plob kernel.com
X
Added by the OPTIXPRO.12 TROJAN!
Protocol Settings kav.exe
X
A variant of the Rbot family of worms and IRC backdoor Trojans.
pskl keyspy.exe
U
Added by the Spyware.KeyboardLogger surveillance software. If you did not install this software, then you should uninstall it immediately. ... Read More
Pujangga KOMPTI.exe
X
Added by the Troj/Pitkom-A Trojan.
Rakyat_Kelaparan Kuli.exe
X
Added by the W32.SillyFDC.BDM worm. W32.SillyFDC.BDM is a worm that spreads by copying itself to removable and mapped drives. ... Read More
RKLG Startup klg.exe
U
Added by the Spyware.LocalKeylog keylogger. You should uninstall this software if it was not installed by yourself. ... Read More
SCRNSAVE.EXE kimmo.scr
X
Added by the Troj/Antinny-N Trojan.
Service System kernels32.exe
X
Added by the Troj/Bancos-DA password-stealing trojan for Brazilian banks.
Service System kgbfsm344.exe
X
Added by the Troj/Bancos-FS password-stealing Trojan for Brazilian banks.
Services kernel32.exe
X
Added by the Troj/EliteKey-B keylogger.
SETPOINT Logitech Inc KHALMNP.exe
X
Added by the W32/Rbot-AAX WORM/IRC backdoor trojan!
SiS KHooker khooker.exe
N
SiS Keyboard Daemon. System Tray utility which gets installed by the drivers of the latter day SiS VGA cards. Can cause errors at startup and isn't re ... Read More
SiS Windows KeyHook keyhook.exe
U
SIS graphics cards related: "Super VGA Keyboard Daemon" - hooks into the keyboard processing chain in order to enable hotkey settings ... Read More
Srv32Win KeyCaptor.exe
U
Added by the Spyware.KeyCaptor surveillance program. You should uninstall this program immediately if you did not install it yourself. ... Read More
Start RF Wireless Keyboard ktrexe.exe
Y
Yuanxun Electronics RF wireless keyboard driver
startkey krnl.exe
X
Added by the Troj/Bifrose-S Trojan.
Sunbelt Kerio Personal Firewall 4 kpf4ss.exe
Y
This is the main executable for the Sunbelt Kerio Personal Firewall.
Svchost Connection Monitor kernel.exe
X
Unknown malware.
System kernels32.exe
X
Added by the DLOADER-FC or Troj/Vixup-B trojans.
System kmc.dll
X
Added by the Troj/Dropper-BT dropper Trojan. This infection also makes the file C:\Windows\csrss.exe. ... Read More
System kernels64.exe
X
Added by the Troj/Vixup-V Trojan.
System kernels8.exe
X
Added by the Troj/Vixup-BN Trojan.
System kernels88.exe
X
Added by the Troj/Tibs-PM Trojan.
System kernelwind32.exe
X
Identified as the Packed.Win32.Tibs.at malware.
System krln32.exe
X
Added by the XPAntiVirus rogue security software. This is a harmless registry entry pointing at a non-existent file. Read the removal guide for an ex ... Read More
System kernelwind64.exe
X
Added by the Nuwar/Storm worm.
System Startup kimochi.exe
X
Added by a variant of the WIN32.RBOT WORM!
SystemTools kernels32.exe
X
Added by the DLOADER-FC TROJAN!
Systray KAT.vbs
X
Added by the VBS/Soad-D mass-mailing worm.
Taskman KHATRA.exe
X
Added by the W32/AutoRun-AKR removable media worm.
TA_Start kwinrodv.exe
X
Added by a variant of the Zenosearch adware. Adware.ZenoSearch is an adware that displays pop-up ads based on searches the user performs on popular we ... Read More
Toshiba Key State KEYSTATE.EXE
U
Displays an icon in the System Tray indicating the state of the CAPS LOCK key. Can be handy on (e.g., Toshiba) laptops which do not have a Caps Lock i ... Read More
TypingSatellite KBOOST.exe
N
Typing Master 2002 background utility that collects typing errors and builds up customised typing lessons for your needs. Available via Start -> Progr ... Read More
Update kchts.EXE
X
Added by the W32/Clantard-A worm.
VC_Log keylog.exe
X
Added by the Adware.Starware spyware.
vedara kavms.exe
X
Added by the Troj/Bckdr-PNL backdoor Trojan.
VMemory protect k53lock.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
Warga KompTi KOMPTI.exe
X
Added by the Troj/Pitkom-A Trojan.
Websense CPM Report Scheduler koovyjyna.exe
X
Added by the Troj/Bdoor-AMP backdoor.
Win32 Kernel core component Kernel32.pif
X
Added by the MOKS VIRUS!
Win32G Kernel32.com
X
Added by the ESTRELLA TROJAN!
WIn32S Java DLL kavsvx.exe
X
Added by the W32/Agobot-RZ worm/IRC backdoor trojan.
Win32Updater KERNAL32.EXE
X
Added by the W32/Spybot-OK worm and IRC backdoor.
WinAC v4 klsuicbn.exe
X
Added by the FORBOT-CS WORM!
Windoes Kernel kernel32.exe
X
Added by the KICKIN.A (or CYDOG.C) WORM!
Windows Kernel32.exe
X
Added by the TENDOOLF WORM!
Windows Kernel 64 kernal64.exe
X
Added by the W32/Yimp-B Instant Messaging worm.
Windows Kernel Service kasvc.exe
X
A variant of the Backdoor.Win32.SdBot.bhk family of worms and IRC backdoor Trojans. ... Read More
Windows Messenger Service kaspersky.exe
X
Added by the W32/Mytob-DP worm. When started, this infections connects to a remote IRC server where it waits for commands to execute. ... Read More
windows task manager emulator kennewr.exe
X
Added by the W32/SPYBOT-FA WORM! ... Read More
Windows Update kdb34894234.exe
X
Added by the Trojan.Syginre Trojan. Trojan.Syginre is a Trojan horse that disables the Windows Firewall and may delete some files from the compromised ... Read More
Windows Update klass.exe
X
Added by the Troj/Bifrose-ZH backdoor Trojan.
Windows32 killILLUMINATI.exe
X
Added by the P2P-Worm.Win32.VB.dg P2P worm.
WindowsUpdate kter.exe
X
Unknown malware.
WinEssential Keyhost.exe
X
Hijacker - hailing from jraun.com
WinEssential keyword.exe
X
Jraun.com hijacker
Winmplayer KB_(RandomNumber).exe
X
Identified as the Trojan-Downloader.Win32.Murlo.fi Trojan downloader.
Winsock2 driver kgzgjkpcw.exe
X
Added by the SDBOT.T TROJAN!
WinSrv kn0x.exe
X
Added by the HOBBIT.F WORM!
x86 Kernel krnlx86.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
XP HOT FIS KBX.exe
X
Added by the W32/Forbot-GS worm and IRC backdoor.
XP HOT Ops KB15oooo.exe
X
Identified as a variant of the Worm:Win32/Wootbot.gen worm.
Xplorer KHATRA.exe
X
Added by the W32/AutoRun-AKR removable media worm.
Yahoo kib.htm
X
Added by the W32/Autorun-L removable media worm.
zdnet kontiki.exe
N
Kontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops ... Read More
[not used] Kerne12.exe
X
Added by the Troj/Lineage-AS Trojan.
[not used] krnl32.dll
X
Added by the Troj/Vipgsm-J keylogger and password-stealing Trojan.
[not used] Kerne14.exe
X
Added by the Troj/Lineage-BA password-stealing Trojan for the online game Lineage. ... Read More
[not used] kxrnxl32.dll
X
Added by the Troj/Gina-K Trojan.
[not used] karnal32.dll
X
Added by the W32.Monikey@mm mass-mailing worm. This worm attempts to gather information found on your computer. ... Read More
[not used] Kerne1412.exe
X
Added by the Troj/Lineage-OJ password-stealing Trojan.
[not used] kiamarsi.exe
X
Added by the Troj/Detest-A Trojan.
[not used] Kerne121.exe
X
Added by the Troj/Lineage-BW password-stealing Trojan for the online game Lineage. ... Read More
[not used] Kerne1211.exe
X
Added by the Troj/Lineage-CA password-stealing Trojan for the online game Lineage. ... Read More
[not used] kane.exe
X
Added by the Backdoor.Dckane backdoor. This infection also installs the file c:\windows\system32\kane.dll. ... Read More
[not used] KesenjanganSosial.exe
X
Added by the W32/Brontok-K mass-mailing worm.
[not used] Kerne0110.exe
X
Added by the Troj/Lineage-FU password-stealing Trojan for the online game Lineage. ... Read More
[not used] KB350217M.LOG
X
Added by the Troj/LegMir-BBB password-stealing Trojan for the online game The Legend of Mir. ... Read More
[Various Names] killall.exe
X
Part of the Wareout infection as described here.
[Various Names] Kargo.exe
X
Part of the Wareout infection as described here.
[Various Names] KeywordFinder.exe
X
Part of the Wareout infection as described here.
[Various Names] keybdll.exe
X
Part of the Wareout infection as described here.
{18B0E5C2-99CB-11CF-AXX5-00401C648513} keygen.exe
X
A variant of the IRCBot family of worms and IRC backdoor Trojans.
{4D561258-45F3-A451-F908-A258458226D4} kvdxsdma.dll
X
Added by the PWS-OnlineGames.i password-stealing Trojan.
{4fbbdfd6-2ca9-4bba-93e4-aadf75321bca} kuhmk.dll
X
A Trojan used by the rogue anti-spyware program AntiVermins. This Trojan, when installed, will display fake security alerts on your taskbar and instal ... Read More
{686BC654-BC45-D597-22DC-CA34BD693002} kb32.com
X
Added by the Troj/Tometa-E Trojan.
{729CC054-9FC8-238E-0A98-75B7A1C73972} kb478342122.exe
X
Identified as a variant of the Infostealer malware.
{735e980d-45d2-4777-af82-9923d3c8d3ae} kgkdbsk.dll
X
Part of the Zlob trojan that displays fake security alerts for the rogue anti-spyware program called SpyLocked 3.7. ... Read More
{7B566F8A-624C-2570-0B75-A27CDC7119CF} klsdw.exe
X
A variant of the Troj/Bifrose-VF malware.
{A797F5CE-088E-F569-4314-616820293A49} kiral.exe
X
A variant of the Backdoor.Bifrose backdoor Trojan. Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote serv ... Read More
{af8bca8b-a9f1-471d-bdcd-caa14be2bdd9} ktrxe.dll
X
Zlob Trojan that installs VirusProtectPro 3.6 and shows fake security alerts from your Windows taskbar. ... Read More
{c82e1789-207a-4b8a-806f-76b62dfac2a2} khtbpdl.dll
X
Zlob Trojan that installs VirusProtectPro 3.5 and shows fake security alerts from your Windows taskbar. ... Read More
{cc824bb2-d4b3-41f1-bba0-f8240e4cc495} kvfvw.dll
X
Zlob Trojan that installs VirusProtectPro 3.7 and shows fake security alerts from your Windows taskbar. ... Read More
{ccf982af-f3aa-48c4-97c4-ecdea4bd3fc3 kkqfb.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{ED0ACB58-556F-21DA-DDFE-6D20F3F611BB} kb1ss1p.dll
X
Added by the Troj/Agent-GDA Trojan.
{f39d0dee-b2f0-4591-9187-1cc39c1df98a} kzpkwj.dll
X
Zlob Trojan that installs VirusProtectPro 3.7 and shows fake security alerts from your Windows taskbar. ... Read More
{FD561258-45F3-A451-F908-A258458226DF} kvdxsoma.dll
X
Added by the PWS-OnlineGames.q password-stealing Trojan for online games.
{mqqntcra-fbra-gyng-uimk-rsvbrwisftou} kldtm.exe
X
Added by the TSPY_DELF.CFC Trojan.


> Status Key
Each entry in the database will have a Status assigned to it. The key to this status is the following:
  • Y - This status flag means that this entry should be left alone and be allowed to run as if it is unchecked it may break the functionality or use of a particular program.
  • N - This status flag means it is unnecessary to run this program automatically when Windows starts as you can run it manually when necessary.
  • U - This status flag means it is up to you whether or not you feel this program needs to run automatically.
  • X - This status flags means the item should definitely not start up automatically. Items that have this flag are generally malware such as viruses, trojans, hijackers, spyware but could also be programs that are not desirable to run on your computer.
  • ? - This status flag means the status of this entry is unknown at this time and more research is necessary.
If you require assistance in removing one of these files you can ask us in the Startup Database Forum.

> Disclaimer
It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. BleepingComputer.com will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides


Portions of this database © Paul Collins
© 2003-2012 All Rights Reserved Bleeping Computer LLC.
PGT: 0.13364 Queries: 4