Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Spyware and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Alert!  Have a problem and would like to ask us for help? To learn how to ask your question Click Here!
Stop!  Do you have popups or other malware infecting your computer? If so, Start Here!
Question?  Are you having trouble using this site? Then you should visit the New User Orientation Center!



A    B    C    D    E    F    G    H    I    J    K    L    M    N    O    P    Q    R    S    T    U    V    W    X    Y    Z    Other   
HJT: F0, F1, F2, F3 · O4 · O20 · O21 · O22 · O23
Rootkit List · Submit a Startup · Top Submitters
 Startup Index · Newest Entries · Mozilla Search Tools · WebMaster Site Tools · Status Key
Startup Database Forum · Computer Help Forums · How to use the Startup Database

Enter the filename or keyword you would like to search for:
Advanced Search

Name Filename Status Description
AOL Instant Messenge yimsgr.exe
X
Added by the W32/Tilebot-AA worm.
arsenicism ymmzwd.dll
X
Zlob Trojan which installs the VirusProtect 3.8 rogue anti-spyware program. This program displays fake security alerts stating that your compute ... Read More
BitDefender for Yahoo! Messenger yahmon.exe
U
BitDefender Antivirus for Yahoo! Messenger - free AV add-on for Yahoo! Messenger ... Read More
chokestrap yizgdux.dll
X
Zlob Trojan which installs the AntiSpyCheck rogue anti-spyware program. This program displays fake security alerts stating that your computer has a s ... Read More
complacential yneid.dll
X
Added by a Zlob Trojan which installs AntiVirgear 3.8 and display fake security alerts in your Windows taskbar. ... Read More
duweculey yujixit.exe
X
Added by the SDBOT.BRP WORM! ... Read More
icifati yujixit.exe
X
Added by the SDBOT.ZZH WORM! ... Read More
IE Ysnd.exe
X
Added by the W32.Browa MIRC and Yahoo Instant Messenger worm.
internet.exe yinyin3345.vbs
X
Added by the XM97/Yini-A VIRUS, a Microsoft Excel macro virus!
iyelejiv yujixit.exe
X
Added by the SDBOT.BJK WORM! ... Read More
jete yujixit.exe
X
Added by the SDBOT.BRT WORM! ... Read More
Launch YahooPOPs! at Windows startup YAHOOPOPS.EXE
N
YahooPOPs - enables free POP3/SMTP access to Yahoo! Mail through a service on localhost that emulates the web interface. Available via Start -> Prog ... Read More
lify yujixit.exe
X
Added by a variant of the W32/SDBOT WORM! ... Read More
Miniport FT yvbb02.sys
X
Added by a variant of the Troj/Haxdor-Gen. rootkit.
Miniport FT32 yvbb01.sys
X
Added by a variant of the Troj/Haxdor-Gen. rootkit.
MSRegScan YEKPND.exe
U
Added by the Spyware.EyeCandyMon surveillance software. Spyware.EyeCandyMon is a spyware program that monitors user activity, logs keystrokes, and cap ... Read More
MSRegScan YKPND.exe
U
Added by the Spyware.YKPMD surveillance software. Spyware.YKPMD is a spyware program that monitors user activity, logs keystrokes, and captures screen ... Read More
NDIS OSI ycsvga.sys
X
A variant of the Troj/Haxdor-Gen rootkit.
NDIS OSI ycsvgd.sys
X
The Troj/Haxdor-Fam rootkit.
NDIS OSI32 yvpp01.sys
X
Added by the Troj/Haxdoor-BM rootkit.
RGB video output ycsrga.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
RGB video output ycsrga.sys
X
Added by a variant of the Goldun.Fam rootkit.
System YPager.exe
X
Added by the JUNTADOR.K TROJAN! Note - this is not Yahoo! Messenger
Task Manager yahoo.exe
X
Added by the WORM_QUATIM.A Instant Messenger worm.
Tok-Cirrhatus-1959sarc yesbron.com
X
Added by the W32/Brontok-R mass-mailing worm.
ulcdqsp yedkreq.exe
X
Added by the W32/SillyFDC-BX removable media worm.
uneri yujixit.exe
X
Added by the SDBOT.BOO WORM! ... Read More
upyxo yujixit.exe
X
Added by the SDBOT.BIX WORM! ... Read More
uwyw.exe yujixit.exe
X
Added by the SDBOT.BGB WORM! ... Read More
Winamp Update yhn.exe
X
Added by the W32/Sdbot-ACR worm. When started, this infection connects to a remote IRC server where it waits for commands to execute. This will also ... Read More
WINDOWS ymssgr.exe
X
Added by the Troj/Bckdr-PS backdoor Trojan.
Windows LoL Layer ymllh.exe
X
Added by the W32/Rbot-FSU worm and IRC backdoor. W32/Rbot-FSU spreads to other network computers by exploiting common buffer overflow vulnerabilities, ... Read More
Winhost yahoo.exe
X
Added by Troj/Delf-KM.
WINTASK yahooicons.exe
X
Added by the W32/Mytob-HM worm. This infection, when started, connects to an IRC server where it sits on a channel awaiting commands. ... Read More
xpsystem y.exe
X
CoolWebSearch parasite variant
y!tunnelbasic YTBasic.exe
U
Y!TunnelBasic software provides additional features to Yahoo! Messenger. ... Read More
Y!TunnelPro YTunnelPro.exe
U
Spam, bot and ad blocker for Yahoo! Messenger from Digital Asphyxia
Y!TunnelPro YTPro.exe
U
Spam, bot and ad blocker for Yahoo! Messenger from Digital Asphyxia
Y'z Toolbar YzToolBar.exe
U
Added by the Y'z Toolbar. Y'z Toolbar allows you to customize and change the appearance of the Windows Explorer toolbar. ... Read More
y1959sar yesbron.com
X
Added by the W32/Brontok-AK mass-mailing worm.
yaemu.exe yaemu.exe
X
Added by the WIN32.DNSCHANGER.S TROJAN!
Yahoo HP Reminder 1.1 yr.exe
?
??
yahoo inc. ypages.exe
X
Identified as a variant of the Backdoor.SDBot.62235D21 worm and IRC backdoor.
Yahoo Instant Messengar YahooMsgr.exe
X
Added by the SDBOT.GEN TROJAN!
Yahoo Messenger Yahoomsg.exe
X
Added by an unidentified WORM or TROJAN!
Yahoo Messenger YPager.exe
X
Added by the RBOT-QO WORM!
Yahoo Services yahoo.exe
X
Unidentified Trojan.
Yahoo Update Yahoo.exe
X
Added by the YAHOO! TROJAN!
Yahoo! Helper yhelp.dll
X
Added by the Troj/YBHO-A password-stealing Trojan.
Yahoo! Pager ypager.exe
N
Yahoo! Messenger allows you to send instant messages. Available via Start -> Programs ... Read More
Yahoo! Pager YahooMessenger.exe
N
Tray icon for Yahoo Messenger.
Yahoo! Widget Engine YahooWidgetEngine.exe
U
Yahoo Widget launcher. Only necessary if you have widgets that you would like to start automatically. ... Read More
YahooMonitor1 YahooMonitor.exe
U
Added by the Spyware.IMMonitor Instant Messaging surveillance software. If this software was not installed purposely, it should be automatically remo ... Read More
YahooStock ystckAO32.exe
X
Adtomi adware
yahoo_toolbar lptt01 yahoo_toolbar.exe
X
Variant of the RapidBlaster parasite (in a "yahoo_toolbar" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but us ... Read More
yahoo_toolbar ml097e yahoo_toolbar.exe
X
Variant of the RapidBlaster parasite (in a "yahoo_toolbar" folder in Program Files). It is not recommended you manually uninstall RapidBlaster but us ... Read More
yak tw yak_tw.exe
X
Added by the Backdoor.Graybird backdoor/trojan.
YAMAHA AC-XG Power Utility yacpower.exe
?
YAMAHA AC-XG Power Utility - what does it do and is it required?
Yankee Clipper III YankClip.exe
N
Yankee Clipper III - 'A super powerful Windows clipboard extender/memory - now in its third generation. Handles Pictures, Richtext, URLS, etc - any si ... Read More
yaywxxw yaywxxw.dll
X
A variant of the Adware.Virtumonde infection.
YA_WMP ya_wmp.exe
X
Added by the W32.Yawmo worm that spreads through the Winny and Share file-sharing networks and may transmit sensitive information through these progra ... Read More
YBrowser ybrwicon.exe
N
SBC Yahoo! Browser system tray icon
ycentral YahooCentral.exe
U
Related to Yahoo_Central_utility Note: Is it required. What does it do? Located in c:\progra~1\yahoo!\YCentral\ ... Read More
ydhqzop ydhqzop.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
ydsvgd ydsvgd.dll
X
Added by the Troj/Haxdoor-DA Trojan. Troj/Haxdoor-DA runs continuously in the background, providing a backdoor server which allows a remote intruder t ... Read More
yeTyezzd yeTyezzd.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
yeyqase yeyqase.mis
X
Added by the Backdoor.Rustock backdoor rootkit.
Ykemml Ykemml.sys
X
Added by the Troj/PcClient-K trojan.
YLive.exe YLive.exe
X
Added by the Chinese program Yahoo! Assistant.
ymetray ymetray.exe
N
Yahoo!_Music_utility ... Read More
ymsgupdate2 ymsng2.exe
X
Added by the Trojan.Slapew.B Trojan that is used as a mail relay to send spam.
ynavmrcd.exe ynavmrcd.exe
X
Added by the Troj/Dloadr-AVC Trojan.
yop yop.exe
N
Dashboard Module for SBC Yahoo! Online_Protection
You've Got Pictures Screensaver ygpsstra.exe
U
AOL You've Got Pictures® Screensaver
ypager ypager.exe
N
Yahoo! Messenger allows you to send instant messages. Available via Start -> Programs ... Read More
YPC ypc.exe
U
Yahoo Parental controls - "Let you decide what type of sites and Yahoo! services your kids can access" ... Read More
yqzsypbgh yqzsypbgh.cat
X
Added by the Backdoor.Rustock backdoor rootkit.
YTrayMagic Lite 1 YTRAYMAGIC.EXE
Y
YTrayMagic from YoconSoft automatically restores your tray icons after an Explorer(the windows shell) crash. Leave to run at startup since only those ... Read More
ytzpoqw ytzpoqw.dll
X
Added by the Backdoor.Rustock backdoor rootkit.
yugoslavia yugoslavia.exe
X
Premium rate adult content dialer
yumgo\'s homepage protector v1 YumgoHomepageProtector.exe
U
Yumgo's Homepage Protector ... Read More
yutsubk yutsubk.cat
X
Added by the Backdoor.Rustock backdoor rootkit.
yvbb01 yvbb01.dll
X
Added by the BKDR_HAXDOOR.JG backdoor Trojan. This infection utilizes the yvbb01.sys and yvbb02.sys rootkits. ... Read More
yvdrgb yvdrgb.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the ycsrgb.sys and the ycsrga.sys rootkits to hide itself. ... Read More
YVPB video output ycsrgb.sys
X
A variant of the Haxdoor rootkit.
YVPB video output ycsrgb.sys
X
Added by a variant of the Troj/Haxdor-Gen rootkit.
YVPB video output ycsrgb.sys
X
Added by a variant of the Goldun.Fam rootkit.
yvpp01 yvpp01.dll
X
Added by the Troj/Haxdoor-BM backdoor.
yvprgb yvprgb.dll
X
Added by the Troj/Haxdoor-CW Trojan. This infection utilizes the ycsrgb.sys rootkit. ... Read More
yvprgb yvprgb.dll
X
Added by a variant of the Troj/Haxdoor Trojan. This infection utilizes the ycsrga.sys and ycsrgb.sys the rootkit to hide itself. ... Read More
yvsvga yvsvga.dll
?
Added by the Troj/Haxdoor-CP Trojan. This infection utilizes the ycsvga.sys rootkit. ... Read More
Ywvpysxl Ywvpysxl.sys
X
Added by the Troj/Psupda-A Trojan.
ywwvc.exe ywwvc.exe
X
Added by the Troj/StartPa-HR Trojan.
ywzizdon ywzizdon.exe
X
Free_Scratch_Cards foistware
YY_Serer YY_Serer.exe
X
Added by the Troj/GrayBird-S trojan.
yz.exe yz.exe
X
Added by the VARDO TROJAN!
yzbgqap yzbgqap.sys
X
Added by the Backdoor.Rustock backdoor rootkit.
YZH.SYS YZH.exe
X
Added by the SOPHILY VIRUS!
{24c60b9b-26b5-4201-9f7a-fb9219356ae9} yhbdupd.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{3baa1ad8-ee49-4772-bf0b-f55083e0f7aa} yuspej.dll
X
Part of the Zlob trojan that displays fake security alerts for the rogue anti-spyware program called SpywareLocked. ... Read More
{49f29a27-2451-4314-a480-8d2481ce6c81} yhjbbzf.dll
X
Zlob Trojan that installs VirusProtect Pro 3.4 and shows fake security alerts from your Windows taskbar. ... Read More
{6c69e319-0d03-47da-997a-36586cbc53b3} ywbicim.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{6f396a67-f473-48c9-9950-636ce17e584e} yesgnhr.dll
X
Zlob Trojan that infects your computer with SpyCrush and displays fake security alerts in your Windows taskbar. ... Read More
{91223DE9-F8E6-4FFD-8889-BE6784C18696} yayyvuu.dll
X
Added by the Trojan.Virtumonde Trojan.
{a2cd90b5-e5a2-4aac-a504-c964a6d499df} yvvdj.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{abef791f-947e-4cdf-83c3-e72a240afb67} ygjun.dll
X
Part of the Zlob trojan that displays fake security alerts for the rogue anti-spyware program called SpywareLocked. ... Read More
{b28b396b-b9e8-44f5-aa04-ed4f383d79ad} yosdjh.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{cbb430e6-5b1b-474a-9d7e-160d4fe74bea} yfysupa.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar. ... Read More
{f8d02387-789a-4c0f-a1d8-8a93f33ee4df} yephk.dll
X
A file used by the rogue antispyware app, SpywareQuake, to issue fake security alerts on your taskbar and download and install the SpywareQuake progra ... Read More


> Status Key
Each entry in the database will have a Status assigned to it. The key to this status is the following:
  • Y - This status flag means that this entry should be left alone and be allowed to run as if it is unchecked it may break the functionality or use of a particular program.
  • N - This status flag means it is unnecessary to run this program automatically when Windows starts as you can run it manually when necessary.
  • U - This status flag means it is up to you whether or not you feel this program needs to run automatically.
  • X - This status flags means the item should definitely not start up automatically. Items that have this flag are generally malware such as viruses, trojans, hijackers, spyware but could also be programs that are not desirable to run on your computer.
  • ? - This status flag means the status of this entry is unknown at this time and more research is necessary.
If you require assistance in removing one of these files you can ask us in the Startup Database Forum.

> Disclaimer
It is assumed that users are familiar with the operating system they are using and comfortable with making the suggested changes. BleepingComputer.com will not be held responsible if changes you make cause a system failure.

This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Malware Removal Guides


Portions of this database © Paul Collins
© 2003-2008 All Rights Reserved Bleeping Computer LLC.
PGT: 0.16638 Queries: 5