PC Review
Startup Files Database
Letter l
Powered By Pac's Startup list
Startup Files Database
Letter l
Startup Files Database
[#] [A] [B] [C] [D] [E] [F] [G] [H] [I] [J] [K] [L] [M] [N] [O] [P] [Q] [R] [S] [T] [U] [V] [W] [X] [Y] [Z]
Yes |
No |
Users Choice |
Warning |
Unknown |
| Normally leave to run at startup | Not Required, often infrequently run tasks that can be run manually. | Depends if the task is deemed necessary | Typically viruses, spyware, adware and resource hogs | An unknown item |
| Required | Process Name / Details | Startup File |
![]() |
Added by the VBS.LIDO WORM - where ** is a number between 1 and 12 |
freecell |
![]() |
Added by the VBS.LIDO WORM - where ** is a number between 65 and 76 |
iexplore |
![]() |
Added by the VBS.LIDO WORM - where ** is a number between 33 and 44 |
winmine |
![]() |
Added by the ASSIRAL-C WORM! |
L4r1$$a.pif |
![]() |
AIM Lite is a reference application for testing some new client technology developed here at AOL(r), with the goal of being a simple, fun, light IM client |
aimlite.exe |
![]() |
Delfin Media Viewer adware related |
L90112201.Stub.exe |
![]() |
Added by the RBOT.BT WORM! |
landriver32.exe |
![]() |
SafeSurfing adware |
lanbrup.exe |
![]() |
OKI Printer language support monitor |
Oplmsb01.exe |
![]() |
Adware downloader - also detected as the SECONDT-C TROJAN! |
languard.exe |
![]() |
Added by the DLOADER-VO TROJAN! |
[path to trojan] |
![]() |
Added by the AGENT.AIA TROJAN! |
lanmanwrk.exe |
![]() |
LANMessage Pro - "a powerful tool for communicating with other people on your office/home network" |
LANMES~1.exe |
![]() |
Monitors any traffic that is using a LAN adapter (Ethernet or Token ring network card) |
LanSpeed2.exe |
![]() |
Lao Script for Windows (LSWin) is an extension to the Windows operating system to allow Lao language to be used with many different Windows-based applications |
LaoKey.exe |
![]() |
Utility that automatically performs file transfers as unattended background operations |
Llsched.exe |
![]() |
Added by the INOR-A TROJAN! |
Llass.exe |
![]() |
Added by the ROXY.C TROJAN! |
[trojan filename] |
![]() |
Added by the KLASSIR TROJAN! |
LARISSA_ANTI_VIRUS.exe |
![]() |
?? |
ewat.exe |
![]() |
Added by the LERMA-A WORM! |
Ermasys32.exe |
![]() |
Added by the REPEATLD WORM! |
RePEAtLD.exe |
![]() |
For Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue screen of death) if left out |
N/A |
![]() |
?? |
later.exe |
![]() |
Part of Acer Launch Manager - programmable keys on such laptops as the TravelMate 610 |
LaunApp.exe |
![]() |
?? |
launcg.exe |
![]() |
ASUS Ai Booster is an application that allows you to overclock the CPU either manually or automatically without the hassle of entering the BIOS Setup |
OverClk.exe |
![]() |
Context - electronic dictionary |
Launch.exe |
![]() |
Logitech LCD G-Series software driver |
LCDMon.exe |
![]() |
Driver/utility for Logitech G-Series gaming keyboards and mice |
LCDMon.exe |
![]() |
Driver/utility for Logitech G-Series gaming keyboards and mice |
LGDCore.exe |
![]() |
Added by the RBOT-AUI WORM! |
jorgf.exe |
![]() |
YahooPOPs - enables free POP3/SMTP access to Yahoo! Mail through a service on localhost that emulates the web interface. Available via Start -> Programs |
YAHOOPOPS.EXE |
![]() |
Programmable keys on Acer, Fujitsu and other laptops |
LaunchAp.exe |
![]() |
Acer Launch tool utility on laptops |
Alaunch.exe |
![]() |
LaunchBoard software from Darwin turns your keyboard into a remote control for the Internet and your computer! With LaunchBoard 2.0, you can customize up to 38 keys on your PC keyboard to instantly launch Web Sites, start applications, perform custom macros, handle Windows shortcuts, store passwords, and perform loads of other customizable functions |
lnchbrd.exe |
![]() |
Spyware component related to DownloadWare and found in Program FilesKFH |
launcher.exe |
![]() |
Audio Applications Launcher for the Philips Rythmic Edge soundcard (the Philips Rhythmic Edge is the same as the Thunderbird PCI soundcard - see TBtray). Available via Start -> Programs |
relaunch.exe |
![]() |
Added by the RBOT-SO WORM! Note - this is not the popular Ad-aware spware/adware removal tool |
Ad-Aware.exe |
![]() |
Part of Lavasoft Ad-aware Plus - realtime spyware-monitor watching your memory and registry for spyware that tries to install or change your system |
Ad-watch.exe |
![]() |
Lexmark Scan and Copy Control Program for the X63 (and maybe others) printer/scanner. Required for the scanner to work |
laxmsp32.exe |
![]() |
Added by a variant of the SDBOT WORM! |
hostplsrvc.exe |
![]() |
Added by the BANCOS-LN WORM! |
Kernn.exe |
![]() |
Added by the SILLYFDC-W WORM! |
Lcass.exe |
![]() |
LCDC is an application that displays various information on your LCD or VFD screen. The number of things that LCDC can do is expandable by Plugins |
LCDC.exe |
![]() |
Driver/utility for Logitech G-Series gaming keyboards and mice |
LCDMon.exe |
![]() |
Related to SuperAdBlocker |
LCDPlyer.exe |
![]() |
Tivoli 'TME' System Tray icon - "'lcfep' is the program that displays statistics about the Endpoint. Apparently stopping/removing this process has no impact on the Endpoint itself which will continue to function normally" |
lcfep.exe |
![]() |
?? |
lcidchng.exe |
![]() |
LClock is a program that makes the Windows' clock look like a Windows Longhorn Clock |
lclock.exe |
![]() |
Added by the HOSTOL-A TROJAN! |
lcvga.exe |
![]() |
CoolWebSearch Tooncomics parasite affiliate variant - redirects to fastwebfinder.com |
ld.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
backweb-8876480.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
ldmconf.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
LogitechDesktopMessenger.exe |
![]() |
Added by the CHORUS-A TROJAN! Searchforfree browser hijacker |
ldriver.exe |
![]() |
Installs a USB compact flash card reader or drive on start-up. The device is distributed by Microtech and is made by a company called SnapShot. Required if you want the reader to work |
LEDTRAY.EXE |
![]() |
Chicony Electronics Multimedia Keyboard Hotkey Driver |
CNYHKey.exe |
![]() |
LeechGet download manager |
LeechGet.exe |
![]() |
Added by the COSIAM-D TROJAN! |
leeman.exe |
![]() |
Added by the IRCBOT-TC TROJAN! |
lemsrv.exe |
![]() |
BrowserAid/BrowserPal foistware |
LetsSearch.exe |
![]() |
Added by the LETUM.A WORM! |
[path to worm] |
![]() |
Lexmark System Tray application (where "****" is the model) that enables scan or fax functions to run directly from the printer via the buttons. Can be launched from a desktop shortcut |
lxbabmgr.exe |
![]() |
Lexmark System Tray application (where "****" is the model) that enables scan or fax functions to run directly from the printer via the buttons. Can be launched from a desktop shortcut |
lxbkbmgr.exe |
![]() |
Lexmark System Tray application (where "****" is the model) that enables scan or fax functions to run directly from the printer via the buttons. Can be launched from a desktop shortcut |
lxbtbmgr.exe |
![]() |
Lexmark System Tray application (where "****" is the model) that enables scan or fax functions to run directly from the printer via the buttons. Can be launched from a desktop shortcut |
lxbmbmgr.exe |
![]() |
Lexmark System Tray application (where "****" is the model) that enables scan or fax functions to run directly from the printer via the buttons. Can be launched from a desktop shortcut |
lxczbmgr.exe |
![]() |
Lexmark printer button manager. Required for correct operation |
lxbvbmgr.exe |
![]() |
Lexmark printer button manager. Required for correct operation |
lxbrbmgr.exe |
![]() |
Lexmark X6100 printer button manager - required for correct operation |
lxbfbmgr.exe |
![]() |
Associated with the Lexmark Xxx (where "xx" is the model) all-in-one printer/scanner/copier. Required for correct operation |
AcBtnMgr_Xxx.exe |
![]() |
Associated with the Lexmark Xxx (where "xx" is the model) all-in-one printer/scanner/copier. Required for correct operation |
ACMonitor_Xxx.exe |
![]() |
Lexmark Printer icon in the System Tray for quick access. Not required - uncheck via Printer configuration rather than MSCONFIG. Can also be listed as PrinTray |
printray.exe |
![]() |
Added by the ZONEBAC TROJAN! |
lsasss.exe |
![]() |
Added by the BROPIA WORM! Note - the executable is spelt with a lower case "L" rather than an lower or upper case "i" which is the case with Internet Explorer |
lexplore.exe |
![]() |
For Lexmark printers. From Lexmark: "This enables bi-directional printing over a peer to peer network. If the printer is connected directly to your PC, the file is not used, (or should not be used) at all". It is known that firewalls can however alert you to "lexpps.exe" requesting server privileges |
lexpps.exe |
![]() |
Lexmark printer software may add Lexstart.exe in the startup folder to handle print commands that you send to the printer. Sometimes required for the printer to work correctly - not in the case of a Lexmark Z42 for instance |
lexstart.exe |
![]() |
Added by the ZAURGA-A TROJAN! |
Lfh.exe |
![]() |
LightningFAX Enterprise Fax Server - "puts faxing at the fingertips of networked enterprise users. It enables rapid, secure sending and Direct-To-Desktop Delivery of mission-critical documents" |
lfsndmng.exe |
![]() |
Driver/utility for Logitech G-Series gaming keyboards and mice |
LGDCore.exe |
![]() |
Added by the ACID-F WORM! |
lgm.exe |
![]() |
Auto firmware update program for LG Electronics CD-ROM/DVD writer |
fwupdate.exe |
![]() |
Logitech Wireless Desktop mouse and keyboard software. There is an icon for this program on the taskbar next to the clock |
LgWDskTp.exe |
![]() |
Left over after installation of the British English version of the Lernout & Hauspie Text To Speech (TTS) Engine |
rundll32.exe ..lhttseng.inf, RemoveCabinet |
![]() |
Adult web-dialler - **** is random |
li-multi****.exe |
![]() |
Added by the Vl TROJAN! |
vldial.exe |
![]() |
Adult web-dialler - **** is random |
dlres.exe |
![]() |
Adult web-dialler - **** is random |
li-thund****.exe |
![]() |
Adult web-dialler - **** is random |
li-vita****.exe |
![]() |
LZIO.com adware downloader |
rundll32.exe [path] li01f948.dll, EnableRunDLL32 |
![]() |
Part of the eLicense Copy Protection scheme employed by some software and games. When this service is not running, the eLicense wrapper is unable to extract and execute the program |
runservice.exe |
![]() |
Part of the eLicense Copy Protection scheme employed by some software and games. When this service is not running, the eLicense wrapper is unable to extract and execute the program |
rundll32.exe [path] MMFS.DLL, Service |
![]() |
MediaPipe peer-to-peer file swapping program also reported as a hijacker |
license_manager.exe |
![]() |
Added by QLOWZON-BN TROJAN! |
lich.exe |
![]() |
A utility for configuring certain HP notebook models to enter Standby mode when the lid is closed only when running on battery |
pwrschem.exe |
![]() |
Added by the RBOT-ARS WORM! |
FireWall-Update1.exe |
![]() |
Related to Microsoft's LifeCam series of webcams. What does it do and is it required? |
LifeExp.exe |
![]() |
Keeps the Palm LifeDrive Manager utility in the systray. Shortcut available via Start -> Programs |
LifeDriveMgr.exe |
![]() |
System Tray utility for the Palm LifeDrive Mobile Manager |
LifeDriveMgrTray.exe |
![]() |
Media detector for Picasa's automatic photo organizer |
PicasaMediaDetector.exe |
![]() |
Added by a variant of the SDBOT WORM! |
yujixit.exe |
![]() |
Lightning Download download manager. Can be launched manually, but will need to start up if you want it to "catch clicks" off Internet Explorer |
Lightning.exe |
![]() |
Added by the RBOT-AGH WORM! |
LimeWire.exe |
![]() |
LimeWire - Peer to Peer (P2P) file-sharing client. x.x represents the version number. Note - as with all P2P sharing programs they are susceptible to various forms of malware |
LimeWire.exe |
![]() |
Added by the IRCBOT-WA WORM! |
limewirepro.exe |
![]() |
Added by the RBOT-AJD WORM! |
explorer16.exe |
![]() |
LineSpeedMeter - detect the download and upload speed of your internet connection |
LineSpeedMeter.exe |
![]() |
ABBYY Lingvo Electronic Dictionaries |
Lvagent.exe |
![]() |
ABBYY Lingvo Electronic Dictionaries |
Tutor.exe |
![]() |
Links adware |
LinkMaker.exe |
![]() |
Added by the LOWZONE-BI TROJAN! |
links.exe |
![]() |
Tray icon which gets installed when you install the drivers for Asuscom internal ISDN modem cards (or rebadged Asuscom ISDN cards, such as MRi). This icon enables you to monitor or configure your ISDN card. Once you have configured your ISDN card correctly, you will never need to use this icon |
linksts.exe |
![]() |
Tray icon which gets installed when you install the drivers for Asuscom internal ISDN modem cards (or rebadged Asuscom ISDN cards, such as MRi). This icon enables you to monitor or configure your ISDN card. Once you have configured your ISDN card correctly, you will never need to use this icon |
linksts.exe |
![]() |
Added by the IRCBOT.VD WORM! |
linksys.exe |
![]() |
Added by the DLOADER.MC TROJAN! |
linkuyy.exe |
![]() |
Added by the LOVELETTER.AS VIRUS! |
Linux.vbs |
![]() |
Liquid View lets you increase the legibility of the Microsoft Windows interface regardless of your display's native resolution. The software lets you increase the size of items that are hard to read on your monitor |
lviewj.exe |
![]() |
Added by the SCOM-D premium rate adult content dialler |
Lisa.exe |
![]() |
Added by the RBOT-AHO WORM! |
list32.exe |
![]() |
Added by the LITEBOT-A TROJAN! |
[path to trojan] |
![]() |
Logitech Internet Update. Used to update drivers/software for Logitech's Wingman, QuickCam, etc devices. Reports claim it doesn't work very well and you can manually update the files anyway |
LIU.exe |
![]() |
Logitech Internet Update. Used to update drivers/software for Logitech's Wingman, QuickCam, etc devices. Reports claim it doesn't work very well and you can manually update the files anyway |
Rubicon.exe |
![]() |
eFax Send button for eFax Messenger Plus. Available via Start -> Programs Disabling instructions available here |
Dllcmd32.exe |
![]() |
Added by the RBOT-GHE WORM! |
lmns.exe |
![]() |
MSI Live Update - auto-detects and suggests the latest BIOS/Driver/Utilities information |
LMonitor.exe |
![]() |
Asus graphics card driver live update feature |
Livenote.exe |
![]() |
Premium rate adult content dialler |
LiveSexCams.exe |
![]() |
Web-update utility as used by various types of software - see here |
LiveUpdate.exe |
![]() |
Added by the LINEAGE TROJAN! |
[Windows username]05.exe |
![]() |
Added by the VB.BAU TROJAN! Note - this is not the legitimate smss.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "isas" subfolder of the Winnt or Windows folder |
smss.exe |
![]() |
Added by the VB.BAU TROJAN! Note - this is not the legitimate services.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "isas" subfolder of the Winnt or Windows folder |
services.exe |
![]() |
Added by the BANEDI VIRUS! |
Dibane.bat |
![]() |
Added by the LINEAG-ABD TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in the Windows folder (98ME) or the System32 folder(NT2000XP). This file is located in the "inf" sub-folder |
rundll32.exe |
![]() |
Added by the MOSUCK-G TROJAN! |
[path to file] |
![]() |
?? |
rundll.exe setupx.dll, InstallHinfSection ..LLMODCL2.INF |
![]() |
Added by the PROXY-GG TROJAN! Note - this malware actually changes the default value data of the registry "Run" key in order to force Windows to launch it at boot. Name field may be empty |
llsass.exe |
![]() |
Xerox WorkCenter XE - language monitor status application |
LMSTATUS.EXE |
![]() |
Added by the TILEBOT-AD WORM! |
lmamanager.exe |
![]() |
Acer Launch Manager - on Acer laptops it allows users to configure shortcut keys and to set the operating state of the WLAN module and the (optional) Bluetooth radio |
QtZgAcer.EXE |
![]() |
Acer Launch Manager - on Acer laptops it allows users to configure shortcut keys and to set the operating state of the WLAN module and the (optional) Bluetooth radio |
QtZpAcer.exe |
![]() |
Acer Launch Manager - on Acer laptops it allows users to configure shortcut keys and to set the operating state of the WLAN module and the (optional) Bluetooth radio |
HotkeyApp.exe |
![]() |
Acer Launch Manager - on Acer laptops, provides configurability for the special keys on their range of multimedia keyboards |
QtaET2S.EXE |
![]() |
Added by the AGOBOT-RE WORM! |
lMAPl.exe |
![]() |
OSD (on-screen-display) utility - part of Acer Launch Manager. Gives you control to customize the monitor to your liking...from sound, brightness, contrast, horizontal and vertical positions, phase, pixel clock, color and language |
OSDCtrl.exe |
![]() |
MSI Live Update - auto-detects and suggests the latest BIOS/Driver/Utilities information |
LMonitor.exe |
![]() |
Related to a Lexmark printer/scanner. Printer sharing server? Is it required? |
lmpdpsrv.exe |
![]() |
Unidentified adware |
lmrt.exe |
![]() |
Xerox WorkCenter XE - language monitor status application |
LMSTATUS.EXE |
![]() |
Driver for Xerox XD series printer/copiers |
LMSXXD.exe |
![]() |
Detected by Kaspersky as the AGENT.BG TROJAN! |
LMU.exe |
![]() |
Added by the KWBOT.R WORM! Note that the "l" is a lower case "L" and not an upper case "I" |
AMSNDMGR.EXE |
![]() |
Added by the RBOT-GRH WORM! Note - the executable is spelt with a lower case "L" rather than an lower or upper case "i" which is the case with Internet Explorer |
lExplore.exe |
![]() |
Added by the DLOADR-ATC TROJAN! |
lnwin.exe |
![]() |
Added by the BINGHE TROJAN! |
mdm.exe |
![]() |
Added by the SDBOT-QR WORM! |
msgsr32.exe |
![]() |
Added by the KELVIR.AI WORM! |
[path to worm] |
![]() |
Added by the LAMEYEAR-A WORM! |
MyGame.exe |
![]() |
Added by the LINEAGE-AN TROJAN! |
_Kerne1.exe |
![]() |
Added by the WOWCRAFT TROJAN! |
Internat.exe |
![]() |
Added by the WOWCRAFT TROJAN! |
rundll32.exe |
![]() |
Added by the WOWCRAFT TROJAN! |
svhost32.exe |
![]() |
Added by the GWGHOST-O TROJAN! |
svchsot.exe |
![]() |
Added by the LINEAGE-OZ TROJAN! Note - the legitimate Windows Explorer (explorer.exe) is located in the Windows or Winnt folder and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in the System (9x/Me) or System32 (NT/2K/XP) folder |
explorer.exe |
![]() |
Added by the LINEAGE-ON TROJAN! |
Kerne121.exe |
![]() |
Added by the LINEAGE-DY TROJAN! |
Kerne1211.exe |
![]() |
Added by the LOOKED-CK WORM! |
rundl132.exe |
![]() |
Added by the AGENT-FPN TROJAN! |
ctftpscr32.exe |
![]() |
Added by the RUBBLE-A WORM! |
win32.exe |
![]() |
Added by the PESIN-D WORM! |
SvHost.exe |
![]() |
Part of Stardock's WindowBlinds custom desktop program. "WindowBlinds is the first utility of its kind. It extends Win98/NT/2K/XP to have a fully skinnable user interface. You can change the style of title bars, buttons, toolbars and much more". If you use it - keep it if not then uninstall it |
LOADWB.EXE |
![]() |
Added by the YENO.B and YENO.C WORMS! |
Wscript.exe LGuarg.exe.vbs |
![]() |
Added by the MAPSON.C WORM! |
Lorena.exe |
![]() |
Added by the NIBU, BAMBO TROJANS and DUMARU WORM! |
load32.exe |
![]() |
Added by the DUMARU.Z or DUMARU.Y or DUMARU.AD WORM! |
l32x.exe |
![]() |
Added by the DUMARU.AH WORM! |
1111a.exe |
![]() |
Added by the TURTA.A WORM! |
swchost.exe |
![]() |
Added by the NIBU.E TROJAN! |
netda.exe |
![]() |
Added by the BACKDOOR.NIBU.J or DUMARU-BI TROJANS! Note - also known as Srv.SSA-KeyLogger by Sunbelt Software which has developed a free removal tool for this keylogger |
winldra.exe |
![]() |
After Dark for Windows - screen saver program. Popular before screen savers were integrated into Win95 |
adw30.exe |
![]() |
Status monitor for an NEC SuperScript printer |
asistat.exe |
![]() |
?? |
cfgsys32.exe |
![]() |
Speakerphone capability through a soundcard for an ESS modem |
esspk.exe |
![]() |
Solo 5300 display driver for Win2K on some Gateway laptops |
hotkey.exe |
![]() |
Loads the Status Window software for the HP Laserjet printers |
HPWHRC.EXE |
![]() |
Windows printing system that comes with the setup for Canon BJC series on the manufacturer's disk |
WPSLOAD.EXE |
![]() |
Monitor drivers for Trio2x/3x based video cards - displays control panel for quick access to display settings |
vi_grm.exe |
![]() |
Could it be something to do with configuring Windows on a new PC from an OEM supplier? |
WINOSCFG.EXE |
![]() |
Required to prevent configuration errors on a Compaq LBP-660 and LBP-460 parallel port laser printers (and maybe others) |
wpshrc.exe |
![]() |
Bitware modem driver |
Bfrecv.exe |
![]() |
Added by the RETSAM TROJAN! |
msater.exe |
![]() |
Added by the REMABL WORM! |
shambl3r.exe |
![]() |
Added by the CIADOOR.B TROJAN! Note - "Spoolsv.exe" is located in the Windows or Winnt directory, and not in System32, like the legitimate Spoolsv.exe system file |
Spoolsv.exe |
![]() |
Associated with the Wintab Digitizer |
wtfeat.exe |
![]() |
Asset Insight from Tangram - asset managing software. Required if an organisation is running a centrally administered asset management system |
AICLIENT.EXE |
![]() |
Added by the ATAK WORM! |
hint.exe |
![]() |
Added by the BITTER WORM! |
win32exec.exe |
![]() |
Added by the ATAK.B WORM! |
a1g.exe |
![]() |
Added by the ATAK.E WORM! |
dapdll.exe |
![]() |
Added by the LINEAGE-AB TROJAN! |
svhost32.exe |
![]() |
Related to Elsa CommPro (Communicate Pro) access software for Microlink modems - this software contains answering machine and fax functions, plus a terminal program, a WWW-browser launch function, Internet telephony, and address management. Required if you use those |
01comm32.exe |
![]() |
Added by the PROXY-GG TROJAN! |
inetinfo.exe |
![]() |
Added by the LINEAGE-BA TROJAN! |
Kerne14.exe |
![]() |
Added by the LINEAGE-AJ TROJAN! Note - the legitimate Windows Explorer (explorer.exe) is located in the Windows or Winnt folder and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in the Program Files folder |
explorer.exe |
![]() |
This is the "intrusion detection system" of the BlackICE PC Protection (was Defender) firewall which loads independently of the "user interface" (BlackICE Utility) |
blackd.exe |
![]() |
Fujitsu Siemens Lifebook laptops have some buttons on the case that can be programmed to execute specified programs (like hotkeys). The buttons can also be used as a combination lock input |
BtnHnd.exe |
![]() |
Added by the GIBE WORM! |
BcTool.exe |
![]() |
Winvest spyware |
loaddll.exe |
![]() |
Part of Command AntiVirus for Windows 95/98/Me. Is it needed? |
DVPAPI9X.exe |
![]() |
Homepage hijacker, redirecting to coolwwwsearch.com. Downloader for iedll.exe |
loader.exe |
![]() |
Unknown baddie - WMPLAYER.EXE is stored in the location and uses the same name as Windows Media Player but that valid Windows program doesn't load at startup |
WMPLAYER.EXE |
![]() |
Added by an unidentified TROJAN! |
Loader32.exe |
![]() |
Added by the DOMCOM TROJAN! |
sys*****.exe [***** = random digit] |
![]() |
Added by the SDBOT-ADB WORM! |
HeIp.exe |
![]() |
Added by the WINFLUX-C TROJAN! |
loadfax.exe |
![]() |
Homepage hijacker that changes your homepage to an adult content site |
LoadFonts.vbs |
![]() |
Homepage hijacker that changes your homepage to an adult content site |
Tahoma.vbs |
![]() |
Maps the keys on a Fujitsu Siemens Lifebook application panel to various programs and functions |
QuickTouch.exe |
![]() |
PlayMiniGolf.com foistware - stealth installed! |
LoadGolfCourses.exe |
![]() |
Mshtmpre adware |
rundll32.exe mshtmpre.dll, MShtmpre |
![]() |
Added by the OBLIVION TROJAN! This executable is one of the most common but there are more |
ZipLoader32.exe |
![]() |
Added by the OBLIVION TROJAN! This executable is one of the most common but there are more |
msload32.exe |
![]() |
Added by the OPASERV.T WORM! |
msload.exe |
![]() |
Added by the MUMUBOY.C TROJAN! Note - the legitimate Windows Explorer (explorer.exe) is located in the Windows or Winnt folder and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in the Program Files folder |
explorer.exe |
![]() |
Added by the LEGMIR-AS TROJAN! |
rundll32.exe |
![]() |
Added by the LINEAGE-L TROJAN! Note - the legitimate Windows Explorer (explorer.exe) is located in the Windows or Winnt folder and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in the Program Files folder |
explorer.exe |
![]() |
Added by the LEGMIR-JB TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in the Windows folder (98ME) or the System32 folder(NT2000XP). This file is located in the Windowsinf or Winntinf folder |
rundll32.exe |
![]() |
Added by the FLOOD-EL TROJAN! |
smss32.exe |
![]() |
Auto-update for Movielink - internet movie rental System Tray access |
msvcmm32.exe |
![]() |
Added by the TRON.A TROJAN! |
[random filename] |
![]() |
Manager for the Belkin Nostromo n50 SpeedPad game controller - see here |
nost_LM.exe |
![]() |
Added by the QEDS-B WORM! |
wmimgr.exe |
![]() |
Added by the CABRO TROJAN! Not to be confused with the valid LoadPowerProfile entry where the command is Rundll32.exe powrprof.dll |
ASDAPI.EXE |
![]() |
Power management specifics such as monitor shut-off, system standby, etc. Associated with power management and is listed twice - see here. Loads your selected power scheme. May not be required - depends upon whether you modify the default Control Panel -> Power Options settings |
Rundll32.exe powrprof.dll |
![]() |
Added by the LOXOSCAM TROJAN! Note - do not confuse with the valid LoadPowerProfile entry! Notice that the infected version uses "Rundll.exe" whereas the uninfected version uses "Rundll32.exe" |
Rundll.exe powerprof.dll |
![]() |
Added by the TOFAZZOL TROJAN! Not to be confused with the valid LoadPowerProfile entry where the command is Rundll32.exe powrprof.dll |
rundl.exe |
![]() |
Added by the MIROOT WORM! Note - do not confuse with the valid LoadPowerProfile entry which has "powrprof.dll" appended to the command/data line |
Rundll32.exe |
![]() |
Ulubione adult content dialer |
rundll32.exe powerprof.dll CheckPowerProfile |
![]() |
Installed with MSN Explorer and loads the MSN Queue Manager. Required to enable the WU AutoUpdate feature. Note that disabling this can sometimes prevent internet sharing working on Win2K Pro SP2. Reports also suggest that removing it will re-enable internet access - hence the "users choice" recommendation. If you have problems leave it, otherwise I recommend you disable it |
loadqm.exe |
![]() |
MediaMotor adware |
loads.exe |
![]() |
Medload adware |
medload.exe |
![]() |
Added by the AGENT-BZ TROJAN! |
suploads.exe |
![]() |
Added by the KANGAROO-A WORM! |
Rest In Peace |
![]() |
Added by the KAGEN-A TROJAN! |
Maaf, tempatmu bukan di sin |
![]() |
Added by the CAGER.A WORM! |
Virus |
![]() |
123Mania adware |
rundll32.exe [path] SIPSPI32.dll, SIPSPI32 |
![]() |
Reportedly part of a webcam surveillance program that's supposed to test SMTP dialling in the event of an alert? Is this correct? |
Test.exe |
![]() |
Watcher spyware |
watcher.exe |
![]() |
Added by the QQPASS-I TROJAN! |
winset.exe |
![]() |
Added by the QQPASS-J TROJAN! |
winsys.exe |
![]() |
Added by the DELF.B TROJAN! where [filename] is the infected file |
[filename] |
![]() |
Added by a variant of the RBOT WORM! |
OpenGL.exe |
![]() |
Added by the AMRKTMAN-C TROJAN! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder |
lsass.exe |
![]() |
Added by the SDBOT-YA WORM! |
LIC.exe |
![]() |
Added by a variant of the RBOT WORM! |
phqghume.exe |
![]() |
Naupoint browser hijacker |
http://find.naupoint.com |
![]() |
Added by the SMALL-DP TROJAN! |
srvc32.exe |
![]() |
Added by the POEBOT-T WORM! Note - this is not the legitimate lsass.exe process |
lssas.exe |
![]() |
Added by the POEBOT-J WORM! Note - this is not the legitimate lsass.exe process |
lssas.exe |
![]() |
Added by the LINKBOT.M WORM! |
Isass.exe |
![]() |
Added by the NUCLEAR-J TROJAN! |
Intenat.exe |
![]() |
Added by the P2PWORM-T WORM! Note - this is not the legitimate services.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "Cursors" subfolder of the Windows or Winnt folder |
services.exe |
![]() |
Added by the GAVGENT.A WORM! |
[User Name].exe |
![]() |
ProxyTools is a package of Perl network utilities designed mainly to assist those whose Internet access is censored, unreliable, or otherwise damaged. Uncensored access is provided to any outside service required (Usenet News, Web browsing, IRC, Socks etc.). Setup requires installation of Perl and some modules |
proxy4free.exe |
![]() |
EHU adware. Note - this is not the legitimate svchost.exe process which should NOT appear in Msconfig/Startup! |
svchost.exe |
![]() |
Added by the AGOBOT-KY TROJAN! |
[filename] |
![]() |
Lock My PC - a tool for quick computer locking when you leave it unattended. It shows a lock screen, disables Windows hot keys and mouse |
lockpc.exe |
![]() |
Added by the PWFUZZ-A WORM! |
logo_1.exe |
![]() |
Looks for Kodak camera connection and media insertion. Available via Start -> Programs |
pts.exe |
![]() |
Salfeld Child Control - parental control software |
winlog.exe |
![]() |
Added by the HOTWORD-A TROJAN! |
[path to trojan] |
![]() |
Added by the BANCBAN-AH TROJAN! |
Login.exe |
![]() |
Added by the BUGSPR-A TROJAN! |
lala.exe |
![]() |
Added by the RBOT-AVN WORM! |
login.scr |
![]() |
Added by the MIGMAF TROJAN! |
[path to file] |
![]() |
Added by the REDIST.C WORM! |
Lgnpsp32.exe |
![]() |
Added by the RBOT.BJH WORM! |
Logitech.exe |
![]() |
Added by the SDBOT.MUC WORM! |
Soundcane.exe |
![]() |
Added by the RBOT-YP WORM! |
ApPache.exe |
![]() |
Added by the SDBOT-WE WORM! |
IPCONN.EXE |
![]() |
Added by a variant of the RBOT WORM! |
wrcam.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
backweb-8876480.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
ldmconf.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
LogitechDesktopMessenger.exe |
![]() |
Part of the Logitech Setpoint software for their wired and wireless mice and trackballs. Sets the Windows mouse sensitivity to minimum. The idea is that you will use the SetPoint Control Panel to adjust your mouse sensitivity. This setting is maintained separately from the Windows setting, but is combined with the Windows setting to determine the final sensitivity. For this reason, KHALMNPR sets the Windows setting to 0 so it doesn't alter the one you set in SetPoint |
Khalmnpr.exe |
![]() |
Logitech Harmony advanced universal remote |
HarmonyClient.exe |
![]() |
Keyboard and mouse drivers and utilities for Logitech's latest products - supersedes iTouch and MouseWare on their older products. Required if you use special features such as multimedia keys |
KEM.exe |
![]() |
Part of the Logitech Setpoint software for their wired and wireless mice and trackballs. Sets the Windows mouse sensitivity to minimum. The idea is that you will use the SetPoint Control Panel to adjust your mouse sensitivity. This setting is maintained separately from the Windows setting, but is combined with the Windows setting to determine the final sensitivity. For this reason, KHALMNPR sets the Windows setting to 0 so it doesn't alter the one you set in SetPoint |
KHALMNPR.EXE |
![]() |
Logitech SetPoint Event Manager for their range of mice and keyboards. Required if you want to use the advanced features of these devices and is located in the LogitechSetpoint sub-folder of Program Files |
Setpoint.exe |
![]() |
Logitech Mouseware driver. Needed to support some additional functionality of Logitech mice/trackballs such as "SmartMove". If you disable it and find you don't need it leave it disabled |
Logi_MwX.exe |
![]() |
Loads at startup and monitors the scanner. When a document is inserted in the scanner the wakeup program feeds the document a fraction of a inch into the scanner and then it launches the control center software. From the control center you can select whether to fax or copy or print the scanned documents. If you uncheck the Logitech wakeup software from the startup it no longer launches the control center or feeds the document a fraction of an inch. You can manually launch the control center software via Start ->Programs and still be able to scan images |
lgwakeup.exe |
![]() |
Added by the MYTOB-BS WORM! |
logitechwls.exe |
![]() |
Related to Logitech QuickCams and provides additional configuration options for these devices |
CameraAssistant.exe |
![]() |
Related to Logitech Camera Service and provides additional configuration options for these devices |
ElkCtrl.exe |
![]() |
Installed with a Logitech Quickcam Messenger and if disabled the camera will not work - at least not in the quick capture mode |
communications_helper.exe |
![]() |
Installed with the software for Logitech products. Automatically checks for software upgrades AND new products, services and special offerings from Logitech |
LogitechDesktopMessenger.exe |
![]() |
LogitechGalleryRepair/LogitechVideoRepair - part of Logitech Image Studio - installed with Logitech QuickCam cameras. Required from version 8.11 onwards if you use the software to take pictures and capture videos, not if you don't. Also not required for versions up to and including 7.30 and after version 8.30 - hence the "U" rather than "Y" recommendation |
ISStart.exe |
![]() |
Logitech Image Studio - installed with Logitech QuickCams |
LogiTray.exe |
![]() |
Installed with a Logitech Quickcam Messenger. Camera's software which is non-essential. When you open it, it allows you to open the quick capture, camera settings, etc |
quickcam10.exe |
![]() |
Added by the SDBOT.BWE WORM! |
Logitechs.exe |
![]() |
Updater, part of Logitech Image Studio - installed with Logitech QuickCam cameras |
ManifestEngine.exe |
![]() |
LogitechGalleryRepair/LogitechVideoRepair - part of Logitech Image Studio - installed with Logitech QuickCam cameras. Required from version 8.11 onwards if you use the software to take pictures and capture videos, not if you don't. Also not required for versions up to and including 7.30 and after version 8.30 - hence the "U" rather than "Y" recommendation |
ISStart.exe |
![]() |
Logitech Image Studio - installed with Logitech QuickCams |
LogiTray.exe |
![]() |
Logitech QuickCam software installation helper |
InstallHelper.exe |
![]() |
Logitech Image Studio - installed with Logitech QuickCams |
LogiTray.exe |
![]() |
Logitech Mouseware driver. Needed to support some additional functionality of Logitech mice/trackballs such as "SmartMove". If you disable it and find you don't need it leave it disabled |
Logi_MwX.exe |
![]() |
RemotelyAnywhere is a remote administration and remote control solution for Windows. It allows access to the host computer via the network (the LAN, an intranet or the Internet) - and on the client side all you need is a web browser, a terminal emulator or a WAP-enabled phone |
LogMeInSystray.exe |
![]() |
RemotelyAnywhere is a remote administration and remote control solution for Windows. It allows access to the host computer via the network (the LAN, an intranet or the Internet) - and on the client side all you need is a web browser, a terminal emulator or a WAP-enabled phone |
ragui.exe |
![]() |
Added by the DLOADER-RH TROJAN! |
[path to trojan] |
![]() |
Logon Loader - customize boot & login screens |
LogonLoader.exe |
![]() |
Logon Loader - customize boot & login screens |
LogonLoader.exe |
![]() |
Added by the ZINS.A TROJAN! |
logon.exe |
![]() |
Added by the RAHIWI.A WORM! |
imoet.exe |
![]() |
WinCustomize LogonStudio - "Allows Windows XP users to edit, change, and apply new logon screens. LogonStudio comes built with a visual editor to make it easy to create your own logons which can then be uploaded to websites to be used by others users" |
logonstudio.exe |
![]() |
Added by the PAPROXY TROJAN! |
wincalc.exe |
![]() |
Added by the IU TROJAN! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder |
lsass.exe |
![]() |
Added by the PAPROXY-D TROJAN! |
lsrss.exe |
![]() |
Licensing patch for products installed on NT by Computer Associates such as eTrust. Detects and updates old versions of lic98.dll. Not required if you already have a newer version or the patch has been applied |
logwat95.exe |
![]() |
Added by the HIDEME-A TROJAN! |
_hideme_imhiddenlololol.exe |
![]() |
Added by the BANKER-CD TROJAN! |
WIWT.EXE |
![]() |
Look 'n' Stop personal firewall |
looknstop.exe |
![]() |
LooknMeet dating service |
Agent.exe |
![]() |
P04n trojan |
lookupsys.exe |
![]() |
The Easy Clip icon automates the collection of information from sources such as e-mail to create an Organizer address, appointment, task or Notepad page. Available via Start -> Programs |
easyclip.exe |
![]() |
Lotus central application, called SmartCenter, which runs on the Windows desktop. SmartCenter toolbar stretches across the top or, optionally, the bottom of the screen. Uses a lot of resources. Available via Start -> Programs |
smartctr.exe |
![]() |
Puts the individual Lotus components in the system tray taskbar when you start Windows. Can be disabled via MSCONFIG -> Startup as "Lotus SuiteStart 97 Edition". All individual components available via Start -> Programs |
suitest.exe |
![]() |
Added by the LASTRAS TROJAN! |
[filename] |
![]() |
Part of Lenovo's IBM ThinkVantage Productivity Center for - "guides you to a host of information and tools to help you set up, understand, maintain, and enhance your ThinkPad(r) notebook or ThinkCentre(r) desktop" |
LPMGR.exe |
![]() |
Added by the REMPSTEAL password stealer TROJAN! |
Lpr123.exe |
![]() |
Added by the REMPSTEAL password stealer TROJAN! |
Lpr123.exe |
![]() |
Local Port Scanner - "With LPS you're able to check your computer for open or listening ports" |
Lps.exe |
![]() |
Program Lock It And Protect Pro - lock and protect your folders from being opened, moved or deleted |
lptask.exe |
![]() |
Added by the AGOBOT-JQ WORM! |
lrbz32.exe |
![]() |
Supposed to accelerate transfer rate on LS-120, contributes to system lockups |
?? |
![]() |
Added by the MYTOB.C WORM! |
wfdmgr.exe |
![]() |
Added by the SDBOT-YV WORM! |
lsa.exe |
![]() |
Added by the AHKER.G WORM! Note - this is not the legitimate lsass.exe process, which should not appear in Msconfig/Startup! |
LSASS.exe |
![]() |
Added by the TAME-C WORM! |
lsa2srv.exe |
![]() |
Added by several variants of the AHKER WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder |
LSASS.exe |
![]() |
Added by the BEAGLE.DR WORM! |
lsamgr.exe |
![]() |
Added by the BIGFAIRY-C WORM! |
lsas.exe |
![]() |
Added by the RATSOU.B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a DebugUserMode subfolder of the Winnt or Windows folder |
lsass.exe |
![]() |
Added by the ZCREW TROJAN! |
start.bat |
![]() |
Added by the ALADINZ.F TROJAN! Note - this is not the legitimate lasss.exe process which should NOT appear in Msconfig/Startup! |
[path to lsass.exe] |
![]() |
Added by the MYDOOM.AG or MYDOOM.AS or MYDOOM.AU WORMS! |
lsasrv.exe |
![]() |
Added by an unidentified WORM or TROJAN! |
woekd.exe |
![]() |
EliteBar adware |
elite***32.exe |
![]() |
Added by the ALCOP-B WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder |
Lsass.exe |
![]() |
Added by the VOUMIT-A WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "mirc32" folder |
Lsass.exe |
![]() |
Added by the SDBOT.BCA WORM! |
Sygate.exe |
![]() |
Added by an unidentified WORM or TROJAN! NOTE - do NOT confuse with the legitimate Kaspersky antivirus module as described here. Contrary to this impostor, the legitimate file will always be located in the Kaspersky Lab folder in Program Files |
kavmm.exe |
![]() |
Added by the PUNYA-B WORM! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! |
LSASS.EXE |
![]() |
Added by the ASSIRAL-C WORM! |
ISASS32.pif |
![]() |
Added by the SDBOT-UY TROJAN! |
lshosts32.exe |
![]() |
Added by the SDBOT.BCE WORM! |
lsvhosts.exe |
![]() |
Added by a variant of the AGOBOT/GAOBOT WORM! |
LSASSd.exe |
![]() |
Added by a variant of the AGOBOT/GAOBOT WORM! |
lsass2.exe |
![]() |
Added by the BANKER-BXX TROJAN! |
lsass16.exe |
![]() |
Added by a variant of the RBOT WORM! |
lsass2k.exe |
![]() |
Added by the KELVIR.M WORM! |
Isass32.exe |
![]() |
Added by the LYDRA-B TROJAN! |
lsass32.exe |
![]() |
Added by the FORBOT-CK WORM! |
lsass64BiT.exe |
![]() |
Added by the BANCOS-EC TROJAN! |
lsassig.exe |
![]() |
Added by the GEEKMY-A TROJAN! |
lsasss.exe |
![]() |
Added by the SASSER.E WORM! |
lsasss.exe |
![]() |
HP software which helps one create labels after a music CD is burned using LightScribe discs. If you want to use LightScribe labeling, do not prevent from starting |
lsburnwatcher.exe |
![]() |
HP software which helps one create labels after a music CD is burned using LightScribe discs. If you want to use LightScribe labeling, do not prevent from starting |
lsburnwatcher.exe |
![]() |
Added by the SINNAKA.A WORM! |
lsess.exe |
![]() |
Added by the WALLOP-B TROJAN! |
lsmass.exe |
![]() |
Added by the PROXY-GG TROJAN! |
lsmss.exe |
![]() |
eAcceleration Stop-Sign security software related. Previously not recommended, see here |
LSPmonitor.exe |
![]() |
Reported as the VB.KC TROJAN by Kapersky Anti-Virus |
igps.exe |
![]() |
eAcceleration Stop-Sign security software related. Previously not recommended, see here |
LSPmonitor.exe |
![]() |
Added by the AGOBOT.RL WORM! Note - this is not the legitimate lsass.exe process |
lssas.exe |
![]() |
PowerStrip foistware. Note - this is not the same as the video tweaking utility of the same name here |
LSvr.exe |
![]() |
Acts as a data spooler for the DSL modem (similar to a cache). Do not uncheck if the DSL modem is being used |
ltdaemon.exe |
![]() |
Added by the DELBOT-AP WORM! |
ltcisi.exe |
![]() |
Added by the DELBOT-AP WORM! |
ltcisi.exe |
![]() |
PowerStrip foistware. Note - this is not the same as the video tweaking utility of the same name here |
LTDMgr.exe |
![]() |
Added by the LITMUS.A TROJAN! Note - MSGSRV32.EXE in this case is in a Litmus sub-directory and is not to be confused with the valid version in C:WindowsSystem |
MSGSRV32.EXE |
![]() |
Added by the LITMUS.201 TROJAN! |
MPGSRV32.EXE |
![]() |
Added by the LITMUS.C TROJAN! |
MSGSRV320.EXE |
![]() |
Added by the LITMUS.203 TROJAN! |
winupdate.exe |
![]() |
Added by the LITMUS.203 TROJAN! |
bible.exe |
![]() |
Added by the LITMUS-B TROJAN! |
winscan.exe |
![]() |
Added by a variant of the LITMUS TROJAN! Note - this is not the legitimate lsass.exe process |
lssas.exe |
![]() |
Added by the FC.C TROJAN! |
MSGSSV32.EXE |
![]() |
Added by the LITMUS.C TROJAN! |
msns6 |
![]() |
Added by the MULTIDRP.BG TROJAN! |
RundlI.exe |
![]() |
Added by the LITMUS.203B TROJAN! |
SVCHOST32.exe |
![]() |
Added by the DROPPERFL.A TROJAN! |
SVCHOST˜.exe |
![]() |
Added by the SMALL.ND TROJAN! |
winvers16.exe |
![]() |
Modem On Hold utility - manages incoming/outgoing voice calls on a single phone line while being connected to the internet |
Ltmoh.exe |
![]() |
One of the "popular" WinModem series. WinModems use software rather than hardware - hence putting a load on the CPU. Needed if you have it for loading the drivers. See here for more WinModem information |
ltmsg.exe |
![]() |
Related to Global Positioning System (GPS) found on HP iPAQ hw6500 unit and others |
DesktopLtoManager.exe |
![]() |
Lucent Tech. Soft Modem Messaging application - may be found on Fujitsu Lifebook, Acer and Sony Vaio notebooks, maybe others too |
LTSMMSG.exe |
![]() |
Added by the LEMIR.B TROJAN! |
Shell32.exe |
![]() |
Added by the LINEAGE-BI TROJAN! |
rundll32.exe |
![]() |
One of the "popular" WinModem series. WinModems use software rather than hardware - hence putting a load on the CPU. Needed if you have it for loading the drivers. See here for more WinModem information |
ltmsg.exe |
![]() |
Added by the SERFLOG.A WORM! |
formatsys.exe |
![]() |
Added by the SERFLOG.A WORM! |
msmbw.exe |
![]() |
Added by the SERFLOG.A WORM! |
serbw.exe |
![]() |
PC-Duo Remote Control enables your help desk technicians to take instant control of any remote desktop PC at any location across the LAN, WAN or internet |
LUGuard.exe |
![]() |
Added by the IRCBOT_GEN WORM! |
lup.exe |
![]() |
Symantec LiveUpdate installer - required to install a new version of the application. Will only run once, and the entry is automatically deleted after a reboot |
LUSetup.exe |
![]() |
Lvcomm server. Related to Logitech Quick Cam - works fine without it but it is needed for the Logitech ImageStudio software to connect to the camera |
lvcoms.exe |
![]() |
It provides extra functionality for Logitech multimedia webcam devices. When disabled the camera still works in quick capture but you can get a slight increase in picture quality - not so snowy and the movement wasn't so jerky |
LVCOMSX.EXE |
![]() |
Mouse driver - required if you use non-standard Windows driver features |
lwbwheel.exe |
![]() |
Mouse driver - required if you use non-standard Windows driver features |
MOUSE32A.EXE |
![]() |
Logitech Wingman Profiler for the Logitech joysticks. Available via Start -> Programs |
lwtest.exe |
![]() |
Added by the DWNLDR-GTQ TROJAN! |
lwjcjuti.exe |
![]() |
Associated with a Lexmark Printer - is it required? |
lxamsp32.exe |
![]() |
Lexmark printer button manager? Is it required? |
LXbbmgr.exe |
![]() |
Lexmark related. What does it do, and is it required? |
LXBLKsk.exe |
![]() |
Lexmark printer button manager. Required for correct operation |
lxbrbmgr.exe |
![]() |
Lexmark printer related. What does it do and is it required? |
LXBRKsk.exe |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXBStime.dll, _RunDLLEntry@16 |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXBTtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXBUtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXBXtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 7100 Series printer device monitor |
lxbxmon.exe |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXCCtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 3300 Series printer device monitor |
lxccmon.exe |
![]() |
Lexmark printing software - reports back on printer and cartridge useage |
rundll32 [path] LXCGtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 2300 Series printer device monitor |
lxcgmon.exe |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXCQtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXCRtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 2400 Series printer device monitor |
lxcrmon.exe |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXCTtime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 5400 Series printer device monitor |
lxctmon.exe |
![]() |
Lexmark 3500-4500 Series printer device monitor |
lxdiamon.exe |
![]() |
Lexmark printer software - reports back on printer and cartridge useage |
rundll32 [path] LXDItime.dll, _RunDLLEntry@16 |
![]() |
Lexmark 3500-4500 Series printer device monitor |
lxdimon.exe |
![]() |
Lexmark Printer. The printer should work fine without it |
LXSUPMON.EXE |
![]() |
Lycos eMail related - what does it do and is it required? |
Lyc_SysTray.exe |
![]() |
Related to RCA Lyra MP3 Player |
LYRAHD2TrayApp.exe |
![]() |
LZIO.com adware downloader |
LzioMediaUpdater.exe |

Main Page 



