CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

StartupList Index

Currently 17175 startuplist entries and growing...
Last updated on 2008-08-21 15:41:23 Eastern.
!! THESE ARE STARTUP PROGRAMS AND NOT TASK MANAGER PROCESS ITEMS !!


For more information on startup programs, including how to identify them and the information required for submitting additions to this list please refer to Content & Info. Reprinted with permission from Paul Collins who owns the copyright to the list. CastleCops also adds additional items that may not be in the original list but attempts are made to ensure the original is also updated. The full HTML list is here.

CastleCops is now hosting the official Pacs-portal forums. CastleCops has also cross-referenced startup entries with our File Hash database where appropriate. Comments or questions can be fielded here.

KEY:
  • "Y" - Normally leave to run at start-up
  • "N" - Not required - typically infrequently used tasks that can be started manually if necessary
  • "U" - User's choice - depends whether a user deems it necessary
  • "X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
  • "?" - Unknown

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z



    Random sampling...
    NameStatusFilenameDescription
    GP UpdaterXgpupdater.exeAdded by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    GDriveNGDriver.exeFound on IBM systems. All it does is set the CDROM drive letter to G:. Set your drive letter manually via Start -> Settings -> Control Panel -> System -> Device Manager
    gwumUgwum.exeGigabyte utility manager. Loads if you have a Gigabyte motherboard and got a full bundle of utilities installed. Monitors CPU, fans, BIOS etc. Only used by system "tweakers"
    GoogleDCClientNGoogleDCC.exe Google Compute Client - only present if you installed the Google Toolbar with "Google Compute" client active. Does complex calculations in the background when idle. If you want to turn it off go to your browser, click on the little double-helix on the Google Toolbar, and click "Stop Computing". No longer supported
    Generic Host ServiceXlshost.exeAdded by a RBOT.LU worm infection
    gremierXwscript.exe,gpremier.vbsAdded by the GPREMIER VIRUS!
    Gravis Xperience Driver SupportUGrxp4exe.exeDriver for Gravis game controllers such as the Eliminator Aftershock. Must be loaded if you run the supplied application software for the controller to be recognized. Start it manually via a shortcut if not used
    Generic Service ProcessXnvsvc.exeAdded by the AGOBOT.BY WORM! - NOTE - do NOT confuse with the legitimate NVIDIA Driver Helper Service file of the same name as described here
    GLSetIT32Xisass.exeAdded by a variant of the OPTIX PRO series of VIRUSES!
    GCSNGrabClipSave.exeGrabClipSave screen capture tool
    Gadwin PrintScreenNPrintScreen.exeGadwin PrintScreen - utility to capture, print or save the current window
    gtydfXiisca.exe Troj/Clagger-BB
    Gay_Sexy_**XGay_Sexy_**.exePremium rate adult content dialer (where * is a random char)
    gouday.exeXreadme.exeAdded by the BEAGLE.C WORM!
    GMedia2XGSM2.exeMalware downloader - detected by Kaspersky antivirus as Trojan.Win32.VB.ux
    GainwardUTBPanel.exeConfiguration utility for Gainward graphics cards. Not required unless you use non-default settings. Available via Start -> Settings -> Control Panel
    GBSpaceManYSpaceMan.exeRelated to GreenBorder Secure your browsing activities on the internet. Note: Located in C:\Program Files\GreenBorder\SpaceMan.exe
    Gestionnaire des tâches de WindowsXtaskmgr.exeDetected as Backdoor.Win32.Poison.fat by Kaspersky anti-virus. Note: Do not remove the legitimate file in \%WINDIR%\System32\taskmgr.exe Note: Use SDFix under supervision.
    GolumXservices.exeAdded by the GOLUM.A TROJAN! - Note - this services.exe file is placed in a Winnt\System32\Golum or Windows\System32\Golum subdirectory, and should NOT be confused with the legitimate Windows services.exe process, located in the Winnt\System32 or Windows\System32 folder, and which moreover should NOT figure in Msconfig/Startup!
    GuruNetUGuruNet.exe GuruNet lets you click on any word on your screen to get the relevant information you want.
    g.exeXg.exeAdded by the Backdoor.Graybird.Q TROJAN! Read the link, rootkit type stealth involved.
    gdcwXGDCW.exeIdentified as a variant of the Trojan.Fakealert.origin Trojan. Note: Located in \%Program Files%\SecurePCCleaner\data\ Note: Use SDFix under supervision.
    GotSmileyXGotSmiley.exe GotSmiley - ad supported program that provides the user with smileys for use in emails. Not recommended. Please note that Claria Corporation no longer support GAIN-Supported software - see here
    googletalkUgoogletalk.exe Google_Talk "enables you to call or send instant messages to your friends for free–anytime, anywhere in the world". Can be launched manually.
    Graphic UpdateXopenglx.exeIdentified as Backdoor.Win32.IRCBot.ako MSN Worm! Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    Generic Host Process for Win32 ServicesXsvchost.exeAdded by an unidentified TROJAN! of the Sdbot family. Note: This is not the legitimate Windows Process. (Which is found in the System32 folder.) This worm\trojan file is found in the Windows or Winnt folder.
    german.exeXwintems.exeAdded by the W32.Beagle.DP WORM! Note: This worm file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder. Drops multiple files in multiple folders.
    GustavVEDX(random,filename)Added by the OPASERV.H VIRUS!
    GRANgra.exeLooks at system resources at startup and warns you if they have dropped. Contains links to the Disk Clean Up, Defrag and Start Up Menu. It does have a link to a startup configuration utility. Similar to msconfig but can keep a list of disabled apps. Not really necessary. Only appears if you load the Gateway Startup Utility
    gramdate?2Stop.exe??
    gencrootXgencroot.exeAdded by the Troj/HacDef-X TROJAN! Note: This trojan file is found in the Windows or Winnt folder.
    Gravis AppawareloaderUdbserver.exeLooks like it's associated with Gravis game controllers and the Keyset Manager, allowing the user to program the buttons for games that don't support them
    GtwatchNgtwatch.exeAssociated with a Mustec scanner and not required
    GsAdsXgms2.exe PacerD_Media/Pacimedia.com adware component
    GLSetIT32Xmsiexec16.exeAdded by the OPTIX PRO series of VIRUSES!
    GWMDMpiUGWMDMpi.exeUsed with internal modems on Gateway PCs such as the 450SX Notebook. Required for audio settings to be maintained and does not remain in memory once run. See here for more information
    gluon?gluon.exeIn a gluon/bin sub-directory
    Goldensoft_MndlSvrUMndlSvr.exeGoldensoft CD Ghost related - turns a computer into a 200X-speed CD-ROM tower. Working from the hard drive, users can simultaneously access as many as 23 virtual CD-ROM drives at a speed of 200X for true multitasking
    Game DeviceNJOYUPDRV.EXEGenius game controller profile activator
    Generic Host Process for Win ServicesXmscvs.exeAdded by a variant of the SDBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.
    general lptt01Xgeneral.exe RapidBlaster Variant
    GrooveMonitorYGrooveMonitor.exeRelated to Microsoft_Office_Groove_2007 Groove Folder Sharing synchronization (GFS). If you kill it, your GFS workspaces may not synchronize properly (particularly around unread-marks), and you might experience some nagging discomfort. Note: Located in C:\Program Files\Microsoft Office\Office12\
    grindersXgrinders.exeAdded by the Nuwar/Storm worm Note: located in \%WINDIR%\ Note: Use SDFix under supervision.
    GLF Network Lan MonitorXNPFMNTOR.exeAdded by the W32/RBOT-AGY WORM!
    GameSpotNkontiki.exeKontiki Delivery Manager - Windows-based client software that enables secure delivery of content to users' desktops
    Generic host proccess for windowsXSVCHOSTS.EXEAdded by the W32/SPYBOT-GQ WORM!
    GT15J4R49VXcpuserv.exeIdentified as a variant of the Trojan.Win32.Radi.gu family of TROJAN. Note: Located in \%WINDIR%\ Note: Use SDFix under supervision.
    GomAudioUGoma.exeRelated to Gom_Audio, O4 - HKCU\..\Run: [GomAudio] C:\Program Files\GRETECH\GomAudio\Goma.exe from GRETECH Note: Located in \%Program Files%\GRETECH\GomAudio\
    Graphic LoaderXntvdm32.exeAdded by a variant of the WIN32.RBOT WORM!
    GetTheMusicXrundll32.exe,MSA64CHK.dll, DllMostrar MatrixDialer related
    Generic Host Process for Win32 ServicesXntspcv.exeAdded by the SDBOT.S WORM!
    Generic Host ProcessXcamacttiv.exeAdded by a variant of the Backdoor.Ciadoor TROJAN!
    GlideYGlidew32.exeCirque touchpad driver
    gimmysmileysXgimmysmileys.exeAdded by the Downloader.VB.xu identified by ewido. Note: More_info
    german.exeXwintems.exeAdded by the Mitglieder.S TROJAN! Note: This trojan file is found in the System (95/98/ME) or System32 (NT/2000/XP) folder.

    This is NOT a list of tasks/processes taken from Task Manager or the Close Program window (CTRL+ALT+DEL) but a list of startup applications, although you will find some of them listed via this method. Pressing CTRL+ALT+DEL identifies programs that are currently running - not necessarily at startup. For a list of tasks/processes you should try the list at AnswersThatWork. Therefore, before ending a task/process via CTRL+ALT+DEL just because it has an "X" recommendation, please check whether it's in MSCONFIG or the registry first. An example would be "svchost.exe" - which doesn't appear in either under normal conditions but does via CTRL+ALT+DEL. If in doubt, don't do anything.
    If you find the information on these pages useful, why not make a donation to help towards its maintenance :- or E-mail me.


    Engine Version 2.0 by CastleCops

    spacer spacer