|
The table below includes any process titles beginning with r, from which further information can be found by clicking on the process title. The icon beside the information can be used to quickly determine if this is a safe file in combination with the key below:
[#] [A] [B] [C] [D] [E] [F] [G] [H] [I] [J] [K] [L] [M] [N] [O] [P] [Q] [R] [S] [T] [U] [V] [W] [X] [Y] [Z] |
Processes beginning with r:
| File Type | Process Name and Information |
![]() |
R
Chinese originated browser hijacker - redirecting to 4199.com |
![]() |
RA Server
Added by the RA TROJAN! |
![]() |
RabbitWannaHome
Added by the MIMAIL.S WORM! |
![]() |
Rabo Session Monitor
Related to RaboBank electronic banking software |
![]() |
RaConfig2500
RaLink wireless LAN configuration utility |
![]() |
RadarSync
Radarsync utility comes from DFI with their latest motherboards, e.g., DFI LanParty Ultra - checks for BIOS and driver updates periodically |
![]() |
RadBoot
RadLinker - tweaker/linker for ATI Radeon based graphics cards. It allows you easy access to per game settings |
![]() |
Radio365Agent
Radio365 - create playlists and broadcast live straight from your PC! |
![]() |
RadioSvr
Used to configure wire less networks. Windows automatically detects the Wireless network and it configures the network |
![]() |
RAID Event Monitor
IAA Event Monitor User Notification Tool - part of Intel(r) Application Accelerator - "a performance software package for desktop PCs using select Intel(r) chipsets" that "replaces the ATA drivers that come with Windows with drivers optimized for desktop and mobile PCs." If you use the RAID version it's required to notify you if a RAID 1 disk has failed |
![]() |
RaidTool
VIA V-RAID Tool - hard disk striping/mirroring utility for increased performance and reliability |
![]() |
Rainlendar
Rainlendar is a customizable calendar that displays the current month |
![]() |
Rainlendar2
Rainlendar is a customizable calendar that displays the current month |
![]() |
Rainmeter
Rainmeter is a customizable performance meter, which can display the CPU load, memory utilization, etc |
![]() |
RAM Idle Professional
RAM Idle LE - "A smart memory management program that will keep your computer running better, faster, and longer. RAM Idle works by freeing up physical RAM wasted by Windows and other applications. In addition, RAM Idle also includes Cache and startup manager program that will give you more power to optimize your Windows." MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind |
![]() |
RAMASST
Optionally installed with some DVD drives (LG, Panasonic, etc). Disables Windows XP's CD-burning abilities because they cause some incompatibilities. It does not affect your ability to burn CDs. If you do not have this program running, you may have some compatibility issues with burnt DVDs |
![]() |
RamBooster2
Added by the AKAK TROJAN! |
![]() |
RAMDef
Ram Def Xtreme - monitors and defragments your system RAM to improve reliability and speed. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind |
![]() |
RAMDrive
Virtual Hard Drive (Ram Drive) from Farstone - takes a portion of your system memory (RAM) and uses it to simulate a hard disk drive |
![]() |
RamIdle
RAM Idle LE - "A smart memory management program that will keep your computer running better, faster, and longer. RAM Idle works by freeing up physical RAM wasted by Windows and other applications. In addition, RAM Idle also includes Cache and startup manager program that will give you more power to optimize your Windows." MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind |
![]() |
RAMpage
Small Windows utility that displays the amount of available memory in an icon in the System Tray. It can also free memory by double clicking the tray icon, or by setting a threshold that activates the program automatically, or by having it run automatically when an application exits. RAMpage is free, and open source |
![]() |
Randex virus built for IRBMe
Added by the RANDEX.RH WORM! |
![]() |
random
Added by the DLOADER-KM TROJAN! |
![]() |
Random Interface Network
Added by the DELBOT-P WORM! |
![]() |
Random Interface Network Manager
Added by the DELBOT-L WORM! |
![]() |
Random Unique ID
Added by the XROVE-A WORM! |
![]() |
RandomWin32
Added by the SDBOT-DV WORM! |
![]() |
rant
Added by the RBOT-ZB WORM! |
![]() |
RapApp
Application protection component of BlackICE PC Protection (was Defender) firewall, informing you of any modifications to programs, files or folders and detecting unknown programs trying to launch |
![]() |
Rapdata
Added by the QQPASS-V TROJAN! |
![]() |
Rapdatae
Added by the QQPASS-S TROJAN! |
![]() |
Rapdatybs
Added by the PWS-ACP TROJAN! |
![]() |
Rapid Restore
XPoint "Rapid Restore PC" - a "Managed Recovery(tm) solution that enables IT Administrators to protect the corporate image, while offloading personal data backup and recovery chores to the end user" |
![]() |
RapidBlaster
RapidBlaster parasite. Recommended you use RapidBlaster Killer to uninstall - see here |
![]() |
Raptelnet
Added by the QQPASS-AA TROJAN! |
![]() |
Raptelt
Added by the QQPASS-AB TROJAN! |
![]() |
Raptor Mobile
Symantec VPN Client used to connect to corporate networks. If unchecked, must be uninstalled using Add/Remove Programs as it tightly integrates into networking |
![]() |
RasCon Remote Access Service Manager
Added by the SPYBOT.EM WORM! |
![]() |
rasctrs
Hijacker, also detected as the ADWAHECK TROJAN! |
![]() |
Rase
PurityScan/Clickspring adware |
![]() |
rasman
Added by the BCKDR-QGN TROJAN! |
![]() |
RasMan.exe
Added by the FEUTEL-H TROJAN! |
![]() |
rate.exe
Added by the BEAGLE.E WORM and variants! |
![]() |
rate.exe
Unidentified adware |
![]() |
RAV8Tray
RAV anti-virus related |
![]() |
RavAv
Added by the BDOOR-DIJ TROJAN! Note - this file is located in the %WinDir% directory, and must NOT be confused with the legitimate RAV antivirus file of the same name! |
![]() |
RavAv
Added by the RJUMPF-F WORM! |
![]() |
RavAv
Added by the RJUMP.D WORM! |
![]() |
RAVEN_VLZS.EXE
DownloadReceiver parasite - no longer in existence |
![]() |
RavMon
RAV AntiVirus |
![]() |
ravshell
Added by the DLOADER.MAR TROJAN! |
![]() |
Ravshell
Added by the PAKES.HZ TROJAN! |
![]() |
Ravshell
Added by the AGENT.URZ TROJAN! |
![]() |
Ravshell
Added by the AGENT.OKZ TROJAN! |
![]() |
Ravshell
Added by the NSPM.PU TROJAN! |
![]() |
ravshell
Added by the DLOADER.MJF TROJAN! |
![]() |
RavStub
Rising antivirus |
![]() |
ravtask
Added by the DLOADER.IYT TROJAN! |
![]() |
ravtask
Added by the LINEAG-AIN TROJAN! |
![]() |
RavTask
Rising antivirus |
![]() |
RavTime
Added by the WUKILL.A WORM! |
![]() |
RavTimer
RAV AntiVirus |
![]() |
RavTimer
Added by the HOMEY-A TROJAN! |
![]() |
RavTimeXP
Added by the WULLIK.B WORM! |
![]() |
RavTimeXP
Added by the CAGER.A WORM! |
![]() |
RavTimXP
Added by the WULLIK.B WORM! |
![]() |
RavUptets
Added by the QQPASS-AK TROJAN! |
![]() |
RavUptkt
Added by the QQPASS-AJ TROJAN! |
![]() |
RavUptpe
Added by the QQPASS-T TROJAN! |
![]() |
rav_temp.exe
?? |
![]() |
rawload
Added by the DARKIRC.QZ TROJAN! |
![]() |
RAX SYSTEM
Added by the MYTOB.KR WORM! |
![]() |
Ray Process Killer
Ray Process Killer - clicking right mouse button produces popup menu with current active tasks. You can choose any task and click "Ok" to terminate it. Use CTRL+ALT+DEL instead |
![]() |
Raymond present
Added by the RUBBLE-C WORM! |
![]() |
razer
Razer mouse driver |
![]() |
rb32 lptt01
RapidBlaster variant (in a "RapidBlaster" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here |
![]() |
rb32 ml097e
RapidBlaster variant (in a "RapidBlaster" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here |
![]() |
rbenh ml***e
RapidBlaster variant (in a "RBEnhance" folder in Program Files) where *** represents random digits. Recommended you use RapidBlaster Killer to uninstall - see here |
![]() |
RBOT v2 with NetAPI exploit traded with billgates I gave my mother Greetz - OG - Bluehell Irc Server
Added by the VANEBOT-J WORM! |
![]() |
Rcf Driver
Added by the RANDEX.BLD WORM! |
![]() |
rcimlby.exe
Added by the SDBOT-DHK WORM! |
![]() |
rCron
Switch adult content dialler |
![]() |
rCron
Switch premium rate adult content dialer |
![]() |
RCScheduleCheck
Scheduler for VCOM's Recovery Commander - which "can restore your non-booting system back to normal. It only takes a few minutes to get your system back up and running" |
![]() |
RCSync
PrizeSurfer related. "PrizeSurfer is the free software that automatically enters you to win cash and prizes just for surfing the web and shopping online!" Stealth installed malware |
![]() |
RCSystem
Related to Creative DLL Module Loader for the Sound Blaster X-Fi (and maybe others). This program is non-essential process to the running of the system, but should not be terminated unless suspected to be causing problems |
![]() |
RDClient
Remote Disconnection Utility from Twiga. Used for connecting and disconnecting dial up connections on a network - only needed if there is a shared internet connection |
![]() |
RDLL
Added by the SDBOT.F TROJAN! |
![]() |
rdvs
Added by the ULTIMAX WORM! |
![]() |
Reactor3
Added by the BOFRA.A WORM! |
![]() |
Reactor5
Added by the BOFRA.D WORM! |
![]() |
Reactor6
Added by the BOFRA.C WORM! |
![]() |
Reactor7
Added by the BOFRA.B WORM! |
![]() |
Reactor8
Added by the BOFRA.E WORM! |
![]() |
Reactor9
Added by the BOFRA.E WORM! |
![]() |
readdb40
LZIO.com adware downloader |
![]() |
readericon
Tray icon to set various configuration settings for Sunkist (and maybe other) media card readers |
![]() |
REAL
Real Jukebox - MP3 and music files player |
![]() |
Real Internet Player
Added by a variant of the SPYBOT WORM! |
![]() |
Real Media Player
Added by a variant of the RBOT WORM! |
![]() |
Real player updater
Added by the PARLAY TROJAN! |
![]() |
real scheduler.hta
Added by the CEEGAR TROJAN! Note - this is not associated with the popular RealPlayer media player |
![]() |
Real Spy Monitor
Realspy keystroke logger/monitoring program - remove unless you installed it yourself! |
![]() |
Real Statics Agent
Added by a variant of the RBOT WORM! |
![]() |
Real-Tens
DownloadWare adware |
![]() |
RealAudio
Added by the CEEGAR TROJAN! Note - this is not associated with the popular RealPlayer media player |
![]() |
Realaudio Player
Added by the AGOBOT.AFR WORM! |
![]() |
RealDownload
Download manager. Available via Start -> Programs |
![]() |
RealDownload Express
Advertising spyware |
![]() |
Reality Fusion GameCam SE
Reality Fusion GameCam Video Interaction Technology Software that comes with the Logitech QuickCam PC video camera and other USB cameras. It's only an icon that appears on your System Tray. Available via Start -> Programs |
![]() |
RealJukeboxSystray
System Tray icon for RealJukebox |
![]() |
realone_nt2003
Added by the SNONE.A WORM! |
![]() |
RealP1ayer
Added by the RPLAY.A TROJAN! Note that the name has a number "1" in place of the second lower case "L" |
![]() |
realplay
System Tray icon for RealPlayer. If you subsequently start RealPlayer manually it adds itself back to the start-up list. You can stop this from happening by right-clicking on the tray icon and disabling StartCenter via Preferences |
![]() |
realplay lptt01
RapidBlaster variant (in a "RealPlay" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here. Note - this is not RealPlayer which can have the same executable name |
![]() |
realplay ml097e
RapidBlaster variant (in a "RealPlay" folder in Program Files). Recommended you use RapidBlaster Killer to uninstall - see here. Note - this is not RealPlayer which can have the same executable name |
![]() |
RealPlayer
System Tray icon for RealPlayer. If you subsequently start RealPlayer manually it adds itself back to the start-up list. You can stop this from happening by right-clicking on the tray icon and disabling StartCenter via Preferences |
![]() |
RealPlayer Ath Check
Added by the MYTOB.AG WORM! |
![]() |
Realplayer Codec Support
Added by the AGOBOT-AAD WORM! Note - this is not the legitimate RealOne Player (realsched.exe) application of the same name |
![]() |
Realplayer One
Added by the RBOT-NK WORM! |
![]() |
Realplayer Video
Added by a variant of the RBOT WORM! |
![]() |
Realplayer.exe
Added by the DELF.CNV TROJAN! |
![]() |
RealPlayer2
RealNetworks RealPlayer related - disabling this application will not affect Real Player in any way |
![]() |
RealPlayerUpdater
Added by the LOHAV-T TROJAN! |
![]() |
Realpopup
RealPopup - "Replaces old winpopup with a full featured freeware tool which remains stable and simple as its predecessor" |
![]() |
Realsched
Application Scheduler installed along with RealOne Player. Runs independently of RealOne Player, to remind AutoUpdate and Message Center to perform their tasks at pre-scheduled intervals. If it can't be disabled try deleting or renaming realsched.exe and then delete the entry in the registry |
![]() |
RealSPEED
RealSPEED - tweaking utility to speed-up your internet connection |
![]() |
Realtime Audio Engine
Associated with ALCATech BPM Studio |
![]() |
Realtime Monitor
Realtime scanner part of eTrust Antivirus/InoculateIT version 6 virus scanners from Computer Associates |
![]() |
RealTimeUpdate
Product description in properties is "InternetExplorerCommunicationAgent Module" ? |
![]() |
realtpsk
Chinese originated adware - detected by Panda antivirus as NewWeb. Note - this is not the legitimate RealOne Player (realsched.exe) application of the same name |
![]() |
RealTray
System Tray icon for RealPlayer. If you subsequently start RealPlayer manually it adds itself back to the start-up list. You can stop this from happening by right-clicking on the tray icon and disabling StartCenter via Preferences |
![]() |
RealUpdater
Added by the PARLAY or MITGLIEDER.I TROJANS! |
![]() |
RebateNation0
RebateNation adware |
![]() |
Reboot
MS-DOS/Win3.1 utility use to clean boot a system. Sometimes installed by default from some driver CDs for motherboards |
![]() |
Receiver
Incoporated on miltifunction digital copiers (such as the MX-3500NM), Sharp’s innovative PC fax driver enables users to send fax documents right from their desktop |
![]() |
Recguard
On HP computers, Recguard prevents the deletion or corruption of the WinXP Recovery Partition. Without it enabled, it is possible to knock that completely out and force the customer to send the PC back to HP for a re-image, possibly at the customer's expense |
![]() |
Reclip
Reclip Popup Clipboard manager |
![]() |
Recommended Hotfix - {0421701D-CF13-4E70-ADF0-45A953E7CB8B}
SmartPops search hijacker |
![]() |
Recover
Added during the installation of Comcast High Speed Internet software. During installation the system reboots and if the disk is removed a screen appears asking for the disk to be re-inserted to complete installation. Not required once installion is complete |
![]() |
recover.bmp.exe
Added by the ANAFTP-01 TROJAN! Note - this is NOT the Windows system file of the same name as described here |
![]() |
RecoverFromReboo
Part of a DSL installer package from SBC (probably SBC/Yahoo DSL). If the installation is botched, this entry may be left in the registry |
![]() |
RecoverFromReboo
Part of a DSL installer package from SBC (probably SBC/Yahoo DSL). If the installation is botched, this entry may be left in the registry |
![]() |
RecoverFromReboot
Part of a DSL installer package from SBC (probably SBC/Yahoo DSL). If the installation is botched, this entry may be left in the registry |
![]() |
RecoverFromReboot
Part of a DSL installer package from SBC (probably SBC/Yahoo DSL). If the installation is botched, this entry may be left in the registry |
![]() |
Recoveru system
Added by a variant of the LINEAGE-AV TROJAN! |
![]() |
Recoveru systems
Added by a variant of the SDBOT WORM! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! ! This file is located in the "temp" folder |
![]() |
RecShe
Recording scheduler for WatchTV Capture Card (TV Tuner card) |
![]() |
Recycle Bin Handler
Added by the SHUCKBOT-A TROJAN! |
![]() |
Recycle Bin Handler 2005
Added by the HO TROJAN! |
![]() |
Recycler DO NOT MODIFY
Added by the RBOT.DDA WORM! |
![]() |
RecycleSTR
Added by the RBOT-TC WORM! |
![]() |
Red Flag
PMS prediction program with modes for guys and girls - no longer available |
![]() |
Red Swoosh EDN Client
Red_Swoosh distributed networking software - a desktop client that enables users to download and stream files from each other, rather than from webservers |
![]() |
redirect
Dotcomtoolbar/Linksummary hijacker installer - where * is a random digit |
![]() |
Redline Taskbar
Taskbar icon for the Redline RegTweak overclocking program as supplied with Sapphire ATI graphics cards |
![]() |
REEGRUN
Added by the SECDROP.AI TROJAN |
![]() |
Reek 32 Server
Added by the RANDEX.AL WORM! |
![]() |
Referee
MediaComm's monitor for file association changes. Stop rogue programs from screwing your settings either on installation or whenever they run |
![]() |
Reflex Vision
Reflex Vision from Increment Software. "A background application for Windows XP that makes switching windows faster and easier" |
![]() |
Refresh
(Iomega) Refresh - loads the Iomega desktop icons at startup |
![]() |
Reg
Passon homepage hi-jacker |
![]() |
Reg Check
Related to Supanet ISP software - what does it do and is it required? |
![]() |
reg run
Added by the BANCOS-BS TROJAN! |
![]() |
Reg Service
Added by a variant of the SPYBOT WORM! |
![]() |
Reg Service
Added by the AGOBOT-SC WORM! |
![]() |
Reg Service
Added by the AGOBOT-SO WORM! |
![]() |
Reg Service
Added by the RBOT.ZW WORM! |
![]() |
Reg Service
Added by the AGOBOT-PF WORM! |
![]() |
Reg Service
Added by the AGOBOT.G TROJAN! |
![]() |
Reg Services
Added by the RBOT.PB WORM! |
![]() |
reg1.reg
Added by a variant of the IRC.BOT TROJAN! |
![]() |
reg2.0
eSpyNow surveillance software. Uninstall this software unless you put it there yourself. Note - the filename has the digit 0 rather then the uppercase "o" |
![]() |
Reg32
Hijacker - redirecting to only-virgins.com |
![]() |
reg32
Added by the NOUPDATE.B TROJAN! |
![]() |
Reg32
CoolWebSearch parasite variant - also detected as the STARTPA-M TROJAN! |
![]() |
Regcheck
Added by the CYBRSPY.13A or CYBRSPY.13B TROJANS! |
![]() |
regcheck
Added by the SERVPAM TROJAN! |
![]() |
RegClean Expert Scheduler
Registry Clean Expert scans the Windows registry and finds incorrect or obsolete information in the registry. By fixing these obsolete information in Windows registry, your system will run faster and error free |
![]() |
RegClean Expert Scheduler
"Registry Clean Expert scans the Windows registry and finds incorrect or obsolete information in the registry. By fixing these obsolete information in Windows registry, your system will run faster and error free" |
![]() |
RegCleaner
Added by an unidentified VIRUS, WORM or TROJAN! Note - do not confuse this with the popular RegCleaner registry cleaner freeware |
![]() |
RegCompres
Added by the POLDO.B TROJAN! |
![]() |
RegCompres
Added by the DASMIN-E TROJAN! |
![]() |
Regcxdinaf
Added by the BANCOS-BW TROJAN! |
![]() |
Regcxmarq
Added by the BANCOS.DK TROJAN! Note that the filename has a leading space, ie, " REGCXMARQ.EXE" |
![]() |
Regcxn
Added by the COIBOA-D TROJAN! |
![]() |
regdefend
RegDefend is a configurable, kernel based registry protection system, designed to intercept selected changes before they occur, thus also preventing malicious software like viruses, trojans and worms from using the registry to their advantage |
![]() |
RegDone
Added by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup! |
![]() |
RegDone
Added by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup! |
![]() |
RegDone Ex
Added by the WEBUS TROJAN! Note - this is not the legitimate csrss.exe process, which should not appear in Msconfig/Startup! |
![]() |
RegDoneEx
Added by the WEBUS.B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the System folder |
![]() |
regedit
Added by the BRID.A WORM! Note - this is not the valid Windows registry editor which resides in Windows or Winnt and will not figure in Msconfig/Startup! This version resides in the System (9x/Me) or System32 (NT/2K/XP) folder |
![]() |
REGEDIT
Added by the SOUTHGHOST WORM! |
![]() |
regedit
Added by a variant of the RBOT WORM! |
![]() |
regedit
Added by the HOTWORD.B TROJAN! Note - this is not the legitimate svchost.exe process which should not normally figure in Msconfig/Startup! |
![]() |
regedit
Added by the GANBATE.A WORM! Note - this is not the valid Windows registry editor which resides in Windows or Winnt and will not figure in Msconfig/Startup! This version resides in a "securityDatabase" subfolder |
![]() |
RegEdit32
Added by the VOUMIT-A WORM! Note - this is not the legitimate regedit32.exe application which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a "mirc32" folder |
![]() |
Regexit
Added by the QQPASS-U TROJAN! |
![]() |
Regexit
Added by the QQPASS-N TROJAN! |
![]() |
RegFreeze
RegFreeze anti-spyware software |
![]() |
reggsdg
Added by the SDBOT-MS WORM! |
![]() |
RegHelp
SpyGraphica spy software - "Stealth monitoring of ALL PC or Network Activity with DVD-like playback. EVERY keystroke can be e-mailed in a detailed activity report every 15 minutes...anywhere in the world." |
![]() |
reginfo32
?? |
![]() |
Register Manager
Added by the SDBOT.AYH WORM! |
![]() |
Register MediaRing Talk
If you don't want to register MediaRing and be reminded about it every bootup disable it |
![]() |
Register SeqChk
?? |
![]() |
RegisterDropHandler
Part of the OCR software TextBridge Pro 9.0 (and possibly earlier versions). Typically used with imaging devices such as scanners and digital cameras for creating text documents from images. This item will probably be displayed twice and will re-instate itself whenever you start the main program so leave it - once started it frees the memory it used. Its purpose and an explanation of how to correct a problem it creates for "Send To" can be found here. Note that you don't have to uninstall TextBridge for this fix to work and the program works fine afterwards. Not used on later versions of the software - hence the 'U' recommendation |
![]() |
Registration Service
Added by the SDBOT-BB WORM! |
![]() |
Registration Service
Added by the SDBOT-HE TROJAN! |
![]() |
Registration-Studio 8
Registration for Pinnacle Studio Version 8 home video software from Pinnacle Systems |
![]() |
Registry
Added by the VBSWG.AQ WORM! |
![]() |
Registry
Blackbox captures emails and chat logs, and monitors Internet activity - remove if you didn't intentionally install it |
![]() |
Registry Checkup
Added by an unidentified WORM or TROJAN! |
![]() |
Registry Checkup System326a Monitor
Added by a variant of the SDBOT WORM! |
![]() |
Registry Cleaner
Registry Cleaner - misleading and not recommended, see here |
![]() |
Registry Integrity Checker
Added by a variant of the AGOBOT/GAOBOT WORM! |
![]() |
Registry Integritycheck
Added by the AGOBOT-RF WORM! |
![]() |
Registry Loader
Added by the GAOBOT.AO WORM! |
![]() |
Registry Loader
Added by the GAOBOT.AO WORM! |
![]() |
Registry Monitor
Added by the QKH TROJAN! |
![]() |
Registry oidet
Added by the RBOT.BMT WORM! |
![]() |
Registry Protector
Added by the ARIVER.A WORM! |
![]() |
Registry Scanner
Added by a variant of the OPTIX TROJAN! |
![]() |
Registry Serv
Added by the WEBMONEY-G TROJAN! |
![]() |
Registry Server
Added by the RBOT-GM WORM! |
![]() |
Registry Server
Added by a variant of the IRCBOT TROJAN! See here |
![]() |
Registry Service
Added by a variant of the RBOT WORM! |
![]() |
Registry Service
Added by the DELBOT-I WORM! |
![]() |
Registry Services
Added by the CILE TROJAN! |
![]() |
Registry Startup Check
Added by the REMLOAD-A or DANMEC-B TROJANS! |
![]() |
Registry System16 Checkup Monitor
Added by a variant of the RBOT WORM! |
![]() |
Registry System166 Checkup Monitor
Added by a variant of the RBOT WORM! |
![]() |
Registry Value Name
Added by the RBOT-AFT WORM! |
![]() |
Registry Value Name
Added by the RBOT-AHT WORM! |
![]() |
Registry Value Name
Added by a variant of the RBOT WORM! |
![]() |
Registry Value Name
Added by the RBOT.BTZWORM! |
![]() |
Registry Value Name Start
Added by a variant of the SDBOT WORM! |
![]() |
RegistryCheck
Ulubione adult content dialer |
![]() |
RegistryChk
Added by the MERTIAN WORM! |
![]() |
RegistryCleanFixMFC
RegistryCleanFix misleading security program - not recommended, see here |
![]() |
RegistryMechanic
Registry Mechanic - "you can safely clean and repair Windows registry problems with a few simple mouse clicks! Problems with the Windows registry are a common cause of Windows crashes and error messages" |
![]() |
RegistryMonitor
Affilred adware |
![]() |
RegistryMonitor
Added by the SYSFADE TROJAN! |
![]() |
RegistryMonitor1
Added by the SPAMBOT TROJAN! |
![]() |
REGIST~1
Part of the OCR software TextBridge Pro 9.0 (and possibly earlier versions). Typically used with imaging devices such as scanners and digital cameras for creating text documents from images. This item will probably be displayed twice and will re-instate itself whenever you start the main program so leave it - once started it frees the memory it used. Its purpose and an explanation of how to correct a problem it creates for "Send To" can be found here. Note that you don't have to uninstall TextBridge for this fix to work and the program works fine afterwards. Not used on later versions of the software - hence the 'U' recommendation |
![]() |
Regkey for autostart
Added by the RBOT-NU WORM! |
![]() |
RegKillTray
DVD region killer part of CloneDVD from Elaborate Bytes AG. Copies the main movie, Special Features and/or the original menu onto a DVD Recordable or onto your harddisk |
![]() |
Regmonitor
Added by the BEAGLE.DO WORM! |
![]() |
REGMSYS
Added by the LOWZONE-AX TROJAN! |
![]() |
RegMutex
Added by the MSNOPT-A TROJAN! |
![]() |
RegPowerClean
RegistryPowerCleaner is a security risk that may give exaggerated reports of errors in the registry of the compromised computer |
![]() |
RegProt
RegistryProt from Diamond Computer Systems - protects the system registry against changes |
![]() |
Regptmens
Added by the BANCOS-ED TROJAN! |
![]() |
Regro
Added by the OKARAG TROJAN! |
![]() |
RegRun
Adware downloader - also detected as a variant of the LOWZONES.BW or AGENT.RD TROJANS! |
![]() |
REGRUN
Adware downloader - also detected as a variant of the LOWZONES.BW or AGENT.RD TROJANS! |
![]() |
REGRUN
Added by the LOWZONE-AH TROJAN! |
![]() |
REGRUN
Adware downloader - also detected as a variant of the LOWZONES.BW or AGENT.RD TROJANS! |
![]() |
REGRUN
Adware downloader - also detected as a variant of the LOWZONES.BW or AGENT.RD TROJANS! |
![]() |
REGRUN
Adware downloader - also detected as a variant of the LOWZONES.BW or AGENT.RD TROJANS! |
![]() |
RegRun WinBait
Part of RegRun - used to detect unknown viruses. RegRun compares winbait.exe with the original copy called winbait.org and warns if the files are different.. |
![]() |
Regrun2
Greatis Software's RegRun security suite which amongst other things replaces MSCONFIG. The WatchDog check for registry changes caused by trojan's, viruses, etc |
![]() |
REGRUNM
Added by an unidentified WORM or TROJAN! |
![]() |
Regrx
Added by the WAYIC-A TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in the Windows folder (98ME) or the System32 folder(NT2000XP). The file is located in C:Windows |
![]() |
Regscan
Added by the OPTIX-SE TROJAN! |
![]() |
RegScan
Added by the AGOBOT.AEW WORM! |
![]() |
RegScan
Added by the TALEX TROJAN! |
![]() |
RegServer
Related to XGI Technology's Volari graphics cards - what does it do and is it required? |
![]() |
regservices.exe
Added by an unidentified VIRUS, WORM or TROJAN! |
![]() |
RegShave
Part of the USB driver for your Fuji digital cameras - used when uninstalling the USB drivers, erasing all entries from the registry. Only required BEFORE attempting to uninstall the Fuji software or the uninstall may not work correctly |
![]() |
regsrv
Added by the OPTIXPRO.11 TROJAN! |
![]() |
regsrv
Added by the AGOBOT.E WORM! |
![]() |
RegSrv64D
Added by the WINKO.AO WORM! |
![]() |
regsrvc
Added by the STOPED-A TROJAN! |
![]() |
Regsv
Search hijacker - redirecting to scheo.com |
![]() |
Regsvc
Added by an unidentified TROJAN! |
![]() |
regsvc32
Homepage hijacker that changes your homepage to an adult content site |
![]() |
regsvr
Added by the WEBMONEY-G TROJAN! |
![]() |
REGSVR32
ASIO (Audio Stream In/Out) drivers for the SoundBlaster Audigy 2 series soundcards - for recording and home project studios. Required if you use this functionality |
![]() |
RegSvr32
Added by the ZLOB.B TROJAN! |
![]() |
regsync
SafeSurfing adware |
![]() |
regtmlp
?? |
![]() |
RegTweak
Rage3d Tweak - ATI Radeon tweaker which allows access to registry tweak options, custom display modes, refresh rates and overclocking all through an easy to use interface |
![]() |
RegVer
Added by the LATINUS.16 TROJAN! |
![]() |
RegVfy32
Added by the SYGYP.A WORM! |
![]() |
RegWrite
Added by the SOKACAPS TROJAN! Note - this is not the legitimate csrss.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in a WindowsMedia folder |
![]() |
Regx10EXE
ATI Remote Wonder(tm) - PC wireless remote control driver. Required if you use it |
![]() |
reg_key
Added by the BEAGLE.AH WORM! |
![]() |
reg_key
Added by the BEAGLE.Y or BEAGLE.Z or BEAGLE.AA WORMS! |
![]() |
Reg_WFT
Added by the WILSEF VIRUS! |
![]() |
Reg_WFT
Added by the SENNASPY-F TROJAN! |
![]() |
ReleaseRAM
Release RAM allows your computer to run faster and uses your computer's RAM more efficiently. MS MVPs (Most Valued Professional) recommend not using memory managers with Win98/SE/ME. See this article and make up your own mind |
![]() |
relinson
Added by the DROPPER-PS TROJAN! |
![]() |
reload
Added by the LOVELETTER.AS VIRUS! |
![]() |
Reload
Added by the LAZAR TROJAN! |
![]() |
RemHelp
BT Voyager ADSL Modem Help related |
![]() |
Reminder
From MS Money. Reminds you of your bills |
![]() |
Reminder
HP-specific program that reminds users to create System Recovery CDs. Once they use the Recovery CD Creator (Start -> PC Help & Tools -> Recovery CD Creator) to make the recovery CDs the entry will remove itself from the startup list |
![]() |
Reminder-cpqXXXXX
Compaq printer Registration |
![]() |
Reminder-hpcXXXXX
HP CD-Writer Registration |
![]() |
Reminder-ranXXXXX
Registration reminder widget for Rand Mcnally maps |
![]() |
reminder-ScanSoft Product Registration
Registration reminder for ScanSoft products such as PaperPort |
![]() |
RemindMe
Remind-Me - calendar software |
![]() |
Remind_XP
HP-specific program that reminds users to create System Recovery CDs. Once they use the Recovery CD Creator (Start -> PC Help & Tools -> Recovery CD Creator) to make the recovery CDs the entry will remove itself from the startup list |
![]() |
Remndr
CasinoOnline foistware |
![]() |
Remote
Remote Control driver for LifeView internal and external TV products |
![]() |
Remote Access
Dial-up networking application - not normally found in the startup locations. It runs when you connect to the net via this method (ie, analogue 56K modem) and terminates after the connection is closed |
![]() |
Remote Access Adapter
Detected by PCTools as the IRCBOT.BIF TROJAN! See here |
![]() |
Remote Access Domain
Added by the IRCBOT.BFA TROJAN! |
![]() |
Remote Access Monitor
Added by a variant of the IRCBOT TROJAN! See here |
![]() |
Remote Access Service Manager
Added by the AGOBOT.KU WORM! |
![]() |
Remote Access Slave
Added by the RIPJAC TROJAN! |
![]() |
Remote Access Tool
Added by a variant of the IRCBOT TROJAN! See here |
![]() |
Remote Control
Hinet Hi-Five ISP software |
![]() |
Remote Controller
ProLink PlayTVpro TV tuner software |
![]() |
Remote Desktop Computing
Marspc Remote Desktop Computing |
![]() |
Remote Desktop Help Session Manager
Added by a variant of the SDBOT WORM! |
![]() |
Remote Event System
Detected by Trend Micro as the IRCBOT.YF TROJAN! See here |
![]() |
Remote Management Agent
Part of Novell's ZENworks - "Complete End-to-End Directory-enabled Network Management". Installed on a managed workstation fo an administrator to remotely manage the workstation. Required if the PC is a managed workstation |
![]() |
remote master
Required if you want your ASUS Remote control to work at all. Available via Start -> Programs |
![]() |
Remote Procedure Call
Added by the RBOT-KM WORM! |
![]() |
Remote Procedure Call
Added by the SDBOT-PS WORM! |
![]() |
Remote Procedure Call For Windows 32bit
Added by the RBOT-MD WORM! |
![]() |
Remote Procedure Call Locator
Added by a variant of the LOVGATE WORM! |
![]() |
Remote Procedure Calls
Added by the RBOT.KJ WORM! |
![]() |
Remote Procedure Calls
Added by the RBOT-IT WORM! |
![]() |
Remote Procedure Calls
Added by the SDBOT-QI WORM! |
![]() |
Remote Services Manager
Added by a variant of the IRCBOT TROJAN! See here |
![]() |
Remote Storage Access
Added by a variant of the IRCBOT TROJAN! See here |
![]() |
Remote Terminal Task
Detected by Trend Micro as the IRCBOT.AUZ TROJAN! See here |
![]() |
Remote Update Monitor
Sophos Antivirus Remote Update utility - provides an easy way for remote workers to keep up to date with their virus protection via a website or network connection provided by their employer |
![]() |
RemoteAgent
Trend Micro's Office Scan Client, see here - "Its Web-based management console gives administrators transparent access to desktop and mobile clients to coordinate automatic deployment of security policies and software updates" |
![]() |
RemoteCenter
Remote control for Creative MediaSource - plays back music in DVD-Audio, MP3, WMA, WAV and other media formats |
![]() |
RemoteControl
Remote Control background application for Cyberlink's PowerDVD version 4 and above. Enables you to use a remote control with your DVD drive if your drive came with one. Not required if you don't have a remote control, or don't wish to use one |
![]() |
RemoteControl
Remote Control background application for Cyberlink's PowerDVD version 5 and above. Enables you to use a remote control with your DVD drive if your drive came with one. Not required if you don't have a remote control, or don't wish to use one |
![]() |
Remote_Agent
Cyberlink's Power VCR II 3.0 is a TV tuner recording utility. If you want to schedule recordings you'll need this, otherwise can be disabled. Available via Start -> Programs |
![]() |
REMOVE ME
Added by the SDBOT.EE WORM! |
![]() |
Removecpl
Related to a Belkin 54Mbps Wireless Utility Control Panel applet |
![]() |
Removed.exe
GatorCheat - adware downloader |
![]() |
RemoveIT Pro XT
RemoveIT Pro from InCode Solutions - spyware, virus and malware removal tool |
![]() |
RemStart
Part of McAfee's Remote Desktop 32 Agent application. What does it do and is it required? |
![]() |
renascimento
Detected by Kaspersky as the BANKER.GAX TROJAN! See here. Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the "Help" sub-folder of the Winnt or Windows folder |
![]() |
RenolB
?? |
![]() |
repl
Added by the YABE.CD TROJAN! |
![]() |
Replay Center
Replay Radio - "makes it easy to automatically record your favorite radio shows, so you can listen wherever and whenever you like" |
![]() |
Replicator
Replicator from Karen's powertools. "Automatically backup files, directories, even entire drives!" |
![]() |
RepliGo Assistant
Cerience RepliGo software - "any document you have on your PC can be transferred to your mobile device" |
![]() |
ReproPRD
Thrustmaster Corporation Presets application - a game controller driver, presumably necessary for certain functions to work |
![]() |
requester
Added by a variant of the MUQUEST.A trojan - NOTE: the * stands for a digit, examples: requester.5.exe, requester.10.exe |
![]() |
Requester
Added by the MUQUEST TROJAN! |
![]() |
Required Service Drivers
Added by the RBOT-ABD WORM! |
![]() |
resagnt
Adware downloader, identified by Panda antivirus as Trojan.Downloader.ALQ |
![]() |
ResChanger2004
EVGA graphic card utility providing easy access to display settings |
![]() |
reseurce
Added by the LINEAGE-AI TROJAN! |
![]() |
reseurce
Added by the LINEAGE-FV TROJAN! Note - this is not the legitimate svchost.exe process which is always located in the System (9x/Me) or System32 (NT/2K/XP) folder and should not normally figure in Msconfig/Startup! This file is located in the Winnt or Windows folder |
![]() |
Resolution Assistant
Dell Resolution Assistant. "matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, state, etc and gets written to a log file". Resolution Assistant is required to run with the Help and Support program. If you uncheck Resolution Assistant and and then run Help and Support it will add another Resolution Assistant in the startup menu. If you remove the Resolution Assistant in the add/remove program some help menus in help and support will not be available. You decide |
![]() |
Resource Meter
Windows Resource Meter. Available via Start -> Programs. You may want this enabled if your PC is suffering from crashes and want to know potential causes |





