msconfig should give you the name, Command and Location. Tell us those.
--
Frank Saunders, MS-MVP OE
Please respond in Newsgroup only. Do not send email
http://www.fjsmjs.com
Protect your PC
http://www.microsoft.com./athome/security/protect/default.aspx
http://defendingyourmachine.blogspot.com/
List is as follows(there are obvious ones such as AVG,Acronis true Image etc
but the others are difficult to know.
Blair
AVG7_CC c:\progra~1\grisoft\avgfre~1\avgcc.exe /startup All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
AVG7_Run c:\progra~1\grisoft\avgfre~1\avgw.exe /runonce NT AUTHORITY\SYSTEM
HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
AVG7_Run c:\progra~1\grisoft\avgfre~1\avgw.exe /runonce NT AUTHORITY\LOCAL
SERVICE HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
AVG7_Run c:\progra~1\grisoft\avgfre~1\avgw.exe /runonce NT AUTHORITY\NETWORK
SERVICE HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
AVG7_Run c:\progra~1\grisoft\avgfre~1\avgw.exe /runonce .DEFAULT
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Acronis Scheduler2 Service "\acronis\schedule2\schedhlp.exe" All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Acronis True Image Monitor "c:\program
files\acronis\trueimage\trueimagemonitor.exe" All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
CTFMON.EXE c:\windows\system32\ctfmon.exe NT AUTHORITY\SYSTEM
HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
CTFMON.EXE c:\windows\system32\ctfmon.exe NT AUTHORITY\LOCAL SERVICE
HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
CTFMON.EXE c:\windows\system32\ctfmon.exe NT AUTHORITY\NETWORK SERVICE
HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
CTFMON.EXE c:\windows\system32\ctfmon.exe LAPTOP\Owner
HKU\S-1-5-21-1390067357-152049171-854245398-1003\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run
CTFMON.EXE c:\windows\system32\ctfmon.exe .DEFAULT
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
DriverDB svcmdx32.exe LAPTOP\Owner
HKU\S-1-5-21-1390067357-152049171-854245398-1003\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run
HotKeysCmds c:\windows\system32\hkcmd.exe All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
IgfxTray c:\windows\system32\igfxtray.exe All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
KernelFaultCheck %systemroot%\system32\dumprep 0 -k All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
PCTVOICE pctspk.exe All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
PlaxoUpdate c:\program files\plaxo\2.1.0.80\installstub.exe -a LAPTOP\Owner
HKU\S-1-5-21-1390067357-152049171-854245398-1003\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run
REGSHAVE c:\program files\regshave\regshave.exe /autorun All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
STManager "c:\program files\speedtouch\dr speedtouch\drst.exe" -b
LAPTOP\Owner
HKU\S-1-5-21-1390067357-152049171-854245398-1003\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run
Shortcut to wkscal.exe c:\progra~1\common~1\micros~1\workss~1\wkscal.exe All
Users Common Startup
SpeedTouch USB Diagnostics "c:\program files\thomson\speedtouch
usb\dragdiag.exe" /icon All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SunJavaUpdateSched c:\program files\java\j2re1.4.2_04\bin\jusched.exe All
Users HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Zone Labs Client c:\program files\zone labs\zonealarm\zlclient.exe All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
desktop desktop.ini NT AUTHORITY\SYSTEM Startup
desktop desktop.ini LAPTOP\Owner Startup
desktop desktop.ini .DEFAULT Startup
desktop desktop.ini All Users Common Startup
dla c:\windows\system32\dla\tfswctrl.exe All Users
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run