New
#1
PowerShell starts with Windows, can't disable it from msconfig.exe
I have just figgured out there's a startup item in msconfig under the name of "Microsoft® Windows® Operating System". Apparently it launches the PowerShell with some weird arguments and I can't disable it. Here's a screenshot:
I can see it's something to do with a character string, and I'm afraid it's a keylogger.
What do you think? Is it a virus? If yes, how do I remove it?
P.S.: I've tried deleting the WindowsPowerShell folder under system32 but it requires permision from TrustedInstaller to remove, and it will just not let me take the ownership of the foler. Oh, and I've searched for it in "Add or remove programs" , it's not there.