NT Logon Capture is a specific spyware threat that automatically runs on every Windows startup and records system logon user names and passwords. Gathered information is logged to a file. NT Logon Capture must be manually installed.
ntlc.exe
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionApp Paths tlc.exe