Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 3127 autoruns. Autorun 2301 to 2400:

StatusAutorun nameCommandDescription
?SynSetupSynTP.tmp RunOnce.exeProbably associated Synaptics touchpads on laptops as for the SynTPEnh and SynTPLpr entries but what does it do and is it required?
XSyntaxwindows32.exeAdded by the SDBOT.CQ WORM!
XSyntax Scriptsystacq.exeAdded by the SDBOT.AI WORM!
XSyntax Scriptsaskatcw.exeAdded by the SDBOT-TE WORM!
USynTPEnhSynTPEnh.exeSynaptics TouchPad Enhancements - included with drivers for Synaptics based TouchPads, which are common on many laptops. Required to display the System Tray icon and support enhanced features such as Tap Zones, Virtual Scrolling and EdgeMotion. If you don't use these features this can safely be disabled. Required on IBM Thinkpads with UnltraNav (pointstick and touchpad combo) if you don't want to loose the advanced pointstick features such as scroll
USynTPLprSynTPLpr.exeSynaptics TouchPad driver helper - included with drivers for Synaptics based TouchPads, which are common on many laptops. Works in conjunction with SynTPEnh and is required if you use any of the enhanced features such as Tap Zones, Virtual Scrolling and EdgeMotion
USynTPStartSynTPStart.exeSynaptics Pointing Device starter belonging to Synaptics Pointing Device Driver
Xsyre32syre32.exeAdded by the VBNA.B WORM!
Xsysregedit /s sys.regRaxmus adware. Note that the Windows registry editor (regedit.exe) is a legitimate Microsoft file located in %Windir% and shouldn't be deleted. The file "sys.reg" is located in %Windir%
Xsysregedit sysdllwm.regCoolWebSearch parasite variant - also detected as the FEMAD-L TROJAN!
XsysFonts.exeAdded by the AUTORUN.BUK WORM!
Xsysrundll32.exeAdded by the LINEAG-G TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in %Windir% (98/ME) or %System% (NT/2K/XP). This one is located in %Windir%\Intel
XSys RenSysRen.exePart of FlashEnhancer adware
XSys**.exe [* = random char]Sys**.exe [* = random char]CoolWebSearch/HomeSearch adware - for examples, see this log
XSys**32.exe [* = random char]Sys**32.exe [* = random char]CoolWebSearch/HomeSearch adware - for examples, see this log
XSys-Statwuapdxe.exeAdded by the SDBOT.HK WORM!
Xsys[random numbers][path to file]WinBo adware
XSYS_CLEANService.exeAdded by the FLOPCOPY WORM!
USys_Klsys_kl.exeSysKeylog surveillance software. Uninstall this software unless you put it there yourself
XSys_Runghost.exeAdded by the LINEAGE-N TROJAN!
Xsys_Runtt1explorer.exeAdded by the LINEAGE-M TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %ProgramFiles%
Xsys_up1svchostsys.exeAdded by the MULTIDR-FL TROJAN!
Xsys008sys008.exeHijacker, also detected as the STARTPA-GK TROJAN!
Xsys009sys009.exeAdded by the STARTPA-ZB TROJAN!
XSYS1system.exeAdded by the SILLYFDC-AP WORM!
XSYS1explorar.exeAdded by the SILLYFDC.BDJ WORM!
XSYS1scvost.comAdded by the AUTOIT-JY WORM!
XSYS2bad1.exeAdded by the SILLYFDC-AP WORM!
Xsys201sys209.exeAdded by the STARTPA-ZY TROJAN!
XSys29win***32.exe [* = random char]EliteBar adware
XSYS3bad2.exeAdded by the SILLYFDC-AP WORM!
Xsys32SYS32.EXEAdded by the FLUX.E BACKDOOR! The file is located in %System%
Xsys32sysx32.exeAdded by the KVEX-A VIRUS!
XSys32Sys32.exeAdded by the AUTORUN-KL WORM! The file is located in %Windir%
Xsys32_novsys32_nov.exeAdded by the AGENT-LAX TROJAN!
Usys32cmdsys32win.exeActive Keylogger keystroke logger/monitoring program - remove unless you installed it yourself!
Xsys32dllsys32dll.exeAdded by the AIMDES.B WORM!
Usys32sqlsys32win.exeActive Keylogger keystroke logger/monitoring program - remove unless you installed it yourself!
USys32V2Contollermw2mmgr32.exeFamilyKeyLogger.a keystroke logger/monitoring program - remove unless you installed it yourself!
Xsys33sys33.exeAdded by the AGOBOT-WJ WORM!
XSYS4bad3.exeAdded by the SILLYFDC-AP WORM!
Xsys64_novsys64_nov.exeAdded by the MUTANT.FKA TROJAN!
XSysAwin***32.exe [* = random char]EliteBar adware
USysAgentSysAgent.exeSYSagent - small utility for retrieving all the hardware and software information required by anyone administering a machine and/or the network it's a part of
XSysAISysAI.exeAproposMedia adware
Xsysalggsysalgg.exeAdded by the TIBS.BF WORM!
XSysanalysingmyrvc.exeAdded by the AUTORUN-RD WORM!
XSysAntivirus 2009sysav.exeSysAntivirus 2009 rogue security software - not recommended, removal instructions here
UsysAppsklgr.exeSuperKeylogger surveillance software. Uninstall this software unless you put it there yourself
XSysATWsysatw.exeAdded by the VANEBOT-AM WORM!
Xsysavwinav.exeWinPC Antivirus rogue security software - not recommended, removal instructions here
USysBkup[path to file]Keyspy keystroke logger/monitoring program - remove unless you installed it yourself!
XSysBootsyskernel.exeAdded by the AUTORUN-EY WORM!
USysbotsysbot.exeSpector - spying (or monitoring) software to record internet activity
XSyscentersyscenter.exeAdded by the CRYPTER TROJAN!
Xsyscfgsyscfg32.exeAdded by the KWBOT.S WORM!
Xsyscfg34.exesyscfg34.exeAdded by the ELECTRON WORM!
XSyscheckwin.htaBrowser hijacker
Xsyscheckiexplorer.exeAdded by the AGENT.DM TROJAN! Note - this is not the legitimate Internet Explorer (iexplore.exe)
USysCheck32sb32mon.exePart of the SpyBuddy keystroke logger/monitoring program - see here. Remove unless you installed it yourself!
XSysCleanerSysCleaner.exeSysCleaner rogue cleaning utility - not recommended, removal instructions here
Xsysclxntldrt.exeAdded by the JLOK-A WORM!
XsyscmSyscm.exeVanish adware
XSysCommsnmsgr.exeAdded by the BANK-AF TROJAN! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility which is located in either %ProgramFiles%\MSN Messenger or %ProgramFiles%\Windows Live\Messenger. This one is located in %Windir%\system
?SysCompmssdnl.comUnknown but suspect as *.com are not usually run at start up and the name isn't recognized
Xsysconsyscon.exeAdded by the APRILCONE.A WORM!
Xsyscon lptt01syscon.exeRapidBlaster variant (in a "syscon" folder in Program Files). A dedicated "RapidBlaster Killer" removal tool used to be available but quality anti-malware tools will now remove it
Xsyscon ml097esyscon.exeRapidBlaster variant (in a "syscon" folder in Program Files). A dedicated "RapidBlaster Killer" removal tool used to be available but quality anti-malware tools will now remove it
Xsysconfsysconf.exeAdded by the AGOBOT-IW WORM!
Xsysconfigiexplorer.exeAdded by the CULT.C WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
XSysConfigsyscfg35.exeAdded by the KAZMOR.C WORM!
XSysConfigwincfg32.exeAdded by the SDBOT.ZD WORM!
USysconfigStealth KeySpy.exeStealthKeySpy - keystroke logger/monitoring program - remove unless you installed it yourself!
Xsysconfig32sysconfig32.exeAdded by the AGENT-MSP TROJAN!
USysConn_Startsvcwinra.exeSystem Surveillance Pro surveillance software. Uninstall this software unless you put it there yourself
XSyscpySyscpy.exeFirewall-bypassing, proxied spam relayer. Detected by Symantec as the HOGLE TROJAN!
XSysCtlsysctl.exeAdded by the AOK TROJAN!
XSysctrlsprocdll.exeAdded by the WEEDBOTZ.14 BACKDOOR!
XSysctrlswinupdate.exeAdded by an unidentified WORM or TROJAN!
XSysctrlsmscntrl.exeAdded by the KOLABC.BB WORM!
XSysctrlsSysctrls.exeAdded by the AGENT.AWZ TROJAN!
XSysctrlswin32dll.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XSysctrls32sevchost.exeAdded by the RBOT.ADF BACKDOOR!
XSysCVMS.exeSysCVMS.exeAdded by the SMALL.CBA TROJAN!
Xsysdat.dllsysdat.dll.exeAdded by the NISHICA 1.1 TROJAN!
XSysData[path to file]Added by the RANCK-BA TROJAN!
XSysDefence.exeSysDefence.exeSysDefence rogue security software - not recommended, removal instructions here. A member of the AntiAID family
XSysDefendersSysDefenders.exeSysDefenders rogue security software - not recommended, removal instructions here. A member of the AntiAID family
XSysDepannageSysRep.exeSysDepannage, French rogue system error and cleaning utility - not recommended. A member of the ErrClean family
XSysDesksvchoxt.exeAdded by the DELF-EDE TROJAN!
XSysDeskqqfxqqfx.exeAdded by the QQPASS.H TROJAN!
XSysDeskqqfxRunddll32.exeAdded by the CHANGGAME TROJAN!
XSysDesktopfswanQQ.exeAdded by the QQSEND-A TROJAN!
Xsysdiag64.exesysdiag64.exeAdded by the AUTOINF-AB WORM!
Xsysdirwinrun.exeAdded by the WINBUR.B WORM!
Xsysdllwindll.exeAdded by the AUTORUN.ECT WORM!
Xsysdll[trojan filename]Added by the HUGESOT TROJAN!
XSysdptsysdpt.exeAdded by the CRYPT TROJAN!
XSysDriversysdriver.exeAdded by the CARRIER.JC WORM!
XSysDrv[trojan filename]Added by the AGENT-GOT TROJAN!
Page: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner