Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 754 autoruns. Autorun 201 to 300:

StatusAutorun nameCommandDescription
XTcsvcrundll32.exe tcsvc.dll,startAdded by the AGENT.BCL BACKDOOR! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "tcsvc.dll" file is found in %System%
?TCtlIHook.exeTCtrlIOHook.exeTOSHIBA Control Utility Hotkey Hook - hotkey configuration process unique to Toshiba laptops. What does it do and is it required?
?TCtrlIOHookTCtrlIOHook.exeTOSHIBA Control Utility Hotkey Hook - hotkey configuration process unique to Toshiba laptops. What does it do and is it required?
?TCtryIOHookTCtrlIOHook.exeTOSHIBA Control Utility Hotkey Hook - hotkey configuration process unique to Toshiba laptops. What does it do and is it required?
Xtcupdatertcupdater.exeTopconverting.com/180Search adware updater
UTDAlertTDAlert.exePart of Trust Delete from EgisTec Inc - which "is a remote data deletion software to protect your confidential data and prevent them from falling into the wrong hands when your PC is stolen or missing"
UTDispVolTDispVol.exeUsed on Toshiba computers to make the Fn key have control over the volume on/off
UTDKSTARTTDKSTART.EXESets the spindown timeout and access speeds at startup and displays a splash screen for CD-RW.
NTDKTASKTDKTASK.EXETaskbar utility for a "control panel" for a CD-RW
?TDockNUndockN/AFound on a Toshiba laptop - for use with a docking station?
XTdrbompa.exePurityScan adware
UTDS3TDS-3.exeDiamondCS TDS-3 antitrojan. Can be used to scan on demand, but required in startup if you prefer real time protection
?TDspOffTdspoff.exeFound on a Toshiba laptop
UTE_RegProtectTERegPct.exeRegistry repair utility part of the Anti Trojan Elite (ATE) anti-malware tool
NTeach In Boxteachbox.exeTutoring program that comes with a SystemAX Computer
YTeaTimerTeaTimer.exePart of the popular Spybot - Search & Destroy spyware removal tool from Safer Networking Limited. "Resident TeaTimer is a tool of Spybot-S&D which perpetually monitors the processes called/initiated. It immediately detects known malicious processes wanting to start and terminates them giving you some options, how to deal with this process in the future". Also provides System Tray access to Spybot S&D and detects when processes want to change critical registry settings such as the startup entries - giving the user the option to allow/deny the change
YTech-In-A-Boxtechbox.exeTech-in-a-Box "provides easy-to-use tools for various system maintenance tasks. From backup and restore to diagnostics and repairs, Tech-in-a-Box is your tool to stay up and running"
UTecoTeco.exeToshiba's Eco Utility™ that "offer improved energy management. With a single click you can switch to a pre-configured power plan that will not only let you go green, but let you see the measurable savings too"
UTEData_McciTrayAppMcciTrayApp.exeSystem tray access to Motive's broadband configuration and repair utility - for TEData users
Xteiteqteiteq.exeAdded by the VB-WC MALWARE!
UTelechips,Masspatch.exeRemovable disk driver for the Muro MP3 player
NTelemeter 3.0telemeter3.exeInternet connection bandwidth meter from a user ISP
YTelepathtelepath.exeDrivers for the WinModem versions of the US Robotics "Telepath" series - as supplied to Gateway for instance. WinModems use software rather than hardware - hence putting a load on the CPU. Needed if you have it for loading the drivers. See here for more WinModem information
XTelephony ProviderIexplore.exeAdded by the FORBOT-DF BACKDOOR! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
XTelnetTelnet.exeAdded by the VOUMIT-A WORM! Note - this is not the legitimate telnet.exe application which is always located in %System% and should not normally figure in Msconfig/Startup! This file is located in a "mirc32" folder
XTelnet24[random filename]Added by the RBOT-ARD WORM!
UTelstraClear Broadband Supportmatcli.exe"matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, county, etc and gets written to a log file". TelstraClear Broadband Support is required to run with the Help and Support program. If you uncheck TelstraClear Broadband Support and then run Help and Support it will add another TelstraClear Broadband Support entry in the startup menu. If you remove this software in "add/remove programs" some help menus in help and support will not be available. You decide
UTELUS eCarematcli.exeTELUS Resolution Assistant. "matcli.exe is a motive Assistant Command line interface that gathers information about your system's identity like your name email address, city, state, etc and gets written to a log file". TELUS Resolution Assistant is required to run with the Help and Support program. If you uncheck TELUS Resolution Assistant and then run Help and Support it will add another in the startup menu. If you remove TELUS Resolution Assistant via add/remove programs some menus in Help and Support will not be available. You decide
YTELUS eProtectRps.exeMain program for the TELUS eProtect internet security suite for TELUS ISP customers - sourced by Radialpoint
YTELUS Security servicefreedom.exeTELUS Security service - sourced by Freedom from Zero Knowledge, Inc (now Radialpoint). Provides anti-virus, personal firewall, parental controls and a pop-up blocker. Also safeguards your personal information, encrypts your passwords and much more. No longer available
UTELUS Support CentreMcciTrayApp.exeSystem tray access to Motive's broadband configuration and repair utility - for TELUS users
UTELUS_McciTrayAppMcciTrayApp.exeSystem tray access to Motive's broadband configuration and repair utility - for TELUS users
UTelusWCC_McciTrayAppMcciTrayApp.exeSystem tray access to Motive's broadband configuration and repair utility - for TELUS Wireless users
XTemizSurucuGDC.exeTemizSurucu Turkish rogue privacy tool - not recommended. A member of the PCPrivacyTool family
XTempCom[randomname].comAdded by the TRAXG WORM!
Xtempxtempx.exeAdded by the TEMPEX.A TROJAN!
XTencent QQRund1132.exe qq.dll, Rundll32Added by the QQPASS.F TROJAN!
NTencent QQQQ.exeTencent QQ Asian instant messanger program
YTEPA.exeTEPA.exeTELUS eProtect Advisor tool installed when you choose to install their internet security suite - sourced by Radialpoint. Apart from downloading the suite installation files, the exact purpose is unknown at this time but it may be used to source critical updates and alerts so should therefore be left enabled
XTerminal Servicesmstscc.exeAdded by the SDBOT-CZW WORM!
XTerminal Updatebiosefui.exeAdded by the PPDOOR-O TROJAN!
XTerminate PopupZPU.exeFree Popup Killer - foistware proven to install the Regsvc32 homepage hijacker. Also see here
XTerminate Popupfpuk.exePopup killer - foistware proven to install the Regsvc32 homepage hijacker
UTEscKeyTEscKey.exeToshiba Escape Key handler. Enables you to program and use the <FN><Esc> key combination to perform a specific function
?Tesco Insert DetectInsDetect.exePart of Tesco Picture Suite. Detects a digital camera is plugged into a USB port or when a memory card with photos is inserted?
NTesco.netrundll32 [path] RyDial.dll, QuickStartTesco.net dial-up ISP software - not required
?TeslaTESLA.EXE??
Xtesti love you.exeAdded by the SINGU-T TROJAN!
Xtestzistro.exeAdded by the KIMAT-C TROJAN!
XTest*Test.exeAdded by the AUTORUN-SG WORM - where * represent a number. If, for example, you have four physical hard drive partitions and one removable drive, the file "Test.exe" will be present in the root of the partition (ie, C:\, D:\) with startup entries of "Test1" through "Test5"
XTest321fresdg.exeAdded by the HAMWEQ.DD WORM! See here
Xtestestfxxxh.exeAdded by the SDBOT-MK WORM!
XTesting 123msdata.datAdded by the NITS.A WORM!
Xtestit.exetestit.exeISTBar adware
XTethdrle.exePurityScan adware
?TExBUtil RegistryTExBUtil.exe??
XText Tray Servicetstray.exeAdded by the SILLYFDC.BCC WORM!
NTextAloudTextAloudMP3.exeTextAloud MP3 - convert text into spoken words and MP3s
NTextbridge Instant Access OCRtelepath.exeTextBridge from Nuance (was Scansoft). OCR (optical character recognition) software for scanning documents into popular editing applications. Available via Start -> Programs
XTEXTCONVservices.exeAdded by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup!
XTEXTCONVwinlogon.exeAdded by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup!
UTFncKyTFncky.exeDeals with the <Fn> - <Function> key combinations on a Toshiba laptop
UTFNF5TFNF5.exeToshiba Hotkey Utility for Display Devices. By pressing <FN> + <F5>, a window appears showing the displays that can be chosen - LCD, LCD + CRT, CRT, TV
Ytfswctrltfswctrl.exeDrive letter access to a UDF packet writer for CD-RW - from HP, Veritas an others. Similar to Roxio's DirectCD and does the same thing. From HP - "This is a needed file as it controles the readability of the Combo drives. Without this file loading the end user will be able to burn CD's but wont be able to read them. The drive itself will be able to read store bought master Cd's without the file but not burnt ones"
Ytfswctrl.exetfswctrl.exeDrive letter access to a UDF packet writer for CD-RW - from HP, Veritas an others. Similar to Roxio's DirectCD and does the same thing. From HP - "This is a needed file as it controles the readability of the Combo drives. Without this file loading the end user will be able to burn CD's but wont be able to read them. The drive itself will be able to read store bought master Cd's without the file but not burnt ones"
XTFTP***tftp***Added by a variant of the SPYBOT WORM! where *** can be any number
YTFTrayTFTray.exeSystem Tray access to ThreatFire no-signature anti-malware from PC Tools - which "features innovative real-time behavioral technology that provides powerful protection against both known and unknown viruses, worms, trojans, rootkits, buffer overflows, spyware, adware and other malware"
UTFunckeyTFuncKey.exeDeals with the <Fn> - <Function> key combinations on a Toshiba laptop
NTgAddServertgfix.exeSoftware from SupportSoft (aka Support.com) provided to manufacturers (such as Sony (Vaio Support Agent) and Toshiba (Virtual Tech)) and ISPs (such as Comcast, Cox and Charter (Pipeline Support Agent)) that allows them to offer on-line support - to update drivers, fix faults, etc. Can cause a deterioration in a PC's peformance (see here). This part does the protection and "self-healing". Uninstallation is recommended by most people - especially for System Restore users (WinME/XP). If not available via Add/Remove try here
Xtgbcdemodule32.exeAdded by the REIGN.R TROJAN!
Utgcmdtgcmd.exePart of software from SupportSoft (aka Support.com) provided to manufacturers and ISPs that allows them to offer on-line support - to update drivers, fix faults, etc. Also see the TgAddServer entry. This part ensures the software is installed correctly (similar to an installation wizard) as reported by Cox. Regarded as spyware by some as it has the ability to retrieve user information. Whether it does so depends upon the provider. One Toshiba user reports problems with hibernate on his laptop if disabled - hence the "U" recommendation"
Utgcmdhcenter.exeBellsouth help center. Part of software from SupportSoft (aka Support.com) provided to manufacturers and ISPs that allows them to offer on-line support - to update drivers, fix faults, etc. Also see the TgAddServer entry. This part ensures the software is installed correctly (similar to an installation wizard) as reported by Cox. Regarded as spyware by some as it has the ability to retrieve user information. Whether it does so depends upon the provider. One Toshiba user reports problems with hibernate on his laptop if disabled - hence the "U" recommendation"
Utgcmdprovidersbctgcmd.exePart of software from SupportSoft (aka Support.com) provided to manufacturers and ISPs that allows them to offer on-line support - to update drivers, fix faults, etc. Also see the TgAddServer entry. This part ensures the software is installed correctly (similar to an installation wizard) as reported by Cox. Regarded as spyware by some as it has the ability to retrieve user information. Whether it does so depends upon the provider. One Toshiba user reports problems with hibernate on his laptop if disabled - hence the "U" recommendation"
NTGCMG??Related to Rogers@Home, causes errors in WinSock32.dll. Not required for connection to work
XTGDC IE Plugintgdc.exeShopForGood spyware - see here
Ntgkilltgkill.exeComcast struck a deal with Tioga to provide an "enhanced" support and self-repairing tool. This "beta" release was made available to download by mistake and should be removed via Start → Control Panel → Add/Remove Programs
NTGPro OfficeIdxOffice.exeWith IdiomaX Office Translator "you can translate documents directly from your favorite text editor (Microsoft Word, WordPerfect or Lotus WordPro)"
UTgsetsitetgfix.exeSee also TgAddServer. This part ensures the software is installed correctly (similar to an installation wizard) as reported by Cox Regarded as spyware by some as it has the ability to retrieve user information. Whether it does so depends upon the provider. One Toshiba user reports problems with hibernate on his laptop if disabled - hence the "U" recommendation
UTHCSsvchost.exeAllMonitor surveillance software. Uninstall this software unless you put it there yourself. Note - this is not the svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup. This one is located in a "drivers\imon" subfolder
?Thdetrfthdetr32.exeAppears to be related to Lycos advertising
XThEwind0s.exeAdded by an unidentified WORM or TROJAN!
NThe AssistanteSched.exeRelated to WinTotal from a la mode inc. FormFiller for appraisers
UThe Easy Bee's HiveATCEgSvr.exeThe Easy Bee is a software that allows you to record Internet navigation sequences, which can include form filling and button clicking and to attach a replay schedule to each sequence
XThe Ethernetethernet.exeAdded by a variant of the SDBOT WORM!
XThe Ethernetintranet.exeAdded by a variant of the SDBOT WORM!
XThe Intranetintranet.exeAdded by a variant of the SDBOT WORM!
XThe Monitor[path to trojan]Added by the VB-AXL TROJAN!
NThe ProxomitronProxomitron.exeA free, highly flexible, user-configurable, small but very powerful, local HTTP web-filtering proxy - see here
XThe Registry SentinelThe Registry Sentinel.exeThe Registry Sentinel rogue security software - not recommended, removal instructions here
XThe Service Pack Loaderspxp.exeAdded by the RBOT-BYM WORM!
XThe Spy Guardspyguard.exeThe SpyGuard rogue spyware remover - not recommended, removal instructions here
XThe Spy Guard Monitorspyguard_monitor.exeThe SpyGuard rogue spyware remover - not recommended, removal instructions here
XThe Web SentinelThe Web Sentinel.exeThe Web Sentinel rogue security software - not recommended, removal instructions here
XTheBestMP3rundll32.exe MSA64CHK.dll,DllMostrarMatrixDialer/Mostrar parasite. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in %System%
XTheDefend.exeTheDefend.exeTheDefend rogue security software - not recommended, removal instructions here. A member of the AntiAID family
XTheLastDefenderLastDefender.exeThe Last Defender rogue security software - not recommended, removal instructions here
?TheMainStartN/A??
XThemeMP3rundll32.exe MSA64CHK.dll,DllMostrarMatrixDialer/Mostrar parasite. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in %System%
XTheMonitor[filename].exeYourEnhancement downloader. The file is located in %Windir%
XTheSpyBotTheSpyBot.exeTheSpyBot rogue security software - not recommended, removal instructions here
Page: 1 2 3 4 5 6 7 8

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner