Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 3325 autoruns. Autorun 801 to 900:

StatusAutorun nameCommandDescription
XWindows Audio Driveraudiohd.exeAdded by the BANLOAD.ZS TROJAN!
XWindows Audio Layernarsvc.exeAdded by the IRCBOT.AFT BACKDOOR!
XWindows Audio Panelnppsvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Audio Servicesndmic32.exeAdded by the ACKANTTA.C WORM!
XWindows Audio Servicesjvm.exeAdded by the ACKANTTA.F WORM!
XWindows Audio Startupnndsvc.exeAdded by the IRCBOT-AAE TROJAN!
XWindows Audio Systemnndsvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Authority Servicelsass.exeAdded by the KALEL-E WORM! Note - this is not the legitimate lsass.exe process which should not normally figure in Msconfig/Startup!
Xwindows auto updatemsblast.exeAdded by the BLASTER.B WORM!
Xwindows auto updatepenis32.exeAdded by the BLASTER (or MSBLAST.A) WORM!
XWindows Auto Updatewinupdater.exeAdded by the SDBOT.TF BACKDOOR!
XWindows auto updatebazzi.exeAdded by the AHKER.E WORM!
XWindows auto updateLSASS.exeAdded by the AHKER.G WORM! Note - this is not the legitimate lsass.exe process, which should not appear in Msconfig/Startup!
XWindows Auto Updater WINDOWSUPDATE.EXEAdded by the SDBOT.PB WORM! Note the space at the beginning of the filename
XWindows Automatic Updatewuamgrder.exeAdded by a variant of the RBOT WORM!
XWindows Automatic Updaterwindrg.exeAdded by a variant of the RBOT WORM!
XWindows Automatic Updatesdvldr.exeAdded by the RBOT.MF WORM!
XWindows Automatical Updaterdcz.exeAdded by the RBOT.CXS WORM!
XWindows AutomaticUpdaterrunddls.exeAdded by a variant of the RBOT WORM!
Xwindows automationmslaugh.exeAdded by the BLASTER.E WORM!
XWindows Automationmsdspr.exeAdded by the SOLAME.A WORM!
XWindows Autostart Loadernotepad32.exeAdded by a variant of the RBOT WORM!
XWindows backupsystemss.exeAdded by a variant of the SPYBOT WORM!
XWindows Backup ConfigurationIEXPLORER.exeAdded by the GAOBOT.AZ WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
XWindows Baþlangýç Dosyasýsistem.exeAdded by the MUZK WORM!
XWindows Bootwinboot.exeAdded by the AGENT.HBD TROJAN!
XWindows Bootwindowsboot.exeAdded by the IRCBOT.AZT BACKDOOR!
XWindows Booterwinboot.exeAdded by a variant of the IRCBOT TROJAN!
XWindows Booter!winbooter.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XWindows Bootupms-wks32.exeAdded by the RBOT-AFM WORM!
XWindows BootupSystemwks32.exeAdded by a variant of the RBOT WORM!
XWindows Bootuptask-mngr.exeAdded by the RBOT-AWP WORM!
XWindows Browser Servicesbrowser128.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Browser Servicesbrowser32.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Browser Servicesbrowser64.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Browser ServicesBrowsr32.exeAdded by the IRCBOT.BUR BACKDOOR!
XWindows Browser Servicesbrowsr64.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows bypass security SMSS ServiceSbiCvy.exeAdded by the RBOT-GRF WORM!
XWindows cfgascv.exeAdded by the AGOBOT-SZ BACKDOOR!
XWindows Clean-Up ProWINDOWS CLEAN-UP PRO.ExeWindows Clean-Up Pro spyware remover - not recommended, see here
XWindows Cleaner Servicewinclean.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Clientclient.exeAdded by the BACKDR-AM BACKDOOR!
XWindows Client Service 32csrss.exeAdded by the RBOT-ALB WORM! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a drivers\winsdriver subfolder
XWindows Client/Server Runtime Servercsrs.exeAdded by the RBOT.KD WORM!
XWindows CODE Fix Msy Startupsmsyh32.exeAdded by the AGOBOT.AKK WORM!
XWindows Commandwincmd.exeAdded by the RBOT.ANV WORM!
XWindows Common Files ManagerCommgr.exeAdded by the AUTORUN.HFP WORM!
XWindows Communicatorwincomm.exeAdded by the AGOBOT-BH WORM!
XWindows Communicator for NT/XPosndyrn.exeAdded by the SDBOT-CPK WORM! Note - can terminate AV related processes
XWindows Compliant[random filename]Added by the RBOT-IR WORM!
XWindows Computer Browserbcwsvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Confwindowsconf.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows ConfigSSYS.EXEAdded by the SPYBOT-DA WORM!
XWindows Configwins.exeAdded by the SPYBOT.JR WORM!
XWindows ConfigRUNDLL.EXEAdded by the SPYBOT-DX WORM! Note - this is NOT the Win9x/Me system file of the same name as described here
XWindows Configpvphost.exeAdded by a variant of the SLAPER TROJAN!
XWindows Configwinconfig.exeAdded by the IRCBOT.BAP BACKDOOR!
XWindows ConfigZANBOR.EXEAdded by the SPYBOT-MH WORM!
XWindows Configantivirus32.exeAdded by the SPYBOT.DX WORM!
XWindows Config Connectionmsicll.exeAdded by the RBOT-EXQ WORM!
XWindows Config LoaderWincfg32.exeAdded by the SILVERFTP TROJAN!
XWindows Config Managerwinconf.exeAdded by the RBOT-AIT WORM!
XWindows Config ManagerWincfgman32.exeAdded by the AGOBOT-AL BACKDOOR!
XWindows Config Systemconfig.exeAdded by a variant of the SDBOT WORM!
XWindows Configurationwsys32.exeAdded by the GAOBOT.FB WORM!
XWindows Configurationwincfg32.exeAdded by the MYTOB.ED WORM!
XWindows ConfigurationWINHUB.EXEAdded by the SPYBOT-CG WORM!
XWindows Configuration Loaderasclt.exeAdded by the SDBOT-OA WORM!
XWindows Configuration Loadermsgfix.exeAdded by the SDBOT-NP WORM!
XWindows Configuration SystemIExplore.exeAdded by the RBOT-DDG WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
XWindows Configuration Utilitywinxupdate.exeAdded by the AGOBOT.LW WORM!
XWindows Configuratorwinconf.exeAdded by a variant of the IRCBOT TROJAN!
XWindows connection managerInternet.exeAdded by the RBOT-APN WORM! Note - file is found in %Windir%. Make sure you check the link on this one, it copies it's self under three other file names and folder locations
XWindows Consolewkssvc.exeAdded by the SDBOT-DJX WORM!
XWindows Console Componentwrasvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Console Monitor[path to worm]Added by the KEDEBE WORM!
XWindows Console MonitorgcasAV32.exeAdded by the KEDEBE-A WORM!
XWindows Console Normswnbsvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Console Sourcewnbsvc.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows ControlControl.exeAdded by the GREK.A TROJAN! If there is another file with the same file name in the Windows folder, this malware overwrites it with the dropped file
XWindows Control Panelspoolsv.exeAdded by the AGENT-NQJ TROJAN! Note - this is not the legitimate spoolsv.exe which is always located in %System%. This one is located in %UserProfile%\Application Data
XWindows ControlAdWinCtlAd.exeWindUpdates adware variant
XWindows Controls Centerwinudmr.exeAdded by the LAMER.AA BACKDOOR!
XWindows Core Kernel Updatewin32bootcfg.exeAdded by the RANCK-EL TROJAN!
XWindows CPU hostwinbog32.exeAdded by a variant of the RBOT WORM!
XWindows Critical Alertwincrt.exeAdded by the ALEDO-A TROJAN!
XWindows Custom ServicesCSRCS.EXEAdded by the SPYBOT-EI WORM!
XWindows Data Serivce[path to trojan]Added by the VB-EKA TROJAN!
XWindows Data Serverautodisc.exeAdded by the SPYBOT-CB WORM!
XWindows Data Server[random name].exeAdded by the SPYBOT-DS WORM!
XWindows DatabaseWinDat.exeAdded by an unidentified WORM or TROJAN!
XWindows Databasewiinsvc.exeAdded by the AGOBOT-RU WORM!
XWindows Dcom2 Fixmscom32.exeAdded by the RBOT-QT WORM!
XWindows DDE Loaderwindde32.exeAdded by the SDBOT-UZ WORM!
XWindows debug loggingwinlogg.exeAdded by the RBOT-OY WORM!
XWindows debug loggingwinloggs.exeAdded by the RBOT-QN WORM!
XWindows Debuggerwindbg.exeAdded by the FORBOT-BY WORM!
XWindows Debuggermsdbg32.exeAdded by a variant of the RBOT WORM!
XWindows Debuggerwindbg32.exeAdded by the ZOTOB.L WORM!
XWindows Debugging Toolsupdatecfg.exeAdded by the RBOT-AXU WORM!
Page: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner