Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 10601 to 10700:

StatusAutorun nameCommandDescription
XMicrosoft UpdateS Machinewgrd.exeAdded by the RBOT-FI WORM!
XMicrosoft Updates ResourcesWinFixIDs.exeAdded by a variant of the RBOT WORM!
XMicrosoft Updatingnavguard.exeAdded by the RBOT.HW WORM!
XMicrosoft Updatingsyswr.exeAdded by a variant of the RBOT WORM!
XMicrosoft Updatingwuamguards.exeAdded by the RBOT-BY WORM!
XMicrosoft Updating Clientwebsvc.exeAdded by the RBOT.AQ WORM!
XMicrosoft Updating Machinesysc0de.exeAdded by the RBOT.RB WORM!
XMicrosoft Updattingmiroupdate.exeAdded by a variant of the RBOT WORM!
XMicrosoft Updote[random filename]Added by the RBOT-ARC WORM!
XMicrosoft UpMachinedoezs.exeAdded by the RBOT.BCT WORM!
XMicrosoft upnp Updatemsie.exeAdded by the RBOT-LQ WORM!
XMicrosoft uptime Servicesysuptime.exeAdded by the RBOT-ACG WORM!
XMicrosoft uptime Servicesycuptime.exeAdded by the RBOT-AHY WORM!
XMicrosoft UpToDate Driver (32-bits)[random filename].exeAdded by the SPYBOT.LXJ WORM!
XMicrosoft Urlmonurlmon.exeAdded by the AGENT-GOO TROJAN!
XMicrosoft USA Plugusaplug.exeAdded by the RBOT-DVC WORM!
XMicrosoft USB Windows2 Driverusbautotuner.exeAdded by the SILLYFDC.BCL WORM!
XMicrosoft USB2 Drivercrmss.exeAdded by the RBOT-VK WORM!
XMicrosoft usnsvc Serviceusnsvc.exeAdded by a variant of the KOBOT-C WORM!
NMicrosoft Utility StartupOSA9.exeOn older versions of MS Office this launches common Office components to help speed up the launch of Office programs. On slower machines it can be a resource hog and some users claim there's no difference with or without it - but it usually isn't required. This must be left enabled if you use the Microsoft Office Shortcut Bar (MSOFFICE.EXE) and have set it to load at startup. Available via Start → All Programs
XMicrosoft Valuesigfkishc.exeAdded by the RBOT-GLO WORM!
XMicrosoft VertupdateMSvert32.exeAdded by the MYTOB-CY WORM!
XMicrosoft Video Capture ControlsMSsrvs32.exeAdded by the SDBOT-AAK WORM!
XMicrosoft Video Controlstskmsgr.exeAdded by a variant of the SPYBOT WORM!
XMicrosoft Video Drivervideodrv.exeAdded by the SDBOT-AGP WORM!
XMicrosoft Viewer Monitor Managerviewmon.exeAdded by the XPAK.A TROJAN!
XMicrosoft Viral Scanning Protectionmsviral.exeAdded by the SDBOT-CLH WORM!
XMicrosoft Virtual Service Managervservice32.exeAdded by the MSNWORM.T WORM!
XMicrosoft Virual Machinesms.exeAdded by the RBOT-SP WORM!
XMicrosoft Vista Upgrade Validation Servicecfmon.exeAdded by a variant of the IRCBOT BACKDOOR!
XMicrosoft Visual Applicationvpcrtf.exeAdded by the IRCBOT-XJ TROJAN!
XMicrosoft Visual Applicationwinsyshp.exeAdded by the DELF-EXT WORM!
XMicrosoft Visual Debugermdm.exeAdded by the SDBOT-DOO WORM! Note - this is not the legitimate Machine Debug Manager (mdm.exe) process which is located in %ProgramFiles%\Common Files\Microsoft Shared\VS7Debug (98/Me/XP/Vista) or C:\WINDOWS\SYSTEM (Me only)
XMicrosoft Visual SourceSafeservices.exeAdded by the NEVEG.B or NEVEG.C WORMS! Note - this is not the legitimate services.exe process, which should not appear in Msconfig/Startup!
XMicrosoft Visual SourceSafewinlogon.exeAdded by the NEVEG.A WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup!
XMicroSoft Visual SPigxdfdfds.comAdded by the SDBOT.GAV WORM!
XMicroSoft Visual SP2igfxsrvc32.exeAdded by the SDBOT.GAV WORM!
XMicrosoft Visual Studioplscdksxg.exeAdded by the RBOT-AWV WORM!
XMicrosoft Visual Studio VSAvarpc32.exeAdded by a variant of the SPYBOT WORM!
XMicrosoft Web CP Managerwebcp32.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XMicrosoft Web Devicewdevice.exeAdded by a variant of the SDBOT WORM!
XMicrosoft web updatewebmsn.exeAdded by the RBOT-EMQ WORM!
UMicrosoft Webserversvctrl.exePersonal web server program which enables you to create and host a web server from your computer. Not required for most people
XMicrosoft Win Corp TLS Verificationmswintls.exeAdded by the RBOT-GCT WORM!
XMicrosoft Win UpdateWinUP.exeAdded by the RBOT-BPR WORM!
XMicrosoft WIN32 DOSMSdos32.exeAdded by a variant of the SDBOT WORM!
XMicrosoft WIN32 SecurityMSsec32.exeAdded by the RBOT-DOQ TROJAN!
XMicroSoft Wind0ws Updaterwinsupdater.exeAdded by a variant of the RBOT WORM!
XMicroSoft Window Updaterwinsupdater.exeAdded by the RBOT-ZZ WORM!
XMicrosoft Windowsmstask0.exeAdded by the SDBOT.FQ WORM!
XMicrosoft WindowsatupAdded by a variant of the RBOT WORM!
XMicrosoft WindowsMicrosoft Windows.htaHTA file which creates an executable on the hard drive which subsequently proceeds to download files from a malware site!
XMicrosoft Windowsexplorar.exeAdded by a variant of the RBOT WORM!
XMicrosoft Windows[path to file]Added by the BDOOR-LI BACKDOOR!
XMicrosoft Windowsbootini.exeAdded by the VANEBOT-K WORM!
XMicrosoft WindowsKernel.exeAdded by the EDIBARA-A VIRUS!
XMicrosoft WindowsKernel.vbsAdded by the EDIBARA-A VIRUS!
XMicrosoft Windowspwjbvphi.exeAdded by the RBOT-GQK WORM!
XMicrosoft Windowswindets.comAdded by the FLOOD-EQ TROJAN!
XMicrosoft Windows (D)iexplore.exeIdentified as a variant of the TrojanSpy.Agent malware
XMicrosoft Windows 128bit Subsystemsystem12.exeAdded by the RANCK-CZ TROJAN!
XMicrosoft Windows 16Bitmswinn16.exeAdded by a variant of the SPYBOT WORM!
XMicrosoft Windows 2000Winupdsdgm.exeAdded by the GAOBOT.AO WORM!
XMicrosoft Windows 32 Updatewin32update.exeAdded by a variant of the IRCBOT TROJAN!
XMicrosoft Windows 32Bitmswinn32.exeAdded by a variant of the RBOT WORM!
XMicrosoft Windows 64 Bitmswin32.exeAdded by a variant of the RBOT WORM!
XMicrosoft Windows Adapter 5.1.3214[worm filename].exeAdded by the STRAT.GEN-3 WORM!
XMicrosoft Windows Autowxcknautowxckn.exeAdded by the RBOT.DYZ BACKDOOR!
XMicrosoft Windows Client Firewallmsclt.exeAdded by the VANEBOT-F WORM!
XMicrosoft Windows Communicator for NT/XPwincomm.exeAdded by the RBOT.ATH WORM!
XMicrosoft Windows Config 32win32conf.exeAdded by a variant of the RBOT WORM!
XMicrosoft Windows Controlmswctl32.exeAdded by the RBOT.JP WORM!
XMicrosoft Windows CSRSScsrss.exeAdded by the KALEL-A WORM! Note - this worm replaces the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup!
NMicrosoft Windows Desktop Search System TrayWindowsSearch.exeSystem Tray access to Windows Desktop Search for XP from Microsoft - which adds additional search options including a search box on the Taskbar. This version (3.0.1) also includes the Windows Search (WSearch) service which indexes files and e-mails items so you can quickly find words and phrases. Disabling this entry does not affect the normal operation and this is the Windows Defender entry
NMicrosoft Windows Desktop Search Tool Tray AdminWindowsSearch.exeSystem Tray access to Windows Desktop Search for XP from Microsoft - which adds additional search options including a search box on the Taskbar. For this version (2.6.*), this entry also runs the indexing function at startup which indexes files and e-mails items so you can quickly find words and phrases. Disabling this entry does not affect the normal operation and indexing will occur when you next perform a search. This is the Windows Defender entry
XMicrosoft Windows DHCP___r.exeAdded by the MASLAN.A or MASLAN.C WORMS!
XMicrosoft Windows DLL 32-BITmsncheck32.exeAdded by the SDBOT-XX WORM!
XMicrosoft Windows DLL Servicesmwindll.exeAdded by the SDBOT-VX WORM!
XMicrosoft Windows DLL Services Configurationnewdll.exeAdded by the SDBOT-ZR WORM!
XMicrosoft Windows DLL Services Configurationnewdll2.exeAdded by the SDBOT-ABD WORM!
XMicrosoft Windows DLL Services Configurationpoker.exeAdded by the SDBOT-ZY WORM!
XMicrosoft Windows DLL Services Configurationpoker3.exeAdded by the SDBOT-AAH WORM!
XMicrosoft Windows DLL Services Configurationproxy.exeAdded by the SDBOT-ZL WORM!
XMicrosoft Windows DLL Services Configurationwindir32.exeAdded by the SDBOT.BHF WORM!
XMicrosoft Windows DLL Services Configurationwindir32a.exeAdded by a variant of the SDBOT.BHF WORM!
XMicrosoft Windows DLL Services Configurationwindll32.exeAdded by the SDBOT.BHD WORM!
XMicrosoft Windows DLL Services ConfigurationwinDSL.exeAdded by the SDBOT-ZG WORM!
XMicrosoft Windows DLL Services Configurationdllmanager32.exeAdded by the SDBOT-BTU WORM!
XMicrosoft Windows DLLHandlerbitpaint.exeAdded by the SDBOT.AHG WORM!
XMicrosoft Windows Driverswindrv.exeAdded by a variant of the SDBOT WORM!
XMicrosoft Windows DVRwindvr.exeAdded by the RBOT-AXD WORM!
XMicrosoft Windows Expl0rerexpl0rer.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XMicrosoft Windows Exploreriexplorer.exeAdded by a variant of the RBOT WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe)
XMicrosoft Windows Explorerexplorewin.exeAdded by the IRCBOT.WORM.212480.H WORM!
XMicrosoft Windows ExpressMicrosoft UpdateAdded by a variant of the IRCBOT BACKDOOR! See here
XMicrosoft Windows Expresswebsploit.exeAdded by a variant of the SPYBOT WORM! See here
XMicrosoft Windows Expresswindowslogonb.exeAdded by the SDBOT.ABOO WORM!
XMicrosoft Windows Files Loadercgy32win.exeAdded by the RBOT-AXR WORM!
XMicrosoft Windows Game Updatermsgame32.exeAdded by a variant of the RBOT WORM!
XMicrosoft Windows GUIWindowz.exeAdded by the RANDEX.AEV WORM!

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner