Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 18201 to 18300:

StatusAutorun nameCommandDescription
XSystemSVCHOST.EXEAdded by the LDPINCH-AU TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
Xsystemlsasse.exeAdded by the RBOT-YL WORM!
XSystemsystray.exeAdded by the PISABOY-A TROJAN! Note - this is not the legitimate systray.exe process
XSystemabcdefg.exeAdded by the HARWIG-B WORM!
XSystemcber.exeAdded by an unidentified TROJAN!
XSystemserwin.exeAdded by the LDPINCH-BN TROJAN!
XSystemsvchîst.exeAdded by the LDPINCH-BF TROJAN!
XSystemsystem.exe (74295303)Added by the VB-IU WORM!
XSystemWINL0G0N.EXEAdded by the BANCOS-DB TROJAN!
XSystemwumgrd32.exeAdded by a variant of the RBOT WORM!
XSystemSPOOLSU.EXEAdded by the BANKER-FC TROJAN!
XSystemsystem23.exeAdded by the LEBREAT-D WORM!
XSystemwindowsps.exeAdded by a variant of the RBOT WORM!
XSYSTEMd.exeAdded by the MYTOB.LP WORM!
XSysteminetinfo.exeAdded by the PARDROP-A TROJAN!
Xsystemservices.exeAdded by the DELF-LQ TROJAN! Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\HELP
XSYSTEMVSSMON.exeAdded by the RBOT-AWW TROJAN!
XSYSTEMwiinlogon.exeAdded by the RBOT-AVG WORM!
XSystemkernels64.exeAdded by the VIXUP-S TROJAN!
Xsystemlsass.exeAdded by the SATILOLER.B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %ProgramFiles%\Common Files\System
XSystemsmss.exeAdded by the AGENT.EP BACKDOOR! Note - this is not the legitimate smss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XSystemwinupd.exeAdded by a variant of the SDBOT WORM!
Xsystemmessenger.exeAdded by an unidentified WORM or TROJAN!
XSystemkernels1118.exeAdded by a variant of the SDBOT WORM!
XSystemwsscntfy.exeAdded by a variant of the SDBOT WORM!
XSYSTEMwindmupdr.exeAdded by a variant of the RBOT WORM!
Xsystemsvcr.exeAdded by the SPYONE TROJAN!
XSystemkernels88.exeAdded by the TIBS-PP TROJAN!
XSystemkernels8.exeAdded by the TIBS.AI TROJAN!
XSystemOeApi.vbsAdded by the AGUI WORM!
XSystemUpdaterun.exeAdded by the QQHELP-DX TROJAN!
XSystemZap.exeAdded by the MSNVB-D WORM!
XSystemBrO_AcT.exeAdded by the SILLYFDC-AL WORM!
XSystemJuegs.exeAdded by the CULLER-C WORM!
XSystemkernel8.exeAdded by the DLOADR-AOL TROJAN!
XSystemkernelwind32.exeAdded by the VXIDL.FT TROJAN!
XSystemXsfr.exeAdded by the CULLER-D WORM!
XSystemkernelwind64.exeAdded by the DLOADER.DJD TROJAN!
XSYSTEMSystemFile.exeAdded by a variant of the IRCBOT BACKDOOR! See here
Xsystemssclie.exeAdded by the AGENT.LW BACKDOOR!
XsystemWinhelp.exeAdded by the IMAUT.CN WORM!
Xsystemkernel32.iniAdded by the SILLYFDC.CJ WORM!
XSystemtesttestt.exeAdded by the DWNLDR-ZLC TROJAN!
XsystemMicrosoft Office.exeAdded by the BANCBAN-LH TROJAN!
XSystemIEXPL0RE.EXEAdded by the VB.KS WORM! Note the number "0" in the filename
Xsystemsysnet.exeAdded by the VETOR-J WORM!
Xsystemsystemdb.exeBarracuda Antivirus and Security Central rogue security software - not recommended, removal instructions here and here
XSystemwinipck.exeAdded by the RBOT-TK WORM!
XSystemkrln32.exeMalware installed by different rogue security software including SpyKillerPro
Xsystemsystem64.exeAdded by the BANCBAN-PP TROJAN!
XSystemantivirus.vbeAdded by the AUTORUN-AYI WORM!
XSYSTEMRUNDLL16.exeAdded by the DELF-EW BACKDOOR!
XSystemsystemz.exeAdded by the VILSEL-B TROJAN!
XSystem 64 Driver for Gamessys64dvr.exeAdded by the SDBOT TROJAN!
XSystem Analyzerlsass32.exeAdded by the SDBOT.CNI WORM!
XSystem Applications Profilesap.exeAdded by the RBOT-QF WORM!
XSystem Authsystem52.exeIdentified as a variant of the Win32:Rizo-E malware
XSystem Backupmsystem.exeAdult content dialler
XSystem backup[random filename]Added by the ADMINCASH.B TROJAN! Note - multiple different file names have been spotted, examples: web.exe, soft.exe, msxmidi.exe, wmplayer.exe, as well as completely random ones such as 9a2de006.exe, 36c75e3c.exe and so on
XSystem Backupsysbcp32.exeAdded by the AGOBOT-NP BACKDOOR!
XSystem Backup Servicesbackups32.exeAdded by a variant of the RBOT WORM!
XSystem Boot Checksysload3.exeAdded by the FUBALCA WORM!
XSystem Boot Loadersysboot32.exeAdded by the SDBOT.PG WORM!
XSystem Buffer Applicationbuffer32.exeAdded by the SDBOT-UD WORM!
XSystem CacheSysCache.exeAdded by an unidentified VIRUS, WORM or TROJAN!
XSystem CGI Managersyscgmgr.exeAdded by an unidentified WORM or TROJAN! See here
USystem CheckRundll32.exe SysDll32.dll, SystemCheckXPCSpy Pro keystroke logger/monitoring program - remove unless you installed it yourself! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted
Xsystem checkupdater.exeUnidentified adware downloader
XSystem Checkwin_klr32.exeAdded by the DELF-DRA WORM!
XSystem Checkingwasul.exeAdded by the RBOT.BHM WORM!
XSystem ConfigBF3.EXEAdded by the SPYBOT-DT WORM!
XSystem Configsysloadcnf.exeAdded by a variant of the SDBOT WORM! See here
XSystem Config Bootsyscgboot.exeAdded by the AGENT.VWU TROJAN!
XSystem Config Managercrss.exeAdded by the AGOBOT.GH WORM!
XSystem Config Managersmssl.exeAdded by the AGOBOT-ZJ WORM!
XSystem Configurationiexplore.exeAdded by the RANDEX.AD WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
XSystem Configurationsyscfg32.exeAdded by the MYTOB.EA WORM!
XSystem Configuratorsystemconfig.exeAdded by the SDBOT-OR WORM!
XSystem Configurator32SYSTEMCFG.EXEAdded by the AGOBOT-KS WORM!
Xsystem configuresvchost.exeAdded by the LINEAGE-C TROJAN! Note - this is not the legitimate svchost.exe process which should not normally figure in Msconfig/Startup!
XSystem Core Memorysyscoremem.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XSystem CPL manager[random filename]Added by the RBOT-SR WORM!
XSystem CSRSS Patchscrtkfg.exeAdded by the RBOT-ADA WORM!
XSystem Database administrationsystemDA.exeAdded by the DERDERO.B WORM!
XSystem Database Administration Support Processsysdasp.exeAdded by the DERDERO.C WORM!
XSystem DataBase Rootsysdbroot.exeAdded by the QHOST-W TROJAN!
XSystem DB Managersysdbmg.exeAdded by an unidentified WORM or TROJAN! See here
XSystem DefenderWS[random characters].exeSystem Defender rogue security software - not recommended, removal instructions here
XSystem Development Operationssysdevop.exeAdded by the AGENT-OFQ TROJAN!
XSystem Devicedevices.exeAdded by the AGENT.AFIF WORM!
XSystem Device Versionsystemdv.exeAdded by a variant of the RBOT WORM!
XSystem Diagnosticssysdiag32.exeAdded by the SDBOT.GEN BACKDOOR!
XSystem Directory Service[trojan filename].exeAdded by the THROD.A TROJAN! The filename is a random combination the following: ms, svc, win, 16, 32, 64, mes, prn, reg - "ms16prn.exe", for example - and is located in %System%
NSystem DLFcpqdiaga.exeCompaq Diagnostic record system utility which allow you to view information about your computer's hardware and software configuration. Available via Start -> Programs
USystem DLL Resourcessysdll.exeSnapKey is a surveillance software program that records all keyboard activities. Uninstall this software unless you put it there yourself
XSystem Doctor Freesystemdoc.exeSystemDoctor rogue security software - not recommended, removal instructions here
XSystem Document Applicationnmod.exeAdded by the SDBOT-ABB WORM!
XSystem Document Applicationmsdocument.exeAdded by the RANDEX.COX WORM!
XSystem Document Applicationwins.exeAdded by the SDBOT.AUB WORM!
XSystem Document Applicationwinsvc32.exeAdded by the SDBOT-VA WORM!

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner