Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 19601 to 19700:

StatusAutorun nameCommandDescription
NUMAX VistaAccessvsaccess.exeVistaAccess gives you quick and easy access to scanning functions right from your desktop
UUMonitumonit.exeAlerts when USB device is plugged in
Yumxagentumxagent.exeTiny Personal Firewall V4 - main engine
Yumxldraumxldra.exeUser mode executive module DLL loader - part of Tiny Personal Firewall V4
YUMXLDRWUMXLDRW.exeTiny Personal Firewall (pre V4)
Xun32infoun32info.ExeAdded by the CRYPTER.A TROJAN!
XUndefinedwinter.exeAdded by the KILLAV.LW TROJAN!
XUnder20anacon32.exeAdded by the ANACON-C WORM!
XUNERIyujixit.exeAdded by the SDBOT.BOO WORM!
UUnHackMe Monitorhackmon.exeUnHackMe allows you to detect and remove a new generation of 'invisible' Trojan programs called "rootkits"
UUniblue LauncherLauncher.exeLauncher for the range of system utilities from Uniblue Systems Limited - namely PowerSuite, RegistryBooster, SpeedUpMyPC and DriverScanner. Normally located in the appropriate sub-directory of %ProgramFiles%\Uniblue
NUniblue ProcessQuickLink 2ProcessQuickLink2.exeProcessQuickLink by Uniblue Systems Ltd - gives you quick access to their Process Library entry for a currently running process via the standard Windows Task Manager (CTRL+ALT+DEL). A System Tray icon also allows you to search the library and launch the Task Manager. Run on demand
UUniblue Quick Accessqaccess.exeQuick Access application from UniBlue Systems Ltd - "helps you account for all processes on your computer by providing an additional plug-in for the Windows task manager"
NUniblue Registry BoosterRegistryBooster.exeOld version of the RegistryBooster registry optimizer utility from Uniblue Systems Limited - which will "clean, repair and optimize your system." Run manually at regular intervals
NUniblue RegistryBooster 2RegistryBooster.exeOld version of the RegistryBooster registry optimizer utility from Uniblue Systems Limited - which will "clean, repair and optimize your system." Run manually at regular intervals
NUniblue RegistryBooster 2009RegistryBooster.exeOld version of the RegistryBooster registry optimizer utility from Uniblue Systems Limited - which will "clean, repair and optimize your system." Run manually at regular intervals
UUniblue SpeedUpMyPCSpeedUpMyPC.exeOlder version of SpeedUpMyPC from Uniblue Systems Limited - which "lets you monitor and control all your PC resources with easy, one click instructions. System settings, internet usage, disk clutter, RAM and CPU are all automatically scanned, cleaned and optimized for peak performance"
YUniblue SpyEraserSpyEraser.exeSpyEraser spyware remover from Uniblue Systems Limited - now discontinued. Provides System Tray access and also required for the real-time Live Guard feature to work to monitor and check for BHOs, toolbars, search hooks, etc
NUniblueRegistryBoosterlauncher.exeLauncher for an older version of the RegistryBooster registry optimizer utility from Uniblue Systems Limited - which will "clean, repair and optimize your system". Run manually at regular intervals
UUniblueSpeedUpMyPCLauncher.exeLauncher for an older version of the SpeedUpMyPC from Uniblue Systems Limited - which "lets you monitor and control all your PC resources with easy, one click instructions. System settings, internet usage, disk clutter, RAM and CPU are all automatically scanned, cleaned and optimized for peak performance"
XUnigrayUnigray Antivirus.exeUnigray Antivirus rogue security software - not recommended
?UniMessengerUNI2.exePossibly the UNI instant messenger for singles from Voxtel
Xuninstalregsvr32 image.dllCoolWebSearch parasite variant. Note that regsvr32.exe is a legitimate Microsoft file used to register and unregister OLE controls and shouldn't be deleted. The "image.dll" file is found in %System%
XUninstall****upd.exeAdult content based screen saver where **** can be any number
XUninstall_TBPSTBuninst.exeWebSearch Toolbar - HuntBar hijacker, toolbar installer variant
NUninstallAbilityuability.exeUninstallAbility free uninstaller
XUninstallHLPreUninstallHL.exeLinkReplacer/FFinder adware
XUninstallQLPreUninstallQL.exeLinkReplacer/FFinder adware
UUniPrintSetDfltSettings.exeDrivers for Uniprint, a printing help for Terminal Services and Citrix which recieves downloaded files from a Uniprint enabled server and prints them locally allowing for truly universal printing through Terminal Services or Citrix
UUniScUnisc.exeMcAfee UnInstaller
?uniucuuniucu.exe??
XUniversal Plug & Play devicesWinUPPD.exeAdded by an unidentified WORM/TROJAN!
XUniversal USB Servicesvchost32.exeAdded by the KELVIR.R WORM!
UUniversity of Texas WeatherUniversity of Texas Weather.exeWeather gadget included with the University of Texas theme for MyColors from Stardock Corporation
XUnix File Supportinit3.exeAdded by the RBOT-ZN WORM!
Xunldr16unldr16.exeAdded by a variant of the CRYPTER.C TROJAN!
Xunldr32unldr32.exeAdded by a variant of the CRYPTER.C TROJAN!
XUNleaded Syn ManagerEdit.exeAdded by the SLINNBOT.ALD BACKDOOR!
UUnlockerAssistantUnlockerAssistant.exeRelated to Unlocker utility to unlock files when the OS reports the file is being used by an other person or program
XUNrcJcrVSu.exeUNrcJcrVSu.exeAdded by the AGENT-PPD TROJAN!
XUnshareSafeShare.exeSafeShare peer-to-peer (P2P) file-sharing client often bundled with adware or spyware
XUnSpyPCUnSpyPC.exeUnSpyPC rogue spyware remover - not recommended
Yuntrayuntray.exeCommand Antivirus related
XUnVirexUnVirex.exeUniVrex rogue security software - not recommended, removal instructions here
Nuoltrayexec.exeNetzero free ISP software - not required
XUp Serviceup32.pifAdded by the RBOT-ARI WORM!
Xupascwupascw.exePersonalAntiSpy rogue spyware remover - not recommended, removal instructions here
NUpConfgVerUpgConf.exePart of Panda Antivirus and Internet Security. Purpose unclear, but according to Panda Software not required for the AV to function
XUPCTPcwUPCTPcw.exePart of the PcTurboPro rogue system optimization tool - not recommended, removal instructions here
Xupd.exeupd.exeAdded by the DELF-AJW BACKDOOR!
Xupd32.exeupd32.exeAdded by the AGENT-PDS TROJAN!
XUpdade Windowswinlogom.exeAdded by the TONAX-A TROJAN!
XUpDatawupdata.exeAdded by the IRCBOT-AA TROJAN!
XUpdate[original file path]Added by the LYNDEGG WORM!
XUpdateCDUpdater.exe"Carpe Diem" adult premium rate dialler related
XUpdateSysupd.exeAdded by the SLACKBOT VIRUS!
XUpdateZupdate.exeAssociated with B3d Projector foistware - see here
XUpdatemshtm.exeBrowser hijacker - redirecting to buldog-search.com
XUpdateUPDATE-28062004.exe[25 blank spaces].vbsAdded by the MIDFIN WORM!
Xupdatewinis.exeAdded by the RBOT-VD WORM!
Xupdater00t.exeAdded by the RBOT-ACO WORM!
XUPDATEWinUpdater5.0.vbsAdded by the GORMLEZ-A WORM!
XUpDateRAuth.exeAdded by the DLOADER-UL TROJAN!
XUpdatecsrss.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XUpdatecsrss.exeAdded by the MEHEERWAR TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "winupdate" subfolder
XUpdatelsass.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XUpdatesvchost.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XUpdateUpdate.exeQuickButton adware. The file is located in %ProgramFiles%\Common Files\updat
XUpdatehanz.exeAdded by a variant of the RBOT-GLJ WORM!
XUpdateWinUpdate.exeAdded by the SDBOT-CV BACKDOOR!
XUpdateUpdate.exeAdded by the MDROP-BUV TROJAN! The file is located in %Windir%
XUpdatesystems.exeAdded by the SURUBAT.A WORM!
XUpdate Checkerwinlog.exeAdded by the IRCBOT-TJ TROJAN!
XUpdate Checkerscvhost.exeAdded by the AGENT-DSF TROJAN!
Xupdate driverSNDVOL32.EXEAdded by the SPYBOT-CU BACKDOOR!
XUpdate Exploreriexploreupd.exeAdded by a variant of the RBOT WORM!
XUpdate for Windows[various filenames]Added by the LERPA-A WORM! Note - the file name will be one of the following common.exe, common.pif, common.scr, Sexo.exe, Sexo.jpg.pif, ini_file__.pif, load_me__.tmp, msfile.pif, system_load_.pif or zipped.rar.pif
?Update for WorksMSWkstz.exeMaybe related to later versions of MS Works?
NUpdate GroksterWiseUpdt.exeAutomatically updates the Grokster file sharing software. Beware of adware and spyware when using this type of program, for instance, Grokster contains CyDoor
XUpdate InstallSchost.exeAdded by the GAOBOT.AO WORM!
?Update localSetCPQLC.exeRunning on a Compaq desktop. Any ideas?
NUpdate ManagerUpdateManager.exeSearches for updates for the Rogers Yahoo! Browser - which "is designed to maximize your enjoyment with the Rogers Yahoo! Hi-Speed Internet service by providing you with a browsing tool that allows easy access to all the popular Yahoo! areas such as News, Finance, and many others." Can be run manually
Xupdate mon sysupdaterar.exeAdded by a variant of the RBOT WORM!
Xupdate run doslogon.exeAdded by a variant of the SDBOT WORM!
XUpdate Run MSwordLOGON.EXEAdded by the RBOT.TY WORM!
YUpdate SchedulerUPSCHD.EXEAutomatic update scheduler for older versions of the range of internet security products from Quick Heal - including Total Security, Internet Security and AntiVirus
YUpdate ServiceUpdate.exeLoaded by Handybits programs such as EasyCrypto. Re-instates itself every time the program is run so best to leave it enabled. Prevent it dialling out via a firewall
Xupdate servicesvxhost.exeAdded by the RBOT-MG WORM!
XUpdate Servicewinu32.exeAdded by the RBOT-MG WORM!
Xupdate servicewinx.exeAdded by a variant of the RBOT WORM!
XUpdate Srvsvchost.exeAdded by the DELF.OB TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%\winservxv
?Update TUTWiseUpdt.exe??
XUpdate ver 1.0Swap.exeAdded by the SWAP-C WORM!
XUpdate WindowsEXPLORE.EXEAdded by a variant of the SDBOT WORM!
XUpdate.exeravseuper.exeAdded by the QQPASS-P TROJAN!
NUPDATE~1updatemgr.exeOnce a month, your EarthLink 5.0 Update Manager contacts EarthLink's servers to check for software updates. If an update is available for your EarthLink software, Update Manager will inform you and, with your permission, download and install the update. Can go to http://www.earthlink.net and download the updates manually
XUpdate32configs.exeHijacker, also detected as the QURL-2 TROJAN!
XUpdateCheckwinstall.exeAdded by the SPYBOT-CY WORM!
NUpdateCheckerUpdateChecker.exe(1) Checks for new releases available in the popular FileHippo.com repository for any software you may already have installed on your computer. (2) Part of the ASUS Update Windows based BIOS update utility included with some ASUS motherboards. Checks the current BIOS revision
NUpdateChecker ApplicationUpdateChecker.exePart of the ASUS Update Windows based BIOS update utility included with some ASUS motherboards. Checks the current BIOS revision. Note that with the version tested (7.16.02 Beta) if this entry was allowed to run at startup, ASUS Update would not run properly and casued system errors

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner