Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 19901 to 20000:

StatusAutorun nameCommandDescription
Xuserinitsmss.exeAdded by the DLOADR-B TROJAN! Note - this is not the legitimate smss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
Xuserinitchoo_003956f4Added by the PEED.16896 TROJAN!
Xuserinitntos.exeAdded by the AGENT-ECU TROJAN!
XUserinitcologsver.exeAdded by the DROPPER.DJO TROJAN!
XUserinitrundll32.exe winsys16_070813.dllAdded by the AUTORUN-C WORM! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "winsys16_070813.dll" file is found in %System%
Xuserinitappconf32.exeAdded by the SAVNUT TROJAN!
XUserInit StartUprpcxuisu.exeAdded by a variant of the SDBOT WORM!
Xuserinit.exeuserinit.exeAdded by the HAXDOOR-DP TROJAN!
Xuserint32userint32.exeAdded by an unidentified TROJAN via an Instant Message that says, "This was cool, check it out here." Also contains Aurora popups
XUSERINTERFACE REPORT3RM0USE.exeAdded by the MYTOB.HS WORM!
XUserinterface Reporterfuuuucktttttt.exeAdded by the MYTOB-DK WORM!
XUserinterface Reportersrv32.exeISTBar adware
UUserSwitchFastUserSwitching.exeAllows for fast user switching between user accounts without logging off via a hotkey on some Dell machines (and maybe others?)
XUserSystem[filename]CoolWebSearch Smartsearch parasite variant. Also detected as the SEARCH-A TROJAN!
Xuserun32userun32.exeAdded by the LYDRA-B TROJAN!
Xushlisscbltqu.exeObtained from an MP3 search list site. Also generates random processes on reboot
UUSIUDF_Eject_MonitorUSISrv.exeAdded by Ulead DVD Moviefactory. This program monitors your DVD or CD drives and alerts when you eject the media or have no media present
Xusnsvc.exeusnsvc.exeAdded by the SPYBOT.AMD WORM!
XUsrClassExUsrClassEx.exeAdded by the AGENT-KPU TROJAN!
Xusrgtway.exesyswrun4x.exeAdded by the MITGLIEDER.E TROJAN!
XUsrManagementConfumcss.exeAdded by the IRCBOT-W TROJAN!
NUSRobotics 802.11g Wireless Network UtilityUSRWLANG.exeUSRobotics Wireless Network Utility - used to configure security settings for connecting to WEP encrypted Access Point through the USR Wireless adapter. You must uncheck "Use Windows to configure my wireless settings" for the program to work properly. Has Site Survey capabilities, and reports link quality and signal strength. Not required for proper operation of the device as the features given are accessible in the network connection properties
NUsrobotics Online Registration??Pop-up reminding customers to register their products online at US Robotics
YUSRpdAUSRmlnkA.exeModem driver files from US Robotics
UUsrPrmptUsrPrmpt.exeUsed in conjunction with Security Center on XP from SP2 onwards to warn user's that older versions of Symantec's security products including Norton Internet Security, Norton AntiVirus and the now discontinued Norton Personal Firewall are disabled
XUsrrrncr.exePurityScan adware
XUsrrrpen.exePurityScan adware
?USRSTAUSRSTA.exeWireless Card controller. What does it do and is it required?
?USRSTA.EXEUSRSTA.EXEWireless Card controller. What does it do and is it required?
XUssirwsa.exePurityScan adware
XUssiwnscpit.exePurityScan adware
NUSSShRegUSSSHREG.EXERegistration reminder for Ulead SmartSaver Pro - compacts large graphics for web designers
UUStoragustorage.exeU-Storage is application software running under Microsoft Windows, it provides functions and utility to manage STF flash drive (USB drive) for security, partition, boot-ability and recovery. See note
NUstorageUstorage.exeMaintenance tool (enable security functions) for a USB drive from Pretec
Xutasvcrundll32.exe utasvc.dll,startAdded by the AKBOT-AB WORM! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "utasvc.dll" file is found in %System%
XUtilisateurSurSysRep.exeUtilisateurSur, French rogue system error and cleaning utility - not recommended. A member of the ErrClean family
UUtilitaire réseau pour SAGEM Wi-Fi 11g USB adapterWLANUTL.exeSAGEM wireless LAN configuration utility
XUtilitiesAndSoftwarerundll32.exe MSA64CHK.dll,DllMostrarMatrixDialer/Mostrar parasite. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "MSA64CHK.dll" file is located in %System%
?Utility PingUTILIT~1.EXE??
UUtility Traysistray.exeSystem Tray access to display settings for Silicon Integrated Systems (SiS) based graphics chipsets. Located in %System%
NUtilityProUtilityPro.exeIE search toolbars as supplied by people such as Yellow Internet and SearchBoss and written by Rawhide Search Solutions
YUTILsInstN/AFor Gilat Communications internet satellite systems. Gilat rescue (Satellite system restore). Required if you have this system. Can cause a BSOD (blue screen of death) if left out
NUtopia AngelAngel.exe"Utopia Angel is a powerful program which is a set of professional formatters, calculators, optimizers and other tools, working cooperatively, all specifically designed to assist and maximize the Utopian player's productivity." For the text-based massively multiplayer online game Utopia
NuTorrentuTorrent.exeµTorrent - file sharing client for Windows sporting a very small footprint from BitTorrent, Inc. Designed to use as little cpu, memory and space as possible while offering all the functionality expected from advanced clients. For more information about the protocol see here. As µTorrent is a peer-to-peer (P2P) file-sharing client used to distribute large amounts of data between multiple users make sure you have good, up-to-date virus protection and check any downloads
NuTorrent.exeuTorrent.exeµTorrent - file sharing client for Windows sporting a very small footprint from BitTorrent, Inc. Designed to use as little cpu, memory and space as possible while offering all the functionality expected from advanced clients. For more information about the protocol see here. As µTorrent is a peer-to-peer (P2P) file-sharing client used to distribute large amounts of data between multiple users make sure you have good, up-to-date virus protection and check any downloads
Xuvnxuvcx.exeAdded by the DLOADR-AWF TROJAN!
Xuvnxuvnx.exeAdded by the AGENT-EOH TROJAN!
NUVS10 PreloaduvPL.exePart of older versions of the Ulead (now Corel) VideoStudio video editing and DVD authoring software. Unless you use VideoStudio daily and find this speeds up the time it takes to open files associated with the program you shouldn't need this
NUVS11 PreloaduvPL.exePart of older versions of the Ulead (now Corel) VideoStudio video editing and DVD authoring software. Unless you use VideoStudio daily and find this speeds up the time it takes to open files associated with the program you shouldn't need this
NUVS12 PreloaduvPL.exePart of older versions of the Ulead (now Corel) VideoStudio video editing and DVD authoring software. Unless you use VideoStudio daily and find this speeds up the time it takes to open files associated with the program you shouldn't need this
Xuwa6pcwuwa6pcw.exePart of the WinAntiVirus Pro 2006 rogue security software - not recommended, removal instructions here
Xuwa7pcwuwa7pcw.exePart of the WinAntiVirus Pro 2007 rogue security software - not recommended, removal instructions here
Xuwanahuwanah.exeAdded by the SDBOT-VL WORM!
Xuwas6cwuwas6cw.exePart of the WinAntiSpyware 2006 rogue spyware remover - not recommended, removal instructions here
Xuwas7cwuwas7cw.exePart of the WinAntiSpyware 2007 rogue spyware remover - not recommended
XUwezighumom.exeAdded by the MULTIDR-CR TROJAN!
Xuwuxusifjijikete.exeAdded by the SDBOT.AXW WORM!
Xuwyrluwyrl.exeAdded by the PHEL.A TROJAN!
Xuwyw.exeyujixit.exeAdded by the SDBOT.BGB WORM!
Xuzuz.exeAdded by the AGENT-GGH WORM!
UV.92 Modem On HoldLtmoh.exeModem On Hold utility - manages incoming/outgoing voice calls on a single phone line while being connected to the internet
UV0220Mon.exeV0220Mon.exeCreative Live! Cam Console Auto Launcher
UV0230Mon.exeV0230Mon.exeCreative Live! Cam Console Auto Launcher
YV0250Mon.exeV0250Mon.exePart of Creative Webcam Launcher
YV128IIDRundll32.exe v128iitw.dll, STB_InitTweakLoads drivers for some STB graphics cards such as the STB nVIDIA TNT 16MB. Required if you don't want to experience lock-ups or error messages
?V128IITV??Loads drivers for some STB graphics cards. May be related to such a card with a TV out option?
XV3smx4pnprundll32.exe [path] V3smx4pnp.dllAdded by the SMAXIN TROJAN! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "V3smx4pnp.dll" file is found in C:\Documents and Settings\Administrator\Microsoft
?V66SHELLV66SHELL.EXEIt looks to be part of the display driver set for ASUS V3800, V6600 and V6800 display adapters. Probably a system tray quick access control?
Uva10keyva10key.exeOnly required if you use the 10 kay bay unit with a Sony Vaio laptop
XVaccineDataMainVaccineData.exeVaccineData rogue security software - not recommended, removal instructions here
XVaccineLabMainVaccineLab.exeVaccineLab rogue security software - not recommended, removal instructions here
XVaccineLabMainVaccineLabPlus.exeVaccineLabPlus rogue security software - not recommended, removal instructions here
XVaccineTreeMainVaccineTree.exeVaccineTree rogue security software - not recommended, removal instructions here
XVaCtrlsv7Downloader, detected as a variant of the ALPHABET TROJAN!
YVade Retro Outlook ExpressVaderetro_oe.exeVade Retro anti-spam software for Outlook Express from GOTO software products
Xvadseinst[path to trojan]Added by the RANCK-CM TROJAN!
XVaganza-XPloit-[User Name]"[user name].exeAdded by the GAVGENT.A WORM!
YVAGCtrlVAGCTRL.EXEVexira Antivirus - virus scanner from Central Command
XVagiconlinevadaSq.exeAdded by the SDBOT-TD WORM!
YVAGuardVAGNT.exeVexira Antivirus - virus scanner from Central Command
UVAIO Action Setup (Server)VAServ.exeSony Vaio utility that auto-launches selected applications when you plug in a digital video camera, digital still camera, etc. via iLink (FireWire) or USB
UVAIO RecoveryPartSeal.exeSystem backup for Sony Vaio PCs. Adds a recovery mechanism for users over and above any System Restore features - allowing users to revert a drive back to the state it was when bought form the factory by hitting F10. The user obviously loses any data stored if not backed-up elsewhere
UVAIO Update 2VAIOUpdt.exeRelated to Sony Vaio Update service
UVAIOCameraUtilityVCUServe.exeSony VAIO Camera Utility for the built-in webcam on their VAIO range of laptops. Required if you want to use the utility but not if you use the webcam in other programs
XValidData[path to trojan]Added by the RANKY.H TROJAN!
Xvaluenamesvchosts.exeAdded by a variant of the SDBOT WORM!
XValueS0ft[random filename]Added by a variant of the SPYBOT WORM! See here
XValueX[random filename]Added by the IRCBOT.EE TROJAN!
XValuSetMaJde.exeAdded by the SDBOT-OU WORM!
XVanyzimaxepis.exeAdded by the SDBOT.AXJ WORM!
XVasddwDgzxXZwd.exeAdded by the SDBOT-SN WORM!
XVB_runcomctl_32.exeDubious downloader from densmail.com
Xvb6vb6.exeAdded by the MUGLY.D WORM!
Xvbcdtm[random filename]Added by a variant of the SLAPER TROJAN!
Xvbe[random name].vbeAdded by the UISGON-A WORM!
Xvbewin.vbeAdded by the LOSESLP-A WORM!
XVBouncerVirtualBouncer.exeVirtual Bouncer - malware from Spyware Labs. It is distributed by the same bundling and drive-by download techniques as the parasites it claims to remove, so definitely qualifies as unsolicited commercial software in itself. It also has an update feature that can download and execute arbitrary code. Warning - choose "custom" uninstall as "automatic" may remove other programs - see here
XVbouncerDLVbouncerInner****.exe [* = random char]Virtual Bouncer - malware from Spyware Labs. It is distributed by the same bundling and drive-by download techniques as the parasites it claims to remove, so definitely qualifies as unsolicited commercial software in itself. It also has an update feature that can download and execute arbitrary code. Warning - choose "custom" uninstall as "automatic" may remove other programs - see here
XVbouncerDLVBouncerInner.exeVirtual Bouncer - malware from Spyware Labs. It is distributed by the same bundling and drive-by download techniques as the parasites it claims to remove, so definitely qualifies as unsolicited commercial software in itself. It also has an update feature that can download and execute arbitrary code. Warning - choose "custom" uninstall as "automatic" may remove other programs - see here
YVBoxTrayVBoxTray.exePart of the VirtualBox virtual machine software from Oracle. Required for the guest services to work properly

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner