Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 21501 to 21600:

StatusAutorun nameCommandDescription
XWindows Live Messagesmsgnlive.exeAdded by the AGENT.AYH WORM!
XWindows Live Messengermsnmsgr.exeAdded by a variant of the RBOT WORM! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility which is located in either %ProgramFiles%\MSN Messenger or %ProgramFiles%\Windows Live\Messenger. This one is located in %System%
XWindows live Messengermsn.comAdded by the IRCBOT-AAV WORM!
XWindows Live Messengermsnlive.exeAdded by the RBOT.BMV BACKDOOR!
Xwindows Live Messengeriexplore.exeAdded by the BCKDR-QTS BACKDOOR! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %Windir%
NWindows Live Messengermsnmsgr.exeWindows Live Messenger (was MSN Messenger) utility - available via the Start menu. Disable by clicking on the "Show menu" icon and select Tools → Options → Sign In → deselect "Automatically run Windows Live Messenger when I log on to Windows". This is the Windows Defender/Vista MSConfig entry for version 14.*
XWindows Live Messenger[random].exeAdded by the RBOT-GVL WORM!
XWindows Live Messengermsnd.exeAdded by the BCKDR-QQQ BACKDOOR!
XWindows Live Messenger 8.12ctfmon.exeAdded by the LIPARK-A WORM! Note - this is not the legitimate ctfmon.exe process associated with alternate text inputs which is always located in %System%. This one is located in %UserProfile%
XWindows Live Messenger Addonwllivemsngr.exeAdded by a variant of the SDBOT WORM! See here
XWindows Live Messenger Servicermsmgslive.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Live Messenger Servicesmsgrlive.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Live Messenger!livemsngr.exeAdded by the IRCBOT.AWE BACKDOOR!
XWindows Live Messenger!msgrlive.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Live Msgswlivemsg.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Live Msgs!wlivemsgs.exeAdded by a variant of the IRCBOT TROJAN! See here
YWindows Live OneCarewinssnotify.exeSystem Tray access to and notifications from Windows Live OneCare - now superseded by Microsoft Security Essentials. "OneCare helps keep your PC safe and secure while making your life easier. From virus scanning and file backups, to automatic printer sharing of all the PCs in your household, OneCare helps manage all of this. Delivered to you in a smooth, hassle-free package"
XWindows Live Servicemsnlive.exeAdded by the SLENFBOT.DI WORM!
XWindows Live Servicerusrserv.exeAdded by the SMALL.LU BACKDOOR!
XWindows live Supportwlmsngr.exeAdded by the RBOT-BKL WORM!
UWindows Live SyncWindowsLiveSync.exeWindows Live Sync from Microsoft (formerly known as Windows Live FolderShare) - "a free-to-use internet-based file synchronization application by Microsoft that is designed to allow files and folders between two or more computers be in sync with each other on Windows (Vista and later) and Mac OS X based computers"
UWindows Live™ OneCare™ Family Safetyfssui.exeSystem Tray access to and notifications from Windows Live OneCare Family Safety - part of the Live OneCare range and now superseded by Windows Live Family Safety which is part of Windows Live Essentials. Allows you to decide how your kids experience the Internet by limiting searches, monitoring and blocking/allowing websites and deciding who your kids can communicate with in Messenger or Hotmail. Note - disabling this entry does not disable Family Safety and prevent it monitoring a users activity or restricting access
?Windows Loadwindows.com??
XWindows Loaderwstart32.exeAdded by the GAOBOT.CA WORM!
XWindows LoaderwinServices.pifDetected by Kaspersky as the CARDSPY.D TROJAN!
XWindows LoaderSysUpdate.exeAdded by a variant of the SDBOT WORM!
XWindows Loader Servicecivsc.exeAdded by a variant of the RBOT WORM!
Xwindows LoadxmWin_.exeAdded by the FODDER-A TROJAN!
XWindows Local ISPwinthcr.exeAdded by the SDBOT.ENZ BACKDOOR!
XWindows Local Servicessvcrun.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Servicestcpsvc.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Serviceswebsvc.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Serviceslocalsvc.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Servicesnetsvc.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Servicesspoolsvc.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Servicessvcadmin.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Servicessvcman.exeAdded by the DLOADER-NY TROJAN!
XWindows Local Spoolerlssas.exeAdded by the RBOT.BXQ WORM!
XWindows Locatorwsass.exeAdded by the IRCBOT.N TROJAN!
XWindows Log Agentwinlogon.exeAdded by the KEYLOGGER.AVK TROJAN! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %ProgramFiles%\Common Files
XWindows Loggerwinlog.exeAdded by the NSHADOW-B TROJAN!
XWindows loggingwinlogd.exeAdded by the RBOT-ON WORM!
XWindows loggingasgasg.exeAdded by a variant of the IRCBOT TROJAN!
XWindows Logical Adapterwsrsvc.exeAdded by the IRCBOT.ARU BACKDOOR!
XWindows Logical Connectionwcnsvc.exeAdded by the VIRUT.AO VIRUS!
XWindows Loginexplored.exeAdded by the GAOBOT.SY WORM!
XWindows Loginwinlog.exeAdded by the AGOBOT.MG WORM!
XWindows Loginlmss.exeAdded by the AGOBOT-JA WORM!
XWindows Loginmsnmsgr.exeAdded by the AGOBOT-UC WORM! Note - this is not the valid MSN Messenger (now Windows Live Messenger) utility which is located in either %ProgramFiles%\MSN Messenger or %ProgramFiles%\Windows Live\Messenger. This one is located in %System%
XWindows Loginlogin.exeDetected by Eset's NOD32 antivirus as a variant of the BIFROSE TROJAN!
XWindows Loginlms.exeAdded by the AGOBOT-IC WORM!
XWindows Login Folderwinzep.exeAdded by the AGOBOT-TZ WORM!
XWindows Login Managerwinlogin.exeAdded by a variant of the SDBOT WORM!
XWindows Login Securitywinlogin.pifAdded by an unidentified WORM or TROJAN!
XWindows Login Servicewinlog.exeAdded by the RBOT-AFN WORM!
XWindows Login Servicewinlogin.pifAdded by the SDBOT-ACU WORM!
XWindows Login Serviceswinlogon.exeAdded by the AUTORUN-AVS WORM! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %AppData%\S85-28348346-HAT83-E3-62366-HASG-1732735
XWindows Logonwinlogin.exeAdded by the SPYBOT-C TROJAN!
XWindows Logonwinlogon.exeAdded by the VB.HE VIRUS! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %ProgramFiles%\Common Files\system
XWindows Logonlogin.exeAdded by the SDBOT-DGQ WORM!
XWindows Logon ApplicationWinIogon.exeAdded by the LINKBOT.M WORM!
XWindows Logon Applicationlogon.exeAdded by the POEBOT-J WORM!
XWindows Logon Applicationservices.exeAdded by the CIADOOR-L TROJAN! Note - this is not the legitimate services.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XWindows Logon Applicationwin32help.exeAdded by the DELBOT-X WORM!
XWindows Logon Applicationwinlogon.exeAdded by the POEBOT-KW WORM! Note - this is not the legitimate winlogon.exe process, which should not appear in Msconfig/Startup!
XWindows Logon Applicationwinamp.exeAdded by the POEBOT-LR WORM! Note - this is NOT the popular Winamp media player which is located in %ProgramFiles%\Winamp. This one is located in %System%
XWindows Logon Applicationedcwinlogon.exeAdded by the DWNLDR-HGR TROJAN! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %UserProfile%
XWindows Logon Applicatonedcwinlogon.exeAdded by the VB-EBV TROJAN! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %UserProfile%
XWindows Logon Managerlogon.exeAdded by a variant of the RBOT WORM!
XWindows Logon ProcedureSvchoste.exeAdded by a variant of the SPYBOT WORM!
XWindows Logon ProcedureSvchosta.exeAdded by a variant of the SPYBOT WORM!
Xwindows logon procedurewinlogonpc.exeAdded by the WINLOGON TROJAN!
XWindows Logon Servicewinlogon.pifAdded by the RBOT-AOU WORM!
XWindows Logon Servicenapi32.exeAdded by the SPYBOT.ANDM WORM!
XWindows Logon Servicewinlogoservice.exeAdded by the SPYBOT.ANOO WORM!
XWindows Logon Servicemicropoft.exeAdded by the RBOT-FZY WORM!
XWindows Logon Servicerwinlogon.exeAdded by the BLAZEBOT.A WORM! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %AppData%\WinNT
XWindows LoL Layergqwdcr.exeAdded by the AGOBOT-AHS WORM!
XWindows LoL Layerwin.exeAdded by the RBOT-FTO WORM!
XWindows LoL Layer[random filename].exeAdded by the RBOT-GMD WORM!
XWindows LoL Layerpyvnpt.exeAdded by the RBOT-GKV WORM!
XWindows LoL Layerwinlolx.exeAdded by the RBOT-FOR WORM!
XWindows LoL Layerazypbrx.exeAdded by the RBOT-GMZ WORM!
XWindows LoL Layerblvpnmcny.exeAdded by the RBOT-GOR WORM!
XWindows LoL Layerymllh.exeAdded by the RBOT-FSU WORM!
XWindows Lord Anti-Viruswinlord32.exeAdded by the SDBOT-GW WORM!
XWindows Management Informantwmmiexe.exeAdded by the IRCBOT-V BACKDOOR!
XWindows Management Instrumentationmwd.exeAdded by the GRAPS WORM!
XWindows Management Instrumentation[path to file]Added by the QEDS-A WORM!
XWindows Management Instrumentationswinmg.exeAdded by the GAOBOT.GW WORM!
XWINDOWS MANAGEMENT SYSTEMwm1exe.exeAdded by the RBOT-VT WORM!
XWindows Managerwinmants.exeAdded by the MANTAS WORM!
XWindows Managerwinsrv.exeAdded by a variant of the AGOBOT/GAOBOT WORM!
XWindows Managertaskmgrs.exeAdded by the SILLYFDC.BBZ WORM!
XWindows Manager ControlWINMUR32.EXEAdded by the AGOBOT-AR WORM!
XWindows Manager Systemwinoper.exeAdded by the RBOT-GXV WORM!
XWindows Manager Update Inctgb.exeAdded by the SDBOT-ACM WORM!
XWindows mangementwinlogonn.exeAdded by the RANDEX.FC WORM!
XWindows Media APwinmapp.exeAdded by an unidentified WORM or TROJAN!
XWindows Media APPwmapp.exeAdded by an unidentified WORM or TROJAN!

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner