Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 21801 to 21900:

StatusAutorun nameCommandDescription
XWindows Registrymsnmsg.exeAdded by a variant of the RBOT WORM!
XWindows Registrywinhost.exeAdded by a variant of the RBOT WORM!
XWindows Registry Cleanerwinclean.exeAdded by a variant of the SPYBOT WORM!
XWindows Registry Controlwinreg.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Registry DLLwinregdll.exeAdded by the IRCBOT.FB BACKDOOR!
XWindows Registry Express Loaderregexpress.exeAdded by the FORBOT-CJ WORM!
XWindows Registry Managertasksmanagers.exeAdded by the MYTOB.ER WORM!
XWindows Registry Name[random filename]Added by the RBOT-AEB WORM!
XWindows Registry Namewinses.exeAdded by the RBOT-ADB WORM!
UWindows Registry Repair ProRegistryRepairPro.exeRegistry Repair Pro. "Scans the Windows Registry for invalid or obsolete information in the registry"
XWindows Registry Scanregscan32.exeAdded by the RBOT.KE WORM!
XWindows Registry Scantimeupdate.exeAdded by the SPYBOT.JE WORM!
XWindows Registry Scansvcdll.exeAdded by the RBOT-TP WORM!
XWindows Registry Scanregscan23.exeAdded by a variant of the RBOT WORM!
XWindows Registry Scanregscan.exeAdded by the RBOT-HA WORM!
XWindows Registry Scanwinmedia.exeAdded by the SPYBOT.GK WORM!
XWindows Registry Securitycrss.exeAdded by a variant of the IRCBOT TROJAN!
XWindows Registry Servicesregserv.exeAdded by the SLENFBOT.BB WORM!
XWindows Registry Startupwind32.exeAdded by the AGOBOT-BZ WORM!
XWindows Registry XPwinxptdl.exeAdded by the IRCBOT.AUN WORM!
XWindows Relay Serviceipcbind.exeAdded by the DELFINJECT.F TROJAN!
XWindows Relay Serviceirfnga.exeAdded by the DROPPER.ACO TROJAN!
XWindows Remote Addressingwnpcgs.exeAdded by the DELF-EZN TROJAN!
XWindows Remote Launcherwnpmcs.exeAdded by the IRCBOT.ASX BACKDOOR!
XWindows Repairtoxikx.exeAdded by the SDBOT-ADL WORM!
XWindows reportswchost.exeAdded by the SMALL-BD TROJAN!
XWindows Rescue Systemwinsto.exeAdded by the SUURCH.CG TROJAN!
XWindows Resurections[path to trojan]Added by the AGENT-JPR TROJAN!
XWindows Reverse Preperationwinrvp.exeAdded by the SLENFBOT.CB WORM!
XWindows Reversed Virus Protectionwinrsvp.exeAdded by the SLENFBOT.HX WORM!
XWindows RPC Host Servicecsrssr.exeAdded by the AGENT-QRP TROJAN!
Xwindows runsystem.exeAdded by the ICPASS-A WORM!
XWindows Run-Time 64bitwin64rt.exeAdded by a variant of the RBOT WORM!
XWindows Rundll Centermsnsmgr.exeAdded by the AGENT-LLB TROJAN!
XWindows Rundll Centermsmsgrs.exeAdded by the IRCBOT-AFA WORM!
XWindows rundll32 updaterRundll32.exe Amti.dllAdded by the AMTIAN VIRUS! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "Amti.dll" file is located in %Windir%\Amti
XWindows Running DLL Servicerundll128.exeAdded by the IRCBOT.XDH BACKDOOR!
XWindows Running DLL Servicerundll64.exeAdded by the SLENFBOT.HV WORM!
XWindows Runtime Helpwin32hlp.exeAdded by a variant of the AIMVISION TROJAN!
XWindows Runtime HelpWinRunHelp.wrhAdded by a variant of the AIMVISION TROJAN!
XWindows Runtime Proccess32RUNdll.exeAdded by the SDBOT.QW WORM!
XWindows SAomniscient.exeBLAZEFIND adware
XWindows SafeAssistwinlogon.exeAdded by the AUTORUN-PMF WORM! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %AppData%
XWindows Schedulerwmscheduler.exeAdded by a variant of the SDBOT WORM! See here
XWindows Scheduler!scheduler.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XWindows ScreensaverService.exeAdded by the KELVIR.P WORM!
XWINDOWS SCREENSAVERssaver.scrAdded by the SDBOT-YZ WORM!
NWindows SearchWindowsSearch.exeSystem Tray access to Windows Search 4.0 for XP from Microsoft - which adds additional search options including a search box on the Taskbar. This version also includes the Windows Search (WSearch) service which indexes files and e-mails items so you can quickly find words and phrases. Disabling this entry does not affect the normal operation
XWindows securesetver32.exeAdded by the SPYBOT.EP WORM!
XWindows Secure Connectionwinsc.exeAdded by the SDBOT.BTN WORM!
XWindows Secure FixiPodFixer.exeAdded by the WOOTBOT.BM BACKDOOR!
XWindows Secure Layer[random filename]Added by the RBOT.DRF WORM!
XWindows Secure Messaging Systemmsnmsgrsrvc.exeAdded by the RBOT-RE WORM!
XWindows Secure Servicesssms.exeAdded by the RBOT-GAR WORM!
XWindows Secure talal32[7 random letters].exeAdded by the RBOT.HTP TROJAN!
XWindows Secure Updatewinupser.exeAdded by the RBOT-GCG WORM!
XWindows Secure UpdateWinSecUp.exeAdded by the RBOT-GCD WORM!
XWindows Secure Updateload.exeAdded by the FORBOT-GU WORM!
XWindows Secure UpdateWinSecure.exeAdded by the RBOT-GDO WORM!
XWindows Securetywurger.exeAdded by the AGOBOT-NC BACKDOOR!
XWINDOWS SECURITYwingrd.exeAdded by a variant of the RBOT WORM!
XWindows Securitywin.pifAdded by the RBOT-APT WORM!
XWindows Securityms32.pifAdded by the RBOT-ARN WORM!
XWindows Securitywinscure.exeAdded by the RBOT-BAF WORM!
XWindows Securitywinmon.exeAdded by the SDBOT-SR WORM!
XWindows Security Assistantrundll32.vbeCoolWebSearch Alfasearch parasite variant - also detected as the STARTPA-U TROJAN!
XWindows Security Assistantwinsec.exeCoolWebSearch parasite variant
XWindows Security Authority Servicelsass.exeAdded by the KALEL-A WORM! Note - this is not the legitimate lsass.exe process, which should not appear in Msconfig/Startup!
XWindows Security Centerwinlogon.exeAdded by the AUTORUN-BEX WORM! Note - this is not the legitimate winlogon.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %UserProfile%\Application Data
XWindows Security Center Notification Appwscnfty.exeAdded by a variant of the RBOT WORM!
XWindows Security Center Notification Applssxe.exeAdded by the RBOT-GKX WORM!
XWindows Security Center Notification Applsesxes.exeAdded by the RBOT-GLR WORM!
XWindows Security Center Notification Applseos.exeAdded by a variant of the RBOT-GLR WORM!
XWindows Security Center Notification Applseesysecurex.exeAdded by a variant of the RBOT-GKX WORM!
XWindows Security Controlwuaucls.exeAdded by the FORBOT-V WORM!
XWindows Security Managerwinsecurity.exeAdded by the AGOBOT-KI WORM!
XWindows Security Managerwinsecure.exeAffilred adware
XWindows Security Managersvchost.exeAdded by the ANTINNY.AX WORM! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in a "Microsoft" subfolder
XWindows Security Managersvhost.exeAdded by the GAOBOT.ALU WORM!
XWindows Security Modulemodule.exeAdded by a variant of the RBOT WORM!
XWindows Security Policylsass32.exeAdded by the AGOBOT-CR WORM!
XWindows Security Service[random file name]Added by the RBOT-ALV WORM!
XWindows Security Servicearrdt.exeAdded by a variant of the RBOT WORM!
XWindows Security Servicewindows.pifAdded by the RBOT-AMG WORM!
XWindows Security SuiteWI[random characters].exeWindows Security Suite rogue security software - not recommended, removal instructions here
XWindows Security Survysvchosl.exeAdded by a variant of the IRCBOT BACKDOOR! See here
XWindows Security ToolWinSecure.exeAdded by the AGENT-GPY TROJAN!
XWindows Security Updatesecurity32.exeAffilred adware
XWindows Security Updatendsass.exeAdded by the RBOT.ESM BACKDOOR!
XWindows Serices HostWindowsFirewall32.exeAdded by the SDBOT.BMK WORM!
XWindows Serv PatchMcaffe2005.exeAdded by a variant of the RBOT WORM!
XWindows Servce Agent[random filename]Added by a variant of the IRCBOT TROJAN!
XWindows Servcesc[9 random letters].exeAdded by a variant of the SDBOT WORM! See here
XWindows ServeAdWinServAd.exeWindUpdates Windows ServeAd adware
XWindows Serverwinserv.exeAdded by the IRCBOT.AVM BACKDOOR!
XWindows Server Client Verification Servicewscvs.exeAdded by the AGENT.AWC TROJAN!
XWindows Server Driverssyssrv.exeAdded by a variant of the IRCBOT TROJAN! See here
XWindows Server Informationservinfo.exeAdded by the FORBOT-EN WORM!
XWindows Server IP Verification Servicewsivs.exeAdded by an unidentified WORM or TROJAN! See here
XWindows Server Peer Verification Servicewspvs.exeAdded by a variant of the RANKY TROJAN!

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner