Autorun List

Keys:

Y Normally harmless autorun.
N Not required, but may be started.
U User's choice. Start if necessary.
X Definitely not required. Usually Malware.
? Unknown

Filter:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Show all

Found 24133 autoruns. Autorun 5701 to 5800:

StatusAutorun nameCommandDescription
XExpertAntivirusExpertAntivirus.exeExpertAntivirus rogue security software - not recommended, removal instructions here
XEXPL0RE.EXEEXPL0RE.EXEAdded by the POPNO-A TROJAN! Note that the filename is spelled using the digit "0" instead of the uppercase letter "o"
XExpl0rer softexpl0rer.pifAdded by the RBOT-AQR WORM!
XexplerUpdadv.exeAdded by the QQPASS-N TROJAN!
XExplkwexpup.exeKeywords hijacker
Xexplord.exeexplord.exeAdded by the DLOADR-AYW TROJAN!
Xexploreexplore.exeAdded by any number of VIRUSES, WORMS or TROJANS!
XExploreExplorer.exeAdded by the IRC.FLOOD.G BACKDOOR! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
XExploreexplore.exeAdult content dialler
XExplorePLORE.EXEAdded by the FORBOT-P WORM!
Xexplore managerexplore.exeAdded by the DONBOMB.A TROJAN!
Xexplore.exeExplore.exeAdded by the GRAYBIRD.G TROJAN!
Xexploreff.exeexploreff.exeAdded by the FINFANSE TROJAN!
Xexplorep.exeexplorep.exeAdded by the LINEAG-I TROJAN!
Uexplorerexplorer.exeStarts Windows Explorer. Unless this has been manually added to startups or added by another program it could be a virus such as PE_BISTRO or DVLDR or MYDOOM.C. Note that it is also not the explorer.exe task/service you'll see when via CTRL+ALT+DEL
Xexplorerwscript.exe [filename]Sneaky way to start any VBS script. Many viruses use VBS files. Note that wscript.exe is a legitimate Microsoft file used to launch script files and shouldn't be deleted
XExplorershellexpl.exeAdded by the SHELDOR TROJAN!
Xexplorerexpl32.exeAdded by the RATSOU TROJAN!
XExplorer[path to worm]Added by the AUTEX WORM!
XExplorershellexp.exeAdded by the AGENT-ZY TROJAN!
XEXPLOREREXPL0RER.EXEAdded by the BEASTDO-Y TROJAN! Note the "0" in the filename rather than upper case "o"
XEXPLORERsys.exeAdded by the SILLYFDC-A TROJAN!
XExplorerconfig_.comAdded by the FLOPPY-D WORM!
XExplorerdrv.exeAdded by the SMALL-FD TROJAN!
Xexplorer[path to trojan]Added by the AGENT-EU TROJAN!
Xexplorerexplorer.exeAdded by the KEYLOG-AK TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%\service
XEXPLOREREXPLORER.exeAdded by the NETHIEF-P TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%\ShellExt
Xexplorerexplorer.exeAdded by the BLOCKEY-A TROJAN! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%\config
XexplorerYinstall.exePurityScan/Clickspring adware
XExplorerWindows Explorer.exeAdded by the SILLYFDC-I WORM!
XExplorerexplorar.vbsAdded by the DESKTO-A WORM!
XExplorerTXP1atform.exeAdded by the FUJACKS.CA VIRUS!
Xexplorersystem.exeAdded by the AGENT-FI TROJAN!
XExplorermsrstart.exeAdded by the SOPICLICK TROJAN!
Xexplorermain.vbeAdded by the SHUSH-A WORM!
XExplorerhxpf.exeAdded by the DELF-DMZ TROJAN!
Xexplorerbootcfgx.exeAdded by the BANBRA.GQU TROJAN! The file is typically located in %UserProfile%\InstallShield Installation Information\{A5BA14E0-7384-5991B8648CBE70A4}
Xexplorerexplorer.exeAdded by the AUTORUN-RE WORM! Note - the legitimate Windows Explorer (explorer.exe) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %Windir%\Backup
Xexplorerwuauclt.exeAdded by the RISPIF.A WORM! Note - this is not the legitimate wuauclt.exe process, which should not appear in Msconfig/Startup!
XExplorer 2238[path to trojan]Added by the AGENT-CPI TROJAN!
XExplorer Loaderexplr32.exeAdded by the AGOBOT.N WORM!
XExplorer Loaderexplorerl.exeAdded by the SDBOT-ADI WORM!
XExplorer lptt01explorer.exeRapidBlaster variant (in a "explorer" folder in Program Files). A dedicated "RapidBlaster Killer" removal tool used to be available but quality anti-malware tools will now remove it. Note - this is not the legitimate Windows Explorer (explorer.exe) which would not normally appear in Msconfig/Startup unless you added it manually!
XEXPLORER MICROSOFT SYSTEMexplore.exeAdded by a variant of the RBOT WORM!
XExplorer ml097eexplorer.exeRapidBlaster variant (in a "explorer" folder in Program Files). A dedicated "RapidBlaster Killer" removal tool used to be available but quality anti-malware tools will now remove it. Note - this is not the legitimate Windows Explorer (explorer.exe) which would not normally appear in Msconfig/Startup unless you added it manually!
XExplorer softexplorer.pifAdded by the RBOT-APK WORM!
XExplorer softexplorer.comAdded by the RBOT-ARM WORM!
XExplorer UpdaterIEXPLORE.exeAdded by the SDBOT-WO WORM! Note - this is not the legitimate Internet Explorer (iexplore.exe) which is always located in %ProgramFiles%\Internet Explorer and should not normally figure in Msconfig/Startup! This one is located in %System%
Xexplorer.exeexplorer.exeAdded by the AGENT-EW or PWS-CY TROJANS! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %System%
Xexplorer.exeexplorer.exeAdded by the DELF-ACL TROJAN! Note - the legitimate Windows Explorer (explorer.exe) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in %ProgramFiles%
XExplorer.execsrss.exeAdded by the JUEGO-B WORM! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %AppData%\Microsoft
XExplorer32explorer6s4.exeAdded by the Downloader.Win32.Small.biq TROJAN!
XExplorer32efsdfgxg.exeAdded by the CLICKER-Y TROJAN!
XExplorer32Expl32.exeAdded by the HACKTACK.B BACKDOOR!
XExplorer5config_.comAdded by the VB.CBG WORM!
XExplorer6.1.EXEExplorer.exeAdded by the MYDOOM.B WORM! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually!
Xexplorerf.exeexplorerf.exeAdded by the AGENT-GDZ TROJAN!
XExplorerRunconime.exeAdded by the PROXY.ABL TROJAN! Note - this is not the legitimate Microsoft Console IME process of the same filename which is located in %System% and is used when a Asian language is used in Windows. This one is located in %Temp%
XExplorerRunavp.exeAdded by the PINCAV.CQU TROJAN! Not to be confused with Kaspersky internet security products, AOL's Active Virus Shield and Steganos AntiVirus 2007 (both by Kaspersky) - which are found in either a Kaspersky, AOL or Steganos sub-directory. This one is located in %Temp%
XExplorerTaskexplorer.exeAdded by the ZCREW-B BACKDOOR! Note - the legitimate Windows Explorer (same filename) is located in %Windir% and would not normally appear in Msconfig/Startup unless you added it manually! This one is located in the "Fonts" sub-folder
XExploreUpdSched[random filename]Zeno Think-Adz adware
Xexporetwinset.exeAdded by the QQPASS-I TROJAN!
UExpress ClickYesClickYes.exe"Express ClickYes is a handy tool that runs in the system tray automatically clicks the Yes button for the Outlook Security security prompt, that asks you to confirm mail sending from third party applications"
UExshow95EXSHOW95.exeSupport software for some of the Kensington mice. Provides access to extra features like those available with enhanced Logitech and MS devices
NExtender Resource MonitorRMSysTry.exeRelated to Windows Media Center from Microsoft
XExternal DependenciesExternal.exeAdded by the MYTOB.EC WORM!
XExtra AntivirusExtraAV.exeExtra Antivirus rogue security software - not recommended, removal instructions here
UExtraDNSExtraDNS.exeExtraDNS - DNS configuration tool
NExtraFilmHemmaAgentAgent.exeExtraFilm Photo Assistant
?Extranet AutoDialAutoExt.exeNortel Networks Contivity Extranet Switching Software
?ExxtremeHelperDemonexxdemon.exeCreative Exxtreme graphics card related?
NEye Tide Launcheroneeyetideone.exeNascar wallpaper
NEyeball ChatEyeballChat.exeEyeball Chat free video instant messenger from Eyeball Networks Inc
UEyes RelaxEyesRelax.exeEyes Relax from The Mech - a freeware utility that reminds you about taking breaks from staring at a computer to avoid eye strain
XEYORENotepad.scrAdded by the GIMLET-A WORM!
YEZ Firewallca.exeEZ Firewall - part of the eTrust range of security products formerly available from CA but now discontinued. Available as a stand-alone product or as part of the EZ Armor suite
UEZ-DUB FinderEZ-DUB.exeSupport software for the Lite-On EZ-DUB external DVD writer from Lite-On IT Corporation
Nezagentezagent.exeEzVCR recording software for the ASUS TV FM card. Available via Start -> Programs
NEzButtonEzButton.EXEEZbutton is a quick launcher for the Media player app that comes with certain laptops
NEZDeskEZDESK.EXEUtility that remembers icon locations for each user and resolution. Available here
UEZEJMNAPEzEjMnAp.ExeEasyEject Utility for IBM/Lenovo Thinkpad notebooks. Quote: "The IBM ThinkPad EasyEject Utility makes removing multiple devices from your computer faster and easier by enabling you to stop more than one device at once, rather than stopping each device individually." Configuration and performing of EasyEject actions is available via Fn+F9 key combination on some models
NEZEJTRAYEZEJTRAY.EXESystem Tray access to the EasyEject Utility for IBM/Lenovo Thinkpad notebooks. Quote: "The IBM ThinkPad EasyEject Utility makes removing multiple devices from your computer faster and easier by enabling you to stop more than one device at once, rather than stopping each device individually." Configuration and performing of EasyEject actions is available via Fn+F9 key combination on some models
NezHelperezHelper.exePart of the ezPeer+ ezHelper music sharing program.
XezLife[random name].dllEZLife adware
XeZmmodmmod.exeeZula adware
?EZNORUNEZNORUN.EXEEasy Internet related?
NEzPrintezprint.exeEzPrint - helps users of Lexmark, Dell and LG (and possibly other) printers to enhance, print and manage their photos quickly and easily
YezPS_PxezSP_Px.exeEngine that allows PrimoDVD from Veritas (was Prassi) and Drag'n Drop CD from Easy Systems (and maybe others) to record and protects against other software overwriting the settings
YezShieldProtector for PxezSP_Px.exeEngine that allows PrimoDVD from Veritas (was Prassi) and Drag'n Drop CD from Easy Systems (and maybe others) to record and protects against other software overwriting the settings
YezShieldProtector for PxezSP_PxEngine.exeEngine that allows PrimoDVD from Veritas (was Prassi) and Drag'n Drop CD from Easy Systems (and maybe others) to record and protects against other software overwriting the settings
UEZSMART Appezsmart.exeEZ-S.M.A.R.T. hard drive monitoring software from StorageSoft - appears to be no longer supported
UEzTunedthtml.exeEzTune from Gateway. Rebranded version of Display Tune from Portrait Displays, Inc. - which "is the perfect software utility to initially set-up and adjust your display to achieve its optimum performance. All adjustments are made through a simple graphical user interface"
XezulaeZmmod.exeeZula adware
XeZulaMaineZulaMain.exeeZula adware
XeZuluMaineZuluMain.exeComes with "KaZaA" installation. Advertising Spyware. Not required but KaZaA won't work
Xezurleasyurl.exeEzurl spyware
XeZWOwo.exeeZula adware
Xfftkclean.exeFlashEnhancer adware
UF-PROT Antivirus Tray applicationFProtTray.exeSystem Tray access to F-PROT Antivirus
XF-Secure 2005svchost.exeAdded by the BIFROSE-CH TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%

The autorun list is presented in association with Sysinfo.org

Our Tip: Emsisoft Anti-Malware - Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - June 2009
Read more about the test winner