Lista de ejecuciones automáticas

Claves:

Y Ejecución automática generalmente inofensiva.
N No requerida pero puede ser ejecutada.
U Elección del usuario. Ejecutarla si es necesario.
X Definitivamente NO requerida. Usualmente Malware.
? Desconocida

Filtro:





View: All # A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Todos

Found 24133 autoruns. Autorun 15501 to 15600:

StatusAutorun nameCommandDescription
Xrun=DRDOOM.EXEAdded by the SEMAPI-A WORM!
Xrun=svhost.exeAdded by the ADMINCASH.B TROJAN!
Xrun=dllreg.exeAdded by the DUMARU-L TROJAN!
Xrun=Celine.scrAdded by the CELINE-A TROJAN!
Nrun=cmmpu.exeMIDI emulator driver for the integrated sound chip by C-Media based on the CMI-8330 chip set normally found in cheap motherboards. Also installed as part of the software for a Guillemot Maxi Muse sound card (PCI)
Nrun=hpfschedHPFSCHED is a small TSR that will remind you to clean the cartridges in your DeskJet from time to time in order to keep print quality high. It can be removed from the run line in win.ini if you do not want that feature
Nrun=lxdboxcp.exeLexmark DOS-Printing Control Program for the Lexmark 2050. Only required if you need to print from DOS
XRun_cdRun_cd.exeAdded by the GHOST.23 BACKDOOR!
Yrun_pbnextPBNext.exePBNext is virtual phone system which offers the same functionality as expensive PBX hardware
XRun05rundll_32.exeAdded by the BANCOS-DT TROJAN!
Xrun32run32dll.exeAdded by the SDBOT-CWB WORM!
Xrun32lsass.exeAdded by the MDROP-CQQ TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in C:\Win
Xrun32dllWINClock.exeAdded by an unidentified VIRUS, WORM or TROJAN!
Xrun32dlltask32.exeAdded by an unidentified VIRUS, WORM or TROJAN!
XRun32dllocxdll.exeAdded by an unidentified VIRUS, WORM or TROJAN!
URunAlertAService.exePC Alert III - MSI motherboard monitoring software. Only required if you "overclock" your system. Appears as a service in XP/Vista and under the "RunServices" registry key in Win98/2K
NrunAPrunAP.exeNot required but what is it?
Xrunappicqchk.exeAdded by the BOMKA TROJAN!
XRunapp32Runapp32.exeAdded by the NEODURK TROJAN!
YRunCAInvokeSvc3.exeWireless-G USB Wireless Network Adapter related - would appear to be required
XRund11Rund11.EXEAdded by the MARIO-C WORM!
Xrund1132rund1132.exeAdded by the DOPBOT-A WORM!
XRund1132.exeRund1132.exeAdded by the STARTPA-HS TROJAN!
XRund1l32Winfi1e32.exeAdded by the MERTIAN WORM!
Xrunddlfilerunddl.exeAdded by the DELF.D TROJAN!
XRundil32runlli32.exeAdded by the QQPASS-U TROJAN!
XRundil32Updadv.exeAdded by the QQPASS-N TROJAN!
Xrundl332math.exe ...pluged.exeAdded by the DOOMJUICE WORM!
Xrundli32rundli32.exeAdded by the LADE WORM!
XRunDLLrundll32.exe [path] Bridge.dll,LoadWinFavorites adware. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "Bridge.dll" file is located in %System%
XRundllRundll~.exeAdded by the DELF-KT TROJAN!
XRundllrundll32.exe [random filename].dllAdded by the MYTOB.IG WORM! Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The random DLL file is found in %System%
XRunDllRunDll.exeAdded by the QQPASS-AH TROJAN! Note - this is NOT the Win9x/Me system file of the same name as described here
XRunDll[path to trojan]Added by the DROPPER.EAT TROJAN!
XRunDLL Kernel File Corerundll.exeAdded by a variant of the RBOT WORM! Note - this is NOT the Win9x/Me system file of the same name as described here
Xrundll***die.exe [path] mdll.exeAdded by the SUMTAX TROJAN! where *** is 134, 569, 777 or 946
Xrundll***die.exe [path] secure.batAdded by the SUMTAX TROJAN! where *** is 134, 569, 777 or 946
Xrundll***die.exe [path] secure.exeAdded by the SUMTAX TROJAN! where *** is 134, 569, 777 or 946
Xrundll***die.exe [path] ttg.exeAdded by the SUMTAX TROJAN! where *** is 134, 569, 777 or 946
XRundll16Rundll16.exeAdded by a number of VIRUSES, WORMS and TROJANS!
XRundll32Rundll32.exeAdded by a variant of the DVLDR TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in %Windir% (98/ME) or %System% (NT/2K/XP). This one is located in %Windir%\Fonts
URUNDLL32RUNDLL32.EXE NvQTwk,NvCplDaemonInstalled with display drivers for NVIDIA based graphics cards prior to late 2002, this entry allows the System Tray icon to be displayed - which gives access to (amongst others) the display settings (such as Antialiasing, OpenGL, Direct3D and colour) and Desktop Manager (nView). If you don't change display settings very often then this is not required and settings can be changed manually via display properties
URunDLL32RunDLL32.exe NvMCTray.dll,NvTaskbarInitInstalled with display drivers for NVIDIA based graphics cards since late 2002, this entry allows the System Tray icon to be displayed - which gives access to (amongst others) the display settings (such as Antialiasing, Rotation and Colour) and the Desktop Manager (nView). If you don't change display settings very often then this is not required and settings can be changed manually via display properties. No tray icon option is available in Vista. May be required for some 3D applications to recognize your card correctly - such as the game "Everquest"
XRunDLL32winupdate.exeAdded by an unidentified TROJAN! - possibly a BMBOT variant
XRundll32Windows.exeAdded by the QQPASS.E TROJAN!
URundll32Rundll32.exe ptipbm.dll, SetWriteBackInstalled with the miniport drivers for Promise hard drive controllers in both RAID and non-RAID installations. Tells the drivers that the connected Drives should use the "Write Back" Caching. You can disable this if you don't want to use "Write Back" Caching or if you have not connected any driver to your Promise Controller
Xrundll32[path to worm]Added by the AUTEX WORM!
?rundll32rundll32.exe ptipbmf.dll, SetWriteCacheModeInstalled with the miniport drivers for Promise hard drive controllers in both RAID and non-RAID installations. May be necessary in order to maintain preferences applied to the RAID array connected to the Promise controller
Xrundll32rundll32.exeAdded by the SANKER WORM! Note - this is not the legitimate rundll32.exe process, which is found in %Windir% (98/ME) or %System% (NT/2K/XP). This one is located in %Windir%
Xrundll32csrss.exeAdded by the GUTTA TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
Urundll32rundll32.exe irprops.cpl,,BluetoothAuthenticationAgentIf your system has Bluetooth (either integrated or via an adapter) and use's Microsoft's support software/drivers, this entry is required in order to successfully "pair" your system with a Bluetooth device (such as a mobile phone, PDA, headset) using this wireless protocol (via a PIN). Should you get the error message, "Rundll irprops.cpl missing entry Bluetooth authentication agent", click here for more information
XRUNDLL32rundl32.exeAdded by the DEMOTRY-A WORM!
Xrundll32rundll32.exeAdded by the AGENT-EZ TROJAN! Note - this is not the legitimate rundll32.exe process, which is found in %Windir% (98/ME) or %System% (NT/2K/XP). This one is located in %System%\SHELLEXT
XRundll32RUNDDLL32.EXEAdded by the STARTPAGE.AXH TROJAN!
Xrundll32kernel32.exeAdded by the STAP-C WORM!
Xrundll32kernel33.exeAdded by the STAP-D WORM!
Xrundll32MSDTC.exeAdded by the STAP-E WORM!
Xrundll32rookie.vbsAdded by the ROOKIE-A TROJAN!
Xrundll32rundll64.exeAdded by the DELF.BKC TROJAN!
Urundll32rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgentIf your system has Bluetooth (either integrated or via an adapter) and use's Microsoft's support software/drivers, this entry is required in order to successfully "pair" your system with a Bluetooth device (such as a mobile phone, PDA, headset) using this wireless protocol (via a PIN)
Urundll32rundll32.exe nview.dll,nViewLoadHookPart of NVIDIA's NVIEW Display Management Software - included in drivers for consumer and professional graphics products. In earlier drivers this entry enables the Desktop Manager and makes it's features such as multiple desktops and hot keys available to the user. Available via Control Panel → NVIDIA nView Desktop Manager
Xrundll32svchs0t.exeAdded by the PWSTEAL-E TROJAN!
Xrundll32ntdevice.exeAdded by the AGENT-OUM TROJAN!
Xrundll32userinit.exeAdded by the AGENT-OUM TROJAN!
NRundll32 cmicnfgRundll32 cmicnfg.cpl, CMICtrlWndSystem tray control panel for C-Media based soundcards - often included on popular motherboards with in-built audio. Available via Start -> Settings -> Control Panel
YRunDll32 esspropsRunDll32 essprops.cpl, TaskbarIconWndAssociated with a Logitech mouse - required for proper operation
URundll32 P17Rundll32 P17.dll, P17HelperASIO (Audio Stream In/Out) drivers for the SoundBlaster Audigy 2 series soundcards - for recording and home project studios. Required if you use this functionality
XRundll32.exeProyecto1.exeAdded by the GRUEL WORM!
XRundll32.exeRoot.exeAdded by the GRUEL WORM!
XRundll32_7rundll32.exe msiefr40.dll,DllRunServerBrowserAid adware. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "msiefr40.dll" file is located in %System%
XRundll32_8rundll32.exe inetp60.dll,DllRunServerBrowserAid/BrowserPal foistware. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "inetp60.dll" file is located in %System%
XRundll32_8rundll32.exe 1.dll,DllRunServerBrowserAid adware. Note that rundll32.exe is a legitimate Microsoft file used to launch DLL file types and shouldn't be deleted. The "1.dll" file is located in %Root% (i.e. C:\ D:\, etc)
XRunDLL34syscnfg.exeAdded by an unidentified VIRUS, WORM or TROJAN! "syscnfg.exe" is found in %Windir%\fonts\font2 where no *.exe files should reside
Xrundll64[path to worm]Added by the AUTEX WORM!
XRundllSvrRundll.exeAdded by the HUAYU WORM! Note - this is NOT the Win9x/Me system file of the same name as described here
XRundllsystem32Rundllsystem32.exeAdded by the NETDEVIL.B BACKDOOR!
XRUNDNBRundnb.exeAdded by the DIALER-C dialler!
XRundnmRundnm.exeAdded by the DELF-HA TROJAN!
XRUNGogoToolsLaunchAdware.exeGoGoTools adware
XRUNGogoToolsGoGoLaunch.exeGoGoTools adware
XRUNHYPERhyperx.exePurityScan/Clickspring adware
Xruningwin.exeAdded by the DELF-LC TROJAN!
XRunJavajcview.exeAdded by the AUTORUN-BEL WORM!
XRunJava2systtray.exeAdded by the AUTORUN-BEL WORM!
XRUNLOADl0ad.exePurityScan/Clickspring adware
XRUNLOUDloud.exePurityScan/Clickspring adware
URunmarc8mManagermarc8m95.exeMARC Sound System Manager for the Marc 8 MIDI sound card - allows for easy adjustment of the settings
XRunmeAtStartupdx5.exeAdded by the BULILIT.A TROJAN!
URunNarratorNarrator.exeAssociated with the Narrator accessibility feature on Windows XP. It is used to convert text to speech
XRunnerlsass.exe [trojan filename]Added by the DROWSY-B TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XRunnercsrss.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate csrss.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XRunnerlsass.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate lsass.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
XRunnersvchost.exeAdded by the ADCLICK-AG TROJAN! Note - this is not the legitimate svchost.exe process which is always located in %System% and should not normally figure in Msconfig/Startup! This one is located in %Windir%
Xrunner1updater.exeAdded by the CRYPT.ULPM.GEN TROJAN!
Xrunner1retadpu.exeAdded by the AGENT.SLZ TROJAN!
Xrunner1mrofinu.exeAdded by the AGENT.CZC TROJAN!
Xrunner1retadpu[random digits].exeAdded by the SMALL.CTV TROJAN!
Xrunner1tsitra.exeAdded by the AGENT.ABFQ TROJAN!
Xrunner1faceback.exeAdded by the DLOADR-BSX TROJAN!
URunOnceRUNONCE.EXEPart of MS Data Access Components - only required if you use these

La lista de ejecuciones automáticas es presentada en asociación con Sysinfo.org