How to remove the WinDrives virus
Most antivirus programs identify WinDrives.EXE as malware, for example Microsoft identifies it as Worm:Win32/Autorun.NT, and Symantec identifies it as Trojan Horse.
The free file information forum can help you find out how to remove it. If you know more about this file, please leave a comment or a hint for other users.
WinDrives.EXE file information
The process has no company information.
Description: WinDrives.EXE is located in the folder C:\Windows.
Known file sizes on Windows 7/XP are 28,672 bytes (73% of all occurrences), 53,248 bytes or 49,152 bytes.
There is no description of the program. The program has no visible window. File WinDrives.EXE is located in the Windows folder, but it is not a Windows core file. The process is loaded during the Windows boot process (see Registry key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run). It is not a Windows core file. Therefore the technical security rating is 80% dangerous.
Recommended: Identify WinDrives.EXE related errors
Important: Some malware camouflages itself as WinDrives.EXE, particularly when located in the c:\windows or c:\windows\system32 folder. Therefore, you should check the WinDrives.EXE process on your PC to see if it is a threat. We recommend Security Task Manager for verifying your computer's security. This was one of the Top Download Picks of The Washington Post and PC World.
Security Task Manager shows all running Windows tasks including embedded hidden functions (e.g. keyboard or browser monitoring, autostart entry). A unique security risk rating indicates the likelihood of the process being potential spyware, malware, keylogger or a Trojan.
MalwareBytes detects and removes sleeping spyware, adware, trojans, keyloggers, malware and tracking threats from your hard disk. Ideal supplement to Security Task Manager.
SpeedUpMyPC scans, cleans, repairs and optimizes your computer.
usdownloader.exe winsysban.exe tpfnf7sp.exe WinDrives.EXE winpgi.dll windows32.exe mstbr.dll atnthost.exe ncoeenv.exe onetouchmon.exe realtime.exe [all]