What Is Msnmsgr.exe – Is It A Safe File Or A Virus?

Msnmsgr.exe – File Information

The msnmsgr.exe file is the main executable file of MSN Messenger that comes bundled with Windows and Microsoft Office.

By default, you will find the msnmsgr.exe file in a subfolder of C:\Program Files. It is commonly found in 7,094,272, 6,856,704, 5,674,352, 7,086,080, 5,354,792, 5,724,184, 7,081,984, 5,324,584, 6,815,744 byte sizes.

Msnmsgr.exe Startup Information

By default, the msnmsgr.exe loads automatically every time you start your computer.

How to remove msnmsgr.exe from startup?

If you do not use MSN Messenger application often, you can safely remove msnmsgr.exe from your Startup Items list. To achieve this, perform the steps given below:

  1. Click Start and then click Run.
  2. Next, in the Open box, type msconfig and press Enter.
  3. Next, click the Startup tab.
  4. Clear the checkbox before msnmsgr.exe.
  5. Click Apply and then click OK.
  6. Restart your computer.

“Msnmsgr.exe process is using around 60% CPU usage” Issue

If you find that the msnmsgr.exe process is constantly using a high amount of CPU resources, uninstall MSN Messenger and reinstall it.

Msnmsgr.exe – Security Rating

The true msnmsgr.exe is a safe file. However, many malware programs also use a file by the same name.

The rogue msnmsgr.exe file is a security threat and is used by the writers of malware programs to steal the personal information of users.

Mnsmsgr.exe Virus Information

The rogue msnmsgr.exe file is also known to be created under the following filenames:

%AllUsersProfile%\cncdown.exe
%CommonAppData%\sysloader.exe
%CommonAppData%\storm\temp\update.exe
%CommonAppData%\qw2010\svchost.exe
%CommonAppData%\qw2010\qwprotect.dll
%CommonAppData%\qw2010\qw2010i2.exe
%CommonAppData%\qw2010\qw2010i.exe
%CommonAppData%\qw2010\qw2010.exe
%CommonAppData%\nexon\ngm\ngmdll.dll
%CommonAppData%\n1\svchost.exe
%CommonAppData%\n1\qwprotect.dll
%CommonAppData%\n1\n1two.exe
%CommonAppData%\n1\n1i.exe
%CommonAppData%\n1\n1.exe
%CommonAppData%\av1\svchost.exe
%CommonAppData%\fetion\fetionupdate.exe
%CommonAppData%\e4a12b7\vsweep.exe
%CommonAppData%\e4a12b7\vmelt.exe
%CommonAppData%\e4a12b7\valarm.exe
%CommonAppData%\e4a12b7\ua2009.exe
%CommonAppData%\e4a12b7\extraav.exe
%CommonAppData%\dyned\eng_loc.exe
%CommonAppData%\av2010\svchost.exe
%CommonAppData%\av2010\iedefender.dll
%CommonAppData%\av2010\av2010.exe
%CommonAppData%\av1\qwprotect.dll
%CommonAppData%\av1\av1two.exe
%CommonAppData%\av1\av1i2.exe
%CommonAppData%\av1\av1i.exe
%CommonAppData%\av1\av1.exe
%CommonAppData%\aol downloads\aoltoolbar\setuptoolbar.exe
%CommonAppData%\38d3ff69.exe
%CommonAppData%\388f0900.exe
%CommonAppData%\381751d0.exe
%CommonAppData%\3810eef8.exe
%CommonAppData%\38001914.exe
%CommonAppData%\gav\sgav.exe
%AppData%\yeah\yeah374809.exe
%AppData%\wrar380d.exe
%AppData%\wintouch\wtuninstaller.exe
%AppData%\wintouch\wintouch.exe
%AppData%\winbutler\winbutler.exe
%AppData%\winbutler\winbuninstaller.exe
%AppData%\wefisetup.exe
%AppData%\truesword4.exe
%AppData%\temp.dll
%AppData%\speedrunner\sruninstall.exe
%AppData%\skynet\muonline\546783.exe
%AppData%\skynet\muonline\543978.exe
%AppData%\skynet\muonline\435627.exe
%AppData%\skynet\muonline\345676.exe
%AppData%\skynet\muonline\345674.exe
%AppData%\skynet\muonline\293874.exe
%AppData%\skynet\muonline\239874.exe
%AppData%\skynet\muonline\234672.exe
%AppData%\skynet\muonline\_cw0srv.exe
%AppData%\silverlight\silverlight.exe
%AppData%\scvhost.exe
%AppData%\salehoo\salehooalert\_tmp\aa.exe
%AppData%\salehoo\auctionalert\_tmp\aa.exe
%AppData%\pak-5603.exe
%AppData%\pak-5602.exe
%AppData%\pak-5601.exe
%AppData%\pak-5600.exe
%AppData%\pak-5599.exe
%AppData%\pak-5598.exe
%AppData%\pak-5597.exe
%AppData%\pak-5596.exe
%AppData%\pak-5595.exe
%AppData%\pak-5594.exe
%AppData%\pak-5593.exe
%AppData%\nthead.dll
%AppData%\ntcom.dll
%AppData%\mxplay\temp\mxplay_installer.exe
%AppData%\msn\msnmsgr.exe
%AppData%\microsoft\windows\vvpmyvaw.exe
%AppData%\microsoft\windows\vohth.exe
%AppData%\microsoft\windows\tbljxjk.exe
%AppData%\microsoft\windows\security\user0.exe
%AppData%\microsoft\windows\rwmgh.exe
%AppData%\microsoft\windows\nxmwp.exe
%AppData%\microsoft\windows\nheste.exe
%AppData%\microsoft\windows\jjcmdrj.exe
%AppData%\microsoft\windows\ernsjyi.exe
%AppData%\microsoft\office71\vhchk.exe
%AppData%\microsoft\dtsc\t.exe
%AppData%\ldr.exe
%AppData%\ijango_toolbar_installer.exe
%AppData%\hose.exe
%AppData%\digifast\dfuninstall.exe
%AppData%\dealassistant\dauninstall.exe
%AppData%\cuda.exe
%AppData%\cp_setup_assist.exe
%AppData%\codecsetup8536.exe
%AppData%\codecsetup6400.exe
%AppData%\codecsetup4127.exe
%AppData%\codecsetup3788.exe
%AppData%\codecsetup.exe
%AppData%\calc.exe
%AppData%\blaah.exe

The rogue msnmsgr.exe file is known to be associated with the following malware:

Mal_Banker [Trend Micro]
Backdoor.Bifrose [Symantec]
Backdoor.Bifrost [Ikarus]
Backdoor.Ciadoor [Symantec]
Backdoor.Rbot [Ikarus]
Backdoor.Sdbot [Symantec]
Backdoor.Trojan [Symantec]
Backdoor.Win32.Agent.vql [Kaspersky Lab]
Backdoor.Win32.Hupigon.afh [Kaspersky Lab]
Backdoor.Win32.IRCBot.bad [Kaspersky Lab]
Backdoor.Win32.IRCBot.dxu [Kaspersky Lab]
Backdoor.Win32.Poison [Ikarus]
Backdoor.Win32.Poison.pg [Kaspersky Lab]
Backdoor.Win32.Rbot.gen [Kaspersky Lab]
Backdoor.Win32.SdBot [Ikarus]
Backdoor.Win32.SdBot.gen [Kaspersky Lab]
Backdoor:Win32/Bifrose.ACI [Microsoft]
Backdoor:Win32/Poisonivy.E [Microsoft]
Backdoor:Win32/Poisonivy.H [Microsoft]
Backdoor:Win32/Rbot.gen [Microsoft]
BackDoor-CEP.gen.g [McAfee]
BackDoor-CEP.svr [McAfee]
BackDoor-DKI.gen.j [McAfee]
BackDoor-DSS.gen.a [McAfee]
BKDR_AHZE.NY [Trend Micro]
BKDR_BIFROSE.MIC [Trend Micro]
BKDR_Generic [Trend Micro]
Bloodhound.Bancos.1 [Symantec]
Downloader [Symantec]
Downloader.gen.a [McAfee]
Generic BackDoor.b [McAfee]
Generic PWS.b [McAfee]
Generic.dx [McAfee]
Infostealer [Symantec]
Infostealer.Bancos [Symantec]
Infostealer.Gampass [Symantec]
Mal/Banspy-F [Sophos]
Mal/Banspy-F, Mal/Bank-A [Sophos]
Mal/Banspy-F, Mal/Banspy-I [Sophos]
Mal/Behav-285 [Sophos]
Mal/Behav-328, Mal/Behav-103, Mal/Behav-043 [Sophos]
Mal/DelpBanc-A [Sophos]
Mal/Generic-A [Sophos]
Net-Worm.Win32.Mytob.a [Kaspersky Lab]
Packed.Win32.Black.a [Kaspersky Lab]
PWS-Banker [McAfee]
PWS-Banker.gen.i [McAfee]
PWS-Mmorpg.gen [McAfee]
Suspicious.MH690 [Symantec]
Troj/Keylog-JV [Sophos]
Troj/Smalla-Gen, Mal/EncPk-CI, Mal/Poison-A [Sophos]
TROJ_AGENT.FXH [Trend Micro]
Trojan Horse [Symantec]
Trojan.DL.CKSPost.Gen [PC Tools]
Trojan.Malagent.AHA [PC Tools]
Trojan.Msn [Ikarus]
Trojan.PWS.VB.FXZ [PC Tools]
Trojan.Win32.Buzus [Ikarus]
Trojan.Win32.Swisyn.iph [Kaspersky Lab]
Trojan.Win32.VB.vty [Kaspersky Lab]
Trojan:Win32/Malagent [Microsoft]
Trojan-Banker.Win32.Banbra [Ikarus]
Trojan-Banker.Win32.Banker.akbh [Kaspersky Lab]
Trojan-Banker.Win32.Banker.anki [Kaspersky Lab]
Trojan-Banker.Win32.Banker.egt [Kaspersky Lab]
Trojan-Banker.Win32.Banker.nzd [Kaspersky Lab]
Trojan-Banker.Win32.Banker.xpg [Kaspersky Lab]
Trojan-Downloader.Win32.Banload.lej [Kaspersky Lab]
Trojan-Downloader.Win32.Delf.awd [Kaspersky Lab]
TrojanDownloader:Win32/Banload.gen!N [Microsoft]
Trojan-GameThief.Win32.OnLineGames.shnp [Kaspersky Lab]
Trojan-PSW.Win32.QQPass.cmx [Kaspersky Lab]
TrojanSpy.Banker.OMP [PC Tools]
Trojan-Spy.Win32.Banker.egt [Ikarus]
Trojan-Spy.Win32.Banker.JU [Ikarus]
TrojanSpy:Win32/Banker.GQ [Microsoft]
TrojanSpy:Win32/Vwealer.JP [Microsoft]
TSPY_BANCOS.AT [Trend Micro]
VirTool.Win32.Injector [Ikarus]
VirTool:Win32/Injector.gen!AG [Microsoft]
VirTool:Win32/Injector.gen!AH [Microsoft]
VirTool:Win32/Injector.gen!R [Microsoft]
Virus.Win32.Agent.AAGI [Ikarus]
Virus.Win32.Bifrose [Ikarus]
Virus.Win32.CeeInject [Ikarus]
Virus.Win32.Poison [Ikarus]
Virus.Win32.Trojan [Ikarus]
Virus:Win32/Sality.AM [Microsoft]
W32.IRCBot [Symantec]
W32.Sality.AE [Symantec]
W32.Spybot.Worm [Symantec]
W32.Tellsky [Symantec]
W32/[email protected] [McAfee]
W32/Patcher [McAfee]
W32/Rbot-Fam, Mal/Behav-024, Mal/IRCBot-B [Sophos]
W32/Sdbot.worm [McAfee]
Win32/MalPackedB.suspicious [AhnLab]
Win-Trojan/Banker.406016.G [AhnLab]
Win-Trojan/Poison.8192.AF [AhnLab]
Win-Trojan/Poison.9728.F [AhnLab]

How to remove msnmgr.exe virus

To get rid of the rogue msnmgr.exe and its associated malware, scan your entire computer using reliable and advanced antimalware tools such as STOPzilla Antivirus and Spyware Cease. To ensure that your security tools are ready to combat these malware make sure that they are updated with the latest malware definitions on a regular basis.

Also, make it a practice to scan and clean the Windows registry after removing any type of software, especially malware from your computer. This helps to ensure that no residue of the removed program stays behind in the registry. The best, easiest and the simplest way to scan and clean the registry is by using reliable registry tool, such as RegServe.