winbery.exe is a Trojan.LegMir-CG. winbery.exe tries to terminate antiviral programs installed on a user computer. winbery.exe monitors user Internet activity and private information. It sends stolen data to a hacker site. Related files: %System%\winbery.exe %System%\GroupPolicy\Machine\Scripts\scripts.ini %Windows%\vbarun.dll More info: http://www.sophos.com/virusinfo/analyses... Removal: Kill winbery.exe process and remove winbery.exe from Windows startup using antivirus (also check How To Remove section)Startup Optimizer.