This is an uninstaller helper for tools like the nullsoft installer. It might be seen as malicious if used from untrused places though, since it's so powerfull in it's functionality: * This Process Deletes Other Processes From Disk * Executes Processes stored in Temporary Folders * Writes to another Process's Virtual Memory (Process Hijacking) * This Process Creates Other Processes On Disk * Executes a Process * Can communicate with other computer systems using HTTP protocols * Adds Products to the system registry * Deletes Links in the Start Menu * Registers a Dynamic Link Library File * This Process tampers with Vulnerable System Files and Settings * The process hooks code into all running processes which could allow it to take control of the system or record keyboard input, mouse activity and screen contents * Downloads hidden code from covert web sites * Creates new folders in the file system * Uses DNS to retrieve the IP address for web sites Warning: Some malware camouflage themselves as Au_.exe, particularly if they are located in c:\windows or c:\windows\system32 folder. Thus check the Au_.exe process on your pc whether it is pest
… More
Edit
au_.exe it is part of Nullsoft Install System (NSIS)
What the heck is this?
:)))))))))))))
:D