What is WKSSVC.DLL?
The file named WKSSVC.DLL is developed by Microsoft Corporation. The file is digitally verified but is confirmed to be a Trojan which is designed for the Windows platform. It is used by the Windows Ribbon framework. The file is considered a threat and should be removed if found to be running. The threat level is 4.
WKSSVC.DLL is located in C:\Documents and Settings\{user}\Application data\{19a3c153-2e36-48b0-9131-57c2b181f94b}\wkssvc.dll. The size of the DLL file found in the records is 302 kilobytes. The latest version of the file found is 6.1.7601.17514. The non-system process can be removed as it will not have any effects on the performance of the Windows operating system.
Affected Platform: Windows XP, Vista, 7, Vista
How to check if your computer is infected with WKSSVC.DLL malware?
If your system is affected by WKSSVC.DLL malware, you will notice one or several of the symptoms below:
- WKSSVC.DLL occupies an unusually large CPU memory
- Erratic internet connection
- Your browser is bombarded with annoying popup ads
- Computer screen freezes
- PC's processing speed suffers
- You are redirected to unknown websites
To pinpoint the virus file location, take the following steps:
Step 1: Press CTRL+ALT+DEL keys at once to open Task Manager.
Step 2: If you notice the file located outside C:\Documents and Settings\{user}\Application data\{19a3c153-2e36-48b0-9131-57c2b181f94b}\wkssvc.dll, you should run an antivirus scan to get rid of the malware.
How to remove WKSSVC.DLL malware from system using Comodo Cleaning Essentials?
You can either choose to remove WKSSVC.DLL and other malwares using Comodo Antivirus, or Comodo Cleaning Essentials (CCE) – both of which are absolutely free to download! CCE is a set of computer security tools designed to help you identify and remove malwares and unsafe processes from an infected computer.
To remove malwares using CCE, take the following steps:
1. Check the system requirements and download the feature-rich CCE suite for free.
2. After installation, choose the type of scan you want to perform. CCE offers 3 scan options to get rid of malwares from a PC:
- Smart Scan: Does a scan on critical areas of your system.
- Full Scan: Does a complete scan of your system.
- Custom Scan: Does a scan only on selected items.
The process to initiate the above mentioned scans are self-explanatory and thus, easy-to-use.
Additionally, it's recommended that you approve of any updates that the CCE will prompt you about to ensure it does a better job of identifying all the latest threats.
3. Click 'Next' to view the results.
Regardless of the type of scan you choose, the results will sometimes show false positive (flagging files that are actually safe), which has to be ignored. Only select the files you want to get rid of.
4. Click 'Apply' to apply the selected operations to the threats. The selected operations will be applied.
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | N/A | Executable | 8f56a0c312210f38 d969ea81e645756e 386073c3 |
8e6502fd8657acb0 76c48e7fa7830d41 |
Virus.Win32. Ramnit.K |
No | N/A | N/A | Russian Federation | N/A |
2 | Microsoft Corporation | Executable | 20fafb070477e75a b6797b02009f9380 2c19ee04 |
b41c78ab6cc4f923 d47d006a4e87763c |
Virus.Win32. Ramnit.K |
No | 5.1.2600.5 826 (xpsp_sp3_ qfe.090609 -1445) |
5.1.2600.5 826 |
Turkey | N/A |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | da2f52e607873068 86cd0ce6232a95b1 f8aecab8 |
40c908541ed7ec01 958a1c5c4b2a20a5 |
No | 5.1.2600.5 512 (xpsp.0804 13-2113) |
5.1.2600.5 512 |
10.100.130.247/32 |
2 | Microsoft Corporation | Executable | 5fa65be23864568c e1aa84b2ba851213 b0b8d865 |
78f3ef5e89dfbce4 973110ca35b577d5 |
No | 5.00.2195. 6862 |
5.00.2195. 6862 |
Internal Submission |
3 | ReactOS Development Team | Executable | c13a0806c4cc54ce 9f4d68add699afbc 44f0e017 |
86e7b1013381f419 ded5aa471c22bc3b |
No | 42.4.9 | 0.4.9 | 10.108.51.116/32 |
4 | Microsoft Corporation | Executable | 70b1172d63d62a54 bc67d828d01c0c92 a92e1355 |
a8fc7d371a442085 aad2862ea3b87b85 |
No | 5.2.3790.4 530 (srv03_sp2 _qfe.09061 5-1611) |
5.2.3790.4 530 |
Mexico |