How to Remove “WGASETUP.EXE”

What is Wgasetup.exe?

Originally developed by Microsoft Corporation, Wgasetup.exe is a legitimate file process. This process is known as Windows Genuine Advantage Notification Setup and it belongs to Microsoft Genuine Advantage. It is located in C:\Windows\System32 by default. Wgasetup.exe virus is created when malware authors write virus files and name them after Wgasetup.exe with an aim to spread virus on the internet.

Affected Platform: Windows OS

How to check if your computer is infected with Wgasetup.exe malware?

If your system is affected by Wgasetup.exe malware, you will notice one or several of the symptoms below:

  • Wgasetup.exe occupies an unusually large CPU memory
  • Erratic internet connection
  • Your browser is bombarded with annoying popup ads
  • Computer screen freezes
  • PC's processing speed suffers
  • You are redirected to unknown websites

To pinpoint the virus file location, take the following steps:

Step 1: Press CTRL+ALT+DEL keys at once to open Task Manager.

Step 2: If you notice the file located outside C:\Windows\System32, you should run an antivirus scan to get rid of the malware.

How to remove Wgasetup.exe malware from system using Comodo Cleaning Essentials?

You can either choose to remove Wgasetup.exe and other malwares using Comodo Antivirus, or Comodo Cleaning Essentials (CCE) – both of which are absolutely free to download! CCE is a set of computer security tools designed to help you identify and remove malwares and unsafe processes from an infected computer.

To remove malwares using CCE, take the following steps:

1. Check the system requirements and download the feature-rich CCE suite for free.

2. After installation, choose the type of scan you want to perform. CCE offers 3 scan options to get rid of malwares from a PC:

  • Smart Scan: Does a scan on critical areas of your system.
  • Full Scan: Does a complete scan of your system.
  • Custom Scan: Does a scan only on selected items.

The process to initiate the above mentioned scans are self-explanatory and thus, easy-to-use. 
Additionally, it's recommended that you approve of any updates that the CCE will prompt you about to ensure it does a better job of identifying all the latest threats.

3. Click 'Next' to view the results.
Regardless of the type of scan you choose, the results will sometimes show false positive (flagging files that are actually safe), which has to be ignored. Only select the files you want to get rid of.

4. Click 'Apply' to apply the selected operations to the threats. The selected operations will be applied.

11

Malware Entries

First Seen: 07 March 2009 at 8:59 am
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable 7023d4c78b7679dd
b4fb30da44b420f9
b8f870e4
86c488c4852eb10b
6bdbdec5c44afbce
Virus.Win32.
Sality.gen
No 1.9.0012.0 1.9.0012.0 Turkey N/A
2 N/A Executable 277b41a24cebb8a0
4d949f5bdc6de6db
f513d68b
371c61a418a6ca68
ce094e66f50e2a65
ApplicUnwnt No N/A N/A United Kingdom N/A
3 Microsoft Corporation Executable 79c895fe20ec0887
0ab0d63c8a721df1
0378c147
f5b1ef76e6dd7a72
c584bdc716b3946b
Virus.Win32.
Sality.gen
No 1.9.0012.0 1.9.0012.0 Brazil N/A
4 N/A Executable 277b41a24cebb8a0
4d949f5bdc6de6db
f513d68b
371c61a418a6ca68
ce094e66f50e2a65
ApplicUnwnt No N/A N/A United States N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
11

Safe Entries

First Seen: 06 April 2009 at 7:23 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 NotePage, Inc. Executable bf064daab100e769
16e5edfe0baf4910
35755e21
b1c619e954a683f4
05afd61df0064e0a
No 3.7 N/A Internal Submission
2 Microsoft Corporation Executable 1be31376adf16e12
cb20eb2968c51fc8
0f09faf8
1d7ba0cfbdb204b0
a3be40bfa79ce6f1
Yes 1.9.0040.0 1.9.0040.0 United States
3 Microsoft Corporation Executable 340269cfddf3d55f
dcfe51fe4f6c599f
ec8d1efa
529eb2f078f19143
2df9fce6a6566e0f
Yes 1.9.0012.0 1.9.0012.0 United States
4 Microsoft Corporation Executable bb476b7d70079f9f
3e25b98b0022d874
9e70893a
6d36cc7b8c8bc402
fffd27c4f5c3035c
Yes 1.9.0012.0 1.9.0012.0 United States
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security