How to Remove “WGATRAY.EXE”

What is wgatray.exe?

wgatray.exe is a legitimate process file popularly known as Windows Genuine Advantage Notification. It is associated with Windows Genuine Advantage application developed by Microsoft Corporation. It is located in C:\Windows\System32 by default. Malware programmers create files with virus scripts and name them after wgatray.exe with an intention to spread virus on the internet.

Affected Platform: Windows OS

How to check if your computer is infected with wgatray.exe malware?

Keep an eye for the following symptoms to see if your PC is infected with wgatray.exe malware:

  • Internet connection fluctuates
  • wgatray.exe takes too much CPU space
  • PC slows down significantly
  • Browser automatically redirects to some irrelevant websites
  • Unsolicited ads and popups starts appearing
  • Screen freezes constantly

Take the following steps to diagnose your PC for possible wgatray.exe malware attack:

Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.

Step 2: If you notice the file located outside C:\Windows\System32, then you should run an antivirus scan to get rid of the malware.

How to remove wgatray.exe malware from system using Comodo Antivirus?

Step 1: Download the award-winning Free Antivirus.

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.

Step 3: After network detection is complete, press “Close” button for a scan window.

Step 4: Restart your PC.

Step 5: It will take some time for the Comodo Internet Security to update the antivirus.

Step 6: Proceed with a quick scan that automatically begins after the update.

Step 7: If threats are found during the scanning, you will be prompted with an alert screen.

Step 8: Comodo Antivirus will remove the wgatray.exe virus from your computer including all other malwares!

19

Malware Entries

First Seen: 01 April 2008 at 12:01 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable 7aedc506aec89f72
9bcf0e63a69e21d3
20888819
b6df8f0b8ab0be7d
6a3d73e1f65d24f0
Virus.Win32.
Sality.gen
No 1.7.0069.2 1.7.0069.2 Brazil N/A
2 Microsoft Corporation Executable a51fb972eb7a2bf2
6be7fd321a6f28da
baa171a6
1f324a232088080d
be41af9ad7ac07e2
Virus.Win32.
Virut.CE
No 1.9.0040.0 1.9.0040.0 Egypt N/A
3 Microsoft Corporation Executable a6aeb1fb2bb03d09
2406b0e6e8d0b4f0
e087949b
e5be7e2262318333
6c435bc3dc5b0b20
Virus.Win32.
Virut.CE
No 1.9.0040.0 1.9.0040.0 Egypt N/A
4 Microsoft Corporation Executable 73a963714d2947c7
fe730d226f3900fc
ca4dd1d6
69b785e1fe99db8f
fa40ef45d9f51d9f
Virus.Win32.
Sality.gen
No 1.5.0540.0 1.5.0540.0 Italy N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
47

Safe Entries

First Seen: 02 June 2008 at 1:23 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 N/A Executable 090fa86fe45c0254
c843a8890c3dfb1e
b7d38675
308040bf76be1e28
24c2c06cfd7eb23e
No N/A N/A Thailand
2 Microsoft Corporation Executable 62963c60a3eb449a
5a0e8e1296d8cff0
da56aa58
7056b597e4195ed3
e60eb297c0e5da63
No 1.7.0018.7 1.7.0018.7 Israel
3 Microsoft Corporation Executable a0075ff5a9e9c48d
bbe4c76d778734d8
8bb82619
6c9c7862f53638b9
4d9bcc10f3ef1878
Yes 1.7.0018.7 1.7.0018.7 Internal Submission
4 Microsoft Corporation Executable 8e2f4a156000ae4b
7b4db993da49ad70
f69ca664
47adc2f697f0ba4b
f3362878bb2eff7b
No 1.8.0031.9 1.8.0031.9 Netherlands
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Antivirus Protection protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security