What is wordpad.exe?
wordpad.exe is a legitimate process file popularly known as WordPad MFC Application. It is a default program that comes with Windows Operating System developed by Microsoft Corporation. It is located in C:\Program Files by default. Malware programmers create files with virus scripts and name them after wordpad.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with wordpad.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with wordpad.exe malware:
- Internet connection fluctuates
- wordpad.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible wordpad.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, then you should run an antivirus scan to get rid of the malware.
How to remove wordpad.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Free Comodo Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove wordpad.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 10c048b3799b2494 0134799575bec712 e8e9a704 |
8414050f5cfd1640 fb6e5e1c27312b0e |
Virus.Win32. Virut.Ce |
No | 5.1.2600.2 180 (xpsp_sp2_ rtm.040803 -2158) |
5.1.2600.2 180 |
Romania | N/A |
2 | Microsoft Corporation | Executable | 92b7456ec70ac610 47d51ce74b4ae39b d37b32c6 |
72f59a349cc67b9d c5e0091b2902c00a |
Virus.Win32. Virut.AV |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
Canada | N/A |
3 | Microsoft Corporation | Executable | a0923e3058250279 601c02908f242add c9ac39b2 |
517d99d468472fb0 bac323e7be27f1dd |
Virus.Win32. Parite.gen |
No | 6.0.6002.1 8277 (vistasp2_ gdr.100628 -0503) |
6.0.6002.1 8277 |
Turkey | N/A |
4 | N/A | Executable | 06dc2b469d07fe18 593b1820ee90d3a2 822a1d54 |
850ef60c1e1e6413 b1ae956b19cf329f |
TrojWare.Win 32.Banbra.rh |
No | N/A | N/A | Russian Federation | N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | a7ba1a97ff37b841 d27b085e86723937 ec29373b |
c3bf615dedebc970 bb3c5a9c2cc52d9e |
No | 10.0.17713 .1000 (WinBuild. 160101.080 0) |
10.0.17713 .1000 |
United Kingdom |
2 | Microsoft Corporation | Executable | 4f1208343c572439 7046d00583be03bd e699dd6f |
0fd679fcaaf32583 3efbdc2c02d35633 |
No | 10.0.14393 .6611 (rs1_relea se.231218- 1733) |
10.0.14393 .6611 |
Russian Federation |
3 | Microsoft Corporation | Executable | c017e91a526dfbb3 7293cd79d86a1d72 61ed0141 |
61173ff6abb1c40e 3d3b580126fc5f66 |
No | 10.0.19041 .1 (WinBuild. 160101.080 0) |
10.0.19041 .1 |
United States |
4 | Microsoft Corporation | Executable | 1ca3032b55d7de01 4d5046b3460b1d82 5c0d4e40 |
8db58e43eb74a9d4 dd9d2c012eeb78a3 |
No | 10.0.14393 .6343 (rs1_relea se.230913- 1727) |
10.0.14393 .6343 |
Ukraine |