What is wpslive.exe?
wpslive.exe is a legitimate process file popularly known as Kingsoft Office Live Shell. It belongs to Kingsoft Office product, developed by Kingsoft Corp. Ltd. It is located in C:\Program Files\Kingsoft\WPS Office Personal\Office6\addins\plgpf\{DAC5DB99-8AE8-4835-A5F9-8EE3AC6AE1EC} by default.
Malware programmers write virus files with malicious scripts and save them as wpslive.exe with an intention to spread virus on the internet.
Affected Platforms: Windows OS
How to determine if your computer is infected with wpslive.exe malware?
Look out for these symptoms to check if your PC is infected with wpslive.exe malware:
- Unstable internet connection
- wpslive.exe occupies extra CPU space
- PC processing speed slows down
- Browser often redirects to irrelevant websites
- Browser is bombarded with hordes of popup ads
- Computer screen freezes repeatedly
Take the following steps to diagnose your PC for possible wpslive.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files\Kingsoft\WPS Office Personal\Office6\addins\plgpf\{DAC5DB99-8AE8-4835-A5F9-8EE3AC6AE1EC}, perform an antivirus scan to get rid of the malware.
How to remove wpslive.exe malware from system using Comodo Antivirus?
Step 1: Download our award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC after the installation gets over.
Step 5: Wait for Comodo Internet Security to update the antivirus.
Step 6: Proceed with the quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be notified through an alert screen.
Step 8: Comodo Antivirus will remove wpslive.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | N/A | Executable | edf1357dac057aba b2972b0ef8fa691e 835fed1e |
80277b5b32953030 baf32e951a982ddd |
TrojWare.Win 32.Trojan.VB .~LO |
No | 192.168.00 01 |
192.168.00 01 |
China | N/A |
2 | Kingsoft Corp. Ltd. | Executable | 225000a40940f41e 2cb5bbff65121279 67671c49 |
35026e66a9c9037c 014dc61475c2e234 |
Virus.Win32. Parite.gen |
Yes | 1,0,0,2461 | 1,0,0,2461 | China | N/A |
3 | Kingsoft Corp. Ltd. | Executable | c812c1962b4ed44a d279c3cca11933a5 b8690bf8 |
8a7ad19a29b19c48 c2d53972e76b4287 |
Virus.Win32. Small.l0 |
Yes | 1,0,0,2461 | 1,0,0,2461 | China | N/A |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Kingsoft Corp. Ltd. | Executable | 7119a80afc17ab91 3991fc631b5ecfde 34d5fe1e |
c834efa4820010f0 dddceefa5c703487 |
Yes | 1,0,0,2461 | 1,0,0,2461 | Internal Submission |
2 | Kingsoft Corp. Ltd. | Executable | 26fa2440bdd46b87 86ee8172dac8528a cdf823dc |
0bb1b12f86d36962 70a7b151a50cd548 |
Yes | 1,0,0,2066 | 1,0,0,2066 | China |
3 | Kingsoft Corp. Ltd. | Executable | 68e8c210b6fde194 f9459950f354aa36 c63e9d17 |
8b6614fe17471b56 204e3d00d99f3680 |
Yes | 1,0,0,2411 | 1,0,0,2411 | Internal Submission |
4 | Kingsoft Corp. Ltd. | Executable | 5e05b1318ce9372c 019e565dd9dd9434 69036a30 |
9a28332a07a1fd44 5c53a93ed780f52e |
Yes | 1,0,0,2330 | 1,0,0,2330 | Internal Submission |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page