What is BackItUp.exe?
BackItUp.exe is a legitimate process file popularly known as Nero BackItUp. It belongs to Nero BackItUp, developed by Nero AG. It is located in C:\Program Files by default.
Malware programmers write virus files with malicious scripts and save them as BackItUp.exe with an intention to spread virus on the internet.
Affected Platforms: Windows OS
How to determine if your computer is infected with BackItUp.exe malware?
Look out for these symptoms to check if your PC is infected with BackItUp.exe malware:
- Unstable internet connection
 - BackItUp.exe occupies extra CPU space
 - PC processing speed slows down
 - Browser often redirects to irrelevant websites
 - Browser is bombarded with hordes of popup ads
 - Computer screen freezes repeatedly
 
Take the following steps to diagnose your PC for possible BackItUp.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, perform an antivirus scan to get rid of the malware.
How to remove BackItUp.exe malware from system using Comodo Antivirus?
Step 1: Download our award-winning Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC after the installation gets over
Step 5: Wait for Comodo Internet Security to update the antivirus.
Step 6: Proceed with the quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be notified through an alert screen.
Step 8: Comodo Antivirus will remove BackItUp.exe malware from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name  | 
											Digitally Signed  | 
											File Version  | 
											Product Version  | 
											Submitted From  | 
											Malware Behavior | 
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Ahead Software AG | Executable | fad8002fddeaa353 15f8d7f0e53a41ad cb39081f  | 
                                                592c969bb2bc7bdb dff22afb6370caf6  | 
                                                Virus.Win32. Small.l1  | 
                                                No | 1, 0, 0, 16  | 
                                                1, 0, 0, 16  | 
                                                  Vietnam | 
                                                N/A | 
| 2 | Ahead Software AG | Executable | 0f67a1d8600aa3ed bfcc22c5c62aaedf 19b5b7f8  | 
                                                f9613f2bc0e5ca19 f9fdd2f687937167  | 
                                                Virus.Win32. Saburex.a0  | 
                                                No | 1, 2, 0, 61  | 
                                                1, 2, 0, 61  | 
                                                  Italy | 
                                                N/A | 
| 3 | Ahead Software AG | Executable | 6a5f423afee67693 5cb19d7ecac19674 d66b6359  | 
                                                cef72362056c45cc 99ef4d2ae316a4d3  | 
                                                Virus.Win32. Ramnit.A  | 
                                                No | 1, 2, 0, 11  | 
                                                1, 2, 0, 11  | 
                                                  185.215.53.132/32 | 
                                                N/A | 
| 4 | Ahead Software AG | Executable | b9e3cc54e9def445 17c170349a24a5b7 141678b3  | 
                                                bdcee58704a36c57 6df2df251785acee  | 
                                                Virus.Win32. Qvod.~Gen  | 
                                                No | 1, 2, 0, 65  | 
                                                1, 2, 0, 65  | 
                                                  China | 
                                                N/A | 
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed  | 
											File Version  | 
											Product Version  | 
											Submitted From  | 
										
|---|---|---|---|---|---|---|---|---|
| 1 | Ahead Software AG | Executable | 24ce97ea376044d4 da4e8c2f67ad22c9 38ab6a77  | 
                                                fb9f5d7015552b88 dc0eb7f71627cf9a  | 
                                                No | 1, 2, 0, 33  | 
                                                1, 2, 0, 33  | 
                                                  United States | 
                                            
| 2 | Nero AG | Executable | 691c68a8c62d0760 0da0b10e0966a6d7 fa967517  | 
                                                0d45fdc14f2c3b61 7d25f94a3e617deb  | 
                                                No | 2, 0, 6, 1 | 2, 0, 6, 1 |   Internal Submission | 
                                            
| 3 | Ahead Software AG | Executable | 4b14d4273d466610 a77e3abde6d3f195 4d263d52  | 
                                                d73b7e798f6657e7 380dfefe9a2e6518  | 
                                                No | 1, 2, 0, 53  | 
                                                1, 2, 0, 53  | 
                                                  United States | 
                                            
| 4 | Ahead Software AG | Executable | ca6a981c332f7f2b 9be898384330001f 3e52e08c  | 
                                                d064ef4643091702 584a5843e21909e1  | 
                                                No | 1, 2, 0, 18  | 
                                                1, 2, 0, 18  | 
                                                  Latvia | 
                                            
		
	
	
 Vietnam
 Italy
 185.215.53.132/32
 China
 Turkey
 Russian Federation
 Brazil
 Poland
 Kuwait
 Taiwan
 Spain
 India
 Europe
 Venezuela
 Ukraine
 Indonesia
 Philippines
 Syrian Arab Republic
 United Kingdom
 Korea, Republic of
 United States
 Latvia
 Germany
 Portugal
 France
 Netherlands
 Sweden
 Canada
 Pakistan
		