What is Backup.exe?
Backup.exe is a legitimate process file popularly known as Microsoft Backup System. It is associated with software Microsoft Backup System developed by Microsoft. It is located in C:\Program Files by default.
Malware programmers write virus files with malicious scripts and save them as Backup.exe with an intention to spread virus on the internet.
Affected Platforms: Windows OS
How to determine if your computer is infected with Backup.exe malware?
Look out for the these symptoms to check if your PC is infected with Backup.exe malware:
- Unstable internet connection
- Backup.exe occupies extra CPU space
- PC processing speed slows down
- Browser often redirects to irrelevant websites
- Browser is bombarded with hordes of popup ads
- Computer screen freezes repeatedly
Take the following steps to diagnose your PC for possible Backup.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files perform an antivirus scan to get rid of the malware.
How to remove Backup.exe malware from system using Comodo Antivirus?
Step 1: Download our award-winning Comodo Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC after the installation gets over
Step 5: Wait for Comodo Internet Security to update the antivirus.
Step 6: Proceed with the quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be notified through an alert screen.
Step 8: Comodo Antivirus will remove Backup.exe malware from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | SBC | Executable | ed7c637ac8af6df5 2ab663b63472dd3a 739ecddb |
d1dc2b5b6c101ac2 fe295b3e958b7b56 |
TrojWare.Win 32.Trojan.Vi lsel.loy0 |
No | 1.00.0057 | 1.00.0057 | United States |
N/A |
| 2 | SBC | Executable | 5dad9e0135fbeefc ccf5cdf0ad6e4353 61879efd |
03ed2468037cf217 395a2ed22583759f |
TrojWare.Win 32.Trojan.Vi lsel.loy0 |
No | 1.00.0057 | 1.00.0057 | United States |
N/A |
| 3 | SBC | Executable | 1c56d71d31259309 a27abca9ae787145 7a0c7898 |
fe5263ade894b836 6c3473f196181860 |
TrojWare.Win 32.Trojan.Vi lsel.loy0 |
No | 1.00.0057 | 1.00.0057 | United States |
N/A |
| 4 | SBC | Executable | b67fad8edd819c4e f1c90768cd4226a7 90ef4bef |
ac3c2146dbad115e 24ef19f698422c80 |
TrojWare.Win 32.Trojan.Vi lsel.loy0 |
No | 1.00.0057 | 1.00.0057 | United States |
N/A |
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | Medison | Executable | e75bd43850891a88 0eb8cc30f9179634 fbfe845b |
1b5f0ea4072db387 4254b9812f845d2f |
No | 1.3.3.0 | 1.0.0.0 | United States |
| 2 | Medison | Executable | a76feec3e691af2c 399e435138dc6865 5449f88e |
f6df50cdf7e42571 c05dce7758a0fcae |
No | 1.3.3.0 | 1.0.0.0 | United States |
| 3 | Igor Pavlov | Executable | cfd7079a9b268d84 b856dc668edbb9ab 9ef35312 |
43141e85e7c36e31 b52b22ab94d5e574 |
No | 19.00 | 19.00 | United States |
| 4 | DCNC Ltd. | Executable | ee656551a43ad850 11b2eeb6975fe63a ad0a6c81 |
f7d4843f97f0056a 7249136768941494 |
Yes | 5.7.29.523 34 |
5.7.29.523 34 |
United States |

United States
