What is wgatray.exe?
wgatray.exe is a legitimate process file popularly known as Windows Genuine Advantage Notification. It is associated with Windows Genuine Advantage application developed by Microsoft Corporation. It is located in C:\Windows\System32 by default. Malware programmers create files with virus scripts and name them after wgatray.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with wgatray.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with wgatray.exe malware:
- Internet connection fluctuates
- wgatray.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible wgatray.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Windows\System32, then you should run an antivirus scan to get rid of the malware.
How to remove wgatray.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the wgatray.exe virus from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 7aedc506aec89f72 9bcf0e63a69e21d3 20888819 |
b6df8f0b8ab0be7d 6a3d73e1f65d24f0 |
Virus.Win32. Sality.gen |
No | 1.7.0069.2 | 1.7.0069.2 | Brazil | N/A |
2 | Microsoft Corporation | Executable | a51fb972eb7a2bf2 6be7fd321a6f28da baa171a6 |
1f324a232088080d be41af9ad7ac07e2 |
Virus.Win32. Virut.CE |
No | 1.9.0040.0 | 1.9.0040.0 | Egypt | N/A |
3 | Microsoft Corporation | Executable | a6aeb1fb2bb03d09 2406b0e6e8d0b4f0 e087949b |
e5be7e2262318333 6c435bc3dc5b0b20 |
Virus.Win32. Virut.CE |
No | 1.9.0040.0 | 1.9.0040.0 | Egypt | N/A |
4 | Microsoft Corporation | Executable | 73a963714d2947c7 fe730d226f3900fc ca4dd1d6 |
69b785e1fe99db8f fa40ef45d9f51d9f |
Virus.Win32. Sality.gen |
No | 1.5.0540.0 | 1.5.0540.0 | Italy | N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | N/A | Executable | 090fa86fe45c0254 c843a8890c3dfb1e b7d38675 |
308040bf76be1e28 24c2c06cfd7eb23e |
No | N/A | N/A | Thailand |
2 | Microsoft Corporation | Executable | 62963c60a3eb449a 5a0e8e1296d8cff0 da56aa58 |
7056b597e4195ed3 e60eb297c0e5da63 |
No | 1.7.0018.7 | 1.7.0018.7 | Israel |
3 | Microsoft Corporation | Executable | a0075ff5a9e9c48d bbe4c76d778734d8 8bb82619 |
6c9c7862f53638b9 4d9bcc10f3ef1878 |
Yes | 1.7.0018.7 | 1.7.0018.7 | Internal Submission |
4 | Microsoft Corporation | Executable | 8e2f4a156000ae4b 7b4db993da49ad70 f69ca664 |
47adc2f697f0ba4b f3362878bb2eff7b |
No | 1.8.0031.9 | 1.8.0031.9 | Netherlands |