What is wgatray.exe?
wgatray.exe is a legitimate process file popularly known as Windows Genuine Advantage Notification. It is associated with Windows Genuine Advantage application developed by Microsoft Corporation. It is located in C:\Windows\System32 by default. Malware programmers create files with virus scripts and name them after wgatray.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with wgatray.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with wgatray.exe malware:
- Internet connection fluctuates
- wgatray.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible wgatray.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Windows\System32, then you should run an antivirus scan to get rid of the malware.
How to remove wgatray.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the wgatray.exe virus from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name | Digitally Signed | File Version | Product Version | Submitted From | Malware Behavior | 
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | 7aedc506aec89f72 9bcf0e63a69e21d3 20888819 | b6df8f0b8ab0be7d 6a3d73e1f65d24f0 | Virus.Win32. Sality.gen | No | 1.7.0069.2 | 1.7.0069.2 |  Brazil | N/A | 
| 2 | N/A | Executable | 7916c2f402cdc1f7 175015c302d439cc 1a84a759 | 64322c9a64a90a0f 42aeb640528bf544 | Win32.Neshta .A | No | N/A | N/A |  Taiwan | N/A | 
| 3 | Microsoft Corporation | Executable | a51fb972eb7a2bf2 6be7fd321a6f28da baa171a6 | 1f324a232088080d be41af9ad7ac07e2 | Virus.Win32. Virut.CE | No | 1.9.0040.0 | 1.9.0040.0 |  Egypt | N/A | 
| 4 | Microsoft Corporation | Executable | a6aeb1fb2bb03d09 2406b0e6e8d0b4f0 e087949b | e5be7e2262318333 6c435bc3dc5b0b20 | Virus.Win32. Virut.CE | No | 1.9.0040.0 | 1.9.0040.0 |  Egypt | N/A | 
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed | File Version | Product Version | Submitted From | 
|---|---|---|---|---|---|---|---|---|
| 1 | N/A | Executable | 090fa86fe45c0254 c843a8890c3dfb1e b7d38675 | 308040bf76be1e28 24c2c06cfd7eb23e | No | N/A | N/A |  Thailand | 
| 2 | Microsoft Corporation | Executable | 62963c60a3eb449a 5a0e8e1296d8cff0 da56aa58 | 7056b597e4195ed3 e60eb297c0e5da63 | No | 1.7.0018.7 | 1.7.0018.7 |  Israel | 
| 3 | Microsoft Corporation | Executable | a0075ff5a9e9c48d bbe4c76d778734d8 8bb82619 | 6c9c7862f53638b9 4d9bcc10f3ef1878 | Yes | 1.7.0018.7 | 1.7.0018.7 |  Internal Submission | 
| 4 | Microsoft Corporation | Executable | 8e2f4a156000ae4b 7b4db993da49ad70 f69ca664 | 47adc2f697f0ba4b f3362878bb2eff7b | No | 1.8.0031.9 | 1.8.0031.9 |  Netherlands | 
 
		 
	 
	
 Italy
 Italy Russian Federation
 Russian Federation Algeria
 Algeria Poland
 Poland Sweden
 Sweden France
 France Chile
 Chile United States
 United States Turkey
 Turkey Denmark
 Denmark United Kingdom
 United Kingdom India
 India Iran, Islamic Republic of
 Iran, Islamic Republic of Albania
 Albania Spain
 Spain Germany
 Germany Latvia
 Latvia 
		
 
		 
	