How to Remove “astu.exe”

What is astu.exe?

astu.exe is a legitimate file process. It is developed by Microsoft Corporation. This process is known as ActiveSync TroubleShooting Utility and it belongs to Microsoft ActiveSync. You can locate the file in C:\Program Files. The virus is created by malware authors and is named after astu.exe file.

Affected Platform: Windows OS

How to check if your computer is infected with astu.exe malware?

Keep an eye for the following symptoms to check if your PC is infected with astu.exe malware:

  • Unstable internet connection
  • Browser redirects to unwanted websites
  • PC performance slows down
  • Browser is bombarded with hordes of popup ads
  • System screen freezes repeatedly

If you find any of the above mentioned symptoms, take the following steps to be sure about the malware infection:

  1. Press CTRL+ALT+DEL keys to open Task Manager.
  2. Go to the process tab and right-click on the astu.exe file and open its location.

If the file is located outside C:\Program Files, then you should take measures to get rid of the malware.

How to remove astu.exe malware from system with Comodo Cleaning Essentials?

Comodo Cleaning Essentials (CCE) incorporates antivirus software with unique features like auto-sandboxing to identify and obstruct every suspicious process running on an endpoint with a single click. To remove astu.exe malware using CCE, follow the steps mentioned below:

Step 1: Download the CCE suite.

Step 2: To start the application, double-click on the CCE.exe file.

Step 3: It then probes the antivirus to initiate a full system scan to identify and remove any existing malicious files.

Step 4: If threats are found during the scanning, you will be prompted with an alert screen.

Step 5: Comodo Cleaning Essentials will remove astu.exe malware from your computer including all other malwares!

17

Malware Entries

First Seen: 04 July 2009 at 8:14 am
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable 90464dfc47ccc633
c6b25133cb761c5d
188a258d
68a600ff247a2dbc
79c81742170800bd
Virus.Win32.
Sality.gen
No 4.5.5096.0 4.5.5096 Russian Federation N/A
2 Microsoft Corporation Executable 9548799488b0e460
02c37ae3a64bdf0d
2a7562ee
5d338819e1cca9fc
13fd370982b99ca4
Worm.Win32.G
ael.A
No 4.2.4876.0 4.2.4876 Germany N/A
3 Microsoft Corporation Executable 90935f5fd31d641c
7f8c3978d64618ee
730536f0
f7db36664a6b9e38
c1c16d64f6072932
Win32.Jeefo.
A
No 4.5.5096.0 4.5.5096 Poland N/A
4 Microsoft Corporation Executable 80b1a14d43d479c4
2821b999d1542738
239f571a
e7d720a566e22791
e8ca9e833ec44867
Virus.Win32.
Sality.gen
No 4.5.5096.0 4.5.5096 Poland N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
32

Safe Entries

First Seen: 04 June 2008 at 5:21 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 N/A Executable bdb2c5ebb572d9af
f3556c795e525bea
b5195638
a1b592400423db02
3193b5f487b57e68
No N/A N/A United Kingdom
2 Microsoft Corporation Executable 05fdadf909f73c4f
c4fa16292cf0601e
886e0de9
d5e28ca2a7892cc5
b84e5aeaa50c645f
Yes 4.5.5096.0 4.5.5096 10.224.1.60/32
3 Microsoft Corporation Executable 814c6042f7f931d6
3c746682680b7378
5a5a5f34
9c8aeec1c7d99f0b
8545507f8606934d
Yes 4.5.5096.0 4.5.5096 China
4 Microsoft Corporation Executable a17342a9c8a33c16
eca5fdcd2646adfa
37ecf457
506416cd2983cbe3
493690c40bf7a794
Yes 4.5.5096.0 4.5.5096 Poland
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security