What is mobsync.exe?
mobsync.exe is a legitimate file also known by its other name Microsoft Sync Center. It is used for synchronizing offline file features and in Microsoft Windows smartphones as mobile synchronization component of the Internet Explorer browser. It is typically located in c:\windows\system32. Malware programmers write malicious programs and name it after mobsync.exe to spread viruses on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with mobsync.exe malware?
If your computer is below average speed, take the following steps to check if it is infected with mobsync.exe virus:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice that the file is located outside c:\windows\system32, you should run an antivirus scan on your PC to get rid of the malware infection.
How to remove the mobsync.exe file from system using Comodo Antivirus?
Step 1: Download our award-winning Comodo Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the mobsync.exe virus from your computer including all other malwares!
First Seen: 20 October 2011 at 7:25 pm
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | fbf4fc27a5d7a160 6be0d8f1d244efa5 db369213 |
f8d4d5d88df058aa 14614c4216d6406b |
Virus.Win32. Virut.CE |
No | 6.1.7601.1 7514 (win7sp1_r tm.101119- 1850) |
6.1.7601.1 7514 |
Iran, Islamic Republic of |
N/A |
| 2 | Microsoft Corporation | Executable | 0ba5fa8006bf4cef 61361622e9e28de8 0316657a |
30bde72018a41b65 2b92a0ce75e71844 |
Virus.Win32. Virut.Ce |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
Indonesia |
N/A |
| 3 | Microsoft Corporation | Executable | b73660a713377d0a a9695992d9c63fac b0ec8bbf |
84e067a8770cc294 64d760712eec5981 |
Virus.Win32. Virut.CE |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
Iran, Islamic Republic of |
N/A |
| 4 | Microsoft Corporation | Executable | dadc9c44eea66b47 88cb11c035930ff9 cfa65f2b |
046d38d6f89c8d15 fcddb6d22fa03d66 |
Virus.Win32. Virut.CE |
No | 6.1.7601.1 7514 (win7sp1_r tm.101119- 1850) |
6.1.7601.1 7514 |
Indonesia |
N/A |
First Seen: 10 November 2009 at 3:15 pm
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | e7997155d8298a6f 2db8ffe429cf956a a481d7d0 |
ecc6218d89bc5bdf 93ebd26bbfe347bb |
No | 5.00.0809. 1500 |
5.00.0809. 1500 |
United States |
| 2 | Microsoft Corporation | Executable | b1ac852ef6cd6800 73d48364dfd0c79a dc14c30b |
6d6c2fdb1dddad26 8b21d3156838a8d2 |
No | 5.00.2919. 5900 |
5.00.2919. 5900 |
Netherlands |
| 3 | Microsoft Corporation | Executable | 85974e3ac791002e 3dcb28790979643d ed9ef357 |
17248007519fb586 dbbaa1eb90111bde |
No | 5.00.2614. 3500 |
5.00.2614. 3500 |
Japan |
| 4 | Microsoft Corporation | Executable | 205f2f1300c636f4 ced0c32629f81863 7bf4ea1e |
47c4ceb6ae53e86e 3f7c1f72aa25a268 |
No | 5.1.2600.5 512 (xpsp.0804 13-2108) |
5.1.2600.5 512 |
South Africa |
Display 4 items per page
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page

Iran, Islamic Republic of
Indonesia
India
Nepal
Turkmenistan
Tunisia
Egypt
United States
Morocco
Europe
156.211.75.28/32
Russian Federation
Turkey
Italy
Nigeria
Ukraine
China
Poland
Australia
Brazil
Vietnam
Netherlands
Japan
South Africa
