How to Remove “subst.exe”

What is subst.exe?

subst.exe is a legitimate file process developed by Microsoft Corporation. This process is known as Subst Utility and it belongs to Windows Operating System. You can locate the file in C:\Program Files. The virus is created by malware authors and is named after subst.exe file.

Affected Platform: Windows OS

How to check if your computer is infected with subst.exe malware?

Keep an eye for the following symptoms to check if your PC is infected with subst.exe malware:

  • Unstable internet connection
  • Browser redirects to unwanted websites
  • PC performance slows down
  • Browser is bombarded with hordes of popup ads
  • System screen freezes repeatedly

If you find any of  the above mentioned symptoms, take the following steps to be sure about the malware infection:

1) Press CTRL+ALT+DEL keys to open Task Manager.

2) Go to the process tab and right-click on the subst.exe file and open its location.

If the file is located outside C:\Program Files, then you should take measures to get rid of the malware.

How to remove subst.exe malware from system with Comodo Cleaning Essentials?

Comodo Cleaning Essentials (CCE) incorporates antivirus software with unique features like auto-sandboxing to identify and obstruct every suspicious process running on an endpoint with a single click. To remove subst.exe malware using CCE, follow the steps mentioned below:

Step 1: Download the CCE suite.

Step 2: To start the application, double-click on the CCE.exe file.

Step 3: It then probes the antivirus to initiate a full system scan to identify and remove any existing malicious files.

Step 4: If threats are found during the scanning, you will be prompted with an alert screen.

Step 5: Comodo Cleaning Essentials will remove subst.exe  malware from your computer including all other malwares!

26

Malware Entries

Safe Entries
First Seen: 27 November 2011 at 12:07 am
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable b603203b7f6a8821
01928ae29612ef90
edcdb6e3
842c52408935fb56
6aabfb28f9eddffc
Virus.Win32.
Sality.gen
No 5.1.2600.0
(xpclient.
010817-114
8)
5.1.2600.0 Romania N/A
2 Microsoft Corporation Executable 9ca7354f6d4ed15f
e58b78a42a64c41b
ee7b8393
2aaabc739e0e5212
79708ba90fb1a80c
Virus.Win32.
Sality.gen
No 5.1.2600.0
(xpclient.
010817-114
8)
5.1.2600.0 Brazil N/A
3 Microsoft Corporation Executable 78ed94bb8715a257
568fc5935167381e
217cb206
2b5a815b4c323075
7c5e6d19d2afcdfa
Virus.Win32.
Virut.CE
No 6.1.7600.1
6385
(win7_rtm.
090713-125
5)
6.1.7600.1
6385
Australia N/A
4 Microsoft Corporation Executable cc08bc45cac6b070
c13f336a8ba82a2d
5f5cade3
a79c9bc80b6c7b32
0b6da93794d54bb6
Virus.Win32.
Virut.CE
No 5.1.2600.0
(xpclient.
010817-114
8)
5.1.2600.0 102.41.88.6/32 N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
12

Safe Entries

Safe Entries
First Seen: 25 June 2008 at 5:21 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 N/A Non-executable 873caf93ce3ba6e4
459d0a0d50e60c45
4637e9a7
6a02ba6a994a91ab
ff2b2f1673460d4d
No N/A N/A United States
2 Microsoft Corporation Executable e729a8fe1b1421b4
2660c7b6c905799d
8cdc9af2
16f1c459c21c0a76
d13d2e6dab81c344
No 5.1.2600.0
(xpclient.
010817-114
8)
5.1.2600.0 Internal Submission
3 ReactOS Development Team Executable d5f63e1766082566
f3b67541f543f7a7
92af33f4
d7ae53e74ef0788f
5bf696cee0b82cf3
No 0.4.8 0.4.8 10.108.51.194/32
4 N/A Executable 836674bc9d18f6c2
75f209b31a4d436c
f870ed4a
0a2405b1fc1ab4a1
92ea7b60b76812e3
No N/A N/A 10.224.1.117/32
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
World's
Only Complete
Antivirus

Award-Winning Security to Protect Your Clients from Cyber Attacks

One Comodo

Comodo Internet Security Pro

Antivirus Protection protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security