How to Remove “svchost.exe”

What is Svchost.exe?

The svchost.exe is an executable file of Microsoft Windows and is tagged as a Generic Host Process for Win32 Services. This is an important Windows file and it is used to load the required DLL files that are used with Microsoft Windows and Windows programs that run on your computer. Some Malware often uses a process by the name “svchost.exe” to mimic the windows process.

The orginal file is located only in c:\windows\system32 or c:\winnt\system32 depending on versions of Windows OS. If the file that is located in any other location, then we can conclude that the system is infected with malware.

svchost.exe provides a service which is used by Windows Defender. There are multiple instances provided by svchost.exe which are used for many operations. One instance may provide single operation and other instance provide several service to windows.To know the service which are currently running. Go to Task Manager and click Processes tab. Click Show all process and Right-click an instance of svchost.exe, and then click Go to Service(s). The services associated with the process are highlighted on the Services tab.

Affected OS/Platform: Windows

How to find System is affected by Svchost.exe malware

Step 1: Open the Task Manager with a CTRL+ALT+DEL key combination

Step 2: Right click on the svchost.exe and Select Open File Location The Open File Location will be showing you the path where the file is actually located c:\windows\system32 or c:\winnt\system32.

If it gets open in some other folder or file location, then it is sure that the system is infected with svchost.exe malware.

How to remove the svchost.exe file from system?

  1. Download our award-winning Comodo Antivirus software
  2. Installation configuration frames will be displayed. Select the configuration you would like to apply
  3. Select Customize Configuration option and arrange installers, configuration, and file location.
  4. Once the Installation is Finished, restart your PC.
  5. Comodo Internet Security starts antivirus bases update. It takes sometime to get updated.
  6. After the update, a Quick scan is executed.
  7. If threats are found upon completion of scanning, you will be prompted with an alert screen.
  8. It will clean all malware including svchost.exe.
27

Malware Entries

First Seen: 01 April 2008 at 1:54 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 N/A Executable d6d14dffd68b4e6e
04c0baddec1e9e78
0c28bd38
aad236931b6cf516
3f159444da82731e
Unclassified
Malware
No N/A N/A United States N/A
2 mIRC Co. Ltd. Executable 33cdfe6f7fa6b321
f9a51cc051c32ba9
24164b10
b766003f431cad18
6bd115f5761592d1
not-a-virus.
Client-IRC.W
in32.mIRC.60
3
No 6.03 6.03 China N/A
3 Microsoft Corporation Executable 48c4a4e44b1f52ac
110f363d50e0073f
d8b326d0
5c232b0688ae9c56
489234be1febbc56
Win32.Server
Proxy.CCProx
y.~BAAB
No 5.1.2600.2
180
(xpsp_sp2_
rtm.040803
-2158)
5.1.2600.2
180
China N/A
4 Wj38Gnb4ZB Executable ef624c834f7cffc7
62d2f20d47daf0a0
5e0cd69e
ca41d4599486b35e
804fb51f67dd92e8
Unclassified
Malware
No 2.5.3.0 2.5.3.0 United States N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
8

Safe Entries

First Seen: 04 June 2008 at 6:11 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 N/A Executable 217ade4715bd3cb8
c8906798a3d1446d
a9fc4d69
98a2e1e090eadde8
b6d22b5b16678354
Yes 6.1.1.0 6.1.1.0 United Kingdom
2 N/A Executable 291faf6071a9d830
7267aa1b47e357c7
69a3b8c1
97976f47c732b7d5
1b277da9c195f914
No N/A N/A United States
3 Microsoft Corporation Executable 18930fd524b3fdfa
ca1c0e6a81524f5a
282b3009
e31fb4f13f5949b8
68c117714bb44375
No 5.1.2600.5
512
(xpsp.0804
13-2111)
5.1.2600.5
512
United States
4 N/A Executable 866ec0697687a3ba
9323c4cdb53daa5e
55ac687a
92cc8268e782ec7f
35eb127b99e8e095
No N/A N/A United States
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security