How to Remove “svchost.exe”

What is Svchost.exe?

The svchost.exe is an executable file of Microsoft Windows and is tagged as a Generic Host Process for Win32 Services. This is an important Windows file and it is used to load the required DLL files that are used with Microsoft Windows and Windows programs that run on your computer. Some Malware often uses a process by the name “svchost.exe” to mimic the windows process.

The orginal file is located only in c:\windows\system32 or c:\winnt\system32 depending on versions of Windows OS. If the file that is located in any other location, then we can conclude that the system is infected with malware.

svchost.exe provides a service which is used by Windows Defender. There are multiple instances provided by svchost.exe which are used for many operations. One instance may provide single operation and other instance provide several service to windows.To know the service which are currently running. Go to Task Manager and click Processes tab. Click Show all process and Right-click an instance of svchost.exe, and then click Go to Service(s). The services associated with the process are highlighted on the Services tab.

Affected OS/Platform: Windows

How to find System is affected by Svchost.exe malware

Step 1: Open the Task Manager with a CTRL+ALT+DEL key combination

Step 2: Right click on the svchost.exe and Select Open File Location The Open File Location will be showing you the path where the file is actually located c:\windows\system32 or c:\winnt\system32.

If it gets open in some other folder or file location, then it is sure that the system is infected with svchost.exe malware.

How to remove the svchost.exe file from system using Comodo Antivirus

Step 1: Download the Award-Winning Comodo Free Antivirus

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply

Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.

Step 4: Once the Installation is Finished, restart your PC.

Step 5: Comodo Internet Security starts antivirus bases update. It takes sometime to get updated.

Step 6: After the update, a Quick scan is executed.

Step 7: If threats are found upon completion of scanning, you will be prompted with an alert screen.

Step 8: It will clean all malware including svchost.exe.

25

Malware Entries

First Seen: 05 February 2009 at 4:03 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 http://www.3lsoft.com Executable d8bacaddc131b70e
d3635217911b2d44
338c511c
2b381e96f59c9b17
403dc12943ea83de
Backdoor.Win
32.Zegost.HA
No 1.00 1.00 China N/A
2 N/A Executable 16bb05586b55fb6e
b42d7e98ea409e7e
a7d451db
720a762d95586b96
ebe23c3dc1e19dc7
TrojWare.MSI
L.Spy.Agent.
CP
No N/A N/A Korea, Republic of N/A
3 N/A Executable 549ebccd141f0dd4
bf104712014be481
57f8c3fa
4f9533621ee88646
e2e76d230f5a9733
TrojWare.Win
32.TrojanDro
pper.Sysn.CH
No N/A N/A China N/A
4 N/A Executable 4880a79b9b58dbdc
ca350f064911ac99
cd53aa55
a2117dec531b682b
4bf8c0694804cbb9
Unclassified
Malware
No 1, 0, 0, 1 1, 0, 0, 1 China N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
32

Safe Entries

First Seen: 03 June 2008 at 5:30 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 Microsoft Corporation Executable 086fc8c82ba9e1f3
f764e15ffbe402a6
529ef323
c09ccfe81dec9b16
2533d7184d705682
No 5.2.3790.3
959
(srv03_sp2
_rtm.07021
6-1710)
5.2.3790.3
959
United States
2 N/A Executable c610179d1bf2e56c
58510f8e9aa452dc
5531eb9d
6e90ebf86ab0373f
7b76f1377f8ed2f3
No N/A N/A United States
3 Microsoft Corporation Executable 619652b42afe5fb0
e3719d7aeda7a549
4ab193e8
c78655bc80301d76
ed4fef1c1ea40a7d
No 6.1.7600.1
6385
(win7_rtm.
090713-125
5)
6.1.7600.1
6385
United States
4 Microsoft Corporation Executable 82379592eca11173
86e97f7a0500b3f3
4204d92e
e948a9079d0e6350
be92d4d3e0077f81
No 5.1.2600.5
512
(xpsp.0804
13-2111)
5.1.2600.5
512
United States
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security

Slow or Infected PC?

Your search for a way to clean your PC of viruses once and for all has Ended. Our Security experts will fix your PC problems. Let's get started right now!

Get GeekBuddy GeekBuddy