What is wab.exe?
wab.exe is a legitimate process file popularly known as Windows Address Book. It is associated with Windows Operating System developed by Microsoft Corporation. It is located in C:\Program Files by default.
Malware programmers create files with virus scripts and name them after wab.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with wab.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with wab.exe malware:
- Internet connection fluctuates
- wab.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible wab.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, then you should run an antivirus scan to get rid of the malware.
How to remove wab.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the wab.exe virus from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | f41b24556596d3d3 79e402d5ef9c9ed0 e1b9a02d |
9251ca6796cc8d57 13c1e3635d850236 |
Virus.Win32. Sality.gen |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
102.96.108.145/32 |
N/A |
| 2 | Microsoft Corporation | Executable | 25ed015f591d3b00 0deca1ff2fe0092f f3c81ec5 |
cbea180ea260b70f b39ec260f941d200 |
Virus.Win32. Sality.gen |
No | 5.00.2314. 1300 |
5.00.2314. 1300 |
Russian Federation |
N/A |
| 3 | Microsoft Corporation | Executable | 52e00a57abeaddee bbf7666159e17bd8 9894fd3f |
36a894f42f459bbb fd19d9cb3f566e2c |
Virus.Win32. Sality.gen |
No | 5.00.2314. 1300 |
5.00.2314. 1300 |
Russian Federation |
N/A |
| 4 | Windows | Executable | 0577da0a3233529a 6033a9984bde243d c95893df |
1d285e15495844cc 048c7d5fdce5e108 |
TrojWare.Win 32.Fareit.RG Y |
No | 1.09.0005 | 1.09.0005 | 197.211.58.35/32 |
N/A |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | cebf338e946e24cd 28c0d45eb04b6919 7a3d8429 |
dbb30349963dbf34 b6a50e6a2c3f3644 |
No | 10.0.19041 .1 (WinBuild. 160101.080 0) |
10.0.19041 .1 |
104.238.128.144/32 |
| 2 | N/A | Non-executable | e7f202d70ececbb4 0ebf57bd581f6abc c1607f69 |
c11a937ad269e84c 3ec34110371079e9 |
No | N/A | N/A | United States |
| 3 | N/A | Non-executable | 94ee8a2f063398e2 224963c194d68071 df7128c5 |
d054def3b7ba6a28 03d6ab81807d8331 |
No | N/A | N/A | United States |
| 4 | Microsoft Corporation | Executable | 9f0ca31768e10201 569855bb1a8e28e4 52c5102a |
d8268cb4675c871a ca1fc254713b53ff |
No | 5.00.2314. 1300 |
5.00.2314. 1300 |
United States |

102.96.108.145/32
Russian Federation
United States
