What is wab.exe?
wab.exe is a legitimate process file popularly known as Windows Address Book. It is associated with Windows Operating System developed by Microsoft Corporation. It is located in C:\Program Files by default.
Malware programmers create files with virus scripts and name them after wab.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with wab.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with wab.exe malware:
- Internet connection fluctuates
- wab.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible wab.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, then you should run an antivirus scan to get rid of the malware.
How to remove wab.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the wab.exe virus from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | f41b24556596d3d3 79e402d5ef9c9ed0 e1b9a02d |
9251ca6796cc8d57 13c1e3635d850236 |
Virus.Win32. Sality.gen |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
102.96.108.145/32 |
N/A |
| 2 | Microsoft Corporation | Executable | ec38d7e1a1f48bb7 2e29dc90d7774620 fd77a9dd |
d13f460297b7a795 2e5f46f34e08f090 |
Virus.Win32. Sality.gen |
No | 6.00.2900. 5512 (xpsp.0804 13-2105) |
6.00.2900. 5512 |
Taiwan |
N/A |
| 3 | Microsoft Corporation | Executable | fa96c02d49216b7d bb8360a17d25f237 d4264128 |
3a4da6667b5a334f 5526f1ec745a1bd7 |
Virus.Win32. Parite.gen |
No | 6.1.7601.1 7514 (win7sp1_r tm.101119- 1850) |
6.1.7601.1 7514 |
Kazakhstan |
N/A |
| 4 | Microsoft Corporation | Executable | 1fdc7743db52fde6 43367c4c6eb6364a ce7e02dd |
c7a93d07330f0c48 a14bf1af76790cca |
Virus.Win32. Sality.gen |
No | 6.00.2900. 5512 (xpsp.0804 13-2105) |
6.00.2900. 5512 |
Turkey |
N/A |
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | cebf338e946e24cd 28c0d45eb04b6919 7a3d8429 |
dbb30349963dbf34 b6a50e6a2c3f3644 |
No | 10.0.19041 .1 (WinBuild. 160101.080 0) |
10.0.19041 .1 |
104.238.128.144/32 |
| 2 | N/A | Non-executable | e7f202d70ececbb4 0ebf57bd581f6abc c1607f69 |
c11a937ad269e84c 3ec34110371079e9 |
No | N/A | N/A | United States |
| 3 | N/A | Non-executable | 94ee8a2f063398e2 224963c194d68071 df7128c5 |
d054def3b7ba6a28 03d6ab81807d8331 |
No | N/A | N/A | United States |
| 4 | Microsoft Corporation | Executable | 9f0ca31768e10201 569855bb1a8e28e4 52c5102a |
d8268cb4675c871a ca1fc254713b53ff |
No | 5.00.2314. 1300 |
5.00.2314. 1300 |
United States |

102.96.108.145/32
Taiwan
Kazakhstan
Turkey
United States
China
Russian Federation
Pakistan
Indonesia
Ukraine
