How to Remove “wcescomm.exe”

What is wcescomm.exe?

wcescomm.exe is a legitimate process file popularly known as ActiveSync Connection Manager. It is associated with Microsoft ActiveSync developed by Microsoft Corporation. It is located in C:\Program Files by default. Malware programmers create files with virus scripts and name them after wcescomm.exe with an intention to spread virus on the internet.

Affected Platform: Windows OS

How to check if your computer is infected with wcescomm.exe malware?

Keep an eye for the following symptoms to see if your PC is infected with wcescomm.exe malware:

  • Internet connection fluctuates
  • wcescomm.exe takes too much CPU space
  • PC slows down significantly
  • Browser automatically redirects to some irrelevant websites
  • Unsolicited ads and popups starts appearing
  • Screen freezes constantly

Take the following steps to diagnose your PC for possible wcescomm.exe malware attack:

Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.

Step 2: If you notice the file located outside C:\Program Files, then you should run an antivirus scan to get rid of the malware.

How to remove waol.exe malware from system using Comodo Antivirus?

Step 1: Download the award-winning Free Antivirus.

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.

Step 3: After network detection is complete, press “Close” button for a scan window.

Step 4: Restart your PC.

Step 5: It will take some time for the Comodo Internet Security to update the antivirus.

Step 6: Proceed with a quick scan that automatically begins after the update.

Step 7: If threats are found during the scanning, you will be prompted with an alert screen.

Step 8: Comodo Antivirus will remove the waol.exe virus from your computer including all other malwares!

 

21

Malware Entries

First Seen: 23 September 2008 at 7:56 am
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable db6b6a67aa1686b8
aa0c19459e51b2ec
fcd6e116
a13e0c37da0950ba
2bb8f2abb78fcd5d
Virus.Win32.
Sality.gen
No 4.5.5096.0 4.5.5096 Russian Federation N/A
2 Microsoft Corporation Executable 9486ee50497cd7fa
067b05ceb1017dad
61d71dca
803b0060a34b5c76
09b5ea406460de68
Virus.Win32.
Sality.gen
No 4.5.5096.0 4.5.5096 Romania N/A
3 Microsoft Corporation Executable 87c30b49e4742f4f
941af882903a83a3
4d398ffd
bfaa904fdc86f497
4f4e03028d04e6e2
Virus.Win32.
Sality.gen
No 4.5.5096.0 4.5.5096 128.72.156.225/32 N/A
4 Microsoft Corporation Executable 65c4c76dcfed9b1f
68a926beef3c2215
0da53311
0e0f6eb757d5d91d
bef82175190d63db
Virus.Win32.
Sality.gen
No 3.8.0.5004 3.8.5004 Poland N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
45

Safe Entries

First Seen: 03 June 2008 at 8:57 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 Microsoft Corporation Executable d3efd642d2471079
8990da68827444aa
60f28eac
01b53a042f6a7a9d
8a8e463383a90728
No 3.7.1.3244 3.7.3244 Taiwan
2 Microsoft Corporation Executable 50c19999c5212ffe
1a7177a5bfc844fa
bf84996c
N/A No 3.7.0.3083 3.7.3083 Japan
3 Microsoft Corporation Executable b642bfd9a72d9c52
a56266fad66d90b3
9ad33d49
0d667f8b21d7975c
663f35d7af3c9bdb
No 4.1.4841.0 4.1.4841 Internal Submission
4 Microsoft Corporation Executable d3efd642d2471079
8990da68827444aa
60f28eac
01b53a042f6a7a9d
8a8e463383a90728
No 3.7.1.3244 3.7.3244 United States
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Antivirus Protection protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security