What is chglogon.exe?
chglogon.exe is a legitimate file process developed by Microsoft Corporation. This process is known as Change Logon Utility and it belongs to Windows Operating System. You can locate the file in C:\Windows\System32. The virus is created by malware authors and is named after chglogon.exe file.
Affected Platform: Windows OS
How to check if your computer is infected with chglogon.exe malware?
Keep an eye for the following symptoms to check if your PC is infected with chglogon.exe malware:
- Unstable internet connection
- Browser redirects to unwanted websites
- PC performance slows down
- Browser is bombarded with hordes of popup ads
- System screen freezes repeatedly
If you find any of the above mentioned symptoms, take the following steps to be sure about the malware infection:
1) Press CTRL+ALT+DEL keys to open Task Manager.
2) Go to the process tab and right-click on the chglogon.exe file and open its location.
If the file is located outside C:\Windows\System32, then you should take measures to get rid of the malware.
How to remove chglogon.exe malware from system with Comodo Cleaning Essentials?
Comodo Cleaning Essentials (CCE) incorporates antivirus software with unique features like auto-sandboxing to identify and obstruct every suspicious process running on an endpoint with a single click. To remove chglogon.exe malware using CCE, follow the steps mentioned below:
Step 1: Download the CCE suite.
Step 2: To start the application, double-click on the CCE.exe file.
Step 3: It then probes the antivirus to initiate a full system scan to identify and remove any existing malicious files.
Step 4: If threats are found during the scanning, you will be prompted with an alert screen.
Step 5: Comodo Cleaning Essentials will remove chglogon.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | a2b005d7283d1882 a0e71bb19eb4317c 70df84eb |
0c96af6cc9c6441b 12beff30be8fe657 |
Virus.Win32. Virut.Ce |
No | 5.1.2600.0 (xpclient. 010817-114 8) |
5.1.2600.0 | ![]() |
N/A |
2 | N/A | Executable | a12f296ad2d79099 f9008ed16e57518c 348f833c |
7174a35ddc8a7f0d f12a9ddc3996568b |
Virus.Win32. Virut.Ce |
No | N/A | N/A | ![]() |
N/A |
3 | Microsoft Corporation | Executable | bf234f635b8f9656 7fc463279014baa6 480e10c1 |
e622b26b4e64c668 59f05b0dc012c967 |
Virus.Win32. Sality.gen |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
![]() |
N/A |
4 | Microsoft Corporation | Executable | 4944e6094019627d 2ef853b610d07db4 95da165e |
0f5f80899947ecac 735af2b9dbec5d37 |
Virus.Win32. Virut.CE |
No | 6.1.7601.1 7514 (win7sp1_r tm.101119- 1850) |
6.1.7601.1 7514 |
![]() |
N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 1556fdc9ee7e3f8c 8729932e0d5e660d fd69cc53 |
96c637283d92573c 121b34513c267987 |
No | 10.0.19041 .1 (WinBuild. 160101.080 0) |
10.0.19041 .1 |
![]() |
2 | Microsoft Corporation | Executable | 2222d8849a72ea1b 1a171432ac8de2c0 4b9e6b0f |
e4452d0036d6797c c43ac7dde4b2f5f0 |
No | 10.0.22598 .1 (WinBuild. 160101.080 0) |
10.0.22598 .1 |
![]() |
3 | Microsoft Corporation | Executable | 0f2d1bb8a04fbdfb b928425ef99e3441 da398046 |
3d9d7ed35a11a675 860de85cb71d8ab2 |
No | 10.0.21387 .1 (WinBuild. 160101.080 0) |
10.0.21387 .1 |
![]() |
4 | N/A | Executable | d5a463674ce7faf6 b754d1b2cc30191b 4a669e5a |
495d25c8551f585a 6c1967f720008439 |
No | N/A | N/A | ![]() |