What is mage.exe?
mage.exe is a legitimate process file popularly known as Manifest Generation And Editing Tool. It is associated with Microsoft® .NET Framework software, developed by Microsoft Corporation. It is located in C:\Program Files by default. Malware programmers create files with virus scripts and name them after mage.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with mage.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with mage.exe malware:
- Internet connection fluctuates
- mage.exe takes too much CPU space
- PC slows down significantly
- Browser automatically redirects to some irrelevant websites
- Unsolicited ads and popups starts appearing
- Screen freezes constantly
Take the following steps to diagnose your PC for possible mage.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Program Files, then you should run an antivirus scan to get rid of the malware.
How to remove mage.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Comodo Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove mage.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | eeab306f9eab726b 6b93312a11d2c869 42abca67 |
876f1b74f93f2b36 6f1a1e2bf1ec161f |
TrojWare.Win 32.TrojanDro pper.Sdbot.m su_70 |
No | 6.00.2900. 5512 (xpsp.0804 13-2105) |
6.00.2900. 5512 |
Internal Submission | N/A |
2 | N/A | Executable | 1594e70e8125d878 ef64ac7557b96d94 5ee40065 |
b659cd2e4e3c18e0 78e562ede11bdfc7 |
Packed.Win32 .Klone.~KND |
No | N/A | N/A | Internal Submission | N/A |
3 | Microsoft Corporation | Executable | e8366b56757d440c ad60b8aec14019f1 a34dbbc1 |
3be63cf0a962f985 342bcfa47810aacc |
Virus.Win32. Alman.A |
No | 2.0.50727. 42 (RTM.05072 7-4200) |
2.0.50727. 42 |
China | N/A |
4 | N/A | Executable | 62c407feb96165d3 2476ca54c8b5b873 50d6bbfc |
eb5fafc4fcbce96c 4c2074ceb76ebd4d |
TrojWare.MSI L.TrojanDrop per.Agent.~A jv |
No | 0.0.0.0 | 0.0.0.0 | Internal Submission | N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 2696660826e3d962 0ff72dfb1c20f26b 28dd6d90 |
1a29cb71b1213dbf fe0ba6fe9a61ecc4 |
Yes | 4.6.1055.0 built by: NETFXREL2 |
4.6.1055.0 | United States |
2 | Microsoft Corporation | Executable | de0d8c6c942f0a8e 0cb9de7678e8c045 02cb69f3 |
8303bafb11e4a034 cc9aa371b91c6892 |
Yes | 3.5.30729. 1 (SP.030729 -0100) |
3.5.30729. 1 |
Internal Submission |
3 | Microsoft Corporation | Executable | 2696660826e3d962 0ff72dfb1c20f26b 28dd6d90 |
1a29cb71b1213dbf fe0ba6fe9a61ecc4 |
Yes | 4.6.1055.0 built by: NETFXREL2 |
4.6.1055.0 | 10.108.22.229/32 |
4 | Microsoft Corporation | Executable | c93a2f08d7ffbacb ec2ffbd0093bd5df 0cc0c293 |
8db003edd913f59f 99e180774c681991 |
Yes | 3.5.30729. 1 (SP.030729 -0100) |
3.5.30729. 1 |
United States |