What is mmc.exe?
mmc.exe is a legitimate file, which is also known as Microsoft Management Console Application. It is used for displaying various management plug-ins that are activated from the Control Panel. It is typically located in c:\windows\system32 file path of your computer.
Malware authors write malicious programs and name them after mmc.exe to spread virus through the internet.
Affected Platform: Windows OS
How to check if your computer is infected with mmc.exe malware?
If you notice your PC suffering in speed and performance, take the following steps to check against a possible virus attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside its designated path in c:\windows\system32, you should run an antivirus scan to get ride of the malware.
How to remove the mmc.exe file from system using Comodo Free Antivirus?
Step 1: Download our award-winning Comodo Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Once the Installation is Finished, restart your PC.
Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.
Step 4: Once the Installation is Finished, restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the mmc.exe virus from your computer including all other malwares!
First Seen: 07 October 2011 at 10:28 pm
| No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | Microsoft Corporation | Executable | 5c33ce87eb4b3fd5 713edeb66fa77279 a44c79ed |
a110f1defddcb750 a05fe119499d8e30 |
Virus.Win32. Virut.CE |
No | 5.1.2600.2 180 (xpsp_sp2_ rtm.040803 -2158) |
5.1.2600.2 180 |
Iran, Islamic Republic of |
N/A |
| 2 | Microsoft Corporation | Executable | 5fe8903dcbe7563b 247714169a3039e4 c92372aa |
131231d19ea769fc 1f1be4b4c9fd0e66 |
Virus.Win32. Virut.Ce |
No | 5.2.3790.4 136 (srv03_sp2 _qfe.07082 1-1204) |
5.2.3790.4 136 |
Latvia |
N/A |
| 3 | Microsoft Corporation | Executable | 0e418b6eed2ad4e3 2dd8d29afabe28f8 4e660357 |
65bcfa8dd13692d3 f105232bcd249a79 |
Virus.Win32. Expiro.ew |
No | 5.1.2600.2 180 (xpsp_sp2_ rtm.040803 -2158) |
5.1.2600.2 180 |
United States |
N/A |
| 4 | Microsoft Corporation | Executable | c3b82ef6e453a80a 458ec40d7b390ca1 79686f3a |
eb563dc1bc3fbcd9 44b9e14f50cb4c10 |
Virus.Win32. Virut.CE |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
Indonesia |
N/A |
First Seen: 26 December 2008 at 10:24 pm
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
|---|---|---|---|---|---|---|---|---|
| 1 | ReactOS Development Team | Executable | f745ec61fbe6de3c c404c81b3aa21bed c67f7d86 |
8e76e18958580680 5213b043ca50835e |
No | 0.4.9 | 0.4.9 | 10.108.51.116/32 |
| 2 | N/A | Non-executable | c2bd0eceaa4c0e95 6208f6bb027375b6 6048b329 |
bad7f0fa06f9124c 81d069f2bd4d3e4c |
No | N/A | N/A | United States |
| 3 | Microsoft Corporation | Executable | 41f78cddf83b5c0d 6f645fc3d2ec8fb9 a37c7079 |
80e9e042e6579977 d06cef73619d1464 |
No | 10.0.19041 .1708 (WinBuild. 160101.080 0) |
10.0.19041 .1708 |
United States |
| 4 | Microsoft Corporation | Executable | 4d87b10bcb27d046 b83cf66536d20da0 844a7ece |
15f4de93f71dfe57 a47010d52b9a88fe |
No | 5.00.1713. 1 |
5.00.1713. 1 |
United States |

Iran, Islamic Republic of
Latvia
United States
Indonesia
Pakistan
Romania
Internal Submission
Russian Federation
Trinidad and Tobago
Thailand
India
Cambodia
Mexico
France
Taiwan
Portugal
Egypt
Turkey
Poland
Czech Republic
Vietnam
Japan
