Originally developed by Microsoft Corporation, reg.exe and also this process known as Registry Console Tool and it is a legitimate file that is associated with Windows Operating System. It is an important component of Microsoft Narrator application and is located in C:\Windows\System32 by default.
reg.exe virus is created when malware authors write virus files and name them after reg.exe with an aim to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with reg.exe malware?
If your system is affected by reg.exe malware, you will notice one or the several below symptoms:
1. reg.exe occupies an unusually large CPU memory
2. Erratic internet connection
3. Your browser is bombarded with annoying popup ads
4. Computer screen freezes
5. PC's processing speed suffers
6. You are redirected to unknown websites
To pinpoint the virus file location, take the following steps:
Step 1: Press CTRL+ALT+DEL keys at once to open Task Manager.
Step 2: If you notice the file located outside C:\Windows\System32, you should run an antivirus scan to get rid of the malware.
How to remove reg.exe malware from system using Comodo Cleaning Essentials?
You can either choose to remove reg.exe and other malwares using Comodo Antivirus, or Comodo Cleaning Essentials (CCE) – both of which are absolutely free to download! CCE is a set of computer security tools designed to help you identify and remove malwares and unsafe processes from an infected computer.
To remove malwares using CCE, take the following steps:
1. Check the system requirements and download the feature-rich CCE suite for free.
2. After installation, choose the type of scan you want to perform. CCE offers 3 scan options to get rid of malwares from a PC:
- Smart Scan: Does a scan on critical areas of your system.
- Full Scan: Does a complete scan of your system.
- Custom Scan: Does a scan only on selected items.
The process to initiate the above mentioned scans are self-explanatory and thus, easy-to-use.
Additionally, it's recommended that you approve of any updates that the CCE will prompt you about to make sure it does a better job of identifying all the latest threats.
3. Click 'Next' to view the results.
Regardless of the type of scan you choose, the results will sometimes show false positive (flagging files that are actually safe), which has to be ignored. Only select the files you want to get rid of.
4. Click 'Apply' to apply the selected operations to the threats. The selected operations will be applied.
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | N/A | Executable | 8d30a5bafb1cd3a9 2c99851f587eabe1 e2098057 |
75911932392a9df4 12432a9d1dcddf7d |
Virus.Win32. Sality.gen |
No | N/A | N/A | 197.32.231.81/32 | N/A |
2 | Code Systems Corporation | Executable | 7804a3fc795028b1 916f378e5a2a187d 0fcf49e9 |
cc8d8c1031bea1ec a2d35e73f6e5dd71 |
MalCrypt.Ind us! |
No | 22.8.24 | 22.8.24 | Germany | N/A |
3 | N/A | Executable | 45c82aac8fd7cd3d 27ee30854d6a5a0a 0d1cf1a4 |
c94b860b3a7f7d75 640c1ffa7b2b6206 |
Virus.Win32. Virut.CE |
No | N/A | N/A | 197.39.137.36/32 | N/A |
4 | Microsoft Corporation | Executable | 83abb4fc43138bb4 3b7ab8d0d0f848e1 6ec9fe9f |
53e28d3b876ae466 c6ce745728565ee1 |
Virus.Win32. Virut.CE |
No | 6.1.7600.1 6385 (win7_rtm. 090713-125 5) |
6.1.7600.1 6385 |
156.217.74.238/32 | N/A |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | f24d851fe8024ce9 804da6b540c588bc 38a5bfaf |
cdd462e86ec0f20d e2a1d781928b1b0c |
No | 10.0.19041 .1 (WinBuild. 160101.080 0) |
10.0.19041 .1 |
United States |
2 | N/A | Executable | 92cef05d95ab96d6 e24ac976cb465aae 21f113d6 |
7e628af84a67367f 38aab529e91723a5 |
No | N/A | N/A | United States |
3 | Microsoft Corporation | Executable | a0b44597d74cf990 15a71c648cb925db 02b1c75c |
84f8bed63ddd5a4b 08831e5a5de51098 |
No | 5.1.2600.3 300 (xpsp.0801 25-2028) |
5.1.2600.3 300 |
United States |
4 | N/A | Executable | 2fa0d6403cfdb165 4f6522a627633f2d 50ee1211 |
52804f3fedc3b307 768e3fe8a2036056 |
Yes | N/A | N/A | United States |
- 4 items per page
- 8 items per page
- 16 items per page
- 32 items per page