How to Remove “resgen.exe”

What is resgen.exe?

Originally developed by  Microsoft Corporation, resgen.exe is a legitimate file process that is associated with Microsoft .NET Framework. It is an important component of Microsoft .NET Framework and is located in C:\Windows\System32 by default.
resgen.exe virus is created when malware authors write virus files and name them after resgen.exe with an aim to spread virus on the internet.

Affected Platform: Windows OS

How to check if your computer is infected with resgen.exe malware?

If your system is affected by resgen.exe malware, you will notice one or the several below symptoms:

  • resgen.exe occupies an unusually large CPU memory
  • Erratic internet connection
  • Your browser is bombarded with annoying popup ads
  • Computer screen freezes
  • PC's processing speed suffers
  • You are redirected to unknown websites

To pinpoint the virus file location, take the following steps:

Step 1: Press CTRL+ALT+DEL keys at once to open Task Manager.

Step 2: If you notice the file located outside C:\Windows\System32, you should run an antivirus scan to get rid of the malware.

How to remove resgen.exe malware from system using Comodo Cleaning Essentials?

You can either choose to remove resgen.exe and other malwares using Comodo Antivirus, or Comodo Cleaning Essentials (CCE) – both of which are absolutely free to download! CCE is a set of computer security tools designed to help you identify and remove malwares and unsafe processes from an infected computer.

To remove malwares using CCE, take the following steps:

1. Check the system requirements and download the feature-rich CCE suite for free.

2. After installation, choose the type of scan you want to perform. CCE offers 3 scan options to get rid of malwares from a PC:

  • Smart Scan: Does a scan on critical areas of your system.
  • Full Scan: Does a complete scan of your system.
  • Custom Scan: Does a scan only on selected items.

The process to initiate the above mentioned scans are self-explanatory and thus, easy-to-use. 
Additionally, it's recommended that you approve of any updates that the CCE will prompt you about to ensure it does a better job of identifying all the latest threats.

3. Click 'Next' to view the results.
Regardless of the type of scan you choose, the results will sometimes show false positive (flagging files that are actually safe), which has to be ignored. Only select the files you want to get rid of.

4. Click 'Apply' to apply the selected operations to the threats. The selected operations will be applied.

1

Malware Entries

First Seen: 09 July 2012 at 12:30 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable aad0ee529a21e520
208e9d5c0b158603
f5b05218
a38b96a62df352cb
53047587079951c8
Virus.Win32.
Sality.gen
No 1.1.4322.5
73
1.1.4322.5
73
Brazil N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
30

Safe Entries

First Seen: 04 June 2008 at 3:25 am
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 MONO development team Executable e5fc8a67b7d1bee4
0c3f672b0aa94661
10f6d32c
445c2b6d4e118f32
8ec53875e3e8fac4
No 2.0.50727.
1433
2.0.50727.
1433
10.224.1.116/32
2 Microsoft Corporation Executable 91670367087fa5ba
f2f89f705f08a8b0
ecb42fe9
e6106f5305f61f69
f63d15286f0ee129
Yes 4.0.30319.
1
(RTMRel.03
0319-0100)
4.0.30319.
1
United States
3 Microsoft Corporation Executable 91670367087fa5ba
f2f89f705f08a8b0
ecb42fe9
e6106f5305f61f69
f63d15286f0ee129
Yes 4.0.30319.
1
(RTMRel.03
0319-0100)
4.0.30319.
1
10.224.1.59/32
4 Microsoft Corporation Executable fa06186bf61905f0
a69e36735add612d
6937c0b0
c5667da210a5a0e2
a662c8f6f0ce8973
Yes 3.5.21022.
8
(RTM.02102
2-0800)
3.5.21022.
8
10.224.1.116/32
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security