What is savedump.exe?
savedump.exe is a legitimate file process developed by Microsoft Corporation. This process is known as Windows NT Save Dump Utility and it belongs to Windows Operating System. You can locate the file in C:\Windows\System32.
The virus is created by malware authors and is named after savedump.exe file.
Affected Platform: Windows OS
How to check if your computer is infected with savedump.exe malware?
Keep an eye for the following symptoms to check if your PC is infected with savedump.exe malware:
- Unstable internet connection
- Browser redirects to unwanted websites
- PC performance slows down
- Browser is bombarded with hordes of popup ads
- System screen freezes repeatedly
If you find any of the above mentioned symptoms, take the following steps to be sure about the malware infection:
- Press CTRL+ALT+DEL keys to open Task Manager.
- Go to the process tab and right-click on the savedump.exe file and open its location.
If the file is located outside C:\Windows\System32, then you should take measures to get rid of the malware.
How to remove savedump.exe malware from system with Comodo Cleaning Essentials?
Comodo Cleaning Essentials (CCE) incorporates antivirus software with unique features like auto-sandboxing to identify and obstruct every suspicious process running on an endpoint with a single click. To remove savedump.exe malware using CCE, follow the steps mentioned below:
Step 1: Download the CCE suite.
Step 2: To start the application, double-click on the CCE.exe file.
Step 3: It then probes the antivirus to initiate a full system scan to identify and remove any existing malicious files.
Step 4: If threats are found during the scanning, you will be prompted with an alert screen.
Step 5: Comodo Cleaning Essentials will remove savedump.exe malware from your computer including all other malwares!
No. | Company | File Type | SHA1 | MD5 | Malware Name |
Digitally Signed |
File Version |
Product Version |
Submitted From |
Malware Behavior |
---|---|---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 507d29e2ed8f59be adc7331538d93b4e d1d1df10 |
92c3730353cb29b2 e284a0316f9718ad |
Virus.Win32. Virut.Ce |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
![]() |
N/A |
2 | Microsoft Corporation | Executable | c03a51c1cf948fc4 3329d5a090c9855d e039d307 |
371072e41ed4d310 c030e017798ac2f1 |
Virus.Win32. Virut.CE |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
![]() |
N/A |
3 | Microsoft Corporation | Executable | 25043428105e7564 6dc8131fe61efb7e 65708392 |
f67d36a54b495873 64ee1ac1454e93fe |
Virus.Win32. Sality.gen |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
![]() |
N/A |
4 | Microsoft Corporation | Executable | a38cde590cb1dbeb e214793a228d768d 3ea9f1a8 |
a13a0d69ce03d530 3937c5df8881217e |
Virus.Win32. Virut.CE |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
![]() |
N/A |
No. | Company | File Type | SHA1 | MD5 | Digitally Signed |
File Version |
Product Version |
Submitted From |
---|---|---|---|---|---|---|---|---|
1 | Microsoft Corporation | Executable | 15714660e104642c d16bc7ffadffd660 865c4f8d |
8f17f90519a5dadc dbc148842b2ded16 |
No | 5.1.2600.1 106 (xpsp1.020 828-1920) |
5.1.2600.1 106 |
![]() |
2 | Microsoft Corporation | Executable | e5c20452b67b42ca 2745f2163425ea66 b1bd39c6 |
4a489ca6b8f8e488 57e8e193404b7c12 |
No | 5.1.2600.5 512 (xpsp.0804 13-2105) |
5.1.2600.5 512 |
![]() |
3 | Microsoft Corporation | Executable | 22e2b6fdea5b95b6 f5f1e23803651fd6 ebc50244 |
2f22f1d7c729e95e a38028faed509b32 |
No | 5.1.2600.2 180 (xpsp_sp2_ rtm.040803 -2158) |
5.1.2600.2 180 |
![]() |
4 | Microsoft Corporation | Executable | 6e516072fca6373d bc3c5ad90ed40c00 6c9c485d |
72270ba696745fdc c23c0405211cce97 |
No | 5.1.2600.1 106 (xpsp1.020 828-1920) |
5.1.2600.1 106 |
![]() |