How to Remove “utilman.exe”

What is utilman.exe?

utilman.exe is a legitimate file popularly known as UtilMan EXE. It belongs to Windows Operating System developed by Microsoft Corporation. It is typically located in C:\Windows\System32. Malware programmers create files with virus scripts and name them after utilman.exe with an intention to spread virus on the internet.

Affected Platform: Windows OS

How to check if your computer is infected with utilman.exe malware?

Keep an eye for the following symptoms to see if your PC is infected with utilman.exe malware:

  • Internet connection fluctuates
  • utilman.exe takes too much CPU space
  • PC slows down significantly
  • Browser automatically redirects to some irrelevant websites
  • Unsolicited ads and popups starts appearing
  • Screen freezes constantly

Take the following steps to diagnose your PC for possible utilman.exe malware attack:

Step 1: Download the award-winning Free Internet Security.

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.

Step 3: After network detection is complete, press “Close” button for a scan window.

Step 4: Restart your PC.

Step 5: It will take some time for the Comodo Internet Security to update the antivirus.

Step 6: Proceed with a quick scan that automatically begins after the update.

Step 7: If threats are found during the scanning, you will be prompted with an alert screen.

Step 8: Comodo Antivirus will remove the utilman.exe virus from your computer including all other malwares!

39

Malware Entries

First Seen: 20 October 2011 at 7:28 pm
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 Microsoft Corporation Executable b6f72f0cca30a55f
00969962c7ce47f1
a62f680e
627090359c730471
5947e5a6f3120b15
Virus.Win32.
Virut.CE
No 6.1.7600.1
6385
(win7_rtm.
090713-125
5)
6.1.7600.1
6385
Qatar N/A
2 Microsoft Corporation Executable 8db64c7c305ffea8
552d9ac0264c6bed
f2814423
ac146b6468b6ddeb
d3d492f39ec3894c
Virus.Win32.
Virut.CE
No 6.1.7600.1
6385
(win7_rtm.
090713-125
5)
6.1.7600.1
6385
Lao People's Democratic Republic N/A
3 Microsoft Corporation Executable 538a739ca87975b9
16e069b829409e48
e4874402
5f65f3bd449a499e
b884f4518eb1e028
Virus.Win32.
Virut.CE
No 6.1.7600.1
6385
(win7_rtm.
090713-125
5)
6.1.7600.1
6385
Indonesia N/A
4 Microsoft Corporation Executable 1d855cb6a8640c03
19c3a889c8f98c22
c2552509
94622c6885c6881f
c8f7073ab8857603
P2PWorm.Win3
2.Polip.A
No 5.1.2600.5
512
(xpsp.0804
13-2105)
5.1.2600.5
512
Europe N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
11

Safe Entries

First Seen: 11 April 2011 at 10:37 am
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 Microsoft Corporation Executable 29bed5fd7b953704
6695bea5d0d58d8b
c4da36cd
ae41b66c837e5456
52bda25408ac1eed
No 10.0.17738
.1000
(WinBuild.
160101.080
0)
10.0.17738
.1000
Poland
2 Microsoft Corporation Executable 0ca0df04f3e417cb
3a895b3fa58e6364
41caa008
8efdc792c97d7890
68539b699bae7fcb
No 10.0.17713
.1000
(WinBuild.
160101.080
0)
10.0.17713
.1000
United Kingdom
3 Microsoft Corporation Executable a08faa9ad6a7fc03
50993dd430f9f53e
95040fc2
471bfeb0ceeceaee
2e375e3e52bedae6
No 10.0.17738
.1000
(WinBuild.
160101.080
0)
10.0.17738
.1000
Japan
4 Microsoft Corporation Executable 5f55445174685e24
34acf9fe36f25ac6
fd61a098
96ddc1f8f25ed56c
31f537f4dd2f3fa9
No 10.0.17755
.1
(WinBuild.
160101.080
0)
10.0.17755
.1
Japan
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Antivirus Protection protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security