What is phqghume.exe?

In Microsoft Windows, phqghume.exe is a process often in the C:\Windows\System32 folder. It is listed as malware and is not an essential Windows file. Usually about 6.2 KB in size, the program has no visible window when running. If run, it allows attackers to remotely access the computer to take sensitive data including passwords and banking information.

Is this file a spyware, trojan, or virus?

The file phqghume.exe is listed as a trojan — an executable file that carries a malicious payload. If present, it should be removed promptly using an antivirus program, Windows Defender, or an online virus scanning tool.

  • For examples of programs that might help clean this trojan from your computer, see: What are the currently available antivirus programs?

How to see if the phqghume.exe process is currently running

If you suspect the phqghume.exe process is running on your computer, you can check by opening the Windows Task Manager.

  • Press the Ctrl+Shift+Esc keys on your computer’s keyboard.

  • In the upper-left corner, click the Processes tab.

  • On the left, look for the phqghume.exe process.

  • If you locate phqghume.exe, click it once to select it, then click the End task button in the lower-right corner to stop it from running.

After stopping the process, run an anti-malware scanner, such as Malwarebytes or TrendMicro HouseCall, to fully remove it.

  • How to update an antivirus program.
  • How to enable or disable the Microsoft Windows Firewall.
  • Does Windows come with a virus protection program?
  • Microsoft Windows help and support.