How to remove Runtime Broker.exe

Runtime Broker.exe

The module Runtime Broker.exe has been detected as Trojan.Downloader

Runtime Broker.exe
Product Name:

WzOD0ZUNAgpwpUr8V

Company Name:

123RjVj8QyHI

MD5: 8164f2a0474b01797a9123a14817dd11
Size: 2 MB
First Published: 2023-12-20 23:05:02 (2 years ago)
Latest Published: 2023-12-20 23:07:46 (2 years ago)
Status: Trojan.Downloader (on last analysis)
Analysis Date: 2023-12-20 23:07:46 (2 years ago)
%sysdrive%\xboxgames
%sysdrive%\xboxgames
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00201dfe

PE Sections:

Name Size of data MD5
.text 2097152 916341d7baf86b06bf024b47bef1ad6a
.sdata 12288 030b9acf4cdf8be1a4432d7fee78dbab
.rsrc 1024 20a0c45b2d6efe43db58898d46207815
.reloc 512 fc5754fd3b877dee8693b7503a512088

More information:

Download GridinSoft Anti-Malware - Removal tool for Runtime Broker.exe