How to remove $R3BZARK.exe

$R3BZARK.exe

The module $R3BZARK.exe has been detected as General Threat

$R3BZARK.exe
Product Name:

IE PassView

Company Name:

NirSoft

MD5: c861fe184e271d6e2ba958da306ba748
Size: 43 KB
First Published: 2017-05-22 11:23:16 (7 years ago)
Latest Published: 2024-09-07 23:01:17 (2 months ago)
Status: General Threat (on last analysis)
Analysis Date: 2024-09-07 23:01:17 (2 months ago)
%desktop%\lock\001 a my tools\password finders
%desktop%\lock\001 tools\iepv
%desktop%\lock\001 a my tools\nir soft\nirsoft
%desktop%\lock\security\nir soft\nirsoft
%desktop%\lock\security\password finders
%sysdrive%\$recycle.bin\s-1-5-21-926333572-1141172302-625575263-1000
%desktop%\backup\software\iepv
%localappdata%\temp
%sysdrive%\windows.old\windows\system32\config\systemprofile\appdata\local
%temp%
iepv.exe
$R3BZARK.exe
WebBrowserPassView2.exe
iepv.exe.mwt
25.4%
18.3%
11.3%
7.0%
7.0%
5.6%
4.2%
2.8%
2.8%
2.8%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
Windows 10 54.8%
Windows 7 42.5%
Windows 8.1 2.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00018f70

PE Sections:

Name Size of data MD5
UPX0 0 00000000000000000000000000000000
UPX1 37376 e10d387fc045fa64d358c11d0e3b233d
.rsrc 6144 6acbec5fec4e638ec285c177dd019f05

More information:

Download GridinSoft Anti-Malware - Removal tool for $R3BZARK.exe