How to remove BitComet_x64.exe

BitComet_x64.exe

The module BitComet_x64.exe has been detected as Adware.InstallCore

BitComet_x64.exe

BitComet_x64.exe is a Windows file recorded in the ThreatInfo database. It is associated with BitComet 64-bit. The reported company name is www.BitComet.com. The current detection status is Adware.InstallCore, based on the latest analysis from 2025-06-27 23:00:56 (11 months ago).

If BitComet_x64.exe appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Adware.InstallCore.

Product Name: BitComet 64-bit
Company Name: www.BitComet.com
MD5: 65d7b7d8d972fc2d783ed9bf11db6a8f
Size: 23 MB
First Published: 2025-06-27 23:00:56 (11 months ago)
Latest Published: 2025-06-27 23:00:56 (11 months ago)
Status: Adware.InstallCore (on last analysis)
Analysis Date: 2025-06-27 23:00:56 (11 months ago)
Signed By: Xing Wang
Status: Invalid (digital signature could be stolen or file could be patched)

The signature on BitComet_x64.exe is not reported as trusted and valid. Invalid or suspicious signature data can indicate tampering, repackaging, or an unrelated file using copied publisher information.

%desktop%\tools\dow\比特彗星(bitcomet)-v1.81 隐藏功能解锁版.zip

ThreatInfo has observed BitComet_x64.exe in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is China with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for BitComet_x64.exe is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

BitComet_x64.exe is identified as pe for 64 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x008785c4

PE Sections:

Name Size of data MD5
.text 14576128 d1ade238e8995dd0b2aa51769058cf11
.rdata 6679552 bffa58c844a6e1d247b0da2c3d38f4fb
.data 460800 6ebbd3668c773ced2f0c80d170fbd1cb
.pdata 602112 3fd9257d562f7e4ef6bdb9d3941b1015
.detourc 9216 509f58572cf1be7e846df2f0f54051b1
.detourd 512 edda25907019e5cc74c177f6952e5e4b
.rsrc 2001408 9fb6f0771150cebf425012250f19f6b6
.reloc 309760 d4134ee5f42c19205cfee2bc0205fc8d

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for BitComet_x64.exe