How to remove RWLN.dll
RWLN.dll
The module RWLN.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: | Remote Manipulator System |
Company Name: | TektonIT |
MD5: | 5434791b0700ee8bc566044b103805ba |
Size: | 966 KB |
First Published: | 2017-06-14 15:04:11 (7 years ago) |
Latest Published: | 2018-10-29 04:04:29 (6 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2018-10-29 04:04:29 (6 years ago) |
Overview
Signed By: | Aleksei Ter-Osipov |
Status: | Valid |
Common Places:
%temp%\7zipsfx.003 |
%temp%\7zipsfx.006 |
%temp%\7zipsfx.009 |
%temp%\7zipsfx.008 |
%appdata%\rms-agent\66005\75d3b09c5f |
%programfiles% |
%appdata%\rms-agent\66005 |
Geography:
77.8% | ||
11.1% | ||
11.1% |
OS Version:
Windows 10 | 66.7% | |
Windows 7 | 22.2% | |
Windows Server 2012 | 11.1% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000d37d8 |
PE Sections:
Name | Size of data | MD5 |
.text | 858624 | c993872850f58952c63619b51abdef41 |
.itext | 2560 | a5eb962d62eb76fe04c3d46d064afa05 |
.data | 15360 | f47b64c4c9f7cdcad4000423cf88b886 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4608 | fda801c0b053318bf8786ba0bb4efea2 |
.didata | 1024 | 0c460f16136db7eac6ce41fb617c8539 |
.edata | 512 | f2cf61d933d60440ccae83e1feb321f8 |
.rdata | 512 | 27666cc3e23727433a157dc83a9d907f |
.reloc | 84992 | 0f8d17c9e226ba8bacb35077f53c08a5 |
.rsrc | 12288 | 236515be93fe8cd8bbf409f751f59452 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for RWLN.dll