How to remove rbt.exe
rbt.exe
The module rbt.exe has been detected as Adware.Agent
File Details
MD5: | e5ffd73fca896510e756caba7ddf66ab |
Size: | 133 KB |
First Published: | 2017-06-14 21:06:15 (6 years ago) |
Latest Published: | 2020-03-06 06:20:26 (4 years ago) |
Status: | Adware.Agent (on last analysis) | |
Analysis Date: | 2020-03-06 06:20:26 (4 years ago) |
Overview
Signed By: | Yang Liwei |
Status: | Valid |
Common Places:
%appdata%\rundir\temp |
%appdata%\rundir |
%sysdrive%\adwcleaner\quarantine\files\jituaghphzdqgbulhukkrmknfubmjdwa |
%sysdrive%\adwcleaner\quarantine\files\jituaghphzdqgbulhukkrmknfubmjdwa\temp |
%appdata% |
%sysdrive%\windows.old\users\pezao\appdata\roaming\rundir |
%sysdrive%\windows.old\users\pezao\appdata\roaming |
%sysdrive%\windows.old\users\ilana lima\appdata\roaming |
%sysdrive%\windows.old\users\ilana lima\appdata\roaming\rundir |
%appdata%\rundir |
Geography:
51.2% | ||
24.4% | ||
9.8% | ||
4.9% | ||
4.9% | ||
4.9% |
OS Version:
Windows 7 | 63.4% | |
Windows 10 | 17.1% | |
Windows 8.1 | 9.8% | |
Windows 8 | 9.8% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000063f1 |
PE Sections:
Name | Size of data | MD5 |
.text | 64000 | c289cdea4ac6fd2d9b0e8f37794d2752 |
.rdata | 27648 | d31ea1084c27fe1187d10a6115b1e901 |
.data | 4096 | 04cdc494e32a91ffe44f2796c3b9f3c6 |
.rsrc | 17920 | 0eafc5ee8bed073f3cc69263930360bd |
.reloc | 16896 | 9db272dd5b3bae870328c4f3d7debf2f |
More information:
Download GridinSoft
Anti-Malware - Removal tool for rbt.exe