How to remove roboot64.exe.vir

roboot64.exe.vir

The module roboot64.exe.vir has been detected as Adware.Downloader

roboot64.exe.vir
Product Name:

PC Performer

Company Name:

PerformerSoft LLC

MD5: 5f9f3b0534551815c07f73c03ff84c5f
Size: 19 KB
First Published: 2017-05-24 19:10:39 (6 years ago)
Latest Published: 2023-03-21 23:25:45 (a year ago)
Status: Adware.Downloader (on last analysis)
Analysis Date: 2023-03-21 23:25:45 (a year ago)
Signed By: Performersoft LLC
Status: Valid
%windir%\system32
%sysdrive%\windows.old\windows\system32
%system%
%sysdrive%\backup georg\os\windows
%sysdrive%\adwcleaner\quarantine\c\windows
%system%
%system%
%system%
%system%
%sysdrive%\windows.old\windows
roboot64.exe
roboot64.exe.vir
26.4%
8.5%
6.6%
6.6%
5.7%
4.7%
4.7%
3.8%
3.8%
2.8%
2.8%
1.9%
1.9%
1.9%
1.9%
1.9%
1.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
Windows 7 72.2%
Windows 10 21.3%
Windows 8.1 4.6%
Windows Server 2008 R2 0.9%
Windows 8 0.9%
Subsystem: Native
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000100000000
Entry Address: 0x00002304

PE Sections:

Name Size of data MD5
.text 9216 07fa427d41235c2f8e40947fe672ec1e
.data 512 043c46095689123e1f5be96c109c2f46
.pdata 512 178dd96fc066ebf7f0d4b9d23303d862
.rsrc 1536 92ce333d59388adc4366347219eec5ad
.reloc 512 4c69442f94342f01c9eecc224c99f9b1

More information:

Download GridinSoft Anti-Malware - Removal tool for roboot64.exe.vir