How to remove rsl.exe
rsl.exe
The module rsl.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: | Radmin Server |
Company Name: | Famatech Corp. |
MD5: | c89f0e636f6edb54fe5354c90dc51316 |
Size: | 55 KB |
First Published: | 2017-10-17 05:06:08 (7 years ago) |
Latest Published: | 2018-10-11 14:07:15 (6 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2018-10-11 14:07:15 (6 years ago) |
Overview
Signed By: | Famatech Corp. |
Status: | Valid |
Common Places:
%system%\rserver30 |
%sysdrive%\$windows.~bt\newos\windows\syswow64\rserver30 |
%system% |
%temp%\rserv35.tmp\system32 |
%profile%\lgat.capital\local settings\temp\rserv35.tmp\system32 |
%temp%\1\rserv35.tmp\system32 |
%sysdrive%\-mav\-c\windows\system32 |
%sysdrive%\-mav\-c\temp\rserv35.tmp\system32 |
Geography:
27.1% | ||
12.5% | ||
10.4% | ||
8.3% | ||
8.3% | ||
6.3% | ||
4.2% | ||
4.2% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% | ||
2.1% |
OS Version:
Windows 7 | 50.0% | |
Windows 10 | 32.6% | |
Windows XP | 10.9% | |
Windows Server 2008 R2 | 4.3% | |
Windows 8.1 | 2.2% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000237c |
PE Sections:
Name | Size of data | MD5 |
.text | 24576 | ece6bb07ce5f150813d7c42b48ba59ce |
.rdata | 4096 | e92c681e184468291beabe90f9a1d0c8 |
.data | 12288 | 18f8d76c6e06eab510bed709545d8338 |
.rsrc | 4096 | 85cfa17d74bc9be733633090ce7e056e |
More information:
Download GridinSoft
Anti-Malware - Removal tool for rsl.exe