rbmonitor.exe
RegistryBooster Monitor by Uniblue Systems (Signed)
Warning 8 antivirus scanners has detected malware in various versions of rbmonitor.exe.
Overview
There are 7 versions of rbmonitor.exe in the wild, the latest version being 6.1.1.3. rbmonitor.exe is run as a standard windows process with the logged in user's account privileges. The process utilizes the Windows Task Scheduler to automatically launch the file as a process when a user logs into Windows. The average file size is about 25.4 KB. The file is a digitally signed and issued to Uniblue Systems by VeriSign. The programs Uniblue RegistryBooster, RegistryBooster and Uniblue RegistryBooster 2009 have been observed as installing specific variations of rbmonitor.exe. During the process's lifecycle, the typical CPU resource utilization is less than 0.01%, the average private memory consumption is about 15.58 MB. Addionally, typically read and write I/O disk operations is about 96.56 KB per minute for reads and 10 Bytes per minute for writes.
What is rbmonitor.exe?
Uniblue RegistryBooster Monitor runs at PC boot time and is designed to automatically check the status of Uniblue RegistryBooster as well as the PC. Uniblue RegistryBoosteris a Windows registry repair software utility designed to fix potentially damaged registry entries by scanning for entries that point to various files that are no longer active on the PC.
About rbmonitor.exe (from Uniblue Systems)
“Have you noticed that the longer you have your computer, the slower it runs and the more it crashes? Often this is because whenever you install or uninstall software, adjust hardware or change setting”
Details |
File name: | rbmonitor.exe |
Publisher: | Uniblue Systems Limited |
Product name: | RegistryBooster Monitor |
Description: | Uniblue RegistryBooster Monitor |
Typical file path: | C:\Program Files\uniblue\registrybooster\rbmonitor.exe |
Certificate |
Issued to: | Uniblue Systems |
Authority (CA): | VeriSign |
Effective date: | Tuesday, April 20, 2010 |
Expiration date: | Sunday, May 5, 2013 |
Programs installed in
(Note, the programs listed below are for all versions of RegistryBooster Monitor.)
Uniblue RegistryBooster is registry utility whose purported purpose is to remove redundant items from the Windows registry. The software helps to automate the process of looking for invalid entries, m...
This is a PC 'cleaner' applicaion that is supposed to speed up a computer by removing invalid registry entries as well as provides some additional utilities.
This is a 'registry cleaner' that is supposed to clean or fix a PC by removing invalid registry settings.
This is a 'registry cleaner' that is supposed to clean or fix a PC by removing invalid registry settings.
Behaviors
(Note, the behaviors below are for all versions of rbmonitor.exe, select a unique version for details.)
Scheduled tasks
- The job 'RegistryBooster' runs on logon in the path '\RegistryBooster'
- The job 'rbmonitor' runs on logon in the path '\rbmonitor'
- Entry path '\RegistryBooster'
- Entry path 'C:\WINDOWS\Tasks\RegistryBooster.job'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
- Login entry path '\rbmonitor'
- Login entry path '\RegistryBooster'
- Login entry path 'C:\WINDOWS\Tasks\RegistryBooster.job'
Malware detections
Based on 40+ industry antivirus scanners, 8 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
eSafe |
7.0.17.0 |
Win32.Trojan |
6.0.7.2 |
eSafe |
7.0.17.0 |
Win32.Trojan |
6.0.0.6 |
eSafe |
7.0.17.0 |
Win32.Trojan |
6.0.10.7 |
ESET NOD32 |
7.7574 |
Win32/RegistryBooster |
6.0.0.6 |
ESET NOD32 |
7.8175 |
Win32/RegistryBooster |
6.0.10.7 |
ESET NOD32 |
7.8430 |
Win32/RegistryBooster |
6.1.1.0 |
ESET NOD32 |
7.8947 |
Win32/RegistryBooster |
6.1.1.3 |
NOD32 |
7273 |
Win32/RegistryBooster |
6.0.7.2 |
All file variations of rbmonitor.exe
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
65.22% |
|
Windows Vista Ultimate |
13.04% |
|
Microsoft Windows XP |
13.04% |
|
Windows XP Professional |
4.35% |
|
Windows 7 Ultimate |
4.35% |
|
Distribution by country
United States installs about 45.45% of RegistryBooster Monitor.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Acer |
57.14% |
|
Intel |
28.57% |
|
Lenovo |
14.29% |
|