How to Remove “Rebase.exe”

What is Rebase.exe?

Rebase.exe is a legitimate process file popularly known as Windows NT Image Rebaser. It is associated with Microsoft(R) Windows NT(R) Operating System, developed by Microsoft Corporation. It is located in C:\Windows\system32\  by default.

Malware programmers write virus files with malicious scripts and save them as Rebase.exe with an intention to spread virus on the internet.

Affected Platforms: Windows OS

How to determine if your computer is infected with Rebase.exe malware?

Look out for the following symptoms to check if your PC is infected with Rebase.exe malware:

  • Unstable internet connection
  • Rebase.exe occupies extra CPU space
  • PC processing speed slows down
  • Browser often redirects to irrelevant websites
  • Browser is bombarded with hordes of popup ads
  • Computer screen freezes repeatedly

Take the following steps to diagnose your PC for possible Rebase.exe malware attack:

Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.

Step 2: If you notice the file located outside C:\Windows\system32\, perform an antivirus scan to get rid of the malware.

How to remove Rebase.exe malware from system using Comodo Antivirus?

Step 1: Download our award-winning Free Antivirus

Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.

Step 3: Select Customize Configuration option and arrange installers, configuration, and file location.

Step 4: Restart your PC after the installation gets over

Step 5: Wait for Comodo Internet Security to update the antivirus.

Step 6: Proceed with the quick scan that automatically begins after the update.

Step 7: If threats are found during the scanning, you will be notified through an alert screen.

Step 8: Comodo Antivirus will remove Rebase.exe malware from your computer including all other malwares!
 

4

Malware Entries

First Seen: 16 February 2012 at 2:28 am
No. Company File Type SHA1 MD5 Malware
Name
Digitally
Signed
File
Version
Product
Version
Submitted
From
Malware Behavior
1 N/A Executable 6b94579d26028aa8
1809d87085e7260e
5038aab4
c0e96580e1c3ca0d
e3804f95a7c63f75
Virus.Win32.
Ramnit.K
No N/A N/A Indonesia N/A
2 Microsoft Corporation Executable 23d6527bb33d7c61
4c9a7aca06702887
b876c3bf
cdd369bcf38cc619
021872063cadfef1
EmailWorm.Wi
n32.Runonce.
~v001
No 5.00.1671.
1
5.00.1671.
1
Bangladesh N/A
3 Microsoft Corporation Executable 001123122da1a64f
45faf865841728de
4e84d4a7
29dec2b4d9661029
c2e84565feb3e4bc
Virus.Win32.
Alman.A
No 6.0.4006.0
(Lab01_N.0
30209-2000
)
6.0.4006.0 China N/A
4 Microsoft Corporation Executable 86b4b3e89f938f0a
e47fd38570c0d5f3
88f58a48
7dc9d06e9d7019e4
abe31cff77910811
Virus.Win32.
Sality.gen
No 6.0.4006.0
(Lab01_N.0
30209-2000
)
6.0.4006.0 Iraq N/A
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
41

Safe Entries

First Seen: 05 September 2008 at 1:46 pm
No. Company File Type SHA1 MD5 Digitally
Signed
File
Version
Product
Version
Submitted
From
1 N/A Executable 94b5057d96c8dcdd
ff37552c41e7e107
96c8ea9d
4d5263d743e48770
b5dd902d2a373a33
No N/A N/A United States
2 N/A Executable 082c52453bfe58a5
0f213cae6ac50ff3
231db8f9
73dd6eac669e923a
4d87339d3081d52d
No N/A N/A 10.224.1.117/32
3 Microsoft Corporation Executable a232d3d5683f5281
eef245c30ad21d4e
d35c3b35
eac226297596c82a
000a6c575bf87cd3
No 5.00.1671.
1
5.00.1671.
1
Internal Submission
4 N/A Executable a2ff86b8402bbdcc
b733e32a75c55013
1d4a46d6
719e376e92cb16aa
e49635bd013bf0ab
No N/A N/A Taiwan
Display 4 items per page
  • 4 items per page
  • 8 items per page
  • 16 items per page
  • 32 items per page
 
Exclusive Offer
Get Free Endpoint Protection
Get Advanced
Endpoint
Protection

Award-Winning Security to Protect Your Clients from Cyber Attacks

Comodo Internet Security Pro

Free Antivirus protection from hackers! Get the ultimate Antivirus solution to keep your PC clean and to remove viruses from a slow or infected PC. Improve the PC performance at home or use it on-the-go!

Get Comodo Internet Security Comodo Internet Security