rthost64.exe

reuschtools

Arndt Reusch eK

It runs as a separate (within the context of its own process) windows Service named “backupservice”. This is installed with Reuschtools alle Benutzer.
Publisher:
Arndt Reusch eK  (signed and verified)

Product:
reuschtools

Description:
rt Host

Version:
1, 0, 0, 1

MD5:
d842677e3dbf2b0e9d92e01b0344c152

SHA-1:
a0aff62d14dec083d8a136814e9ccdf87d7aa5ce

SHA-256:
f53730b23442dad85321dc15ef0e061b467ec54cc33c1a828d2fb239f36384f7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:48:58 AM UTC  (today)

File size:
83.4 KB (85,448 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2008 Arndt Reusch eK

Trademarks:
www.reuschtools.com

Original file name:
RtHost.exe

File type:
Executable application (Win64 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\reuschtools\rthost64.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/9/2011 1:00:00 AM

Valid to:
11/9/2013 12:59:59 AM

Subject:
CN=Arndt Reusch eK, O=Arndt Reusch eK, STREET=Herderstrasse 75, L=Reutlingen, S=Baden-Wuerttemberg, PostalCode=72762, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
353A2C493210CB6B2B72A04A54F03400

File PE Metadata
Compilation timestamp:
6/12/2012 8:46:42 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
1536:bkK6SRkq9twHFF4GFMQdMot4W7BtmZPPYbx3tw9POdiM0r8iBPh0:bB6SRk2wlyTQTr/4nYbx3tw9mddaBy

Entry address:
0x1068

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8D, 15, CF, 0F, 02, 00, 48, 8D, 0D, 80, 0F, 02, 00, E8, 47, 0C, 00, 00, 4C, 8D, 05, 3C, 15, 01, 00, 48, 8D, 0D, 6D, C7, 01, 00, 33, D2, E8, 5A, 5A, 00, 00, 33, FF, 3B, C7, 7F, 11, 48, 8D, 0D, 39, 15, 01, 00, E8, 04, 14, 00, 00, 83, CB, FF, EB, 2C, C7, 05, 21, B3, 01, 00, 01, 00, 00, 00, FF, 15, EF, 10, 01, 00, 48, 3B, C7, 74, 10, EB, 09, 66, C7, 00, 2A, 00, 48, 83, C0, 02, 66, 39, 38, 75, F2, E8, F1, 79, 00, 00, 8B, D8, 8B, 05, F5, B2, 01, 00, 48, 8D, 0D, A6, CF...
 
[+]

Code size:
44 KB (45,056 bytes)

Service
Display name:
backupservice

Type:
Win32OwnProcess


The file rthost64.exe has been discovered within the following program.

Reuschtools alle Benutzer  by Arndt Reusch eK, Germany
About 5% of users remove it
 
Powered by Should I Remove It?

Scan rthost64.exe - Powered by Reason Core Security