Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

700, 1659, 1106, 2012 5.26%
700, 1646, 215, 2012 5.26%
700, 1646, 215, 2012 5.26%
700, 1637, 717, 2011 5.26%
700, 1634, 408, 2011 5.26%
700, 1631, 107, 2011 10.53%
700, 1609, 325, 2010 5.26%
700, 1609, 325, 2010 5.26%
700, 1604, 108, 2010 21.05%
700, 1594, 1019, 2009 5.26%
700, 1579, 709, 2009 5.26%
700, 1578, 702, 2009 5.26%
600, 1572, 331, 2009 5.26%
500, 1516, 219, 2008 5.26%
402, 1190, 801, 2006 5.26%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegQueryValueExA, RegOpenKeyA, RegSetValueExA, RegCreateKeyA, RegOpenKeyExA, RegFlushKey, RegDeleteValueA, RegQueryValueA, RegEnumKeyA, RegDeleteKeyA, RegCreateKeyExA, SetFileSecurityA, GetFileSecurityA, RegSetValueA, RegEnumValueA
comctl32.dll
ImageList_SetOverlayImage, ImageList_ReplaceIcon, ImageList_AddMasked, ImageList_Create, ImageList_GetIcon, ImageList_Destroy, PropertySheetA, DestroyPropertySheetPage, CreatePropertySheetPageA
comdlg32.dll
PrintDlgA, GetFileTitleA, GetOpenFileNameA, GetSaveFileNameA, CommDlgExtendedError
enumdevlib.dll
ShowDevice8180, GetDeviceInfo, EnumDevicesChange
gdi32.dll
SetWindowOrgEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SetMapMode, SetStretchBltMode, SetROP2, SetPolyFillMode, SetBkMode, RestoreDC, SaveDC, StartDocA, DeleteDC, CreateRectRgnIndirect, SetBkColor, SetTextColor, GetClipBox, PatBlt, CreateBitmap, GetDeviceCaps, GetStockObject, GetObjectA, CreateCompatibleDC, SelectObject, CreateCompatibleBitmap, BitBlt, GetTextExtentPointA, CreateDIBitmap, SetWindowExtEx, ScaleWindowExtEx, SelectClipRgn, ExcludeClipRect, IntersectClipRect, MoveToEx, LineTo, SetTextAlign, GetWindowOrgEx, GetTextFaceA, GetROP2, GetBkMode, GetTextAlign, GetPolyFillMode, GetStretchBltMode, GetNearestColor, GetBkColor, GetTextColor, CreateDCA, SetAbortProc, StartPage, EndPage, EndDoc, AbortDoc, GetViewportOrgEx, Rectangle, CreateFontIndirectA, CombineRgn, SetRectRgn, GetMapMode, DPtoLP, LPtoDP, GetTextMetricsA, GetTextExtentPoint32A, GetCharWidthA, StretchDIBits, Escape, ExtTextOutA, TextOutA, RectVisible, PtVisible, CreatePatternBrush, CreateSolidBrush, CreatePen, GetWindowExtEx, GetViewportExtEx, CreateRectRgn, GetCurrentPositionEx, DeleteObject, SelectPalette, CreateFontA, CreatePalette, RealizePalette, EnumFontFamiliesExA
gdiplus.dll
GdipDeleteFont, GdiplusShutdown, GdiplusStartup, GdipDeleteBrush, GdipCreateBitmapFromFile, GdipGetImageWidth, GdipGetImageHeight, GdipCloneBitmapAreaI, GdipDisposeImage, GdipGetGenericFontFamilySansSerif, GdipCreateFontFamilyFromName, GdipDrawLineI, GdipCreatePen1, GdipFree, GdipCloneBrush, GdipAlloc, GdipCreateFromHDC, GdipDrawImageRectI, GdipCreateFont, GdipDeleteFontFamily, GdipDeletePen, GdipCloneImage, GdipCreateSolidFill, GdipDrawString, GdipSetPenStartCap, GdipDeleteGraphics, GdipSetPenEndCap, GdipCreateBitmapFromFileICM
iphlpapi.dll
GetAdaptersInfo
iplib.dll
GetIpInformation
kernel32.dll
CloseHandle, GetFileSize, CreateFileA, GetSystemTime, CreateThread, TerminateThread, WaitForSingleObject, ResumeThread, lstrlenW, GetVersionExA, OutputDebugStringA, GetPrivateProfileIntA, GetPrivateProfileStringA, SetEvent, ResetEvent, WaitForMultipleObjects, GetModuleFileNameA, WinExec, CreateMutexA, FreeLibrary, lstrcpynA, ProcessIdToSessionId, GetCurrentProcessId, lstrlenA, SetThreadPriority, GetCurrentThreadId, SuspendThread, CreateEventA, InterlockedIncrement, InterlockedDecrement, WideCharToMultiByte, MultiByteToWideChar, GetLastError, FormatMessageA, SetLastError, GetProcAddress, GetModuleHandleA, lstrcpyA, GlobalDeleteAtom, GlobalFindAtomA, GlobalAddAtomA, lstrcmpiA, GlobalGetAtomNameA, lstrcatA, GetVersion, LockResource, LoadResource, FindResourceA, LoadLibraryA, GlobalFree, GlobalUnlock, GlobalLock, GetCurrentThread, lstrcmpA, GlobalAlloc, VirtualProtect, MulDiv, WritePrivateProfileStringA, GetTickCount, GetFileAttributesA, GetTempFileNameA, GetFullPathNameA, SetFileTime, GetFileTime, GetDiskFreeSpaceA, InitializeCriticalSection, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, GetProcessVersion, GlobalFlags, LocalAlloc, TlsAlloc, GlobalHandle, TlsFree, GlobalReAlloc, TlsSetValue, GetCommandLineA, TlsGetValue, DuplicateHandle, GetCurrentProcess, ReadFile, WriteFile, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileA, DeleteFileA, FindClose, FindFirstFileA, GetVolumeInformationA, GetStringTypeExA, GetThreadLocale, GetShortPathNameA, LocalFileTimeToFileTime, SystemTimeToFileTime, GetCPInfo, GetOEMCP, SizeofResource, GetCurrentDirectoryA, FileTimeToSystemTime, FileTimeToLocalFileTime, SetErrorMode, RtlUnwind, HeapFree, HeapAlloc, GetSystemTimeAsFileTime, GetStartupInfoA, ExitThread, RaiseException, ExitProcess, HeapReAlloc, HeapSize, GetACP, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, LCMapStringA, LCMapStringW, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, GetStringTypeA, GetStringTypeW, SetUnhandledExceptionFilter, GetTimeZoneInformation, GetSystemInfo, VirtualQuery, IsBadReadPtr, IsBadCodePtr, SetStdHandle, GetLocaleInfoA, GetProcessHeap, CompareStringA, CompareStringW, SetEnvironmentVariableA, LocalReAlloc, Sleep, GetProfileStringA, InterlockedExchange, LocalFree, DllMain
netapi32.dll
NetShareGetInfo, NetShareCheck
ole32.dll
OleInitialize, CoUninitialize, CoCreateInstance, CoInitializeSecurity, CoInitialize, CLSIDFromProgID, CoDisconnectObject, CLSIDFromString, OleIsCurrentClipboard, OleFlushClipboard, CoRevokeClassObject, CoRegisterMessageFilter, CreateILockBytesOnHGlobal, StgCreateDocfileOnILockBytes, StgOpenStorageOnILockBytes, CoGetClassObject, CoTaskMemAlloc, CoTaskMemFree, CoFreeUnusedLibraries, OleUninitialize
rtlics.dll
CheckICS, Get_Hi_Speed_Adapter
rtllib.dll
RT_GetMacAddress, RT_GetStatusLinkInfo, RT_GetSSID, RT_SetSSID, RT_SetWEPKey, RT_SetDefaultKeyID, RT_SetAuthenticaionMode, RT_SetPrivacy, RT_SetBSSID, RT_SetChannel, RT_SetNetworkType, RT_Set802_1xStatus, RT_CustomRequest, RT_AutoCfgScan, RT_Passphrase128, RT_Passphrase64, RT_GetNicGuid, RT_IsUnplug, RT_SetNicTcpipAddr, RT_AP_SwitchToStationMode, RT_SetWirelessMode, RT_GetWirelessMode, RT_GetSupportedWirelessMode, RT_GetStatusDriverInfo, RT_AP_SwitchToAPMode, RT_AP_GetIsAPMode, RT_SetRadioOff, RT_Rescan, RT_EnableZeroConfig, RT_IsXPConfig, RT_ZeroConfigService, RT_GetIsRadioOff, RT_GetStatusHardwareRadioOff, RT_SetIsWDS_MODE, RT_GetIsWDS_MODE, RT_AP_IsSupported, RT_NicChangeState, RT_Initialize, RT_GetUserCertList, RT_GetChannelList, RT_PasswordHash, RT_GetStatusChannelInfo, RT_CertUrlWin32String, RT_SetEncryptionStatus, RT_SetOID, RT_GetDriverPath, RT_OpenClassRegKey, RT_AP_SetPassphrase, RT_ADD_PMK_CONX, RT_ADD_PSK_CONX, RT_Set_8021x_tunnle, RT_Set_8021x_conf, RT_GetDefaultEncryptionAlgorithm, RT_SetMHSecurityInfo, RT_SetPreambleMode, RT_GetPreambleMode, RT_SetRates, RT_GetRates, RT_SetPowerSaveMode, RT_GetPowerSaveMode, RT_REMOVE_PSK_CONX, RT_ReNewIPAddress, RT_EnableZeroConfigService, RT_SetDefaultAdapterIndex, RT_Stop, RT_GetAdapterList, RT_RefreshAdapter, RT_GetStatusSignalInfo, RT_GetStatusMediaStatus, RT_GetAuthenticaionMode, RT_GetPrivacy, RT_GetStatusSecurityInfo, RT_GetStatusWEPKeyMisMatch, RT_GetRTSThreshold, RT_GetFragmentationThreshold, RT_SetChannelPlan, RT_GetTurboMode, RT_GetStatusPermanentChannelSet, RT_SetTurboMode, RT_SetRTSThreshold, RT_SetFragmentationThreshold, RT_SetAdhocDefaultWirelessMode, RT_EnableWirelessMode, RT_SaveLog, RT_SendMagicPacket, RT_GetDTIMPeriod, RT_GetBeaconInterval, RT_SetDTIMPeriod, RT_SetBeaconInterval, RT_AP_GetStationList, RT_GetMacAddressString, RT_SetWDS_AP_LIST, RT_SiteSurveyEx, RT_GetStatusDynamicRate, RT_GetExtendedStatistics, RT_WS2_init, RT_WS2_stop, RT_GetStatistics, RT_GetStatusPowerMode, RT_GetStatusPerformanceInfo, RT_Disassociate, DllMain, RT_SiteSurvey_WS2, RT_WPSAPSurvey, RT_WPS_Registrar_APConfig, RT_WPS_External_Registrar, RT_WPS_External_Registrar_Add_New_Device, RT_WPS, RT_Debug_Methodflag, RT_GetPIN_WS2, RT_WSC_Connect, RT_Check_Session_Overlap, RT_GEN_PIN, RT_Get_HW_PBCStatus, RT_Set_HW_PBCStatus, RT_VERIFY_PIN, RT_ACM_Delete_AllProfiles, RT_CCX_SetTxPowerPercentage, RT_CCX_GetTxPowerPercentage, RT_CCX_GetTpower, RT_GetStatusSignalInfoMIMO, RT_GetStatus_11N_Txrate, RT_GetStatus_11N_Rxrate, RT_GetInitial_11N_Txrate, RT_Get_11N_Retry_Count, RT_DebugCmdSend, RT_DebugCmdCheck, RT_DebuggCmdReturn, RT_ACM_SoftAP_IsEnable, RT_ACM_SoftAP_GetGUID, RT_GetMeshMode, RT_SetMeshMode, RT_ACM_SoftAP_Enable, RT_ACM_Delete_Profile, RT_GetAUTOChannel, RT_ACM_XMLtoProfile, RT_ACM_SoftAP_GetProfile, RT_SetAUTOChannel, RT_SetDATA_RATE_STA, RT_SetIsHidden_SSID, RT_SetLOCKED_STA_ADDRESS, RT_SetFILTER_STA_ADDRESS, RT_Set_Filter_Type, RT_GetEncCAMStatus, RT_ACM_LinkProfileAndSave, RT_ACM_SoftAP_Set_connection, RT_ACM_LinkRtlProfileNew, RT_ACM_LinkDefaultProfile, RT_ACM_SoftAP_Query_connection, RT_Set_WMM_QoS_APSD, RT_Get_WMM_QoS_APSD, RT_SetIsXlink, RT_GetIsXlink, RT_GetLiveTime, RT_GetSBW, RT_SetMeshID, RT_GetMeshID
shell32.dll
SHGetFileInfoA, DragQueryFileA, DragFinish, Shell_NotifyIconA, ExtractIconA, StrStrIA
shlwapi.dll
StrStrIA
user32.dll
DllMain
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, GetFileVersionInfoA, GetFileVersionInfoSizeA
vlanapi.dll
RT_CreateVWLAN, RT_IsEnableWZC, RT_SetEnableWZC, RT_SetEnableNIC, RT_HideVWLAN, RT_IS_Disable_ByVID, RT_GetVlanGUID_ByVID, RT_DeldteVWLAN, RT_Char2WChar, RT_WChar2Char
winspool.drv
ClosePrinter, DocumentPropertiesA, OpenPrinterA
wtsapi32.dll
WTSRegisterSessionNotification, WTSUnRegisterSessionNotification, WTSEnumerateSessionsA, WTSTerminateProcess, WTSFreeMemory, WTSQuerySessionInformationA

RtWLan.exe

RtWLan Application by Realtek Semiconductor

Remove RtWLan.exe
Version:   700, 1659, 1106, 2012
MD5:   f0db2833edab329284bb2a6e0f5995d5
SHA1:   5246c7266b8f42439b54b2b184c19a374e8f61c3
SHA256:   5e8fbbd6ad197c7b809e0a8c9a68215e21ab073c94f0be42e285e5ffb1c32cd0

Overview

rtwlan.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges) typically within the context of its parent rtlservice.exe (Realtek RtlService Application by Realtek Semiconductor). During installation, it (or a shortcut) is added to the user's startup folder which is designed to automatically launch when the user logs into Windows. It is installed with a couple of know programs including REALTEK Wireless LAN Driver and Utility published by Realtek Semiconductor Corp. and REALTEK Wireless LAN Driver and Utility published by Realtek Semiconductor Corp.. Note, some antivirus scanners have flagged this file, however it is not necessarily considered malware (see below for details).

DetailsDetails

File name:rtwlan.exe
Publisher:Realtek Semiconductor Corp.
Product name:RtWLan Application
Description:RtWLan ( For Win2K/XP ) Application
Typical file path:C:\Program Files\realtek rtl8187 wireless lan driver and utility\rtwlan.exe
File version:700, 1659, 1106, 2012
Size:2.01 MB (2,109,440 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Realtek Semiconductor Corp.
7% remove
The REALTEK Wireless LAN Driver is the software driver for the Realtek Wireless LAN NICs. It is a program used to communicate from the Windows PC OS to the device. This software is required in most cases for the hardware device to function properly. In most cases, drivers come with Windows or can be found by going to Windows Update in Control Panel and checking for updates as well as downloaded from the Realtek support website.

BehaviorsBehaviors

User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
  • Shortcut to 'rtwlan.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00011230%
0.028634%
Kernel CPU:0.00009239%
0.013761%
User CPU:0.00001992%
0.014873%
Kernel CPU time:122,539 ms/min
100,923,805ms/min
CPU cycles:4,148,314/sec
17,470,203/sec
Context switches:38/sec
284/sec
Memory
Private memory:9.93 MB
21.59 MB
Private (maximum):16.14 MB
Private (minimum):5.58 MB
Non-paged memory:9.93 MB
21.59 MB
Virtual memory:125.82 MB
140.96 MB
Virtual memory (peak):130.32 MB
169.69 MB
Working set:7.47 MB
18.61 MB
Working set (peak):16.17 MB
37.95 MB
Page faults:50,963/min
2,039/min
I/O
I/O read transfer:30.49 KB/sec
1.02 MB/min
I/O read operations:27/sec
343/min
I/O other transfer:20.44 KB/sec
448.09 KB/min
I/O other operations:593/sec
1,671/min
Resource allocations
Threads:6
12
Handles:1798
600
GUI GDI count:148
103
GUI GDI peak:150
142
GUI USER count:95
49
GUI USER peak:98
71

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\realtek\usb wireless lan utility\rtwlan.exe" /h
Owner:SYSTEM
Parent process:rtlservice.exe (Realtek RtlService Application by Realtek Semiconductor)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 31.58%
Windows 7 Ultimate 31.58%
Windows 7 Home Premium 26.32%
Windows 8.1 Pro 5.26%
Windows 7 Professional 5.26%

Distribution by countryDistribution by country

United States installs about 21.05% of RtWLan Application.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 21.05%
Lenovo 21.05%
Hewlett-Packard 10.53%
Intel 10.53%
Dell 10.53%
Compaq 10.53%
Toshiba 10.53%
GIGABYTE 5.26%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE