ThreatBook Agent
A way to uninstall ThreatBook Agent from your computer
You can find on this page detailed information on how to remove ThreatBook Agent for Windows. It was coded for Windows by
Beijing ThreatBook Technology Co., Ltd. Further information on Beijing ThreatBook Technology Co., Ltd can be seen
here. Click on
https://threatbook.cn/ to get more data about ThreatBook Agent on Beijing ThreatBook Technology Co., Ltd's website. The application is frequently placed in the C:\Program Files (x86)\Threatbook\Agent folder (same installation drive as Windows). You can uninstall ThreatBook Agent by clicking on the Start menu of Windows and pasting the command line C:\Program Files (x86)\Threatbook\Agent\uninst.exe. Note that you might be prompted for administrator rights. The program's main executable file is called tbAgent.exe and occupies 488.78 KB (500512 bytes).
ThreatBook Agent installs the following the executables on your PC, taking about 4.41 MB (
4623392 bytes) on disk.
- CtrlSC.exe (266.77 KB)
- safeSrv.exe (550.78 KB)
- tbAgent.exe (488.78 KB)
- tbAgentSrv.exe (430.28 KB)
- tbCommonHelper_x64.exe (513.28 KB)
- tbGuard.exe (620.78 KB)
- tbHelper.exe (895.78 KB)
- uninst.exe (506.28 KB)
- Tbhpca.exe (242.30 KB)
...click to view all...The information on this page is only about version
2.6.3.1000 of ThreatBook Agent. Click on the links below for other ThreatBook Agent versions:
...click to view all...
When planning to uninstall ThreatBook Agent you should check if the following data is left behind on your PC.
Folders remaining:- C:\Program Files (x86)\Threatbook\Agent
Usually, the following files are left on disk:- C:\Program Files (x86)\Threatbook\Agent\7z.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\AmNvLMon.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\AmNvLMon64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\ca.dat
- C:\Program Files (x86)\Threatbook\Agent\cardinal\qrotload.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RNdrCfg.dat
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RNdrMonitor_x64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RNdrMonitor_x86.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RpsGRdn.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RpsGRdn64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RSvNrSor.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\RSvNrSor64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\samVigiL64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbAmsiProv.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbAmsiProv64.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinal.dat
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinal_Win7_X64.sys
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinal_Win7_X86.sys
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinal_Win8_X64.sys
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinal_Win8_X86.sys
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbCardinalDll.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\Tbhpca.exe
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbIjSecBase.dll
- C:\Program Files (x86)\Threatbook\Agent\cardinal\TbIjSecBase64.dll
- C:\Program Files (x86)\Threatbook\Agent\CtrlSC.dll
- C:\Program Files (x86)\Threatbook\Agent\CtrlSC.exe
- C:\Program Files (x86)\Threatbook\Agent\data\AbnormalProcControlMapping.dat
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\agent.common.attr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\agent.module.attr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\baseInfo
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\bdsetting
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\clouddetect
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\dbMgr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\plugbase
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\PlugDisplay
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\PlugEndpointAsset
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\pluginmgr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\plugsaasedr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\PlugSecurityBase
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\plugtd
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\product
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\proxyInfo
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\quarantinePolicy
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\reportmgr
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\scanAuxilary
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\terminal.device.info
- C:\Program Files (x86)\Threatbook\Agent\data\bundle\venus
- C:\Program Files (x86)\Threatbook\Agent\data\content\avSetting
- C:\Program Files (x86)\Threatbook\Agent\data\content\endpoint_register
- C:\Program Files (x86)\Threatbook\Agent\data\content\heliosSetting
- C:\Program Files (x86)\Threatbook\Agent\data\content\onAccessSetting
- C:\Program Files (x86)\Threatbook\Agent\data\content\popup_window
- C:\Program Files (x86)\Threatbook\Agent\data\content\tdSetting
- C:\Program Files (x86)\Threatbook\Agent\data\content\ti_collector
- C:\Program Files (x86)\Threatbook\Agent\data\content\trident
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\AUX_MISKILLING_tbagent_edr
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\AUX_QUARANTINE
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\CQData
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\crDATA
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\csDATA
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\ExcMon
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\Moneta3
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\ProtectionLog
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\Store_E0
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\Store_SDC
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\Store_SEJ0
- C:\Program Files (x86)\Threatbook\Agent\data\ddb\tbsfp
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\2025070521_tbAgent.exe_W0_AegisCore_32900.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\2025070614_tbAgent.exe_W0_AegisCore_10736.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\2025070700_tbAgent.exe_W0_AegisCore_10568.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\2025070712_tbAgent.exe_W0_AegisCore_11052.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\2025070811_tbAgent.exe_W0_AegisCore_10528.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\tbAgent.exe_AegisCore_051807_23220.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\AegisCore\tbAgent.exe_AegisCore_051835_13388.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\gateway_saas\2025070623_tbAgentSrv.exe_Master_gateway_saas_7440.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\gateway_saas\2025070700_tbAgentSrv.exe_Master_gateway_saas_7464.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\gateway_saas\tbAgentSrv.exe_gateway_saas_051804_27972.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\2025070521_tbAgent.exe_W0_PlugSaaSEdr_32900.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\2025070614_tbAgent.exe_W0_PlugSaaSEdr_10736.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\2025070700_tbAgent.exe_W0_PlugSaaSEdr_10568.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\2025070712_tbAgent.exe_W0_PlugSaaSEdr_11052.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\2025070811_tbAgent.exe_W0_PlugSaaSEdr_10528.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\tbAgent.exe_PlugSaaSEdr_051807_23220.log
- C:\Program Files (x86)\Threatbook\Agent\data\gol\PlugSaaSEdr\tbAgent.exe_PlugSaaSEdr_051835_13388.log
- C:\Program Files (x86)\Threatbook\Agent\data\param\urgentHotfixParam
- C:\Program Files (x86)\Threatbook\Agent\data\PidGuidMapping.dat
- C:\Program Files (x86)\Threatbook\Agent\data\updroots.cab
- C:\Program Files (x86)\Threatbook\Agent\framework\cacert.pem
- C:\Program Files (x86)\Threatbook\Agent\framework\gateway.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\gateway_saas.dll
- C:\Program Files (x86)\Threatbook\Agent\framework\NetConfig.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.PlugDisplay.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.PlugEndpointAsset.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.Pluglc.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.PlugSaaSEdr.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.PlugSecurityBase.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.Plugtd.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\plugconf\conf.PlugTrident.xml
- C:\Program Files (x86)\Threatbook\Agent\framework\strategy\agent_strategy
- C:\Program Files (x86)\Threatbook\Agent\framework\tbTrident.dll
Registry that is not removed:- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\TBAgent
Open regedit.exe to remove the values below from the Windows Registry:- HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\safeSrv\ImagePath
- HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tbAgentSrv\ImagePath
- HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tbGuardSrv\ImagePath
A way to delete ThreatBook Agent with the help of Advanced Uninstaller PRO
ThreatBook Agent is a program marketed by Beijing ThreatBook Technology Co., Ltd. Sometimes, users decide to uninstall this application. This is easier said than done because performing this manually requires some skill related to removing Windows applications by hand. The best SIMPLE approach to uninstall ThreatBook Agent is to use Advanced Uninstaller PRO. Here are some detailed instructions about how to do this:
1. If you don't have Advanced Uninstaller PRO already installed on your Windows system, add it. This is a good step because Advanced Uninstaller PRO is one of the best uninstaller and all around tool to maximize the performance of your Windows PC.
DOWNLOAD NOW- navigate to Download Link
- download the setup by pressing the green DOWNLOAD button
- install Advanced Uninstaller PRO
2. Start Advanced Uninstaller PRO. Take some time to get familiar with the program's interface and number of functions available. Advanced Uninstaller PRO is a very good package of utilities.
3. Click on the General Tools category

4. Activate the Uninstall Programs tool

5. All the programs installed on your computer will be made available to you
6. Navigate the list of programs until you find ThreatBook Agent or simply activate the Search feature and type in "ThreatBook Agent". If it is installed on your PC the ThreatBook Agent app will be found automatically. Notice that after you click ThreatBook Agent in the list of programs, the following data regarding the application is available to you:
- Safety rating (in the lower left corner). This tells you the opinion other people have regarding ThreatBook Agent, ranging from "Highly recommended" to "Very dangerous".
- Opinions by other people - Click on the Read reviews button.
- Details regarding the app you wish to uninstall, by pressing the Properties button.
For example you can see that for ThreatBook Agent:
- The web site of the program is: https://threatbook.cn/
- The uninstall string is: C:\Program Files (x86)\Threatbook\Agent\uninst.exe
7. Press the Uninstall button. A confirmation window will show up. Confirm the removal by clicking Uninstall. Advanced Uninstaller PRO will then remove ThreatBook Agent.

8. After removing ThreatBook Agent, Advanced Uninstaller PRO will ask you to run an additional cleanup. Press Next to perform the cleanup. All the items of ThreatBook Agent that have been left behind will be detected and you will be able to delete them. By removing ThreatBook Agent using Advanced Uninstaller PRO, you can be sure that no registry items, files or directories are left behind on your disk.
Your PC will remain clean, speedy and able to serve you properly.
Disclaimer
This page is not a piece of advice to uninstall ThreatBook Agent by Beijing ThreatBook Technology Co., Ltd from your computer, nor are we saying that ThreatBook Agent by Beijing ThreatBook Technology Co., Ltd is not a good application for your PC. This page simply contains detailed info on how to uninstall ThreatBook Agent in case you decide this is what you want to do. The information above contains registry and disk entries that Advanced Uninstaller PRO discovered and classified as "leftovers" on other users' computers.
Last update on: 2025-06-13 07:24:23.663