How to remove RAVBg64.exe
- File Details
- Overview
- Analysis
RAVBg64.exe
The module RAVBg64.exe has been detected as PUP.DriverMax
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
c75bef5e0aa96799e8ad5e363009c125 |
| Size: |
1 MB |
| First Published: |
2017-05-22 09:05:41 (8 years ago) |
| Latest Published: |
2021-01-04 06:33:16 (4 years ago) |
| Status: |
PUP.DriverMax (on last analysis) |
|
| Analysis Date: |
2021-01-04 06:33:16 (4 years ago) |
Overview
| %localappdata%\innovative solutions\drivermax\agent\restore\9sakx2986tt206wgkwhn52weu973023579c9509fd69u72o7ul\media\hdaudio_func_01@amp;ven_8086@amp;dev_2883@amp;subsys_80860101 |
| %localappdata%\innovative solutions\drivermax\agent\restore\k325678agtbwu6sc0l2bk0xhxlll8713v5g6x2x5khh3xv4990\media\hdaudio_func_01@amp;ven_10ec@amp;dev_0887 |
| %localappdata%\innovative solutions\drivermax\agent\restore\6y4qu2n55645y9j51ei76akbt7u1l56cbhtvnis6agu7it1so6\media\hdaudio_func_01@amp;ven_10ec@amp;dev_0662 |
| %localappdata%\innovative solutions\drivermax\agent\uploads\578xq3ht5y6d4qux0o900gipm67gr9sc12r5ie3828j94hk172\media\hdaudio_func_01@amp;ven_10ec@amp;dev_0662 |
| %localappdata%\slimware utilities inc\driverupdate\backups\20181020t204303919\hdaudio |
| %localappdata%\slimware utilities inc\driverupdate\backups\20181020t204716664\hdaudio |
| %localappdata%\innovative solutions\drivermax\agent\uploads\51164jb9t1hf2152wyb42uc1elbohsk56evg6143lur67leqe5\media |
|
28.6% |
|
|
28.6% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
| Windows 10 |
71.4% |
|
| Windows 7 |
28.6% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x0008d8a0 |
| Name |
Size of data |
MD5 |
| .text |
740352 |
56cde36fe23338b1ecabd898687e643d |
| .rdata |
232448 |
fd1248620c0ee61841e8794de6e2c509 |
| .data |
25600 |
6a1b832bdb0dcb888d74aa733e09f7f4 |
| .pdata |
47616 |
9b7e6cd91933410de0a8b92c8c680a27 |
| .rsrc |
418304 |
779279e3a8ec29f674f03776a4d180f4 |