How to remove RAVCpl64.exe
- File Details
- Overview
- Analysis
RAVCpl64.exe
The module RAVCpl64.exe has been detected as PUP.WinZipDriverUpdater
File Details
Product Name: |
|
Company Name: |
|
MD5: |
72b2fb2225e9866956ebc47d5c98fdbb |
Size: |
18 MB |
First Published: |
2020-06-27 06:56:04 (5 years ago) |
Latest Published: |
2021-01-04 14:29:46 (4 years ago) |
Status: |
PUP.WinZipDriverUpdater (on last analysis) |
|
Analysis Date: |
2021-01-04 14:29:46 (4 years ago) |
Overview
%commonappdata%\reviversoft\driver reviver\downloads\80 |
%commonappdata%\reviversoft\driver reviver\downloads\96fffcb1-222d-475b-b3de-562928746539 |
%commonappdata%\winzip\winzip driver updater\downloads\93d68509-dbcd-4526-b520-0275f8b01b44 |
%commonappdata%\winzip\winzip driver updater\downloads\76 |
%localappdata%\innovative solutions\drivermax\agent\uploads\t2kh8ln445484r16kxd8945tmtx9ux6j53s9lx744lt25a8045\media |
%localappdata%\innovative solutions\drivermax\agent\uploads\t2kh8ln445484r16kxd8945tmtx9ux6j53s9lx744lt25a8045\media |
%localappdata%\innovative solutions\drivermax\agent\uploads\398o14f02lw568m3nb20e65lf06363cy3106bq8jgg78ds2844\media |
%commonappdata%\winzip\winzip driver updater\downloads\70ce5f8e-5b46-44fa-9a26-a6279f7f4b17 |
%commonappdata%\winzip\winzip driver updater\downloads\41 |
%commonappdata%\reviversoft\driver reviver\downloads\66 |
United States |
17.2% |
|
China |
13.8% |
|
Iran |
10.3% |
|
Indonesia |
10.3% |
|
Canada |
6.9% |
|
Croatia |
6.9% |
|
India |
6.9% |
|
Russia |
6.9% |
|
Brazil |
3.4% |
|
Taiwan |
3.4% |
|
Italy |
3.4% |
|
Germany |
3.4% |
|
Poland |
3.4% |
|
United Kingdom |
3.4% |
|
Windows 10 |
62.1% |
|
Windows 7 |
37.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00300e0c |
Name |
Size of data |
MD5 |
.text |
3392000 |
c121c05f55d1caff2690431d01d08e03 |
.rdata |
1206272 |
44d99bc34d64d47371b9103a7423aeb0 |
.data |
66048 |
48402afe8d5cfc05bfd668e851208287 |
.pdata |
156672 |
e826edacbb67cd3d695545a1e9dbef26 |
.tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
.rsrc |
14728192 |
ed23bd5a7c63828e960e3f3c2e900073 |
.reloc |
109056 |
4ba62ea5bb178fedd03911271aaf98de |