How to remove RaRegistry.exe
- File Details
- Overview
- Analysis
RaRegistry.exe
The module RaRegistry.exe has been detected as PUP.Gen
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
e3d78f6fe54b27de451e350ac908e8b4 |
| Size: |
382 KB |
| First Published: |
2017-05-24 15:06:36 (8 years ago) |
| Latest Published: |
2024-05-13 23:06:35 (2 years ago) |
| Status: |
PUP.Gen (on last analysis) |
|
| Analysis Date: |
2024-05-13 23:06:35 (2 years ago) |
Overview
| %programfiles%\wifisrv |
| %programfiles%\greatmaker\maohawifi |
| %programfiles%\telkomsel flash\160w |
| %programfiles%\greatmaker |
| %programfiles%\telkomsel flash |
| %programfiles% |
| %programfiles%\maoha |
| %programfiles%\greatmaker |
| %programfiles%\telkomsel flash |
| %programfiles%\telkomsel flash |
|
44.9% |
|
|
15.9% |
|
|
9.3% |
|
|
3.7% |
|
|
2.8% |
|
|
2.8% |
|
|
2.8% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
| Windows 7 |
45.7% |
|
| Windows 8.1 |
25.0% |
|
| Windows 10 |
17.2% |
|
| Windows 8 |
5.2% |
|
| Windows XP |
5.2% |
|
| Windows Embedded 8.1 |
0.9% |
|
| Windows Vista |
0.9% |
|
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000a890 |
| Name |
Size of data |
MD5 |
| .text |
294912 |
10f6f9684483e6f975e33823e054b84f |
| .rdata |
73728 |
64e5d2eef0e0a9472c873a454f23adcf |
| .data |
8192 |
8f83b9601a7b698c44fb4f7ab77d58e8 |
| .rsrc |
4096 |
0111d2f97b65fba0a4f68c0d731d8179 |