How to remove RaRegistry.exe
- File Details
- Overview
- Analysis
RaRegistry.exe
The module RaRegistry.exe has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e3d78f6fe54b27de451e350ac908e8b4 |
Size: |
382 KB |
First Published: |
2017-05-24 15:06:36 (7 years ago) |
Latest Published: |
2024-05-13 23:06:35 (5 months ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2024-05-13 23:06:35 (5 months ago) |
Overview
%programfiles%\wifisrv |
%programfiles%\greatmaker\maohawifi |
%programfiles%\telkomsel flash\160w |
%programfiles%\greatmaker |
%programfiles%\telkomsel flash |
%programfiles% |
%programfiles%\maoha |
%programfiles%\greatmaker |
%programfiles%\telkomsel flash |
%programfiles%\telkomsel flash |
|
44.9% |
|
|
15.9% |
|
|
9.3% |
|
|
3.7% |
|
|
2.8% |
|
|
2.8% |
|
|
2.8% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
Windows 7 |
45.7% |
|
Windows 8.1 |
25.0% |
|
Windows 10 |
17.2% |
|
Windows 8 |
5.2% |
|
Windows XP |
5.2% |
|
Windows Embedded 8.1 |
0.9% |
|
Windows Vista |
0.9% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000a890 |
Name |
Size of data |
MD5 |
.text |
294912 |
10f6f9684483e6f975e33823e054b84f |
.rdata |
73728 |
64e5d2eef0e0a9472c873a454f23adcf |
.data |
8192 |
8f83b9601a7b698c44fb4f7ab77d58e8 |
.rsrc |
4096 |
0111d2f97b65fba0a4f68c0d731d8179 |