How to remove RaUI.exe
RaUI.exe
The module RaUI.exe has been detected as Worm.Ramnit
File Details
Product Name: | RaUI Application |
Company Name: | TOTOLINK Technology, Corp. |
MD5: | 2c4f6340b25a4fe04b402bdc5f51c522 |
Size: | 14 MB |
First Published: | 2018-10-02 20:05:31 (6 years ago) |
Latest Published: | 2018-10-02 20:05:31 (6 years ago) |
Status: | Worm.Ramnit (on last analysis) | |
Analysis Date: | 2018-10-02 20:05:31 (6 years ago) |
Common Places:
%programfiles%\totolink\rt2870 wireless lan card |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00eef000 |
PE Sections:
Name | Size of data | MD5 |
.text | 2326528 | 770676e7f7817fd42e7e29368e3b3b20 |
.data | 559104 | 454945b03d3b7d56f0f75473dea6ebed |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rdata | 512 | 5cbfdc6c99b650612803e19deb1869f2 |
.idata | 15872 | 08859361a39d65b33e58a497f1ce8b86 |
.didata | 1024 | ded9e2f94f4d61f1f0c75a59bcb6b337 |
.edata | 9728 | 8af938a621ffb8c5c4189857367bcac8 |
.rsrc | 12490240 | 5614631eaf3f63266c05d8a1c700e97e |
.reloc | 164352 | 7b1bb93d6940ac285c28d3a18ae863c7 |
.text | 64512 | c06e69e312c13451635fd867db7e7aea |
More information:
Download GridinSoft
Anti-Malware - Removal tool for RaUI.exe