How to remove RaUI.exe
RaUI.exe
The module RaUI.exe has been detected as Trojan.Injector
File Details
Product Name: | RaUI Application |
Company Name: | Mediatek Inc. |
MD5: | 3edd12e3f1e8f10445a89edfbba85671 |
Size: | 14 MB |
First Published: | 2017-09-19 22:04:58 (7 years ago) |
Latest Published: | 2018-09-20 08:06:02 (6 years ago) |
Status: | Trojan.Injector (on last analysis) | |
Analysis Date: | 2018-09-20 08:06:02 (6 years ago) |
Overview
Signed By: | MEDIATEK INC. |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%programfiles%\mediatekwifi\common |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi\rt2870 wireless lan card |
Geography:
66.7% | ||
33.3% |
OS Version:
Windows 10 | 66.7% | |
Windows 7 | 33.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000196c |
PE Sections:
Name | Size of data | MD5 |
.text | 2405888 | 49afe283d0b74f70a19f8edfcf5512ad |
.data | 539648 | 8604a240f5a50049eed14e0d0dd58f6d |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rdata | 512 | 659cb354d6602e70d5f64a4e3b848fd0 |
.idata | 15872 | 30d9f217679208953fccd50b758becd7 |
.didata | 1024 | 00533bc82a2a945c248c110efbc815ab |
.edata | 9728 | 74db31d2e01aa70b1de3617b90efe6b4 |
.rsrc | 12458496 | cc6244afc465d7f85b24d6d38ec60e92 |
.reloc | 169984 | 5ca6ae4ab66ae74de21d2a906ac18d03 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for RaUI.exe