How to remove RaUI.exe
RaUI.exe
The module RaUI.exe has been detected as Trojan.Injector
File Details
Product Name: | RaUI Application |
Company Name: | Mediatek Inc. |
MD5: | 45a75431b1956628f7ef12b3e5e07825 |
Size: | 14 MB |
First Published: | 2018-09-20 04:10:37 (6 years ago) |
Latest Published: | 2020-03-17 15:23:14 (4 years ago) |
Status: | Trojan.Injector (on last analysis) | |
Analysis Date: | 2020-03-17 15:23:14 (4 years ago) |
Overview
Signed By: | MEDIATEK INC. |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi\rt2870 wireless lan card |
Geography:
66.7% | ||
16.7% | ||
16.7% |
OS Version:
Windows 7 | 66.7% | |
Windows 10 | 33.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000196c |
PE Sections:
Name | Size of data | MD5 |
.text | 2411520 | 113d336e9fbf8674dfe58fd55cbcf0e3 |
.data | 542720 | 1981896d3c8ed87c385892eeb1833821 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rdata | 512 | 636e99919b17c3fa3f93d6752811df94 |
.idata | 15872 | c7acd4f6d8c2005ae41da4de0d2706c2 |
.didata | 1024 | 17565e88e8298c3de7d18064811be352 |
.edata | 9728 | a752e8723cd973b249c68418540a7cd4 |
.rsrc | 12462592 | bb2037535083768f10471a9e9e49c664 |
.reloc | 170496 | f4f6d792f575ed86296f45797bfb7099 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for RaUI.exe