How to remove RaUI.exe

RaUI.exe

The module RaUI.exe has been detected as Trojan.Injector

RaUI.exe
Product Name:

RaUI Application

Company Name:

Mediatek Inc.

MD5: a5fdfc8de65f9e8f8695e5288133696d
Size: 14 MB
First Published: 2018-09-19 17:09:44 (5 years ago)
Latest Published: 2020-03-15 08:07:37 (4 years ago)
Status: Trojan.Injector (on last analysis)
Analysis Date: 2020-03-15 08:07:37 (4 years ago)
Signed By: MEDIATEK INC.
Status: Invalid (digital signature could be stolen or file could be patched)
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi\rt2870 wireless lan card
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
%programfiles%\mediatekwifi
25.0%
14.3%
10.7%
7.1%
7.1%
7.1%
7.1%
7.1%
7.1%
3.6%
3.6%
Windows 7 75.0%
Windows 10 17.9%
Windows 8.1 7.1%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000196c

PE Sections:

Name Size of data MD5
.text 2411520 2bb2164779153859e98996d11d9e9cd9
.data 542720 648ac53055ebc011363b494b0de88b44
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rdata 512 636e99919b17c3fa3f93d6752811df94
.idata 15872 c7acd4f6d8c2005ae41da4de0d2706c2
.didata 1024 57b789ebc9e8e8cfbc92e0d9185b4293
.edata 9728 491db41f752c7bd960c86297fc06ab88
.rsrc 12462592 d56f7f36f7b24d0f1fd8dbbadcae6df7
.reloc 170496 26f8871b20c1837e0bbcb4bff0a8e075

More information:

Download GridinSoft Anti-Malware - Removal tool for RaUI.exe