How to remove RaUI.exe
RaUI.exe
The module RaUI.exe has been detected as Trojan.Injector
File Details
Product Name: | RaUI Application |
Company Name: | Mediatek Inc. |
MD5: | a5fdfc8de65f9e8f8695e5288133696d |
Size: | 14 MB |
First Published: | 2018-09-19 17:09:44 (6 years ago) |
Latest Published: | 2020-03-15 08:07:37 (4 years ago) |
Status: | Trojan.Injector (on last analysis) | |
Analysis Date: | 2020-03-15 08:07:37 (4 years ago) |
Overview
Signed By: | MEDIATEK INC. |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi\rt2870 wireless lan card |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
%programfiles%\mediatekwifi |
Geography:
25.0% | ||
14.3% | ||
10.7% | ||
7.1% | ||
7.1% | ||
7.1% | ||
7.1% | ||
7.1% | ||
7.1% | ||
3.6% | ||
3.6% |
OS Version:
Windows 7 | 75.0% | |
Windows 10 | 17.9% | |
Windows 8.1 | 7.1% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000196c |
PE Sections:
Name | Size of data | MD5 |
.text | 2411520 | 2bb2164779153859e98996d11d9e9cd9 |
.data | 542720 | 648ac53055ebc011363b494b0de88b44 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rdata | 512 | 636e99919b17c3fa3f93d6752811df94 |
.idata | 15872 | c7acd4f6d8c2005ae41da4de0d2706c2 |
.didata | 1024 | 57b789ebc9e8e8cfbc92e0d9185b4293 |
.edata | 9728 | 491db41f752c7bd960c86297fc06ab88 |
.rsrc | 12462592 | d56f7f36f7b24d0f1fd8dbbadcae6df7 |
.reloc | 170496 | 26f8871b20c1837e0bbcb4bff0a8e075 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for RaUI.exe