How to remove Rar64.exe
Rar64.exe
The module Rar64.exe has been detected as Trojan.Wacapew
File Details
| Product Name: | SevenZip |
| Company Name: | Alexander Roshal |
| MD5: | 040d19a7e62570413817f6067e9fea28 |
| Size: | 75 KB |
| First Published: | 2024-07-25 23:01:19 (2 years ago) |
| Latest Published: | 2024-08-09 23:01:55 (2 years ago) |
| Status: | Trojan.Wacapew (on last analysis) | |
| Analysis Date: | 2024-08-09 23:01:55 (2 years ago) |
Common Places:
| %localappdata% |
| %localappdata% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0001435e |
.NET Info:
| MVID: | d280fb34-ac54-4ef9-b9cc-1d3dcbbc60dc |
| Typelib ID: | ac6e2d70-d9fa-49e4-9e8e-6adf9915e980 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 74752 | 5fd5ae742efafb9d7c94013fe0137fab |
| .rsrc | 1536 | 7b2711ce4ce50239a3e117d487583813 |
| .reloc | 512 | 2fd980b7de226bd0877f4836d457750c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Rar64.exe