How to remove Rar64.exe
Rar64.exe
The module Rar64.exe has been detected as Trojan.Wacapew
File Details
| Product Name: | SevenZip |
| Company Name: | Alexander Roshal |
| MD5: | 6549e2e743ec2dd97157a8068ed57aad |
| Size: | 20 KB |
| First Published: | 2026-03-19 23:00:59 (a day ago) |
| Latest Published: | 2026-03-19 23:00:59 (a day ago) |
| Status: | Trojan.Wacapew (on last analysis) | |
| Analysis Date: | 2026-03-19 23:00:59 (a day ago) |
Common Places:
| %localappdata% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00006747 |
.NET Info:
| MVID: | 65e200dc-be11-4402-8816-99c90e7099cc |
| Typelib ID: | ac6e2d70-d9fa-49e4-9e8e-6adf9915e980 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 18432 | a205e3b3bcee6f8592e485fcb4e06924 |
| .rsrc | 1536 | 6ffaf9b567bbd9f16198b5133f86c78d |
| .reloc | 512 | 4c8e8188c69d25615c747dad1d764036 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Rar64.exe