How to remove Rar64.exe

Rar64.exe

The module Rar64.exe has been detected as Trojan.Wacapew

Rar64.exe
Product Name:

SevenZip

Company Name:

Alexander Roshal

MD5: 6549e2e743ec2dd97157a8068ed57aad
Size: 20 KB
First Published: 2026-03-19 23:00:59 (a day ago)
Latest Published: 2026-03-19 23:00:59 (a day ago)
Status: Trojan.Wacapew (on last analysis)
Analysis Date: 2026-03-19 23:00:59 (a day ago)
%localappdata%
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00006747

.NET Info:

MVID: 65e200dc-be11-4402-8816-99c90e7099cc
Typelib ID: ac6e2d70-d9fa-49e4-9e8e-6adf9915e980

PE Sections:

Name Size of data MD5
.text 18432 a205e3b3bcee6f8592e485fcb4e06924
.rsrc 1536 6ffaf9b567bbd9f16198b5133f86c78d
.reloc 512 4c8e8188c69d25615c747dad1d764036

More information:

Download GridinSoft Anti-Malware - Removal tool for Rar64.exe