How to remove Rar64.exe

Rar64.exe

The module Rar64.exe has been detected as Trojan.Wacapew

Rar64.exe
Product Name:

SevenZip

Company Name:

Alexander Roshal

MD5: a0e6f5f7b045bc4614660b14d08ad0ac
Size: 20 KB
First Published: 2025-05-28 23:00:44 (11 months ago)
Latest Published: 2025-05-28 23:00:44 (11 months ago)
Status: Trojan.Wacapew (on last analysis)
Analysis Date: 2025-05-28 23:00:44 (11 months ago)
%localappdata%
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00006563

.NET Info:

MVID: 363a682d-1cb1-44a7-85bb-b814a983c9a9
Typelib ID: ac6e2d70-d9fa-49e4-9e8e-6adf9915e980

PE Sections:

Name Size of data MD5
.text 17920 7cddf119323d10f0929c8019264e4def
.rsrc 1536 6ffaf9b567bbd9f16198b5133f86c78d
.reloc 512 dc6e33c4653c8beb52a38262f47bc8cd

More information:

Download GridinSoft Anti-Malware - Removal tool for Rar64.exe