How to remove UnRAR.exe
UnRAR.exe
The module UnRAR.exe has been detected as Trojan.CoinMiner

File Details
Product Name: | WinRAR |
Company Name: | Alexander Roshal |
MD5: | 4611a5b3f70a8d6c40776e0bfa3b3f36 |
Size: | 362 KB |
First Published: | 2017-06-13 00:09:20 (7 years ago) |
Latest Published: | 2025-01-15 23:01:47 (5 months ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2025-01-15 23:01:47 (5 months ago) |
Overview
Signed By: | win.rar GmbH |
Status: | Valid |
Common Places:
%profile% |
%profile% |
%profile% |
%profile% |
%profile% |
%profile% |
%appdata%\system |
Geography:
46.7% | ||
13.3% | ||
6.7% | ||
6.7% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
2.7% | ||
2.7% | ||
1.3% | ||
1.3% | ||
1.3% | ||
1.3% |
OS Version:
Windows 7 | 74.7% | |
Windows 10 | 13.3% | |
Windows 8.1 | 12.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0002f17b |
PE Sections:
Name | Size of data | MD5 |
.text | 269312 | b339d9eef33d2643df5b328ef509f150 |
.rdata | 38400 | c0fce771105ebec5618abcbf5ff00471 |
.data | 4608 | 06ebb03c82042870730d13635f6a0b9e |
.gfids | 512 | f6ff6c68bba196e098fbce17879763fb |
.tls | 512 | 1f354d76203061bfdd5a53dae48d5435 |
.rsrc | 31744 | 906038260647147db6bd7a3b21deaad7 |
.reloc | 9216 | 950e97e7da075ec09ae5b53ea2c7d3f8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for UnRAR.exe
