How to remove UnRAR.exe
UnRAR.exe
The module UnRAR.exe has been detected as Trojan.CoinMiner
File Details
| Product Name: | WinRAR |
| Company Name: | Alexander Roshal |
| MD5: | 4611a5b3f70a8d6c40776e0bfa3b3f36 |
| Size: | 362 KB |
| First Published: | 2017-06-13 00:09:20 (8 years ago) |
| Latest Published: | 2025-01-15 23:01:47 (10 months ago) |
| Status: | Trojan.CoinMiner (on last analysis) | |
| Analysis Date: | 2025-01-15 23:01:47 (10 months ago) |
Overview
| Signed By: | win.rar GmbH |
| Status: | Valid |
Common Places:
| %profile% |
| %profile% |
| %profile% |
| %profile% |
| %profile% |
| %profile% |
| %appdata%\system |
Geography:
| 46.7% | ||
| 13.3% | ||
| 6.7% | ||
| 6.7% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 2.7% | ||
| 2.7% | ||
| 1.3% | ||
| 1.3% | ||
| 1.3% | ||
| 1.3% |
OS Version:
| Windows 7 | 74.7% | |
| Windows 10 | 13.3% | |
| Windows 8.1 | 12.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0002f17b |
PE Sections:
| Name | Size of data | MD5 |
| .text | 269312 | b339d9eef33d2643df5b328ef509f150 |
| .rdata | 38400 | c0fce771105ebec5618abcbf5ff00471 |
| .data | 4608 | 06ebb03c82042870730d13635f6a0b9e |
| .gfids | 512 | f6ff6c68bba196e098fbce17879763fb |
| .tls | 512 | 1f354d76203061bfdd5a53dae48d5435 |
| .rsrc | 31744 | 906038260647147db6bd7a3b21deaad7 |
| .reloc | 9216 | 950e97e7da075ec09ae5b53ea2c7d3f8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for UnRAR.exe