How to remove windows_reg_ac.exe

windows_reg_ac.exe

The module windows_reg_ac.exe has been detected as Adware.InstallCore

windows_reg_ac.exe
Product Name:

Facuge

Company Name:

MD5: 96fcec5890d881bf1795fdcf8d9ed870
Size: 1 MB
First Published: 2017-07-05 21:08:13 (6 years ago)
Latest Published: 2020-01-23 20:28:48 (4 years ago)
Status: Adware.InstallCore (on last analysis)
Analysis Date: 2020-01-23 20:28:48 (4 years ago)
Signed By: BeamMode (Alpha Criteria Ltd.)
Status: Valid
%localappdata%\temp
%programfiles%\removewat 2.2.7
%sysdrive%\$recycle.bin\s-1-5-21-2758842985-1450606848-3034975965-1000\$r33poar
%programfiles%\microsoft toolkit final
%programfiles%
%temp%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
ICReinstall_windows_reg_ac.exe
windows_reg_ac.exe
22.0%
14.9%
6.4%
5.0%
3.5%
3.5%
3.5%
2.8%
2.8%
2.8%
2.8%
2.1%
2.1%
2.1%
2.1%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
Windows 7 43.7%
Windows 10 43.7%
Windows 8.1 8.5%
Windows Server 2016 1.4%
Windows XP 0.7%
Windows Vista 0.7%
Windows 8 0.7%
Windows Server 2012 R2 0.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00009c40

PE Sections:

Name Size of data MD5
CODE 37888 2fb847efdceef4376e865a98b18a8731
DATA 1024 d5ea23d4ecf110fd2591314cbaa84278
BSS 0 00000000000000000000000000000000
.idata 2560 bb5485bf968b970e5ea81292af2acdba
.tls 0 00000000000000000000000000000000
.rdata 512 9ba824905bf9c7922b6fc87a38b74366
.reloc 0 00000000000000000000000000000000
.rsrc 11264 7cd77b19de39e2ab407342fd829c40f5

More information:

Download GridinSoft Anti-Malware - Removal tool for windows_reg_ac.exe