Should I block it?

90%
90% of PCs block this file from running.
Possible reason:
Multiple malware detections

VersionsAdditional versions

5.10.4 0.23%
5.10.0 0.46%
5.10.0 0.12%
5.1.0 2.44%
5.1.0 0.35%
5.1.0 0.23%
5.1.0 0.23%
5.0.8 0.12%
5.0.8 0.12%
5.0.8 0.12%
5.0.8 0.12%
5.0.8 0.12%
5.0.8 0.12%
5.0.7 0.12%
5.0.6 0.12%
5.0.6 0.46%
5.0.6 0.12%
5.0.6 0.12%
5.0.5 0.12%
5.0.5 0.12%
5.0.5 0.12%
5.0.5 0.12%
5.0.5 0.12%
5.0.5 0.12%
5.0.4 0.12%
View more

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
LookupPrivilegeValueA, OpenProcessToken, SetFileSecurityA, SetFileSecurityW, GetSecurityDescriptorLength, GetFileSecurityA, GetFileSecurityW, RegCloseKey, RegQueryValueExA, RegOpenKeyExA, RegEnumValueA, RegQueryValueExW, RegSetValueExW, RegSetValueExA, RegCreateKeyExA, RegEnumKeyExA, RegDeleteValueA, RegDeleteKeyA, AdjustTokenPrivileges, LookupPrivilegeValueW, IsTextUnicode, RegEnumValueW, RegCreateKeyExW, RegDeleteValueW, RegEnumKeyExW, RegDeleteKeyW, RegOpenKeyExW, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext
comctl32.dll
ImageList_ReplaceIcon, ImageList_Create, ImageList_Destroy, ImageList_Remove, ImageList_AddMasked, ImageList_Add, PropertySheetA, InitCommonControlsEx, CreateStatusWindowW, PropertySheetW
comdlg32.dll
GetOpenFileNameW, GetOpenFileNameA, GetSaveFileNameA, CommDlgExtendedError, ChooseFontA, GetSaveFileNameW, ChooseFontW
gdi32.dll
MoveToEx, Rectangle, LineTo, CreatePatternBrush, GetDeviceCaps, CreateCompatibleBitmap, CreateBitmap, GetMapMode, SetPixel, SetMapMode, StretchBlt, GetTextExtentPoint32A, SetBkColor, BitBlt, GetObjectA, CreateCompatibleDC, GetPixel, DeleteDC, ExtTextOutA, TextOutA, CreatePen, CreateSolidBrush, SetTextColor, Polygon, Polyline, SelectObject, GetTextFaceA, GetTextMetricsA, CreateFontA, DPtoLP, DeleteObject, GetTextExtentPoint32W, ExtTextOutW, GetObjectW, TextOutW, GetTextFaceW, GetTextMetricsW, CreateFontW
kernel32.dll
DllMain
ole32.dll
OleInitialize, CoCreateInstance, OleSetClipboard, DoDragDrop, OleUninitialize, CreateStreamOnHGlobal, CoTaskMemFree, CoTaskMemAlloc, CLSIDFromString, CoInitializeEx
shell32.dll
DragFinish, DragQueryFileA, DragQueryFileW, DragAcceptFiles, Shell_NotifyIconA, ShellExecuteA, ExtractIconExA, SHFileOperationA, ShellExecuteExA, SHGetMalloc, SHBrowseForFolderA, SHChangeNotify, SHGetDesktopFolder, SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetFileInfoA, FindExecutableA, SHGetPathFromIDListW, FindExecutableW, Shell_NotifyIconW, ShellExecuteW, SHGetFileInfoW, SHAddToRecentDocs, SHFileOperationW, ShellExecuteExW, SHBrowseForFolderW
shlwapi.dll
StrCmpLogicalW, SHAutoComplete
user32.dll
CreateDialogParamA, PostThreadMessageA, CharToOemBuffA, IsChild, GetLastActivePopup, GetClipboardData, GetMenuItemID, PostQuitMessage, InsertMenuA, LoadMenuA, RegisterClassA, LoadAcceleratorsA, FindWindowA, GetMenuState, SetDlgItemTextW, CreateIconIndirect, TranslateAcceleratorA, IsDialogMessageA, SetPropA, RegisterWindowMessageA, SetMenu, EnumWindows, FindWindowExA, CreateIcon, SetWindowTextW, GetWindowTextW, FlashWindow, CharUpperW, IsIconic, IntersectRect, ValidateRect, GetSysColor, CopyImage, FillRect, ExitWindowsEx, SetScrollPos, DrawIconEx, LoadStringA, GetWindow, SetMenuItemInfoA, IsCharUpperW, IsCharAlphaW, CharLowerW, IsCharUpperA, IsCharAlphaA, CharLowerA, OpenClipboard, EmptyClipboard, SetClipboardData, CharToOemA, CloseClipboard, MessageBeep, PeekMessageA, GetFocus, SetForegroundWindow, CopyIcon, EnableMenuItem, CheckMenuItem, LoadBitmapA, InsertMenuItemA, LoadImageA, MapWindowPoints, SetTimer, KillTimer, UpdateWindow, CharUpperA, GetClientRect, BeginPaint, EndPaint, SetWindowTextA, IsWindow, GetWindowTextLengthA, AppendMenuA, ScrollWindowEx, LoadIconA, SetScrollRange, GetDialogBaseUnits, PtInRect, SendMessageW, GetWindowPlacement, SetWindowPlacement, CreateDialogIndirectParamA, GetPropA, RemovePropA, GetSystemMenu, BringWindowToTop, GetMessageA, TranslateMessage, DispatchMessageA, RedrawWindow, GetIconInfo, SendMessageA, SetFocus, SetWindowPos, CreateWindowExA, DestroyWindow, GetWindowTextA, AppendMenuW, DrawMenuBar, GetMenu, GetSubMenu, DeleteMenu, GetMenuItemCount, GetMenuItemInfoA, ScreenToClient, ClientToScreen, CreatePopupMenu, SetWindowLongA, TrackPopupMenu, DestroyMenu, CallWindowProcA, RegisterClipboardFormatA, GetKeyState, LoadCursorA, SetCursor, GetCursorPos, WindowFromPoint, GetWindowThreadProcessId, InvalidateRect, GetDC, ReleaseDC, GetDesktopWindow, GetWindowLongA, GetSystemMetrics, ShowWindow, EnableWindow, IsWindowEnabled, SetDlgItemInt, GetDlgItemInt, IsDlgButtonChecked, PostMessageA, EnumChildWindows, GetParent, GetDlgItem, GetWindowRect, GetClassNameA, CheckDlgButton, MessageBoxA, IsWindowVisible, OemToCharBuffA, DialogBoxParamA, SendDlgItemMessageA, DestroyIcon, GetDlgItemTextA, SetDlgItemTextA, EndDialog, OemToCharA, DefWindowProcA, MoveWindow, CreateDialogIndirectParamW, LoadIconW, CreateDialogParamW, PostThreadMessageW, InsertMenuW, LoadMenuW, RegisterClassW, LoadAcceleratorsW, LoadStringW, SetMenuItemInfoW, SystemParametersInfoW, GetComboBoxInfo, GetPropW, GetMessageW, PeekMessageW, LoadBitmapW, InsertMenuItemW, LoadImageW, GetWindowTextLengthW, GetMenuItemInfoW, CharToOemBuffW, SetWindowLongW, CallWindowProcW, RegisterClipboardFormatW, LoadCursorW, RemovePropW, TranslateAcceleratorW, IsDialogMessageW, SetPropW, FindWindowW, GetForegroundWindow, RegisterWindowMessageW, FindWindowExW, RegisterClassExW, DispatchMessageW, DefWindowProcW, CreateWindowExW, GetDlgItemTextW, CopyRect, GetWindowLongW, SystemParametersInfoA, PostMessageW, GetClassNameW, MessageBoxW, DialogBoxParamW, SendDlgItemMessageW, GetMonitorInfoW
uxtheme.dll
IsAppThemed, IsThemeActive

WinRAR.exe

WinRAR by win.rar GmbH (Signed)

Remove WinRAR.exe
Version:   3.80
MD5:   223da3018ab0c1cae4e760368d1dbe48
SHA1:   9b7e893906ac0645675bd64f7c4cfd4d22f7f5ba
SHA256:   2ca6ce7096085fab96a4f789d05f88afdb32d251c7b6aa424268a8d377cda301
Warning 8 antivirus scanners has detected malware.

What is WinRAR.exe?

WinRAR is a powerful archive manager. It can backup your data and reduce the size of email attachments, decompress RAR, ZIP and other files downloaded from Internet and create new archives in RAR and ZIP file format.

About WinRAR.exe (from win.rar GmbH)

There is no better way to compress files for efficient and secure file transfer, faster e-mail transmission and well organized data storage. Over 500 million users world-wide make WinRAR the worlds's

Overview

winrar.exe is malware that executes as a process with the local user's privileges. This is typically installed with the program WinRAR archiver published by win.rar GmbH. The file is digitally signed by win.rar GmbH which was issued by the COMODO CA Limited certificate authority (CA).

DetailsDetails

File name:winrar.exe
Publisher:Alexander Roshal
Product name:WinRAR
Description:WinRAR archiver
Typical file path:C:\Program Files\winrar\winrar.exe
File version:3.80
Size:1.26 MB (1,320,960 bytes)
Certificate
Issued to:win.rar GmbH
Authority (CA):COMODO CA Limited
Expiration date:Sunday, June 14, 2015
Digital DNA
Entropy:6.415815
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
win.rar GmbH
12% remove
WinRAR archiver is a shareware file archiver that is able to create RAR archives natively.

BehaviorsBehaviors

Shell open command
  • WinRAR

MalwareMalware detections

Based on 40+ industry antivirus scanners, 8 of them detected the following malware.
Antivirus engineEngine versionDetection
AVG 2014.0.3629 Generic2_c.BHRL
Commtouch 5.3.2.6 W32/Downldr2.HGJR
F-Prot v6.4.6.5.141 W32/Downldr2.HGJR
K7 AntiVirus 9.144.7182 Trojan-Downloader
McAfee 5.400.1158 Artemis!223DA3018AB0
McAfee Gateway Anti-Malware v2012.1-dat Artemis!223DA3018AB0
Trend Micro HouseCall 9.500.0.1008 TROJ_GEN.RC1H1IK
VIPRE Antivirus 12150 Trojan.Win32.Generic!BT

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 28.00%
Windows 7 Ultimate 24.00%
Microsoft Windows XP 9.00%
Windows 8.1 Pro 6.00%
Windows 8 Pro 5.50%
Windows 7 Professional 5.00%
Windows 8.1 4.50%
Windows 8.1 Single Language 2.50%
Windows 7 Home Basic 2.50%
Windows 8.1 Pro with Media Center 2.00%
Windows 8 Single Language 2.00%
Windows 8 1.50%
Windows 8 Enterprise 1.00%
Windows Vista Home Premium 1.00%
Windows 8.1 Enterprise 1.00%
Windows 8 Pro with Media Center 1.00%
Windows 8.1 N 0.50%
Windows 8 Enterprise N 0.50%
Windows Vista Home Basic 0.50%
Windows 8 Enterprise Evaluation 0.50%
Windows 8.1 Pro Preview 0.50%
23 other Windows OS version

Distribution by countryDistribution by country

United States installs about 22.11% of WinRAR.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 22.39%
ASUS 18.66%
Hewlett-Packard 11.57%
Acer 10.82%
Lenovo 9.70%
Toshiba 6.72%
Intel 5.22%
GIGABYTE 3.73%
Compaq 2.99%
Sony 2.24%
Samsung 1.87%
Alienware 1.49%
American Megatrends 1.12%
Gateway 0.75%
MSI 0.75%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE