rkiwrtK.exe

RKiwrtK Application

PFU LIMITED

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Rkiwrtk’. This is installed with Rack2-Viewer (This application may be deleted by deleting Rack2-Filer).
Publisher:
PFU LIMITED  (signed and verified)

Product:
RKiwrtK Application

Version:
1, 0, 10, 1

MD5:
50fcd2bc495bc29457b593a33da4dd2f

SHA-1:
5087d52b398bbf86cd3b2cd402c611a6c0a60c85

SHA-256:
f81e99f6fbab18d30fa46360d5ea13a51f217bf3568de09ff45f92edf8f3c303

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:24:38 PM UTC  (today)

File size:
65.4 KB (66,944 bytes)

Product version:
1, 0, 10, 1

Copyright:
Copyright (C) PFU LIMITED 2003-2007

Original file name:
rkiwrtK.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\pfu\raku2\rkiwrtk.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/5/2010 9:00:00 AM

Valid to:
4/6/2011 8:59:59 AM

Subject:
CN=PFU LIMITED, OU=Software Product Division, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PFU LIMITED, L=Kahoku City, S=Ishikawa, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2C2EC90ED4D2774CC240FB15059F8028

File PE Metadata
Compilation timestamp:
11/1/2010 10:28:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:JKL//hTWoonxa0XwsCk7eZZvFiB9ydnjlMJh5inlKafLWobCb:JKDZTWoow0eF1tj2VElpfacCb

Entry address:
0x42F8

Entry point:
55, 8B, EC, 6A, FF, 68, 70, A1, 40, 00, 68, C4, 40, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, E8, A0, 40, 00, 33, D2, 8A, D4, 89, 15, 44, DF, 40, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 40, DF, 40, 00, C1, E1, 08, 03, CA, 89, 0D, 3C, DF, 40, 00, C1, E8, 10, A3, 38, DF, 40, 00, 33, F6, 56, E8, 55, 02, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 91, 16, 00, 00, FF, 15, EC, A0, 40, 00, A3, 68, E4, 40, 00, E8...
 
[+]

Entropy:
5.4313

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
36 KB (36,864 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Rkiwrtk

Command:
"C:\Program Files\pfu\raku2\rkiwrtk.exe"


The file rkiwrtK.exe has been discovered within the following program.

Publisher's description - “Rack2 is an application that allows you to manage all of your electronic files and scanned paper documents in easy to navigate digital binders. Users can effectively and efficiently find specific files by searching "titles", "sticky note" contents etc.”
www.pfu.fujitsu.com
About 2% of users remove it
 
Powered by Should I Remove It?

Scan rkiwrtK.exe - Powered by Reason Core Security