How to remove A0706907.sys
- File Details
- Overview
- Analysis
A0706907.sys
The module A0706907.sys has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
1ddc53d670c6e853c4ee8558efde7b34 |
Size: |
11 KB |
First Published: |
2017-08-15 07:03:13 (7 years ago) |
Latest Published: |
2020-10-12 19:06:58 (4 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2020-10-12 19:06:58 (4 years ago) |
Overview
%programfiles%\avanquest\systemsuite\mirrordrivers\xp\driver |
%programfiles%\avanquest\fix-it\mirrordrivers\xp\driver |
%sysdrive%\programmi\_ultravnc\driver\driver |
%programfiles%\ultravnc\drivers\xp\driver |
%sysdrive%\windows.old\program files\ultravnc\driver\driver |
%sysdrive%\windows.old\windows\system32\drivers |
%programfiles%\impcremote\uvnc\driver\xp\driver |
%system%\reinstallbackups\0000\driverfiles |
%system%\drivers |
%sysdrive%\system volume information\_restore{987e0331-0f01-427c-a58a-7a2e4aabf84d}\rp2946 |
|
28.6% |
|
|
26.2% |
|
|
11.9% |
|
|
11.1% |
|
|
4.0% |
|
|
3.2% |
|
|
2.4% |
|
|
2.4% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 10 |
39.7% |
|
Windows 7 |
27.8% |
|
Windows XP |
11.9% |
|
Windows Server 2003 |
8.7% |
|
Windows 8.1 |
4.8% |
|
Windows Server 2012 R2 |
3.2% |
|
Windows Server 2008 R2 |
2.4% |
|
Windows 8 |
1.6% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00010000 |
Entry Address: |
0x00000705 |
Name |
Size of data |
MD5 |
.text |
256 |
7b6fbd6a811c598d1059c609d00667af |
.rdata |
256 |
90be71b0d1f31b3632eed59ad1ce0524 |
.data |
128 |
1f558917e0b83de44fffa4db41aab932 |
INIT |
256 |
992d799a44b12d2c61bcfe5fb4047332 |
.rsrc |
1024 |
77bcfd03441aff708b905c18768980ef |
.reloc |
128 |
a3f50c969934676da10da183eff63563 |