How to remove AAA.exe
AAA.exe
The module AAA.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: | Ammyy Admin |
Company Name: | Ammyy LLC |
MD5: | 2104f66da494fb2cac8d654f02cd85d7 |
Size: | 709 KB |
First Published: | 2017-08-25 19:10:09 (7 years ago) |
Latest Published: | 2020-12-10 14:43:50 (3 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2020-12-10 14:43:50 (3 years ago) |
Overview
Signed By: | Ammyy |
Status: | Valid |
Common Places:
%desktop%\флешка 2017\29.07.17\бухгалтерия |
%desktop%\флешка 2017\28.07.17\бухгалтерия |
%desktop%\флешка 2017\бухгалтерия |
%desktop%\флешка 2017\бухгалтерия 11.02.2017 |
%sysdrive% |
%sysdrive%\arquivos |
%sysdrive%\data backup 24.12.2015\rekha1\my documents |
%sysdrive%\tcl\servidor\aplicativos |
%sysdrive%\respaldo personal\disco d\2012\ordenes\orden general |
%sysdrive%\งานพี่แอนทั้งหมด\smart attendance 2012 |
File Names:
AA_v3.exe |
AAA.exe |
Teleassistenza Asco.exe |
ammyy_old.exe |
Geography:
36.4% | ||
21.2% | ||
15.2% | ||
6.1% | ||
6.1% | ||
6.1% | ||
3.0% | ||
3.0% | ||
3.0% |
OS Version:
Windows 7 | 45.5% | |
Windows 10 | 42.4% | |
Windows Server 2008 R2 | 6.1% | |
Windows Server 2012 | 3.0% | |
Windows 8.1 | 3.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00076eee |
PE Sections:
Name | Size of data | MD5 |
.text | 507904 | 2116b214cbaa84171ab8803084f0a3a6 |
.rdata | 69632 | 119778595d731daa6d155e49aad02e15 |
.data | 94208 | 524ed686c03a141e7dbdc893bacc408a |
.rsrc | 45056 | 16f07d200651d0a123a4dbb4df04b9d4 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for AAA.exe