How to remove AA_v3.0.exe
- File Details
- Overview
- Analysis
AA_v3.0.exe
The module AA_v3.0.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c59be0a84718d97a82cfa59860bdab3a |
Size: |
713 KB |
First Published: |
2017-06-13 14:07:33 (7 years ago) |
Latest Published: |
2021-01-03 06:39:26 (3 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2021-01-03 06:39:26 (3 years ago) |
Overview
Signed By: |
Ammyy |
Status: |
Valid |
%sysdrive%\egeyazilim\sener |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\7eh5ac7r |
%desktop%\shortcuts |
%programfiles%\fastmag boutique\ammyy |
%desktop%\gereksizler\downloads |
%desktop%\deniz\yeni klasö111 |
%localappdata%\packages\microsoft.microsoftedge_8wekyb3d8bbwe\ac\#!001\microsoftedge\cache\qe0gqbbu\samsung j7 nxt (sm-j701f) 7.0 root file @amp; cert file[1].rar\samsung j7 nxt (sm-j701f) 7.0 root file @amp; cert file\about me\ammyy admin |
%desktop%\backup\e\install |
%desktop%\backup\e\install\varie |
%sysdrive%\tt drive |
Ege Yardim.exe |
AA_v3.0.exe |
AA_v3.exe |
aa_v3.exe |
ammy.exe |
Ammyy Admin.exe |
ammyy.exe |
Projeta.exe |
UzaktanYardim.exe |
Suporte NextSoft Ammyy 3.0.exe |
Ammyy Admin_v3.exe |
8161353480099.exe |
8161353480099 (1).exe |
AA_v3(1).exe |
Ammyy admin_v3.exe |
|
31.3% |
|
|
23.8% |
|
|
8.8% |
|
|
7.5% |
|
|
7.5% |
|
|
6.3% |
|
|
3.8% |
|
|
3.8% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
Windows 7 |
53.8% |
|
Windows 10 |
31.3% |
|
Windows 8.1 |
8.8% |
|
Windows Server 2008 R2 |
3.8% |
|
Windows Server 2012 |
2.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000771fe |
Name |
Size of data |
MD5 |
.text |
512000 |
4da704b61c7649a87c2edc5d2b412638 |
.rdata |
69632 |
5d109d6e73751fec7e8e87da7b7865aa |
.data |
94208 |
8d9c73ea495136f425c3477bf5dec805 |
.rsrc |
45056 |
456c766d80ed8a6815c9980e182d4a08 |