How to remove AA_v3.1.exe
- File Details
- Overview
- Analysis
AA_v3.1.exe
The module AA_v3.1.exe has been detected as PUP.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2db215b13f7f97cb012b91a99786ca2e |
Size: |
718 KB |
First Published: |
2017-06-14 06:08:01 (7 years ago) |
Latest Published: |
2018-08-07 09:09:55 (6 years ago) |
Status: |
PUP.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2018-08-07 09:09:55 (6 years ago) |
Overview
Signed By: |
Ammyy |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\6kqgblai |
%profile%\downloads\aa_v3.1.rar |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\v3kd5yne |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\v3kd5yne\aa_v3.1[1].rar |
%profile%\downloads\aa_v3.1 |
%sysdrive%\اتوماسیون اداری |
AA_v3.1[1].exe |
AA_v3.1.exe |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00077c7e |
Name |
Size of data |
MD5 |
.text |
512000 |
90c2dc6e54005bff712999cc5da24889 |
.rdata |
69632 |
ed08907799cfa17b6550354c51027a88 |
.data |
98304 |
239eda3d278a2a9ba4dba777e167b002 |
.rsrc |
45056 |
8a83d77982f9887b3f9179096431330b |