How to remove F9AA.tmp.exe

F9AA.tmp.exe

The module F9AA.tmp.exe has been detected as Trojan.Downloader

F9AA.tmp.exe
MD5: 0da8fccf71926fbad96b18feed44220f
Size: 772 KB
First Published: 2017-06-26 20:04:39 (7 years ago)
Latest Published: 2018-01-20 18:16:51 (6 years ago)
Status: Trojan.Downloader (on last analysis)
Analysis Date: 2018-01-20 18:16:51 (6 years ago)
Signed By: GROK
Status: Valid
%localappdata%\temp
%temp%
770.tmp.exe
F9AA.tmp.exe
8EE7.tmp.exe
3F22.tmp.exe
21C3.tmp.exe
11DC.tmp.exe
1E88.tmp.exe
2636.tmp.exe
3505.tmp.exe
420F.tmp.exe
6CF6.tmp.exe
30.tmp.exe
44DD.tmp.exe
96D.tmp.exe
3CF1.tmp.exe
5D4D.tmp.exe
96B4.tmp.exe
741.tmp.exe
B3A6.tmp.exe
DCD8.tmp.exe
3E77.tmp.exe
2710.tmp.exe
5E27.tmp.exe
75AD.tmp.exe
26A3.tmp.exe
1555.tmp.exe
8797.tmp.exe
100.0%
Windows 7 92.9%
Windows 10 7.1%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001520

PE Sections:

Name Size of data MD5
.text 16384 b16bf34b19689fd463427069702db6c1
.rdata 626688 160097500d700a75cca08b47d9704490
.data 102400 b44dafd8693fafec7cb4dcdbb998d83a
.rsrc 36864 e9e96a33129a95609e98ccbe198c0835

More information:

Download GridinSoft Anti-Malware - Removal tool for F9AA.tmp.exe