How to remove systems.exe

systems.exe

The module systems.exe has been detected as Trojan.Agent

systems.exe
Product Name:

RDP Host Support

Company Name:

Stas'M Corp.

MD5: 3288c284561055044c489567fd630ac2
Size: 1 MB
First Published: 2018-02-27 09:11:30 (7 years ago)
Latest Published: 2025-05-29 23:01:16 (a month ago)
Status: Trojan.Agent (on last analysis)
Analysis Date: 2025-05-29 23:01:16 (a month ago)
%desktop%
%commonappdata%\package cache
%desktop%\rdp
%commonappdata%
%sysdrive%
%profile%\downloads\compressed
%sysdrive%\script_v3.4\tweak\termsrv
%sysdrive%\backups\clientes\cfc\servidor
%sysdrive%\0000
%profile%\downloads
RDPWInst.exe
systems.exe
43.0%
14.2%
4.3%
3.2%
2.8%
2.6%
2.2%
2.0%
1.8%
1.8%
1.6%
1.6%
1.4%
1.2%
1.0%
1.0%
1.0%
1.0%
1.0%
1.0%
0.8%
0.8%
0.6%
0.6%
0.6%
0.6%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
Windows 10 70.5%
Windows 7 22.7%
Windows 8.1 3.7%
Windows Server 2008 R2 1.2%
Windows Server 2016 0.8%
Windows Server 2012 R2 0.6%
Windows 8 0.2%
Windows Embedded 8.1 0.2%
Windows Vista 0.2%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0004373c

PE Sections:

Name Size of data MD5
.text 267264 57f264ff01edf4e371a016c00d257da2
.itext 8192 8c80182b8ffa4ecf701d0e04adade368
.data 5120 f970a38aebc02446dabd332c7538cb51
.bss 0 00000000000000000000000000000000
.idata 5120 42c4746821e0d7b2ede5358725263ab3
.tls 0 00000000000000000000000000000000
.rdata 512 f26e8ed28f135d324c935a3a77a5cc99
.reloc 24576 ae8aa2efa50bb9cef5b61dbfbac527a3
.rsrc 1148416 21d8bea77a489a4370f8d201a8ba9f93

More information:

Download GridinSoft Anti-Malware - Removal tool for systems.exe