aa_v3.5.rar

The file aa_v3.5.rar has been detected as a potentially unwanted program by 12 anti-malware scanners. The file has been seen being downloaded from rkglobal.net and multiple other hosts.
MD5:
d0117d6722b5c75fdccb5218d814c009

SHA-1:
de56c8ef09af5ffef1935a95a13f182a8c80e1d3

SHA-256:
7f8440185ececd867f20081b424b16e9e553abeb9ab8d0c10baf5fe373ae4b1a

Scanner detections:
12 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 12:45:35 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.RemoteAdmin
7.1.1

Avira AntiVirus
SPR/RemoteAdmin.765952
8.3.1.6

avast!
Win32:RemoteAdmin-B [PUP]
2014.9-150730

AVG
RemoteAdmin
2016.0.3032

Bkav FE
W32.HfsAdware
1.3.0.6979

Dr.Web
Threat.Undefined
9.0.1.05190

ESET NOD32
Win32/RemoteAdmin.Ammyy.C potentially unsafe application
7.0.302.0

G Data
Win32.Riskware.RemoteAdmin
15.7.25

Kaspersky
not-a-virus:RemoteAdmin.Win32.Ammyy
15.0.0.543

McAfee
Artemis!11BC606269A1
5600.6688

NANO AntiVirus
Riskware.Win32.RemoteAdmin.dskdxp
0.30.24.2668

Rising Antivirus
PE:Malware.Ammyy!6.1139
23.00.65.15728

File size:
341.1 KB (349,253 bytes)

The file aa_v3.5.rar has been seen being distributed by the following 4 URLs.

http://rkglobal.net/.../635817337275260608_AA_v3.5.rar

http://179.127.32.7:90/.../Acesso-Remoto-Ammyy-Admin-v3.5.rar

Remove aa_v3.5.rar - Powered by Reason Core Security