Threat Search: 

ThreatExpert's Statistics for not-a-virus:RemoteAdmin.Win32.RAdmin.20 [Ikarus]:

not-a-virus:RemoteAdmin.Win32.RAdmin.20 [Ikarus] is also known as:
Threat AliasNumber of Incidents
not-a-virus:RemoteAdmin.Win32.RAdmin.20 [Kaspersky Lab]31
RemAdm-RemoteAdmin [McAfee]31
Backdoor.Radmin [PC Tools]24
Remacc.Radmin [Symantec]13
RemoteAccess:Win32/GhostRadmin [Microsoft]8
BKDR_RADMIN.N [Trend Micro]2
Backdoor.RA-based.BH [PC Tools]1
not-a-virus:RemoteAdmin.Win32.RAdmin.21 [Kaspersky Lab]1

not-a-virus:RemoteAdmin.Win32.RAdmin.20 [Ikarus] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation6
China1

not-a-virus:RemoteAdmin.Win32.RAdmin.20 [Ikarus] is known to be created as:
%ProgramFiles%\infium\messenger infium final\svchost.exe
%ProgramFiles%\radmin\r_server.exe
%System%\admdll.dll
%System%\drivers\str\svchost.exe
%System%\r_server.exe
%System%\raddrv.dll
%Temp%\s60..dll
%Temp%\svchost.exe
%Windir%\admdll.dll
%Windir%\s60.1.dll
%Windir%\svchost.exe
Notes:
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.