How to remove $RMIOICQ.exe

$RMIOICQ.exe

The module $RMIOICQ.exe has been detected as Hack.KMS

$RMIOICQ.exe
Product Name:

MSActBackUp

MD5: 392474af738f38abb15a1c372711a637
Size: 985 KB
First Published: 2017-12-18 19:01:44 (6 years ago)
Latest Published: 2018-07-11 13:10:27 (5 years ago)
Status: Hack.KMS (on last analysis)
Analysis Date: 2018-07-11 13:10:27 (5 years ago)
Signed By: Ratiborus MSFree Inc.
Status: Valid
%temp%
%sysdrive%\$recycle.bin
MSActBackup.exe
$RMIOICQ.exe
100.0%
Windows 7 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001000

PE Sections:

Name Size of data MD5
.code 46592 c8e9aca84f79112183ae51da2cad86aa
.text 301056 04cd60a4c6663ec2d68d4f3d5975e846
.rdata 35328 75628d6b3f37f3081d607c3e2d7bb2ed
.data 551424 97d735e5d4b5600a639434ea37474420
.rsrc 69632 37b5607cd1b7e4a258ea34a595e39512

More information:

Download GridinSoft Anti-Malware - Removal tool for $RMIOICQ.exe