How to remove AutoKMS.exe

AutoKMS.exe


The module AutoKMS.exe has been detected as Trojan.HackKMS

AutoKMS.exe
MD5: 582f07f389c28ce5a511269af927f0a3
Size: 4 MB
First Published: 2017-05-25 11:11:52 (7 months ago)
Latest Published: 2017-12-13 14:06:08 (a day ago)
Status: Trojan.HackKMS (on last analysis)
Analysis Date: 2017-12-13 14:06:08 (a day ago)
%windir%\autokms
%appdata%\zhp\quarantine
%windir%
14.3%
13.0%
7.8%
4.3%
3.9%
3.9%
3.5%
3.0%
2.6%
2.6%
2.2%
2.2%
2.2%
2.2%
2.2%
1.7%
1.7%
1.3%
1.3%
1.3%
1.3%
1.3%
1.3%
1.3%
1.3%
1.3%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
Windows 10 70.4%
Windows 7 17.4%
Windows 8.1 10.9%
Windows 8 1.3%
AutoKMS.exe Trojan.Agent
vAutoKMS.exe Trojan.Agent
AutoKMS.exe Virtool.HackKMS
AutoKMS.exe General Threat
{0F901FA8-0196-40FA-AA51-5CC05 Trojan.Agent
AutoKMS.exe Trojan.HackKMS
AutoKMS.exe Trojan.Agent
AutoKMS.exe Virtool.AutoKMS
AutoKMS.exe Hack.Gen
A0010394.exe Hack.HackKMS
AutoKMS.exe Trojan.Agent
AutoKMS.exe Trojan.Agent
AutoKMS.exe Virtool.Gendows
AutoKMS.exe General Threat
AutoKMS.exe Virtool.Gendows
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0049aeb0

.NET Info:

MVID: 1f216873-369f-4999-85bf-cfa0d204a984
Typelib ID: 3e577747-1842-4364-af1e-ed2a30c03f61

PE Sections:

Name Size of data MD5
.text 4820992 cd37580b4ad3399ab8ebeda2ea16fd19
.rsrc 374272 c1c2786d651571afcc3ead85c461492a
.reloc 512 43385771a7d581fce5eb5786184b215f

More information:

Download GridinSoft Anti-Malware - Removal tool for AutoKMS.exe
Leave a Comment