How to remove AutoKMS.exe
- File Details
- Overview
- Analysis
AutoKMS.exe
The module AutoKMS.exe has been detected as Trojan.HackKMS
File Details
MD5: |
65c90a9b036731c9d1ebcea9f301a9b9 |
Size: |
3 MB |
First Published: |
2017-05-21 09:01:15 (6 years ago) |
Latest Published: |
2020-06-17 10:17:54 (3 years ago) |
Status: |
Trojan.HackKMS (on last analysis) |
|
Analysis Date: |
2020-06-17 10:17:54 (3 years ago) |
%windir%\autokms |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
|
40.7% |
|
|
18.5% |
|
|
14.8% |
|
|
7.4% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
Windows 7 |
37.0% |
|
Windows 10 |
29.6% |
|
Windows 8.1 |
29.6% |
|
Windows 8 |
3.7% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00310f5e |
MVID: |
ab201dba-99bf-4087-abc0-5a04594da0a5 |
Typelib ID: |
3e577747-1842-4364-af1e-ed2a30c03f61 |
Name |
Size of data |
MD5 |
.text |
3207168 |
cb02b7acdd9b52d9240665877715d731 |
.rsrc |
374272 |
e777fe5c4311e01ef8d8660eaa920eed |
.reloc |
512 |
d90cc891af2a374f034507c03f97b4d0 |