How to remove AutoPico.exe
- File Details
- Overview
- Analysis
AutoPico.exe
The module AutoPico.exe has been detected as Hack.KMS
File Details
Product Name: |
|
MD5: |
dd2b61a0aa7638c179b67da285116ffb |
Size: |
505 KB |
First Published: |
2017-05-28 05:05:58 (7 years ago) |
Latest Published: |
2020-06-14 22:19:47 (4 years ago) |
Status: |
Hack.KMS (on last analysis) |
|
Analysis Date: |
2020-06-14 22:19:47 (4 years ago) |
%programfiles%\kmspico |
%sysdrive%\yedek kaan 29012014\kaan yedek\24.10.2014\emre sefer alan\2013\programlar\office 2013\pco8.5.wt.zip\pco8.5.wt\kmspicov85 |
%sysdrive%\my work flash |
%sysdrive%\dysk_h\jms activator\kmspico |
%sysdrive%\dysk_h\pico85.cheva.softarchive.net.7z\pico85.cheva.softarchive.net |
%sysdrive%\dysk_h\pico85.cheva.softarchive.net\pico85.cheva.softarchive.net |
%sysdrive%\roger-pc\backup set 2015-04-05 113302\backup files 2015-04-05 113302\backup files 16.zip\c\program files |
%programfiles% |
%programfiles% |
%sysdrive%\2-1\soft\2013-0717\microsoft kms activator aio v25.08.2013.rar\kmspico |
|
37.5% |
|
|
16.7% |
|
|
12.5% |
|
|
12.5% |
|
|
8.3% |
|
|
4.2% |
|
|
4.2% |
|
|
4.2% |
|
Windows 7 |
79.2% |
|
Windows 10 |
20.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0007bede |
MVID: |
a5110491-9ce5-4a87-aeca-df27870d92f2 |
Typelib ID: |
892d5768-497e-4232-a15c-fa9f29e06a03 |
Name |
Size of data |
MD5 |
.text |
499712 |
710801f99383c15c987820b1f2d42910 |
.sdata |
512 |
579431f975b3a6b25bffe532fdaf0559 |
.rsrc |
15360 |
5d41dc53084e1eb0489b2b1e44b4f48a |
.reloc |
512 |
1c09ab36bf924d39b0af9765098caa86 |