How to remove KMS.exe
KMS.exe
The module KMS.exe has been detected as Hack.KMS
File Details
| MD5: | 415898f14843d4a6537cf8f43d328eaf |
| Size: | 6 MB |
| First Published: | 2017-05-21 21:04:54 (8 years ago) |
| Latest Published: | 2024-09-29 23:02:17 (a year ago) |
| Status: | Hack.KMS (on last analysis) | |
| Analysis Date: | 2024-09-29 23:02:17 (a year ago) |
Overview
| Signed By: | WZT |
| Status: | Valid |
Common Places:
| %sysdrive%\windows |
| %sysdrive%\activators\kmsauto lite portable v1.2.4 |
| %localappdata%\temp |
| %desktop%\activators+dotnet 4.6.2\kmsauto lite portable v1.2.4 |
| %desktop%\kmsauto lite portable v1.2.4 |
| %sysdrive%\$recycle.bin\s-1-5-21-1123881605-538375082-1153501521-1000\$r67qc13.1\kmsauto lite portable v1.2.4 |
| %desktop%\activators+dotnet 4.6.1\kmsauto lite portable v1.2.4 |
| %desktop%\новая папка (5)\sources\$oem$\$1\activators\kmsauto lite portable v1.2.4 |
| %desktop%\activators\kmsauto lite portable v1.2.4 |
| %profile%\downloads\windows 10 v1703 [15063.447] 32in1 with dart 10 en-hr july 2017 by marbar\_extra_.rar\kmsauto lite portable v1.2.4 |
File Names:
| KMSAuto.exe |
| KMS.exe |
| KMSAuto Net.exe |
| License.exe |
| trz38BB.tmp |
| kmsautolite.exe |
| gKMSAuto.exe |
| $RIG46DI.exe |
| $R828G8P.exe |
Geography:
| 35.4% | ||
| 21.5% | ||
| 5.5% | ||
| 4.4% | ||
| 2.7% | ||
| 2.2% | ||
| 2.1% | ||
| 1.4% | ||
| 1.4% | ||
| 1.4% | ||
| 1.4% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 0.8% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.3% | ||
| 0.3% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% | ||
| 0.1% |
OS Version:
| Windows 10 | 52.8% | |
| Windows 7 | 39.7% | |
| Windows 8.1 | 6.2% | |
| Windows 8 | 0.5% | |
| Windows XP | 0.2% | |
| Windows Embedded Standard | 0.2% | |
| Windows Vista | 0.1% | |
| Windows Embedded 8.1 | 0.1% | |
| Windows Server 2008 R2 | 0.1% | |
| Windows Server 2016 | 0.1% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00001000 |
PE Sections:
| Name | Size of data | MD5 |
| .code | 107520 | 54c77e9f1a7fc471d243b81ddfd3dec7 |
| .text | 307200 | f1d1dcb82445e9ab9b4b2f73af338172 |
| .rdata | 35840 | 845b07f0ebd235da7031a74ca0534020 |
| .data | 6125056 | 96d46480ffd461719107f0fedc5fa86b |
| .rsrc | 45568 | ded747d9d1338903e188cf65f5c929c5 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for KMS.exe