How to remove KMS.exe

KMS.exe

The module KMS.exe has been detected as Hack.KMS

KMS.exe
MD5: 5eb1f22b200da6c85e74adbda711a63c
Size: 5 MB
First Published: 2017-05-22 07:06:18 (6 years ago)
Latest Published: 2023-04-30 23:56:16 (a year ago)
Status: Hack.KMS (on last analysis)
Analysis Date: 2023-04-30 23:56:16 (a year ago)
Signed By: Ratiborus MSFree Inc.
Status: Valid
%sysdrive%\windows
%localappdata%\temp
%profile%\downloads\katilimsiz aio mart 2017\katilimsiz aio mart 2017\programlar\windows 10 aktivasyon\wındows10etkınlestırme\kmsauto_lite_portable_v1.2.1..me
%profile%\downloads\cr4ck win 10 y office 2016\cr4ck win 10 y office 2016
%profile%\downloads\cr4ck win 10 y office 2016.zip\cr4ck win 10 y office 2016
%temp%\rar$exa0.680\kmsauto lite portable v1.2.1
%sysdrive%\kmsauto lite portable v1.2.1
%windir%\win2farsi\_tools\active windows 7\activator windows - office\3- kmsauto.lite.exe
%desktop%\new folder (2)\activator\kmsauto lite v1.2.1 portable
%sysdrive%\activators\kmsauto lite portable v1.2.1
KMSAuto.exe
KMS.exe
Cr4ck Win 10 y Office 2016.exe
kmsauto.exe
KMSAuto 2015.exe
15.7%
13.4%
11.1%
7.6%
6.3%
5.3%
4.8%
4.8%
2.5%
2.3%
2.0%
1.8%
1.8%
1.8%
1.5%
1.3%
1.3%
1.0%
1.0%
0.8%
0.8%
0.8%
0.8%
0.8%
0.8%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
Windows 10 60.0%
Windows 7 31.4%
Windows 8.1 5.6%
Windows 8 2.0%
Windows Server 2016 0.5%
Windows Vista 0.2%
Windows Embedded 8.1 0.2%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00001000

PE Sections:

Name Size of data MD5
.code 105984 55636b3671c66165f0035086c1e607d8
.text 307200 8985fbf8488f9f461844be2ac2c71fe4
.rdata 35840 72679c95f19163a0118d222b12234a57
.data 5727744 ea4a9099e98d465b2ff05a8dafbb251c
.rsrc 45568 425aa71b9f0841c5803bffb71cb99329

More information:

Download GridinSoft Anti-Malware - Removal tool for KMS.exe