How to remove KMSAUTO.EXE
- File Details
- Overview
- Analysis
KMSAUTO.EXE
The module KMSAUTO.EXE has been detected as Hack.KMS
File Details
| MD5: |
0d0fa22b54659fa29d7a1a19bb69c099 |
| Size: |
5 MB |
| First Published: |
2017-05-21 05:04:50 (8 years ago) |
| Latest Published: |
2025-10-21 23:01:10 (2 weeks ago) |
| Status: |
Hack.KMS (on last analysis) |
|
| Analysis Date: |
2025-10-21 23:01:10 (2 weeks ago) |
Overview
| %desktop%\alem\activadores\kmsauto lite portable v1.2.1 |
| %profile%\downloads\activador de windows 10-marlon tutos\activador de windows 10-marlon tutos\activador de office 2016 y win 10 |
| %localappdata%\google\chrome\user data\profile 2\file system\029\t\00\00000027\activador de windows 10-marlon tutos\activador de office 2016 y win 10 |
| %profile%\downloads\activadoroffice2016.zip\activador\kmsauto |
| %mydoc%\instaladores\activadoroffice2016.zip\activador\kmsauto |
| %sysdrive%\activators\kmsauto lite portable v1.2.1\kmsauto lite portable v1.2.1 |
| %desktop%\microsoft.office.2016.proplus.x86-x64-filelist\kmsauto.net |
| %sysdrive%\$recycle.bin\s-1-5-21-2639157428-1009559600-3478265633-1000\$rppirgl\activador de office 2016 marlon tutos\kmsauto |
| %sysdrive%\filmovi i serije\filmovi i serije\serije (novo skinuto)\programi\microsoft office (activator) 2016\office 2016 activator\kmsauto lite portable v1.2.1 |
| %profile%\downloads\alem\activadores\kmsauto lite portable v1.2.1 |
| KMSAuto.exe |
| KMSAUTO.EXE |
| kmsauto.exe |
| KMS.exe |
| KMSAuto (2018_06_16 20_57_40 UTC).exe |
| $R1BCRE8.exe |
|
15.6% |
|
|
14.4% |
|
|
9.0% |
|
|
7.6% |
|
|
7.5% |
|
|
6.5% |
|
|
5.7% |
|
|
4.6% |
|
|
3.6% |
|
|
2.3% |
|
|
1.8% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.0% |
|
|
1.0% |
|
|
0.9% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 10 |
66.8% |
|
| Windows 7 |
25.0% |
|
| Windows 8.1 |
5.9% |
|
| Windows Server 2008 R2 |
0.9% |
|
| Windows 8 |
0.6% |
|
| Windows XP |
0.5% |
|
| Windows Vista |
0.1% |
|
| Windows Embedded 8.1 |
0.1% |
|
| Windows Server 2012 |
0.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00001000 |
| Name |
Size of data |
MD5 |
| .code |
107520 |
27f268b8b43d859482c0618355ab8446 |
| .text |
307200 |
0b4d33e99fe87b0730f0ac289437c15e |
| .rdata |
35840 |
845b07f0ebd235da7031a74ca0534020 |
| .data |
5729792 |
b1f4ff53441a86f772617a389fcff547 |
| .rsrc |
45568 |
e229c9ad3b9502e94eda1816531abfa9 |