How to remove KMSAuto Net.exe
- File Details
- Overview
- Analysis
KMSAuto Net.exe
The module KMSAuto Net.exe has been detected as Hack.KMS
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f6a653f6edd9790a7647de32f9e600c9 |
Size: |
4 MB |
First Published: |
2017-07-18 15:12:35 (7 years ago) |
Latest Published: |
2019-04-27 16:23:57 (5 years ago) |
Status: |
Hack.KMS (on last analysis) |
|
Analysis Date: |
2019-04-27 16:23:57 (5 years ago) |
%desktop%\gianpaolo\desktop\verde\verde |
%sysdrive%\работа\новая папка (2)\activator_w8.1_16.01.14\activator-w8.1.zip |
%sysdrive% |
%desktop%\флёшка |
%sysdrive%\софт\актив\activator_w8.1\activator_w8.1_16.01.14\activator-w8.1.zip |
%sysdrive%\софт\activator_w8.1\activator_w8.1_16.01.14\activator-w8.1.zip |
%sysdrive%\hdd\activator\kmsauto net 2014\kmsauto_net_2014_v1.1.9.b1_portable_ru |
%sysdrive%\hdd\activator\kmsauto net 2014\kmsauto_net_2014_v1.1.9.b1_portable_ru.rar |
%temp%\temp1_activator-w8.1.zip |
%commonappdata% |
|
47.6% |
|
|
38.1% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
Windows 10 |
57.1% |
|
Windows 8.1 |
28.6% |
|
Windows 7 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004006ee |
MVID: |
f691af14-9ef1-4a32-b1f3-985449439b8c |
Typelib ID: |
fcad9796-cfc1-41fa-93da-378996c2a356 |
Name |
Size of data |
MD5 |
.text |
4188160 |
16b6d982a132d07a4e400cd61f8bee80 |
.rsrc |
48640 |
c9e6facc4b4ac6dc3ff18b26557caba7 |
.reloc |
512 |
d0144186da72bf1d46e9f84ff4ac3803 |