How to remove KMSAuto.exe.quarantined
- File Details
- Overview
- Analysis
KMSAuto.exe.quarantined
The module KMSAuto.exe.quarantined has been detected as Hack.KMS
File Details
MD5: |
6e621f2b13849c29240f0309c7837f50 |
Size: |
5 MB |
First Published: |
2017-05-30 17:10:33 (7 years ago) |
Latest Published: |
2024-07-26 23:02:06 (6 months ago) |
Status: |
Hack.KMS (on last analysis) |
|
Analysis Date: |
2024-07-26 23:02:06 (6 months ago) |
Overview
%sysdrive%\windows |
%temp%\rar$exb0.095 |
%profile%\downloads |
%temp%\rar$exb0.138 |
%profile%\downloads\kmsauto.lite.portable.v1.2.0 |
%profile%\downloads\kmsauto.lite.portable.v1.2.0 (1) |
%desktop%\важное\kms auto |
%temp%\rar$drb0.462 |
%sysdrive%\$recycle.bin\s-1-5-21-2184686354-1473022005-3314498220-1001\$r3y89x4.0 |
%desktop%\новая папка |
KMSAuto.exe |
KMSAuto.exe.quarantined |
KMSAuto (2018_05_07 19_59_44 UTC).exe |
$RU16CT5.exe |
|
55.7% |
|
|
29.6% |
|
|
4.9% |
|
|
2.3% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.9% |
|
|
0.6% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
88.5% |
|
Windows 7 |
9.5% |
|
Windows 8.1 |
1.7% |
|
Windows Embedded 8.1 |
0.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001000 |
Name |
Size of data |
MD5 |
.code |
104448 |
cb89c95ad97867e07c2dd9b17311d070 |
.text |
307200 |
b6e279446f598b37416ed564e8cca8c1 |
.rdata |
35840 |
72679c95f19163a0118d222b12234a57 |
.data |
5677056 |
4d5355b59bc9564147aa9a057fc61806 |
.rsrc |
45568 |
db379eacf233089088640537592fcfea |