How to remove KMSELDI.EXE
- File Details
- Overview
- Analysis
KMSELDI.EXE
The module KMSELDI.EXE has been detected as Crack.AutoKMS
File Details
Product Name: |
|
Company Name: |
|
MD5: |
73853d00674b63ae2e3d450a358bc56c |
Size: |
1 MB |
First Published: |
2017-05-22 04:02:10 (7 years ago) |
Latest Published: |
2023-03-21 23:36:10 (2 years ago) |
Status: |
Crack.AutoKMS (on last analysis) |
|
Analysis Date: |
2023-03-21 23:36:10 (2 years ago) |
Overview
%programfiles%\kmspico |
%sysdrive%\armazém dos biindchens\odacir clévio\meus arquivos recebidos\2016\k\kmspico 10 baixelogo\kmspicoportable.rar |
%sysdrive%\windows.old\program files\kmspico |
%appdata%\zhp\quarantine\kmspico |
%programfiles%\kmspico_mod |
%profile%\downloads\kmspico-10.0.4\kmspicoportable |
%programfiles%\kmspico v10.0.4 |
%programfiles% |
%sysdrive%\david\pendrive\instalaçoes\ativadores windows\kmspico10 |
%sysdrive%\microsoft\microsoft windows 8 1 pro x64\kmspico v10.0.4\kmspico1004.rar\kmspico.v10.0.4.windows.and.office.kms.activator |
KMSELDI.exe |
KMSELDI.EXE |
gKMSELDI.exe |
Brazil |
26.9% |
|
Thailand |
9.3% |
|
Iran |
7.8% |
|
Vietnam |
5.6% |
|
Indonesia |
4.9% |
|
Poland |
4.1% |
|
Mexico |
2.9% |
|
Turkey |
2.6% |
|
Italy |
2.5% |
|
Taiwan |
2.5% |
|
Peru |
2.4% |
|
Philippines |
1.9% |
|
Venezuela |
1.9% |
|
Colombia |
1.7% |
|
Spain |
1.6% |
|
Germany |
1.5% |
|
Argentina |
1.3% |
|
Chile |
1.3% |
|
Bulgaria |
1.1% |
|
Russia |
1.1% |
|
Romania |
0.9% |
|
Bolivia |
0.9% |
|
Netherlands |
0.8% |
|
United States |
0.7% |
|
Egypt |
0.7% |
|
India |
0.7% |
|
Greece |
0.7% |
|
Myanmar |
0.5% |
|
Tunisia |
0.5% |
|
Libya |
0.4% |
|
Australia |
0.4% |
|
Pakistan |
0.4% |
|
Israel |
0.4% |
|
France |
0.4% |
|
Serbia |
0.4% |
|
El Salvador |
0.4% |
|
Ecuador |
0.4% |
|
Malaysia |
0.3% |
|
Czech Republic |
0.3% |
|
Bosnia and Herzegovina |
0.3% |
|
China |
0.3% |
|
United Kingdom |
0.3% |
|
Oman |
0.3% |
|
Hungary |
0.3% |
|
Afghanistan |
0.3% |
|
Portugal |
0.3% |
|
Dominican Republic |
0.3% |
|
Ethiopia |
0.3% |
|
Hong Kong |
0.1% |
|
Saudi Arabia |
0.1% |
|
Luxembourg |
0.1% |
|
Ukraine |
0.1% |
|
United Arab Emirates |
0.1% |
|
Guatemala |
0.1% |
|
Austria |
0.1% |
|
Belarus |
0.1% |
|
Former Yugoslav Republic of Macedonia |
0.1% |
|
Moldova |
0.1% |
|
Algeria |
0.1% |
|
Ghana |
0.1% |
|
Tanzania |
0.1% |
|
Kenya |
0.1% |
|
Belgium |
0.1% |
|
South Korea |
0.1% |
|
Uruguay |
0.1% |
|
Ireland |
0.1% |
|
Sri Lanka |
0.1% |
|
Laos |
0.1% |
|
Côte d'Ivoire |
0.1% |
|
Qatar |
0.1% |
|
Windows 8.1 |
34.7% |
|
Windows 10 |
32.3% |
|
Windows 7 |
27.6% |
|
Windows 8 |
3.4% |
|
Windows Server 2012 R2 |
0.9% |
|
Windows Server 2008 R2 |
0.5% |
|
Windows Vista |
0.3% |
|
Windows XP |
0.1% |
|
Windows Embedded Standard |
0.1% |
|
Windows Server 2016 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0010525e |
MVID: |
f06faea4-5b85-4b92-9f0d-a6ebe47801a7 |
Name |
Size of data |
MD5 |
.text |
1061888 |
60a1099eb42e930ca27238de82830bf5 |
.rsrc |
20992 |
74905cd8326595ec88e18cc1f7f9506f |
.reloc |
512 |
b36a5f1a3b438fbd827fa731b8cfc33c |