How to remove KMSELDI.exe
- File Details
- Overview
- Analysis
KMSELDI.exe
The module KMSELDI.exe has been detected as General Threat
File Details
Product Name: |
|
MD5: |
34e434262a6dfec694d134f8c005ef4c |
Size: |
798 KB |
First Published: |
2017-05-26 21:04:23 (7 years ago) |
Latest Published: |
2024-09-27 23:05:55 (5 months ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2024-09-27 23:05:55 (5 months ago) |
%programfiles%\kmspico |
%appdata%\zhp\quarantine |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
18.4% |
|
|
17.4% |
|
|
14.7% |
|
|
10.5% |
|
|
4.7% |
|
|
3.7% |
|
|
3.7% |
|
|
3.2% |
|
|
2.1% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
Windows 8.1 |
48.4% |
|
Windows 7 |
32.3% |
|
Windows 10 |
18.2% |
|
Windows Embedded 8.1 |
0.5% |
|
Windows 8 |
0.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000c3dce |
MVID: |
0aef3477-f358-49a5-8012-05ba040480b1 |
Typelib ID: |
863d9135-9365-4bee-95bf-0d83ded34d9f |
Name |
Size of data |
MD5 |
.text |
794112 |
d7ad94597eac844f615abcf918e30d85 |
.sdata |
512 |
1dd431f8f4b53aabaf4e01f870b5586d |
.rsrc |
20992 |
5213ac46553a38838f237a1e55f7e291 |
.reloc |
512 |
68cb31106c016f9a1d1b49fc1a630279 |