How to remove KMSELDI.exe

KMSELDI.exe Removal: How to Get Rid of KMSELDI.exee1d8689f5e0944e974fc958b58c62d16

KMSELDI.exe

The module KMSELDI.exe has been detected as Hack.KMS

KMSELDI.exe
Product Name:

KMS GUI ELDI

Company Name:

@ByELDI

MD5: e1d8689f5e0944e974fc958b58c62d16
Size: 1 MB
First Published: 2017-05-30 09:12:33 (2 years ago)
Latest Published: 2019-08-23 19:00:57 (2 months ago)
Status: Hack.KMS (on last analysis)
Analysis Date: 2019-08-23 19:00:57 (2 months ago)
Signed By: @ByELDI
Status: Valid
%programfiles%\kmspico
%programfiles%
%sysdrive%\microsoft toolkit collection pack february 2017\windows 10 - permenant activator\windows 10 activators
%sysdrive%\backup verbatim usb 2018-04-18\microsoft toolkit collection pack february 2017\windows 10 - permenant activator\windows 10 activators
%sysdrive%\windows.old\program files
%programfiles%
13.1%
11.5%
9.8%
6.6%
6.6%
4.9%
3.3%
3.3%
3.3%
3.3%
3.3%
3.3%
3.3%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
Windows 10 65.6%
Windows 7 27.9%
Windows 8.1 6.6%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x001162fe

.NET Info:

MVID: 20e0cec7-2f63-403f-bcfe-39ee5e5c5963

PE Sections:

Name Size of data MD5
.text 1131520 b3c8668ac02607e7525d5d21af2fcd60
.rsrc 20992 8deab088da843ba1905429404df67a36
.reloc 512 524459b4b3e72410d54224e0f64ea2f2

More information:

Download GridinSoft Anti-Malware - Removal tool for KMSELDI.exe