How to remove KMSELDI.exe

KMSELDI.exe Removal: How to Get Rid of KMSELDI.exeff805c9a4b13b43d2c70d6694a88b6a6

KMSELDI.exe

The module KMSELDI.exe has been detected as Hack.KMS

KMSELDI.exe
Product Name:

KMS GUI ELDI

Company Name:

@ByELDI

MD5: ff805c9a4b13b43d2c70d6694a88b6a6
Size: 1 MB
First Published: 2017-05-21 14:10:29 (2 years ago)
Latest Published: 2019-04-23 22:25:45 (2 days ago)
Status: Hack.KMS (on last analysis)
Analysis Date: 2019-04-23 22:25:45 (2 days ago)
Signed By: @ByELDI
Status: Valid
%programfiles%\kmspico
%appdata%\zhp\quarantine\kmspico
%desktop%\programlar\win8 crack\kmspicoportable.rar
%profile%\downloads\kmspico\kmspico\kmspico
%profile%\music\02o1o.buyur-indir.com (1)\02o1o.buyur-indir.com\kmspicoportable
%sysdrive%\אופיס 2016\office 2016.zip\__תיקיה חדשה (2)\kmspico\kmspico
%sysdrive%\ווינדוס 10\kmspico
%sysdrive%\instalki\microsoft.office.2013.sp1.32@amp;64bit.pl\kmspico_9.3.3\kmspico 9.3.3
%programfiles%
%sysdrive%\public\instalki\office 2013 sp1 64 bit\crack
15.2%
8.5%
6.7%
6.1%
5.5%
5.5%
4.2%
3.6%
3.0%
3.0%
3.0%
3.0%
2.4%
2.4%
2.4%
2.4%
2.4%
2.4%
2.4%
1.8%
1.8%
1.8%
1.2%
1.2%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
Windows 7 32.7%
Windows 8.1 31.5%
Windows 10 29.1%
Windows Server 2012 R2 3.0%
Windows 8 1.8%
Windows Embedded 8.1 1.2%
Windows Server 2008 R2 0.6%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00101e7e

.NET Info:

MVID: 126d821d-8bcf-4253-8e47-1f4663ecccc9

PE Sections:

Name Size of data MD5
.text 1048576 ea1ed2b5173d4a6476173a4ed4a5f188
.rsrc 20992 5c4cec8d6daa4b38f714654853ece936
.reloc 512 548a26d5abce578d16fbc00f7e403137

More information:

Download GridinSoft Anti-Malware - Removal tool for KMSELDI.exe