How to remove KMSELDI_IObitDel.exe
- File Details
- Overview
- Analysis
KMSELDI_IObitDel.exe
The module KMSELDI_IObitDel.exe has been detected as Crack.AutoKMS
File Details
Product Name: |
|
Company Name: |
|
MD5: |
11c05b7138f3a6a3f43bb8f782c8891d |
Size: |
901 KB |
First Published: |
2017-05-21 21:04:38 (8 years ago) |
Latest Published: |
2025-04-23 23:01:07 (3 months ago) |
Status: |
Crack.AutoKMS (on last analysis) |
|
Analysis Date: |
2025-04-23 23:01:07 (3 months ago) |
Overview
%programfiles%\kmspico |
%programfiles%\activation windows 10 office |
%programfiles%\kmspico2016 |
%appdata%\zhp\quarantine\kmspico |
%sysdrive%\windows.old\program files\kmspico |
%appdata%\zhp\quarantine\kmspico\kmspico |
%programfiles%\office16\kmspico |
%programfiles%\panda security\panda security protection\lostandfound |
%sysdrive%\kmspico |
%programfiles%\microsoft office 15\kmspico |
KMSELDI.exe |
KMSELDI_IObitDel.exe |
trzC03F.tmp |
KMSELDI.exe.quarantined |
Brazil |
37.5% |
|
Vietnam |
5.8% |
|
Peru |
4.0% |
|
Taiwan |
4.0% |
|
Spain |
4.0% |
|
Mexico |
3.9% |
|
Thailand |
2.6% |
|
Colombia |
2.6% |
|
Italy |
2.5% |
|
Portugal |
2.2% |
|
Argentina |
2.0% |
|
Iran |
1.6% |
|
France |
1.6% |
|
Turkey |
1.6% |
|
Indonesia |
1.5% |
|
Chile |
1.5% |
|
India |
1.3% |
|
Germany |
1.2% |
|
United States |
1.1% |
|
Romania |
1.0% |
|
Poland |
0.9% |
|
Ecuador |
0.7% |
|
Netherlands |
0.7% |
|
United Kingdom |
0.7% |
|
Bolivia |
0.7% |
|
Venezuela |
0.6% |
|
South Korea |
0.5% |
|
Bulgaria |
0.5% |
|
Czech Republic |
0.5% |
|
Israel |
0.5% |
|
Costa Rica |
0.5% |
|
Greece |
0.4% |
|
Belgium |
0.3% |
|
Guatemala |
0.3% |
|
Philippines |
0.3% |
|
Panama |
0.3% |
|
Pakistan |
0.3% |
|
Malaysia |
0.3% |
|
Egypt |
0.3% |
|
Hungary |
0.3% |
|
Hong Kong |
0.3% |
|
Switzerland |
0.3% |
|
Uruguay |
0.3% |
|
Morocco |
0.3% |
|
El Salvador |
0.2% |
|
Saudi Arabia |
0.2% |
|
South Africa |
0.2% |
|
Paraguay |
0.2% |
|
Canada |
0.2% |
|
Kenya |
0.2% |
|
Jordan |
0.2% |
|
Former Yugoslav Republic of Macedonia |
0.1% |
|
Dominican Republic |
0.1% |
|
Croatia |
0.1% |
|
Lithuania |
0.1% |
|
Japan |
0.1% |
|
China |
0.1% |
|
Algeria |
0.1% |
|
Bangladesh |
0.1% |
|
Serbia |
0.1% |
|
Australia |
0.1% |
|
Slovakia |
0.1% |
|
Albania |
0.1% |
|
Afghanistan |
0.1% |
|
Luxembourg |
0.1% |
|
Malta |
0.1% |
|
Myanmar |
0.1% |
|
Angola |
0.1% |
|
Russia |
0.1% |
|
Tunisia |
0.1% |
|
Austria |
0.1% |
|
United Arab Emirates |
0.1% |
|
Laos |
0.1% |
|
Zambia |
0.1% |
|
Windows 10 |
66.4% |
|
Windows 7 |
24.7% |
|
Windows 8.1 |
7.8% |
|
Windows 8 |
0.7% |
|
Windows Vista |
0.1% |
|
Windows Server 2012 |
0.1% |
|
Windows Server 2012 R2 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000dcdfe |
MVID: |
b50cef84-22d1-4211-a072-ef0aba3868e2 |
Name |
Size of data |
MD5 |
.text |
897024 |
8334d6fe6347ce99b96ac4116d9d06a7 |
.rsrc |
20992 |
4827daeb4686598b4738ae8508109e91 |
.reloc |
512 |
8eb1fa85917969846903094220db492d |