How to remove KMSpico_setup.exe
- File Details
- Overview
- Analysis
KMSpico_setup.exe
The module KMSpico_setup.exe has been detected as Hack.KMS
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8c413150949828b5aaed13c9b7fcb5cc |
Size: |
2 MB |
First Published: |
2017-07-09 09:11:05 (7 years ago) |
Latest Published: |
2020-06-11 00:07:10 (4 years ago) |
Status: |
Hack.KMS (on last analysis) |
|
Analysis Date: |
2020-06-11 00:07:10 (4 years ago) |
Overview
%profile%\downloads\programy\microsoft-office-professional-plus-2013-x86-aj-x64 (1)\microsoft office professional plus 2013 x86 x64 final ♥ 007 ♥\activators\kmspico v9.0.5.20131119\kmspico install |
%sysdrive%\商品\商品\01 - マイクロソフト windows 8.1 |
%sysdrive%\$recycle.bin\s-1-5-21-2311744454-2149788883-4069548500-1001\$rlzb8lk.zip |
%sysdrive%\$recycle.bin\s-1-5-21-2311744454-2149788883-4069548500-1001\$reg05qv |
%sysdrive%\برامج\برامج\برامج\اوفيس2013\التفعيل\for windows 8.1 users\kmspico v9.0.5.20131119 |
%sysdrive%\برامج\برامج\برامج\اوفيس2013\التفعيل\for windows 8.1 users\kmspico v9.0.5.20131119 |
%profile%\google ドライブ\重要\商品1\商品\01 - マイクロソフト windows 8.1 |
%sysdrive%\情報商材\有料情報\ヤフオク\商品1\商品\01 - マイクロソフト windows 8.1 |
%sysdrive%\كمبيوتر معتز\qjc-nanoo\ms office 2013\microsoft office professional plus 2013 x86 x64 final ♥ 007 ♥\activators\kmspico v9.0.5.20131119 |
%profile%\downloads\office 2013 activation\kmspico v9.0.5.20131119 |
|
35.7% |
|
|
28.6% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
Windows 10 |
42.9% |
|
Windows 7 |
42.9% |
|
Windows 8.1 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000a5f8 |
Name |
Size of data |
MD5 |
CODE |
40448 |
c3bd95c4b1a8e5199981e0d9b45fd18c |
DATA |
1024 |
1ee71d84f1c77af85f1f5c278f880572 |
BSS |
0 |
00000000000000000000000000000000 |
.idata |
2560 |
bb5485bf968b970e5ea81292af2acdba |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
9ba824905bf9c7922b6fc87a38b74366 |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
23552 |
beda0b5e4e8147f07bf543516b4cd20d |