How to remove PIDKey.exe
PIDKey.exe
The module PIDKey.exe has been detected as Hack.KMS
File Details
Product Name: | PIDKey |
Company Name: | MSfree Inc. (Ratiborus and friends) |
MD5: | 4af55ac75666d11eac1b21d46f7d55ba |
Size: | 3 MB |
First Published: | 2018-06-10 22:11:56 (6 years ago) |
Latest Published: | 2020-05-21 18:04:43 (4 years ago) |
Status: | Hack.KMS (on last analysis) | |
Analysis Date: | 2020-05-21 18:04:43 (4 years ago) |
Overview
Signed By: | WZT |
Status: | Valid |
Common Places:
%sysdrive%\admin\ratiborus\programs |
%sysdrive%\мои документы\soft\kms tools portable 25_04_2016\programs |
%sysdrive%\soft2\programs w7\activators\ratiborus_kms_tools_april_2016\autoplay\docs |
%sysdrive%\nouveau dossier\programs |
%sysdrive%\$recycle.bin\s-1-5-21-4071786775-2589927257-3922190224-1001\$rhy3fas.2016\programs |
Geography:
60.0% | ||
20.0% | ||
20.0% |
OS Version:
Windows 10 | 60.0% | |
Windows 7 | 40.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x003c7be2 |
.NET Info:
MVID: | 1377341f-fd15-45a5-844b-9a95727a3e4a |
PE Sections:
Name | Size of data | MD5 |
.text | 3956224 | 738c11613fc797e94b43e0de1211057f |
.rsrc | 72704 | 0c20cc605ba81d0a974e4984a6e06a21 |
.reloc | 512 | 8dad7cf18e6abef963f27cd240696a9c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for PIDKey.exe