How to remove ProduKey.exe

ProduKey.exe

The module ProduKey.exe has been detected as PUP.Presenoker

ProduKey.exe
Product Name:

ProduKey

Company Name:

NirSoft

MD5: 8c1c2a6e66e0769380b878a0f3ab6208
Size: 128 KB
First Published: 2019-04-23 03:15:16 (6 years ago)
Latest Published: 2023-07-11 23:14:53 (2 years ago)
Status: PUP.Presenoker (on last analysis)
Analysis Date: 2023-07-11 23:14:53 (2 years ago)
Signed By: Nir Sofer
Status: Valid
%desktop%\raccourci\documents\downloads
%profile%\downloads\nirsoft_package_enc_1.22.2\nirsoft
%profile%\downloads
%sysdrive%\programy
%profile%\downloads
%localappdata%\packages\c27eb4ba.dropbox_xbfy0k16fey96\localstate\users\129589974\filescache\16
%sysdrive%\$recycle.bin\s-1-5-21-2382677523-2301970796-370196392-1001\$rj2nr4k\data\software\toolpakete\service-paketfruehjahrs-update\24349\produkey.exe\produkey
%sysdrive%\$recycle.bin\s-1-5-21-558852962-3902973220-721475060-1000
%profile%\downloads\rsload.net.produkey.rar\rsload.net.produkey
%profile%\onedrive\escritorio
9.0%
8.1%
7.2%
5.4%
5.4%
5.0%
4.5%
4.5%
3.6%
3.6%
3.2%
2.7%
2.3%
2.3%
1.8%
1.8%
1.8%
1.8%
1.8%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
1.4%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
Windows 10 75.5%
Windows 7 17.5%
Windows 8.1 6.1%
Windows 8 0.4%
Windows Server 2008 R2 0.4%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x000148f0

PE Sections:

Name Size of data MD5
.text 81920 774614dec0903fda8b2e59001f842961
.rdata 16896 50a3e71caf8307adaaad6efa33d73121
.data 1024 d1370ecdf47549d326d972cba23f3010
.pdata 3584 53bd4c6d0de61d2389741bdf31d80f17
.rsrc 15360 bbb03aab463a42ccdcb44a6c370335c1

More information:

Download GridinSoft Anti-Malware - Removal tool for ProduKey.exe