How to remove Re-LoaderByR@1n.exe

Re-LoaderByR@1n.exe

The module Re-LoaderByR@1n.exe has been detected as Hack.KMS

Re-LoaderByR@1n.exe
Product Name:

Re-Loader By R@1n

MD5: 9644cfad0ca9005f95b9c13896dd029d
Size: 1 MB
First Published: 2017-07-13 03:07:33 (7 years ago)
Latest Published: 2022-02-22 23:27:52 (2 years ago)
Status: Hack.KMS (on last analysis)
Analysis Date: 2022-02-22 23:27:52 (2 years ago)
%profile%\downloads\programs\microsoft office professional plus 2016 v16.0.4312.1000 incl activator-=team os=-\_activators\5.re-loader_byr@1n_v14rc4
%desktop%\programmi x windows\off1pplus161.ita\attivatori\5.re-loader_byr@1n_v14rc4
%sysdrive%\прога\microsoft windows
%sysdrive%\setup\office\office 2016\crack office 2016\bkshare.com-re-loader-1.4-rc-4.rar
%sysdrive%\windows 7\microsoft office professional plus 2016 v16.0.4312.1000 (x86-x64) en\activators
%desktop%\microsoft office 2016 online install v3.9 ratiborus
%sysdrive%\$recycle.bin\s-1-5-21-419282398-1983361253-4052975938-1001\$rq0qcbi
%sysdrive%\- application\microsoft office professional plus 2016 v16.0.4312.1000 incl activator-=team os=-\_activators.rar\_activators
%sysdrive%\08 - varios\aplicaciones\microsoft office professional plus 2016 v16.0.4312.1000 incl activator-=team os=-\_activators\_activators\attivatori.rar
%sysdrive%\08 - varios\aplicaciones\microsoft office professional plus 2016 v16.0.4312.1000 incl activator-=team os=-\_activators.rar\_activators
18.9%
18.9%
13.5%
8.1%
5.4%
5.4%
5.4%
5.4%
2.7%
2.7%
2.7%
2.7%
2.7%
2.7%
2.7%
Windows 10 56.8%
Windows 7 32.4%
Windows 8.1 10.8%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00002e5e

.NET Info:

MVID: 6b932d2d-0435-432e-85ef-10c5f838e8f1

PE Sections:

Name Size of data MD5
.text 4096 3eb0b0698bbcde8e471b2c26d1f63b3c
.rsrc 36864 66b8aa408448572d296d61173c49dd0c
.reloc 512 ca62d305e8545af0246560b8da5d51fe

More information:

Download GridinSoft Anti-Malware - Removal tool for Re-LoaderByR@1n.exe