How to remove _setup.exe
_setup.exe
The module _setup.exe has been detected as PUP.KMS
File Details
| Product Name: | KMSpico |
| Company Name: | |
| MD5: | 0818689d434f92efa9b44bac5e3bb676 |
| Size: | 3 MB |
| First Published: | 2021-10-31 21:06:07 (4 years ago) |
| Latest Published: | 2026-01-31 23:00:55 (a week ago) |
| Status: | PUP.KMS (on last analysis) | |
| Analysis Date: | 2026-01-31 23:00:55 (a week ago) |
Overview
| Signed By: | KMSpico ByELDI LTD |
| Status: | Valid |
Common Places:
| %temp% |
| %temp% |
| %sysdrive%\windows.old\users\blue\appdata\local\temp |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
Geography:
| 44.0% | ||
| 12.0% | ||
| 8.0% | ||
| 8.0% | ||
| 8.0% | ||
| 8.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% |
OS Version:
| Windows 10 | 92.0% | |
| Windows 8.1 | 8.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000a5f8 |
PE Sections:
| Name | Size of data | MD5 |
| CODE | 40448 | c3bd95c4b1a8e5199981e0d9b45fd18c |
| DATA | 1024 | 1ee71d84f1c77af85f1f5c278f880572 |
| BSS | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 2560 | bb5485bf968b970e5ea81292af2acdba |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 9ba824905bf9c7922b6fc87a38b74366 |
| .reloc | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rsrc | 23552 | 125e5c915de1b5c449c617b9b5c2df35 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for _setup.exe