How to remove active.exe
active.exe
The module active.exe has been detected as Hack.AutoKMS
File Details
| Product Name: | mini-KMS Activator v1.053 ENG |
| Company Name: | FreeSoft |
| MD5: | 893d91fda6148e85f47148ba55931441 |
| Size: | 1 MB |
| First Published: | 2017-05-21 05:04:28 (8 years ago) |
| Latest Published: | 2025-07-25 23:01:21 (5 months ago) |
| Status: | Hack.AutoKMS (on last analysis) | |
| Analysis Date: | 2025-07-25 23:01:21 (5 months ago) |
Common Places:
| %programfiles%\microsoft office\stationery |
| %profile%\downloads\microsoft office 2010 activator |
| %profile%\downloads\office\office 2010(ไทย) |
| %temp%\_tc |
| %sysdrive%\install |
| %desktop%\office 2010 türkçe full + crack [fullücretsizindir]\office etinlestirme programları[fullücretsizindir]\2010_8_of.2010keygen_aktivator_by_pambuk\of.2010keygen_aktivator_by_pambuk |
| %desktop%\brennen\office14_gx86\access.de-de |
| %desktop%\brennen\office14_gx86\@aktivierung |
| %desktop%\kms activator for microsoft office 2010 applications x86 x64 multilingual-fixiso~dibya |
| %desktop%\random stuff\kms activator for microsoft office 2010 applications x86 x64 multilingual-fixiso~dibya |
File Names:
| mini-KMS_Activator_v1.053 오피스 인증.exe |
| active.exe |
| mini-KMS_Activator_v1.053.exe |
| mini-kms_activator_v1.053.exe |
| mini-KMS_Activator_v1.053_ENG_FIXED.exe |
| Activator_v1.053_ENG_FIXED.exe |
| Activation.exe |
| activator_v1.053.exe |
| Ativador Office 2010 e Windows 7.exe |
| mini-KMS_MS-Officer_v1.053.exe |
| Aktywator KMS v1.053.exe |
| A0156286.exe |
| miniKMS.exe |
| miniKMS Activador.exe |
| Microsoft Office 2010 Pro Plus SP1 KMS Activator.exe |
| Activador Office.exe |
| Activador Office2010.exe |
Geography:
| 28.6% | ||
| 8.2% | ||
| 6.9% | ||
| 6.1% | ||
| 5.3% | ||
| 4.5% | ||
| 4.1% | ||
| 3.3% | ||
| 2.4% | ||
| 2.0% | ||
| 2.0% | ||
| 1.6% | ||
| 1.6% | ||
| 1.6% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 0.8% | ||
| 0.8% | ||
| 0.8% | ||
| 0.8% | ||
| 0.8% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% |
OS Version:
| Windows 7 | 58.6% | |
| Windows 10 | 33.2% | |
| Windows 8.1 | 7.0% | |
| Windows XP | 0.8% | |
| Windows Server 2012 | 0.4% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0028ed30 |
PE Sections:
| Name | Size of data | MD5 |
| UPX0 | 0 | 00000000000000000000000000000000 |
| UPX1 | 1038848 | 0a7919dd127d8f1abdcb962640a9ad82 |
| .rsrc | 29696 | 154cbb32c6620133604dba284909127d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for active.exe