How to remove pidkey.exe
pidkey.exe
The module pidkey.exe has been detected as Hack.KMS
File Details
Product Name: | PIDKey |
Company Name: | MSfree Inc. (Ratiborus and friends) |
MD5: | ebb835405304ada9ea17918e3d08c34a |
Size: | 3 MB |
First Published: | 2017-06-07 05:06:47 (6 years ago) |
Latest Published: | 2020-11-30 10:18:55 (3 years ago) |
Status: | Hack.KMS (on last analysis) | |
Analysis Date: | 2020-11-30 10:18:55 (3 years ago) |
Overview
Signed By: | WZT |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%profile%\downloads\ratiborus.suite.2016.zip\ratiborus.suite.2016\files\docs\pidkey v2.0.9.1006 |
%desktop%\instalki\aklimatyzatory winowe\ratiborus.suite.2016.zip\ratiborus.suite.2016\files\docs\pidkey v2.0.9.1006 |
%desktop%\instalki\aklimatyzatory winowe\ratiborus.suite.2016\files\docs\pidkey v2.0.9.1006 |
%profile%\downloads\pidkey\pidkey v2.0.9.1006 |
%temp%\rar$exa8788.43142\pidkey v2 |
%sysdrive%\install\instal1 |
%profile%\accessories\ratiborus.suite.2016\autoplay\docs |
%sysdrive%\программы\oc windows 10\проверка валидности ключей windows |
%desktop%\fromflash\w7\keys |
%sysdrive%\share\pidkey_v2.0.9.1006 |
File Names:
PIDKey.exe |
pidkey.exe |
Geography:
24.0% | ||
20.0% | ||
12.0% | ||
12.0% | ||
8.0% | ||
8.0% | ||
8.0% | ||
4.0% | ||
4.0% |
OS Version:
Windows 10 | 84.0% | |
Windows 7 | 16.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x003466ca |
.NET Info:
MVID: | 797e31c6-3635-4539-acae-3b7e42741ac3 |
PE Sections:
Name | Size of data | MD5 |
.text | 3426304 | 94f8065033ad3b390d4866bc6081d536 |
.rsrc | 72704 | 63ee44a3d7b947aeb789ec2c87702e7e |
.reloc | 512 | 0ce9550df2c00a37d9bbe5e23677cd9b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for pidkey.exe