Crack

About “Application.HackTool.KMSActivator.25” infection

Malware Removal

The Application.HackTool.KMSActivator.25 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.HackTool.KMSActivator.25 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine Application.HackTool.KMSActivator.25?


File Info:

name: 01B864CFAAA570C9DACF.mlw
path: /opt/CAPEv2/storage/binaries/71ec71843d62cac095d699f45a892e99a6578b8cec2ffdc48769dee555396ba8
crc32: C6253C13
md5: 01b864cfaaa570c9dacfe4685e935c6b
sha1: b53f1506de680c6afe4b8844d9004faa980c9637
sha256: 71ec71843d62cac095d699f45a892e99a6578b8cec2ffdc48769dee555396ba8
sha512: 3604851a199dfcd23031898f2e13bb8eeff7510df5e33520169e03fe46702f067955d35ef409408dd2fcd522c7a55facee37907b2adca830970be6c126c63d32
ssdeep: 98304:eFB6kaAoFRjuJpuJtY1Gd4a+VlOVZxQpuafa3sKkqQ9hE3xEUYVnMnSH5hXiJ/3j:xsSaf1olqCZfv8JusnZbiJEG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D536336B485257A4F4813C706A2DBED020257D772E0631725E06DECDA97FDC3DAEA20B
sha3_384: 3ad2b1fcfff5b80d1b72bb1409b82c23d1c746eec3ad1c4713dcd5bea3b36b8dd6a631a681540de3ffd3dd9c545fd19c
ep_bytes: 60be152054008dbeebefebff57eb0b90
timestamp: 2019-04-18 09:17:22

Version Info:

0: [No Data]

Application.HackTool.KMSActivator.25 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Injuke.trKU
MicroWorld-eScanGen:Variant.Application.HackTool.KMSActivator.25
FireEyeGen:Variant.Application.HackTool.KMSActivator.25
McAfeeGenericRXAA-AA!01B864CFAAA5
CylanceUnsafe
ZillyaTool.KMSAuto.Win32.697
K7AntiVirusUnwanted-Program ( 0056e5091 )
AlibabaHackTool:Win32/AutoKMS.c7b4a799
K7GWUnwanted-Program ( 0056e5091 )
Cybereasonmalicious.faaa57
BitDefenderThetaGen:NN.ZexaF.34294.@pHfamqyK2fi
SymantecHacktool.Kms
ESET-NOD32a variant of Win32/HackTool.KMSAuto.M potentially unsafe
APEXMalicious
ClamAVWin.Malware.Nemesis-6847321-0
BitDefenderGen:Variant.Application.HackTool.KMSActivator.25
AvastWin32:MiscX-gen [PUP]
Ad-AwareGen:Variant.Application.HackTool.KMSActivator.25
EmsisoftGen:Variant.Application.HackTool.KMSActivator.25 (B)
McAfee-GW-EditionArtemis!Trojan
SophosGeneric PUA LF (PUA)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Application.HackTool.KMSActivator.25
JiangminHackTool.KMSAuto.kj
Antiy-AVLTrojan/Generic.ASMalwS.2C617EA
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftHackTool:MSIL/AutoKMS.I!MTB
CynetMalicious (score: 100)
VBA32Trojan.Sabsik.FL
ALYacGen:Variant.Application.HackTool.KMSActivator.25
MAXmalware (ai score=77)
RisingMalware.Heuristic!ET#78% (RDMK:cmRtazreOrDZ/7554/RYDwPWonoa)
IkarusPUA.HackTool.Kmsauto
eGambitUnsafe.AI_Score_93%
FortinetRiskware/KMSAuto
AVGWin32:MiscX-gen [PUP]
PandaTrj/CI.A

How to remove Application.HackTool.KMSActivator.25?

Application.HackTool.KMSActivator.25 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment