Crack Risk

HackKMS.HackTool.RiskWare.DDS removal

Malware Removal

The HackKMS.HackTool.RiskWare.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackKMS.HackTool.RiskWare.DDS virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackKMS.HackTool.RiskWare.DDS?


File Info:

name: 13EA767A7BA607744EBE.mlw
path: /opt/CAPEv2/storage/binaries/a6e2cdc0e9426d50bd72d866bfc80e0fba941efb3ae6d1c564d409f57d1eb117
crc32: B921F2CE
md5: 13ea767a7ba607744ebea7409b9f8649
sha1: 756b3b1b4fd159256af48c9c295ebf4a25adfc21
sha256: a6e2cdc0e9426d50bd72d866bfc80e0fba941efb3ae6d1c564d409f57d1eb117
sha512: 6487b630966ce1aa1ac73554e017bb436cbfd7d4390ac60f21743309a64bf8ffb999530c930cb9eca916a6b307e6e839bb41f4a7d2cc762e97b9c806c0bff322
ssdeep: 6144:V43VpNSujUhXpLuB02+Dj7l3YQRmNv2MECnw1qT+TBo4iuprQiRTj8BtB8b5N1uV:VeVpN/j8LwayN3nQ8+T9VToBjW5NQK8D
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T175C4CF1177D180F6D4E3163145EEBBBAB672BB090B21C9D7B3840B19AE312E1DB35369
sha3_384: 7479f27d8f1c676fcb575506b38b683c7f57e2fc7d7113e5a959f5a9b133187a3efc03b0b5bff7bf9fed6c7670b8fed5
ep_bytes: 684805000068000000006808234800e8
timestamp: 2015-11-12 19:40:52

Version Info:

0: [No Data]

HackKMS.HackTool.RiskWare.DDS also known as:

BkavW32.Common.CE6C0D86
LionicHacktool.Win32.AutoKMS.3!c
ClamAVWin.Malware.Agent-6418294-0
CAT-QuickHealTrojan.IGENERICPMF.S4852308
SkyhighPUP-XFT-RN
ALYacMisc.HackTool.AutoKMS
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusUnwanted-Program ( 00586daf1 )
K7GWUnwanted-Program ( 00586daf1 )
CrowdStrikewin/grayware_confidence_100% (W)
SymantecHacktool.Kms
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/HackTool.KMSAuto.E potentially unsafe
APEXMalicious
CynetMalicious (score: 100)
KasperskyHackTool.Win32.KMSAuto.gq
TencentMalware.Win32.Gencirc.115cfe07
TACHYONTrojan/W32.KMSAuto.595072
TrendMicroHKTL_AUTOKMS
FireEyeGeneric.mg.13ea767a7ba60774
SophosGeneric Reputation PUA (PUA)
IkarusPUA.HackTool.Kmsauto
JiangminRiskTool.HackKMS.eq
WebrootW32.Autokms
VaristW32/ABTrojan.WPVF-4427
Antiy-AVLTrojan/Win32.BTSGeneric
Kingsoftwin32.hacktool.kmsauto.gq
MicrosoftHackTool:Win32/AutoKMS
XcitiumApplicUnwnt@#voasmpv1oi92
ArcabitApplication.KMS
ViRobotHackTool.AutoKMS.595072
ZoneAlarmHackTool.Win32.KMSAuto.gq
GDataWin32.Application.Agent.YPVVKT
GoogleDetected
AhnLab-V3HackTool/Win32.AutoKMS.C1914739
McAfeePUP-XFT-RN
MalwarebytesHackKMS.HackTool.RiskWare.DDS
TrendMicro-HouseCallHKTL_AUTOKMS
YandexTrojan.Igent.bUPxsH.11
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.11973.susgen
FortinetRiskware/HackKMS
DeepInstinctMALICIOUS

How to remove HackKMS.HackTool.RiskWare.DDS?

HackKMS.HackTool.RiskWare.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment