How to remove OcsLogon.exe
            
        
    
    
    
    
    
        
            
                
                    
                    - File Details
 
                    - Overview
 
                    - Analysis
 
                
             
            
                OcsLogon.exe
                
                The module OcsLogon.exe has been detected as Trojan.Downloader
                
                
                
                
                File Details
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Product Name: | 
                             | 
                        
                        
                        
                        
                            | Company Name: | 
                             | 
                        
                        
                        
                            | MD5: | 
                            9fbe76071e96cd660dea1ab0f06ae7d8 | 
                        
                        
                        
                        
                            | Size: | 
                            416 KB | 
                        
                        
                        
                            | First Published: | 
                            2023-04-22 23:09:08 (2 years ago) | 
                        
                        
                            | Latest Published: | 
                            2023-04-22 23:09:08 (2 years ago) | 
                        
                    
                 
                
                
                    
                        
                            
                            
                        
                        
                            | Status: | 
                            
                            Trojan.Downloader (on last analysis) | 
                            
                             | 
                        
                        
                            | Analysis Date: | 
                            2023-04-22 23:09:08 (2 years ago) | 
                        
                    
                 
                
                
                
                
                    
                        
                        
                            
                                | %system%\grouppolicy\datastore\0\sysvol\unit.br\policies\{be8fcb6a-43cf-4b94-b8f3-b1f49e567956}\machine\scripts | 
                            
                        
                        
                    
                 
                
                
                
                
                
                
                
                
                
                
                
                Analysis
                
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Subsystem: | 
                            Windows GUI | 
                        
                        
                            | PE Type: | 
                            pe | 
                        
                        
                            | OS Bitness: | 
                            32 | 
                        
                        
                        
                            | Image Base: | 
                            0x00400000 | 
                        
                        
                            | Entry Address: | 
                            0x0000330d | 
                        
                    
                 
                
                
                
                
                
                    
                        
                            
                            
                            
                        
                        
                            | Name | 
                            Size of data | 
                            MD5 | 
                        
                        
                        
                            | .text | 
                            25088 | 
                            029c8031e2fb36630bb7ccb6d1d379b5 | 
                        
                        
                        
                            | .rdata | 
                            5120 | 
                            421f9404c16c75fa4bc7d37da19b3076 | 
                        
                        
                        
                            | .data | 
                            1024 | 
                            c93d53142ea782e156ddc6acebdf883d | 
                        
                        
                        
                            | .ndata | 
                            0 | 
                            d41d8cd98f00b204e9800998ecf8427e | 
                        
                        
                        
                            | .rsrc | 
                            374272 | 
                            212eb01c3cb09eec40abb849f8898e6a |