How to remove OIS.EXE
OIS.EXE
The module OIS.EXE has been detected as Ransom.Wacatac

File Details
Product Name: | Microsoft Office Picture Manager |
Company Name: | Microsoft Corporation |
MD5: | 94bac050560b074bf7f48dcc282ab7ff |
Size: | 35 KB |
First Published: | 2019-03-23 05:16:25 (6 years ago) |
Latest Published: | 2023-09-30 23:30:28 (2 years ago) |
Status: | Ransom.Wacatac (on last analysis) | |
Analysis Date: | 2023-09-30 23:30:28 (2 years ago) |
Common Places:
%sysdrive%\transcend\抽取式磁碟\usb\201105\陳麒年 |
%sysdrive%\ntfs 1\備份\hao |
%profile% |
%sysdrive%\cursos anteriores\okkkkk\nueva carpeta\portatil |
%sysdrive% |
%sysdrive%\diskos z\μελινα\εξωτερικοσ δισκοσ\προγραμματα\office2007\portable_microsoft_office_2007_enterprise |
%profile%\downloads\compressed\ms2007portfullsotis\mis 2007 port |
%sysdrive%\new soft |
%sysdrive%\kerjaan tahun 2015-2018-2019\kerjaan tahun 2017\campur\office 2007 portable\mis 2007 port |
%profile% |
Geography:
20.0% | ||
12.0% | ||
12.0% | ||
8.0% | ||
8.0% | ||
8.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% | ||
4.0% |
OS Version:
Windows 10 | 82.1% | |
Windows 7 | 14.3% | |
Windows 8 | 3.6% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x30000000 |
Entry Address: | 0x00001f26 |
PE Sections:
Name | Size of data | MD5 |
.text | 7168 | b0cb7421fdbf9e6ff09e4b8a083e8d06 |
.res | 27136 | 9d91b5092b0ed0d9ffe4d5bc7778c6fb |
.rdata | 148 | 7bb6dce4ac55bada7f16267cfd5220eb |
More information:
Download GridinSoft
Anti-Malware - Removal tool for OIS.EXE
