How to remove OIS.EXE
OIS.EXE
The module OIS.EXE has been detected as Ransom.Wacatac
File Details
| Product Name: | Microsoft Office Picture Manager |
| Company Name: | Microsoft Corporation |
| MD5: | 94bac050560b074bf7f48dcc282ab7ff |
| Size: | 35 KB |
| First Published: | 2019-03-23 05:16:25 (6 years ago) |
| Latest Published: | 2023-09-30 23:30:28 (2 years ago) |
| Status: | Ransom.Wacatac (on last analysis) | |
| Analysis Date: | 2023-09-30 23:30:28 (2 years ago) |
Common Places:
| %sysdrive%\transcend\抽取式磁碟\usb\201105\陳麒年 |
| %sysdrive%\ntfs 1\備份\hao |
| %profile% |
| %sysdrive%\cursos anteriores\okkkkk\nueva carpeta\portatil |
| %sysdrive% |
| %sysdrive%\diskos z\μελινα\εξωτερικοσ δισκοσ\προγραμματα\office2007\portable_microsoft_office_2007_enterprise |
| %profile%\downloads\compressed\ms2007portfullsotis\mis 2007 port |
| %sysdrive%\new soft |
| %sysdrive%\kerjaan tahun 2015-2018-2019\kerjaan tahun 2017\campur\office 2007 portable\mis 2007 port |
| %profile% |
Geography:
| 20.0% | ||
| 12.0% | ||
| 12.0% | ||
| 8.0% | ||
| 8.0% | ||
| 8.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% | ||
| 4.0% |
OS Version:
| Windows 10 | 82.1% | |
| Windows 7 | 14.3% | |
| Windows 8 | 3.6% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x30000000 |
| Entry Address: | 0x00001f26 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 7168 | b0cb7421fdbf9e6ff09e4b8a083e8d06 |
| .res | 27136 | 9d91b5092b0ed0d9ffe4d5bc7778c6fb |
| .rdata | 148 | 7bb6dce4ac55bada7f16267cfd5220eb |
More information:
Download GridinSoft
Anti-Malware - Removal tool for OIS.EXE