How to remove ati15.exe

ati15.exe

The module ati15.exe has been detected as Ransom.Skeeyah

ati15.exe
Product Name:

Loader Acronis True Image 2015

Company Name:

www.softx86vn.blogspot.com

MD5: 910969227a87e6beeff5db5ef9638ef5
Size: 97 KB
First Published: 2025-11-11 23:01:55 (a week ago)
Latest Published: 2025-11-11 23:01:55 (a week ago)
Status: Ransom.Skeeyah (on last analysis)
Analysis Date: 2025-11-11 23:01:55 (a week ago)
%sysdrive%\dlcd\programs\files
100.0%
Windows 10 100.0%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000a13c

PE Sections:

Name Size of data MD5
.text 33280 36c0976e708e3dfa5fbadaf786c4661f
.itext 1536 526c060243a5add0c5f570aefe100318
.data 3072 fecb263cf90a29c1297dcbbdca96f280
.bss 0 d41d8cd98f00b204e9800998ecf8427e
.idata 2560 9445a0f46ada8f3f4e5dec206a6365f1
.tls 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 512 48352434018c24060e3a26a6b77a946a
.reloc 3584 e8e44f9d738ac5b3a4f01cb7451cab61
.rsrc 53760 70bba5af4c6132b5bfb34bb5de3b664d

More information:

Download GridinSoft Anti-Malware - Removal tool for ati15.exe