How to remove ohsoft.exe
ohsoft.exe
The module ohsoft.exe has been detected as Trojan.Miner

File Details
Company Name: | ohsoft |
MD5: | 97fdfa4df4aebdeb6057b7a4b7e27c3a |
Size: | 2 MB |
First Published: | 2022-09-22 23:24:10 (2 years ago) |
Latest Published: | 2023-07-10 23:28:35 (2 years ago) |
Status: | Trojan.Miner (on last analysis) | |
Analysis Date: | 2023-07-10 23:28:35 (2 years ago) |
Overview
Signed By: | OORT inc. |
Status: | Valid |
Common Places:
%sysdrive%\adobe\●adobe cc 2020\●adobe cc 2020 |
%desktop%\tudo |
%desktop%\임시파일\exe 파일모음 |
Geography:
50.0% | ||
50.0% |
OS Version:
Windows 10 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x001f0560 |
PE Sections:
Name | Size of data | MD5 |
.text | 2020864 | 275e2829ca85898bbce1f999f04f01d6 |
.itext | 5632 | 9476d38f5b679ad96281c1a1d0ef4eb1 |
.data | 21504 | ed797ec90bb726749eca39a9eee4c4ff |
.bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
.idata | 14848 | efda2e98f802783a1d2b78912f66feb6 |
.didata | 3072 | 3733e44cf804faff2fd0b93a4e809c15 |
.edata | 512 | 790d6eb62e86a0ee2e139851d3de7cc3 |
.tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
.rdata | 512 | 2b7f9b4c128fbc4e55838d586f5a2a72 |
.reloc | 185344 | dc2eba61c5663537e304491f45e4d1dc |
.rsrc | 390144 | 381b43c942c5d5897f73cdbb3a253ea4 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ohsoft.exe
