How to remove ohsoft.exe
ohsoft.exe
The module ohsoft.exe has been detected as Trojan.Miner
File Details
| Company Name: | ohsoft |
| MD5: | 97fdfa4df4aebdeb6057b7a4b7e27c3a |
| Size: | 2 MB |
| First Published: | 2022-09-22 23:24:10 (3 years ago) |
| Latest Published: | 2023-07-10 23:28:35 (2 years ago) |
| Status: | Trojan.Miner (on last analysis) | |
| Analysis Date: | 2023-07-10 23:28:35 (2 years ago) |
Overview
| Signed By: | OORT inc. |
| Status: | Valid |
Common Places:
| %sysdrive%\adobe\●adobe cc 2020\●adobe cc 2020 |
| %desktop%\tudo |
| %desktop%\임시파일\exe 파일모음 |
Geography:
| 50.0% | ||
| 50.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x001f0560 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 2020864 | 275e2829ca85898bbce1f999f04f01d6 |
| .itext | 5632 | 9476d38f5b679ad96281c1a1d0ef4eb1 |
| .data | 21504 | ed797ec90bb726749eca39a9eee4c4ff |
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 14848 | efda2e98f802783a1d2b78912f66feb6 |
| .didata | 3072 | 3733e44cf804faff2fd0b93a4e809c15 |
| .edata | 512 | 790d6eb62e86a0ee2e139851d3de7cc3 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 2b7f9b4c128fbc4e55838d586f5a2a72 |
| .reloc | 185344 | dc2eba61c5663537e304491f45e4d1dc |
| .rsrc | 390144 | 381b43c942c5d5897f73cdbb3a253ea4 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ohsoft.exe