How to remove ati14.exe

ati14.exe

The module ati14.exe has been detected as Ransom.Skeeyah

ati14.exe
Product Name:

Loader Acronis True Image 2014

Company Name:

www.softx86vn.blogspot.com

MD5: 5037dcaa7fea80e2b93469a1092af936
Size: 81 KB
First Published: 2025-11-11 23:01:55 (a week ago)
Latest Published: 2025-11-11 23:01:55 (a week ago)
Status: Ransom.Skeeyah (on last analysis)
Analysis Date: 2025-11-11 23:01:55 (a week ago)
%sysdrive%\dlcd\programs\files
100.0%
Windows 10 100.0%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000a13c

PE Sections:

Name Size of data MD5
.text 33280 36c0976e708e3dfa5fbadaf786c4661f
.itext 1536 526c060243a5add0c5f570aefe100318
.data 3072 fecb263cf90a29c1297dcbbdca96f280
.bss 0 d41d8cd98f00b204e9800998ecf8427e
.idata 2560 9445a0f46ada8f3f4e5dec206a6365f1
.tls 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 512 48352434018c24060e3a26a6b77a946a
.reloc 3584 e8e44f9d738ac5b3a4f01cb7451cab61
.rsrc 37888 d0c0bc57215e050f8464445f9d71ada6

More information:

Download GridinSoft Anti-Malware - Removal tool for ati14.exe