How to remove ati15.exe
ati15.exe
The module ati15.exe has been detected as Ransom.Skeeyah
File Details
| Product Name: | Loader Acronis True Image 2015 |
| Company Name: | www.softx86vn.blogspot.com |
| MD5: | 910969227a87e6beeff5db5ef9638ef5 |
| Size: | 97 KB |
| First Published: | 2025-11-11 23:01:55 (a week ago) |
| Latest Published: | 2025-11-11 23:01:55 (a week ago) |
| Status: | Ransom.Skeeyah (on last analysis) | |
| Analysis Date: | 2025-11-11 23:01:55 (a week ago) |
Common Places:
| %sysdrive%\dlcd\programs\files |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000a13c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 33280 | 36c0976e708e3dfa5fbadaf786c4661f |
| .itext | 1536 | 526c060243a5add0c5f570aefe100318 |
| .data | 3072 | fecb263cf90a29c1297dcbbdca96f280 |
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 2560 | 9445a0f46ada8f3f4e5dec206a6365f1 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 48352434018c24060e3a26a6b77a946a |
| .reloc | 3584 | e8e44f9d738ac5b3a4f01cb7451cab61 |
| .rsrc | 53760 | 70bba5af4c6132b5bfb34bb5de3b664d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ati15.exe