How to remove CTFMON.EXE
CTFMON.EXE
The module CTFMON.EXE has been detected as Possible Threat

File Details
Product Name: | Microsoft® Windows® Operating System |
Company Name: | Microsoft Corporation |
MD5: | 4a3cdcef8ed41b221f3dbef5792fb52d |
Size: | 8 KB |
First Published: | 2017-05-28 14:07:04 (8 years ago) |
Latest Published: | 2024-07-26 23:02:06 (a year ago) |
Status: | Possible Threat (on last analysis) | |
Analysis Date: | 2024-07-26 23:02:06 (a year ago) |
Common Places:
%windir%\system32 |
%windir%\syswow64 |
%appdata%\tencent\qqpcmgr\sysrepairfile\lostfile |
%programs%\startup |
%startup% |
%system% |
%windir% |
%profile% |
%desktop% |
%programfiles% |
File Names:
ctfmon.exe |
CTFMON.EXE |
ctfmon.exe.bak |
CTFMON.exe |
GyzKmNral.exe |
c:/windows/system32/ctfmon.exe |
ctfmon.exe. |
Geography:
29.1% | ||
17.6% | ||
9.7% | ||
9.1% | ||
5.5% | ||
4.8% | ||
4.2% | ||
3.6% | ||
3.0% | ||
2.4% | ||
1.8% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% | ||
0.6% |
OS Version:
Windows 7 | 96.4% | |
Windows 10 | 3.6% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x01000000 |
Entry Address: | 0x000014ea |
PE Sections:
Name | Size of data | MD5 |
.text | 3584 | a4cb8f3ff2cd7a18a69bf1bf3312b10a |
.data | 512 | a497d24ecb6e112af339fa7456a7af7f |
.rsrc | 3072 | bfaa4cb2f8abfd245d94b9b8f82da87c |
.reloc | 512 | fd08bd3916168d28e938398bf3a7ad4e |
More information:
Download GridinSoft
Anti-Malware - Removal tool for CTFMON.EXE
