How to remove ctfchk.exe
ctfchk.exe
The module ctfchk.exe has been detected as Ransom.Exp

File Details
Product Name: | c-treeACE Database |
Company Name: | FairCom Corporation |
MD5: | 191dcc98cb329c23fbde5fdd40bfdec1 |
Size: | 1 MB |
First Published: | 2021-01-05 10:39:35 (4 years ago) |
Latest Published: | 2021-01-10 00:33:31 (4 years ago) |
Status: | Ransom.Exp (on last analysis) | |
Analysis Date: | 2021-01-10 00:33:31 (4 years ago) |
Common Places:
%sysdrive%\schuyler\faircom\win32\tools\cmdline\admin |
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin |
%sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin |
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
%sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
%sysdrive%\schuyler\faircom\win32\tools\cmdline\admin |
%sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
Geography:
100.0% |
OS Version:
Windows Server 2016 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000f82ae |
PE Sections:
Name | Size of data | MD5 |
.text | 1471488 | 3bbfeffe3054662cc6958aec05e05d15 |
.rdata | 79360 | 03240f3685483a580df1ba567f13283a |
.data | 113152 | d9af57e82b087ac5bd7b8c53f62a8685 |
.idata | 4608 | 4dba33a510bf8aad75c95f3f24cdf213 |
.rsrc | 2048 | 9e5c39048396d239f95ed2ca162977a9 |
.reloc | 39936 | 2aaef11ab0550a62b9ade0f6335ec360 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ctfchk.exe
