How to remove ctfchk.exe
ctfchk.exe
The module ctfchk.exe has been detected as Ransom.Exp
File Details
| Product Name: | c-treeACE Database |
| Company Name: | FairCom Corporation |
| MD5: | 191dcc98cb329c23fbde5fdd40bfdec1 |
| Size: | 1 MB |
| First Published: | 2021-01-05 10:39:35 (4 years ago) |
| Latest Published: | 2021-01-10 00:33:31 (4 years ago) |
| Status: | Ransom.Exp (on last analysis) | |
| Analysis Date: | 2021-01-10 00:33:31 (4 years ago) |
Common Places:
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\admin |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\admin |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
Geography:
| 100.0% |
OS Version:
| Windows Server 2016 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000f82ae |
PE Sections:
| Name | Size of data | MD5 |
| .text | 1471488 | 3bbfeffe3054662cc6958aec05e05d15 |
| .rdata | 79360 | 03240f3685483a580df1ba567f13283a |
| .data | 113152 | d9af57e82b087ac5bd7b8c53f62a8685 |
| .idata | 4608 | 4dba33a510bf8aad75c95f3f24cdf213 |
| .rsrc | 2048 | 9e5c39048396d239f95ed2ca162977a9 |
| .reloc | 39936 | 2aaef11ab0550a62b9ade0f6335ec360 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ctfchk.exe