How to remove cthghtrn.exe

cthghtrn.exe

The module cthghtrn.exe has been detected as Ransom.Exp

cthghtrn.exe
Product Name:

c-treeACE Database

Company Name:

FairCom Corporation

MD5: 0808c376441f3d3b536fdca35a3553bd
Size: 1 MB
First Published: 2021-01-05 10:36:31 (4 years ago)
Latest Published: 2021-01-10 00:31:50 (4 years ago)
Status: Ransom.Exp (on last analysis)
Analysis Date: 2021-01-10 00:31:50 (4 years ago)
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin
%sysdrive%\schuyler\faircom\win32\tools\cmdline\admin
%sysdrive%\schuyler\faircom\win32\tools\cmdline\admin
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin
%desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\admin
%sysdrive%\schuyler\faircom\win32\tools\cmdline\admin
100.0%
Windows Server 2016 100.0%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000bea87

PE Sections:

Name Size of data MD5
.text 1177088 324023932e860bd0ba79676713ab8152
.rdata 79360 b58732702d76c1eddb6ce85af07dc436
.data 96768 4eb3539978f90da59453b27502dbf1fd
.idata 4608 8d8a9175f3d594fd52d0035394a04eba
.rsrc 2048 a98630d29463ec90a921a930145b5bb5
.reloc 30720 5a634c585cc05966b1c4234c53c45c6a

More information:

Download GridinSoft Anti-Malware - Removal tool for cthghtrn.exe