How to remove ctidmp.exe
ctidmp.exe
The module ctidmp.exe has been detected as Ransom.Exp
File Details
| Product Name: | c-treeACE Database |
| Company Name: | FairCom Corporation |
| MD5: | 898b00498994ed8e54b0baaea3c10ffd |
| Size: | 1 MB |
| First Published: | 2021-01-05 10:36:20 (4 years ago) |
| Latest Published: | 2021-01-10 00:34:39 (4 years ago) |
| Status: | Ransom.Exp (on last analysis) | |
| Analysis Date: | 2021-01-10 00:34:39 (4 years ago) |
Common Places:
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
Geography:
| 100.0% |
OS Version:
| Windows Server 2016 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000f8755 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 1470976 | bcddbd953ea0e135357783bea52bb729 |
| .rdata | 79360 | 46097d83b7df5eced5726d172c7e4c02 |
| .data | 115200 | db98f192cfc2008a5f367e7e08d60ecc |
| .idata | 4608 | 7cd60c656018a539ff0f48e7ab07436a |
| .rsrc | 2048 | c5c976fddd48cf9b80f4437609e553ad |
| .reloc | 39936 | f267085843b32c4e50cf500c80adab32 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ctidmp.exe