How to remove ctsbld.exe
ctsbld.exe
The module ctsbld.exe has been detected as Ransom.Exp
File Details
| Product Name: | c-treeACE Database |
| Company Name: | FairCom Corporation |
| MD5: | 73dafe174889f68b63d6ebd2d26ea262 |
| Size: | 1 MB |
| First Published: | 2021-01-05 10:37:34 (4 years ago) |
| Latest Published: | 2021-01-10 00:31:21 (4 years ago) |
| Status: | Ransom.Exp (on last analysis) | |
| Analysis Date: | 2021-01-10 00:31:21 (4 years ago) |
Common Places:
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %desktop%\dbfilesfromrecyc\schuyler\faircom\win32\tools\cmdline\utils |
| %sysdrive%\schuyler\faircom\win32\tools\cmdline\utils |
Geography:
| 100.0% |
OS Version:
| Windows Server 2016 | 100.0% |
Analysis
| Subsystem: | Windows CUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000fa05c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 1479168 | b5aa04ca729427e5980162fef866055c |
| .rdata | 79360 | 3b3ad4f90fd901438a665532b06aa378 |
| .data | 112640 | 4a4d1de4a1d3a5aa6d80e3f38704bcf5 |
| .idata | 4608 | 51087f1a2a7edc6ca89aa3defd11f906 |
| .rsrc | 2048 | deff67a64fe775d3ea7b97f3816b209f |
| .reloc | 40448 | 5ddb4b13055fd6a93681f4d609a1d0a3 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ctsbld.exe