How to remove P.FSCapture.exe

P.FSCapture.exe

The module P.FSCapture.exe has been detected as Trojan.CoinMiner

P.FSCapture.exe
Product Name:

FastStone Capture

Company Name:

BELOFF

MD5: 0234c0cad6dc1733543461c67163bc0a
Size: 3 MB
First Published: 2017-10-12 07:08:26 (7 years ago)
Latest Published: 2018-01-12 14:26:37 (6 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2018-01-12 14:26:37 (6 years ago)
%sysdrive%\проги\белофф
66.7%
33.3%
Windows 7 66.7%
Windows 10 33.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000193af

PE Sections:

Name Size of data MD5
.text 101888 c624ae421a6c4f702f7f2c2c23c4aef1
.rdata 16384 746f7c2df0aa9b117542dd3e6429f2f1
.data 2048 07f7ba027ce50640e9ee99eddca1959f
.rsrc 25088 c25ad0326e3fdd0f5c70b42dd2b578e2

More information:

Download GridinSoft Anti-Malware - Removal tool for P.FSCapture.exe