How to remove P.FSIViewer.exe

P.FSIViewer.exe

The module P.FSIViewer.exe has been detected as Trojan.CoinMiner

P.FSIViewer.exe
Product Name:

FastStone Image Viewer

Company Name:

BELOFF

MD5: cb17053ad26f74585f97e9f2d63e8bd2
Size: 6 MB
First Published: 2017-10-27 09:09:41 (7 years ago)
Latest Published: 2018-01-11 18:11:53 (7 years ago)
Status: Trojan.CoinMiner (on last analysis)
Analysis Date: 2018-01-11 18:11:53 (7 years ago)
%sysdrive%\beloff 2017.2 (x86 x64) rus
100.0%
Windows 8.1 50.0%
Windows 7 50.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000193af

PE Sections:

Name Size of data MD5
.text 101888 c624ae421a6c4f702f7f2c2c23c4aef1
.rdata 16384 746f7c2df0aa9b117542dd3e6429f2f1
.data 2048 07f7ba027ce50640e9ee99eddca1959f
.rsrc 17408 26ae15382fa96f8d1def055b98a04afa

More information:

Download GridinSoft Anti-Malware - Removal tool for P.FSIViewer.exe