How to remove PLINK.EXE
PLINK.EXE
The module PLINK.EXE has been detected as Trojan.Emotet

File Details
Product Name: | PuTTY suite |
Company Name: | Simon Tatham |
MD5: | 0287e8b45aa0da648018c2646589d914 |
Size: | 342 KB |
First Published: | 2018-08-03 16:12:58 (6 years ago) |
Latest Published: | 2018-08-07 06:10:51 (6 years ago) |
Status: | Trojan.Emotet (on last analysis) | |
Analysis Date: | 2018-08-07 06:10:51 (6 years ago) |
Overview
Signed By: | Simon Tatham |
Status: | Valid |
Common Places:
%programfiles%\matlab\r2017a\toolbox\idelink\foundation |
%sysdrive%\torrent\mydisc\defence\puttyportable\app |
%programfiles%\vpn4games client\app |
%programfiles% |
%profile% |
%programfiles%\gitextensions |
%programfiles%\veeam\backup and replication\console |
%programfiles%\veeam\backup and replication\backup |
%profile%\pictures\pictures\doublesshtunnelmanager04\double ssh tunnel manager |
%sysdrive%\wkprogramfiles |
File Names:
plink.exe |
PLINK.EXE |
Geography:
30.8% | ||
23.1% | ||
7.7% | ||
7.7% | ||
7.7% | ||
7.7% | ||
7.7% | ||
7.7% |
OS Version:
Windows 10 | 53.8% | |
Windows 7 | 30.8% | |
Windows Server 2012 R2 | 15.4% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000359ee |
PE Sections:
Name | Size of data | MD5 |
.text | 245760 | cbff8b4cc7e2b0b996c47e37482da004 |
.rdata | 77824 | 7ef3ce6243b8329aee8c921c9880ff53 |
.data | 8192 | 05ba9135f9d8d4f468d185a15f9c9074 |
.rsrc | 8192 | ff06bd42503dd480e8eb13823cd6bfcf |
More information:
Download GridinSoft
Anti-Malware - Removal tool for PLINK.EXE
