How to remove PLINK.EXE

PLINK.EXE

The module PLINK.EXE has been detected as Trojan.Emotet

PLINK.EXE
Product Name:

PuTTY suite

Company Name:

Simon Tatham

MD5: 0287e8b45aa0da648018c2646589d914
Size: 342 KB
First Published: 2018-08-03 16:12:58 (6 years ago)
Latest Published: 2018-08-07 06:10:51 (6 years ago)
Status: Trojan.Emotet (on last analysis)
Analysis Date: 2018-08-07 06:10:51 (6 years ago)
Signed By: Simon Tatham
Status: Valid
%programfiles%\matlab\r2017a\toolbox\idelink\foundation
%sysdrive%\torrent\mydisc\defence\puttyportable\app
%programfiles%\vpn4games client\app
%programfiles%
%profile%
%programfiles%\gitextensions
%programfiles%\veeam\backup and replication\console
%programfiles%\veeam\backup and replication\backup
%profile%\pictures\pictures\doublesshtunnelmanager04\double ssh tunnel manager
%sysdrive%\wkprogramfiles
plink.exe
PLINK.EXE
30.8%
23.1%
7.7%
7.7%
7.7%
7.7%
7.7%
7.7%
Windows 10 53.8%
Windows 7 30.8%
Windows Server 2012 R2 15.4%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000359ee

PE Sections:

Name Size of data MD5
.text 245760 cbff8b4cc7e2b0b996c47e37482da004
.rdata 77824 7ef3ce6243b8329aee8c921c9880ff53
.data 8192 05ba9135f9d8d4f468d185a15f9c9074
.rsrc 8192 ff06bd42503dd480e8eb13823cd6bfcf

More information:

Download GridinSoft Anti-Malware - Removal tool for PLINK.EXE