How to remove PSFTP.EXE

PSFTP.EXE

The module PSFTP.EXE has been detected as Trojan.Emotet

PSFTP.EXE
Product Name:

PuTTY suite

Company Name:

Simon Tatham

MD5: 9f0490c599dc81fad16a6d30dfc1f9b0
Size: 554 KB
First Published: 2018-08-03 16:12:06 (6 years ago)
Latest Published: 2018-08-07 05:05:35 (6 years ago)
Status: Trojan.Emotet (on last analysis)
Analysis Date: 2018-08-07 05:05:35 (6 years ago)
Signed By: Simon Tatham
Status: Valid
%programfiles%
%programfiles%\wscc3\other utilities
%desktop%\portable\122_portable_prog\portableapps\puttyportable\app
psftp.exe
PSFTP.EXE
33.3%
13.3%
13.3%
6.7%
6.7%
6.7%
6.7%
6.7%
6.7%
Windows 10 73.3%
Windows 7 26.7%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000676ed

PE Sections:

Name Size of data MD5
.00cfg 512 fafac7bdbe0afb4f2482c732083af576
.rdata 116224 32301e2d2a7bda46c95facd7dc7339cb
.bss 0 00000000000000000000000000000000
.data 3584 7de0afaa97c7213eb5484500dfcda6a2
.gfids 512 2e9ec274fbfab87e73ee629b4051518a
.rsrc 5632 eadb478056d4f781d2299f979953aa35
.text 403968 37817e5034a02de9db61e51e9f42254c
.xdata 2048 4d173d3f406cac0ff22d49c0eb5f153a
.idata 4096 50e3a949b52cd6623b86c2408e45db08
.reloc 17920 618740cd857515fb5ef966ad08495985

More information:

Download GridinSoft Anti-Malware - Removal tool for PSFTP.EXE