How to remove PSFTP.EXE
PSFTP.EXE
The module PSFTP.EXE has been detected as Trojan.Emotet
![Remove Trojan.Emotet PSFTP.EXE](/screens/screen-9f0490c599dc81fad16a6d30dfc1f9b0.png)
File Details
Product Name: | PuTTY suite |
Company Name: | Simon Tatham |
MD5: | 9f0490c599dc81fad16a6d30dfc1f9b0 |
Size: | 554 KB |
First Published: | 2018-08-03 16:12:06 (6 years ago) |
Latest Published: | 2018-08-07 05:05:35 (6 years ago) |
Status: | Trojan.Emotet (on last analysis) | |
Analysis Date: | 2018-08-07 05:05:35 (6 years ago) |
Overview
Signed By: | Simon Tatham |
Status: | Valid |
Common Places:
%programfiles% |
%programfiles%\wscc3\other utilities |
%desktop%\portable\122_portable_prog\portableapps\puttyportable\app |
File Names:
psftp.exe |
PSFTP.EXE |
Geography:
33.3% | ||
13.3% | ||
13.3% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% |
OS Version:
Windows 10 | 73.3% | |
Windows 7 | 26.7% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000676ed |
PE Sections:
Name | Size of data | MD5 |
.00cfg | 512 | fafac7bdbe0afb4f2482c732083af576 |
.rdata | 116224 | 32301e2d2a7bda46c95facd7dc7339cb |
.bss | 0 | 00000000000000000000000000000000 |
.data | 3584 | 7de0afaa97c7213eb5484500dfcda6a2 |
.gfids | 512 | 2e9ec274fbfab87e73ee629b4051518a |
.rsrc | 5632 | eadb478056d4f781d2299f979953aa35 |
.text | 403968 | 37817e5034a02de9db61e51e9f42254c |
.xdata | 2048 | 4d173d3f406cac0ff22d49c0eb5f153a |
.idata | 4096 | 50e3a949b52cd6623b86c2408e45db08 |
.reloc | 17920 | 618740cd857515fb5ef966ad08495985 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for PSFTP.EXE
![copyright for information about PSFTP.EXE](/images/copyright.png)