How to remove plink.exe
plink.exe
The module plink.exe has been detected as Trojan.Emotet

File Details
Product Name: | PuTTY suite |
Company Name: | Simon Tatham |
MD5: | 00d8cf1940dc5f9c8a9c6656579f37bd |
Size: | 602 KB |
First Published: | 2018-08-03 13:07:19 (6 years ago) |
Latest Published: | 2018-08-07 04:12:29 (6 years ago) |
Status: | Trojan.Emotet (on last analysis) | |
Analysis Date: | 2018-08-07 04:12:29 (6 years ago) |
Overview
Signed By: | Simon Tatham |
Status: | Valid |
Common Places:
%programfiles% |
%programfiles%\wscc3\other utilities |
Geography:
United States | 23.1% | |
Ukraine | 17.9% | |
Russia | 7.7% | |
Saudi Arabia | 5.1% | |
Philippines | 5.1% | |
India | 5.1% | |
Brazil | 5.1% | |
Turkey | 5.1% | |
Sweden | 2.6% | |
France | 2.6% | |
Thailand | 2.6% | |
Mexico | 2.6% | |
Romania | 2.6% | |
Morocco | 2.6% | |
Belarus | 2.6% | |
Netherlands | 2.6% | |
Poland | 2.6% | |
Cambodia | 2.6% |
OS Version:
Windows 10 | 69.0% | |
Windows 7 | 26.2% | |
Windows 8.1 | 4.8% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x000729b0 |
PE Sections:
Name | Size of data | MD5 |
.00cfg | 512 | 902115198f2c554231bc2b2535fe870d |
.rdata | 123904 | b1cc816c8c3d16916452f307bad3b65d |
.bss | 0 | 00000000000000000000000000000000 |
.data | 4096 | fcaf26d651ab5e0742e6ceb1498cf43c |
.gfids | 512 | a6cb8fa7b199ce769705f6e297170fbe |
.pdata | 16384 | 3e0eb2087983340aeb2faeaf3895facd |
.rsrc | 5632 | 3a7af892fad870efda4cfd7ffa286bd5 |
.text | 421888 | b1486089b7bc6450fc765ec662700304 |
.xdata | 21504 | 406e565c9155ff50c1494a7326d89643 |
.idata | 5120 | d674dcea9b8fb5875329bcff946ca261 |
.reloc | 4096 | 965fb9f04c2d738940a16dbda509f604 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for plink.exe
