How to remove psftp.exe

psftp.exe

The module psftp.exe has been detected as Trojan.Emotet

psftp.exe
Product Name:

PuTTY suite

Company Name:

Simon Tatham

MD5: ba595984d68cb2f9f8be7a4a8689aa6d
Size: 358 KB
First Published: 2018-08-03 21:11:58 (6 years ago)
Latest Published: 2018-08-07 06:10:52 (6 years ago)
Status: Trojan.Emotet (on last analysis)
Analysis Date: 2018-08-07 06:10:52 (6 years ago)
Signed By: Simon Tatham
Status: Valid
%sysdrive%\torrent\mydisc\defence\puttyportable\app
%programfiles%
%programfiles%\veeam\backup and replication\console
%programfiles%\veeam\backup and replication\backup
%sysdrive%\wkprogramfiles\putty
%sysdrive%\wkprogramfiles
PSFTP.EXE
psftp.exe
33.3%
33.3%
16.7%
16.7%
Windows 10 50.0%
Windows Server 2012 R2 33.3%
Windows 7 16.7%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000374c6

PE Sections:

Name Size of data MD5
.text 258048 86b9f0128ce0bf8b94faf5c994b9bfa9
.rdata 81920 7846c2fa5437cbac63847dc146c937e3
.data 8192 b3a219e963a73cf5d1241fbbb74d7b72
.rsrc 8192 721563ea65e647e61e6c0ebe2ccdb921

More information:

Download GridinSoft Anti-Malware - Removal tool for psftp.exe