Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

POFPOPITEGRA.EXE is Trojan Cutwail

$
0
0

Is the file POFPOPITEGRA.EXE located on your computer? Then your computer is infected.
We do suggest you should remove POFPOPITEGRA.EXE from your computer as soon as possible.
POFPOPITEGRA.EXE is Trojan/Backdoor.
Kill the process POFPOPITEGRA.EXE and remove POFPOPITEGRA.EXE from the Windows startup.

Malware Analysis of POFPOPITEGRA.EXE
Full path on a computer: %Profile%\pofpopitegra.exe

Detected by UnHackMe:

POFPOPITEGRA.EXE
Default location: %Profile%\pofpopitegra.exe

Removal Results: Success
Number of reboot: 1

POFPOPITEGRA.EXE is known as:

Trojan.Cutwail, Trojan.Agent.BFG, Trojan ( 0048f76b1 ), Trojan.MulDrop3.cnmdxb, Backdoor.Trojan, a variant of Win32.Kryptik.BPJQ, Trojan-Downloader.Cutwail.b, Trojan.DL.Cutwail.uiS0Hjx5ioY, TrojWare.Umal.~A, Trojan.MulDrop3.14959, TR.Rogue.49152.43, TrojanDownloader.Cutwail, Trojan.Agent.Gen, Win32.Cutwail.ARUYMBB, Trojan.Crypt2, W32.Cutwail.B.tr.dldr, Crypt2.BXBJ, Trojan.Kryptik.BPEE

POFPOPITEGRA.EXE hash:

  • MD5: eb553b92483652f04b78fc967abe72b6
The file tries to download information from some web sites.
How to quickly detect POFPOPITEGRA.EXE presence?
Registry:
  • HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\MaxUserPort: 0x0000FFFE
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run\pofpopitegra: “%Profile%\pofpopitegra.exe”
Files:
  • %Profile%\pofpopitegra.exe


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>