Solved! Use RIFHEW.EXE (Virus Parite) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

RIFHEW.EXE – Virus Parite removal

File MD5 Virus Alias
RIFHEW.EXE 25a84f58b87c033dc43f0a8fdd945e90 Virus Parite

RIFHEW.EXE size: 197598 bytes
RIFHEW.EXE hash: 25A84F58B87C033DC43F0A8FDD945E90

Created files:

%WinDir%\rifhew.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\.sdsadsads\Type: 10010000
HKLM\System\CurrentControlSet\Services\.sdsadsads\Start: 02000000
HKLM\System\CurrentControlSet\Services\.sdsadsads\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\.sdsadsads\DisplayName: dsadsmdsakdusagdnmds
HKLM\System\CurrentControlSet\Services\.sdsadsads\ImagePath: %WinDir%\rifhew.exe

Detected by UnHackMe:

RIFHEW.EXE
Default location: %WinDir%\RIFHEW.EXE

Dropper information:
MD5: 25a84f58b87c033dc43f0a8fdd945e90
File size: 197598 bytes

Leave a Reply