I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
SAPISVR.EXE – Trojan Delf removal
File | MD5 | Virus Alias |
---|---|---|
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Trojan Delf |
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Trojan SuspiciousFile |
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Backdoor Maximus |
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Trojan Agent |
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Trojan Delphi |
SAPISVR.EXE | 3c62ebf4bfa86dd1f77b384645243532 | Backdoor IRCBot |
SAPISVR.EXE size: 1907320 bytes
SAPISVR.EXE hash: 3C62EBF4BFA86DD1F77B384645243532
Created files:
%SysDir%\DC++ Share\ClearPluginsCache.exe
%SysDir%\DC++ Share\Far.exe
%SysDir%\DC++ Share\msinfo32.exe
%SysDir%\DC++ Share\plutil.exe
%SysDir%\DC++ Share\sapisvr.exe
%SysDir%\DC++ Share\WebKit2WebProcess.exe
%SysDir%\sIRC4.exe
%SysDir%\xdccPrograms\APSDaemon.exe
%SysDir%\xdccPrograms\defaults.exe
%SysDir%\xdccPrograms\distnoted.exe
%SysDir%\xdccPrograms\KillOK.exe
%SysDir%\xdccPrograms\Network Setup Wizard.exe
%SysDir%\xdccPrograms\Opera_1161_int_Setup.exe
%SysDir%\xdccPrograms\SafariSetup.exe
%SysDir%\xdccPrograms\SoftwareUpdate.exe
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe
Autostart registry keys:
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe
Detected by UnHackMe:
SAPISVR.EXE
Default location: %SYSDIR%\DC++ SHARE\SAPISVR.EXE
Dropper information:
MD5: 3c62ebf4bfa86dd1f77b384645243532
File size: 1907320 bytes