OfcpfwSv.exe is rootkit W32/SillyFDC-E.
OfcpfwSv.exe is used to hide files, processes and registry.
OfcpfwSv.exe is a kernel mode rootkit.
Rootkit copies itself to removable drives, including floppy drives and USB keys.
Rootkit created the hidden file Autorun.inf on the removable drive.
Rootkit contacts remote hacker server using HTTP session.
Related files:
%SysDir%\OfcpfwSv.exe
kas.exe
Adds the value:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
OfcpfwSv.exe
%SysDir%\OfcpfwSv.exe
to the Windows startup registry keys.
More info: http://www.sophos.com/security/analyses/...
Removal: OfcpfwSv.exe is removed by RegRun.
Read more... Removal instructions...
Recommended software:
UnHackMe - easy removal Rootkits/Adware/Spyware.
http://www.unhackme.com
RegRun Security Suite - removal and protection.
http://www.regrun.com
RegRun Reanimator - free removal tool.
greatis.com/reanimator
RegRun - User's Choice
Vista Programs - full info...
What is hidden in MSDN?
.NET Secrets Revealed
Why software developers prefer Win32.FreeTechSecrets.com?
All Unix Manuals in Alphabetical Order
C# controls for .NET in 3 simple steps.
Constantly updated. Last update:
May 12 2008
Interesting information about Vista programs...
Need consultation?
Would you like to add your opinion?