WFBI.EXE - Dangerous
WFBI.EXE
Manual removal instructions:
Antivirus Report of WFBI.EXE:
wfbi.exe
We suggest you to remove WFBI.EXE from your computer as soon as possible.
WFBI.EXE is known as: Malware.Sality [PCTools] W32.Sality.AE [Symantec] Virus.Win32.Sality.bh [Kaspersky Lab] W32/Sality.gen.e [McAfee] Mal/Sality-D [Sophos] Worm:Win32/Sality.AU [Microsoft] Virus.Win32.Virut [Ikarus] Win32/Kashu.E [AhnLab].
MD5 of WFBI.EXE = 73004F90E56D86C7B87810BCC7415220
WFBI.EXE size is 123619 bytes.
Full path on a computer: C:\WFBI.EXE
Related Files:
C:\AUTORUN.INF
%WINDIR%\TEMP\HS5JWSL7D.EXE
C:\E
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\NOTIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\ONLYIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\WINDOW.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\WINDOW.JS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\NOTIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\ONLYIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\WINDOW.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\WINDOW.JS
%PROGRAMFILES%\STARTNOW TOOLBAR\STARTNOWTOOLBARUNINSTALL.EXE
%PROGRAMFILES%\STARTNOW TOOLBAR\TOOLBAR32.DLL
%PROGRAMFILES%\STARTNOW TOOLBAR\TOOLBARUPDATERSERVICE.EXE
%PROGRAMFILES%\STARTNOW TOOLBAR\UNINSTALL.DAT
C:\WFBI.EXE
%WINDIR%\NT.EXE
%SYSTEM%\31RVUK6.LOG
%SYSTEM%\CM22.LOG
%SYSTEM%\MSQS.EXE
%SYSTEM%\MSSF32.DLL
%SYSTEM%\MSXF.EXE
%SYSTEM%\NWCWKS.DLL
%SYSTEM%\USER.INI
%WINDIR%\TASKMANAGER.BAT
%WINDIR%\TASKMANAGER.EXE
%WINDIR%\TEMP\1AVS.LOG
%WINDIR%\TEMP\7CHTBBMF.EXE
%WINDIR%\TEMP\8NRN.EXE
%WINDIR%\TEMP\9FO7L6NZ.EXE
%WINDIR%\TEMP\BXUUTWMR.EXE
%WINDIR%\TEMP\CONIMA
%WINDIR%\TEMP\DETOURED.DLL
%WINDIR%\TEMP\ETUJ4WJEBE.EXE
%WINDIR%\TEMP\GICU4ZOB.EXE
%WINDIR%\TEMP\INPUT MANAGER.BAT
%WINDIR%\TEMP\MLOG
%WINDIR%\TEMP\MOUSEDRIVER.BAT
%WINDIR%\TEMP\NEW5.TMP
%WINDIR%\TEMP\NSO10.TMP\REGISTRY.DLL
%WINDIR%\TEMP\NSW1E.TMP\BRANDINGURL.DLL
%WINDIR%\TEMP\NSO10.TMP\IMINSTALLER.EXE
%WINDIR%\TEMP\RTYIKW5HQ4JH.INI
%WINDIR%\TEMP\PLUG.BAT
%WINDIR%\TEMP\QTFCYYP.EXE
%WINDIR%\TEMP\VZCIBXTUS.EXE
WFBI.EXE | Malware.Sality [PCTools] W32.Sality.AE [Symantec] Virus.Win32.Sality.bh [Kaspersky Lab] W32/Sality.gen.e [McAfee] Mal/Sality-D [Sophos] Worm:Win32/Sality.AU [Microsoft] Virus.Win32.Virut [Ikarus] Win32/Kashu.E [AhnLab]. |
WFBI.EXE | Dangerous |
WFBI.EXE | High Risk |
WFBI.EXE is known as: Malware.Sality [PCTools] W32.Sality.AE [Symantec] Virus.Win32.Sality.bh [Kaspersky Lab] W32/Sality.gen.e [McAfee] Mal/Sality-D [Sophos] Worm:Win32/Sality.AU [Microsoft] Virus.Win32.Virut [Ikarus] Win32/Kashu.E [AhnLab].
MD5 of WFBI.EXE = 73004F90E56D86C7B87810BCC7415220
WFBI.EXE size is 123619 bytes.
Full path on a computer: C:\WFBI.EXE
Related Files:
C:\AUTORUN.INF
%WINDIR%\TEMP\HS5JWSL7D.EXE
C:\E
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\NOTIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\ONLYIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\WINDOW.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\PROTECT\WINDOW.JS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\NOTIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\ONLYIE6.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\WINDOW.CSS
%PROGRAMFILES%\STARTNOW TOOLBAR\RESOURCES\REACTIVATE\WINDOW.JS
%PROGRAMFILES%\STARTNOW TOOLBAR\STARTNOWTOOLBARUNINSTALL.EXE
%PROGRAMFILES%\STARTNOW TOOLBAR\TOOLBAR32.DLL
%PROGRAMFILES%\STARTNOW TOOLBAR\TOOLBARUPDATERSERVICE.EXE
%PROGRAMFILES%\STARTNOW TOOLBAR\UNINSTALL.DAT
C:\WFBI.EXE
%WINDIR%\NT.EXE
%SYSTEM%\31RVUK6.LOG
%SYSTEM%\CM22.LOG
%SYSTEM%\MSQS.EXE
%SYSTEM%\MSSF32.DLL
%SYSTEM%\MSXF.EXE
%SYSTEM%\NWCWKS.DLL
%SYSTEM%\USER.INI
%WINDIR%\TASKMANAGER.BAT
%WINDIR%\TASKMANAGER.EXE
%WINDIR%\TEMP\1AVS.LOG
%WINDIR%\TEMP\7CHTBBMF.EXE
%WINDIR%\TEMP\8NRN.EXE
%WINDIR%\TEMP\9FO7L6NZ.EXE
%WINDIR%\TEMP\BXUUTWMR.EXE
%WINDIR%\TEMP\CONIMA
%WINDIR%\TEMP\DETOURED.DLL
%WINDIR%\TEMP\ETUJ4WJEBE.EXE
%WINDIR%\TEMP\GICU4ZOB.EXE
%WINDIR%\TEMP\INPUT MANAGER.BAT
%WINDIR%\TEMP\MLOG
%WINDIR%\TEMP\MOUSEDRIVER.BAT
%WINDIR%\TEMP\NEW5.TMP
%WINDIR%\TEMP\NSO10.TMP\REGISTRY.DLL
%WINDIR%\TEMP\NSW1E.TMP\BRANDINGURL.DLL
%WINDIR%\TEMP\NSO10.TMP\IMINSTALLER.EXE
%WINDIR%\TEMP\RTYIKW5HQ4JH.INI
%WINDIR%\TEMP\PLUG.BAT
%WINDIR%\TEMP\QTFCYYP.EXE
%WINDIR%\TEMP\VZCIBXTUS.EXE
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.