Hi malware fighters,
Just see what flags this:
http://safeweb.norton.com/report/show?url=http%3A%2F%2Fwww.refog.com%2F&x=10&y=1The malware is Spyware.KGBSpy is a commercial spyware program. It logs keystrokes, Web sites visited, and clipboard activity. It also has a screen capture logger and can be run automatically in a silent, undetectable mode.
Description:
http://www.threatexpert.com/report.aspx?md5=da9dba82aad495663b4b33ce31cd1539This spyware can use FTP or email to send all the logs to a remote server or email address.
These actions are configured in the program's Control panel of Systems.exe. When the program is in Hidden Mode, it cannot be accessed until it is brought out of Hidden Mode. This can be done with a hot-key combination (the default combination is Ctrl+Alt+Shift+K).
How to manually remove Spyware.KGBSpy
To save time and avoid risking destroying your computer, we highly recommend use a spyware scanner such as SpyHunter, to detect Spyware.KGBSpy and other spyware, adware, Trojans, viruses, keyloggers, and more that can be hidden in your PC.
Files associated with Spyware.KGBSpy infection:
MPK.dll
MPK.dll
Spyware.KGBSpy DLL's to remove:
MPK.dll
MPK.dll
Remove Spyware.KGBSpy registry entries:
RUNNING PROGRAM\explorer.exe
RUNNING PROGRAMexplorer.exe
It should at least be flagged as PUP,
polonus