Refog Inc.

Publisher Information

Refog Inc. is a software publisher located in Alexandria, Virginia in the United States*. The publisher primarily developes software that can be classified as adware. Thre are 2 additional code signing certificates issued to this publisher.
Remove Refog Inc. Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
12/12/2011 1:00:00 AM

Valid to:
2/6/2013 12:59:59 AM

Subject:
CN=Refog Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Refog Inc., L=Alexandria, S=Virginia, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1fc4489003e01028139915c2d888675c

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Refog, PUP.Installer.Refog, PUP.Refog (M), PUP.Refog.Installer (M)
95.45%

VIPRE Antivirus
Refog Inc., Threat.4675967
72.73%

McAfee
Keylog-Refog, Program.Keylog-Refog
59.09%

McAfee Web Gateway
Keylog-Refog
54.55%

ESET NOD32
Win32/KeyLogger.Refog (variant), Win32/Monitor.MIPKOEmployeeMonitor.AB (variant)
50.00%

avast!
Win32:Refog-A [PUP], Win32:KeyLogger-AWH [PUP], Win32:PUP-gen [PUP]
45.45%

Microsoft Security Essentials
MonitoringTool:Win32/KGBKeylogger, Threat.Undefined, MonitoringTool:Win32/Mipko, MonitoringTool:Win32/RefogKeylogger
45.45%

Fortinet FortiGate
W32/MIPKOEmployeeMonitor.AD!tr.spy, Riskware/Refog, Riskware/KGBSpy
45.45%

Comodo Security
UnclassifiedMalware
40.91%

IKARUS anti.virus
Application.Keylogger, not-a-virus:Monitor.Win32.KGBSpy, MonitoringTool
40.91%

1 / 68      (PUP)
lnkmst.exe  (23d69da65b0ba22e320a233812098fd7)

1 / 68      (PUP)

27 / 68    (PUP)

1 / 68      (PUP)
mpkview.exe  (5e080835a2b91e9c4cb86e004986f802)

12 / 68    (PUP)

10 / 68    (PUP)
mpkview.exe  (1de3ad95380832c751d7f52eb0e233b2)

22 / 68    (PUP)
mpk.exe  (b0dee4dbf885c73fb94058a3bb40a990)

14 / 68    (PUP)

18 / 68    (PUP)
mpk.exe  (ad45d704eb940f51e6b7b97a57abac12)

3 / 68      (PUP)
mpk64.exe  (b5d4f85005adc94993b997a0a76c1d0c)

7 / 68      (PUP)
mpk64.dll  (7d66a5b740fe092e7ceb0e3b8722b04a)

24 / 68    (PUP)
mpk.dll  (133430ff5551e4fdc81557418e14bb58)

22 / 68    (PUP)
mpk.exe  (49f351e8e38813578395b0e944e37aaf)

16 / 68    (PUP)
keylogger.exe (Keylogger by Refog)  (a9475ea4dd80fb8fbbea5b21ab144d4b)

5 / 68      (PUP)
refog_keylogger.exe  (f2dd460663f910a3205ab80a67ce0429)

13 / 68    (PUP)

21 / 68    (PUP)
refog_setup_em_730.exe (Employee Monitor by Refog)  (0675abb9ab5ba33022d7cf5ac4850bf6)

5 / 68      (PUP)
refog_personal_monitor_7.4.exe  (a41b6812a9fa4dbe5a22c0949b1e7d98)

1 / 68      (PUP)
mpk64.dll  (2c7011e58182cf7cdcb5ba68321735c7)

1 / 68      (PUP)
mpk64.exe  (db29f181cc6791e1d4d1e1933736a3e2)

1 / 68      (PUP)
mpk.exe  (539bf3b643044caf21129268f057ab40)

4 / 68      (PUP)
mpk.dll  (0c800cfec8d095ce9ca3015ccb61bcef)

Downloads URLs for files signed by Refog Inc..

5 / 68      (PUP)

The following websites host and distribute files published by Refog Inc..

The certificates below are also signed by Refog Inc..

7FF3DAF8E8B0D4A05A226B85F1054E87  (Feb 03, 2013 to Mar 05, 2016)

2C65F10795394990A2209CE7972CFBAC  (Feb 06, 2010 to Feb 07, 2012)

Remove Refog Inc. Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Refog Inc. by VeriSign, Inc. on December 12, 2011 with the serial number '1fc4489003e01028139915c2d888675c'.