Solved! Use WQOYMO.EXE (Trojan Magania) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

WQOYMO.EXE – Trojan Magania removal

File MD5 Virus Alias
WQOYMO.EXE b4cb548e2f01276e8caa24ea179807b3 Trojan Magania
WQOYMO.EXE b4cb548e2f01276e8caa24ea179807b3 Trojan PcClient
WQOYMO.EXE b4cb548e2f01276e8caa24ea179807b3 Trojan SuspiciousFile
WQOYMO.EXE b4cb548e2f01276e8caa24ea179807b3 Backdoor PcClien
WQOYMO.EXE b4cb548e2f01276e8caa24ea179807b3 Backdoor Farfli

WQOYMO.EXE size: 128059 bytes
WQOYMO.EXE hash: B4CB548E2F01276E8CAA24EA179807B3

Created files:

%WinDir%\wqoymo.EXE

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\Type: 10010000
HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\Start: 02000000
HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\DisplayName: Stuvwx Abcdefgh Jklmnopq Stuv
HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\ImagePath: %WinDir%\wqoymo.EXE
HKLM\System\CurrentControlSet\Services\Stuvwx Abcdefgh Jkl\Description: Stuvwxya Cdefghijk Mnopqrs Uvwxyabc Efg

Detected by UnHackMe:

WQOYMO.EXE
Default location: %WinDir%\WQOYMO.EXE

Dropper information:
MD5: b4cb548e2f01276e8caa24ea179807b3
File size: 128059 bytes

Leave a Reply