Solved! Use AWUOGME.EXE (Backdoor Caphaw) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

AWUOGME.EXE – Backdoor Caphaw removal

File MD5 Virus Alias
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Backdoor Caphaw
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Trojan Artemis
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Trojan Downloader
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Trojan Graftor
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Trojan Magania
AWUOGME.EXE 6d14613bba2d590938e761660a8f1a6a Trojan Agent

AWUOGME.EXE size: 176128 bytes
AWUOGME.EXE hash: 6D14613BBA2D590938E761660A8F1A6A

Created files:

%WinDir%\Awuogme.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\DeleteFiles: VirusShare_6d14613bba2d590938e761660a8f1a6a.EXE
HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\ConnectGroup: ??????
HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\Type: 10010000
HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\Start: 02000000
HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\DisplayName: Ccmimk gigwckgsgaiykmmygg
HKLM\System\CurrentControlSet\Services\Wsqoyu umieucgi\ImagePath: %WinDir%\Awuogme.exe

Detected by UnHackMe:

AWUOGME.EXE
Default location: %WinDir%\AWUOGME.EXE

Dropper information:
MD5: 6d14613bba2d590938e761660a8f1a6a
File size: 176128 bytes

Leave a Reply