I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
QNRGBPY.OGA – Backdoor SubSeven removal
File | MD5 | Virus Alias |
---|---|---|
QNRGBPY.OGA | 19300f0453e7204409a579d93c28d437 | Backdoor SubSeven |
QNRGBPY.OGA | 19300f0453e7204409a579d93c28d437 | Trojan Generic |
QNRGBPY.OGA size: 142336 bytes
QNRGBPY.OGA hash: 19300F0453E7204409A579D93C28D437
Created files:
%SysDir%\ajid.msm
%SysDir%\ckoq.opd
%SysDir%\drivers\etc\services
%SysDir%\fmtch.aui
%SysDir%\fxdbax.ocl
%SysDir%\llsotero.rqj
%SysDir%\lnvgpdj.exe
%SysDir%\lqybxuxo.oaj
%SysDir%\nkghydev.jyc
%SysDir%\qnrgbpy.oga
%SysDir%\rwyc.cnl
%SysDir%\srv32.exe
Autostart registry keys:
HKLM\Software\Microsoft\Active Setup\Installed Components\lnvgpdj\StubPath: %WinDir%\System32\lnvgpdj.exe
Detected by UnHackMe:
QNRGBPY.OGA
Default location: %SYSDIR%\QNRGBPY.OGA
Dropper information:
MD5: 1289cb9081b3188951ad7a023f352fc0
File size: 869007 bytes