WUOK.EXE – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WUOK.EXE – Trojan Delf removal

FileMD5Virus Alias
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan Delf
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan Generic
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan MLW
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan Click
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan Eldorado
WUOK.EXE 728670753aa3bf9efb49e0aa4863f2ce Trojan Agent

WUOK.EXE size: 857758 bytes
WUOK.EXE hash: 728670753AA3BF9EFB49E0AA4863F2CE

Created files:

%Program Files%\Xpakm\Cabb\Xajls.dll
%Program Files%\Xpakm\Iuqi.exe
%Program Files%\Xpakm\Wuok.exe
%TEMP%\g815\ll8kll8k.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ALXO\Start: 02000000
HKLM\System\CurrentControlSet\Services\ALXO\Type: 10000000
HKLM\System\CurrentControlSet\Services\ALXO\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\ALXO\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\ALXO\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\ALXO\Group: TDI
HKLM\System\CurrentControlSet\Services\ALXO\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\ALXO\ImagePath: %Program Files%\Xpakm\Wuok.exe

Detected by UnHackMe:

WUOK.EXE
Default location: %PROGRAM FILES%\XPAKM\WUOK.EXE

Dropper information:
MD5: 0bba108e8634e1ba0c9c89e081581fe9
File size: 6658770 bytes

Leave a Reply