Qoologic Trojan

Qoologic virus description
Technical details:
Categories: Trojan,Downloader
Qoologic Aliases:
[Kaspersky]Trojan-Downloader.Win32.Qoologic.at,Trojan-Downloader.Win32.Qoologic.k;
[Other]Win32/Qoologic.AB,adware.QoolAid,Win32/Qoologic.AC,Win32/Qoologic.AE,Adware.QoolAid

Qoologic Files:
[%SYSTEM%]\dmonwv.dll
[%SYSTEM%]\jcjjr.dat
[%WINDOWS%]\unadbeh.exe
[%WINDOWS%]\winskw\jau5055.dat
[%SYSTEM%]\clozcu.dll
[%SYSTEM%]\isawapi32.dll
[%SYSTEM%]\mcamgr.exe
[%SYSTEM%]\NFAUSS.EXE
[%SYSTEM%]\pwbypu.dat
[%WINDOWS%]\cvss.exe
[%WINDOWS%]\ulapi32.dll
[%SYSTEM%]\dmonwv.dll
[%SYSTEM%]\jcjjr.dat
[%WINDOWS%]\unadbeh.exe
[%WINDOWS%]\winskw\jau5055.dat
[%SYSTEM%]\clozcu.dll
[%SYSTEM%]\isawapi32.dll
[%SYSTEM%]\mcamgr.exe
[%SYSTEM%]\NFAUSS.EXE
[%SYSTEM%]\pwbypu.dat
[%WINDOWS%]\cvss.exe
[%WINDOWS%]\ulapi32.dll

Qoologic Registry Keys:
HKEY_LOCAL_MACHINE\software\qstat

Qoologic Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer
HKEY_CLASSES_ROOT\clsid\{bee0b472-c532-4adf-bf3f-b71f8159e0ce}\inprocserver32
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


Qoologic indications of infection

This symptoms of Qoologic detection are the files, registry, and network communication referenced in the technical details section.
Method of Infection
Trojans do not self-replicate. They are spread manually, often under the premise that the executable is something beneficial.Distribution channels include IRC, peer-to-peer networks, newsgroup postings, e-mail, etc.
Buy Exterminate-It antivirus software and perform a full scan of the computer.
You can also Download Free Trial Version of ExterminateIt! to check your your computer just NOW.

Also Be Aware of the Following Threats:
SMS.Max DoS Removal
Sinstod Trojan Cleaner
ATDMT.com Tracking Cookie Information
WinAntiSpywareDown Downloader Removal instruction

No comments: