Is the file QYRAGCANISVU.EXE located on your computer? Then your computer is infected.
We do suggest you should remove QYRAGCANISVU.EXE from your computer as soon as possible.
QYRAGCANISVU.EXE is Trojan/Backdoor.
Kill the process QYRAGCANISVU.EXE and remove QYRAGCANISVU.EXE from the Windows startup.
Malware Analysis of QYRAGCANISVU.EXE
Full path on a computer: %Profile%\qyragcanisvu.exe
Detected by UnHackMe:
QYRAGCANISVU.EXE
Default location: %Profile%\qyragcanisvu.exe
Removal Results: Success
Number of reboot: 1
QYRAGCANISVU.EXE is known as:
Trojan.Diple, Backdoor.Trojan, Kryptik.CCJN, BKDR_PUSHDO.GK, Backdoor.Pushdo.qxw, Backdoor.Pushdo.26pCb7u+HsM, Troj.Agent-ADOP, Trojan.PWS.Panda.4379, TR.Dldr.Cutwail.54, Backdoor.Pushdo, Trojan.Zbot, W32.Backdoor.ZKSU-4316, a variant of Win32.Kryptik.BJUK, W32.Pushdo.QXW.tr.bdr
QYRAGCANISVU.EXE hash:
- MD5: 381d11dfc21478de5bf5489c128be650
How to quickly detect QYRAGCANISVU.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\qyragcanisvu: “%Profile%\qyragcanisvu.exe”
Files:
- %Profile%\qyragcanisvu.exe