Win32/Nuquel.E Description

Win32/Nuquel.E is a trojan involved in the propagation of the rogue anti-spyware application Spyware Protect 2009. Win32/Nuquel.E is often mentioned in fake pop-up warnings displayed by Spyware Protect 2009 in order to make people believe they are being attacked from the outside. It is worth mentioning that, along with Win32/Nuquel.E trojan, Spyware Protect 2009 often issues false security alerts stating you have the parasite called BankerFox.A. You need to remember that receiving pop-up messages about Win32/Nuquel.E and BankerFox.A trojans are reason enough for you to check your computer for infections using a trusted remover. The most likely malware you will detect is Spyware Protect 2009, which is probably hiding in the background.

Technical Information

File System Details

Win32/Nuquel.E creates the following file(s):
# File Name Detection Count
1 %WINDOWS%\dkewiizkjdks.exe N/A
2 %WINDOWS%\iqmcnoeqz.exe N/A
3 %WINDOWS%\jiklagka.exe N/A
4 %WINDOWS%\kitiiwhaas.exe N/A
5 %WINDOWS%\krkdkdkee.exe N/A
6 %WINDOWS%\krujmmwlrra.exe N/A
7 %WINDOWS%\ooorjaas.exe N/A
8 %WINDOWS%\ronitfst.exe N/A
9 %WINDOWS%\sysguardn.exe N/A
10 %WINDOWS%\zibaglertz.exe N/A
11 %WINDOWS%\otpeppggq.exe N/A
12 %WINDOWS%\dkekkrkska.exe N/A
13 %WINDOWS%\ienotas.exe N/A
14 %WINDOWS%\jikglond.exe N/A
15 %WINDOWS%\jungertab.exe N/A
16 %WINDOWS%\klopnidret.exe N/A
17 %WINDOWS%\krtawefg.exe N/A
18 %WINDOWS%\kuruhccdsdd.exe N/A
19 %WINDOWS%\oropbbsee.exe N/A
20 %WINDOWS%\skaaanret.exe N/A
21 %WINDOWS%\tobykke.exe N/A
22 %WINDOWS%\otowjdseww.exe N/A
23 %WINDOWS%\aazalirt.exe N/A
24 %WINDOWS%\iddqdops.exe N/A
25 %WINDOWS%\irprokwks.exe N/A
26 %WINDOWS%\jrjakdsd.exe N/A
27 %WINDOWS%\kkwknrbsggeg.exe N/A
28 %WINDOWS%\krkmahejdk.exe N/A
29 %WINDOWS%\ktknamwerr.exe N/A
30 %WINDOWS%\oranerkka.exe N/A
31 %WINDOWS%\seeukluba.exe N/A
32 %WINDOWS%\tobmygers.exe N/A
33 %WINDOWS%\otnnbektre.exe N/A
34 %WINDOWS%\rkaskssd.exe N/A
35 Uninstall Spyware Protect 2009.lnk N/A
36 Spyware Protect 2009.lnk N/A

Registry Details

Win32/Nuquel.E creates the following registry entry or registry entries:
Registry key
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "sysguardn"