wstat32.exe - Dangerous

wstat32.exe

Manual removal instructions:

Antivirus Report of wstat32.exe:
wstat32.exe Malware
wstat32.exeDangerous
wstat32.exeHigh Risk
wstat32.exe
BAckdoor.IRC.Loonbot is a Trojan horse that has backdoor capabilities.
It can allow an attacker to remotely control your computer using Internet Relay Chat (IRC).
This Trojan can also download and execute files.

Copies itself as %System%\Wstat32.exe and executes that copy.

May display a fake error Message Box titled, "Error-384," with the text:
A valid data link was not found, deleting file
Waits for an Internet connection, and when one is opened, it connects to a remote IRC server, notifies the attacker, and then waits for commands.

This Trojan can perform the following actions:
Remove and uninstall itself
Delete files
Restart the computer
Run specified commands
Rename files
Create or delete folders
List and end processes
Perform an ICMP attack on a specified host

Manual removal:
Navigate to the key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
and delete the value:
"Wstat32 driver"="%System%\Wstat32.exe"

Use RegRun Startup Optimizer to remove it from startup.

Remove wstat32.exe now!

Dmitry Sokolov:

I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.

Since that time I work every day to fix the issues that antiviruses cannot.

If your antivirus have not helped you solve the problem, you should try UnHackMe.

We are a small company and you can ask me directly, if you have any questions.

Testimonials

You can read UnHackMe testimonials here.