Win32/Nuqel.E trojan Removal Instructions

Win32/Nuqel.E removal is rather removal of  Win32/Nuqel.E alert now than removal of Win32/Nuqel.E   worm distributed mainly trough the local networks and known to act as a spammer exploiting Yahoo.messanger vulnerability. Currently the name is used in misleading alerts of Antivirus Soft, Antivirus System Pro, Spyware Protect 2009 and others. Win32/Nuqel.E is rather out-of-date so that  legit software would unlikely inform you of Win32/Nuqel.E attack, especially in such annoying way requesting to buy it in order that it could remove Win32/Nugel.E.
To get rid of Win32/Nuqel.E alert removing corresponding fake antispyware in whole and/or to remove true Win32/Nuqel.E worm, click here to download Spyware Doctor.

Win32/Nuqel.E trojan

Automatic removal of Win32/Nuqel.E :

Malware is likely to be accomponied by a group of numerous relatives and assisting programs. That is why we recomend to scan computer for malware and viruses if  Win32/Nuqel.E is your computer resident. The scan is 100% free. After the scan, you can remove Win32/Nuqel.E in a safe mode as fast as your PC perfomance permits. Click here to scan your computer for free and get rid of Win32/Nuqel.E.

If Win32/Nuqel.E blocks remover download:

Where Win32/Nuqel.E attempts to evade its removal and terminates or disallows true antispyware downloading, the problem is usually resolved when you run your OS in safe mode. To start Safe Mode session, please restart your computer and before Windows starts loading press F8 and hold it until you enter Windows Advanced Options Menu; by using your keyboard choose the following option: Safe Mode with Networking, and let Windows start in Safe Mode. Try to download the antispyware of your choice again. If Win32/Nuqel.E still blocks remover download – act as follows:

Step 1: click Start at the left bottom corner of your monitor
Step 2: choose Run in its menu
Step 3: type “command” in the line and click OK or press Enter
Step 4: in the window that is to appear type “notepad”
Step 5: once notepad is open, insert the following text into Notepad by copy and paste:

Windows Registry Editor Version 5.00

[-HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command]
[-HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command]
[-HKEY_CLASSES_ROOT\.exe\shell\open\command]

[HKEY_CLASSES_ROOT\.exe]
@=”exefile”
“Content Type”=”application/x-msdownload”

[-HKEY_CLASSES_ROOT\secfile]

Step 6: save the resulted file as “exefix.reg” (no quotes) at the Desktop. When saving, please choose All Files at the “Save As” drop-down list. Open “exefix.reg” file (on your Desktop) and press “Yes”. After that you can download Spyware Doctor and other legitimate anti-spyware applications.

Download Spyware Doctor to remove Win32/Nuqel.E malware

Manual removal of Win32/Nuqel.E:

Win32/Nuqel.E manual removal means that you have relevant skills for managing .dll files and PC registry. After you remove Win32/Nuqel.E manually, we still highly recommend you due to the reasons explained above to perform free scan for malware. Follow the relevant link above to start free scan (click on “Download Spyware Doctor to remove Win32/Nuqel.E malware”).

Delete Win32\Nuqel.E files:

%WINDOWS%\sysguard.exe
%WINDOWS%\system32\iehelper.dll

Delete Win32\Nuqel.E registry entries:

HKEY_CURRENT_USER\Software\AvScan
HKEY_CLASSES_ROOT\CLSID\{BAD4551D-9B24-42cb-9BCD-818CA2DA7B63}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BAD4551D-9B24-42cb-9BCD-818CA2DA7B63}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “system tool”

Antivirus Live 2010
Share it:


Did you enjoy this post? Why not leave a comment below and continue the conversation, or subscribe to my feed and get articles like this delivered automatically to your feed reader.

Comments

i am a computer novice so foregive me if this is drawn out, i got rid of win32/nuqel.e by starting computer wth f8 key pressed which put me in safe mode, i then selected “safe mode with networking” after windows started i chose “restore” then “restore settings”, i highlighted a drive and switched off restore, ignored all warnings and restored to an earlier date, my compter then ran OK, I then went to “restore settings and removed tick then RESTORED TO TODAYS DATE. regards john

Thanks John! Your instructions worked perfect!!!
You were more helpful than any of these sites claiming that they have the answer.
Thanks again John. YOU ROCK!

I agree…..You Roick John….and I like your dry sense of humour 2 :)

i contacted this virus through yahoo messenger, and i turned off restore and restored again and i am not getting anywhere, i am trying to get rid of this so I wont have to pay someone to come in and fix the thing. If you could help me in any way at all i would appreciate it!

I do not see the “Restore” or “Restore Settings” options. Where are they?

Very nice post and thanks so much for your kind share! Also, I have found a very powerful anti-spyware program

If you are looking to remove this trojan, everyone do what John here has requested. I simply went to run in safe mode with networking like he said above, then restored to an earlier date. this did fix the problem.

SURE ENOUGH, IT WORKED. THANKS MAN!

John… You da’ man! Thanks bro. Do what he says and you’ll be out of trouble in no time. Mucho Appreciation!

Leave a comment

(required)

(required)