Solved! Use EEIAEA.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

EEIAEA.EXE – Backdoor Nitol removal

File MD5 Virus Alias
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Backdoor Nitol
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Trojan SuspiciousFile
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Trojan Artemis
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Trojan Generic
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Backdoor RBot
EEIAEA.EXE d1670fec84f59ea9fe339594994c8c77 Backdoor Farfli

EEIAEA.EXE size: 20480 bytes
EEIAEA.EXE hash: D1670FEC84F59EA9FE339594994C8C77

Created files:

%WinDir%\eeiaea.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\TCP Mnager Service\Type: 10010000
HKLM\System\CurrentControlSet\Services\TCP Mnager Service\Start: 02000000
HKLM\System\CurrentControlSet\Services\TCP Mnager Service\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\TCP Mnager Service\DisplayName: TCP Mnager Service
HKLM\System\CurrentControlSet\Services\TCP Mnager Service\ImagePath: %WinDir%\eeiaea.exe
HKLM\System\CurrentControlSet\Services\TCP Mnager Service\Description: TCP Mnager Service

Detected by UnHackMe:

EEIAEA.EXE
Default location: %WinDir%\EEIAEA.EXE

Dropper information:
MD5: d1670fec84f59ea9fe339594994c8c77
File size: 20480 bytes

Leave a Reply