Solved! Use NEBJEQ.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

NEBJEQ.EXE – Backdoor Nitol removal

File MD5 Virus Alias
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Backdoor Nitol
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Trojan SuspiciousFile
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Trojan Artemis
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Trojan Generic
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Backdoor RBot
NEBJEQ.EXE 1d0e3de96f988ed1f91b30dc98110807 Backdoor Farfli

NEBJEQ.EXE size: 26624 bytes
NEBJEQ.EXE hash: 1D0E3DE96F988ED1F91B30DC98110807

Created files:

%WinDir%\nebjeq.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\Type: 10010000
HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\Start: 02000000
HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\DisplayName: Vwxyab Defghierjk Mnopqrst Vwxy
HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\ImagePath: %WinDir%\nebjeq.exe
HKLM\System\CurrentControlSet\Services\Vwxyab Derefghijk Mno\Description: Vwxyabcd Fghierjklmn Pqrstuv Xyabcdef Hij

Detected by UnHackMe:

NEBJEQ.EXE
Default location: %WinDir%\NEBJEQ.EXE

Dropper information:
MD5: 1d0e3de96f988ed1f91b30dc98110807
File size: 26624 bytes

Leave a Reply