Solved! Use SYSEKIM.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SYSEKIM.EXE – Backdoor Nitol removal

File MD5 Virus Alias
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Backdoor Nitol
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Trojan XPACK
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Trojan Generic
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Trojan CI
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Trojan Agent
SYSEKIM.EXE f21f968940408996de73caddeb1b4c04 Trojan Crypt

SYSEKIM.EXE size: 102400 bytes
SYSEKIM.EXE hash: F21F968940408996DE73CADDEB1B4C04

Created files:

%WinDir%\sysekim.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\sdfvice\Type: 10000000
HKLM\System\CurrentControlSet\Services\sdfvice\Start: 02000000
HKLM\System\CurrentControlSet\Services\sdfvice\DisplayName: EEEEEEEEEEebsdfasdfasdf
HKLM\System\CurrentControlSet\Services\sdfvice\ImagePath: %WinDir%\sysekim.exe

Detected by UnHackMe:

SYSEKIM.EXE
Default location: %WinDir%\SYSEKIM.EXE

Dropper information:
MD5: f21f968940408996de73caddeb1b4c04
File size: 102400 bytes

Leave a Reply