Solved! Use UOIYKQ.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

UOIYKQ.EXE – Backdoor Nitol removal

File MD5 Virus Alias
UOIYKQ.EXE f49cfabe8c4d2f42be9c4c2691404722 Backdoor Nitol
UOIYKQ.EXE f49cfabe8c4d2f42be9c4c2691404722 Trojan Generic
UOIYKQ.EXE f49cfabe8c4d2f42be9c4c2691404722 Backdoor RBot
UOIYKQ.EXE f49cfabe8c4d2f42be9c4c2691404722 Trojan Buzus
UOIYKQ.EXE f49cfabe8c4d2f42be9c4c2691404722 Backdoor Farfli

UOIYKQ.EXE size: 73056 bytes
UOIYKQ.EXE hash: F49CFABE8C4D2F42BE9C4C2691404722

Created files:

%WinDir%\uoiykq.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\Type: 10010000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\Start: 02000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\DisplayName: Mnopqr Tuvwxyab Defghijk Mnop
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\ImagePath: %WinDir%\uoiykq.exe
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvwxyab Def\Description: Mnopqrst Vwxyabcde Ghijklm Opqrstuv Xya

Detected by UnHackMe:

UOIYKQ.EXE
Default location: %WinDir%\UOIYKQ.EXE

Dropper information:
MD5: f49cfabe8c4d2f42be9c4c2691404722
File size: 73056 bytes

Leave a Reply