WESAEE.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WESAEE.EXE – Backdoor Nitol removal

FileMD5Virus Alias
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Backdoor Nitol
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Trojan SuspiciousFile
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Trojan Artemis
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Trojan Eldorado
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Trojan Downloader
WESAEE.EXE 6318cd4caa6499221355b198f65f646c Trojan Agent

WESAEE.EXE size: 30720 bytes
WESAEE.EXE hash: 6318CD4CAA6499221355B198F65F646C

Created files:

%SysDir%\wesaee.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\13\Type: 10000000
HKLM\System\CurrentControlSet\Services\13\Start: 02000000
HKLM\System\CurrentControlSet\Services\13\DisplayName: 56
HKLM\System\CurrentControlSet\Services\13\ImagePath: %WinDir%\System32\wesaee.exe
HKLM\System\CurrentControlSet\Services\13\Description: 7887

Detected by UnHackMe:

WESAEE.EXE
Default location: %SYSDIR%\WESAEE.EXE

Dropper information:
MD5: 6318cd4caa6499221355b198f65f646c
File size: 30720 bytes

Leave a Reply