I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
GIEUEW.EXE – Backdoor Nitol removal
File | MD5 | Virus Alias |
---|---|---|
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Backdoor Nitol |
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Trojan Eldorado |
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Trojan OnLineGames |
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Trojan Agent |
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Trojan-Ransom Winlock |
GIEUEW.EXE | 4bfabfc394734785d8e872265e705c91 | Trojan Jorik |
GIEUEW.EXE size: 59392 bytes
GIEUEW.EXE hash: 4BFABFC394734785D8E872265E705C91
Created files:
%SysDir%\gei33.dll
%SysDir%\gieuew.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\?: 10000000
HKLM\System\CurrentControlSet\Services\?: 02000000
HKLM\System\CurrentControlSet\Services\?: ASP.NET State Services
HKLM\System\CurrentControlSet\Services\?: %WinDir%\System32\gieuew.exe
HKLM\System\CurrentControlSet\Services\?: 04000000
HKLM\System\CurrentControlSet\Services\?: 07000000
HKLM\System\CurrentControlSet\Services\?: D0070000
HKLM\System\CurrentControlSet\Services\?: F8500000
HKLM\System\CurrentControlSet\Services\?: Provides support for out-of-to-process
Detected by UnHackMe:
GIEUEW.EXE
Default location: %SYSDIR%\GIEUEW.EXE
Dropper information:
MD5: 4bfabfc394734785d8e872265e705c91
File size: 59392 bytes