AIWAEE.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

AIWAEE.EXE – Backdoor Nitol removal

FileMD5Virus Alias
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Backdoor Nitol
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Trojan SuspiciousFile
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Trojan Artemis
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Trojan Eldorado
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Trojan Downloader
AIWAEE.EXE C5F0A9B526D1CDEFF1CB93B930B38D48 Trojan CI

AIWAEE.EXE size: 19200 bytes
AIWAEE.EXE hash: C5F0A9B526D1CDEFF1CB93B930B38D48

Created files:

%SysDir%\aiwaee.exe
%SysDir%\gei33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\fvvvfvvf\Type: 10000000
HKLM\System\CurrentControlSet\Services\fvvvfvvf\Start: 02000000
HKLM\System\CurrentControlSet\Services\fvvvfvvf\DisplayName: NT LM Security Support dvvvxxxjk
HKLM\System\CurrentControlSet\Services\fvvvfvvf\ImagePath: %WinDir%\System32\aiwaee.exe
HKLM\System\CurrentControlSet\Services\fvvvfvvf\Description: NT LM Security Support dsvvxxvvk

Detected by UnHackMe:

AIWAEE.EXE
Default location: %SYSDIR%\AIWAEE.EXE

Dropper information:
MD5: C5F0A9B526D1CDEFF1CB93B930B38D48
File size: 19200 bytes

Leave a Reply