Backdoor Nitol – gei33.dll – a9c935ff66adf8ae61fbac6eda9dc652

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Nitol
Also known as: Trojan Generic, Trojan Downloader.Generic
SHA256: 159b651813d0448c59cf1ebfc3336026c7a980df4c879b87c97db4bed0ed86ac
SHA1: 013e8c9de06c95ddd6a8e9a8c4be7beafb4bbace
MD5: a9c935ff66adf8ae61fbac6eda9dc652
File size: 49152 bytes

Created files:

%SysDir%\gei33.dll – Backdoor Nitol
%SysDir%\iugmqc.exe – Backdoor Nitol

Backdoor Nitol created autostart registry keys:

HKLM\System\CurrentControlSet\Services\netscvre\Type: 10000000
HKLM\System\CurrentControlSet\Services\netscvre\Start: 02000000
HKLM\System\CurrentControlSet\Services\netscvre\DisplayName: NT LM Security Support Providers
HKLM\System\CurrentControlSet\Services\netscvre\ImagePath: %WinDir%\System32\iugmqc.exe
HKLM\System\CurrentControlSet\Services\netscvre\Description: NT LM Security Support Providers

Leave a Reply