Backdoor Nitol – gei33.dll – 694e3757b7dd18ac7e7707a668ceb24f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Nitol
Also known as: Trojan Generic, Trojan Downloader.Generic
SHA256: 913bc1678898c0d22498ff050ff4904ed7ad94729eab8852d300f233d72d04aa
SHA1: 9b070d357200c890d06b56b7d13033472088c130
MD5: 694e3757b7dd18ac7e7707a668ceb24f
File size: 50176 bytes

Created files:

%SysDir%\gei33.dll – Backdoor Nitol
%SysDir%\jmldmq.exe – Backdoor Nitol

Backdoor Nitol created autostart registry keys:

HKLM\System\CurrentControlSet\Services\iqflduuveo\Type: 10000000
HKLM\System\CurrentControlSet\Services\iqflduuveo\Start: 02000000
HKLM\System\CurrentControlSet\Services\iqflduuveo\DisplayName: owqcudhnefnjhaimuczf
HKLM\System\CurrentControlSet\Services\iqflduuveo\ImagePath: %WinDir%\System32\jmldmq.exe
HKLM\System\CurrentControlSet\Services\iqflduuveo\Description: skuiduburiswtbrecuykabfcvkdzez

Leave a Reply