Backdoor Nitol – mciayu.exe – da09e2bf2efbc948edf659d5c038a4bf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Nitol
Also known as: Trojan Downloader.Generic, Trojan Generic
SHA256: f3247a1487287670c1321db749df0b3325fed85b6992b5739839d11b3e04888f
SHA1: 83a05b38def9f34834c4a7fb7bc2663267e3d608
MD5: da09e2bf2efbc948edf659d5c038a4bf
File size: 64512 bytes

Created files:

%SysDir%\mciayu.exe – Backdoor Nitol

Backdoor Nitol created autostart registry keys:

HKLM\System\CurrentControlSet\Services\DSLserveruka\Type: 10000000
HKLM\System\CurrentControlSet\Services\DSLserveruka\Start: 02000000
HKLM\System\CurrentControlSet\Services\DSLserveruka\DisplayName: DCOM Serveramd Process Launcher.
HKLM\System\CurrentControlSet\Services\DSLserveruka\ImagePath: %WinDir%\System32\mciayu.exe
HKLM\System\CurrentControlSet\Services\DSLserveruka\Description: DCOM Serverljh Process Launcher..

Leave a Reply