Solved! Use BEZBEK.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

BEZBEK.EXE – Backdoor Nitol removal

File MD5 Virus Alias
BEZBEK.EXE 3d837839dcc6a1b11a833bbd7522a8cd Backdoor Nitol
BEZBEK.EXE 3d837839dcc6a1b11a833bbd7522a8cd Trojan SuspiciousFile
BEZBEK.EXE 3d837839dcc6a1b11a833bbd7522a8cd Trojan Generic
BEZBEK.EXE 3d837839dcc6a1b11a833bbd7522a8cd Trojan Downloader
BEZBEK.EXE 3d837839dcc6a1b11a833bbd7522a8cd Trojan Agent

BEZBEK.EXE size: 37888 bytes
BEZBEK.EXE hash: 3D837839DCC6A1B11A833BBD7522A8CD

Created files:

%WinDir%\bezbek.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Type: 10010000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Start: 02000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\DisplayName: Defghi Klmnopqr Tuvwxyab Defg
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\ImagePath: %WinDir%\bezbek.exe
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Description: Defghijk Mnopqrstu Wxyabcd Fghijklm Opq

Detected by UnHackMe:

BEZBEK.EXE
Default location: %WinDir%\BEZBEK.EXE

Dropper information:
MD5: 3d837839dcc6a1b11a833bbd7522a8cd
File size: 37888 bytes

Leave a Reply