BSFPSI.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BSFPSI.EXE – Backdoor Nitol removal

FileMD5Virus Alias
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Backdoor Nitol
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Trojan BadReputation
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Trojan SuspiciousFile
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Trojan Artemis
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Trojan Generic
BSFPSI.EXE 38d01a2a92028dbfdaa1696624d4a7e1 Trojan Eldorado

BSFPSI.EXE size: 31744 bytes
BSFPSI.EXE hash: 38D01A2A92028DBFDAA1696624D4A7E1

Created files:

%SysDir%\bsfpsi.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\gfetyuhebgetyujdtrgn\Type: 10000000
HKLM\System\CurrentControlSet\Services\gfetyuhebgetyujdtrgn\Start: 02000000
HKLM\System\CurrentControlSet\Services\gfetyuhebgetyujdtrgn\DisplayName: fvbjnfryujfdgbdyu
HKLM\System\CurrentControlSet\Services\gfetyuhebgetyujdtrgn\ImagePath: %WinDir%\System32\bsfpsi.exe

Detected by UnHackMe:

BSFPSI.EXE
Default location: %SYSDIR%\BSFPSI.EXE

Dropper information:
MD5: 38d01a2a92028dbfdaa1696624d4a7e1
File size: 31744 bytes

Leave a Reply