BWZXSG.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BWZXSG.EXE – Backdoor Nitol removal

FileMD5Virus Alias
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Backdoor Nitol
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Trojan SuspiciousFile
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Trojan Generic
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Trojan Eldorado
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Trojan Downloader
BWZXSG.EXE 4566d3feb12badf82b5c6ace3a3fa10e Trojan Graftor

BWZXSG.EXE size: 24576 bytes
BWZXSG.EXE hash: 4566D3FEB12BADF82B5C6ACE3A3FA10E

Created files:

%SysDir%\bwzxsg.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalfxm\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalfxm\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalfxm\DisplayName: Nationalwny Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalfxm\ImagePath: %WinDir%\System32\bwzxsg.exe
HKLM\System\CurrentControlSet\Services\Nationalfxm\Description: Providesghd a domain server for NI security.

Detected by UnHackMe:

BWZXSG.EXE
Default location: %SYSDIR%\BWZXSG.EXE

Dropper information:
MD5: 4566d3feb12badf82b5c6ace3a3fa10e
File size: 24576 bytes

Leave a Reply