EXPLORER.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

EXPLORER.EXE – Backdoor Nitol removal

FileMD5Virus Alias
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Backdoor Nitol
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Trojan Xema
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Trojan Eldorado
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Trojan Downloader
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Trojan Graftor
EXPLORER.EXE 738d4f32831ae263e6b723fd7f890915 Worm Autorun

EXPLORER.EXE size: 39936 bytes
EXPLORER.EXE hash: 738D4F32831AE263E6B723FD7F890915

Created files:

%SysDir%\explorer.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Distribuvht\Type: 10000000
HKLM\System\CurrentControlSet\Services\Distribuvht\Start: 02000000
HKLM\System\CurrentControlSet\Services\Distribuvht\DisplayName: Distribuleq Transaction Coordinator Service.
HKLM\System\CurrentControlSet\Services\Distribuvht\ImagePath: %WinDir%\System32\explorer.exe

Detected by UnHackMe:

EXPLORER.EXE
Default location: %SYSDIR%\EXPLORER.EXE

Dropper information:
MD5: 738d4f32831ae263e6b723fd7f890915
File size: 39936 bytes

Leave a Reply