GEI33.DLL – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

GEI33.DLL – Backdoor Nitol removal

FileMD5Virus Alias
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Backdoor Nitol
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Trojan Generic
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Backdoor RBot
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Trojan Downloader
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Trojan Graftor
GEI33.DLL 655D12E373B5891981111E48DA1F0A88 Worm Autorun

GEI33.DLL size: 9728 bytes
GEI33.DLL hash: 655D12E373B5891981111E48DA1F0A88

Created files:

%SysDir%\aiwaee.exe
%SysDir%\gei33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\fvvvfvvf\Type: 10000000
HKLM\System\CurrentControlSet\Services\fvvvfvvf\Start: 02000000
HKLM\System\CurrentControlSet\Services\fvvvfvvf\DisplayName: NT LM Security Support dvvvxxxjk
HKLM\System\CurrentControlSet\Services\fvvvfvvf\ImagePath: %WinDir%\System32\aiwaee.exe
HKLM\System\CurrentControlSet\Services\fvvvfvvf\Description: NT LM Security Support dsvvxxvvk

Detected by UnHackMe:

GEI33.DLL
Default location: %SYSDIR%\GEI33.DLL

Dropper information:
MD5: C5F0A9B526D1CDEFF1CB93B930B38D48
File size: 19200 bytes

Leave a Reply