GEI33.DLL – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

GEI33.DLL – Backdoor Nitol removal

FileMD5Virus Alias
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Backdoor Nitol
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Backdoor RBot
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Trojan Downloader
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Trojan Graftor
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Worm Autorun
GEI33.DLL 655d12e373b5891981111e48da1f0a88 Trojan Small

GEI33.DLL size: 9728 bytes

Created files:

%SysDir%\gei33.dll
%SysDir%\nmbhma.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\netscver\Type: 10000000
HKLM\System\CurrentControlSet\Services\netscver\Start: 02000000
HKLM\System\CurrentControlSet\Services\netscver\DisplayName: NT LM Security Support Provider
HKLM\System\CurrentControlSet\Services\netscver\ImagePath: %WinDir%\System32\nmbhma.exe
HKLM\System\CurrentControlSet\Services\netscver\Description: NT LM Security Support Provider

Detected by UnHackMe:

GEI33.DLL
Default location: %SYSDIR%\GEI33.DLL

Leave a Reply