Solved! Use HKTVGE.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

HKTVGE.EXE – Backdoor Nitol removal

File MD5 Virus Alias
HKTVGE.EXE 9e8d7d6f89b6347480d608f0d603764c Backdoor Nitol
HKTVGE.EXE 9e8d7d6f89b6347480d608f0d603764c Trojan SuspiciousFile
HKTVGE.EXE 9e8d7d6f89b6347480d608f0d603764c Trojan Artemis
HKTVGE.EXE 9e8d7d6f89b6347480d608f0d603764c Backdoor RBot
HKTVGE.EXE 9e8d7d6f89b6347480d608f0d603764c Backdoor Farfli

HKTVGE.EXE size: 92848 bytes
HKTVGE.EXE hash: 9E8D7D6F89B6347480D608F0D603764C

Created files:

%WinDir%\hktvge.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Type: 10010000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Start: 02000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\DisplayName: Mnopqr Tuvawxyab Defghijk Mnop
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\ImagePath: %WinDir%\hktvge.exe
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Description: Mnopqrst Vwxayabcde Ghijklm Opqrstuv Xya

Detected by UnHackMe:

HKTVGE.EXE
Default location: %WinDir%\HKTVGE.EXE

Dropper information:
MD5: 9e8d7d6f89b6347480d608f0d603764c
File size: 92848 bytes

Leave a Reply