HRA33.DLL – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HRA33.DLL – Backdoor Nitol removal

FileMD5Virus Alias
HRA33.DLL a3e411b52c7cfb779b2e1ebe97edcc27 Backdoor Nitol
HRA33.DLL a3e411b52c7cfb779b2e1ebe97edcc27 Trojan Artemis
HRA33.DLL a3e411b52c7cfb779b2e1ebe97edcc27 Trojan Generic
HRA33.DLL a3e411b52c7cfb779b2e1ebe97edcc27 Trojan Agent
HRA33.DLL a3e411b52c7cfb779b2e1ebe97edcc27 Trojan Scar

HRA33.DLL size: 12288 bytes
HRA33.DLL hash: A3E411B52C7CFB779B2E1EBE97EDCC27

Created files:

%SysDir%\hra33.dll
%SysDir%\tkzdgk.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalybm\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalybm\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalybm\DisplayName: Nationalmsr Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalybm\ImagePath: %WinDir%\System32\tkzdgk.exe
HKLM\System\CurrentControlSet\Services\Nationalybm\Description: Providescxe a domain server for NI security.

Detected by UnHackMe:

HRA33.DLL
Default location: %SYSDIR%\HRA33.DLL

Dropper information:
MD5: 93a97ac6a5390a48b9d04bc53218a850
File size: 60928 bytes

Leave a Reply