JAHZAM.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

JAHZAM.EXE – Backdoor Nitol removal

FileMD5Virus Alias
JAHZAM.EXE f7396dd7a95196cb791274175f761bc4 Backdoor Nitol
JAHZAM.EXE f7396dd7a95196cb791274175f761bc4 Trojan SuspiciousFile
JAHZAM.EXE f7396dd7a95196cb791274175f761bc4 Trojan Eldorado

JAHZAM.EXE size: 18944 bytes
JAHZAM.EXE hash: F7396DD7A95196CB791274175F761BC4

Created files:

%WinDir%\jahzam.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\Type: 10010000
HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\Start: 02000000
HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\DisplayName: Abcdef Hijklmno Qrstuvwx Abcd
HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\ImagePath: %WinDir%\jahzam.exe
HKLM\System\CurrentControlSet\Services\Abcdef Hijklmno Qrs\Description: Abcdefgh Jklmnopqr Tuvwxya Cdefghij Lmn

Detected by UnHackMe:

JAHZAM.EXE
Default location: %WinDir%\JAHZAM.EXE

Dropper information:
MD5: f7396dd7a95196cb791274175f761bc4
File size: 18944 bytes

Leave a Reply