JIZVEC.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

JIZVEC.EXE – Backdoor Nitol removal

FileMD5Virus Alias
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Backdoor Nitol
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Trojan SuspiciousFile
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Trojan Artemis
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Trojan Generic
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Backdoor RBot
JIZVEC.EXE bc4e3bbf7c6e1f97755f72fbbf6b8ede Backdoor Farfli

JIZVEC.EXE size: 26624 bytes
JIZVEC.EXE hash: BC4E3BBF7C6E1F97755F72FBBF6B8EDE

Created files:

%WinDir%\jizvec.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\Type: 10010000
HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\Start: 02000000
HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\DisplayName: Abcdef Hijklwewewertmno Qrstuvwx Abcd
HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\ImagePath: %WinDir%\jizvec.exe
HKLM\System\CurrentControlSet\Services\Abcdef Hijweweklmno Qrs\Description: Abcdefgh Jklmnrtrteopqr Tuvwxya Cdefghij Lmn

Detected by UnHackMe:

JIZVEC.EXE
Default location: %WinDir%\JIZVEC.EXE

Dropper information:
MD5: bc4e3bbf7c6e1f97755f72fbbf6b8ede
File size: 26624 bytes

Leave a Reply