MYGIUO.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MYGIUO.EXE – Backdoor Nitol removal

FileMD5Virus Alias
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Backdoor Nitol
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Trojan DLOADER
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Trojan Artemis
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Trojan Generic
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Trojan Agent
MYGIUO.EXE 5757e482191edc2462935c44eb0441de Trojan Scar

MYGIUO.EXE size: 38400 bytes
MYGIUO.EXE hash: 5757E482191EDC2462935C44EB0441DE

Created files:

%SysDir%\hra33.dll
%SysDir%\mygiuo.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalfnc\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalfnc\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalfnc\DisplayName: Nationaldme Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalfnc\ImagePath: %WinDir%\System32\mygiuo.exe
HKLM\System\CurrentControlSet\Services\Nationalfnc\Description: Providesvau a domain server for NI security.

Detected by UnHackMe:

MYGIUO.EXE
Default location: %SYSDIR%\MYGIUO.EXE

Dropper information:
MD5: 5757e482191edc2462935c44eb0441de
File size: 38400 bytes

Leave a Reply