NEFJEQ.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NEFJEQ.EXE – Backdoor Nitol removal

FileMD5Virus Alias
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Backdoor Nitol
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Trojan SuspiciousFile
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Trojan Artemis
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Trojan Downloader
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Trojan CI
NEFJEQ.EXE 0af0ec456bb994fce78ed97b4b770f3b Trojan Agent

NEFJEQ.EXE size: 49152 bytes
NEFJEQ.EXE hash: 0AF0EC456BB994FCE78ED97B4B770F3B

Created files:

%SysDir%\nefjeq.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Distribulfs\Type: 10000000
HKLM\System\CurrentControlSet\Services\Distribulfs\Start: 02000000
HKLM\System\CurrentControlSet\Services\Distribulfs\DisplayName: Distribulhq Transaction Coordinator Service
HKLM\System\CurrentControlSet\Services\Distribulfs\ImagePath: %WinDir%\System32\nefjeq.exe

Detected by UnHackMe:

NEFJEQ.EXE
Default location: %SYSDIR%\NEFJEQ.EXE

Dropper information:
MD5: 0af0ec456bb994fce78ed97b4b770f3b
File size: 49152 bytes

Leave a Reply