QQOKQE.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

QQOKQE.EXE – Backdoor Nitol removal

FileMD5Virus Alias
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Backdoor Nitol
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Suspicious File
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Trojan XPACK
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Trojan MLW
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Trojan Eldorado
QQOKQE.EXE 0141c57d22314429becd6189f63d60ff Trojan Downloader

QQOKQE.EXE size: 109604 bytes
QQOKQE.EXE hash: 0141C57D22314429BECD6189F63D60FF

Created files:

%SysDir%\qqokqe.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalyvu\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalyvu\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalyvu\DisplayName: Nationalatc Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalyvu\ImagePath: %WinDir%\System32\qqokqe.exe
HKLM\System\CurrentControlSet\Services\Nationalyvu\Description: Provideshcl a domain server for NI security.

Detected by UnHackMe:

QQOKQE.EXE
Default location: %SYSDIR%\QQOKQE.EXE

Dropper information:
MD5: 0141c57d22314429becd6189f63d60ff
File size: 109604 bytes

Leave a Reply