Solved! Use SCNBTX.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SCNBTX.EXE – Backdoor Nitol removal

File MD5 Virus Alias
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Backdoor Nitol
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Trojan Exception.gen.101
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Trojan Generic
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Trojan Magania
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Backdoor Caphaw
SCNBTX.EXE 0fc47aa8c39c335924e91d30971c3700 Trojan Agent

SCNBTX.EXE size: 83968 bytes
SCNBTX.EXE hash: 0FC47AA8C39C335924E91D30971C3700

Created files:

%SysDir%\scnbtx.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Jklmno Qrstuvwx Abc\Type: 10010000
HKLM\System\CurrentControlSet\Services\Jklmno Qrstuvwx Abc\Start: 02000000
HKLM\System\CurrentControlSet\Services\Jklmno Qrstuvwx Abc\DisplayName: Jklmno Qrstuvwx Abcdefgh Jklm
HKLM\System\CurrentControlSet\Services\Jklmno Qrstuvwx Abc\ImagePath: %WinDir%\System32\scnbtx.exe
HKLM\System\CurrentControlSet\Services\Jklmno Qrstuvwx Abc\Description: Jklmnopq Stuvwxyab Defghij Lmnopqrs Uvw

Detected by UnHackMe:

SCNBTX.EXE
Default location: %SYSDIR%\SCNBTX.EXE

Dropper information:
MD5: 0fc47aa8c39c335924e91d30971c3700
File size: 83968 bytes

Leave a Reply