SQGYMS.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SQGYMS.EXE – Backdoor Nitol removal

FileMD5Virus Alias
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Backdoor Nitol
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Trojan WS.Reputation
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Trojan Artemis
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Trojan Generic
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Trojan Graftor
SQGYMS.EXE 816681ddb22a63ece6079e01d507861b Trojan Agent

SQGYMS.EXE size: 29696 bytes
SQGYMS.EXE hash: 816681DDB22A63ECE6079E01D507861B

Created files:

%WinDir%\sqgyms.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\WinHelp32\Type: 10010000
HKLM\System\CurrentControlSet\Services\WinHelp32\Start: 02000000
HKLM\System\CurrentControlSet\Services\WinHelp32\DisplayName: Windows Help System
HKLM\System\CurrentControlSet\Services\WinHelp32\ImagePath: %WinDir%\sqgyms.exe
HKLM\System\CurrentControlSet\Services\WinHelp32\Description: Windows Help System for X32 windows desktop

Detected by UnHackMe:

SQGYMS.EXE
Default location: %WinDir%\SQGYMS.EXE

Dropper information:
MD5: 816681ddb22a63ece6079e01d507861b
File size: 29696 bytes

Leave a Reply