SVCHEST.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHEST.EXE – Backdoor Nitol removal

FileMD5Virus Alias
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Backdoor Nitol
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Trojan SuspiciousFile
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Trojan Eldorado
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Trojan Downloader
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Trojan Krap
SVCHEST.EXE 4ba19a4ca7a085a9b6317d7dbce5b7bd Trojan Scar

SVCHEST.EXE size: 33798 bytes
SVCHEST.EXE hash: 4BA19A4CA7A085A9B6317D7DBCE5B7BD

Created files:

%SysDir%\svchest.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Windowssdfsdfsaf Test 1.0\Type: 10000000
HKLM\System\CurrentControlSet\Services\Windowssdfsdfsaf Test 1.0\Start: 02000000
HKLM\System\CurrentControlSet\Services\Windowssdfsdfsaf Test 1.0\DisplayName: WindowsasdfasdfsTest Server 1.0
HKLM\System\CurrentControlSet\Services\Windowssdfsdfsaf Test 1.0\ImagePath: %WinDir%\System32\svchest.exe
HKLM\System\CurrentControlSet\Services\Windowssdfsdfsaf Test 1.0\Description: This isfsdfsdf Test My Test Server 1.0

Detected by UnHackMe:

SVCHEST.EXE
Default location: %SYSDIR%\SVCHEST.EXE

Dropper information:
MD5: 4ba19a4ca7a085a9b6317d7dbce5b7bd
File size: 33798 bytes

Leave a Reply