TKZDGK.EXE – Backdoor Nitol

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

TKZDGK.EXE – Backdoor Nitol removal

FileMD5Virus Alias
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Backdoor Nitol
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Trojan Generic
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Trojan MLW
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Trojan Eldorado
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Trojan Downloader
TKZDGK.EXE 1168f42eb1bdcac2bcc4980714e09651 Trojan Agent

TKZDGK.EXE size: 48640 bytes
TKZDGK.EXE hash: 1168F42EB1BDCAC2BCC4980714E09651

Created files:

%SysDir%\hra33.dll
%SysDir%\tkzdgk.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalybm\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalybm\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalybm\DisplayName: Nationalmsr Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalybm\ImagePath: %WinDir%\System32\tkzdgk.exe
HKLM\System\CurrentControlSet\Services\Nationalybm\Description: Providescxe a domain server for NI security.

Detected by UnHackMe:

TKZDGK.EXE
Default location: %SYSDIR%\TKZDGK.EXE

Dropper information:
MD5: 93a97ac6a5390a48b9d04bc53218a850
File size: 60928 bytes

Leave a Reply