Solved! Use TSPNOS.EXE (Backdoor Nitol) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

TSPNOS.EXE – Backdoor Nitol removal

File MD5 Virus Alias
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Backdoor Nitol
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Trojan SuspiciousFile
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Trojan Generic
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Trojan Eldorado
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Trojan Downloader
TSPNOS.EXE b99fff4df7d8f3d418800196e06cf6c9 Virus Part

TSPNOS.EXE size: 24576 bytes
TSPNOS.EXE hash: B99FFF4DF7D8F3D418800196E06CF6C9

Created files:

%SysDir%\tspnos.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nationalbdg\Type: 10000000
HKLM\System\CurrentControlSet\Services\Nationalbdg\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationalbdg\DisplayName: Nationalsny Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationalbdg\ImagePath: %WinDir%\System32\tspnos.exe
HKLM\System\CurrentControlSet\Services\Nationalbdg\Description: Provideswvv a domain server for NI security.

Detected by UnHackMe:

TSPNOS.EXE
Default location: %SYSDIR%\TSPNOS.EXE

Dropper information:
MD5: b99fff4df7d8f3d418800196e06cf6c9
File size: 24576 bytes

Leave a Reply