The program NOT.EXE is used for hidden penetration into PC and its remote administration.
UnHackMe is recommended as a reliable program for solving the problem with NOT.EXE.
Download for free: http://www.unhackme.com
Malware Analysis of NOT.EXE
Full path on a computer: %SysDir%\not\not.exe
Detected by UnHackMe:
Item Name: {96ED2B65-522A-FD02-904F-A166A41EE8EF}
Author:
Current Setting: %SYSDIR%\NOT\NOT.EXE
Type: ActiveSetup
Removal Results: Success
Number of reboot: 1
NOT.EXE is known as:
Backdoor.Bifrose.AE, a variant of MSIL.Injector.TF, PE:Trojan.Injector.6.50, Win32.Trojan.782
NOT.EXE hash:
- MD5: 79cd6cc52e788ad9e0658ccbd07e64a7
How to quickly detect NOT.EXE presence?
Registry:
- HKLM\Software\Microsoft\Active Setup\Installed Components\{96ED2B65-522A-FD02-904F-A166A41EE8EF}\stubpath: “%SysDir%\not\not.exe s”
Folders:
- %SysDir%\not
Files:
- %Appdata%\woot.dat
- %SysDir%\not\not.exe
- %SysDir%\not\woot.dat