Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

NOT.EXE is Backdoor Bifrose.AE

$
0
0

The program NOT.EXE is used for hidden penetration into PC and its remote administration.
UnHackMe is recommended as a reliable program for solving the problem with NOT.EXE.
Download for free: http://www.unhackme.com

Malware Analysis of NOT.EXE
Full path on a computer: %SysDir%\not\not.exe

Detected by UnHackMe:

Item Name: {96ED2B65-522A-FD02-904F-A166A41EE8EF}
Author:
Current Setting: %SYSDIR%\NOT\NOT.EXE
Type: ActiveSetup

Removal Results: Success
Number of reboot: 1

NOT.EXE is known as:

Backdoor.Bifrose.AE, a variant of MSIL.Injector.TF, PE:Trojan.Injector.6.50, Win32.Trojan.782

NOT.EXE hash:

  • MD5: 79cd6cc52e788ad9e0658ccbd07e64a7
How to quickly detect NOT.EXE presence?
Registry:
  • HKLM\Software\Microsoft\Active Setup\Installed Components\{96ED2B65-522A-FD02-904F-A166A41EE8EF}\stubpath: “%SysDir%\not\not.exe s”
Folders:
  • %SysDir%\not
Files:
  • %Appdata%\woot.dat
  • %SysDir%\not\not.exe
  • %SysDir%\not\woot.dat


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>