NTOETECT.EXE – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

NTOETECT.EXE – Backdoor Hupigon removal

File MD5 Virus Alias
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Backdoor Hupigon
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Trojan SuspiciousFile
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Trojan Xema
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Trojan Eldorado
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Backdoor Pigeon
NTOETECT.EXE 84e0db9c3d0be89f2510421f04b5a6a2 Trojan Agent

NTOETECT.EXE size: 608256 bytes
NTOETECT.EXE hash: 84E0DB9C3D0BE89F2510421F04B5A6A2

Created files:

C:\NTOETECT.exe
%Program Files Common%\Microsoft Shared\MSINFO\NTOETECT.exe
%WinDir%\_NTOETECT.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Windows service\Type: 10010000
HKLM\System\CurrentControlSet\Services\Windows service\Start: 02000000
HKLM\System\CurrentControlSet\Services\Windows service\DisplayName: Windows service
HKLM\System\CurrentControlSet\Services\Windows service\ImagePath: %Program Files Common%\Microsoft Shared\MSINFO\NTOETECT.exe

Detected by UnHackMe:

NTOETECT.EXE
Default location: %PROGRAM FILES COMMON%\MICROSOFT SHARED\MSINFO\NTOETECT.EXE

Dropper information:
MD5: 84e0db9c3d0be89f2510421f04b5a6a2
File size: 608256 bytes

Leave a Reply