NOTEPAB.EXE – Backdoor Zegost

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NOTEPAB.EXE – Backdoor Zegost removal

FileMD5Virus Alias
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Backdoor Zegost
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Trojan Generic
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Trojan Eldorado
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Trojan Downloader
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Trojan Agent
NOTEPAB.EXE 0b66390f8359dd132f39760f1e8e9e76 Backdoor Farfli

NOTEPAB.EXE size: 1006195 bytes
NOTEPAB.EXE hash: 0B66390F8359DD132F39760F1E8E9E76

Created files:

C:\Windows\BJ.exe
C:\Windows\notepab.exe
C:\Windows\svchest000.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Kris: c:\Windows\notepab.exe

Detected by UnHackMe:

NOTEPAB.EXE
Default location: %WinDir%\NOTEPAB.EXE

Dropper information:
MD5: 0b66390f8359dd132f39760f1e8e9e76
File size: 1006195 bytes

Leave a Reply