Threat Scorecard

Threat Level: 60 % (Medium)
Infected Computers: 38
First Seen: April 26, 2011
Last Seen: February 9, 2021
OS(es) Affected: Windows

BackdoorNetbus is malware and allows hacker's to access and control infected PC's from a remote location. This enables the hacker to steal your files, private information and data, damage installed programs and other malicious acts. This type of "application" is sometimes referred to as a Remote Administration Tool. BackdoorNetbus is also known as NetBus.reg (McAfee), Troj/NetBus-REG (Sophos) and

REG_NETBUP.A (Trend Micro). BackdoorNetbus also changes the registry so that it automatically runs every time Windows is startup.


18 security vendors flagged this file as malicious.

Anti-Virus Software Detection
- Troj/NetBus-REG
- NetBus.reg
Panda Trj/Netbus.W
Fortinet W32/NetBus.160
Ikarus Backdoor.Win32.Netbus.153
AhnLab-V3 Win-Trojan/Netbus.472576
Microsoft Backdoor:Win32/Netbus.B
Antiy-AVL Backdoor/Win32.Netbus.gen
AntiVir TR/NB/Patch-1.6
DrWeb BackDoor.NetBus.160
Sophos Troj/Netb-160.4
BitDefender Trojan.Netbus.A
Kaspersky Backdoor.Win32.Netbus.160.b
ClamAV Troj.BD.Netbus-Patch1.6
eSafe Win32.Netbus.160.b
Avast Win32:NetBus-WM
Symantec Backdoor.NetBus.svr

File System Details

Backdoor.Netbus may create the following file(s):
# File Name MD5 Detections
1. file.exe 5f6156dcaf44de70e85b78c5875d405c 1
2. 3390efcf.exe
3. backdoor.netbus.170.exe
4. backdoor.netbus.170_(45).exe
5. 310fd342.exe
6. backdoor.netbus.12.exe
7. backdoor.netbus.170_(343).exe
8. -1482685340.exe
9. -722545794.exe
10. backdoor.netbus.170_(210).exe
11. nbs1.reg
12. nbnts1.reg
13. file.exe da44e944556ace39b12937f00b34bccc 0

Related Posts


Most Viewed