Home Malware Programs Viruses Generic.Bot.H

Generic.Bot.H

Posted: November 3, 2010

Generic.Bot.H is a malicious virus used by a botnet intruder to control a computer. A botnet is a network of zombie computers under the remote control of a malicious hacker. The virus enters the hard drive via a flash drive or bundled with what appears to be a legitimate download. Generic.Bot.H often uses a torrent or a corrupt PC application to spread. Generic.Bot.H poses a severe threat to PC security and should be removed immediately once detected.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 C:\Users\[user]\AppData\Roaming\WinDir\sercg.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44bba855-cc51-11cf-aafa-00aa00b6015n}
Loading...