Home Malware Programs Backdoors Backdoor:IRC/Rxbot

Backdoor:IRC/Rxbot

Posted: January 12, 2011

Threat Metric

Threat Level: 6/10
Infected PCs: 244
First Seen: December 14, 2010
OS(es) Affected: Windows

The first thing you need to know about Backdoor:IRC/Rxbot is that it is more dangerous than other Trojan infections. Backdoor:IRC/Rxbot is a backdoor Trojan which gains access to your PC stealthily. Backdoor.Ganipin.A has the malicious ability to steal information from the computer it infects. Unwary computer users who are faced with a Backdoor:IRC/Rxbot infection could easily lose their online banking details to this Trojan.

When your computer system becomes infected with Backdoor.Ganipin.A, identity theft is most likely to occur. Remove Backdoor.Ganipin.A immediately to avoid your money being pilfered by the hackers behind this malware scheme. Experts suggest the use of a well known malware removal tool that is both reliable and easy to use.

Aliases

Gen:Variant.Kazy.5565 [BitDefender]a variant of Win32/Olmarik.AJE [NOD32]Win32.SuspectCrc [Ikarus]Trojan/Win32.Agent.gen [Antiy-AVL]TR/Spy.Banker.1024512 [AntiVir]Trojan-Spy.Win32.Agent.bnhh [Kaspersky]Virus [K7AntiVirus]Artemis!082D3E45B82A [McAfee]Troj/VBl-Gen [Sophos]TR/Spy.37114 [AntiVir]Trojan.DownLoad.64258 [DrWeb]Gen:Trojan.Heur.VP.cm1@aeHo@4hk [BitDefender]a variant of Win32/VB.PCE [NOD32]Adware/DesktopSecurity2010 [Panda]Downloader.Generic10.LZB [AVG]
More aliases (198)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\132831\IA132_2121.exe File name: IA132_2121.exe
Size: 4.32 MB (4325376 bytes)
MD5: 6d56ff7cafb676d4e28428a88742c6b5
Detection count: 92
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\132831
Group: Malware file
Last Updated: December 16, 2010
%ALLUSERSPROFILE%\eb9b5a\IAeb9_2121.exe File name: IAeb9_2121.exe
Size: 4.32 MB (4321280 bytes)
MD5: a90add7a264d5abbde0aa5fccf61f3bf
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\eb9b5a
Group: Malware file
Last Updated: December 15, 2010
%APPDATA%\winlogon.exe File name: winlogon.exe
Size: 1.49 MB (1493504 bytes)
MD5: dcb2496433f3e7f272bfcbaa03e3f9ec
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 14, 2010
%ALLUSERSPROFILE%\Anwendungsdaten\d28d9f\IAd28_231.exe File name: IAd28_231.exe
Size: 3.57 MB (3577856 bytes)
MD5: 07d9262439ce16cfc40930c8e6510ade
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Anwendungsdaten\d28d9f
Group: Malware file
Last Updated: December 15, 2010
%ALLUSERSPROFILE%\51687b\IA516_289.exe File name: IA516_289.exe
Size: 3.58 MB (3581952 bytes)
MD5: 82bbaf77aea8f4c6a609e1cbe98c4b3a
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\51687b
Group: Malware file
Last Updated: December 16, 2010
%WINDIR%\Explorer.exe File name: Explorer.exe
Size: 1.03 MB (1032192 bytes)
MD5: 857bf7e41e312756c32b44e8c4446a96
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 17, 2010
%APPDATA%\kksl.exe File name: kksl.exe
Size: 270.33 KB (270336 bytes)
MD5: b26682fc2cdfc536e761c57fad65407a
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 15, 2010
%USERPROFILE%\Desktop\packupdate107_302.exe File name: packupdate107_302.exe
Size: 319.48 KB (319488 bytes)
MD5: fadb48715b4197eeb8fbc5961ae812e3
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: December 16, 2010
%APPDATA%\defender.exe File name: defender.exe
Size: 2.27 MB (2275328 bytes)
MD5: 69d8183b09f663ae85b0c9b6f97e3b0f
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 17, 2010
%WINDIR%\Explorer.exe File name: Explorer.exe
Size: 1.03 MB (1033216 bytes)
MD5: 082d3e45b82a1868a0cec9abbb763184
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 21, 2010
%TEMP%\setup1683212288.exe File name: setup1683212288.exe
Size: 150.01 KB (150016 bytes)
MD5: 6aba773ec13268ea26a9c081574e6677
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 16, 2010
%userprofile%\music\svchost.exe File name: svchost.exe
Size: 37.11 KB (37114 bytes)
MD5: a35d5fb644e7da20c4ada09ebd9cf658
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %userprofile%\music
Group: Malware file
Last Updated: December 21, 2010
%WINDIR%\System32\drivers\9ABDF135.sys File name: 9ABDF135.sys
Size: 10.24 KB (10240 bytes)
MD5: f5fd782e5b0059de564b3bfd2907e593
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 16, 2010
Loading...