Home Malware Programs Backdoors Cycbot.G

Cycbot.G

Posted: October 14, 2011

Threat Metric

Threat Level: 6/10
Infected PCs: 15,214
First Seen: October 14, 2011
Last Seen: October 5, 2022
OS(es) Affected: Windows

Cycbot.G is a malicious virus that installs its related rogue anti-spyware applications such as ThinkPoint and Windows Simple Protector on the targeted PC system. Cycbot.G can also distribute fake Microsoft Security Essentials alerts. Cycbot.G can disable legitimate security programs on the infected computer. Payload of Cycbot.G is not restricted to the bogus anti-spyware promotion only. To keep your PC safe, delete Cycbot.G as quickly as possible.

Aliases

W32/Gbot.RWR!tr.bdr [Fortinet]TR/Kazy.50365.7 [AntiVir]Gen:Variant.Kazy.50365 [BitDefender]Backdoor.Win32.Gbot.rwr [Kaspersky]Trojan.Cycbot.b [CAT-QuickHeal]TROJ_GEN.R4FCCE1 [TrendMicro]Generic26.AZJZ [AVG]unknown virus Win32/DH{NA} [AVG]Trojan.Win32.Menti.mimy [Kaspersky]Trojan.Agent-278835 [ClamAV]BackDoor.Generic15.BPFY [AVG]Win32:Cycbot-UR [Trj] [Avast]Generic25.BYLN [AVG]Win32.HLLW.Autoruner1.2147 [DrWeb]Rogue:W32/FakeAv.EZ [F-Secure]
More aliases (3703)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\LP\D790\049.exe File name: 049.exe
Size: 269.82 KB (269824 bytes)
MD5: f0c32895313a7a1d5ba8016d73d3ef6e
Detection count: 101
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\LP\D790
Group: Malware file
Last Updated: September 7, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\java.exe File name: java.exe
Size: 288.25 KB (288256 bytes)
MD5: fe793524d89ee1c889041cda481b1dbd
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 14, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\iexplore.exe File name: iexplore.exe
Size: 300.54 KB (300544 bytes)
MD5: b21d9e1df64c9e5ec41defdea67a8ce9
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 14, 2013
%APPDATA%\java.exe File name: java.exe
Size: 288.76 KB (288768 bytes)
MD5: 2d60380f8b0f019852b567e01bda9691
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 4, 2013
%APPDATA%\Microsoft\2C46\636.exe File name: 636.exe
Size: 273.92 KB (273920 bytes)
MD5: 63d2c701f256066a688ca421a66cd0ad
Detection count: 77
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\2C46
Group: Malware file
Last Updated: August 27, 2012
%PROGRAMFILES%\LP\E4C7\0CC.exe File name: 0CC.exe
Size: 281.6 KB (281600 bytes)
MD5: 3b130c9d702b795d15f2a01a51e3505b
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\LP\E4C7
Group: Malware file
Last Updated: March 29, 2013
%APPDATA%\java.exe File name: java.exe
Size: 280.57 KB (280576 bytes)
MD5: b4f2c5c4cdccce6503927a0414ccb6d6
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 15, 2012
%APPDATA%\1299E\1BF36.exe File name: 1BF36.exe
Size: 166.4 KB (166400 bytes)
MD5: eeaa55cd828b2b4fd91898d57ae243d8
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\1299E
Group: Malware file
Last Updated: April 2, 2013
%APPDATA%\782B1\45F46.exe File name: 45F46.exe
Size: 171 KB (171008 bytes)
MD5: 3512404389377320fba4b371da4cd8c2
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\782B1
Group: Malware file
Last Updated: February 11, 2013
%PROGRAMFILES(x86)%\LP\274F\F16.exe File name: F16.exe
Size: 283.13 KB (283136 bytes)
MD5: 6603336c067282d5889912e0dd2bf875
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\LP\274F
Group: Malware file
Last Updated: May 21, 2012
%PROGRAMFILES%\LP\3706\0BA.exe File name: 0BA.exe
Size: 322.04 KB (322048 bytes)
MD5: 00c1a57f17d751ef9f9b77e09ef0e3b2
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\LP\3706
Group: Malware file
Last Updated: January 14, 2013
%APPDATA%\java.exe File name: java.exe
Size: 285.69 KB (285696 bytes)
MD5: 231dc5f80657b2f94280d67b11d710db
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 24, 2012
%PROGRAMFILES%\LP\88D0\06D.exe File name: 06D.exe
Size: 282.62 KB (282624 bytes)
MD5: f3e783ebfcac36b471a0122d34fa2c21
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\LP\88D0
Group: Malware file
Last Updated: March 2, 2012
%APPDATA%\Microsoft\46C4\431.exe File name: 431.exe
Size: 320.51 KB (320512 bytes)
MD5: 1a76ba96f623c3a8cd48f78002eb1df7
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\46C4
Group: Malware file
Last Updated: March 21, 2013
%APPDATA%\Microsoft\2A36\E68.exe File name: E68.exe
Size: 283.13 KB (283136 bytes)
MD5: b63ee194af49b866e8ace0d60b793972
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\2A36
Group: Malware file
Last Updated: March 6, 2012
%APPDATA%\66EE1\1D72A.exe File name: 1D72A.exe
Size: 167.93 KB (167936 bytes)
MD5: 57104c80feb2eb39107335c460644883
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\66EE1
Group: Malware file
Last Updated: March 2, 2012
%APPDATA%\6844C\86EB3.exe File name: 86EB3.exe
Size: 168.44 KB (168448 bytes)
MD5: 25a545171ad394b93ffab2dcddb1dd04
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\6844C
Group: Malware file
Last Updated: March 6, 2012
%APPDATA%\9A353\CA7FF.exe File name: CA7FF.exe
Size: 166.4 KB (166400 bytes)
MD5: 168e5ca8983bd57347fbc251ce21bab9
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\9A353
Group: Malware file
Last Updated: January 5, 2013
%APPDATA%\30EF4\DF590.exe File name: DF590.exe
Size: 166.4 KB (166400 bytes)
MD5: f58f6b43b04dfe17db38c9c9c522314f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\30EF4
Group: Malware file
Last Updated: December 7, 2012
%APPDATA%\Microsoft\0BA7\3B5.exe File name: 3B5.exe
Size: 322.04 KB (322048 bytes)
MD5: f942202bf5e5e359bfea2edb23c750c9
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\0BA7
Group: Malware file
Last Updated: December 17, 2012
%PROGRAMFILES(x86)%\LP\3462\C6F.exe File name: C6F.exe
Size: 276.48 KB (276480 bytes)
MD5: 051346caaf2767531a1aba8b55cb3afd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\LP\3462
Group: Malware file
Last Updated: December 17, 2012

More files
Loading...