Home Malware Programs Trojans Vbot.G

Vbot.G

Posted: June 18, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 145
First Seen: June 18, 2011
OS(es) Affected: Windows

Aliases

Trj/Banker.MEK [Panda]Trojan-Banker.Win32.Agent [Ikarus]TR/Banker.Agent.aye [AntiVir]Trojan.Agent.AQHR [BitDefender]Trojan-Banker.Win32.Agent.aye [Kaspersky]PWS-Banker!goy [McAfee]W32/Hiloti.Q!tr [Fortinet]Trojan.Generic.KDV.218447 [BitDefender]a variant of Win32/Kryptik.NQE [NOD32]Hiloti.gen.w [McAfee]W32/Hiloti.I.gen!Eldorado [F-Prot]a variant of Win32/Kryptik.EXA [NOD32]Trojan.Win32.Hiloti [Ikarus]a variant of Win32/Kryptik.PCG [NOD32]Agent2.CIHQ [AVG]
More aliases (176)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\clsidmount.exe File name: clsidmount.exe
Size: 3.94 MB (3942400 bytes)
MD5: 7b979118ee56b1c46fbec77f75ef6fe6
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: June 21, 2011
%LOCALAPPDATA%\KBDMFisv.dll File name: KBDMFisv.dll
Size: 126.97 KB (126976 bytes)
MD5: 86f5cbb3d10814721b943787bf4098a9
Detection count: 54
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: June 20, 2011
%WINDIR%\svpodsom.dll File name: svpodsom.dll
Size: 122.88 KB (122880 bytes)
MD5: 72971041e7f66161a36eef86cca54648
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%
Group: Malware file
Last Updated: June 28, 2011
%WINDIR%\kbdlwa.dll File name: kbdlwa.dll
Size: 66.04 KB (66048 bytes)
MD5: f6f45ceb356bd1e862966dd7d6a78e97
Detection count: 25
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%
Group: Malware file
Last Updated: June 28, 2011
%WINDIR%\elsef10.dll File name: elsef10.dll
Size: 118.78 KB (118784 bytes)
MD5: 048d617430f6e9d3079f30550d810aa9
Detection count: 22
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%
Group: Malware file
Last Updated: June 28, 2011
%WINDIR%\Temp\shabi.exe File name: shabi.exe
Size: 25.6 KB (25600 bytes)
MD5: 89c958970a73b68c6957a46556f296f3
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: June 18, 2011
%TEMP%\R66v.exe File name: R66v.exe
Size: 45.56 KB (45568 bytes)
MD5: fc89025ae4af38d56d8f1f402ac2e69e
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: June 21, 2011
%USERPROFILE%\Start Menu\Programs\Startup\dxdiag.exe File name: dxdiag.exe
Size: 24.57 KB (24576 bytes)
MD5: 3cb142fc295c235c29b3ac2b6cbd0a1d
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: June 20, 2011
%SystemDrive%\Recycle.Bin\Recycle.Bin.exe File name: Recycle.Bin.exe
Size: 162.3 KB (162304 bytes)
MD5: ade86feaa34df4f150e7d18eda007029
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Recycle.Bin
Group: Malware file
Last Updated: June 20, 2011
%WINDIR%\system32\netsvcs32.exe File name: netsvcs32.exe
Size: 694.27 KB (694272 bytes)
MD5: 854ac0df183c83b79f67250c497d0cb7
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: June 29, 2011
C:\Recycle.Bin\Recycle.Bin.exe File name: Recycle.Bin.exe
Size: 333.82 KB (333824 bytes)
MD5: 24fe30fcf9fe94926dc1e264ebf95831
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Path: C:\Recycle.Bin
Group: Malware file
Last Updated: June 20, 2011
%WINDIR%\system32\msible.dll File name: msible.dll
Size: 64 KB (64000 bytes)
MD5: 054c5526514eedec2a13b9f851f17ffa
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: June 20, 2011
%WINDIR%\system32\config\systemprofile\AppData\Local\ydw.exe File name: ydw.exe
Size: 331.77 KB (331776 bytes)
MD5: a9861070a4545918c256c9c9098bff34
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\config\systemprofile\AppData\Local
Group: Malware file
Last Updated: June 20, 2011

Related Posts

Loading...