Aliases: TR/Gendal.kdv.183955.1 [AntiVir], Trojan.Generic.KDV.183955 [BitDefender], MSIL:Dropper-FK [Drp] [Avast], Generic.dx!zuo [McAfee], Trj/OCJ.A [Panda], unknown virus Win32/DH{IB4DCQ8} [AVG], W32/IRCBot.CQD!tr.bdr [Fortinet], Win32/Agent.NKU, Worm/Generic.agsb, Backdoor.Win32.IRCBot!IK, BDS/IRCBot.GX.6 [AntiVir], BackDoor.IRC.Bot.1979 [DrWeb], Worm.Agent!FffIf5slD0E, Gen:Trojan.Heur.RP.cmGfaOF1nTki [BitDefender] and Suspicious File [eSafe].

Technical Information

File System Details

Backdoor.IRCbot.GX creates the following file(s):
# File Name Size MD5 Detection Count
1 C:\Users\admin\Documents\Kit Formatacao\Plugins Videos\VDownloaderInstaller.exe\VDownloaderInstaller.exe 1,114,520 186214a90139ac2ddd1a79441a3b3fb8 30
2 %USERPROFILE%\Application Data\UpdateDrv.exe 49,566 4fb011e45c49c0bbbb7b8847f9940a82 27
3 %WINDIR%\system32\timesync.exe 32,768 f78df8839ab79e861299512cd77186c6 23
4 %PROGRAMFILES%\FLVPlayer\Uninstall\Uninstall.exe 2,035,984 b3b4ab24da09141beb14f316ca51d21a 15
5 %TEMP%hiphelp.exe 77,826 f454ea026c20fce4bd5fa0b5b44f2831 11
6 %APPDATA%\Microsoft\Windows\uaccache.exe 31,232 9eeb57c3bd12d0a5287b13d5716e6c3e 11
7 F:\كسكس 2\Compressed\DAP_2\DAP.exe\DAP.exe 3,862,528 4c0672cb5cfa61bac5cff11806fe6bd6 8
8 %SystemDrive%\win7xe\explorers.exe 1,766,400 e104354e409c2159fc03fbf455575784 6
9 %USERPROFILE%\Mod?les\audiadg.exe 11,264 9b3848f7bd575120a33fb480774b5b6b 3
10 %APPDATA%\DMJuamo\DMJuamo.exe 44,032 e547784a2c5c4fe50be8993f55218918 2
11 %APPDATA%CEB2.exe 45,857 3bc2728ca6d20bbdbc98b4b94bc2ac30 1
12 %APPDATA%PerfomanceOptimizerPre_Installer[1].exe 75,016 0f41c99d12a5ef80cdac119507594a70 1
More files

Site Disclaimer is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.

HTML is not allowed.