Threat Database Backdoors Backdoor.Win32.VanBot.cug

Backdoor.Win32.VanBot.cug

By GoldSparrow in Backdoors

Backdoor.Win32.VanBot.cug is a terrible backdoor trojan created by hackers to remotely access the compromised computer. Backdoor.Win32.VanBot.cug uses the vulnerabilities of the security software and bypasses the normal authentication so that it couldn't be detected by computer users. Backdoor.Win32.VanBot.cug can be installed by careless PC users when using the Internet or can be installed by other malware infections. Once Backdoor.Win32.VanBot.cug enters a computer system, it can do a lot of operations on the corrupted PC system such as infect file and program, log keystrokes, harm system, steal personal information. Remove Backdoor.Win32.VanBot.cug from your machine as quickly as possible before it destroys your computer and steal your private details.

File System Details

Backdoor.Win32.VanBot.cug may create the following file(s):
# File Name Detections
1. %Windir%\eithirtyfour.dll
2. %System%\sysaddei34.dll
3. %ProgramFiles%\ExeIco\uninstall.exe
4. %Windir%\tellei34.sys
5. %ProgramFiles%\ExeIco\ExeIco.exe
6. %Windir%\v34peformatei.dll
7. %Programs%\Executable File Icons Changer\Executable File Icons Changer ReadMe.lnk
8. %ProgramFiles%\ExeIco\Language\Language_0407.ini
9. %ProgramFiles%\ExeIco\Language\Language_0406.ini
10. %ProgramFiles%\ExeIco\Language\Language_0814.ini
11. %ProgramFiles%\ExeIco\Language\English.ini
12. %Programs%\Executable File Icons Changer\Executable File Icons Changer Help.lnk
13. %ProgramFiles%\ExeIco\Help.CHM
14. %ProgramFiles%\ExeIco\Language\Language_040a.ini
15. %ProgramFiles%\ExeIco\Language\Language_0414.ini
16. %ProgramFiles%\ExeIco\Language\Spanish.ini
17. %DesktopDir%\Executable File Icons Changer.lnk
18. %Programs%\Executable File Icons Changer\Executable File Icons Changer.lnk
19. %ProgramFiles%\ExeIco\ExeIco.ini
20. %ProgramFiles%\ExeIco\Language\Language_0408.ini
21. %ProgramFiles%\ExeIco\Language\Language_0413.ini
22. %ProgramFiles%\ExeIco\Language\Language_0804.ini
23. %ProgramFiles%\ExeIco\README.TXT

Registry Details

Backdoor.Win32.VanBot.cug may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\Change icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\Change icon\Command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ocxfile\Shell\Change icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ocxfile\Shell\Change icon\Command
HKEY_CURRENT_USER\Software\XTZY\ExeIco
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\Shell\Change icon\Command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\Shell\Change icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ocxfile\Shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icofile\Shell\Change icon\Command
HKEY_CURRENT_USER\Software\XTZY
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\ExeIco
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\Change icon\Command
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\Shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icofile\Shell
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\icofile\Shell\Change icon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\scrfile\shell\Change icon
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall

Trending

Most Viewed

Loading...