Generic Rootkit.g

Generic Rootkit.g Description

Generic Rootkit.g is a Trojan horse virus capable of opening a backdoor into the compromised computer, giving an unauthorized user remote access to the system through an IRC Channel. This may inevitably lead to loss of personal and financial information.

Aliases: W32/Spybot.XPIF-6513, HackTool.Tcpz (Not a Virus) [CAT-QuickHeal], Backdoor.Win32.IRCBot [Ikarus], Backdoor.IRCBot, Backdoor/Win32.IRCBot.gen [Antiy-AVL], Worm/IrcBot.11656.3 [AntiVir], Backdoor:W32/IRCBot.GUU [F-Secure], Worm.Generic.88222 [BitDefender], Backdoor.Win32.IRCBot.jsm [Kaspersky], Win32.GenericRootkit [eSafe], TSPY_ONLINEG.MFV, W32/IrcBot.AXBH, W32.IRCBot [Symantec], Win32/TCPZ.D [NOD32] and Backdoor/IRCBot.jsm.

Technical Information

File System Details

Generic Rootkit.g creates the following file(s):
# File Name Size MD5 Detection Count
1 %WINDIR%\system32\drivers\minidrv32.sys 11,656 8c6511826c60d64c0dbbcbb7a75fe90f 1
2 runsql.exe 202,752 ba702d98ac626c79b7a3b012ec4a0f03 0
3 svhoster.exe 202,240 70b823b8f8cfc015679550a156154d1b 0
4 adsmsexti.exe 46,080 aa86e23faa3b74d285b62accb0d53c88 0
5 svx.exe 179,200 12ec58aab6d5638efcf3c4302517e682 0
6 svc.exe 179,200 fdde49b3668c5ac1704a99d9567f0888 0
7 sv.exe 202,240 3e6a990438c37ffdaf8bbedffd6daf6e 0
8 svzip.exe 203,264 e18a5ee6efab3f4e64ae32b1200e4c60 0
9 bload.exe 26,112 583e05807195312310a3c2d8e1eb5bfe 0
10 1054y.exe 45,568 3f0132e8967a27dbf41e3fcf1f3b4dbf 0

Site Disclaimer

Enigmasoftware.com is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.


HTML is not allowed.