Threat Database Trojans Trojan.Vbot.G

Trojan.Vbot.G

By LoneStar in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 62
First Seen: June 18, 2011
OS(es) Affected: Windows

The Trojan.Vbot.G Trojan – Basic Facts and Information

The Trojan.Vbot.G Trojan is a severe malware infection that can have many different effects on its victim. The top brands of anti-virus software and ESG malware analysts consider the Trojan.Vbot.G Trojan as a dangerous threat to a computer's security. This Trojan gained widespread recognition in 2011, after a couple of serious outbreaks caught the attention of PC security researchers. Like most Trojans, the Trojan.Vbot.G Trojan does not have the ability to spread on its own from computer to computer. Like the other Trojans, Trojan.Vbot.G Trojan must be downloaded and installed by their victims. This usually happens through deception and by exploiting weaknesses in human behavior. Once the Trojan.Vbot.G Trojan is downloaded and installed, Trojan.Vbot.G Trojan connects to a remote server (at 2.perfectexe.com). If the Trojan successfully establishes this remote connection, Trojan.Vbot.G Trojan can then proceed with a number of different harmful activities on your computer system.

How the Trojan.Vbot.G Trojan Infects Its Victims

As was mentioned before, Trojans like the Trojan.Vbot.G Trojan cannot spread on their own. Because of this, these kinds of malware threats are usually disguised as files that are harmless, or even necessary for your computer system. There are several ways in which Trojans like the Trojan.Vbot.G Trojan disguise themselves:

  • One of the most common ways in which Trojans like the Trojan.Vbot.G Trojan hide is by being disguised as a video codec. These fake video codecs are usually found at adult video websites. When a potential victim clicks on a video on these kinds of websites, a pop-up notification will claim that a video codec is needed to view the selected video. ESG PC security researchers strongly recommend against downloading these kinds of video codecs; they will almost certainly be Trojans in disguise. Video codecs should only be downloaded directly from the manufacturer.
  • The Trojan.Vbot.G Trojan also can hide as a popular file on file sharing networks. Typically, hackers upload a file named as a popular movie or music download onto peer-to-peer file sharing networks. This file will usually be compressed so that Internet users downloading it cannot inspect its contents. Trojans can hide within the contents of these compressed files, bundled along with harmless music or video files.
  • Sometimes, a Trojan will be sent directly into a victim's computer. This is often the case with malicious advertisements or fake "online malware scans." If an unwary computer user clicks on these, a Trojan may be delivered directly into the victim's computer through exploits in Flash or JavaScript.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Panda Trj/Banker.MEK
Ikarus Trojan-Banker.Win32.Agent
AntiVir TR/Banker.Agent.aye
BitDefender Trojan.Agent.AQHR
Kaspersky Trojan-Banker.Win32.Agent.aye
McAfee PWS-Banker!goy
Fortinet W32/Hiloti.Q!tr
BitDefender Trojan.Generic.KDV.218447
NOD32 a variant of Win32/Kryptik.NQE
McAfee Hiloti.gen.w
F-Prot W32/Hiloti.I.gen!Eldorado
NOD32 a variant of Win32/Kryptik.EXA
Ikarus Trojan.Win32.Hiloti
NOD32 a variant of Win32/Kryptik.PCG
AVG Agent2.CIHQ

SpyHunter Detects & Remove Trojan.Vbot.G

File System Details

Trojan.Vbot.G may create the following file(s):
# File Name MD5 Detections
1. svpodsom.dll 72971041e7f66161a36eef86cca54648 13
2. shabi.exe 89c958970a73b68c6957a46556f296f3 9
3. dwid32.dll 640a805bd8d083f3e8d8d60b331bdef8 8
4. dxdiag.exe 3cb142fc295c235c29b3ac2b6cbd0a1d 7
5. Recycle.Bin.exe ade86feaa34df4f150e7d18eda007029 6
6. netsvcs32.exe 854ac0df183c83b79f67250c497d0cb7 4
7. msible.dll 054c5526514eedec2a13b9f851f17ffa 2
8. ydw.exe a9861070a4545918c256c9c9098bff34 2
9. dXXBTPbLqyCp.exe d44f9827250a3e6150202503c103b189 2
10. kbdlwa.dll f6f45ceb356bd1e862966dd7d6a78e97 1
11. elsef10.dll 048d617430f6e9d3079f30550d810aa9 1
12. Recycle.Bin.exe 24fe30fcf9fe94926dc1e264ebf95831 1
13. KBDMFisv.dll 86f5cbb3d10814721b943787bf4098a9 1
14. R66v.exe 7c3269e449a4ddafa439b3a71f30d15a 1
15. clsidmount.exe 7b979118ee56b1c46fbec77f75ef6fe6 1
16. 6DDF6564D6B.exe e5d713278c5e1a7fd6d90a9995c32b30 1
17. lbe.exe 38ef3fada9756a4fb5b423cb6d94ec41 1
18. R66v.exe fc89025ae4af38d56d8f1f402ac2e69e 1
19. Cain.exe
20. Aszgzg.exe
21. WinRAR.exe
22. KillProcessSetup.exe
23. bfpc9.dll
24. Flash_Player.exe
25. kbdjpn32.exe
26. svsht.exe
27. fz77q.exe
28. 4jbpm.exe
29. 1jaxe3.exe
30. AntiVirus AntiSpyware.exe
31. questresult121.exe
32. csrss.exe.exe
33. m.2AE68.tmp.exe
34. wins.exe
35. rpchttp32.exe
36. m.218.tmp.exe
37. advserv.exe
38. UsbCheck.exe
39. LaunchChainz.exe
40. bitutil.exe
41. dtshldlp.exe
42. svcnost.exe
43. umdmgr.exe
44. gfWFwzSCBSga.exe
45. mscfg32.exe
46. sngrrm.exe
47. pleneWl.dll
48. AntiVirus_System_2011.exe
49. aHvFmtjxlhgIe.exe
50. javachelper.dll
51. adtech2005.exe
52. ntsmod.exe
53. prunnet.exe
54. nvscv32.exe
55. ctfmon.exe
56. CalcImpSAT[1].exe
57. Wiscr.exe
58. administration.exe
59. system.exe
60. biv.exe
61. javaupdater.exe
62. regsvc32.exe
63. 0.18647449043215647.exe
64. cmd.exe
65. winxp.exe
66. svchost.exe
67. bill103.exe
68. MPTols.exe
69. Scvhosts.exe
70. csrss.exe
71. geindigo.dll
72. apkruisi.dll
73. services.exe
74. explorer.exe
75. rpc.exe
76. dwid32.dll
77. msiupdate.exe
78. My Documents.exe
79. swcupdate.exe
80. gtp3.exe
81. securitymanager.exe
82. XoftSpySE.exe
83. mog.exe
84. IlvMoney1105.sys
85. 8F-bTxv.dll
86. scanquery.dll
87. svsht2.exe
88. xc3hh4.exe
89. 736si.exe
90. 22wwk.exe
91. GoogleUpdateBeta.exe
92. resultbrowser119.exe
93. zat5.exe
94. riitd.exe
95. IVV.exe
96. rufbvrsc.exe
97. Modulo.exe
98. chicken_invaders_4_plus5_trainer.exe
99. Uneraser_Setup.exe
100. qPGLAEI.dll
101. d697a702.dll
102. -e-2rrGtm__9I.dll
103. qtfcyyp.exe
104. ComboFix.exe
105. LEX.exe
106. StartUp.exe
107. drm.exe
108. aecces.exe
109. crqytiqlajb.exe
110. NlsData000d32.exe
111. andy133.exe
112. winb.exe
113. lpcywinp.exe
114. Mga Dokumento.exe
115. snsrvc32.exe
116. USB GATE.exe
117. winlogon.exe
118. inandrom.dll
119. MSN_WebCamSpy.exe
120. vio.exe
121. jikd.exe
122. Saberz.r01.exe
123. oulwsvm.exe
124. iapadWMA.dll
125. smsTx.exe
126. wilogon.exe
127. lssas.exe
128. geurge.exe
129. TT.exe
130. winayuda.exe
131. XP.exe
132. winlogon32.exe
133. brconcho.dll
134. 4020.EXE
135. winfiles.exe
136. temp2.exe
137. Windows Explorer.exe
138. Athan.exe
139. 0kfp.exe
140. avdv.exe
141. 7eb2eee8.dll
142. svc2dll.exe
143. kbmovm.dll
144. bbprint.exe
145. Vknt.exe
146. clipsrv.exe
147. y69066.exe
148. acxw.exe
149. 3wf5d.exe
150. resultbar143.exe
151. svngage.exe
152. dn.exe
153. TXP.exe
154. msmon.exe
155. USBGuard.exe
156. PCFix.exe
157. chicken_invaders_4_plus8.exe
158. binternet.exe
159. Spoolvmx.exe
160. iconcs177016015.exe
161. access[2].exe
162. MWSBAR.DLL
163. MediaCoder-0.7.2.4582.exe
164. sborka_blackmanos_13_69.exe
165. 8bq9.exe
166. LGxJuggkBGegHQ.exe
167. d3dlib.exe
168. patchcore716pe0.exe
169. zlxfmompe.exe
170. audio.exe
171. msnmsgra.exe
172. prun.exe
173. Localhost.exe
174. DisTM.exe
175. dewin32.exe
176. OPR.exe
177. wndrive32.exe
178. puma.sys
179. msmsgs.exe
180. lsq.exe
181. svflooje.exe
182. Clownfish.exe
183. WLAcol.dll
184. 0filsys.bin.exe
185. alg.exe
186. hostplug.exe
187. syre32.exe
188. msnmsgr.exe
189. nsvsc32.exe
190. Server.exe
191. Test_123.exe
192. sesingul.dll
193. lspolysp.dll
194. lsass.exe
195. dldesmos.dll
196. dXXBTPbLqyCp.exe
197. A__MYDOCU~1[1].exe
198. Copy of My Documents.exe
199. msado320.tlb
200. picture.scr
201. sysp.cpl
202. sysr.cpl
203. Explorer.pif
204. VRT1.tmp
205. net.net

Trending

Most Viewed

Loading...