Remove Gravebot. Description and removal instructions

 
Title: Gravebot

Type: Backdoors
Severity scale:Gravebot severity is 70  (70 / 100)
 
Gravebot is an IRC-controlled backdoor that provides the remote attacker with full unauthorized access to a compromised computer. The threat also contacts a predetermined web server, silently downloads from there and runs arbitrary files, some of them can be malicious. Gravebot automatically runs on every Windows startup.


Gravebot properties:
• Allows remote user connection
• Connects itself to the internet
• Hides from the user
• Stays resident in background

Automatic Gravebot removal:

remover for Gravebot

Gravebot manual removal:

Kill processes:
codll.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\divx=codll.exe
Delete files:
codll.exe, sum.tgz
Misc:
Gravebot files are located in default system directory, which is one of the following: C:\Windows\System, C:\Windows\System32, C:\Winnt\System32.

Other programs to remove Gravebot:

• Malwarebytes Anti Malware - Review - Download
• Malwarebytes Anti Malware - Review - Download
• Windows Defender - Review - Download

Information added: 01/11/05
Information updated: 01/11/05

Additional resources related to Gravebot:

Attention: If you know or you have a website or page about Gravebot removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Gravebot parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites: