Gspot


· Overview ·
· Origins ·
· Operation ·
· Detection and Removal ·
· Research ·



Overview

Alias:

Backdoor.Optix.Downloader, G-Spot, Trojan.Win32.GoBind, TrojanDownloader.Win32.G-Spot.10, TrojanDownloader.Win32.G-Spot.15

See Also:

G-Spot Bot

Category:

Downloader: A program designed to retrieve and install additional files, when run. Most will be configured to retrieve from a designated web or FTP site.

AV Killer: Any hacker tool intended to disable a user's anti-virus software to help elude detection. Some will also disable personal firewalls.

Backdoor: A secret or undocumented means of getting into a computer system, or software that uses such a means to penetrate a system. Some software has a backdoor placed by the programmer to allow them to gain access to troubleshoot or change the program. Software that is classified as a "backdoor" is designed to exploit a vulnerability in a system, and open it to future access by an attacker.

Variants:

  • Gspot 1.0
  • Gspot 1.21
  • Gspot 2.0
  • G-Spot Tight 1.0
  • G-Spot Tight 1.5
  • G-Spot www 1.0
  • G-Spot www 2.0
  • Similar Pests:

    Downloader · AV Killer · Backdoor

    Origins

    Author:

    J3N7iL and xMs

    Group:

    EvilCommunity Libraries

    By This Group:

    Gspot 1.0 ·

    URL:

    http:/www.illcommunity.com

    Programming Language:

    Delphi

    Date of Origin:

    Variants from August, 1998 to July, 2003

    Operation

    Default Port:

    52978 TCP More info about ports.

    Storage Required:

  • Gspot 1.0: at least 293 KB
  • Gspot 1.21: at least 613 KB
  • Gspot 2.0: at least 757 KB
  • G-Spot Tight 1.5: at least 745 KB
  • Restart:

    HKLM\Software\Microsoft\Windows\CurrentVersion\Run
    Autostarting Pests

    ScreenShot:


    G-SPOT www 1.0



    G-SPOT www 1.0



    G-SPOT www 2.0



    G-SPOT www 2.0



    G-SPOT Tight 1.0



    G-SPOT Tight 1.5



    G-SPOT Tight 1.5



    Caption



    Caption



    Caption


    Detection and Removal

    Automatic Removal:

    PestPatrol detects this.

    PestPatrol removes this.



    Manual Removal:

    Follow these steps to remove Gspot from your machine. Begin by backing up your registry and your system, and/or setting a Restore Point, to prevent trouble if you make a mistake.
    Stop Running Processes:

    Kill these running processes with Task Manager:

    Remove Files:

    Remove these files (if present) with Windows Explorer:

    Research

    File Analyses:

    More Info:

  • AllTheWeb, AltaVista, AOL Search, Ask Jeeves, Google, HotBot, Lycos, LookSmart, MSN, Yahoo!
  • Research By:

  • PestPatrol's Pest Research Center
  • Last Revised:

    April 03, 2005