Home / Spyware Encyclopedia / Clicker.Cibula << Back

Recommendation to Automatically remove Clicker.Cibula


Our products can remove Clicker.Cibula and thousands of other Virus and Spyware automatically and instantly.

Clicker.Cibula Details


  • Category Clicker
  • Discovered 3/13/2008 5:42:00 PM
  • Modified 7/12/2020 1:30:27 PM
  • Threat Level Medium
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
bpkcert.exe 20480 1.0.0.1f135d64fb1b21b00f9c35114c7872efe 
bpkcert.exe 20480 1, 0, 0, 1f0c99d874200b1f59ae85a8d2621b3ae 
amsn.exe 920608  c07eae3bdbe2d2b61144cba99375d8ce 
Trojan-Spy.Win32.Banker.bye.exe 716417  aacdd3502342eec540ec828d03b5c115 
Trojan-Spy.Win32.Banker.cr.exe 299575  a7d460180a0901ff192f4e180d319936 
bpkhk.dll 8704  a51cd9899672b880685b216c4fa9b099 
bpkwab.exe 36864  83d4a1be83b716c22f343a074981b07d 
Trojan-Spy.Win32.Banker.cd.exe 841216  592af3483d943047516477e7da2695a7 
Trojan-Spy.Win32.Banker.ck.exe 3976704  4d6659dfb90836aeda3eff3e6c583996 
Trojan-Spy.Win32.Banker.c.dll 139264  4a969ad807243b96a0c6b30122b05093 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\ \"EXPLORER"\"%WIN.SYS32%\EXPLORER.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"TROJAN-SPY.WIN32.BANKER.CD"\"%DAS.AU.LS%\Temp\trojan-spy.win32.banker.cd.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"amsn"\"%WIN%\Config\amsn.exe"
..\Software\Classes\pk.ie.1\(Default)
..\Software\Classes\pk.ie\(Default)
..\Software\Classes\Typelib\{1e1b286c-88ff-11d3-8d96-d7acac95951a}\(Default)
..\Software\Classes\Interface\{1e1b2878-88ff-11d3-8d96-d7acac95951a}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware