Home Malware Programs Trojans Backdoor.IRC.Zapchast

Backdoor.IRC.Zapchast

Posted: April 19, 2010

Threat Metric

Threat Level: 9/10
Infected PCs: 63
First Seen: July 24, 2009
OS(es) Affected: Windows

Backdoor.IRC.Zapchast is a backdoor Trojan designed to send spam emails in Italian language only. The malicious email reads: "Happy Easter" and contains malicious links that redirect the users to download a file named BuonaPasqua.gif.exe, which is detected as Backdoor.IRC.Zapchast. Do not click on anything when you receive this email and have Backdoor.IRC.Zapchast removed immediately.

Aliases

Win32/Zapchast.BD [NOD32]Trojan.WinlogonHook.Delf.A [McAfee-GW-Edition]Trojan.Win32.Zapchast.bd [Ikarus]W32/Zapchast.BD!tr [Fortinet]Win32.Zapchast.bd [eSafe]Trojan.DownLoader.55029 [DrWeb]TrojWare.Win32.Zapchast.BD [Comodo]Win32:Trojan-gen {Other} [Avast]W32/Trojan.SSA [Authentium]Trojan/Win32.Zapchast [Antiy-AVL]TR/WinlogonHook.Delf.A [AntiVir]Win-Trojan/Winlogonhook.54784 [AhnLab-V3]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



MsMsSrv.DLL File name: MsMsSrv.DLL
Size: 54.78 KB (54784 bytes)
MD5: 4225330143a48e16a99d114dea7bba37
Detection count: 82
File type: Dynamic link library
Mime Type: unknown/DLL
Group: Malware file
Last Updated: December 11, 2009
Loading...