Home Malware Programs Trojans Malware.SillyIRC

Malware.SillyIRC

Posted: December 24, 2010

Malware.SillyIRC is a malicious Trojan that represents a security risk for any computer system which is not protected with efficient security software. Malware.SillyIRC creates a startup registry entry to run automatically when the computer boots and may display annoying fake alerts of malware payloads in order to persuade users to buy rogue antispyware products. Malware.SillyIRC should be removed immediately once detected using updated antivirus software.

Aliases

Trojan.Win32.VBKrypt.gjd (Kaspersky Lab)
Generic.dx!uhd (McAfee)
Mal/Generic-L (Sophos)
Worm:Win32/Nusump (Microsoft)
Trojan.Win32.VBKrypt (Ikarus)
Win-Trojan/Injector.86016.BO (AhnLab)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Temp%\a0zwy2zw.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{36A5A0DB-297E-FDE2-0501-060104070800}]
Loading...