Home Malware Programs Worms IRCbot.I

IRCbot.I

Posted: November 30, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 133
First Seen: November 30, 2011
OS(es) Affected: Windows

Aliases

Trj/Genetic.gen [Panda]unknown virus Win32/DH{EwMJICQiDw} [AVG]BackDoor.IRC.Bot.900 [DrWeb]Mal/SillyFDC-A [Sophos]Generic.Malware.SYddldg.AA3C621E [BitDefender]Win32.Trojan [eSafe]W32.IRCBot [Symantec]W32/Sdbot.worm!os [McAfee]Proxy.ASIN [AVG]Trojan.Win32.TDSS.cnbt [Kaspersky]Win32:Malware-gen [Avast]Agent3.AZDI [AVG]Backdoor.Win32.Usinec [Ikarus]Mal/Agent-AFJ [Sophos]BackDoor.Pigeon.62940 [DrWeb]
More aliases (63)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\8A25.exe File name: 8A25.exe
Size: 30.2 KB (30208 bytes)
MD5: 1199944193fac86dd0f6b61177fdc7eb
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: September 10, 2012
%WINDIR%\system32\sqlcsw32.dll File name: sqlcsw32.dll
Size: 162.3 KB (162304 bytes)
MD5: f58013706ec1ecc3e87551f5ed4f6d9e
Detection count: 63
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 5, 2011
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\yinghay.dll File name: yinghay.dll
Size: 11.26 KB (11264 bytes)
MD5: bcc483e124b0e20bea40143aa3cc0bf7
Detection count: 47
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SysWOW64\config\systemprofile\AppData\Local
Group: Malware file
Last Updated: December 1, 2011
%SystemDrive%\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\yimhsay.dll File name: yimhsay.dll
Size: 11.26 KB (11264 bytes)
MD5: abf901a436914f37adafaf9f23d789a5
Detection count: 19
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten
Group: Malware file
Last Updated: December 5, 2011
%USERPROFILE%\Application Data\msconfig.exe File name: msconfig.exe
Size: 30.2 KB (30208 bytes)
MD5: ae1d08b5542e778dec7a0086ea961ced
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: November 30, 2011

Related Posts

Loading...