malware Type: virus Discovered: 2006-08-15 Added: 2006-08-24 Threat ID: 143317 | |
Risk Description: Ease of Removing Win32.IRC.Bot
Uses running processes
Consistent file contents
Consistently named
Creates new registry entries with consistent data
Privacy Risks/Security Changes of Win32.IRC.Bot
Transmits personal data to remote computers
Logs browsing habits and visited websites
Damage/Intrusion/Annoyance of Win32.IRC.Bot
Changes browser home page
Autoruns at startup without an option to be disabled
Propagation/Saturation of Win32.IRC.Bot
Spreads through Internet Relay Chat (IRC) [VIRUS ONLY]
Creates new files
Mimics legitimate file names | alias(s) of Win32.IRC.Botworm/Rbot.196070 W32/Sdbot.QRO Win32:Rbot-AMU IRC/backdoor.SdBot2.YZ Backdoor.Rbot.AEM Backdoor.Rbot.aem trojan.Mybot-6400 Win32/Linkbot.4sp!Worm Win32/Rbot.FCE Dropper.Paradrop.a security risk named W32/Sdbot.QRO Backdoor.Win32.Rbot.aem W32/Sdbot.worm.gen.h Backdoor:Win32/Rbot!8565 Win32/Poebot W32/Poebot.MX W32/Sdbot.HAM.worm W32/Sdbot-CNE W32.Linkbot Backdoor/Rbot.aem Backdoor.Rbot.C271 Worm.RBot.EKT |
Further details about Win32.IRC.Bot may be available at our Malware Research Center |