Backdoor IRCBot – sIRC4.exe – 29ad5e224a9dd5c45bde82b2c17a6cac

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor IRCBot
Also known as: Backdoor Maximus, Trojan Delphi
SHA256: f661a634e0d1d3f44ce04d9dbb52f789b049ea5396890ad1b2d291247dcf0a53
SHA1: 1c680a9dbe7d8afa9667b68823917fda9e6fa5e2
MD5: 29ad5e224a9dd5c45bde82b2c17a6cac
File size: 74903 bytes

Created files:

%SysDir%\sIRC4.exe – Backdoor IRCBot
%SysDir%\xdccPrograms\Network Setup Wizard.exe – Backdoor IRCBot
%SysDir%\xdccPrograms\Opera_1161_int_Setup.exe – Backdoor IRCBot
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe – Backdoor IRCBot

Backdoor IRCBot created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe

Leave a Reply