SIRC4.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SIRC4.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
SIRC4.EXE 1e1e287001dd7c3ab552198b6555b213 Backdoor IRCBot
SIRC4.EXE 1e1e287001dd7c3ab552198b6555b213 Trojan SuspiciousFile
SIRC4.EXE 1e1e287001dd7c3ab552198b6555b213 Backdoor Maximus
SIRC4.EXE 1e1e287001dd7c3ab552198b6555b213 Trojan Delphi
SIRC4.EXE 1e1e287001dd7c3ab552198b6555b213 Trojan Delf

SIRC4.EXE size: 2068145 bytes
SIRC4.EXE hash: 1E1E287001DD7C3AB552198B6555B213

Created files:

%SysDir%\sIRC4.exe
%SysDir%\xdccPrograms\Network Setup Wizard.exe
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe

Detected by UnHackMe:

SIRC4.EXE
Default location: %SYSDIR%\SIRC4.EXE

Dropper information:
MD5: 1e1e287001dd7c3ab552198b6555b213
File size: 2068145 bytes

Leave a Reply