Threat Database Backdoors Backdoor.Win32.mIRC-based.k

Backdoor.Win32.mIRC-based.k

Backdoor.Win32.mIRC-based.k is dangerous backdoor malware which is just as harmful as its counterpart. Backdoor.Win32.mIRC-based.k provides the attacker with unlawful access to the infected system. Once active it exploits vulnerable software by bypassing normal authentication. Backdoor.Win32.mIRC-based.k works in the background and hides from the user making it very similar to a virus. Backdoor.Win32.mIRC-based.k is often quite difficult to detect and completely disable. A backdoor is one of the most dangerous malware types, as it allows an attacker to perform any possible actions on a compromised computer. The attacker can use a backdoor to spy on a user, manage files, install additional software or dangerous threats, control the entire system including any present applications or hardware devices, shutdown or reboot a computer or attack other hosts. For PC user's security, Backdoor.Win32.mIRC-based.k should be removed immediately.

Aliases

5 security vendors flagged this file as malicious.

Anti-Virus Software Detection
- PE_Patch.PECompact
- Win-Trojan/Mirc-based.705312
- Backdoor.Win32.mIRC-based
- Troj/Bckdr-QPX
- BackDoor-DKH

File System Details

Backdoor.Win32.mIRC-based.k may create the following file(s):
# File Name Detections
1. %ProgramFiles%\mIRC\IRC Bot\services.exe
2. %ProgramFiles%\mIRC\IRC Bot\Channel_Babi.sys
3. %ProgramFiles%\mIRC\IRC Bot\Nama_Babi.sys
4. %ProgramFiles%\mIRC\IRC Bot\svchost.exe
5. %ProgramFiles%\Microsoft Office\WINWORD.EXE
6. %ProgramFiles%\mIRC\IRC Bot\Asshole.sys
7. %ProgramFiles%\mIRC\IRC Bot\Nama_Anjing.sys
8. %ProgramFiles%\mIRC\IRC Bot\Stupid.sys
9. %Programs%\Startup\Adobe Gamma Loader.com
10. %ProgramFiles%\mIRC\IRC Bot\Anjing_Malingsia.sys
11. %ProgramFiles%\mIRC\IRC Bot\fuck.sys
12. %ProgramFiles%\mIRC\IRC Bot\perampok_budaya.sys
13. %ProgramFiles%\mIRC\IRC Bot\remote.ini
14. %ProgramFiles%\mIRC\IRC Bot\kontol.mrc
15. %ProgramFiles%\mIRC\IRC Bot\control.ini

Registry Details

Backdoor.Win32.mIRC-based.k may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\csrsz.exe
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WinDefend
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AmyMastura.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wscript.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Acha.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\registry.exe
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend

Trending

Most Viewed

Loading...