Top

Spyware - Virus Threat W32 Nirbot Worm

April 17, 2007

A recent Internet worm attack (W32Nirbot.Worm) attacks unsuspecting pc users via internet chat relay (IRC) and then has access to the machine to send unwanted spam emaiil, install additional adware and even may have the power to launch ddos attacks across in web.

This is a generic detection that covers many varients in this family. All these shares similar characteristics, such as being IRC (Internet Relay Chat) controlled bots, while others characteristics such as the file name may vary.

Aliases
Backdoor.Vanbot.Gen!Pac (VirusBuster) Backdoor.Win32.VanBot.bj (Kaspersky) BDS/VanBot.BJ (Avira) W32.Rinbot!gen (Symantec) W32/Delbot-S (Sophos) W32/Rinbot.H!tr (Fortinet) W32/Rinbot.H.worm (Panda

Comments

Got something to say?





Bottom