Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Nov 10, 2010
Backdoor:Win32/IRCbot.gen!M is a generic detection for a backdoor trojan that allows unauthorized access and control of an affected computer. It connects to a remote IRC server in order to receive commands from an attacker.
Alert level: severe
Updated on May 12, 2014
Microsoft security software detects and removes this family of threats.
 
This family of backdoor trojans can download and install other malware on your PC. They can also give a malicious hacker access and control of your PC.
Alert level: high
Updated on May 12, 2014

Windows Defender detects and removes this threat.

See the Win32/IRCbot family description for more information.

Alert level: severe
Updated on Apr 11, 2011
WinNT/IRCbot is a generic detection for a component that may be utilized by other malware in order to provide stealth, thus hiding the malware's presence from the affected user. In the wild, we have observed WinNT/IRCbot being utilized by Worm:Win32/Synigh for this purpose.
Alert level: high
Updated on May 14, 2010
Backdoor:WinNT/IRCbot.gen!A is a generic detection for a component that may be utilized by other malware in order to provide stealth, thus hiding the malware's presence from the affected user. In the wild, we have observed WinNT/IRCbot being utilized by Worm:Win32/Synigh for this purpose.
Alert level: severe
Updated on Oct 02, 2009
Backdoor:Win32/IRCbot.gen!L is a generic detection for a backdoor malware component that injects code into 'explorer.exe' to prevent the deletion of the main malware file.
Alert level: severe
Updated on Oct 22, 2010
Backdoor:Win32/IRCbot.gen!V is a generic detection for a trojan that allows unauthorized access and control of an affected machine by a remote attacker using IRC. After a computer is infected, the trojan connects to a specific IRC server and joins a specific channel to receive commands from an attacker.  This particular detection may trigger on variants of several different IRC bot families, including Win32/Pushbot and Win32/Synigh.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.EQ is a member of Win32/IRCbot - a broad family of backdoor trojans that allows unauthorized access and control of an affected computer by a remote attacker via IRC.
Alert level: severe
Updated on May 14, 2010
Backdoor:Win32/IRCbot.gen!K is a generic detection for a family of IRC-controlled backdoor trojans. These may perform certain activities when commanded to do so by a remote attacker, such as downloading and executing arbitrary files and collecting system information.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot is a Trojan that connects to an Internet Relay Chat (IRC) server and provides attackers with remote access to the infected system. Commands that can be remotely executed include downloading and executing files. Backdoor:Win32/IRCbot also includes the ability to send itself to MSN Messenger contacts.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.R is a backdoor Trojan that listens via pre-defined IRC channels, responding to commands from remote attackers. Backdoor:Win32/IRCbot.R registers itself as a service using the name "Windows Genuine Validation Notification", presumably in an attempt to masquerade as a legitimate Microsoft Windows component. Backdoor:Win32/IRCbot.R lowers security settings on the infected computer, possibly leaving the system vulnerable to further compromise.
Alert level: severe
Updated on May 14, 2010
Backdoor:Win32/IRCbot.gen!T is a generic detection which may detect several variants of families of IRC-controlled backdoors. These malware allow unauthorized access and control of an affected computer and may be used to perform certain activities when commanded to do so by the backdoor’s controller, such as downloading and executing arbitrary files, or collecting system information.
 
Variants of the following families of malware may be detected with this name:
 
 
Please see the related family or example variant descriptions elsewhere in this encyclopedia for more detailed information on these threats.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.EZ is a member of Win32/IRCbot - a broad family of backdoor trojans that allows unauthorized access and control of an affected computer by a remote attacker via IRC.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.FC is a member of Win32/IRCbot - a broad family of backdoor trojans that allows unauthorized access and control of an affected computer by a remote attacker via IRC.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.EU is a member of Win32/IRCbot - a broad family of backdoor trojans that allows unauthorized access and control of an affected computer by a remote attacker via IRC.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.FD is a member of Win32/IRCbot - a broad family of backdoor trojans that allows unauthorized access and control of an affected computer by a remote attacker via IRC.
Alert level: severe
Updated on May 14, 2010
Backdoor:Win32/IRCbot.gen!O is a generic detection for a trojan that allows unauthorized access and control of an affected machine by a remote attacker using IRC. After a computer is infected, the trojan connects to a specific IRC server and joins a specific channel to receive commands from an attacker.  This particular detection may trigger on variants of several different IRC bot families, including Win32/Pushbot and Win32/Synigh.
Alert level: severe
Updated on Apr 11, 2011
Backdoor:Win32/IRCbot.PS is a trojan that connects to an Internet Relay Chat (IRC) server and provides attackers with remote access to the infected system. Commands that can be remotely executed include downloading and executing files.
Alert level: severe
Updated on Apr 15, 2011
Backdoor:Win32/IRCbot.FE is a worm that spreads via removable drives. It connects to a remote IRC server, where it may receive and execute commands from a remote attacker, including updating itself, and participating in Distributed Denial of Service attacks.
Alert level: severe
Updated on Mar 14, 2013

Backdoor:Win32/IRCbot.gen!AA is a worm that allows backdoor access and control of your computer by a remote server.

Alert level: severe