We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Backdoor:Win32/IRCbot.OP
Detected by Microsoft Defender Antivirus
Aliases: Backdoor.Win32.Mytobor.c (Kaspersky) W32/Mytob.gen@MM (McAfee) W32/Spybot-NN (Sophos) Email-Worm.Win32.GOPworm.196 (Sunbelt Software) BACKDOOR.Trojan (Symantec) BKDR_MYTOBOR.C (Trend Micro)
Summary
Backdoor:Win32/IRCbot.OP is a backdoor Trojan that connects to a remote IRC channel and listens for commands from remote attackers.
Backdoor:Win32/Rbot.OP may download and install additional malicious software, thus manual removal is not recommended. To detect and remove this Trojan and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx