TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
BKDR_IRCFLOOD.X
Overview

Malware type: Backdoor

Aliases: IRC/Flood.mirc (McAfee),

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 95, 98, ME, NT, 2000, XP

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

High

Distribution potential:

Low

Description: 

This modified mIRC client is usually dropped as IEEXEC.EXE by TROJ_IRCFLOOD.X.

It modifies the registry so that whenever the infected user opens the legitimate mIRC program, it executes instead.

Once active, it allows a remote malicious user to connect to the system and perform any or all of the following:

  • Log activities of compromised machine
  • Launch distributed denial of service (DDoS) attacks
  • Scan ports
  • Flood IRC servers

This Aspack-compressed malware runs on Windows 95, 98, ME, NT, 2000, and XP.

For additional information about this threat, see:
Solution
Technical Details

Description created: Mar. 12, 2004 6:09:45 AM GMT -0800
Description updated: Jun. 30, 2004 12:42:42 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.