Threat Search: 

ThreatExpert's Statistics for Backdoor.IRCBot [Ikarus]:

Backdoor.IRCBot [Ikarus] is also known as:
Threat AliasNumber of Incidents
VirTool:Win32/CeeInject.gen!A [Microsoft]16
W32/Sdbot.worm [McAfee]14
Backdoor.Sdbot!sd6 [PC Tools]10
Worm:Win32/Hamweq.A [Microsoft]9
Backdoor.Sdbot [Symantec]8
Mal/Generic-A [Sophos]7
W32.IRCBot [Symantec]6
Backdoor.Win32.SdBot.kid [Kaspersky Lab]5
Backdoor.Win32.SdBot.kjt [Kaspersky Lab]5
Backdoor.Win32.SdBot.kln [Kaspersky Lab]5
Win32/IRCBot.worm.18944.B [AhnLab]4
Mal/Bifrose-Q [Sophos]3
Backdoor.IRC.Bot [Symantec]2
Backdoor:Win32/IRCbot.CT [Microsoft]2
Win32/Mytob.worm.99328.B [AhnLab]2
Win-Trojan/Inject.6144.G [AhnLab]2
Backdoor.Trojan [Symantec]1
Backdoor.Turkojan [PC Tools]1
Backdoor.Win32.Poison.tjt [Kaspersky Lab]1
Backdoor.Win32.Poison.vmr [Kaspersky Lab]1
Backdoor.Win32.SdBot.kjo [Kaspersky Lab]1
Backdoor.Win32.SdBot.klj [Kaspersky Lab]1
Backdoor.Win32.SdBot.kly [Kaspersky Lab]1
Backdoor.Win32.SdBot.lla [Kaspersky Lab]1
Backdoor.Win32.Turkojan.del [Kaspersky Lab]1
Backdoor:Win32/IRCbot.gen!K [Microsoft]1
Backdoor:Win32/Turkojan.AI [Microsoft]1
Generic BackDoor [McAfee]1
Generic.dx [McAfee]1
Net-Worm.Win32.Kolab.chu [Kaspersky Lab]1
Troj/IRCBot-ADT [Sophos]1
Troj/IRCBot-ZI [Sophos]1
Trojan.Buzus [PC Tools]1
Trojan.Win32.Buzus.apcn [Kaspersky Lab]1
Trojan.Win32.Buzus.cejh [Kaspersky Lab]1
VirTool:Win32/DelfInject.gen!J [Microsoft]1
W32.Spybot.Worm [Symantec]1
W32/IRCbot.gen [McAfee]1
W32/IRCBot-ADR [Sophos]1
W32/Sdbot.worm!g [McAfee]1
W32/Spybot.worm!e [McAfee]1
Win-Trojan/Buzus.66700.E [AhnLab]1
Worm.Win32.AutoRun.ezq [Kaspersky Lab]1

Backdoor.IRCBot [Ikarus] has the following possible country of origin:
OriginNumber of Incidents
Portugal22

Backdoor.IRCBot [Ikarus] is known to be created as:
%System%\global\msgldrv.exe
%Temp%\ixp000.tmp\bb.exe
%Temp%\msgldv.exe
%Temp%\x0r.exe
%Windir%\coltt21\coltt21.exe
%Windir%\fxstaller.exe
%Windir%\mstwain32.exe
%Windir%\svcr.exe
%Windir%\system\wmisys.exe
%Windir%\wmf.exe
c:\recycler\k-1-3542-4232123213-7676767-8888886\msgv.exe
c:\restore\k-1-3542-4232123213-7676767-8888886\x0r.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.