NAME: Backdoor:W32/Zapchast
ALIAS: Backdoor.IRC.Zapchast
IRC/Zapchast

Summary

A remote administration utility which bypasses normal security mechanisms to secretly control a program, computer or network.

Additional Details

This is the Backdoor:W32/Zapchast Family Description.

Installation

Zapchast variants use an mIRC client to create a backdoor that gives an attacker access to, and control over, the infected system. The client itself is detected as Riskware:W32/mIRC (also detected as Client-irc.win32.mirc). By itself, the mIRC client is not malicious. Zapchast and its variants can however use malicious configuration files (detected as Backdoor.IRC.Zapchast) to turn the mIRC-client into a backdoor. 


Read more...