Troj/IrcBot-AKS exhibits the following characteristics:
File Information
- File type
- Windows executable
Runtime Analysis
Copies Itself To
- F:/RECYCLER/R-1-5-21-1482476501-1644491937-682003330-1013/hostsv.exe
Dropped Files
- F:/RECYCLER/R-1-5-21-1482476501-1644491937-682003330-1013/Desktop.ini
Modified Files
Registry Keys Created
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
- Taskman
- c:\RECYCLER\R-1-5-21-1482476501-1644491937-682003330-1013\hostsv.exe
DNS Requests