Backdoor

Backdoor.IRCNite information

Malware Removal

The Backdoor.IRCNite is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.IRCNite virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Backdoor.IRCNite?


File Info:

crc32: E0B6F40B
md5: 0d3dfca4794fe90d24232b00079f01c7
name: 0D3DFCA4794FE90D24232B00079F01C7.mlw
sha1: 6d49fbde83af731bd94efc014a0e4524eeffdab8
sha256: 88b0f750b5113f0ebf5fe715a2565251daa3506f62f10dd225469027d3e516d4
sha512: 9ba8bb99f9908982de0852ca1561638efdbb7e537224ec57d7c4144b2655dfc1bfb6aef7c42f1097bc95c3a6a52c1e9c121800b8cb78683a3fffdcf5446fbedf
ssdeep: 24576:qcnLOfqMTrhYuOlUxSGPKgGFN/NtH5Wt778C:qHqMTrhYwxStTFN1a8C
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.IRCNite also known as:

Elasticmalicious (high confidence)
CylanceUnsafe
Cybereasonmalicious.e83af7
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
SophosGeneric ML PUA (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34170.evW@ay32pFkb
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
FireEyeGeneric.mg.0d3dfca4794fe90d
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Gen.adx
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.FA
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.PSE.10V60DG
VBA32Backdoor.IRCNite
MalwarebytesTrojan.MalPack.FlyStudio
RisingTrojan.Generic@ML.95 (RDML:cjbZweeTV7WRcjbLt7twUA)
FortinetRiskware/Application

How to remove Backdoor.IRCNite?

Backdoor.IRCNite removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment