Malware

Should I remove “Mal/IRCBot-B”?

Malware Removal

The Mal/IRCBot-B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/IRCBot-B virus can do?

  • Authenticode signature is invalid
  • Creates known Allaple worm mutexes

How to determine Mal/IRCBot-B?


File Info:

name: BDFE6B15C3CEF4911286.mlw
path: /opt/CAPEv2/storage/binaries/a8fd0c3ef6ba662cc751e1ed1980878a4de1297814b35ba96bc61ddb510ae2f9
crc32: 45FF673B
md5: bdfe6b15c3cef4911286fe7d7fdbeca7
sha1: 6bdfac58ddc8f298c887dd962fa67e8c032218c8
sha256: a8fd0c3ef6ba662cc751e1ed1980878a4de1297814b35ba96bc61ddb510ae2f9
sha512: 170e01b175e929bad59b17effff2135ba01dcf3a829a24a55de8545fe59479a19b9f51f230fad5a47bf990e1d3846ceddca57cc0e4338f517b8a345c859d565d
ssdeep: 3072:g/Pdlbo/KfWQeOCKWmgXGN69z2mmpmmj:IlMQROz2mK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F8B31771E253A426CC75053C9749E3FE8DECEA335704887B9BC8CD2A2DB4BA1DB12546
sha3_384: 981fe5f9da9dcf38f3642df3db8939194aae860947454fb08591fdf74fefddf48fc88a2f8a28e69450f319b3d8bcb772
ep_bytes: e8eb0200006803800000e845090000e8
timestamp: 2006-11-28 21:04:54

Version Info:

0: [No Data]

Mal/IRCBot-B also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.4254EF66.A.A2550686
FireEyeGeneric.mg.bdfe6b15c3cef491
CAT-QuickHealWorm.Allaple.B4
McAfeeExploit-DcomRpc.c.gen
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004e40051 )
K7GWTrojan ( 004e40051 )
Cybereasonmalicious.5c3cef
ArcabitGeneric.Dacic.4254EF66.A.A2550686
BitDefenderThetaAI:Packer.3BC7A7DD1E
VirITBackdoor.Win32.SdBot.AFCX
CyrenW32/Allaple.I.gen!Eldorado
SymantecW32.Spybot.Worm
ESET-NOD32a variant of Win32/Allaple.NAC
APEXMalicious
ClamAVWin.Malware.Sfwx-9853337-0
KasperskyTrojan.Win32.Eb.dgo
BitDefenderGeneric.Dacic.4254EF66.A.A2550686
NANO-AntivirusTrojan.Win32.Allaple.bgryk
ViRobotBackdoor.Win32.A.Rbot.110592.AI
AvastWin32:Allaple-D [Trj]
TencentTrojan.Win32.Eb.ha
TACHYONTrojan/W32.Eb.108544
EmsisoftGeneric.Dacic.4254EF66.A.A2550686 (B)
BaiduWin32.Worm.Rbot.a
F-SecureWorm.WORM/Rbot.Gen
DrWebTrojan.Starman
VIPREGeneric.Dacic.4254EF66.A.A2550686
McAfee-GW-EditionBehavesLike.Win32.ExploitDcomRpc.ch
SophosMal/IRCBot-B
SentinelOneStatic AI – Malicious PE
JiangminWorm/Generic.zfq
GoogleDetected
AviraWORM/Rbot.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Rbot
XcitiumMalCrypt.Indus!@1qrzi1
MicrosoftTrojan:Win32/IRCBor.LK!MTB
ZoneAlarmTrojan.Win32.Eb.dgo
GDataWin32.Trojan.PSE1.C1KH17
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Allaple.R34300
VBA32BScope.Trojan.MTA.01233
ALYacGeneric.Dacic.4254EF66.A.A2550686
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
RisingBackdoor.IRCbot!8.B47 (TFE:2:CfLXO7FBrXI)
YandexTrojan.GenAsa!SsYPZlVWtgw
IkarusBackdoor.Win32.Allaple
FortinetW32/Allaple.NAC!worm
AVGWin32:Allaple-D [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Mal/IRCBot-B?

Mal/IRCBot-B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment