Malware

Win32/IRCBot.AKY removal guide

Malware Removal

The Win32/IRCBot.AKY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/IRCBot.AKY virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid

How to determine Win32/IRCBot.AKY?


File Info:

name: 8DD5E3A53C0046E812EB.mlw
path: /opt/CAPEv2/storage/binaries/21ff7e4956c6687b5878929450a2bead52a49c41555f0e8b433e0420f21d2774
crc32: 14B046E6
md5: 8dd5e3a53c0046e812eb3aad9cfd0450
sha1: e463ceac0a2fa0c76708131d209e166a494c7f93
sha256: 21ff7e4956c6687b5878929450a2bead52a49c41555f0e8b433e0420f21d2774
sha512: 9d4b411837547ef6fea509cd81eb11f1876e84ce378c45e27c6abba6bda37322967aafc67c0cb8099c51bc7949632e545f7b5b1981400e94c05c4108af7a9b02
ssdeep: 768:XyP0mzpASojkU8JKu/dHb50eQ50wD+dRV2ee:gQjf8J7FHpQ50wDuV3e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17C031812F2D81450F9954A31297783E64AA77D360E3B4A4F225C361F5E33F81892BB6B
sha3_384: 61d9ccc43d734402219e53ff3d66239d74cb2e769552981ecf3cdb736c55f6f7afd855ba2f0b5a7d821bb7da9773a62f
ep_bytes: 6884114000e8f0ffffff000000000000
timestamp: 2008-12-30 15:42:46

Version Info:

Translation: 0x0409 0x04b0
Comments: no
CompanyName: eXPerience
FileDescription: -
LegalCopyright: -
LegalTrademarks: -
ProductName: stiki
FileVersion: 1.00.0029
ProductVersion: 1.00.0029
InternalName: stiki
OriginalFilename: stiki.exe

Win32/IRCBot.AKY also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VBKrypt.lP2U
AVGWin32:Inject-ABT [Trj]
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop.33372
MicroWorld-eScanGen:Trojan.Heur.cm0@chQq!3fi
SkyhighBehavesLike.Win32.VBObfus.pm
McAfeeBackDoor-CEP.au
MalwarebytesBackdoor.Agent
ZillyaBackdoor.IRCBot.Win32.20906
SangforSuspicious.Win32.Save.vb
K7AntiVirusBackdoor ( 004d12d71 )
AlibabaBackdoor:Win32/Poison.621b210e
K7GWBackdoor ( 004d12d71 )
BitDefenderThetaAI:Packer.45D3CEBC1C
VirITTrojan.Win32.Inject.EDV
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/IRCBot.AKY
CynetMalicious (score: 99)
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Sality-1030
KasperskyBackdoor.Win32.Poison.pim
BitDefenderGen:Trojan.Heur.cm0@chQq!3fi
NANO-AntivirusTrojan.Win32.Poison.fkhzkq
AvastWin32:Inject-ABT [Trj]
TencentMalware.Win32.Gencirc.10b08b42
EmsisoftGen:Trojan.Heur.cm0@chQq!3fi (B)
F-SecureTrojan.TR/Poison.yeg
BaiduWin32.Backdoor.IRCBot.y
VIPREGen:Trojan.Heur.cm0@chQq!3fi
TrendMicroBKDR_POISON.MI
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.8dd5e3a53c0046e8
SophosMal/VBbl-PN
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/Poison.abcf
WebrootWorm.Autorun.Gen
GoogleDetected
AviraTR/Poison.yeg
MAXmalware (ai score=100)
Antiy-AVLTrojan[Backdoor]/Win32.Poison
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/VB.YT
XcitiumBackdoor.Win32.Poison.~RBB@1qmn4
ArcabitTrojan.Heur.EEC9E9
ViRobotBackdoor.Win32.Poison.28672.G
ZoneAlarmBackdoor.Win32.Poison.pim
GDataGen:Trojan.Heur.cm0@chQq!3fi
VaristW32/Troj_Obfusc.F_b.gen!Eldorado
AhnLab-V3Trojan/Win32.Poison.R27944
ALYacGen:Trojan.Heur.cm0@chQq!3fi
VBA32Trojan.VB.Motil
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallBKDR_POISON.MI
RisingTrojan.VBInject!1.64B6 (CLASSIC)
YandexTrojan.GenAsa!orj1vDOBqzY
IkarusVirTool.Win32.VBInject
MaxSecureTrojan.Malware.580566.susgen
FortinetW32/VBObfus.C!tr
DeepInstinctMALICIOUS
alibabacloudWorm:Linux/IRCBot.AKY

How to remove Win32/IRCBot.AKY?

Win32/IRCBot.AKY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment