|
|
TileBot Backdoor Information
| Name: |
TileBot |
| Category: |
Backdoor |
| Alias: |
- Alias: Shadme32, Shadow32 |
| Advice: |
Remove |
| Risk: |
High Risk
High risk threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction. May open up communication ports, use polymorphic tactics, stealth installations, and/or anti-spy counter measures. May use a security flaw in the operating system to gain access to your computer. |
| Description:
|
TileBot is a backdoor that allows a remote attacker to gain control over a computer via IRC.
|
| Signatures:
|
process: svehost32.exe: MD5 Hash: a0a832f73cf0b547869...
process: svehost32.exe: MD5 Hash: 36b94eb0600d867f32b.. |
| Type: |
Backdoor - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do). |
Top Backdoor Visited Pages:
Unicorn - 172 visits
SkatanBot - Alias: Backdoor.VB.kl - 91 visits
Backdoor:Win32/Lamebot.A - 82 visits
Delf.gb - Alias: RVP - 62 visits
BackDoor.Galapop.A - Alias: Trojan.Abwiz.D (Symantec), Galapoper (Mcafee) - 60 visits
Trojan.Backdoor.Darkmoon - Alias: Backdoor:Win32/Darkmoon.AZ - 56 visits
Trojan.Fakespy.A - Alias: Trojan.Zlob.B - 52 visits
Trojan.Backdoor.Codbot.O - Alias: W32/Codbot-O, Backdoor.Win32.Codbot.ah - 51 visits
RBot.sysdat - Alias: Backdoor:Win32/Rbot!E89C - 51 visits
Backdoor.Perl.AEI.16 - 50 visits
Random Backdoor Pages:
MSN Tools Trojan - Alias: Backdoor.VB.eo, MSN Tools Trojan 2.0
IRC.Demfire
Backdoor.VB.aj
IRC.Bnc.b
Singu.e - Alias: Blackhole2002
Trojan.Backdoor.AVUpdateScheduler - Alias: Trojan.Backdoor.Heplane, Anti-Virus Update Scheduler V1.39.12R, TrojanProxy:Win32/Ranky.DP
Backdoor.Win32.Prosiak.070
IRC Spybot - Alias: Backdoor.SpyBot.gen
Backdoor.Win32.Theefle.10
Delf.eq - Alias: Shadme32, Shadow32
|
|