CAT-QuickHeal | Trojan.IRCbot | 20170715 |
Ikarus | Trojan.Win32.IRCBot | 20170716 |
Kaspersky | Trojan.Win32.IRCbot.avdi | 20170717 |
nProtect | Trojan/W32.IRCBot.26093568 | 20170717 |
Rising | Trojan.IRCbot!8.588 (cloud:OrVlShpw9fP) | 20170717 |
TrendMicro-HouseCall | Suspicious_GEN.F47V0709 | 20170717 |
ZoneAlarm by Check Point | Trojan.Win32.IRCbot.avdi | 20170717 |
Any sources, such as github.com ?
I found this.
https://github.com/Lindacoin/Linda So what about this virus at the wallet?
How I can run the wallet from github if it doesn't have virus there?
The only wallet source (windows) from Linda site and has virus...
Creates a copy of itself on the infected computer. The location and name of the dropped file varies. The Trojan also adds a value and data to an autostart registry key such as HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
so that the Trojan runs automatically each time Windows starts. For example, one particular variant of Win32/IRCbot creates a copy of itself at %windir%\mwoffice.exe and adds value "Windows Update Controller" with data "%windir%\mwoffice.exe" to this autostart registry key.
I don't see this occurring. This is likely due to poor coding of the send message function in the wallet.