Know Your Malware: Foobot Removal


Foobot is an IRC-controlled backdoor, which gives the attacker unauthorized remote access to a compromised computer. The intruder can download and execute arbitrary files and perform Denial of Service attacks against specified hosts. Foobot also contacts predetermined web sites to receive additional instructions. The backdoor automatically runs on every Windows startup.

Related files: services.exe

Foobot properties:
Allows remote user connection
Connects itself to the internet
Hides from the user
Stays resident in background Remove Foobot, removal instructions

Linked by shanmuga Friday, 18th November 2005 4:56AM