Know Your Malware: Bibot Removal

Bibot is an Internet worm that spreads by exploiting unpatched security vulnerabilities found on network computers running Microsoft Windows operating system. The parasite contains an integrated IRC-controlled backdoor that gives the attacker unauthorized remote access to a compromised computer. The intruder can use it to steal user confidential information, install and run a hidden FTP server, access specified Internet resources and network shares, participate in Distributed Denial of Service (DDoS) attacks against particular remote hosts. Bibot automatically runs on every Windows startup.

Related files: winmgr.exe

Bibot properties:
Allows remote user connection
Connects itself to the internet
Hides from the user
Stays resident in background Remove Bibot, removal instructions

Linked by shanmuga Saturday, 29th October 2005 1:57AM