My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets



Added to the Dr.Web virus database: 2016-09-05

Virus description added:

SHA1: 03c1ca6ec8718aa4d4cb6ba041276df421f4450f

A backdoor for Linux written in Rust. The Trojan uses the library and gets commands over the IRC (Internet Relay Chat) protocol. It can perform the following actions:

Command Value
!login secure2016@ Authorize to send commands to a bot
!sinfo <*|botName> Send data on an infected computer
!processes <*|botName> Send a list of running processes
!kill <*|botName> Terminate operation of a specified bot
!update <*|botName> Not implemented. The “Downloading update right now...” message is displayed.

News about the Trojan

Curing recommendations


After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number