Analysis by: Cris Pantanilla

 PLATFORM:

Windows 2000, XP, Server 2003, Linux

 OVERALL RISK RATING:
 REPORTED INFECTION:
 SYSTEM IMPACT RATING:
 INFORMATION EXPOSURE:

  • Threat Type: Hacking Tool

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW

This hacking tool may arrive bundled with malware packages as a malware component.

  TECHNICAL DETAILS

File Size: 492,135 bytes
File Type: ELF
Memory Resident: No
Initial Samples Received Date: 01 Nov 2010

Arrival Details

This hacking tool may arrive bundled with malware packages as a malware component.

Other Details

This hacking tool does the following:

  • It is an open-source program that allows a user to configure a bot to perform routines. It is capable of connecting to an IRC server, and sending or receiving input from a user. This is used as a bot for IRC and may require installation and other component files.

  SOLUTION

Minimum Scan Engine: 8.900

Scan your computer with your Trend Micro product to delete files detected as HKTL_MECH If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check this Knowledge Base page for more information.


Did this description help? Tell us how we did.