|BAckdoor.IRC.Loonbot is a Trojan horse that has backdoor capabilities.
It can allow an attacker to remotely control your computer using Internet Relay Chat (IRC).
This Trojan can also download and execute files.
Copies itself as %System%\Wstat32.exe and executes that copy.
May display a fake error Message Box titled, "Error-384," with the text:
A valid data link was not found, deleting file
Waits for an Internet connection, and when one is opened, it connects to a remote IRC server, notifies the attacker, and then waits for commands.
This Trojan can perform the following actions:
Remove and uninstall itself
Restart the computer
Run specified commands
Create or delete folders
List and end processes
Perform an ICMP attack on a specified host
Navigate to the key:
and delete the value:
Use antivirus (also check How To Remove section)Startup Optimizer to remove it from startup.