Home / malwarePDF  


First posted on 21 January 2008.
Source: SecurityHome

Aliases :

There are no other names known for Backdoor:Linux/Meche.

Explanation :

The Backdoor:Linux/Meche family covers a wide base of variants that are based on the EnergyMech IRC bot.

The bot is widely used by miscreants to compromise Linux installations.

This detection also covers the text resource files of the bot.

If your scanner detects text files with this detection but does not for some reason detect anything else we recommend a full system inspection to locate the binary files also.

The binary files can usually be located by inspecting the cron configuration files and the /etc/rc* and etc/init.d folders.

Last update 21 January 2008



Malware :
