QHost

Aliases: Tolouge

First seen
2000-07-01 00:00:00
Malware type
worm, backdoor
Family
Malware family
Profile updated
2026-07-07 15:16:58

Context

According to F-Secure, this is a network worm with backdoor capabilities, which spreads itself under Win32 systems. The worm was reported in-the-wild in July-August, 2000. The worm itself is a Win32 executable file and about 120K long, written in MS Visual C++.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Qhost_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Qhost (report)

External references