QHost
Aliases: Tolouge
- First seen
- 2000-07-01 00:00:00
- Malware type
- worm, backdoor
- Family
- Malware family
- Profile updated
- 2026-07-07 15:16:58
Context
According to F-Secure, this is a network worm with backdoor capabilities, which spreads itself under Win32 systems. The worm was reported in-the-wild in July-August, 2000. The worm itself is a Win32 executable file and about 120K long, written in MS Visual C++.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Qhost_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Qhost (report)