Home Malware Programs Worms Backdoor.SpyBoter

Backdoor.SpyBoter

Posted: December 9, 2009

Backdoor.SpyBoter is a computer worm which enters the system through a backdoor and then spreads via a network connection. Backdoor.SpyBoter operates stealthily in the background waiting for commands from hackers using IRC channels. Backdoor.SpyBoter allows hackers to gain full access to the infected computer and to log keystrokes to obtain personal information. Backdoor.SpyBoter can also perform DoS attacks against other computers linked to the compromised network. Backdoor.SpyBoter poses a high risk to PC and network security and should be terminated on detection.

Aliases

Backdoor.Win32.Rbot.ai (Kaspersky Lab)
W32/Sdbot.worm.gen (McAfee)
W32/Rbot-DT (Sophos)
Backdoor:Win32/Rbot (Microsoft)
Win32/IRCBot.worm.168448 (AhnLab)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\wincfg32.exe
    2 c:\debug.crf

One Comment

Loading...