Home Malware Programs Backdoors Backdoor.SDBot

Backdoor.SDBot

Posted: February 27, 2007

Threat Metric

Ranking: 8,472
Threat Level: 6/10
Infected PCs: 2,295
First Seen: July 24, 2009
Last Seen: October 11, 2023
OS(es) Affected: Windows

Backdoor.SDBot is a Trojan virus. Once installed on your machine Backdoor.SDBot will allow remote attackers to control your computer through the IRC network. Backdoor.SDBot also includes a self-updating feature and opens up a huge security hole on your system. Backdoor.SDBot is a serious threat to your private and financial information.

Aliases

W32/Cryp_PESpin.U!tr [Fortinet]TR/Dldr.Banload.ins [AntiVir]Gen:Packer.PESpin.A.Bu0aaud@4lmG [BitDefender]Win32.TRDldr.Banload [eSafe]Generic.evx!u [McAfee]BackDoor.Generic15.BRNV [AVG]Backdoor/Win32.Iroffer.gen [Antiy-AVL]Heuristic.BehavesLike.Win32.Suspicious-BAY.K [McAfee-GW-Edition]BDS/Iroffer.tn.1 [AntiVir]BackDoor.Iroffer.1843 [DrWeb]Backdoor.Win32.Iroffer.nm [Comodo]Backdoor.Win32.Iroffer.tn [Kaspersky]WS.Reputation.1 [Symantec]Generic BackDoor!1wt [McAfee]IRC/BackDoor.SdBot4.TNZ [AVG]
More aliases (480)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



E:\Recopilacion seguridad\Dvd 2\Pack Español - Castellano Actualizacion SERVICE PACK 2 (SP2) PARA Nero6603 + Nero Visio Express 30114\Nero\Keygen.exe File name: Keygen.exe
Size: 137.21 KB (137216 bytes)
MD5: 6009bea4c310ed64cf37b1eed3c0cf7e
Detection count: 173
File type: Executable File
Mime Type: unknown/exe
Path: E:\Recopilacion seguridad\Dvd 2\Pack Español - Castellano Actualizacion SERVICE PACK 2 (SP2) PARA Nero6603 + Nero Visio Express 30114\Nero\Keygen.exe
Group: Malware file
Last Updated: August 2, 2023
wupdmgr.dll File name: wupdmgr.dll
Size: 4.09 KB (4096 bytes)
MD5: 5fc0642bdacc702470e444de2d744f37
Detection count: 96
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
winnet32.exe File name: winnet32.exe
Size: 553.47 KB (553472 bytes)
MD5: 94e983df8439fafc48180d487663bf5f
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 27, 2010
rdfhost.exe File name: rdfhost.exe
Size: 1.17 MB (1171456 bytes)
MD5: 6bce0ad05a648d0c271f93f2e7cb4abd
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 8, 2010
C:\Program Files (x86)\Total Commander Podarok Edition\Programm\Instruments\instruments.exe File name: instruments.exe
Size: 600.06 KB (600064 bytes)
MD5: 89bc4cad011531178e67fbadf2688db2
Detection count: 77
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Total Commander Podarok Edition\Programm\Instruments\instruments.exe
Group: Malware file
Last Updated: July 11, 2023
mslsrv32.exe File name: mslsrv32.exe
Size: 51.2 KB (51200 bytes)
MD5: 3abd65c102fc2e00a52824ccec438673
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
~4.exe File name: ~4.exe
Size: 12.83 KB (12832 bytes)
MD5: 6baed5ccc533405f791e413de7b569ad
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
msdriver32.exe File name: msdriver32.exe
Size: 57.34 KB (57344 bytes)
MD5: 356139aa2bf83931531567661310aebe
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 8, 2010
%WINDIR%\Help\Help\goh.exe File name: goh.exe
Size: 450.41 KB (450410 bytes)
MD5: 132b0e7db609ba5cf81574bde24dcdac
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Help\Help
Group: Malware file
Last Updated: March 4, 2013
%WINDIR%\windows7addon.exe File name: windows7addon.exe
Size: 80.38 KB (80384 bytes)
MD5: a1ebfd1a74944f877e0510dd7065ddd5
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: March 19, 2012
msath32.exe File name: msath32.exe
Size: 57.34 KB (57344 bytes)
MD5: 8cff51b6365043947a158a2a285ba4e1
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 30, 2010
winsystem.exe File name: winsystem.exe
Size: 33.79 KB (33792 bytes)
MD5: c3dca9f74cec5a2ee31ae1a8d084906b
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
~2.exe, Explorer .exe File name: ~2.exe, Explorer .exe
Size: 12.83 KB (12832 bytes)
MD5: 55b5ff64f9be0550dce1c706e4062c8d
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
%WINDIR%\Config\csrss.exe File name: csrss.exe
Size: 845.6 KB (845606 bytes)
MD5: 894edd8eb57bc6810971639c6ec0cf1d
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Config
Group: Malware file
Last Updated: November 9, 2010
lsass.exe File name: lsass.exe
Size: 38.74 KB (38749 bytes)
MD5: 5b224a4d2f2597e5d945e23611117f24
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 23, 2010
smss.exe File name: smss.exe
Size: 40.96 KB (40960 bytes)
MD5: 6e2c471b84ba878bcd6383d9ef57f3a7
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 23, 2010
csrss.exe File name: csrss.exe
Size: 335.87 KB (335872 bytes)
MD5: 6b13a249cf1020bb495902fa886e6c06
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 1, 2010
%WINDIR%\system32\wsnhost.exe File name: wsnhost.exe
Size: 929.79 KB (929792 bytes)
MD5: 1f4696c8b7dd670f99c446e56a9959f8
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 16, 2019
330.exe File name: 330.exe
Size: 24.06 KB (24064 bytes)
MD5: 00765050b56fc8687e22262746d699c1
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
msdriver32.exe File name: msdriver32.exe
Size: 57.34 KB (57344 bytes)
MD5: 7ca2db11dd3c3f96801686ebf45feae4
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 1, 2010
atlah.exe File name: atlah.exe
Size: 9.21 KB (9216 bytes)
MD5: 07b4650663e4812b1576081697f4d7ce
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 20, 2022
%COMMONPROGRAMFILES%\systems\SysWindows.exe File name: SysWindows.exe
Size: 168.02 KB (168027 bytes)
MD5: efe365092207f2a60243ed3aa2111fff
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\systems
Group: Malware file
Last Updated: October 22, 2010
libsysmgr.exe File name: libsysmgr.exe
Size: 97.79 KB (97795 bytes)
MD5: e343dc2d74a99cf5a584075d81173111
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

Run keysMicrosoft UpdateWindows Explorer

Related Posts

One Comment

Loading...