|
|
|
|
SdBot.asr_fnt Spyware/Adware Definition
| Name: |
SdBot.asr_fnt |
| Category: |
Backdoor |
| Alias: |
W32/Sdbot.worm.gen |
| Advice: |
Remove |
| Risk: |
Severe Risk
Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine. |
| Description:
|
SDBot is the name of a family of remote access tools, also known as backdoors or worms, used by hackers to control a machine without the owner's knowledge.
SdBot contains its own IRC client, allowing it to connect to an IRC channel that was coded into the Trojan. Using the IRC channel, the Trojan listens for the commands from the Trojans creator. The creator of the Trojan accesses the Trojan by using a password-protected authorization.
The commands allow the Trojans creator to perform any of the following actions:
Manage the Backdoor installation.
Control the IRC client on a compromised computer.
Dynamically update the installed Trojan.
Send the Trojan to other IRC channels to attempt to compromise more computers.
Download and execute files.
Deliver system and network information to the Trojans creator.
Perform Denial of Service (DoS) attacks against a target, which the Trojans creator defines.
Completely uninstall itself by removing the relevant registry entries.
|
| Signatures:
|
process: asr_fnt.exe: MD5 Hash: 45acd5ecc4786184cda...
process: asr_fnt.exe: MD5 Hash: 76bc93112c6d5cf8a98...
process: asr_fnt.exe: MD5 Hash: 9919118cfc37fc285cc...
process: asr_fnt.exe: MD5 Hash: 0a809a0ff7982f19627.. |
| Type: |
Backdoor - A Trojan software is any software on a user's computer that the user is not aware or intentionally installed. Most Trojan software is designed to perform some sort of actions that could jeopardize the user's security or privacy. |
|
Top Backdoor Visited Pages:
Adw.BigMeanGorilla.MadAsHell
Afcore.AW
Afcore.BN
AFN
Agobot.05.c
Agobot.3.cd
Ascreen.a
ASP.Ace.f
ASP.Rootkit.10.a
Backdoor.agent
Backdoor.Aimbot.ca
Backdoor.Banger
BackDoor.Galapop.A
BackDoor.Galapop.B
Backdoor.Hupigon.lq
|
|