|
||
3/25: Sdbot-WG a Worm and IRC Trojan W32/Sdbot-WG is a network worm and IRC backdoor Trojan for the Windows platform that allows a remote intruder to access and control the computer via IRC channels. W32/Sdbot-WG also drops a file to the current folder that is detected by Sophos products as Troj/NtRootK-F.
The backdoor component joins a specific channel on an IRC server and then runs continuously in the background as a service process, listening on the IRC channel for specific commands and carrying out the appropriate actions.
More information can be found at Sophos page.
|
||
|