x
48h OFFER
If you're already a customer of
our homeusers protection,
renew now with a 50% off
RENEW NOW
x
SPECIAL OFFER
If you're already a customer of
our homeusers protection,
renew now with a 50% off
RENEW NOW
x
HALLOWEEN OFFER
take advantage of our
terrific discounts
BUY NOW AND GET A 50% OFF
x
CHRISTMAS OFFER
Buy the best antivirus
at the best price
BUY NOW AND GET A 40% OFF
x
SPECIAL OFFER
Buy the best antivirus
at the best price
BUY NOW AND GET A 50% OFF
x
BLACKFRIDAY OFFER
Buy the best antivirus
at the best price
TODAY ONLY UP TO 70% OFF
x
CYBERMONDAY OFFER
Buy the best antivirus
at the best price
(Only for homeusers)
TODAY ONLY UP TO 70% OFF
Active Scan. Scan your PC free
Panda Protection

Virus Encyclopedia

Welcome to the Virus Encyclopedia of Panda Security.

Encyclopedia GetVirusCard True 0

Sdbot.MH

 
Threat LevelModerate threatDamageHighDistributionNot widespread
Common name:Sdbot.MH
Technical name:Bck/Sdbot.MH
Threat level:Low
Type:Backdoor
Effects:  It connects to an IRC channel and carries out actions such as redirect and scan ports, download and run files, send the backdoor via IRC and launch DoS attacks.

Affected platforms:

Windows XP/2000/NT

Detection updated on:Feb. 2, 2004
StatisticsNo

Brief Description 

    

Sdbot.MH is a backdoor that allows a hacker to carry out the following actions, among others: redirect ports, download and run files, scan ports, update the backdoor, send the backdoor to other IRC channels and launch DoS (Denial of Service) attacks.

Once it is run, Sdbot.MH goes memory resident and uses its own IRC client in order to join an especific IRC channel in a server and receive remote control commands.

Sdbot.MH does not spread automatically using its own means. It needs the attacking user’s intervention in order to reach the affected computer. The means of transmission used include, among others, floppy disks, CD-ROMs, e-mail messages with attached files, Internet downloads, FTP, IRC channels, peer-to-peer (P2P) file sharing networks, etc.

Visible Symptoms 

    

Sdbot.MH is difficult to recognize, as it does not display any messages or warnings that indicate that it has reached the computer.