Welcome to the Virus Encyclopedia of Panda Security.
|Effects: ||It connects to an IRC channel and carries out actions as redirecting and scanning IP addresses, downloading and running files, obtain product keys and sending the backdoor via IRC.|
|Detection updated on:||Nov. 12, 2003|
|Yes, using TruPrevent Technologies
Sdbot.AV is a backdoor type Trojan that allows a hacker to carry out the following actions, among others: end processes, download and run files, scan IP addresses, update the backdoor, obtain product keys and send the backdoor to other IRC channels.
When the attached file is run, Sdbot.AV goes memory resident and connects to the server 184.108.40.206 across the IRC channel.
Sdbot.AV mainly spreads via e-mail and IRC chat channels.
Sdbot.AV is difficult to identify, as it does not display any messages or warnings that indicate that it has reached a computer.