Troj/SdBot-FB

Category: Viruses and Spyware Protection available since:29 Jan 2004 00:00:00 (GMT)
Type: Trojan Last Updated:29 Jan 2004 00:00:00 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/SdBot-FB is an IRC backdoor Trojan which allows unauthorised access and control of the computer via IRC channels. In order to run automatically when Windows starts up the Trojan copies itself to the the file sysconf16.exe in the Windows system folder and adds the following registry entries:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ConfLoader

HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\ConfLoader

download Try Sophos products for free
Download now