|
||
1/7: Sdbot-TB Worm Lets Hackers In Via IRC W32/Sdbot-TB is a Windows network worm that contains backdoor functions that allow unauthorized remote access to the infected computer via IRC channels. Once installed, W32/Sdbot-TB is able to setup an HTTP proxy server, participate in denial-of-service (DoS) attacks, steal computer information and log keystrokes to the file keys.txt in the Windows System folder when instructed to do so by a remote attacker.
The worm also tries to spread using DCC file transfers over IRC channels.
More information can be found at Sophos page.
|
||
|