Threat Search: 

ThreatExpert's Statistics for W32/Sdbot.worm.gen.ci [McAfee]:

W32/Sdbot.worm.gen.ci [McAfee] is also known as:
Threat AliasNumber of Incidents
W32.Spybot.Worm [Symantec]49
Packed/Themida [PC Tools]44
WORM_SDBOT.GAV [Trend Micro]21
Mal/Behav-285 [Sophos]16
Packed.Win32.Black.a [Kaspersky Lab]9
Packed.Win32.Black [Ikarus]6
Bloodhound.Unknown [Symantec]5
W32.Netsky.gen@mm [Symantec]5
Win32.Virut.Gen [PC Tools]5
Worm:Win32/Pushbot.gen!C [Microsoft]5
Backdoor.Rbot [Ikarus]3
Backdoor:Win32/Rbot.gen [Microsoft]3
Virus.Win32.Virut.n [Kaspersky Lab]3
W32.IRCBot [Symantec]3
Win-Trojan/Xema.variant [AhnLab]3
Worm.Rbot.OMW [PC Tools]3
Backdoor.VanBot.EZ [PC Tools]2
Backdoor.Win32.Rbot.ebn [Kaspersky Lab]2
Win32/IRCBot.worm.variant [AhnLab]2
Worm.SdBot.GAG [PC Tools]2
Worm:Win32/Pushbot.gen [Microsoft]2
Worm:Win32/Wootbot.gen [Microsoft]2
WORM_SDBOT.EZQ [Trend Micro]2
WORM_SPYBOT.AKM [Trend Micro]2
WORM_SPYBOT.ATI [Trend Micro]2
WORM_SPYBOT.AZV [Trend Micro]2
Backdoor.IRCBot!ct [PC Tools]1
Backdoor.Poisonivy.CV [Ikarus]1
Backdoor.Sdbot [Symantec]1
Backdoor.Win32.Rbot.cqf [Kaspersky Lab]1
Backdoor.Win32.Rbot.dnf [Kaspersky Lab]1
Backdoor.Win32.Rbot.dqr [Kaspersky Lab]1
Backdoor.Win32.Rbot.ebu [Kaspersky Lab]1
Backdoor.Win32.Rbot.eem [Kaspersky Lab]1
Backdoor.Win32.Rbot.etd [Kaspersky Lab]1
Backdoor.Win32.Rbot.eue [Kaspersky Lab]1
Backdoor.Win32.Rbot.eyq [Kaspersky Lab]1
Backdoor.Win32.Rbot.eyv [Kaspersky Lab]1
Backdoor.Win32.Rbot.fbm [Kaspersky Lab]1
Backdoor.Win32.Rbot.fcp [Kaspersky Lab]1
Backdoor.Win32.Rbot.feg [Kaspersky Lab]1
Backdoor.Win32.Rbot.fkx [Kaspersky Lab]1
Backdoor.Win32.Rbot.fvp [Kaspersky Lab]1
Backdoor.Win32.Rbot.fwx [Kaspersky Lab]1
Backdoor.Win32.Rbot.hfk [Kaspersky Lab]1
Backdoor.Win32.Rbot.pjz [Kaspersky Lab]1
Backdoor.Win32.SdBot [Ikarus]1
Backdoor.Win32.SdBot.fig [Kaspersky Lab]1
Backdoor.Win32.SdBot.fsk [Kaspersky Lab]1
Backdoor.Win32.VanBot.mq [Kaspersky Lab]1
Email-Worm.Netsky!sd6 [PC Tools]1
Net-Worm.Win32.Kolabc [Ikarus]1
Net-Worm.Win32.Kolabc.dkg [Kaspersky Lab]1
Net-Worm.Win32.Kolabc.dxs [Kaspersky Lab]1
Virus.Win32.Virut.p [Kaspersky Lab]1
W32.Netsky@mm [Symantec]1
W32/Forbot-GU [Sophos]1
Win32/IRCBot.worm.372736.D [AhnLab]1
Win-Trojan/Black.379904 [AhnLab]1
Win-Trojan/Black.446976 [AhnLab]1
Worm.Rbot.OMU [PC Tools]1
Worm.RBot.ORJ [PC Tools]1
Worm.RBot.OTJ [PC Tools]1
Worm.Rbot.UQM [PC Tools]1
Worm.Rbot.UWN [PC Tools]1
Worm.RBot.WQS [PC Tools]1
Worm.Win32.AutoRun.epy [Kaspersky Lab]1
Worm.Win32.AutoRun.lpd [Kaspersky Lab]1
Worm:Win32/Hamweq.A [Microsoft]1
Worm:Win32/Spybot [Microsoft]1
WORM_RBOT.GFG [Trend Micro]1
WORM_RBOT.GGU [Trend Micro]1
WORM_SDBOT.FGR [Trend Micro]1
WORM_SDBOT.FGV [Trend Micro]1
WORM_SDBOT.FHF [Trend Micro]1
WORM_SDBOT.FKK [Trend Micro]1
WORM_SDBOT.FQV [Trend Micro]1
WORM_SPYBOT.AKR [Trend Micro]1
WORM_SPYBOT.HW [Trend Micro]1

W32/Sdbot.worm.gen.ci [McAfee] is known to be created as:
%System%\cjqojxhi.exe
%System%\clock.exe
%System%\dllcache\shvhost.exe
%System%\hvrujlwv.exe
%System%\ihyylnsb.exe
%System%\load.exe
%System%\theames.exe
%System%\winkey.exe
%System%\zgyjwmkp.exe
%Temp%\virus\wintcps.exe
%Windir%\filename.exe
%Windir%\ituneshelp.exe
%Windir%\service.exe
%Windir%\wkssvr.exe
c:\restore\k-1-3542-4232123213-7676767-8888886\sab.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.