SoftwareTipsandTricks.com
Home Forums Windows 7 Security Tips
Forums

Windows 7
Windows Vista
Windows XP

Security Tips
Troubleshooting
Keyboard Shortcuts
Encyclopedia


Drivers

Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Articles
Hot Downloads


Privacy Policy
Contact Us







  sysmgr.exe

Name sysmgr.exe

Description

W32/Sdbot-OO is an IRC backdoor that can spread via network shares protected by weak passwords.
The worm copies itself to the file sysmgr.exe and cool.exe in the Windows System folder and adds the following registry entries:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft System Checkup
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\NT Logging Service
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Microsoft System Checkup

W32/Sdbot-OO connects to an IRC server specified by the author and joins a channel from which it will receive further commands.
These commands can start any of the following actions:
- HTTP server
- sock4 proxy server
- UDP, SYN or PING flooding
- TCP redirection
- download files
- execute arbitrary commands
- spread via weakly-protected network shares

It may also attempt to terminate the security related processes.

Use antivirus (also check How To Remove section)Startup Optimizer to remove it from startup.


Still have a problem? Ask for help at our discussion forum.



Search Dangerous Files :
 

: : Recent posts at Forums : :

cpnmkfndea

xmotbarqyd

zgzkukvjaf

fqsecludws

Unencumbered galleries

njumwjdqxn

rscxsegvnn

Free galleries

xglltkefsp

rhvpiqtogd

rebsfvzkqg

Mod Protrude

odvetroado

ntvdbypxzf

liszpvrmzp

jnxddjbfck

My brand-new website

eygizairlr

axxvyznoiq

rhodjseosz

rzjtizquux

lnimhnodus

wzohaddwho

sgevfnpbfg

Бодибилдинг: &

jrqkuelvwo

Pictures from collective networks

unnvqxxzlw

Matured purlieus

sliifwrqnc




SoftwareTipsandTricks, All Rights Reserved.