Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Apr 22, 2009 | Updated Sep 15, 2017

Backdoor:Win32/IRCbot.gen!O

Detected by Microsoft Defender Antivirus

Aliases: Exploit:Win32/MS08067.gen!A (other) Backdoor.Sdbot.DGAV (BitDefender) Win32/Sdbot.ME (CA) IRC/SdBot (ESET) Backdoor.Win32.SdBot.ldj (Kaspersky) W32/Sdbot.worm (McAfee) W32/SDbot.MBU (Panda) W32/Sdbot-DOM (Sophos) W32.Spybot.Worm (Symantec) Worm.SdBot.AEYK (VirusBuster)

Summary

Backdoor:Win32/IRCbot.gen!O is a generic detection for a trojan that allows unauthorized access and control of an affected machine by a remote attacker using IRC. After a computer is infected, the trojan connects to a specific IRC server and joins a specific channel to receive commands from an attacker.  This particular detection may trigger on variants of several different IRC bot families, including Win32/Pushbot and Win32/Synigh.
Manual removal is not recommended for this threat. Use Microsoft Security Essentials or another up-to-date scanning and removal tool to detect and remove this threat and other unwanted software from your computer. For more information on Microsoft security products, see http://www.microsoft.com/protect/products/computer/default.mspx.
Follow us