Click on screenshot to zoom
Danger level 8
Type: Trojans

Backdoor.Sdbot

Backdoor.Sdbot is a very dangerous Trojan that you don\'t want anywhere near your machine.Backdoor.Sdbot will only cause you lots of wasted time as well as many unwanted computer problems, which are better avoided.Backdoor.Sdbot is able to actually open up a back door on your system, which will allow any remote attacked to have complete control over your computer. This is all done via the Internet Relay Chat; (IRC) netowrk.This is just the start of the many problems which Backdoor.Sdbot may cause you.

Backdoor.Sdbot may go by the following names:
• BackdoorSdbot
• Backdoor Sdbot
• BackdoorSd.bot
• BackdoorSdbot
• BackdoorSd bot
• Backdoor.S
• BackdoorS
• Backdoor S
• Backdoor.SDBot
• BackdoorSDBot
• Backdoor SDBot

Backdoor.Sdbot may display some of the following symptoms:
• It may feel like somebody has control over your computer.
• Your system settings may change.
• Files may appear, disappear and change within your registry.
• Your computer speed may decrease dramatically.
• Backdoor.Sdbot may spread to your friends over networks.
• Your internet connection may start malfunctioning.

These are just some of the many horrible symptoms which you may experience due to this malicious Backdoor.Sdbot.Backdoor.Sdbot may also include a malicious self updating feature, which means that it will update itself without your consent or knowledge.Backdoor.Sdbot also runs high risks of creating a massive security hole on your system, which you won\'t be aware of. Due to the factor that Backdoor.Sdbot allows remote attackers to control your computer, the chances of your financial details being compromised are very high. Malicious online characters may gain complete access to all your financial details as well as all your passwords. This means that you may unfortunately be the next victim of identity theft or a big cybercrime.

Backdoor.Sdbot is not something to play around with and needs to be removed from your computer.Backdoor.Sdbot needs to be removed correctly upon immediate detection. You have the option of the manual removal process or the automatic removal process. It is vital for you to know that you can cause serious additional damage to your computer if you make use of the manual removal process. It is suggested that you invest in a decent antispyware application that allows you to both detect as well as automatically remove Backdoor.Sdbot for you.

Download Spyware Removal Tool to Remove* Backdoor.Sdbot
  • Quick & tested solution for Backdoor.Sdbot removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Backdoor.Sdbot

Files associated with Backdoor.Sdbot infection:

svchost.exe
update1759.exe
winnet32.exe
csrss.exe
smss.exe
lsass.exe
rdfhost.exe
msdriver32.exe
mslsrv.exe
winsystem.exe
330.exe
mslsrv32.exe
video.exe
atlah.exe
libsysmgr.exe
winhost.exe
svchost.exe

Backdoor.Sdbot processes to kill:

svchost.exe
SearchSettingsProtection.exe
svchost.exe
update1759.exe
winnet32.exe
csrss.exe
smss.exe
lsass.exe
rdfhost.exe
msdriver32.exe
mslsrv.exe
winsystem.exe
330.exe
mslsrv32.exe
video.exe
atlah.exe
libsysmgr.exe
winhost.exe

Remove Backdoor.Sdbot registry entries:

HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUNONCEatlah.exe
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN gcServ
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesNT login service
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN NvGraphicsInterface
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gcServ
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE\atlah.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvGraphicsInterface
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NT login service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Driver Setup
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
RUNNING PROGRAM\winsystem.exe
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Events Log
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Windows NT Session Manager
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.