Backdoor.Sadmind is a backdoor worm program that may affect systems that are running unpatched versions of Microsoft IIS or unpatched versions of Solaris.
If files on a desktop computer are detected as Backdoor.Sadmind.Dr, that does not mean that there is an infection. It means that you have visited a Website whose server has been compromised by Backdoor.Sadmind, which replicates only on Solaris systems. You should delete any files detected as Backdoor.Sadmind.Dr.
CERT has issued an advisory regarding sadmind-IIS:
The following documents regarding this vulnerability are available from Microsoft:
Sun has issued the following bulletin for this vulnerability:
The patch closes the security hole on Solaris systems that Backdoor.Sadmind uses to infect a system. Left unpatched, other malicious programs could take advantage of the same vulnerability. The best way to close the vulnerable ports is to use the security patch.
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.