1. Symantec/
  2. Security Response/
  3. W32.Kwbot.P.Worm


Risk Level 1: Very Low

August 27, 2003
February 13, 2007 12:06:26 PM
Also Known As:
W32/Sdbot.worm.gen [McAfee], Backdoor.SdBot.gen [KAV]
Systems Affected:

W32.Kwbot.P.Worm is a worm that attempts to spread through file-sharing networks, such as KaZaA, iMesh, LimeWire, eDonkey2000, and Morpheus. It has Backdoor capabilities that allow a hacker to control a computer by using Internet Relay Chat (IRC). The existence of the file mscommand.exe is an indication of a possible infection.

This threat is compressed with UPX.

Antivirus Protection Dates

  • Initial Rapid Release version August 28, 2003
  • Latest Rapid Release version September 28, 2010 revision 054
  • Initial Daily Certified version August 28, 2003
  • Latest Daily Certified version September 28, 2010 revision 036
  • Initial Weekly Certified release date September 3, 2003
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.
Writeup By: Yana Liu

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
2016 Internet Security Threat Report, Volume 21
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube