- October 24, 2003
- February 13, 2007 12:12:38 PM
Also Known As:
- W32/Sdbot.worm.gen [McAfee], Backdoor.SdBot.gen [Kaspersky]
W32.Randex.R is a network-aware worm that spreads itself through shared network drives as the file, Service.exe.
The worm receives instructions from an IRC channel on a specific IRC server. One such command triggers the aforementioned spreading.
W32.Randex.R may open ports 20, 113, 445, 1024, 55808. It also opens randomly selected ports.
Antivirus Protection Dates
Initial Rapid Release version October 27, 2003
Latest Rapid Release version September 28, 2010 revision 054
Initial Daily Certified version October 27, 2003
Latest Daily Certified version September 28, 2010 revision 036
Initial Weekly Certified release date October 29, 2003
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.
Writeup By: Tony Lee