CHAT: SDBot/UrXBot IRC Command Activity

This signature detects chat patterns associated with the SDBot or UrXBot IRC BotNet. Computers infected with malware can use the Internet Relay Chat protocol to "phone home" for instructions by the Botnet controller. It may also be a false positive.

Short Name
CHAT:IRC:BOTNET:SDBOT-CMD
Severity
Minor
Recommended
False
Recommended Action
None
Category
CHAT
Keywords
Activity Command IRC SDBot/UrXBot
Release Date
02/16/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?