Published Oct 24, 2005|Updated Sep 15, 2017


Alert level: Severe Detected with Windows Defender Antivirus

Also detected as: W32.Toxbot (Symantec) W32/Sdbot.worm.gen (McAfee) WORM_CODBOT (Trend Micro) Backdoor.Win32.Codbot (Kaspersky) W32/Codbot-Gen (Sophos) Win32.Toxbot (CA)

Windows Defender Antivirus detects and removes this threat.
Win32/Codbot is a family of network worms that targets computers running certain versions of Microsoft Windows.
Some variants of this family spread to network shares with weak administrator passwords. Other Win32/Codbot variants spread by exploiting one or more Windows vulnerabilities. The worm has a backdoor component that connects to an IRC server from an infected computer to receive commands from attackers.


Latest news