Aliases
W32/Sdbot.worm.gen, Backdoor.IRCBot.gen
Type
Win32 worm
Description
W32/Sdbot-GO is a backdoor Trojan and network-aware worm which runs in the background as a service process and allows unauthorised remote access to the computer via IRC channels.
W32/Sdbot-GO copies itself to the Windows system folder as dosin.exe and creates the following registry entry so that the Trojan is run when a user logs on to Windows:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Auto Start
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Auto Start
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\Auto Start
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Auto Start
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\Auto Start
More: http://www.sophos.com/virusinfo/analyses/w32sdbotgo.html

Chowhound
Comic Vine
GameFAQs
GameSpot
Giant Bomb
TechRepublic