Main Menu
Home
Bookmark
Contact Us



 
Rbot.ehshell Trojan Information

Name: Rbot.ehshell
Category: Trojan
Advice: Remove
Risk: Severe Risk Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine.
Description: Rbot.ehshell is an IRC Trojan Bot.

Attacks other hosts on port 135
Connects to IRC server @ 216.187.196.130:6667

Add the startup key:
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunMedia center

Signatures: process: ehshell.exe: MD5 Hash: b518a0f6041fee1ec3e..
Type: Trojan - A Trojan software is any software on a user's computer that the user is not aware or intentionally installed. Most Trojan software is designed to perform some sort of actions that could jeopardize the user's security or privacy.



Top Trojan Visited Pages:
Tro.Downloader.loadadv - 411 visits
Enable Regedit - 195 visits
Java.ClassLoader.Dummy.d - 187 visits
Trojan.BankerSpy - 179 visits
RBot.steam - 86 visits
Startup.NameShifter.Xgtray - 77 visits
Tro.Bagle.SP - 59 visits
LRPatch Trojan - 58 visits
Trojan.BHO.NameShifter.EZ - 55 visits
Tro.YourStartingPage - 54 visits

Random Trojan Pages:
Dlder - Alias: Dlder
Nodeldir.Batch
Trojan.BAT.Anaru
RBot.task32w - Alias: MS taskbar W
Trojan.BHO.NameShifter.EB
Trojan.BHO.NameShifter.CN
Khiladi Trojan
Trojan.Agent
Vir.Batch
Trojan.Startup.NameShifter.H


 


© 2006-2008 spyware32.com - Privacy Policy