13 entries found.
Backdoor:Win32/Rbot.gen
Updated on May 20, 2008
Backdoor:Win32/Rbot.gen is a generic detection for a family of backdoor trojans that allows attackers to control infected computers. After a computer is infected, the trojan connects to a specific IRC server and joins a specific channel to receive commands from attackers. Commands can instruct the trojan to spread to other computers by scanning for network shares with weak passwords, exploiting Windows vulnerabilities, and spreading through backdoor ports opened by other families of malicious software. The trojan can also allow attackers to perform other backdoor functions, such as launching denial of service (DoS) attacks and retrieving system information from infected computers.
Alert level:
severe
Backdoor:Win32/Rbot.gen!A
Updated on Oct 29, 2007
Backdoor:Win32/Rbot.gen!A is a family of backdoor Trojans that allows attackers to control infected computers. After a computer is infected, the Trojan connects to a specific IRC server and joins a specific channel to receive commands from attackers. Commands can instruct the Trojan to spread to other computers by scanning for network shares with weak passwords, exploiting Windows vulnerabilities, and spreading through backdoor ports opened by other families of malicious software. The Trojan can also allow attackers to perform other backdoor functions, such as launching denial of service (DoS) attacks and retrieving system information from infected computers.
Alert level:
severe
Backdoor:Win32/Rbot.gen!E
Updated on May 14, 2008
Backdoor:Win32/Rbot.gen!E is a generic detection for a number of variants of the Backdoor:Win32/Rbot family. Backdoor:Win32/Rbot is a family of backdoor trojans that allows attackers to control infected computers. After a computer is infected, the trojan connects to a specific IRC server and joins a specific channel to receive commands from attackers. Commands can instruct the trojan to spread to other computers by scanning for network shares with weak passwords, exploiting Windows vulnerabilities, and spreading through backdoor ports opened by other families of malicious software. The trojan can also allow attackers to perform other backdoor functions, such as launching denial of service (DoS) attacks and retrieving system information from infected computers.
Alert level:
severe
Backdoor:Win32/Rbot.gen!G
Updated on Sep 05, 2008
Backdoor:Win32/Rbot.gen!G is a backdoor trojan that allows unauthorized access and control of an affected machine. This malware may also be able to spread in a number of different ways. Typically, the spreading mechanism is started manually by a remote attacker using backdoor functionality. Methods for spreading may include via Messenger applications, via weakly protected network shares, via vulnerability exploit, or via backdoors opened by other malware during previous system compromises.
A broad range of malware may be detected with this name, hence specific symptoms (such as filenames and registry modifications) may vary from instance to instance. However, this group of malware is likely to appear to be behaviorally similar.
Alert level:
severe
Backdoor:Win32/Rbot.gen!H
Updated on Sep 09, 2008
Backdoor:Win32/Rbot.gen!H is a backdoor trojan that allows unauthorized access and control of an affected machine. This malware may also be able to spread in a number of different ways. Typically, the spreading mechanism is started manually by a remote attacker using backdoor functionality. Methods for spreading may include via Messenger applications, via weakly protected network shares, via vulnerability exploit, or via backdoors opened by other malware during previous system compromises.
A broad range of malware may be detected with this name, hence specific symptoms (such as filenames and registry modifications) may vary from instance to instance. However, this group of malware is likely to appear to be behaviorally similar.
Alert level:
severe
Backdoor:Win32/Rbot.AG
Updated on Sep 29, 2004
Backdoor:Win32/Rbot.AG is a backdoor Trojan that connects to an IRC server to receive commands from remote attackers. Commands could include instructions to spread to other computers via open network shares or by exploit of a security vulnerability, or to launch a denial of service (DoS) attack against specified targets.
Backdoor:Win32/Rbot.AG may be detected as Backdoor:Win32/Rbot.gen!A.
Alert level:
severe
Backdoor:Win32/Rbot.AJ
Updated on Oct 12, 2004
Backdoor:Win32/Rbot.AJ is a backdoor Trojan that connects to an IRC server to receive commands from remote attackers. Commands could include instructions to spread to other computers via open network shares or by exploit of a security vulnerability, or to launch a denial of service (DoS) attack against specified targets.
Backdoor:Win32/Rbot.AJ may be detected as Backdoor:Win32/Rbot.gen!A.
Alert level:
severe