Trojan.Eskiuel infects computers installed with SQL Server. It also download malicious codes from internet after modifying security settings. I also creates a folder named "ZeHin" under System32 to save those downloaded threats. It modifies security settings of ftp.exe for downloading more threats from the internet. It then scans for SQL servers in the network (Class B subnet). If the Trojan found another SQL server , then it attempts to gain admin privilege by using some commonly used passwords.
How to Remove Trojan.Eskiuel ?
1. Perform standard procedure for Virus removal.
2. Remove the following entries from windows registry.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Jet\4.0\Engines\"SandBoxMode" = "3"
See also:
Vipre: Antivirus, Antispyware, Anti-Rootkit - Free Trial Download
Top 10 AntiVirus Software 2008
Download Kingsoft Internet Security 9 with 6 Months Free Trial
Panda's Antivirus, Firewall and Internet Security With 3 Months Free Service
No comments:
Post a Comment