W32/Rbot-IC. It is a worm which attempts to spread to remote network shares and allows unauthorised remote access to the computer via IRC channels. It spreads to network shares with weak passwords and via network security exploits.
Copies itself to the file ebxtar.exe in the Windows system folder and creates entries at the following locations in the registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices HKCU\Software\Microsoft\Windows\CurrentVersion\Run with the value: BIOS XP Loader = ebxtar.exe
Use antivirus (also check How To Remove section)Startup Optimizer to automatically remove it from startup.