|
|
Y3K RAT Information
| Name: |
Y3K |
| Category: |
RAT |
| Alias: |
- Alias: Backdoor.Subroot.13 |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: 13yrsuck_mpg.exe: MD5 Hash: 02dfb838bdf5b90ba99...
process: ajjohnfight.exe: MD5 Hash: 1219c3464186bb3d4e4...
process: bjmovie.exe: MD5 Hash: 93bc5eefd2169c77623...
process: bjmoviec.exe: MD5 Hash: 96600b16ebbcc197a8c...
process: dnm.exe: MD5 Hash: fc23019fe0a41f4b1f5...
process: server.exe: MD5 Hash: 235dad46ca882da78ed...
process: server.exe: MD5 Hash: 408fe35684157e6a4de...
process: y3k rat 1.0.exe: MD5 Hash: e388eada7315f82f6b5...
process: server.exe: MD5 Hash: 3164436bab0dcb0adba...
process: y3k rat 1.1.exe: MD5 Hash: 8caeae4bbd1a39f47a0...
process: y3k rat 1.1.exe: MD5 Hash: 372a5de5d4e281a419b...
process: edit server.exe: MD5 Hash: 2f1c2da9aec7303d5a8...
process: y3k rat 1.2.exe: MD5 Hash: 49c34ad6f8907235952...
process: y3k server.exe: MD5 Hash: 577b3996153e5434d48...
process: edit server -de.exe: MD5 Hash: ...
process: edit server -de.exe: MD5 Hash: b70c6cf250ec8c4814e...
process: edit server.exe: MD5 Hash: 843d2697ba95ff90c04...
process: quick-eps-viewer30.exe: MD5 Hash: 3802aeab1f8b480adb7...
process: server.exe: MD5 Hash: 793657996cd8f98e0ac...
process: server.exe: MD5 Hash: 52bdf6b3d0fdf689a12...
process: wifebj01.exe: MD5 Hash: 1184c9991fa299aab35...
process: y3k rat 1.3.exe: MD5 Hash: 0ac8d08a1842c438c07...
process: 1e260ea4.exe: MD5 Hash: 8d6e5a2ca51d749312e...
process: edit server.exe: MD5 Hash: 9a8f6319c02cdf60744...
process: edit server.exe: MD5 Hash: 901b2f90bc8cff0cda7...
process: server.exe: MD5 Hash: 3b0209f5d52533500b2...
process: server.exe: MD5 Hash: baea4129d0035ce47c0...
process: server.exe: MD5 Hash: 607db0b8e81b5fa1ec4...
process: y3k rat 1.4.exe: MD5 Hash: 048b2918a7156997529...
process: y3k.1.4.exe: MD5 Hash: 365479b2597ff463131...
process: y3k14b.exe: MD5 Hash: 94fe2bc48f4d7825150...
process: 13yrsuck_mpg.exe: MD5 Hash: 8d38de06239bb0d4dfc...
process: anal movie.exe: MD5 Hash: fcca3ff06c8cff79aa5...
process: client.exe: MD5 Hash: 075753ae4b0b6f059f4...
process: server editor.exe: MD5 Hash: a9beb3fe915f55fa3a3...
process: server.exe: MD5 Hash: 68a410449b121ec7ecc...
process: 1214723985.exe: MD5 Hash: 66829719e279a7591e5...
process: server builder.exe: MD5 Hash: ...
process: server builder.exe: MD5 Hash: 286147cb0db1f13162d...
process: server builder.exe: MD5 Hash: ef5a8ce49ea8cc43335...
process: server builder.exe: MD5 Hash: 5021e1d1c7d03f85a4c...
process: server builder.exe: MD5 Hash: c92008fd32bc0f95d77...
process: server y3k 1.6 ms.exe: MD5 Hash: 364d525f10b36db4b57...
process: server.exe: MD5 Hash: 7aadf6159ff8403c084...
process: server.exe: MD5 Hash: 1b4a5ad1393efa22433...
process: server1.exe: MD5 Hash: d79fc3a5229617a2c6e...
process: server3.exe: MD5 Hash: 93980434cd3471b9160...
process: server5.exe: MD5 Hash: 1a9436af3fa8bce5e7e...
process: server7.exe: MD5 Hash: a27e9b0e9baaacfcaec...
process: unpacked server builder.exe: MD5 Hash: 3b7488f2d9117c14163...
process: y3k rat 1.6 [ms].exe: MD5 Hash: 15d66509dfd7fa82149...
process: y3k rat 1.6.exe: MD5 Hash: 43e81843e8950abcf78...
process: y3k rat 1.6.exe: MD5 Hash: 302e90bcb33ff4ba74d...
process: server.exe: MD5 Hash: cd53434e50cb0d05714...
process: y3k rat 1.7.exe: MD5 Hash: f8bccfda44664a9837a...
process: controller.exe: MD5 Hash: 520bf2003568f8b88e8...
process: server builder.exe: MD5 Hash: eebb828c688cf83cfb1...
process: server.exe: MD5 Hash: 541ecff7a2e90c32d9d...
process: y3k rat pro02 setup.exe: MD5 Hash: 9561722a4c3099d761c.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 292 visits
NetBus v.1.70 - 207 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 54 visits
Systray BackDoor - 52 visits
AutoSpY - Alias: Backdoor.AutoSpy - 47 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 46 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 41 visits
Netbus - Alias: Backdoor.Netbus - 41 visits
Random RAT Pages:
CSA 2.0 - Alias: Challenge Secret Authentication
Snake
ComAnywhere
SmallFun
Osiris
CoreServer - Alias: BackDoor-AIW, Backdoor.Coredoor, Backdoor.Coredoor
Armageddon - Alias: Backdoor.Armageddon, Backdoor.Armageddon, MultiPager-A
The Torment Remote
BlackIce BackDoor - Alias: BackDoor-GZ.gen
SubRoot - Alias: Backdoor.Subroot.13
|
|