|
|
NetDemon RAT Information
| Name: |
NetDemon |
| Category: |
RAT |
| Alias: |
- Alias: Backdoor.FTP.Casus.20, Backdoor.FTP.Casus.23 |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: editserver.exe: MD5 Hash: 2febc7ac84b24a8ea20...
process: infector.backdoor.1.3.exe: MD5 Hash: 45d8b3018cc302da57a...
process: infector.backdoor.1.4.exe: MD5 Hash: 3b34eaa3d68371eefb0...
process: mosuck1.1.zip.exe: MD5 Hash: e3c604c36d3c51f6a90...
process: netdemon.exe: MD5 Hash: 2c94241763058eeba60...
process: netdemon10c.exe: MD5 Hash: 7af2cddf6a21b138b70...
process: rnsbsbuinder.exe: MD5 Hash: e80dad58daab417ef1f...
process: winmap.exe: MD5 Hash: ...
process: winmap.exe: MD5 Hash: .. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 291 visits
NetBus v.1.70 - 207 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 54 visits
Systray BackDoor - 52 visits
AutoSpY - Alias: Backdoor.AutoSpy - 47 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 46 visits
Netbus - Alias: Backdoor.Netbus - 41 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 40 visits
Random RAT Pages:
Blackhole 2000/2001/2002
easyServ - Alias: Backdoor.Easyserv.10, Backdoor.Easyserv.11.a, Backdoor.Easyserv.11.c
Dagger - Alias: Backdoor.Dagger.131, Backdoor.Dagger.140
Remote Windows Shutdown
Web Asylum
BackWindows
Greek Hackers Rat - Alias: Backdoor.Y3KRat.17.a, Greek Hackers RAT 1.0
Alicia version k - Alias: Backdoor.Alicia
Control du Sockets de Troie
Casus - Alias: Backdoor.FTP.Casus.20, Backdoor.FTP.Casus.23
|
|