|
|
Glacier RAT Information
| Name: |
Glacier |
| Category: |
RAT |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: client.exe: MD5 Hash: 4e2d57fe4cdc9380e12...
process: server.exe: MD5 Hash: 6c6fa5618ac2d5a776b...
process: g_client.exe: MD5 Hash: cbf42c36904e0716f3c...
process: g_server.exe: MD5 Hash: 951f81328dd55351e4c...
process: g_client.exe: MD5 Hash: bff8d736eaa55f20bec...
process: g_server.exe: MD5 Hash: ba069fd2b82e395cd76...
process: g_client.exe: MD5 Hash: 6ced1a8e5253d48d18d...
process: g_client.exe: MD5 Hash: 7c5b308ae581499fe66...
process: g_clinet.exe: MD5 Hash: 8df9671246e95ada0b8...
process: g_server.exe: MD5 Hash: 0f8911dedf2bc3cf08f...
process: g_server.exe: MD5 Hash: 84aef9b74af6df332be...
process: ¦+¦+--+¦.exe: MD5 Hash: 709293a3bd4fc38dad9...
process: g_client.exe: MD5 Hash: 07ae0904ca3cb92b440...
process: g_server.exe: MD5 Hash: 25050e34f33787f937a...
process: g_client.exe: MD5 Hash: 96ad91139a540bb3f98...
process: g_client.exe: MD5 Hash: 61541a55ed09a4bb21d...
process: g_server.exe: MD5 Hash: 3dd6146f00de835d4c6...
process: g_server.exe: MD5 Hash: d64c82af903116669c5...
process: 2003.exe: MD5 Hash: ca4cd1d71e959198786...
process: g_client.exe: MD5 Hash: 1aebfadeb80fad752a8...
process: bh5.5b.exe: MD5 Hash: b97ca8f7bbfeafb7bfc...
process: g_client).exe: MD5 Hash: 2b703f8da2e0903c156...
process: g_client.exe: MD5 Hash: 83b1c2c66daa0d9c172...
process: g_server.exe: MD5 Hash: 649442d4dd40adf2810...
process: g_server.exe: MD5 Hash: bc466c1bbea23fa420a...
process: g_client.exe: MD5 Hash: 011d59f6f6282b1c002...
process: g_server.exe: MD5 Hash: 423b8c4f92bb92a431d...
process: garu.exe: MD5 Hash: 8c1783998ff74dd0670...
process: g_client.exe: MD5 Hash: 98cd9c69bfd3e9ae536...
process: g_server.exe: MD5 Hash: 20bee4f76bb9bd1050e...
process: pucca.exe: MD5 Hash: 36a707d434b6bae552a...
process: g_client.exe: MD5 Hash: 1f2634b82cc516b3be6...
process: g_server.exe: MD5 Hash: 63f77d2cf03c7cf0c39...
process: ldb.exe: MD5 Hash: 38424c14562395a877a...
process: mma.exe: MD5 Hash: 6002f149c33f5a94790...
process: .exe: MD5 Hash: ...
process: lfp.exe: MD5 Hash: ...
process: rnudll32.exe: MD5 Hash: ...
process: shellscrap.exe: MD5 Hash: ...
process: sysdll32.exe: MD5 Hash: ...
process: sysexecr.exe: MD5 Hash: ...
process: sysexplr.exe: MD5 Hash: ...
process: sysrun32.exe: MD5 Hash: ...
process: system32.exe: MD5 Hash: ...
process: winabc.exe: MD5 Hash: ...
process: system32.exe: MD5 Hash: ...
process: sysexecr.exe: MD5 Hash: ...
process: shellscrap.exe: MD5 Hash: ...
process: sysexplr.exe: MD5 Hash: ...
process: sysrun32.exe: MD5 Hash: ...
process: winabc.exe: MD5 Hash: ...
process: rnudll32.exe: MD5 Hash: ...
process: lfp.exe: MD5 Hash: ...
process: sysdll32.exe: MD5 Hash: .. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 294 visits
NetBus v.1.70 - 209 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 49 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
Devil - Alias: Backdoor.Devil.13, Trojan.Win32.Flood.a, Trojan.Win32.Flood.b, Trojan.Win32.Flood.c, Trojan.Win32.Fl
Intruzzo - Alias: Backdoor.Intruzzo, Backdoor.Intruzzo.b, Backdoor.Intruzzo.d, Intruder
Back Orafice Facil
ProRAT - Alias: Backdoor.Prorat.10.a, Backdoor.Prorat.10.c, ProHack.Net Remote Administration Tool
Alternative Internet RAT - Alias: AIR
Xueji - Alias: Backdoor.VB.ez
Lanbyte
Telserver
Netboy - Alias: Backdoor.Netboy.10, W32/Bebars.worm, Netboy 1.0
XtraAccess
|
|