|
|
MoonPie RAT Information
| Name: |
MoonPie |
| Category: |
RAT |
| Alias: |
- Alias: BackDoor-AET trojan |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: moonpie.exe: MD5 Hash: 36ae74a45419fe45ae2...
process: moonpie.exe: MD5 Hash: 0c3023be7d7ad86c21c...
process: server.exe: MD5 Hash: 77b09d3f586258224c6...
process: server.exe: MD5 Hash: a3daf4d32a7cdf538a5...
process: moonpie.exe: MD5 Hash: eb9dec59e10b1cb82c5...
process: server.exe: MD5 Hash: 2f46c776e4dae638421...
process: moonpie.exe: MD5 Hash: c478670c72b33272456...
process: server.exe: MD5 Hash: 08c1b0307efddbaedcd...
process: moonpie.exe: MD5 Hash: a90fcfd4e2bc90efa9c...
process: server.exe: MD5 Hash: 72b87b0d8459e0bbb22...
process: editserver.exe: MD5 Hash: aedf0dec96c5bb10025...
process: moonpie.exe: MD5 Hash: 5b916013c4de2855b5b...
process: msgserver.exe: MD5 Hash: 2c2a0a335f10895d207...
process: server.exe: MD5 Hash: 481c4cead1d10720972...
process: writetag.exe: MD5 Hash: 8f0c479f986d59733be...
process: moonpie.exe: MD5 Hash: 02db1a18e6726da7112...
process: server.exe: MD5 Hash: fca3af45b6e4362e2ec...
process: editserver.exe: MD5 Hash: a9ac388be3878ec07b3...
process: moonpie.exe: MD5 Hash: a7a834b4843ddb97cea...
process: server.exe: MD5 Hash: 3b2254e34dd487d66ac...
process: writetag.exe: MD5 Hash: 99a46b99a13cc377a24...
process: editserver.exe: MD5 Hash: 9c5d8c37b822842512d...
process: moonpie.exe: MD5 Hash: d1ce86a1e51484ebbb9...
process: server.exe: MD5 Hash: a482b1826fd8a180fda...
process: editserver.exe: MD5 Hash: 8f012ec2b4acc86fdb5...
process: editserver.exe: MD5 Hash: eb6375c89eb2666497f...
process: moonpie.exe: MD5 Hash: 1d7acc5a24060f8daf8...
process: moonpie.exe: MD5 Hash: 27b0dd97eaeaf38de4e...
process: msgserver.exe: MD5 Hash: 06a4aabb46fecad9c51...
process: msgserver.exe: MD5 Hash: ebb03008fbdb274f9c8...
process: server.exe: MD5 Hash: 3013378a60377a0a15e...
process: server.exe: MD5 Hash: 5ae300406fa3b7e8481...
process: writetag.exe: MD5 Hash: c241c5e0eda7e9dbd2c...
process: editserver.exe: MD5 Hash: 8721e09d2aae5f33331...
process: moonpie.exe: MD5 Hash: 37fb8b44dc39447b293...
process: msgserver.exe: MD5 Hash: 783640bf84b052570cc...
process: server.exe: MD5 Hash: a016a797c93332c6c14...
process: writetag.exe: MD5 Hash: 1bb787150b32a40a19b...
process: editserver.exe: MD5 Hash: b3fa0dad5e4730e957c...
process: moonpie.exe: MD5 Hash: 445532424307a607eae...
process: msgserver.exe: MD5 Hash: fb0add05daeb74abb17...
process: server.exe: MD5 Hash: 66f5f5c08622f6a7976...
process: writetag.exe: MD5 Hash: 7b81e17fcb7903a3d1b...
process: moonpie.exe: MD5 Hash: 6b0c19fe0903e3e666a...
process: server.exe: MD5 Hash: d1f27570715da5dc702...
process: moonpie.exe: MD5 Hash: a31d0b36b192406a929...
process: server.exe: MD5 Hash: 62a55ff8fc1a899d484...
process: moonpie.exe: MD5 Hash: 69cc455fbc999b9312a...
process: ntserver.exe: MD5 Hash: 7e23c91a26349a11457...
process: server.exe: MD5 Hash: 057bf364c0505896509...
process: moonpie.exe: MD5 Hash: 0c33ef0720b43a9c005...
process: ntserver.exe: MD5 Hash: 8dd83b4b04e8bd474cb...
process: server.exe: MD5 Hash: dceee8efa750f9faffe...
process: moonpie.exe: MD5 Hash: 7bb79a37e29fccb4614...
process: server.exe: MD5 Hash: ae5102eba676fee742e...
process: editserver.exe: MD5 Hash: 89ef168b81c0e19a87a...
process: moonpie.exe: MD5 Hash: ...
process: moonpie.exe: MD5 Hash: 05ddccda50b5728a81b...
process: ntserver.exe: MD5 Hash: 8df4a267b88a2179b7b...
process: server.exe: MD5 Hash: e12e615b9a4c22ab906...
process: server.exe: MD5 Hash: ea834324384e2c4a9e0.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 286 visits
NetBus v.1.70 - 201 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 67 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 54 visits
Systray BackDoor - 52 visits
AutoSpY - Alias: Backdoor.AutoSpy - 47 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 46 visits
Netbus - Alias: Backdoor.Netbus - 41 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 39 visits
Random RAT Pages:
Swift Remote - Alias: Backdoor.Swift.106
ANew Trojan - Alias: Backdoor.Cigivip.15.b
XtraAccess
Regap - Alias: Backdoor-NI, Backdoor.Regap
Destruction Deaths Corner - Alias: Backdoor.VB.ic
Forced Entry - Alias: Backdoor.ForcedEntry, ForCed EnTrY Remote System Administration
Queen - Alias: Backdoor.Qwin.08.a
AudioDoor - Alias: Backdoor.Audiodoor.11
GreenScreen - Alias: Trojan.Spy.GreenScreen.099, Trojan.Spy.GreenScreen.100
Peep - Alias: BackDoor-AET trojan
|
|