|
|
Gaban Bus RAT Information
| Name: |
Gaban Bus |
| Category: |
RAT |
| Alias: |
- Alias: Backdoor.Delf.ee |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: -1023838180.exe: MD5 Hash: e5686f919dffe3820ca...
process: gabanbus.exe: MD5 Hash: ce2467d305fccbb152c...
process: config.exe: MD5 Hash: bbf45cbaea734364929...
process: config.exe: MD5 Hash: 791b16cfeed327c6bf1...
process: gip110doc.exe: MD5 Hash: 5eeff55d50900d6cd57...
process: gip110exe.exe: MD5 Hash: 0f9d683ab1c92b89d00...
process: gip110jpg.exe: MD5 Hash: 3826c263c8a56fe2ffa...
process: gip110jpg.exe: MD5 Hash: 03459145e90f0c7ab33...
process: gip110zip.exe: MD5 Hash: 7ac4710ddebc4c14e50...
process: gip110zip.exe: MD5 Hash: ca1a9059a4d3b70d7b3...
process: gip112srv.exe: MD5 Hash: 2e6d11cb9afd8f00606...
process: config.exe: MD5 Hash: 2fb423d119fa754739b...
process: gip113doc.exe: MD5 Hash: 3499456740b98e5fbe1...
process: gip113jpg.exe: MD5 Hash: 102613037747b1e2782...
process: gipwizard.exe: MD5 Hash: e26090b5f528497564b...
process: bitte lesen!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.exe: MD5 Hash: 1c2d9282b96cc45f2f6...
process: config.exe: MD5 Hash: 768209a23de8c03d481...
process: gip-windows.exe: MD5 Hash: 403cf4070fa33311a3a...
process: gip113jpg.exe: MD5 Hash: 3793f94d9cc35425c2b...
process: gipwizard.exe: MD5 Hash: f1f3f1bd62e79d48615...
process: pervers2.jpg .exe: MD5 Hash: 0f490c0c88aebbef2d2...
process: pervers2.jpg.exe: MD5 Hash: 88477562c9360e0d192...
process: sig1rus.exe: MD5 Hash: 57227b090bc2a1b36e6...
process: tloader3-joke.exe: MD5 Hash: 16b88fcfee162c85fb0...
process: welcomes.exe: MD5 Hash: 4d129e7f866e5b9d552.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 292 visits
NetBus v.1.70 - 207 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 54 visits
Systray BackDoor - 52 visits
AutoSpY - Alias: Backdoor.AutoSpy - 47 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 46 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 41 visits
Netbus - Alias: Backdoor.Netbus - 41 visits
Random RAT Pages:
Titanic - Alias: Trojan.Win32.Titanic
Acid Trojan Horse - Alias: Backdoor.Acidoor.11
Force - Alias: Backdoor.Feardoor.15.a, Backdoor.Feardoor.15.b, Backdoor.Feardoor.15.c, Backdoor.Feardoor.161
Back Orafice Script
Gates of Hell - Alias: Backdoor.GateHell.12, Backdoor.GateHell.14, Backdoor.Goh.12
NeoControlRed-4.1.4
Hallo - Alias: Backdoor.Hallodoor
VC - Alias: BackDoor-HC
Hackarmy - Alias: g BackDoor
Earth quake - Alias: Backdoor.Delf.ee
|
|