|
|
Gift RAT Information
| Name: |
Gift |
| Category: |
RAT |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: client.exe: MD5 Hash: 95fb6a55aa4161eebfc...
process: server.exe: MD5 Hash: 1fa6fb13210f9749b26...
process: client.exe: MD5 Hash: 0a6f0577265d85b5114...
process: server.exe: MD5 Hash: 08a3bf159f085ca8f37...
process: client.exe: MD5 Hash: 52c0de661581e72fcc5...
process: editserver.exe: MD5 Hash: cbbdcdff77530cf1358...
process: server.exe: MD5 Hash: 0a062b9cb031f256142...
process: client.exe: MD5 Hash: 223908af4492e3e3555...
process: editserver.exe: MD5 Hash: 10c337575838b07d84d...
process: server.exe: MD5 Hash: c8d95af961797939ca0...
process: client.exe: MD5 Hash: 303b26a2c508e82a206...
process: client.exe: MD5 Hash: 4e519b94df6ecb8a004...
process: logger.exe: MD5 Hash: c884c2a7f51e9cceb11...
process: mouseplugin.exe: MD5 Hash: 0f02dc6cb46622df53f...
process: passwords.exe: MD5 Hash: 7c0417fc8d41f0f03dc...
process: server.exe: MD5 Hash: b6f11e38811bbc98391...
process: client.exe: MD5 Hash: 713a8e6523e7a31ca82...
process: editserver.exe: MD5 Hash: 4ae7186defe394e1df1...
process: icochanger.exe: MD5 Hash: 4a53fc76ab647dc846f...
process: server.exe: MD5 Hash: 99c943f0a1a1891d819...
process: editserver.exe: MD5 Hash: e83c41cff58af212499...
process: giftclient.exe: MD5 Hash: f2d95938ebc9bc7139d...
process: giftclient.exe: MD5 Hash: 7deb7e57c59507a5762...
process: server.exe: MD5 Hash: 95172a72b66dcdf8547.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 294 visits
NetBus v.1.70 - 209 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 49 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
Der Spaeher PhilippP
Evilsocks - Alias: Backdoor.Evilsock
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B
NetTrash - Alias: Backdoor.NetTrash.10.a, Backdoor.NetTrash.10.b, Backdoor.NetTrash.10.e, Backdoor.NetTrash.101
Starcross - Alias: Backdoor.Starcross.10, Trojan.BAT.FormatC
GLSSpy - Alias: Backdoor.Delf.hc, GLSSpy
Scorpina - Alias: BackDoor-HS, Backdoor.NetTrash.10
Vampire1.2
Sensive - Alias: Backdoor.Sensive.37.b
Whomp Downloader
|
|