|
|
DonaldDic RAT Information
| Name: |
DonaldDic |
| Category: |
RAT |
| Alias: |
- Alias: Backdoor.VB.fq |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: ddc15a.exe: MD5 Hash: f8c46a70726421f04c7...
process: ddsl15a.exe: MD5 Hash: 652d1a68acf9d3b5336...
process: multiple156.exe: MD5 Hash: e4c7eccc17e30e88c1b...
process: ddc152.exe: MD5 Hash: fd6032b1b8126e1e76f...
process: ddcg152.exe: MD5 Hash: 3939816e371d251e3b7...
process: ddc153.exe: MD5 Hash: 4a37b7ef449035aa02b...
process: ddcg153.exe: MD5 Hash: b96e3a4c1c15cc89a27...
process: ddcg153.exe: MD5 Hash: 76e42b5c94d7d5d7509...
process: ddcg153.exe: MD5 Hash: cac6e23c929c0bac539...
process: ddcw.exe: MD5 Hash: 4d86e96a0056ba68273...
process: dds153.exe: MD5 Hash: 8dbd2d1bbec14c8f04b...
process: ddsetup.exe: MD5 Hash: 5d0b927d586a968e301...
process: mytrojansrc.exe: MD5 Hash: e1860bdf17e74b672a1...
process: client.exe: MD5 Hash: bcad168685faba1a30e...
process: ddsetup.exe: MD5 Hash: 507c00136481a6c3c4d...
process: install.exe: MD5 Hash: ec549801f1a7cd66299...
process: msaver.exe: MD5 Hash: 9c0b08b37e0b42cf7ba...
process: mssupd.exe: MD5 Hash: 0580366f3393ee90cca...
process: recover.exe: MD5 Hash: 72ef9696364a69b0d33...
process: client.exe: MD5 Hash: aea56fb6461663244d4...
process: ddick.exe: MD5 Hash: d8590faa87ea04e7370...
process: ddick.exe: MD5 Hash: 874d3d8ff8a6ed493b9...
process: ddick.exe: MD5 Hash: 0174176defde93a5607...
process: ddsetup.exe: MD5 Hash: ffd28b7c3ff4e8c99ab...
process: ddsfind.exe: MD5 Hash: 2e6e50f790863dbf116...
process: oleproc.exe: MD5 Hash: ...
process: otl32.exe: MD5 Hash: ...
process: oleproc.exe: MD5 Hash: ...
process: random.exe: MD5 Hash: e1860bdf17e74b672a1.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 295 visits
NetBus v.1.70 - 210 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 49 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
Sanctuary - Alias: BackDoor-KC, Backdoor.Sanctuary
The Bug
DonaldDic - Alias: Backdoor.DonaldDick.135, Backdoor.DonaldDick.15, Backdoor.DonaldDick.152, DonaldDick, Trojan.PSW.EPS
Oblivion - Alias: 01 BackDoor
BrainSpy - Alias: Backdoor.BrainSpy
Ambush 1.0 - Alias: BackDoor-FO, Backdoor.Ambush
Eagle Boy - Alias: Backdoor.VB.gg, TrojanDropper.Win32.FC.a
Net Taxi - Alias: Backdoor.NetTaxi.18
AcidBattery
SSPPYY - Alias: Backdoor.VB.fq
|
|