|
|
Mosucker RAT Information
| Name: |
Mosucker |
| Category: |
RAT |
| Alias: |
- Alias: BackDoor-SS trojan, Backdoor.LittleWitch.40, Backdoor.LittleWitch.40.b, Backdoor.LittleWitch.530, Ba |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: mosucker.exe: MD5 Hash: b80940d5f2c3a9a40e0...
process: server.exe: MD5 Hash: 5607bee6702e80cd538...
process: editserver.exe: MD5 Hash: 978fc8a1f3a15cdfcda...
process: mosucker.exe: MD5 Hash: 3a9835d6628a185a271...
process: server.exe: MD5 Hash: a8bc1eef4610296207c...
process: server.exe: MD5 Hash: 54c7b78187611b58e10...
process: editserver 2.0.exe: MD5 Hash: d51bfbc3b60ebb0f5e6...
process: mosucker 2.0.exe: MD5 Hash: cb5b0d650f2f67d52cf...
process: server.exe: MD5 Hash: dbb02772b8f4f31ceb5...
process: editserver.exe: MD5 Hash: 1ac17b2a9c45725f2d9...
process: mosucker.exe: MD5 Hash: 5b35c07e6da594982eb...
process: server.exe: MD5 Hash: 55dc30de306dc12189a...
process: server.exe: MD5 Hash: e6c218e93b0ae14e80c...
process: skinmaker.exe: MD5 Hash: 2b483a3b8a8234964e3...
process: mosucker.exe: MD5 Hash: 4308efb13db7c5d85aa...
process: editserver.exe: MD5 Hash: 2359704a5cbc669359c...
process: mosucker.exe: MD5 Hash: 83fa70c7d910457f500...
process: server.exe: MD5 Hash: 3695f715770973e3f24...
process: createserver.exe: MD5 Hash: 49db5a1abd2da7940e9...
process: mosucker.exe: MD5 Hash: 2dc2df118a8fe681019...
process: server.exe: MD5 Hash: b5f625c4c323fc9f555...
process: server.exe: MD5 Hash: ff48fe29a70158f8976...
process: server1.exe: MD5 Hash: 707978444c89c356780...
process: server2.exe: MD5 Hash: 458268b4983cb8a67bf...
process: server3.exe: MD5 Hash: b0dcad1c8d3d014d60e...
process: server4.exe: MD5 Hash: e6484fd67bd777d7138...
process: server5.exe: MD5 Hash: d66634ad629949686c7...
process: createserver.exe: MD5 Hash: 0533a0a992647016b38...
process: mosucker.exe: MD5 Hash: c86ca87b278812b8f26...
process: createserver.exe: MD5 Hash: d7c2b04f2b6c1af5bc7...
process: mosucker.exe: MD5 Hash: 8fbe3c4e047e40feee2...
process: mosucker.exe: MD5 Hash: b819867997f4b801251...
process: server.exe: MD5 Hash: 0722f9739f32207529c...
process: jthh.exe: MD5 Hash: ...
process: msnetcfg.exe: MD5 Hash: ...
process: svr.exe: MD5 Hash: ...
process: pkg310.exe: MD5 Hash: ...
process: pkg332.exe: MD5 Hash: ...
process: pkg3392.exe: MD5 Hash: ...
process: unin0686.exe: MD5 Hash: ...
process: vvuijoe.exe: MD5 Hash: ...
process: svr.exe: MD5 Hash: .. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 295 visits
NetBus v.1.70 - 210 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 49 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
The Torment Remote
Meet the Lamer - Alias: BackDoor-ABO, Backdoor.MeetTheLamer, Meet the Lamer 1.0
Khe Sanh - Alias: Backdoor.KheSanh.120, Backdoor.KheSanh.20
RFM
Russian File Send Robot
Infinaeon - Alias: Backdoor.Infinaeon.10
Kenny - Alias: BackDoor-PZ, Backdoor.Kenny, Backdoor.Kenny, Kennys Skull
BackWindows
Schaden - Alias: Backdoor.Shaden.a
Little Witch - Alias: BackDoor-SS trojan, Backdoor.LittleWitch.40, Backdoor.LittleWitch.40.b, Backdoor.LittleWitch.530, Ba
|
|