|
|
Shang RAT Information
| Name: |
Shang |
| Category: |
RAT |
| Alias: |
- Alias: BackDoor-GI, Backdoor.Mard |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: client.exe: MD5 Hash: b7ff782cf856d851125...
process: hecmos.exe: MD5 Hash: 70f3fb1f9ef113a19a2...
process: server.exe: MD5 Hash: 97c48adb95e11ff35c1...
process: view.exe: MD5 Hash: 5d142faa9e7021842d9.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 292 visits
NetBus v.1.70 - 207 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 54 visits
Systray BackDoor - 52 visits
AutoSpY - Alias: Backdoor.AutoSpy - 47 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 46 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 41 visits
Netbus - Alias: Backdoor.Netbus - 41 visits
Random RAT Pages:
Freddy K - Alias: Backdoor.Freddy.02.a, Backdoor.Freddy.02.b, Backdoor.Freddy.03, TrojanDropper.Win32.joiner.r
PcShare - Alias: Backdoor.PcClient, HackTool.Win32.PcShare.20
ItADeM - Alias: Backdoor.Nimoo, Backdoor.VB.cs, Backdoor.VB.cw, Backdoor.VB.cw
Port Redirect - Alias: Port Redirect 1.00
Remote Home
Fuck Lamers Backdoor - Alias: Backdoor.Fulamer.20, F__k Lamers BackDoor
Lohoboyshik - Alias: Backdoor.Lohoboyshik.10, Lohoboyshik
RExServer
Avone
Mard - Alias: BackDoor-GI, Backdoor.Mard
|
|