|
|
RTB 666 RAT Information
| Name: |
RTB 666 |
| Category: |
RAT |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: client.exe: MD5 Hash: daa20713f079fc3e656...
process: mstasks.exe: MD5 Hash: fcfa2dcc7bab2a3fff9...
process: shellapi.exe: MD5 Hash: b2f095f0dd28de1a938...
process: client.exe: MD5 Hash: 1f2fe876883b5d6f021...
process: client.exe: MD5 Hash: e20d536b480e62114b4...
process: systray.exe: MD5 Hash: a27065f1d11b516f08f...
process: client.exe: MD5 Hash: 55780eb96ee601880a7...
process: systray.exe: MD5 Hash: 8cbfdb27594cc8d244f...
process: ruler141.exe: MD5 Hash: 65f2ab975cd5a126416...
process: serv141.exe: MD5 Hash: 42e9239fa9224369d70...
process: client.exe: MD5 Hash: 6d2b32feb3daf0f7286...
process: systray.exe: MD5 Hash: 55e74840d3e1894a18b...
process: client.exe: MD5 Hash: e2135b23f890bdf3b8e...
process: client.exe: MD5 Hash: e482ffd924b6ec3c92f...
process: systray.exe: MD5 Hash: bc4f6143fe7988b2572...
process: systray.exe: MD5 Hash: 178a41f6ed57217965b...
process: systray.exe: MD5 Hash: e9f3eaaceb8945d5edf...
process: client.exe: MD5 Hash: c7dc180f93450d5d881...
process: konfig163.exe: MD5 Hash: fc8e0bd97c9e0c0c213...
process: systray.exe: MD5 Hash: 778858187b510b5ae8e...
process: konfig163.exe: MD5 Hash: 0a715bac2f12d92fa5f...
process: systray.exe: MD5 Hash: 49ba1a7916d6c5d6bcd...
process: client.exe: MD5 Hash: dd855ff646ea6819612...
process: konfig165a.exe: MD5 Hash: da8676d2036d781aad0...
process: systray.exe: MD5 Hash: 5e0f125b5b8709d9b62.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 293 visits
NetBus v.1.70 - 208 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 48 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
The Torment Remote
Direct Connection - Alias: Backdoor.DirectConnection, Backdoor.DirectConnection.103
Deftcode - Alias: Backdoor.Deftcode, Deftcode 1.0
Avone
Changing Bytes
TransScout - Alias: Backdoor.TScout.11, Backdoor.TScout.12, Transmission Scout, TransmissionScout, TransScout
Messiah - Alias: Backdoor.Messah.10
Sub-Mariner - Alias: BackDoor-UX trojan, Backdoor.SubMariner
SniperNet - Alias: BD Sniper
Muska
|
|