|
|
WMFA RAT Information
| Name: |
WMFA |
| Category: |
RAT |
| Alias: |
- Alias: BackDoor-QM, Backdoor.SkyRat.10 |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: wmfaclient.exe: MD5 Hash: 4c62eb95b3e6bad7abf...
process: wmfaconnc.exe: MD5 Hash: 9b8e698a01c4768b342...
process: wmfain.exe: MD5 Hash: de4a53fb98e3bd649d5...
process: wmfains.exe: MD5 Hash: 6f0c1a414076b37be59...
process: wmfainst.exe: MD5 Hash: e2e62bbd75a94905152...
process: wmfaunst.exe: MD5 Hash: 9cb9dd212ca66f22e8f.. |
| Type: |
RAT - A Remote Administration Tool (RAT) is a Trojan type of software that when run, provides an attacker with the capability of remotely controlling a user's computer (victim) over the Internet. The attacker usually has full access to functions on the victim's computer. The victim's computer usually listens on the Internet for the attacker's commands. |
Top RAT Visited Pages:
SubSeven - Alias: BackDoor-G22, BackDoor-Sub7 - 295 visits
NetBus v.1.70 - 210 visits
The Prayer - Alias: BackDoor-DI, Backdoor.Prayer.15 - 75 visits
Cyrex msn trojan - Alias: BackDoor-AOB, Backdoor.VB.dm, Backdoor.VB.dm, Cyrex msn trojan, W32/Delf.B - 69 visits
Global Killer - Alias: Backdoor.GlobalKiller 1.0, Global Killer 1.0 - 55 visits
Systray BackDoor - 53 visits
AutoSpY - Alias: Backdoor.AutoSpy - 49 visits
Secret Agent - Alias: Backdoor.Antinuke.10, Secret Agent 1.0 - 47 visits
Undetected - Alias: Backdoor.tds.4f, Backdoor.tds.se.23, Backdoor.tds.se.23a, Backdoor.tds.se.30, Backdoor.TDS.SE.31, Ba - 42 visits
Netbus - Alias: Backdoor.Netbus - 42 visits
Random RAT Pages:
DTr - Alias: BackDoor-WF, Backdoor.DTR.10.a
MarsPC
Ramus - Alias: Backdoor.Ramus
Remote Revise - Alias: Backdoor.Revise.16, Backdoor.Revise.17, Backdoor.Revise.171, Revise 1.7
Troyano De Malpayo
Fictional Daemon
Spysender - Alias: Backdoor.SpySender.b
Telserver
Fake 0.2 - Alias: Backdoor.Fakemanga, Backdoor.Fakemanga
SkyRat - Alias: BackDoor-QM, Backdoor.SkyRat.10
|
|