DRAT


Name: DRAT
Aliases:
Ports: 48, 50
Files: Drat1.0.zip - 86,705 bytes Drat2.0.zip - 90,396 bytes Drat3.0b.zip - 96,646 bytes Drat_remote_rat_r2.zip - Drat.exe - 75,264 bytes Drat.exe - 89,600 bytes Drat.exe - 96,768 bytes Drat setup util.exe - 60,928 bytes Drat setup util.exe - 65,536 bytes Dratfile_gui.exe - 33,280 bytes Shell32.exe -
Created: Nov 1999
Requires:
Actions: Remote Access
Anytime the user tries to load an .exe or a .bat file, Dratexecutes as well. Itīs the only known trojan depending on a Registry writeto Hkey_Classes_Root only for itīs autoloading.
Versions: 1.0, 2.0, 3.0b,
Registers: HKEY_CLASSES_ROOT\exefile\shell\open\command\
Notes: Works on Windows. Uses Telnet as the client. Very difficult toremove!
Country:
Program:

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>