| Name: | DRAT |
| Aliases: | |
| Ports: | 48, 50 |
| Files: | Drat1.0.zip - 86,705 bytes Drat2.0.zip - 90,396 bytes Drat3.0b.zip - 96,646 bytes Drat_remote_rat_r2.zip - Drat.exe - 75,264 bytes Drat.exe - 89,600 bytes Drat.exe - 96,768 bytes Drat setup util.exe - 60,928 bytes Drat setup util.exe - 65,536 bytes Dratfile_gui.exe - 33,280 bytes Shell32.exe - |
| Created: | Nov 1999 |
| Requires: | |
| Actions: | Remote Access |
| Anytime the user tries to load an .exe or a .bat file, Dratexecutes as well. Itīs the only known trojan depending on a Registry writeto Hkey_Classes_Root only for itīs autoloading. | |
| Versions: | 1.0, 2.0, 3.0b, |
| Registers: | HKEY_CLASSES_ROOT\exefile\shell\open\command\ |
| Notes: | Works on Windows. Uses Telnet as the client. Very difficult toremove! |
| Country: | |
| Program: |