Home Malware Programs Remote Administration Tools DNS 0.1

DNS 0.1

Posted: March 28, 2006

A small RAT application, designed for hooliganistic attacks on unprotected users. The hacker infects the machine via the e-mail or File and Print Sharing with a so called "server" application. He can later access the infected machine via a "client". This RAT can restart PC, turn on/off the monitor, open/close CD-rom etc. No real harm can be done, but the virus is quite annoying. The place of origin is Russia. It was created by the DNS GROUP. The origination date is January 2002.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 [system
    2 client for dns troyan.exe
    3 dns32.dll.exe
    4 dns32.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionunservicesdns32.dll.exe
Loading...