Home Malware Programs Remote Administration Tools Digital Hand

Digital Hand

Posted: March 28, 2006

This is a Remote Administration Tool, that is used by hackers to control the victim's machine remotely. The possibilities of such application depend on the needs of the attacker. The attacker infects the PC via the e-mail or File and Print Sharing. A "server" allows him to connect via a "client" on his own machine. The functions of a RAT may vary, depending on the needs of the hacker. Some RATs can't really harm your PC and the only purpose they were made for is hooliganism. But some versions can steal vital information, remove files and even crash your computer. This RAT can be used as an FTP server. The hacker can download any file from the infected machine, he can also upload files to that PC. The author of this pest is a Russian hacker called CyberPauk. The application is compressed with PECrypt. Several variants appeared from May 2002 to February 2005.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 commands.txt
    2 dh client.exe
    3 readme.txt
    4 rundosapp.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionundosapp.exeunservices
Loading...