Home Malware Programs Remote Administration Tools ItAdEm

ItAdEm

Posted: March 28, 2006

This is a Remote Administration Tool that is used by hackers to control the victim's machine remotely. The possibilities of such application depend on the needs of the attacker. Usually, the attacker infects the PC via the e-mail or File and Print Sharing. A "server" allows him to connect via a "client" on his own machine. This RAT requires no client software. The attacker can connect using any browser application. It was created in November 2002. The applicationming language is Visual Basic. The author of this pest is a hacker called Itadem.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 itadem.exe
    2 readme.txt
    3 server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentversionunitadem
Loading...