Home Malware Programs Remote Administration Tools NetTrash

NetTrash

Posted: March 28, 2006

This is a Remote Administration Tool that is used by hackers to control the victim's machine remotely. The possibilities of such applications depend on the needs of the attacker. The attacker infects the PC via the Microsoft Outlook, IRC and File and Print Sharing. A "server" allows him to connect via a "client" on his own machine. This dangerous pest affects such operating computers as Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT and Windows XP. But users of DOS, Linux, Macintosh, OS/2, UNIX and Windows 3.x are immune to this threat. This RAT spies on user activities by logging keystrokes and gathering other computer information. The author of this pest is a hacker called Marc Benitz. The RAT is written in Visual Basic applicationming language. Several versions of this pest appeared from August 2000 to May 2002.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 frmabout.frm
    2 frmabout.frx
    3 frmchat.frm
    4 frmclient.frm
    5 frmconfig.frm
    6 frmfilemanager.frm
    7 frmfilemanager.frx
    8 frmgetscreen.frm
    9 frmkeyboard.frm
    10 frmlogin.frm
    11 frmpinghost.frm
    12 frmprogress.frm
    13 frmscreen.frm
    14 frmserver.frm
    15 frmsplash.frm
    16 frmsplash.frx
    17 frmtasklist.frm
    18 frmwincolorsettings.frm
    19 modcommondialog.bas
    20 modconfigfile.bas
    21 moddecodedatatosend.bas
    22 modemail.bas
    23 moderrorhandler.bas
    24 modevaluation.bas
    25 modform.bas
    26 modfunctions.bas
    27 modglobalerrorhandler.bas
    28 modicq.bas
    29 modinit.bas
    30 modkeyboardlayouts.bas
    31 modkeylogger.bas
    32 modloglist.bas
    33 modping.bas
    34 modreadwritefile.bas
    35 modregistryfunctions.bas
    36 modsubs.bas
    37 modsystemtray.bas
    38 modwinsock.bas
    39 net trash.exe
    40 nettrash.txt
    41 prjclient.vbp
    42 prjserver.vbp
    43 readme.txt
    44 user32.exe
    45 xsedition.exe
Loading...