Home Malware Programs Remote Administration Tools Paszczus

Paszczus

Posted: March 28, 2006

This is a Remote Administration Tool that is used by hackers to control the victim's machine remotely. The possibilities of such applications depend on the needs of the attacker. The attacker infects the PC via the e-mail or File and Print Sharing. A "server" allows him to connect via a "client" on his own machine. The functions of a RAT may vary, depending on the needs of the hacker. Some RATs can't really harm your PC and the only purpose they were made for is hooliganism. But some versions can steal vital information, remove files and even crash your computer. This dangerous RAT tool has the ability to log keystrokes in to a log file and send the collected info to the intruder. Several versions appeared in the internet from September 2003 to March 2004. The author is a Polish hacker called Neo. He wrote this RAT tool in Delphi applicationming language and compressed it with UPX.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 11f0ad00.exe
    2 1cbe14e4.exe
    3 4cb558da.exe
    4 74acd759.exe
    5 9d680fb5.exe
    6 ae387f86.exe
    7 backdoor.pazus.15[2].exe
    8 backdoor.pazus.17.exe
    9 backdoor.pazus.17[2].exe
    10 czytacto!!!!.txt
    11 e1101fcc.exe
    12 game.exe
    13 help.cnt
    14 help.gid
    15 help.hlp
Loading...