Home Malware Programs Remote Administration Tools RBackdoor

RBackdoor

Posted: March 28, 2006

This is a Remote Administration Tool that is used by hackers to control the victim's machine remotely. The possibilities of such application depend on the needs of the attacker. The attacker infects the PC via the e-mail or File and Print Sharing. A "server" allows him to connect via a "client" on his own machine. The functions of a RAT may vary, depending on the needs of the hacker. Some RATs can't really harm your PC and the only purpose they were made for is hooliganism. But some versions can steal vital information, remove files and even crash your computer. The author of this pest is a French hacker called RedKod. He wrote it in C++ applicationming language. Several variants appeared from July 2002 to January 2004.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 64d23572.exe
    2 getdata.c
    3 getinfos.c
    4 help.c
    5 mail.c
    6 netbios.c
    7 network.c
    8 password.c
    9 portscan.c
    10 process.c
    11 rbackdoor-patch.exe
    12 rbackdoor.dep
    13 rbackdoor.exe
    14 rbackdoor.h
    15 rbackdoor.ncb
    16 rbackdoor.opt
    17 rbackdoor.txt
    18 readme.txt
    19 rhide.dll
    20 rhidedll.txt
    21 rshell.c
    22 screenshot.c
    23 services.c
    24 setrparam.c
    25 shellcommand.c
    26 sid.c
    27 system.exe
    28 update.c

Related Posts

Loading...