Home Malware Programs Backdoors Backdoor.Prorat.T

Backdoor.Prorat.T

Posted: November 8, 2012

Threat Metric

Threat Level: 6/10
Infected PCs: 419
First Seen: November 8, 2012
Last Seen: November 19, 2021
OS(es) Affected: Windows

Aliases

Bck/Prorat.U [Panda]BackDoor.Generic15.BGXL [AVG]W32/Prorat.AI!tr.bdr [Fortinet]BDS/Prorat.U.4 [AntiVir]BackDoor.ProRat.123 [DrWeb]Backdoor.Win32.Prorat.nud [Kaspersky]Win32:Prorat-HK [Trj] [Avast]Backdoor.Trojan [Symantec]W32/Prorat.AI [F-Prot]Bck/Prorat.HT [Panda]BackDoor.Generic14.ARFA [AVG]W32/Prorat.P!tr.bdr [Fortinet]VirTool.Win32.AntiDote [Ikarus]Trojan/Win32.Prorat [AhnLab-V3]Backdoor:Win32/Prorat [Microsoft]
More aliases (86)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\CEH\CEHv10 Tools\CEHv10 Module 07 Malware Threats\Trojans Types\Remote Access Trojans (RAT)\ProRat\ProConnective.exe File name: ProConnective.exe
Size: 257.28 KB (257280 bytes)
MD5: 0891b1d690e577c33036b10c6e273a0c
Detection count: 171
File type: Executable File
Mime Type: unknown/exe
Path: C:\CEH\CEHv10 Tools\CEHv10 Module 07 Malware Threats\Trojans Types\Remote Access Trojans (RAT)\ProRat\ProConnective.exe
Group: Malware file
Last Updated: August 21, 2023
C:\$Recycle.Bin\S-1-5-21-2625979092-542694825-2864866418-1000\$RESU95X.exe File name: $RESU95X.exe
Size: 256.25 KB (256256 bytes)
MD5: e52c348d3bc939ed03c22cd5359792ba
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: C:\$Recycle.Bin\S-1-5-21-2625979092-542694825-2864866418-1000\$RESU95X.exe
Group: Malware file
Last Updated: August 3, 2022
%WINDIR%\SysWOW64\fservice.exe File name: fservice.exe
Size: 2.05 MB (2056748 bytes)
MD5: dc184f0925538c092eda29fb581416a9
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64
Group: Malware file
Last Updated: November 8, 2012
Loading...