Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware:
Glossary Latest Detections ![]() |
RAT/DuckToyAlias: Backdoor.DuckToy.14, DuckToy
Description: DuckToy is a big RAT virus family. Several versions appeared from March 2002 to December 2002. The author is a hacker called Gumi. The origination place is Spain. The virus is vritten is Delphi programming language. The attacker infects the machine with a "server" program can control it, using a "client" on his computer. Once embedded, the virus opens a default port 29559 and 59211 and awaits hacker commands. This pest affects Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT and Windows XP operating systems. DOS, Linux, Macintosh, OS/2, UNIX and Windows 3.x are immune to this pest. Threat type: RAT - Remote Administration Tool (RAT) is a software application which provides an attacker with the capability to control your computer system remotely whenever you are online. The attacker can perform operations such as programs and/or files adding/deleting, files transfers, capturing screenshot, etc. Attacker may use captured computer for different personal needs such as to send malicious attacks. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy. Detection: SpyNoMore detects RAT/DuckToy: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: Running Process Signatures: N/A File Signatures: %WINDOWS%\explorer .exe Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: N/A Registry Signatures: N/A SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||