Home Articles Spyware Research Support Scan Now Purchase F.A.Q.

RAT/Momaker

Alias: Backdoor.Momaker, Momaker

Description: This program was designed for illegal controlling of other people's computers. The hacker infects the victim's machine via the e-mail or File and Print Sharing with a "server" program. He can later access the infected machine via a "client". This pest was written in Czech Republic. The program was created using Delphi programming language. The date of origination is March 2005.

Threat type:

RAT - Remote Administration Tool (RAT) is a software application which provides an attacker with the capability to control your computer system remotely whenever you are online. The attacker can perform operations such as programs and/or files adding/deleting, files transfers, capturing screenshot, etc. Attacker may use captured computer for different personal needs such as to send malicious attacks.


Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy.

Detection:
SpyNoMore detects RAT/Momaker: Yes

Threat risk: High Risk
SpyNoMore AntiSpyware: Remove Momaker (Momaker), Momaker (Momaker) Remover
Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans.

Symptoms:

RAT/Momaker Signature Details: The following information includes some of the standard signatures associated with this spyware threat. Please do not attempt to manually remove these items from your computer; Removing these items incorrectly or partially can cause your computer to experience critical errors, prevent your computer from restarting or cause loss of Internet connectivity. Should you be infected with RAT/Momaker, you can clean your computer by downloading SpyNoMore now.

Running Process Signatures:
N/A

File Signatures:
%WINDOWS%\system\kbdplug.dll
%WINDOWS%\system\icd.exe
%WINDOWS%\system\nzrue32.exe

Registered Dll (Dynamic Link Library) Signatures:
N/A

Folder Signatures:
N/A

Registry Signatures:
N/A

SpyNoMore Collected Residual File Signatures:
N/A


See Also:
RAT/Minicom 3.6.5
RAT/Minicom 3.6.8.1
RAT/Minicom (CS-Jami)
RAT/MiniuII 1.1
RAT/M-LD
RAT/Mona
RAT/Mona 1.0
RAT/Mona 3.2
RAT/Mona 3.5
RAT/MoSucker 1.0

Spyware Removal Home | Support | F.A.Q. | Contact Us | Spyware Removal Database | Privacy Policy | Site Map
Copyright © 2005-2008 Illysoft LLC