Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware:
Glossary Latest Detections ![]() |
RAT/SoftEtherAlias: SoftEther
Description: SoftEther emulates a LAN Card and LAN Hub. Two or more computers with SoftEther installed and connected to the Internet can assemble a Virtual Private Network. One computer with a Global IP Address has to be the virtual hub. The other computer with a SoftEther LAN card installed could connect to the virtual hub. Communication between Virtual Hub and Virtual LAN Card is based on the SoftEther protocol. Connection can be directedr through a Proxy Server, SOCK Server or SSH Server. Even with strict firewall settings, connection can be made as Port usage can be easily changed. Threat type: RAT - Remote Administration Tool (RAT) is a software application which provides an attacker with the capability to control your computer system remotely whenever you are online. The attacker can perform operations such as programs and/or files adding/deleting, files transfers, capturing screenshot, etc. Attacker may use captured computer for different personal needs such as to send malicious attacks. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy. Detection: SpyNoMore detects RAT/SoftEther: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: Running Process Signatures: N/A File Signatures: %DESKTOPDIRECTORY%\softether 穿続マネーヘャ.lnk %WINDOWS%\system32\drivers\softlan.sys %PROFILE%\all users\start menu\softether 穿続マネーヘャ.lnk Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: %COMMON_PROGRAMS%\softether %PROGRAM_FILES%\softether Registry Signatures: HKLM\software\microsoft\windows\currentversion\app paths\softether.exe HKLM\software\microsoft\windows\currentversion\app paths\softsetup.exe HKLM\software\microsoft\windows\currentversion\app paths\softtel.exe HKLM\software\microsoft\windows\currentversion\app paths\softhub.exe HKLM\software\microsoft\windows\currentversion\app paths\softver.exe HKLM\software\microsoft\windows\currentversion\app paths\softmgr.exe SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||