Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware: About SpywareGlossary Latest Detections Fake Scanner Sites Google Search Redirects Bestclicksnow.com Bestwebsearch.com Cliccker.cn Clickover.cn Couponmountain.com Lowpriceshopper.com Mycustomsearch.cn Overclick.cn Shopica.com Shopzilla.com trafficposter.com Toseeka.com Update-browser.com Windowsclick.com Zetaclicks4.com Zoombli.com ![]() |
RAT/A-311 DeathAlias: Backdoor.Haxdoor for pdx32.sys, A-311 Death
Description: This RAT was created in Russia, in August 2003. The programming language is MASM. The author is Corpse. This trojan belongs to a big spyware program family. It can infect Windows operating system. The main purpose of this program is controlling user's computer remotely. That way valuable information such as passwords, bank accounts etc can be lost. The attacker infects the system through the e-mail or the File and Print Sharing, by installing a "server" on victim's computer. It allows the intruder to monitor the activity of the user and control all vital processes. Threat type: RAT - Remote Administration Tool (RAT) is a software application which provides an attacker with the capability to control your computer system remotely whenever you are online. The attacker can perform operations such as programs and/or files adding/deleting, files transfers, capturing screenshot, etc. Attacker may use captured computer for different personal needs such as to send malicious attacks. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer and / or to protect your privacy. Detection: SpyNoMore removes RAT/A-311 Death: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: Running Process Signatures: N/A File Signatures: %WINDOWS%\system\pdx32.sys %WINDOWS%\system\cfgh.ini %WINDOWS%\system\pdx.dll %WINDOWS%\system\snowx.ini Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: N/A Registry Signatures: N/A SpyNoMore Collected Residual File Signatures: N/A
|
|
||||