Title: Drat

Remove Drat. Removal instructions


 
Severity scale:Drat severity is 57  (57 / 100)
 
A RAT program works by a simple but effective principle: the hacker infects the machine with a "server" program via the e-mail or File and Print Sharing system and can control it, using a "client" on his computer. Originated in September 2001. The functions of a RAT can vary, depending on the needs of the attacker. Variants of this pest appeared in the internet from January 1999 to September 2001. The origination place is Russia. The programming language is Visual C++. It was created by Derat AKA DaRat the Hacker AKA DaRaTTy.

From the publisher:

"DRaT 1.0: from the doc:
As provided the DRaT setup Util is so u can change the encoded Password and UIN. The DRaT_FileGui is so u can use the file transferring options. It must be run on your box and it used port 50. The main DRaT Trojan itself uses Port 48 and to connect to it u use telnet as if u were connecting to a normal server except u use port 48.
There for using the start run options type telnet. When it comes up using Connect -> Remote System enter the IP and change the Port to 48. ThatÆs all u need to do to connect to the DRaT server. If u are running it on your box to play will it will deny loopback ( 127.0.0.1 ) so u will have to use a network IP or add a dial up adapter and assign a IP. This was implemented to make it hard to remove if the user is a lamer. DaRaT"

Drat properties:
• Allows remote user connection
• Hides from the user
• Stays resident in background

Automatic Drat removal:

SpyHunter is recommended remover to uninstall Drat. You should confirm using free trial that it detects current version of parasite.

Note: Manual assistance required means that one or all of removers were unable to remove parasite without some manual intervention, please read manul removal instructions below.

If you failed to remove Drat using SpyHunter please report this to us.

We might be affiliated with any product we recommend on the site. Full disclosure in our Agreement of Use.
STOPzilla
We are testing STOPzilla's efficiency at removing Drat (2005-03-19 08:12:05)
Malwarebytes Anti Malware
We are testing Malwarebytes Anti Malware's efficiency at removing Drat (2005-03-19 08:12:05)
Spyware Doctor
We are testing Spyware Doctor's efficiency at removing Drat (2005-03-19 08:12:05)
XoftSpySE Anti Spyware

Drat manual removal:

Kill processes:
drat setup util.exe, drat.exe, dratfile_gui.exe, [system, root]\\shell32.exe
Delete registry values:
HKEY_CLASSES_ROOT\authident\authident key
Unregister DLLs:
[system root]\\system\\cbj.dll

Delete files:
drat setup util.exe, drat the worlds ultimate virtual spy.doc, drat.exe, drat_comp.header, dratfile_gui.exe, [system root]\\init_asm.bin, [system root]\\shell32.exe, [system root]\\system\\cbj.dll
Information added: 2005-03-19 05:34:50
Information updated: 2005-03-19 05:34:50

Additional resources related to Drat:

Attention: If you know or you have a website or page about Drat removal, feel free to add a link to this list: add url

more resources

Post Comment:

Attention: Use this form only if you have additional information about Drat parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.
Home page Name



«


* All field required
Latest spyware news:
Subscribe to news

Similar parasites:
Related discussions:
Compare spyware removers
Compare free products

HijackThis Log Analyzer Beta 2 HijackThis Log Analyzer Beta 2

I failed to remove Drat using SpyHunter.

Email


Close

Spreading the knowledge:

It is very hard to fight Computer parasites alone in internet space. If you have a website we would be more than happy if you would help us to spread the knowledge about latest threats. You can help your visitors to manage their Computer system manually without aditional expences. Knowledge is the power, we just need to spread it.
add text box
rss feed
help other