bypass some antivirus programs and firewalls. It has a "flooder"
ability, allowing it to jam the connection by fast continuous pinging.
This pest is written in Visual Basic and compressed with PECrypt. The
server part is compressed with UPX. The author of this pest is a
Brazilian hacker called DoOmTrAiN_KiLLerZ. Several versions (Gates of
Hell 1.2, Gates of Hell 1.4, Gates of Hell 1.8, Gates of Hell 2.1)
appeared from October 2002 to December 2002. As the number of the
version grows, so does the amount of functions and the damage, that can
be done by this program. The infection peaked in such countries as
the United States, Netherlands, Russian Federation and South Korea.
From the publisher:
"1.4: From the doc: 'Welcome to the Gates Of Hell 1.4, which is a 100%
Msn Instant Messenger Controlled Trojin virus, which is not detected by
any antivirus such as Norton Antivirus, or PC-Cillin, also not detected
by any firewall software such as Norton Personal Firewall , or
ZoneAlarm PRO. For this reason it makes Gates Of Hell 1.4 a very
powerful and destructive program, No ports are used, No Winsock
connections, works on text recieved functons. Gates Of Hell 1.4 is 100%
Controlled via The Client, No Msn Text Sending is necessary as well as
recieveing text due to specific option chosen as was the case in Gates
Of Hell 1.2, new to 1.4 the victim will not recieve any blank messages
as was the case in 1.2, This meaning greater effectiveness and more
stability. Aswell as around 50 to 60 New Features is pumped with
Well, this new version of gatehell is NOT compatible with the oldest
versions (1.8), Alot of bugs was corrected (thanks for bug reports) and
more options implemented. The interface is almost the same and the
default options too (default port.. etc). For likes the outhers known
program for RA (Remote Administration), the gatehell is divided in 2
THE CLIENT PART - Use this for operate the server in a remote computer,
givin' you more control than the self person in the another side...
THE SERVER PART- after installed will open their ports , and wait for
The server support MULTI CONNECTIONS now! If you wanna connect for
yourself (for test) , run the server (Server.exe - default name) and
127.0.0.1 (IP) or Localhost (Host) into IP box in the client, and press
connect.The Server is invisible to the Task List (CTRL+ALT+DEL) When the server
is executed, he self-installs, and will be initialized every time
windows start (you are able to customthe method by editting the server
before sendin' to remote PC).
DevilBinho" Gates of Hell properties:
• Allows remote user connection
• Hides from the user
• Stays resident in background
Gates of Hell manual removal
anigif crack.exe, gatehell.exe, gatehell21.exe, gates, of, hell, 1.2, client.exe, gates, of, hell, 1.4, client.exe, readme.exe, run32dll.exe, server.exe, server21.exe, [system, root]\\system\\winunistall.exe
anigif crack.exe, english.txt, gatehell.exe, gatehell.hlp, gatehell21.exe, gates of hell 1.2, client.exe, gates of hell 1.4, client.exe, gates of hell 1.4, readme.txt, portuguese.txt, readme.exe, run32dll.exe, server.exe, server21.exe, [system root]\\system\\winunistall.exe, [system root]\\systemio.dll
Geolocation of Gates of Hell
Comments on Gates of Hell
Post a comment
Attention: Use this form only if you have additional information about a parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.