Search by name:
You can also search TrojanLibrary.com /.net on your left with Site Search.
Category: R
166 listings in this category.
Updated 05/13/08R-Desktop
Variants: 1.0, 1.1
Port: 1, 2, 3
Size: 607kb
Author: MC
Created: DEC 2001
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Port: 1, 2, 3
Size: 607kb
Author: MC
Created: DEC 2001
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
R-Trojan Scanner
Created: DEC 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
R.A.S.
Aliases: Trojan.Win32.RASFlooder.a
Variants: 1.0a
Port: 62884
Size: 39kb
Author: Digital Underground
Created: DEC 2002
OS: Windows
Location: TBD
Variants: 1.0a
Port: 62884
Size: 39kb
Author: Digital Underground
Created: DEC 2002
OS: Windows
Location: TBD
R:E:M:O:T:E
Aliases: Backdoor.Delf.sp
Port: 80
Size: 241kb
Author: HaTcH
Created: MAY 2002
OS: Windows
Location: TBD
Port: 80
Size: 241kb
Author: HaTcH
Created: MAY 2002
OS: Windows
Location: TBD
R0XR4T
Created: JUL 2002
OS: Windows
Location: HKCR\txtfile\shell\open\command\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
OS: Windows
Location: HKCR\txtfile\shell\open\command\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
RA-Hack
Created: JAN 1997
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RA1D
Aliases: Backdoor.Win32.Raid.a, Backdoor.Win32.Raid.b
Variants: 0.0.1a, 0.0.1b
Port: 5000
Size: 316kb
Author: Digital Vampire
Created: NOV 1996
OS: Windows
Location: TBD
Variants: 0.0.1a, 0.0.1b
Port: 5000
Size: 316kb
Author: Digital Vampire
Created: NOV 1996
OS: Windows
Location: TBD
Rabid.5610
Created: APR 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Racheal.813
Created: FEB 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RAD
Aliases: Backdoor.Win32.Rad
Port: 21183
Size: 112kb
Author: acidpool
Created: AUG 1999
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Port: 21183
Size: 112kb
Author: acidpool
Created: AUG 1999
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Rad00r
Aliases: Backdoor.Win32.Delf.afe
Variants: 2.0
Port: 8192
Size: 32kb
Author: Ct757
Created: JAN 2006
OS: Windows
Location: TBD
Infection: helpsvc.exe, ldr.dll, msp.dll, ntr.sys
Variants: 2.0
Port: 8192
Size: 32kb
Author: Ct757
Created: JAN 2006
OS: Windows
Location: TBD
Infection: helpsvc.exe, ldr.dll, msp.dll, ntr.sys
Rada-Tat-RAT
Aliases: Backdoor.Win32.VB
Variants: 1.0
Port: 4141
Size: 57kb
Author: Hx2nW
Created: SEP 2001
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run
Infection: radatatRAT.exe, MSRADA.exe
Variants: 1.0
Port: 4141
Size: 57kb
Author: Hx2nW
Created: SEP 2001
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run
Infection: radatatRAT.exe, MSRADA.exe
Radar
Aliases: Trojan-Spy.Win32.Delf.af
Variants: 1.0
Size: 16kb
Author: Prince Ali
Created: DEC 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: nwc.exe
Variants: 1.0
Size: 16kb
Author: Prince Ali
Created: DEC 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: nwc.exe
Radix
Aliases: Backdoor.Radix
Port: 777
Size: 10kb
Created: JAN 1998
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: tiny2002.exe
Port: 777
Size: 10kb
Created: JAN 1998
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: tiny2002.exe
RadLight 3 Pro
Created: APR 2002
OS: Windows
Location: HKCR\RadLightFile\
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\RadLight\
HKLM\SOFTWARE\Classes\RadLightFile\
HKLM\SOFTWARE\Classes\rpkfile\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RadLight_is1\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RadLight\
HKLM\SOFTWARE\RadLight Team\
OS: Windows
Location: HKCR\RadLightFile\
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\RadLight\
HKLM\SOFTWARE\Classes\RadLightFile\
HKLM\SOFTWARE\Classes\rpkfile\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RadLight_is1\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RadLight\
HKLM\SOFTWARE\RadLight Team\
Radmin
Port: 6319
Size: 176kb
Author: tansuoufo
Created: FEB 2004
OS: Windows
Location: HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\
HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\{31345649-0000-0010-8000-00AA00389B71}\
HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\{A2551F60-705F-11CF-A424-00AA003735BE}\
HKEY_CURRENT_USER\Software\Microsoft\Multimedia\ActiveMovie\
HKEY_CURRENT_USER\Software\Microsoft\Multimedia\ActiveMovie\Filter Cache\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\0000\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\0000\Control\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\Enum\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\Security\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\0000\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\0000\Control\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\Enum\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\Security\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\iplist\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\Parameters\
Infection: admdll.dll, r_server.exe, raddrv.dll, readme1.htm, twmm.gif, windowsupdate.exe, zdhxn.htm, zdhxn.mid
Size: 176kb
Author: tansuoufo
Created: FEB 2004
OS: Windows
Location: HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\
HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\{31345649-0000-0010-8000-00AA00389B71}\
HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum\{083863F1-70DE-11D0-BD40-00A0C911CE86}\{A2551F60-705F-11CF-A424-00AA003735BE}\
HKEY_CURRENT_USER\Software\Microsoft\Multimedia\ActiveMovie\
HKEY_CURRENT_USER\Software\Microsoft\Multimedia\ActiveMovie\Filter Cache\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\0000\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_R_SERVER\0000\Control\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\Enum\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\r_server\Security\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\0000\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_R_SERVER\0000\Control\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\Enum\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\r_server\Security\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\iplist\
HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\Parameters\
Infection: admdll.dll, r_server.exe, raddrv.dll, readme1.htm, twmm.gif, windowsupdate.exe, zdhxn.htm, zdhxn.mid
Rage
Aliases: Backdoor.Win32.Ragedoor.10
Variants: 1.0
Port: 1313
Size: 151kb
Created: TBD
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: sys32.exe
Variants: 1.0
Port: 1313
Size: 151kb
Created: TBD
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: sys32.exe
Rainb0w
Aliases: Backdoor.Win32.VB.aba
Port: 6996
Size: 32kb
Author: Guerrer0
Created: JUL 2005
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\WinRAR SFX\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: server.exe
Port: 6996
Size: 32kb
Author: Guerrer0
Created: JUL 2005
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\WinRAR SFX\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: server.exe
RAM Eater
Created: SEP 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RamBooster
Aliases: Backdoor.Win32.BoomRaster.a
Variants: (a)
Port: 1052, 4321, 5555
Size: 9kb
Created: SEP 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: rb.exe
Variants: (a)
Port: 1052, 4321, 5555
Size: 9kb
Created: SEP 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: rb.exe
Ramirez
Aliases: Backdoor.Win32.Ramzdor.10, Backdoor.Win32.Ramzdor.11, Backdoor.Win32.Ramzdor.20
Variants: 1.0, 1.1, 2.0
Port: 1988, 2323, 3232
Size: 814kb
Author: Black Ice TEAM
Created: APR 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Variants: 1.0, 1.1, 2.0
Port: 1988, 2323, 3232
Size: 814kb
Author: Black Ice TEAM
Created: APR 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Ramsys
Created: FEB 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ramtha
Aliases: Backdoor.Jord.11
Variants: 1.1
Port: 1357, 1981, 2002, 2222, 2444, 3004, 5790, 6666, 7359
Size: 164kb
Author: Jordan Hackers Club
Created: JAN 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: Windll.exe
Variants: 1.1
Port: 1357, 1981, 2002, 2222, 2444, 3004, 5790, 6666, 7359
Size: 164kb
Author: Jordan Hackers Club
Created: JAN 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: Windll.exe
Ramus
Aliases: Backdoor.Ramus
Port: 1025
Author: moshu
Created: NOV 1999
OS: Windows
Location: TBD
Port: 1025
Author: moshu
Created: NOV 1999
OS: Windows
Location: TBD
Randir
Created: FEB 1996
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Random
Created: MAY 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RAT
Aliases: Backdoor.Rat.10, Backdoor.Rat.11, Backdoor.Rat.20, Backdoor.Rat.21
Variants: 1.0, 1.1, 2.0, 2.1
Port: 2989
Size: 8kb
Created: APR 1999
OS: Windows
Location: - 40 Entries -
Infection: VNETSUP.EXE
Variants: 1.0, 1.1, 2.0, 2.1
Port: 2989
Size: 8kb
Created: APR 1999
OS: Windows
Location: - 40 Entries -
Infection: VNETSUP.EXE
RAT C
Created: APR 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RAT Control Center
Variants: 1.0
Port: 12321
Size: 237kb
Author: st0rmbr1n63r
Created: JUL 2003
OS: Windows
Location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: ratserv.exe
Port: 12321
Size: 237kb
Author: st0rmbr1n63r
Created: JUL 2003
OS: Windows
Location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: ratserv.exe
RAT Cracker
Aliases: Backdoor.Win32.RAT.Cracker.a, Backdoor.Win32.RAT.Cracker.c, Backdoor.Win32.RAT.Cracker.d
Variants: 1.5, 1.5a, 1.6, 2.0
Port: 2140, 3150
Author: ^spynyx^
Created: APR 2000
OS: Windows
Location: TBD
Variants: 1.5, 1.5a, 1.6, 2.0
Port: 2140, 3150
Author: ^spynyx^
Created: APR 2000
OS: Windows
Location: TBD
RAT Crackerz
Created: SEP 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RatHead
Aliases: Backdoor.Win32.Rathead.a, Backdoor.Win32.Rathead.b
Variants: 2.01, 2.1
Size: 48kb
Author: S.Phreek
Created: FEB 2000
OS: Windows
Location: TBD
Variants: 2.01, 2.1
Size: 48kb
Author: S.Phreek
Created: FEB 2000
OS: Windows
Location: TBD
RatPack
Aliases: "R.A.T. Pack", Backdoor.RATPack.10
Size: 76kb
Author: PhilippP aka ^b-ASC-o^
Created: MAR 2000
OS: Windows
Location: TBD
Size: 76kb
Author: PhilippP aka ^b-ASC-o^
Created: MAR 2000
OS: Windows
Location: TBD
Rattler
Created: AUG 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rattler ICQ
Created: OCT 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Raven
Variants: 2.17
Port: 6000, 6060
Size: 757kb
Author: FobiaSoft
Created: JAN 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Port: 6000, 6060
Size: 757kb
Author: FobiaSoft
Created: JAN 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Raw
Aliases: Backdoor.RAW
Variants: 1.0
Port: 9876
Author: sh
Created: JUN 1998
OS: Windows
Location: TBD
Variants: 1.0
Port: 9876
Author: sh
Created: JUN 1998
OS: Windows
Location: TBD
Raza FTP
Port: 6210
Size: 150kb
Author: vlad
Created: AUG 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Size: 150kb
Author: vlad
Created: AUG 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Razor
Aliases: Backdoor.Win32.Delf.aop
Variants: 1.0
Port: 666
Size: 382kb
Author: drkdreams
Created: MAR 1998
OS: Windows
Location: TBD
Variants: 1.0
Port: 666
Size: 382kb
Author: drkdreams
Created: MAR 1998
OS: Windows
Location: TBD
RBackdoor
Aliases: Backdoor.Win32.Redkod.a, Backdoor.Win32.Redkod.d, , Backdoor.Win32.Redkod.11, Backdoor.Win32.Redkot.12, VirTool.Win32.Rpatch, Backdoor.Win32.Redkod.13.a
Variants: a, 1.0, 1.1, 1.2, 1.3a
Port: 4820, 7531
Size: 56kb
Author: RedKod Team
Created: MAY 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: svchost.exe, rbd_patch.exe
Variants: a, 1.0, 1.1, 1.2, 1.3a
Port: 4820, 7531
Size: 56kb
Author: RedKod Team
Created: MAY 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: svchost.exe, rbd_patch.exe
RBBS
Created: DEC 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RC
Aliases: Backdoor.Win32.RC
Port: 65535
Size: 15kb
Author: Infinity Software
Created: SEP 1999
OS: Windows
Location: TBD
Port: 65535
Size: 15kb
Author: Infinity Software
Created: SEP 1999
OS: Windows
Location: TBD
RC6
Created: AUG 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RCCC
Created: APR 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
RCMD
Aliases: Backdoor.Akcom.11
Port: 65534
Size: 4kb
Author: akcom
Created: APR 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: rcmd.exe
Port: 65534
Size: 4kb
Author: akcom
Created: APR 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: rcmd.exe
RDR
Aliases: Backdoor.RDR
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
HKCU\Software\Mirabilis\ICQ\Agent\Apps\
HKCR\Scandisk\i386\
Infection: kernel32.dll.exe
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
HKCU\Software\Mirabilis\ICQ\Agent\Apps\
HKCR\Scandisk\i386\
Infection: kernel32.dll.exe
REA2
Aliases: Backdoor.Win32.Delf.dk
Port: 23145
Size: 266kb
Author: Shital Shah
Created: JUL 1998
OS: Windows
Location: TBD
Port: 23145
Size: 266kb
Author: Shital Shah
Created: JUL 1998
OS: Windows
Location: TBD
ReadDrv
Created: APR 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
ReadMe
Created: AUG 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
ReadMe.txt
Created: NOV 2003
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Real Player Killer
Created: JUN 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Real2kServer
Aliases: Backdoor.Win32.RE2k
Port: 2000
Size: 22kb
Created: SEP 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: WIN128.exe
Port: 2000
Size: 22kb
Created: SEP 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: WIN128.exe
RealDie
Created: APR 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rebate
Created: JUL 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rebooter.b
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Recon
Aliases: Backdoor.Recon
Variants: 1.99.19.10
Port: 7676
Size: 142kb
Author: [nexuz] & [ZaJoker]
Created: JUL 1999
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Infection: win32nethlp.exe
Variants: 1.99.19.10
Port: 7676
Size: 142kb
Author: [nexuz] & [ZaJoker]
Created: JUL 1999
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Infection: win32nethlp.exe
Recycle Fucker
Created: DEC 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Red Horse
Variants: 0.1
Port: 12, 1212, 1234, 1986, 2211, 4321
Size: 520kb
Author: rUdY
Created: DEC 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: msgrov.dll.exe
Port: 12, 1212, 1234, 1986, 2211, 4321
Size: 520kb
Author: rUdY
Created: DEC 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: msgrov.dll.exe
Red Spider
Created: FEB 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Red ZONE
Aliases: Trojan.PSW.RedZone.40, Trojan.PSW.RedZone.41, Trojan.PSW.RedZone.55, Trojan.PSW.RedZone.62, Trojan.PSW.RedZone.63, Trojan.PSW.PSW.Delf.bt, Trojan.PSW.RedZone.65, Trojan.PSW.RedZone.65.b, Trojan.PSW.RedZone.65.c, Trojan.PSW.RedZone.65.e, Trojan.PSW.RedZone.71
Variants: 4.0, 4.1, 5.5, 6.2, 6.3, 6.5, 6.5b, 6.5c, 7.1.1.1
Size: 53kb
Author: Teshke
Created: APR 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\RZ4\
HKCU\Software\RZ5\
HKCU\Software\RZ6\
HKLM\Software\Microsoft\Windows\CurrentVersion\Network\LanMan\
Infection: 4.exe, 5.exe, service.exe, Rsa.exe, 6.exe, rz6.exe
Variants: 4.0, 4.1, 5.5, 6.2, 6.3, 6.5, 6.5b, 6.5c, 7.1.1.1
Size: 53kb
Author: Teshke
Created: APR 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\RZ4\
HKCU\Software\RZ5\
HKCU\Software\RZ6\
HKLM\Software\Microsoft\Windows\CurrentVersion\Network\LanMan\
Infection: 4.exe, 5.exe, service.exe, Rsa.exe, 6.exe, rz6.exe
Red-Spy
Aliases: Backdoor.Win32.RedSpy.10, Backdoor.Win32.RedSpy.11, Backdoor.Win32.RedSpy.12, Backdoor.Win32.RedSpy.a
Variants: a, 1.0, 1.1, 1.2
Port: 1212, 2684, 2685
Size: 172kb
Author: Spy
Created: MAR 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: svchost.exe, Media.exe
Variants: a, 1.0, 1.1, 1.2
Port: 1212, 2684, 2685
Size: 172kb
Author: Spy
Created: MAR 2003
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: svchost.exe, Media.exe
RedGhost
Aliases: Backdoor.Redghost
Size: 274kb
Created: JUN 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce\
HKCU\ControlPanel\Desktop\
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\
HKLM\System\CurrentControlSet\Services\CDRom\
Size: 274kb
Created: JUN 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce\
HKCU\ControlPanel\Desktop\
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\
HKLM\System\CurrentControlSet\Services\CDRom\
RedHead
Created: JUL 2003
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RedShad
Aliases: Backdoor.Win32.RedShad.101
Variants: 1.01
Port: 4128
Size: 209kb
Created: FEB 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Variants: 1.01
Port: 4128
Size: 209kb
Created: FEB 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
RedShell
Aliases: Backdoor.Win32.Small.n
Variants: 1.0
Port: 1337
Size: 15kb
Author: RedStar
Created: DEC 2003
OS: Windows
Location: HKLM\SYSTEM\CurrentControlSet\Services\WINSYS32\
Infection: WINSYS32.EXE
Variants: 1.0
Port: 1337
Size: 15kb
Author: RedStar
Created: DEC 2003
OS: Windows
Location: HKLM\SYSTEM\CurrentControlSet\Services\WINSYS32\
Infection: WINSYS32.EXE
REG HalfWin
Created: JAN 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
REG Raper
Created: JAN 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
REG ShareC
Created: JAN 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
REGAp
Aliases: Backdoor.Win32.Regap
Size: 40kb
Created: MAR 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce\
Infection: Winstart.bat, winrun32.exe
Size: 40kb
Created: MAR 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce\
Infection: Winstart.bat, winrun32.exe
REGBack
Created: MAY 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
REGFun
Created: JUL 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Registry
Created: MAY 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Registry Loader
Created: MAY 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Registry RunGaurd
Created: SEP 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RegistryBrowser
Created: JUL 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
REGKill
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Reid
Created: FEB 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RemCmd
Created: MAR 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RemConn
Created: NOV 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RemoConChubo
Aliases: Backdoor.Win32.Chubo
Port: 81, 8080
Size: 99kb
Created: JUL 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Port: 81, 8080
Size: 99kb
Created: JUL 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remod
Variants: 1.0
Port: 5555
Size: 28kb
Author: CHU
Created: FEB 2002
OS: Windows
Location: TBD
Port: 5555
Size: 28kb
Author: CHU
Created: FEB 2002
OS: Windows
Location: TBD
RemotanZ-Clone
Created: FEB 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote
Created: MAY 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Access
Aliases: Backdoor.Win32.Advertor, Backdoor.Win32.VB.di
Variants: a, b, 1.0
Size: 127kb
Author: .:T.U.R:.
Created: AUG 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\
Variants: a, b, 1.0
Size: 127kb
Author: .:T.U.R:.
Created: AUG 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\
Remote Audit
Created: OCT 2003
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Boot Tool
Created: FEB 2000
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Remote Browse
Created: APR 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Command Router
Created: DEC 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Commander
Created: FEB 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Commands
Aliases: Backddor.VB.fj
Port: 1412
Size: 20kb
Author: Junaid Raza
Created: DEC 2001
OS: Windows
Location: TBD
Port: 1412
Size: 20kb
Author: Junaid Raza
Created: DEC 2001
OS: Windows
Location: TBD
Remote Computer Control Center
Aliases: Backdoor.R3C.a, Backdoor.R3C.b, Backdoor.R3C.c, Backdoor.Delf.lx, Backdoor.Stretch
Variants: 1.25a, 1.25b, 1.45a, 1.45b, 1.45c
Port: 9870
Size: 29kb
Author: Angryziber
Created: MAY 2001
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: winsock.exe, ipmon.exe
Variants: 1.25a, 1.25b, 1.45a, 1.45b, 1.45c
Port: 9870
Size: 29kb
Author: Angryziber
Created: MAY 2001
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: winsock.exe, ipmon.exe
Remote Computer Explorer
Created: OCT 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Config
Created: AUG 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Connection
Aliases: Backdoor.Win32.RemoteConnection.21, Backdoor.Win32.RemoteConnection.21.b
Variants: 2.1a, 2.1b
Port: 1001
Size: 49kb
Author: Moffett & Tucker
Created: NOV 2002
OS: Windows
Location: TBD
Infection: serlg.dll
Variants: 2.1a, 2.1b
Port: 1001
Size: 49kb
Author: Moffett & Tucker
Created: NOV 2002
OS: Windows
Location: TBD
Infection: serlg.dll
Remote Desktop
Created: FEB 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote Explorer
Created: FEB 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote File Explorer
Created: DEC 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Grab
Created: DEC 1998
OS: Windows 95, 98
Location: DNR
OS: Windows 95, 98
Location: DNR
Remote Hack
Created: JAN 2000
OS: Windows 95, 98
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows 95, 98
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote Havoc
Created: AUG 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Interactive Command
Created: JUL 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Kill Program
Created: OCT 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Kit
Created: JAN 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Manipulator
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote MSN
Created: JUL 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Operations
Created: MAR 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote PC
Created: AUG 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote Revise
Created: AUG 2001
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Remote Saucer
Created: JUL 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Server
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote Shut
Created: MAR 1999
OS: Windows
Location: DNR
OS: Windows
Location: DNR
Remote Snap Shot
Created: APR 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote Storm
Created: FEB 2000
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Remote Typer
Created: JUL 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote ViewPort
Created: AUG 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote VIREUS
Created: MAY 2005
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
Remote Windows Shutdown
Created: JUN 1998
OS: Windows
Location: DNR
OS: Windows
Location: DNR
Remote XS
Created: MAY 2005
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Remote-Anything
Aliases: Backdoor.RA.300, Backdoor.RA.304, Backdoor.RA.358, Backdoor.RA.41112
Variants: 3.0.4, 3.5.6, 3.5.8, 3.5.9, 3.5.11, 4.8.4, 4.11.12
Port: 1025, 3996, 3997, 3999, 4000, 6000
Size: 57kb
Author: TWD Industries
Created: AUG 2000
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Infection: slave.exe, wininit.ini, ra_slave.log, ra_master.log
Variants: 3.0.4, 3.5.6, 3.5.8, 3.5.9, 3.5.11, 4.8.4, 4.11.12
Port: 1025, 3996, 3997, 3999, 4000, 6000
Size: 57kb
Author: TWD Industries
Created: AUG 2000
OS: Windows
Location: HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\
Infection: slave.exe, wininit.ini, ra_slave.log, ra_master.log
Remove
Created: SEP 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RemScan
Created: SEP 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ren Bat
Created: JUn 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Renamer
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rendezvous
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Reni.b
Created: JUn 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Replacer
Created: MAR 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Reporter
Created: JUn 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Resident Evil
Created: JUL 2003
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Resoil FTP
Created: JUn 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Retard
Created: OCT 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Retribution
Created: SEP 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Revenge
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Revenger
Created: SEP 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Reverb
Created: JAN 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Reverse
Created: SEP 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Reversi
Created: MAR 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rewind
Created: OCT 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Ricta
Created: APR 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Riot
Created: APR 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rip Utils
Created: MAY 1997
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ripper Pro
Created: DEC 1998
OS: Windows
Location: DNR
OS: Windows
Location: DNR
Rivvi
Created: APR 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rmhpy99
Created: DEC 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Roach
Created: JUN 2003
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Roadside Software
Created: NOV 2001
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Robo-Hack
Created: JAN 1999
OS: Windows
Location: DNR
OS: Windows
Location: DNR
Rocket
Created: APR 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Romort
Created: AUG 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rompak
Created: APR 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ronater
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Roots
Created: FEB 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rorex.b
Created: JUN 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rosy Bartosy
Created: OCT 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RP Backdoor
Created: AUG 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RPack
Created: JUN 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RTB 666
Created: MAY 2005
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RTelNet
Created: AUG 1997
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ruinator
Created: FEB 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Ruler
Created: AUG 2000
OS: Windows
Location: HKU\.Default\Software\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKU\.Default\Software\Microsoft\Windows\CurrentVersion\Run\
Rumble
Created: DEC 1999
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rumour 11
Created: APR 2004
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Run Vdx
Created: SEP 1998
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RunMe2
Created: NOV 2002
OS: Windows
Location: TBD
OS: Windows
Location: TBD
RUX
Created: FEB 2000
OS: Windows
Location: DNR
OS: Windows
Location: DNR
RUX The TIc.K
Created: OCT 2000
OS: Windows
Location: TBD
OS: Windows
Location: TBD
Rwins
Created: MAY 2005
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\