PC Review Forums Newsgroups Microsoft AntiSpyware Spyware Announcements Backdoor Apdoor RAT

Reply

Backdoor Apdoor RAT

 
Thread Tools Rate Thread
Old 09-01-2005, 10:32 PM   #1
Guest
 
Posts: n/a
Default Backdoor Apdoor RAT


Was wondering if anyone could give some info on this
item.MS anti-spyware picked this up,when Adaware SE &
Spybot S&D didn't.Also picked up something called
SearchSquire which I have read in other post may be a
false positive. Anyone have any ideas?
  Reply With Quote
Old 09-01-2005, 10:46 PM   #2
Guest
 
Posts: n/a
Default Backdoor Apdoor RAT


>-----Original Message-----
> Was wondering if anyone could give some info on this
>item.MS anti-spyware picked this up,when Adaware SE &
>Spybot S&D didn't.Also picked up something called
>SearchSquire which I have read in other post may be a
>false positive. Anyone have any ideas?
>.
>


Info on Apdoor can be found here:
http://securityresponse.symantec.co...er/venc/data/ba
ckdoor.apdoor.html

Info on SearchSquire here:
http://www.doxdesk.com/parasite/SearchSquire.html

SearchSquire is not a false positive..
  Reply With Quote
Old 10-01-2005, 12:54 AM   #3
Bill Sanderson
Guest
 
Posts: n/a
Default Re: Backdoor Apdoor RAT

<groovicusm@yahoo.com> wrote in message
news:142601c4f69d$0e73b960$a301280a@phx.gbl...
>
>>-----Original Message-----
>> Was wondering if anyone could give some info on this
>>item.MS anti-spyware picked this up,when Adaware SE &
>>Spybot S&D didn't.Also picked up something called
>>SearchSquire which I have read in other post may be a
>>false positive. Anyone have any ideas?
>>.
>>

>
> Info on Apdoor can be found here:
> http://securityresponse.symantec.co...er/venc/data/ba
> ckdoor.apdoor.html
>
> Info on SearchSquire here:
> http://www.doxdesk.com/parasite/SearchSquire.html
>
> SearchSquire is not a false positive..


You need to look at the actual path and entry which is identified as
SearchSquire. In the instances I have seen so far, it has been a false
positive--an entry placed by Spybot Search & Destroy as a preventative
measure.

About the RAT, I would look carefully at the path and code found, and
compare it to what other reputable vendors describe for this.

Getting such a possible threat quarantined is a good idea, but check
carefully for whether this is a possible false positive.


  Reply With Quote
Reply



Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off