RATs and Hidden Folders Questions.

Aug 3, 2015 03:52 AM
635741442402515866.jpg

This post are some questions I had about the following video that I was watching on YouTube about removing RATs.

  1. I was watching this video:

and from 18:46 - 23:53 he explains that the RAT basically created a folder that was not able to be accessed unless you knew the path. I was wondering how to do that.

  1. I was also wondering if there was any trusted versions of RATs ( preferably Dark Comet ) on the web.
  1. Someone in the comments explained how RATs install on different hierarchical protection domains a.k.a. protection rings. The ones demonstrated in the video install on ring 3 or the ring for applications. He also explained how some RATs install on ring 1 or the device driver ring and some even install on ring 0 or the kernel ring. I was wondering how one would do this.

Thanks for your time.

Related Articles

637263493835297420.jpg

How to Use Zero-Width Characters to Hide Secret Messages in Text (& Even Reveal Leaks)

636455706472146367.jpg

How to Hide DDE-Based Attacks in MS Word

Comments

No Comments Exist

Be the first, drop a comment!