Video Screencast Help
Search Video Help Close Back
to help

RAT W32.Extrat Activity

Created: 30 Jan 2013 | Updated: 06 Feb 2013 | 4 comments
julrendo's picture
0 0 Votes
Login to vote
This issue has been solved. See solution.
good

I can indicate the date on which the attack was detected:

RAT W32.Extrat Activity

http://www.symantec.com/security_response/attacksi...

thank you very much

 

Comments 4 CommentsJump to latest comment

Brian81's picture

Yes the definition date is available on the link you posted. Are you having an issue with it?

0
Login to vote
  • Actions
Mithun Sanghavi's picture

Hello,

Yes, W32.Extrat was discovered on November 12, 2012.

W32.Extrat is a worm that spreads by copying itself to removable drives and P2P networks. It also opens a back door and steals information from the compromised computer.

Check this - 

http://www.symantec.com/security_response/writeup.jsp?docid=2012-111221-3742-99

BLOG from Symantec Security Response Team

W32.Extrat: Syrian Conflict Used To Deliver Xtreme RAT

http://bit.ly/WJB1Mt

Hope that helps!!

Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | MCTS | STS | ITIL v3

Twitter: @mithun_sanghavi

Don't forget to mark your thread as 'SOLVED' with the answer that best helps you.<&a

SOLUTION
0
Login to vote
  • Actions
SebastianZ's picture

The current definitions should clean up this threat, are you having any issues with the threat not being detected?

0
Login to vote
  • Actions