ProRat 1.6
(Backdoor.Win32.Prorat.16)

by P®O Group

Released in March 2004

Made in Turkey

more versions


----------------------------------------------------------------------------------
ProRat V1.6 Version renewal and arrangements : Monday 16.03.2004
----------------------------------------------------------------------------------

-The reasons for preparing ProRat v1.6 for download :

-Server was optimized to work in windows 2000 without any problems.

-Client was optimized to get passwords in windows 2000 systems without problems.

-Client was optimized to work faster and use less Ram in systems.

-Mail notification report format from Servers was changed to [PcName]@[UserName].[VictimName].com

-Some buttons and values were changed because they were conflict with some languages.

-New Cute Ftp 6 series passwords can taken now.

-Protection for removing Local Server was added.

-looking up for a ip property was added in ProMessenger.

-While using client, after you press create server ZoneAlarm was giving alert because of the ProMessenger automatic ip finder property so we fixed this up by putting a button there.

-Creating a Shortcut Server function was added.

-Downloader Server uncompressed size was modified to 5.50 KB.

-The Client couldn't detect "Microsoft Win32s" versions and used to say unknown in the Pc information section. This error was fixed.

-After making changes in Online Editör on victims PC you should had to restart the system after saving, Now we have added a "Restart" Button to restart the server so you dont need to restart the system to make you changes getting aktiv.

-A function for changing the attributes status of the files in file manager to hidden, archive, system, Read only has been added.

-Winrar module was added to compress files in victims PC to download files faster.

-Sometimes when Creating a Downloader server was making errors in some systems this error was fixed.

-Lots of bugs was fixed.

-Lots of language supports were added.

P®O Group


Server1:
size: 326.656 bytes

port: 5110, 5112, 51100 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{5Y99AE78-58TT-11dW-BE53-Y67078979Y} "StubPath" 
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run "DirectX For Microsoft® Windows" 
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" 
c:\windows\system.ini, [boot] "shell" 
c:\windows\win.ini, [windows] "run"
 
dropped files:
c:\WINDOWS\SYSTEM\sservice.exe 
c:\WINDOWS\SYSTEM\winkey.dll 
c:\WINDOWS\SYSTEM32\fservice.exe 

Server2:
down_server.exe: 
size: 2.784 bytes

MegaSecurity