1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Riskware:W32/NetCat

Category:Riskware
Type:Riskware
Platform:W32

Summary

Useful, legitimate software which could possibly be misused for malicious purposes.

Exclusion

If the user is aware of the security risks involved and wishes to proceed with installing and using this program, there is no reason not to do so.

The user may then elect to exclude (whitelist) the application's folder from subsequent scanning.


Note

For instructions on excluding files from scanning, please see:

Product documentation for various versions of F-Secure products are available on the Documentation section of the website.

Additional Details

This tool is meant for legitimate remote administration purposes by authorized users. Its original design allows it to read and write data across network systems. Unfortunately, this tool has been widely used by malware to perform malicious network routines.

This tool has the following capabilities:

  • Open a local port and listen for connections
  • Send data to a remote location
  • Act as a telnet client or server

It also provides the following options:

  • Allowing broadcasts
  • Hiding in the background
  • Specifying data routes
  • Delaying interval for lines sent
  • Continuing to listen on socket close
  • Using IP address only (not resolving DNS)
  • Dumping traffic to a specified file
  • Randomizing local and remote ports
  • Answering to telnet negotiations
  • Operating in UDP mode