BlueFire 0.36
Copyright © MegaSecurity
By vinsa
Informations
Author | vinsa |
Family | BlueFire |
Category | Remote Acces |
Version | BlueFire 0.36 |
Additional Information
Server:
dropped file:
C:\windows\system\tasksvc.exe
size: 580 KB
port: 19191 TCP
startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKCR\txtfile\shell\open\command
Author Information / Description
Chinese Trojan.
Server can be accessed by Telnet, sterm, cterm, Zmud, Ftp, IE, Netscape, Opera, Flashget, Cuteftp...
Type "help" for commands.
If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.