BlueFire 0.36

Copyright © MegaSecurity

By vinsa


Informations
Author vinsa
Family BlueFire
Category Remote Acces
Version BlueFire 0.36
Additional Information
Server:
dropped file:
C:\windows\system\tasksvc.exe

size: 580 KB

port: 19191 TCP

startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run	 
HKCR\txtfile\shell\open\command

Author Information / Description
Chinese Trojan.
Server can be accessed by Telnet, sterm, cterm, Zmud, Ftp, IE, Netscape, Opera, Flashget, Cuteftp... 
Type "help" for commands.

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.