Byshell 1.09
Released 17 years, 3 months ago. August 2007
Copyright © MegaSecurity
By ?
Informations
From | China |
Author | ? |
Family | byshell |
Category | Remote Access |
Version | Byshell 1.09 |
Released Date | Aug 2007, 17 years, 3 months ago. |
Additional Information
Server
added to registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_NTBOOT32\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NTboot\Security
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\te
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\C
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_NTBOOT32\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NTboot\Security
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\te
Deleted files:
c:\NTDETECT.COM
c:\Documents and Settings\Default User\NTUSER.DAT
c:\Documents and Settings\Default User\NTUSER.DAT.LOG
c:\Documents and Settings\%user%\NTUSER.DAT
c:\Documents and Settings\%user%\NTUSER.DAT.LOG
c:\Documents and Settings\LocalService\NTUSER.DAT
c:\Documents and Settings\NetworkService\NTUSER.DAT
c:\WINDOWS\system32\dllcache\NT5.CAT
c:\WINDOWS\system32\dllcache\NT5IIS.CAT
c:\WINDOWS\system32\dllcache\NT5INF.CAT
c:\WINDOWS\system32\dllcache\NTPRINT.CAT
tested on Windows XP
August 30, 2007
If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.