Cabronator3 kill 1.1

Copyright © MegaSecurity

By EIGranOscarin


Cabronator3 kill 1.1
Informations
From Spain
Author EIGranOscarin
Family Cabronator
Category Remote Access
Version Cabronator3 kill 1.1
Language Delphi, compressed with UPX
Additional Information
Client:
size: 447.488 bytes



Server:
C:\WINDOWS\ASDAPI.EXE 

size: 258.048 bytes

port: 7721, 7724 TCP

startup:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run "LoadPowerProfile" 
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices "LoadPowerProfile" 


Added:
c:\MSWSIGX.DLL 
c:\WINDOWS\ASDAPI.EXE

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.