DarkstRat 2008 2.2 Build 1126

Released 15 years, 10 months ago. November 2008

Copyright © MegaSecurity

By ?


DarkstRat 2008 2.2 Build 1126
Informations
From China
Author ?
Family DarkstRat
Category Remote Access
Version DarkstRat 2008 2.2 Build 1126
Released Date Nov 2008, 15 years, 10 months ago.
Language Delphi
Additional Information
Server
Dropped Files:
c:\WINDOWS\system32\System64.dat    Size: 72 bytes 
c:\WINDOWS\system32\System64.dll    Size: 296,960 bytes 


Added to Registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DarkstSer "ImagePath"
Data: %SystemRoot%\system32\svchost.exe -k netservice 

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DarkstSer\Parameters "ServiceDll"
Data: C:\WINDOWS\system32\\System64.dll 

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DarkstSer "ImagePath"
Data: %SystemRoot%\system32\svchost.exe -k netservice 

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DarkstSer\Parameters "ServiceDll"
Data: C:\WINDOWS\system32\\System64.dll 


Tested on Windows XP
2008, December 05, 2008

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.