DarkstRat 2.1
Released 17 years ago. October 2008
Copyright © MegaSecurity
By ?
 
                Informations
| From | China | 
| Author | ? | 
| Family | DarkstRat | 
| Category | Remote Access | 
| Version | DarkstRat 2.1 | 
| Released Date | Oct 2008, 17 years ago. | 
| Language | Delphi | 
Additional Information
Server
Dropped Files:
c:\WINDOWS\system32\System64.dat    Size: 72 bytes 
c:\WINDOWS\system32\System64.dll    Size: 296,448 bytes 
Added to Registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DarkstSer "ImagePath"
Data: %SystemRoot%\system32\svchost.exe -k netservice 
	
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DarkstSer\Parameters "ServiceDll"
Data: C:\WINDOWS\system32\\System64.dll 
	
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DarkstSer\Parameters "ServiceDll"
Data: C:\WINDOWS\system32\\System64.dll 
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DarkstSer "ImagePath"
Data: %SystemRoot%\system32\svchost.exe -k netservice 
Tested on Windows XP
2008, October 27, 2008If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.