Drecker

Copyright © MegaSecurity

By ?


Informations
Author ?
Family Drecker
Category Remote Access
Version Drecker
Language Visual Basic
Additional Information
dropped file:
c:\WINDOWS\system32\ExplorerX .exe
size: 131,072 bytes 

port: 333, 334, 335, 336 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "ExplorerX"
data: C:\Windows\system32\ExplorerX .exe 



tested on Windows XP
October 22, 2005

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.