Dumador (x)
Copyright © MegaSecurity
By ?
Informations
Author | ? |
Family | Dumador |
Category | Remote Access |
Version | Dumador (x) |
Additional Information
Backdoor.Win32.Dumador.x
port: 2283, 10000 TCP
dropped files:
c:\WINDOWS\Start Menu\Programma's\Opstarten\1111b.exe
size: 13.824 bytes
c:\WINDOWS\SYSTEM\1111a.exe
size: 13.824 bytes
c:\WINDOWS\SYSTEM\1111c.exe
size: 13.824 bytes
startup:
c:\windows\system.ini, [boot] "shell"
Old value: Explorer.exe
New value: explorer.exe C:\WINDOWS\SYSTEM\1111c.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "load32"
data: C:\WINDOWS\SYSTEM\1111a.exe
tested on Windows 98
February 09, 2005
If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.