Guangwai Girl 1.52c

Released 22 years, 11 months ago. November 2001

Copyright © MegaSecurity

By Guangwai


Guangwai Girl 1.52c
Informations
From China
Author Guangwai
Family Guangwai Girl
Category Remote Access
Version Guangwai Girl 1.52c
Released Date Nov 2001, 22 years, 11 months ago.
Additional Information
Server:
dropped file:
c:\WINDOWS\SYSTEM\DIAGCFG.EXE 

size: 99.840 bytes 

port: 6267 TCP

startup: 
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices "Diagnostic Configuration" 
HKEY_CLASSES_ROOT\exefile\shell\open\command "(Default)" 

added:
c:\WINDOWS\SYSTEM\MSIESMTP.DLL

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.