Hzdoor

Copyright © MegaSecurity

By ?


Informations
Author ?
Family Hzdoor
Category Remote Access
Version Hzdoor
Language Microsoft Visual C++
Additional Information
dropped files:
c:\Documents and Settings\%user%\Desktop\ccSetMngr.exe  (Exploit.Win32.MS04-045.a)
size: 45,056 bytes 

c:\WINDOWS\system32\ccEvtMngr.exe
size: 139,264 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "nortonsantivirus"
data: C:\WINDOWS\System32\ccEvtMngr.exe 



tested on Windows XP
May 09, 2005

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.