Kakaroto's Troyan

Released 20 years, 3 months ago. August 2004

Copyright © MegaSecurity

By Kakaroto


Kakaroto's Troyan
Informations
Author Kakaroto
Family Kakaroto's Troyan
Category Remote Access
Version Kakaroto's Troyan
Released Date Aug 2004, 20 years, 3 months ago.
Language Visual Basic
Additional Information
Server:
dropped file:
c:\WINDOWS\system32\Rumdll32.exe
size: 122,880 bytes 

port: 9966, 1793, 11112, 5253, 31111 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Kernel32"
data: c:\windows\system32\Rumdll32.exe 


tested on Windows XP
February 19, 2006

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.