Meteor Bot 3.50
Copyright © MegaSecurity
By lovesick
Informations
Author | lovesick |
Family | Meteor Bot |
Category | Remote Access |
Version | Meteor Bot 3.50 |
Language | C, compressed with UPX |
Additional Information
dropped file:
c:\WINDOWS\system32\Exp1orer.exe
size: 47,336 bytes
port: 113 TCP
added to registry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MeteorBot "Dofiibk"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MeteorBot "DofiibkWftt"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MeteorBot "NUDTbuqbu"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MeteorBot "NUDWhus"
attempts to connect to an IRC Server
tested on Windows XP
April 04, 2005
If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.