NetAngel

Released 20 years, 1 month ago. August 2004

Copyright © MegaSecurity

By StTwister


Informations
Author StTwister
Family NetAngel
Category Remote Access
Version NetAngel
Released Date Aug 2004, 20 years, 1 month ago.
Language Delphi
Additional Information
Server:
dropped file:
c:\WINNT\system32\winlog.exe

size: 525.510 bytes
 
port: 4125 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{42CE4021-DE03-E4CC-EA32-40BB12E6015D} "StubPath"
data: C:\WINNT\system32\winlog.exe
 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "WinLogon"
data: C:\WINNT\system32\winlog.exe 

c:\winnt\system.ini, [boot] "shell"
value: C:\WINNT\system32\winlog.exe 
	
c:\winnt\win.ini, [windows] "run"
value: C:\WINNT\system32\winlog.exe 
	
tested on win2000

Author Information / Description
Features:
-Fun stuff
-Windows functions(ShutDown, Activate Screen Saver, Empty Recycle Bin...)
-Clipboard Manager
-Window Manager
-Resolution Manager
-Process Manager
-Registry Manager
-File Manager (unavailable in v1.0)
-Message Manager
-Port Redirection
-Offline keylogger
-Application redirection (get console application output)
-Matrix chat (unavailable in v1.0)

-----------SERVER--------------

Startup options:
Registry: - HKEY_LOCAL_MACHINE-Run
	  - ActiveX	
Win.ini
System.ini
Explorer.exe bug - not working properly on al OS
---
Notifications:
-SIN
(Other will be added in later versions)
----

StTwister

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.