PowerSpider 3.10

Copyright © MegaSecurity

By MiniSnake


Informations
From China
Author MiniSnake
Family PowerSpider
Category Remote Access
Version PowerSpider 3.10
Language Visual C++
Additional Information
dropped files:
c:\WINDOWS\system32\iexplore .exe             Size: 56,256 bytes 
c:\WINDOWS\system32\psinthk.dll               Size: 7,168 bytes 
c:\WINDOWS\system32\pwdbox-003_r.exe          Size: 1,612 bytes 
c:\WINDOWS\system32\xikecn2002_163_com.exe    Size: 1,612 bytes 

port: 1044 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices "mssysint"
data: iexplore .exe 



tested on Windows XP
March 04, 2006

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.