Rorex (b)
Copyright © MegaSecurity
By ?
Informations
Author | ? |
Family | Rorex |
Category | Remote Access |
Version | Rorex (b) |
Language | Visual C++ |
Additional Information
Backdoor.Win32.Rorex.b (1):
dropped files:
c:\WINDOWS\msacfg.exe Size: 18,944 bytes
c:\WINDOWS\mslog.dat
startup:
c:\windows\system.ini, [boot] "shell"
Backdoor.Win32.Rorex.b (2):
dropped files:
c:\WINDOWS\msacfg.exe Size: 53,248 bytes
c:\photo.jpg
c:\WINDOWS\padnote.exe
c:\WINDOWS\wmouse.exe
c:\WINDOWS\SYSTEM\padnote.dll
c:\WINDOWS\mslog.dat
C:\autoexec.bat: "C:\WINDOWS\wmouse.exe"
startup:
c:\windows\system.ini, [boot] "shell"
If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.