Skowisky Fire Trojan 1.0 v2

Released 17 years, 7 months ago. February 2007

Copyright © MegaSecurity

By sk0r alias Czybik


Informations
From Germany
Author sk0r alias Czybik
Family Skowisky Fire Trojan
Category Remote Access
Version Skowisky Fire Trojan 1.0 v2
Released Date Feb 2007, 17 years, 7 months ago.
Language Visual Basic
Additional Information
Server:
dropped files:
c:\WINDOWS\system32\sapi.dll       Size: 1,331 bytes 
c:\WINDOWS\system32\winmain.exe    Size: 196,658 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell"
old data: Explorer.exe 
new data: explorer.exe C:\WINDOWS\system32\winmain.exe 



tested on Windows XP
June 06, 2007

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.