Spotcom

Released 20 years, 10 months ago. November 2003

Copyright © MegaSecurity

By ?


Informations
Author ?
Family Spotcom
Category Remote Access
Version Spotcom
Released Date Nov 2003, 20 years, 10 months ago.
Language Microsoft C++, compressed with UPX
Additional Information
dropped files:
c:\WINNT\system32\msrsvp.exe  size: 32.769 bytes 
c:\WINNT\system32\olegui.dll  size: 45.057 bytes 

added to registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_RSVP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\RSVP\Enum
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_RSVP\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RSVP\Enum

does (try to) connect to ip 218.242.252.211, located in China

tested on Win2000

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.