Sweet Heart Skyfire

Released 23 years ago. September 2001

Copyright © MegaSecurity

By huaxingin & tengzhenin


Sweet Heart Skyfire
Informations
From China
Author huaxingin & tengzhenin
Family SweetHeart
Category Remote Access
Version Sweet Heart Skyfire
Released Date Sep 2001, 23 years ago.
Language Delphi
Additional Information
Server:
C:\WINDOWS\TEMP\Rundll.exe 
C:\WINDOWS\SYSTEM\GIRL.EXE 
   
size: 274.944 bytes

port: 6711, 8311 TCP
                      
						
startup:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices "(Default)" 
HKCR\txtfile\shell\open\command "(Default)" 

			
Added:
C:\WINDOWS\SYSTEM\WinPlayer.EXE

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.