The KamiKrazy v2

Released 18 years, 9 months ago. February 2006

Copyright © MegaSecurity

By Kontaminator


Informations
From Columbia
Author Kontaminator
Family KamiKrazy
Category Remote Access
Version The KamiKrazy v2
Released Date Feb 2006, 18 years, 9 months ago.
Language Visual Basic
Additional Information
Server:
dropped file:
c:\WINDOWS\system32\Herramienta de Actualización.exe
size: 200,704 bytes 

port: 236, 1000, 1516, 2345, 4444, 6198 TCP

startup:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "PCTOOLS"
data: c:\windows\system32\Herramienta de Actualización.exe 

	
	
tested on Windows XP
August 22, 2006

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.