Whisper (b)

Copyright © MegaSecurity

By ?


Informations
Author ?
Family Whisper
Category Remote Access
Version Whisper (b)
Additional Information
dropped file:
c:\WINDOWS\system\rundll32.exe
size: 23,040 bytes 

port: 113 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Windows DLL Loader"
data: C:\WINDOWS\system\rundll32.exe 

attempts to connect to an IRC Server

tested on Windows XP
November 27, 2005

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.