.: ACiD Shivers 5.04 :.
- Coded by: Hardkore Virus Labs - Blood Fest
- Version: ACiD Shivers 5.04
- Coded in: Visual Basic
- Family: ACiD Shivers
- Category: Remote Access
Server: dropped files: c:\WINDOWS\SYSTEM\ .exe size: 424.997 bytes (Backdoor.AcidShiver.504) c:\WINDOWS\SYSTEM\winmm.exe size: 50.213 bytes (Not detected by AVP on January 05, 2005) port: 1091, 1095, 1097, 1098, 1099 TCP added to registry: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "(Default)" data: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices "(Default)" data: tested on Windows 98 January 05, 2005
URL's and mails were automatically redacted (filtered) for reader's safety. However the filter is not perfect and can't find all harmful elements. If you find something dangerous including file link, website, mail address, profanity... contact me immediately at firstname.lastname@example.org, thank you in advance.