.: BirdSPY (a) :.
Released 21 years, 6 months ago. Dec 2000
By Chiu a.k.a Birdman::actions
Additional Details
- From: Taiwan
- Coded by: Chiu a.k.a Birdman
- Version: BirdSPY (a)
- Released date: Dec 2000, 21 years, 6 months ago.
- Coded in: Visual C++, compressed with ASPack
- Family: BirdSPY
- Category: Remote Access
MegaSecurity Notes
Server: dropped files: c:\WINDOWS\Ndapi32c.dll c:\WINDOWS\winstart.bat c:\WINDOWS\�.bat c:\WINDOWS\Winbime.scr Size: 27.648 bytes c:\WINDOWS\SYSTEM\WinApp32.exe Size: 27.648 bytes port: 47878 TCP startup: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "User Screen" HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "Wldap32.dll"
URL's and mails were automatically redacted (filtered) for reader's safety. However the filter is not perfect and can't find all harmful elements. If you find something dangerous including file link, website, mail address, profanity... contact me immediately at sub7crew@protonmail.com, thank you in advance.