.: Netsys 6.8 :.
Released 16 years, 7 months ago. Apr 2005By Zhou Jian
- From: China
- Coded by: Zhou Jian
- Version: Netsys 6.8
- Released date: Apr 2005, 16 years, 7 months ago.
- Coded in: Delphi
- Family: Netsys
- Category: Remote Access
Client: port: 6678, 4777 TCP Server: dropped file: c:\WINNT\system32\ZRundlll.exe size: 498,817 bytes port: 4778 TCP added to registry: HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\WinOldApp HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ZRundlll HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ZRundlll tested on win2000 April 26, 2005
URL's and mails were automatically redacted (filtered) for reader's safety. However the filter is not perfect and can't find all harmful elements. If you find something dangerous including file link, website, mail address, profanity... contact me immediately at email@example.com, thank you in advance.