.: Netsys 8.0 :.
Released 15 years ago. Oct 2006By Zhou Jian
- From: China
- Coded by: Zhou Jian
- Version: Netsys 8.0
- Released date: Oct 2006, 15 years ago.
- Coded in: Delphi
- Family: Netsys
- Category: Remote Access
Server: dropped file: c:\WINDOWS\system32\ZRundlll.exe size: 275,502 bytes port: 4778 TCP added to registry: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\WinOldApp HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ZRundlll\Security HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ZRundlll\Security tested on Windows XP October 20, 2006
URL's and mails were automatically redacted (filtered) for reader's safety. However the filter is not perfect and can't find all harmful elements. If you find something dangerous including file link, website, mail address, profanity... contact me immediately at email@example.com, thank you in advance.