Was catched on NgrBot infected machine.
Installs itself to %windir%.
Opens ports at compromised system, i. e. backdoor.
Also is IRC bot, established connection with IRC server.
http://www.microsoft.com/security/porta ... %2fPushbot
http://www.threatexpert.com/report.aspx ... da8582113f
http://anubis.iseclab.org/?action=resul ... ormat=html
Installs itself to %windir%.
Opens ports at compromised system, i. e. backdoor.
Also is IRC bot, established connection with IRC server.
http://www.microsoft.com/security/porta ... %2fPushbot
http://www.threatexpert.com/report.aspx ... da8582113f
http://anubis.iseclab.org/?action=resul ... ormat=html
Attachments
pass:malware
(33.1 KiB) Downloaded 79 times
(33.1 KiB) Downloaded 79 times