Analysis by: Michael Jay Villanueva

 PLATFORM:

Windows

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Backdoor

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This backdoor may be dropped by other malware. It may be manually installed by a user.

It executes commands from a remote malicious user, effectively compromising the affected system.

It requires its main component to successfully perform its intended routine.

  TECHNICAL DETAILS

Tamaño del archivo 25,766 bytes
Tipo de archivo HTML, HTM
Fecha de recepción de las muestras iniciales 16 Feb 2016

Arrival Details

This backdoor may be dropped by other malware.

It may be manually installed by a user.

Backdoor Routine

This backdoor executes the following commands from a remote malicious user:

  • Enumerate / List Directories and Drives
  • Upload, Download and Delete files
  • Execute Shell Command

Other Details

This backdoor requires its main component to successfully perform its intended routine.