Purge : "Bringing Power back in to your Hands"

 

 

 

 


Y3k information
 Version 1.3.0
 32 Icon
 TCP :
 5882 | 5888 | 5889
 UDP : 5882 | 5888
 Size : 302.848 bytes
   Compressor : n/a
 Description : n/a
 Version : n/a
 Language : n/a
 
AutoStart Keys
 
   Version 1.3.0
    Type : Static
   
[HKLM\Software\Microsoft\Windows\CurrentVersion\Run]
   
"Advapi32"="C:\\WINDOWS\\Advapi32.exe"

   
   
 
   

   

Detection
 
   Version 1.3.0
    Static : Ports (TCP : 5882, 5888, 5889) (UDP : 5888,5882)
   
Static : FilePath "$Windows" and Filename "Advapi32.exe"
    Static : Registry Key

Information added Sunday, August 20, 2000