AcidkoR


Name: AcidkoR
Aliases: Backdoor.AcidShiver.kor,
Ports: 1025, 20002 (ports can not be changed)
Files: Acidkor.zip - 68,851 bytes Acidkor.zip - 420,078 bytes Acidkor.exe - 73,728 bytes Client.exe - 36,864 bytes Filegui.exe - 36,864 bytes Server.exe - 73,728 bytes Mswinsck.ocx - 108,336 bytes Comctl32.ocx - 609,584 bytes Comdlg32.ocx - 140,288 bytes File64.exe - Msgsvr64.exe -
Created: April 2000
Requires: Mswinsck.ocx, Comctl32.ocx, Comdlg32.ocx and Msvbvm60.dll - - are required to run the trojan.
Actions: Remote Access
Registers: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Notes: Works on Windows 95, 98 and ME. Based on the source code from Acid Shiver. Uses Telnet as the client.
Country:
Program: Written in Visual Basic 6.0.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>