Port No | 2115 |
Service Name | Bugs |
RFC Doc | 0 |
Protocol | TCP |
Description | Bugs is a simple Remote Access Trojan with some simple features. Though we don't know what language it is, we were able to firgure out a few of it's features. When it is ran for the first time it displays an error box. |
Reference Link | 2000 Cracks Trojan |
Attack | It autoloads the Registry: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\run Key: SysTray It does the following : DDE support Edit what is autoloading File manager Windows control (minmize, maximize, etc) Removal : 1.Remove the SysTray key located in the registry at: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\run. Which can be done with regedit or any other registry editing program. 2. Reboot the computer or close the trojan. 3. Delete the trojan files Systemtr.exe in the window system directory. |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.