Port No | 31339 |
Service Name | DK NetSpy |
RFC Doc | 0 |
Protocol | UDP |
Description | DK NetSpy 1.10 is an old trojan from 1999. This version has one whole more feature then version 1.06, the ability to send a message. |
Reference Link | DK NetSpy Trojan |
Attack | It autoloads the Registry: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Key: MAPI5 It does the following : Disable/enable cached passwords Get system info Get system password Ping host Reboot Run file Send message View/kill processes Removal : 1.Remove the MAPI5 key in the registry located at HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run Which can be done with regedit or any other registry editing program. 2. Reboot the computer or close Server.exe. 3. Delete the trojan file Server.exe in the windows system directory. |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.