Port No | 9876 |
Service Name | RUX |
RFC Doc | 0 |
Protocol | TCP |
Description | RUX is a very small uploader trojan. There is both a German and English version. An uploader trojan is one that can upload more powerful trojans without the person having to accept a 300K file for example |
Reference Link | RUX |
Attack | It Autoloads: Win.ini: run=C:\WINDOWS\SYSTEM\FlyingMarqu.scr under [Windows] Features: Delete file Get system directory Get windows directory Upload file Fix: Remove the run=C:\WINDOWS\SYSTEM\FlyingMarqu.scr in the win.ini under [Windows]. Which can be done with any text editing program. Reboot the computer or close FlyingMarqu.scr. Delete the trojan file FlyingMarqu.scr in the windows system directory. |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.