Home Malware Programs Remote Administration Tools BlueAngel b

BlueAngel b

Posted: March 28, 2006

This Remote Administration Tool was created for unauthorized remote controlling and spying on user activities. The virus has a "password capture" ability. It tries to steal passwords as they are being typed in. Vital information, such as bank accounts, personal passwords etc. can be exposed to the intruder. The origination place of this virus is China. No wonder the interface is written in Chinese. The author is Bai. Originated in December 2002.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 blueangel.exe
    2 fileplug.dll
    3 help.chm
    4 passwordplug.dll
    5 progressplug.dll
    6 readme.txt
    7 screen.dll
    8 screenplug.dll
    9 svchost.exe
    10 svchost.exe.bak
Loading...