Home Malware Programs Backdoors Hesive

Hesive

Posted: March 28, 2006

Hesive is a dangerous backdoor that gives the attacker unauthorized remote access to a compromised PC. The threat allows the intruder to download, upload, run and manipulate files, execute many computer commands, terminate running processes, modify computer configuration through the registry, get OS and network information, etc. Hesive also attempts to steal user confidential data and transfer it to a predetermined remote server. The backdoor runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 csrse.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRuncsrse.exe

Related Posts

Loading...