Home Malware Programs Backdoors Homutex

Homutex

Posted: March 28, 2006

Homutex is a backdoor that gives the remote attacker full unauthorized access to a compromised PC. It also monitors network traffic, collects computer information and sends it to the attacker.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 abcedg21.dll
    2 usbcamd0.sys

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesWinsock2ParametersProtocol_Catalog9Catalog_Entries00000[XX]PackedCatalogItem=%System%abcedg21.dll
Loading...