Home Malware Programs Backdoors Hugesot

Hugesot

Posted: March 28, 2006

Hugesot is a backdoor that gives the remote attacker unauthorized access to a compromised PC. The malicious person can download, upload and execute arbitrary files and manage the entire computer using a command shell. Hugesot also contacts predetermined remote servers, downloads and runs its additional components and other dangerous spywares. The threat collects computer information and sends it out. Hugesot automatically runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 syshost.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunsysdll
Loading...