Home Malware Programs Backdoors Microkos

Microkos

Posted: March 28, 2006

Microkos is a dangerous backdoor that allows the remote attacker to have full unauthorized access to a compromised computer. The spyware can be used to manage files, install software, control PC hardware devices, modify computer settings, run hidden FTP server and change web browser settings. Microkos runs on every Windows startup. It uses files with random names.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunServices[filename]
Loading...