Home Malware Programs Backdoors Monad

Monad

Posted: March 28, 2006

Monad is an IRC-controlled backdoor that provides the attacker with unauthorized remote access to a compromised PC. The intruder can control the remote computer and steal user sensitive information. Monad automatically runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 webcam.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun(Default)=%System%webcam.exe

Related Posts

Loading...