Home Malware Programs Trojans Mutech

Mutech

Posted: March 28, 2006

Mutech is a trojan designed to drop other malware on the compromised PC.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 netpt.sys
    2 perfont.exe
    3 wmiprv.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_NETPTHKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_PERFFONTHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesNetPTHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesPerfFont
  • The following CLSID's were detected:
    HKEY..\..\{CLSID Path}4DE225BF-CF59-4CFC-85F7-68B90F185355
Loading...