Home Malware Programs Remote Administration Tools Optix

Optix

Posted: March 28, 2006

This pest was created by a hacker called Ish from a group called Evil Eye Software. Many versions appeared from July 2001 to July 2004. Different type of functions were added to newer versions, such as "firewall kill", "downloader", etc. The pest was written in Delphi applicationming language.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 backdoor.optix.04.c.exe
    2 backdoor.optix.04.g.exe
    3 backdoor.optix.tool.exe
    4 backdoor.opwin.11.exe
    5 builder.exe
    6 builder_dutch.ini
    7 builder_english.ini
    8 builder_french.ini
    9 builder_german.ini
    10 builder_greek.ini
    11 builder_italian.ini
    12 client.exe
    13 client_dutch.ini
    14 client_english.ini
    15 client_french.ini
    16 client_german.ini
    17 client_greek.ini
    18 client_italian.ini
    19 editkiller.exe
    20 editor.exe
    21 firewallsavs.txt
    22 fw_av_list.txt
    23 killer.exe
    24 op132undetectedserver.exe
    25 optix.doc
    26 optixclient.exe
    27 optixlite.txt
    28 optixlite5tutorial.html
    29 optixlitegwserver.exe
    30 optixprotutorialgerman.pdf
    31 opwinclient.exe
    32 processes.html
    33 readme.txt
    34 remotecommands.html
    35 remoteoptions.html
    36 server.exe
    37 servereditor.html
    38 serveur.exe
    39 spooll32.exe
    40 warning.txt
    41 winsmtp.plg
    42 ws_ftp.log
    43 www.frenzyvox.fr.st.txt

Related Posts

Loading...