Home Malware Programs Backdoors Sedepex

Sedepex

Posted: March 28, 2006

Sedepex is a backdoor that gives the attacker unauthorized remote access to a compromised PC. The intruder can retrieve computer information, download and execute arbitrary files, send chosen data by e-mail or upload it to a specified FTP server. Sedepex can run a hidden proxy server and terminate active processes related to popular firewalls, antivirus software and security-related tools. The backdoor automatically runs on every Windows startup. It is able to hide itself by injecting malicious code into computer processes.

Registry Modifications

  • The following CLSID's were detected:
    HKEY..\..\{CLSID Path}4368ECFC-4F5C-4F3B-B934-D67494FC78E01768ECFC-4F5C-4F5B-B134-D67294FC78E9
Loading...