Breaking News
Loading...
Monday, 10 December 2012

Info Post
Security researchers have identified a variant of the Exforel backdoor malware, VirTool:WinNT/Exforel.A, that’s somewhat different from other malicious elements of this kind.


The NDIS-level backdoor used by VirTool:WinNT/Exforel.A is much more low-level and stealthy than that used by traditional backdoors – there is no connecting/listening port so it is more difficult to notice. The backdoor traffic is completely invisible to user-mode applications.

Functionalities:
  • Uploading files
  • Downloading files
  • Executing files
  • Routing TCP/IP packets

This sample appears to be used for a specific attack targeting a certain organization.


1 comments:

  1. I have been using AVG Anti-virus for a number of years now, I'd recommend this product to all of you.

    ReplyDelete