Home / malwarePDF  

VirTool:WinNT/Fexel.A


First posted on 13 September 2013.
Source: Microsoft

Aliases :

There are no other names known for VirTool:WinNT/Fexel.A.

Explanation :

Threat behavior

Installation

VirTool:WinNT/Fexel.A is installed by Backdoor:Win32/Fexel.A in %TEMP%.

Payload

VirTool:WinNT/Fexel.A tries to hide the TCP/IP port used by Backdoor:Win32/Fexel.A. This means you might not notice the active port using commands like "nbtstat".



Analysis by Chun Feng

Symptoms



Alerts from your security software may be the only symptom.



Last update 13 September 2013

 

TOP