Evilsocks
(Backdoor.Win32.Evilsock)
(Backdoor.Win32.Evilsock.01)

by evilgoat

Written in Visual C++

Released in September 2002

more versions


=> evilsocks settings <=

srv file: filename of server to store on remote machine

srv port: port to listen on

srv dir: directory to write to on remote machine, %%WINDIR%% for win dir, %%SYSDIR%% for windows sysdir

userid: applications suck as sockscap for a field for a userid that it sends to the socks server

require userid: if ticked, connections will only be allowed if the userid matches

regkey: name of regkey to write in startup

evilgoat


Server:
c:\WINDOWS\server.exe 

size: 8.976 bytes 

port: 1080 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "server" 

MegaSecurity