Posted by malvuln on Mar 19

Discovery / credits: Malvuln – (c) 2021
Original source:
Contact: malvuln13 () gmail com

Threat: Backdoor.Win32.Agent.mzn
Vulnerability: Remote SEH Buffer Overflow
Description: Agent.mzn drops an executable named “aspimgr.exe” that runs
with SYSTEM integrity, listening on TCP port 80 and UDP 53. Attackers who
can reach the infected…
Read More – Full Disclosure

By |2021-03-19T17:18:45-04:00March 19th, 2021|