Posted by malvuln on Jun 08

Discovery / credits: Malvuln – malvuln.com (c) 2021
Original source:
https://malvuln.com/advisory/911e63e28b1d177120cca16eacf3b602.txt
Contact: malvuln13 () gmail com
Media: twitter.com/malvuln

Threat: Backdoor.Win32.Wollf.12
Vulnerability: Unauthenticated Remote Command Execution
Description: The malware listens on TCP port 7614 and drops an executable
named “wrm.exe” that runs with SYSTEM integrity. Third-party attackers who
can…
Read More – Full Disclosure


By |2021-06-08T17:19:02-04:00June 8th, 2021|