Posted by malvuln on Jun 08
Discovery / credits: Malvuln – malvuln.com (c) 2021
Original source:
https://malvuln.com/advisory/ff30fbee3724d80dcb9471c0b553c99a.txt
Contact: malvuln13 () gmail com
Media: twitter.com/malvuln
Threat: Trojan-Dropper.Win32.Googite.a
Vulnerability: Unauthenticated Open Proxy
Description: Googite malware drops several executables under dirs
(SysWOW64/System32) and listens on non-specific but semi-predictable TCP
ports as ports “1202,…
– Read More – Full Disclosure