PitFall Surprise Attack


Name: PitFall Surprise Attack
Aliases: Comando Trojan, PSA,
Ports:
Files: Pitfall_suprise.zip - 145,176 bytes Microsoft.exe - 154,112 bytes Psa.exe - 207,360 bytes Powerpsa.exe - 154,112 bytes
Created: May 2001
Requires: MSWINSCK.OCX, MSVBVM50.DLL and COMCTL32.OCX - are required to run the trojan.
Actions: Remote Access / Keylogger / Steals passwords
Registers: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Notes: Works on Windows.
Country: written in Brazil
Program: Written in Visual Basic 5.0.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>