Posted by malvuln on Feb 16

Discovery / credits: Malvuln – (c) 2022
Contact: malvuln13 () gmail com

Threat: Backdoor.Win32.Prorat.lkt
Vulnerability: Weak Hardcoded Password
Description: The malware listens on TCP port 2121. Authentication is
required, however the password “special” is weak and hardcoded in cleartext
at offset 0040267C.

