Bandook 1.0
(Trojan-Downloader.Win32.Exemas.10)

by Princeali

Server packed with FSG

Released in March 2005

more versions




*Bandook 1.0 
-------------
-Wrote The main Sockets 
-Download / Execute a File from web on a target .
-Download / Execute a File from web on all targets
-Fixed Buf Prob
-Reconnect in case of Disconnection or in case Socket was Busy 
-No more crashes MWAUAHAH
- Added Disable Xp Firewall Function
- Installation 
-*Ready for Release* 2 kb 


Server:
dropped file:
c:\WINDOWS\system32\%trojan.exe%
size: 2,353 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "system"



tested on Windows XP
March 26, 2005
MegaSecurity